Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

iexplore.exe running multiple instances


  • This topic is locked This topic is locked
14 replies to this topic

#1 b0b_b0bertson

b0b_b0bertson

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 01 June 2014 - 02:54 PM

Hi there! I've read several forum posts about people having an issue very similar to mine, and I've come here hoping you knowledgeable folks might be able to help with my issue. Here's hoping  :wink:

 

Last night I was using Internet Explorer and I mis-clicked onto something I now know to have been a bad page. Within 30 seconds, my computer restarted itself, and when it came back up and I logged in to my user account, the entire desktop was black. I restarted the computer in hopes that maybe there was an explorer error, however the issue persisted. I then restarted the computer in safe mode with networking and ran a full scan with McAfee, letting it run overnight. When I awoke and checked the computer, nothing seemed to have been found as an issue. I restarted the computer and then managed to log back in to my user account normally and the desktop appeared as normal. Looking in the processes tab on the task manager I noticed that there were several instances of iexplore.exe running even though I hadn't started it up. I watched the processes for a short while and noticed that several processes started and culminated in an additional instance of iexplore.exe. The processes started, began another process, then terminated themselves. They were, in this order: dllhost.exe, ctfmon.exe, then finally iexplore.exe. The instances rapidly take up more and more processing power.

 

I ran the DDS tool as mentioned here: http://www.bleepingcomputer.com/forums/t/34773/preparation-guide-for-use-before-using-malware-removal-tools-and-requesting-help/

Unfortunately it only gave me one log, that being the "attach.txt" file, and for some silly reason no matter which file uploader I try on this forum it isn't opening the file browser to allow me to upload the file. This is the best I can do:

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate 
Boot Device: \Device\HarddiskVolume1
Install Date: 5/10/2010 8:42:29 PM
System Uptime: 6/1/2014 1:51:50 PM (2 hours ago)
.
Motherboard: ASRock |  | Z68 Professional Gen3
Processor: Intel® Core™ i5-2500K CPU @ 3.30GHz | CPUSocket | 3301/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 931 GiB total, 120.34 GiB free.
D: is CDROM (CDFS)
.
==== Disabled Device Manager Items =============
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: McAfee Inc. mfewfpk
Device ID: ROOT\LEGACY_MFEWFPK\0000
Manufacturer: 
Name: McAfee Inc. mfewfpk
PNP Device ID: ROOT\LEGACY_MFEWFPK\0000
Service: mfewfpk
.
==== System Restore Points ===================
.
RP759: 5/29/2014 5:57:07 PM - Scheduled Checkpoint
RP760: 5/30/2014 4:16:54 AM - Windows Update
RP761: 6/1/2014 12:51:14 PM - Windows Update
RP762: 6/1/2014 1:49:59 PM - Malwarebytes Anti-Rootkit Restore Point
.
==== Image File Execution Options =============
.
.
==== Installed Programs ======================
.
.
==== End Of File ===========================
 
 


BC AdBot (Login to Remove)

 


m

#2 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 05 June 2014 - 02:23 PM

Hi there,

please run a FRST scan:


Please download Farbar Recovery Scan Tool and save it to your Desktop.
(If you are not sure which version (32-/64-bit) applies to your system, download and try to start both of them as just the right one will run.)
  • Start FRST with administator privileges.
  • Make sure the option Addition.txt is checked and press the Scan button.
  • When finished, FRST will produce two logs (FRST.txt and Addition.txt) in the same directory the tool was run from.
  • Please copy and paste these logs in your next reply.


#3 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 06 June 2014 - 07:44 PM

Sounds good, here you are:
 
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-06-2014
Ran by Jonathan (administrator) on BOSTONCREME on 06-06-2014 20:31:30
Running from C:\Users\Jonathan\Desktop
Platform: Windows 7 Ultimate (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
 
The only official download link for FRST:
Download link from any site other than Bleeping Computer is unpermitted or outdated.
 
==================== Processes (Whitelisted) =================
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(cFos Software GmbH) C:\Program Files\ASRock\XFast LAN\spd.exe
(Fitbit, Inc.) C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(cFos Software GmbH) C:\Program Files\ASRock\XFast LAN\cfosspeed.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
(Fitbit, Inc.) C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe
(FNet Co., Ltd.) C:\Program Files (x86)\XFastUsb\XFastUsb.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
(Razer USA Ltd) C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe
(Creative Technology Ltd) C:\Windows\SysWOW64\Ctxfihlp.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
(http://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(Creative Technology Ltd) C:\Windows\SysWOW64\CTxfispi.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
() C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(McAfee, Inc.) C:\Program Files\McAfee.com\Agent\mcupdate.exe
(Farbar) C:\Users\Jonathan\Desktop\FRST64 (1).exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
 
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [1441152 2011-07-04] (cFos Software GmbH)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2201032 2014-04-02] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-02] (NVIDIA Corporation)
HKLM\...\Run: [Cm108Sound] => C:\Windows\Syswow64\cm108.dll [8146944 2009-12-08] (C-Media Corporation)
HKLM-x32\...\Run: [XFastUsb] => C:\Program Files (x86)\XFastUsb\XFastUsb.exe [4838912 2012-01-18] (FNet Co., Ltd.)
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.)
HKLM-x32\...\Run: [Razer Mamba Elite Driver] => C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe [973720 2011-11-25] (Razer USA Ltd)
HKLM-x32\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-19] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-12] ()
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe [241789 2010-02-18] (Creative Technology Ltd)
HKLM-x32\...\Run: [CTxfiHlp] => CTXFIHLP.EXE
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-15] (Apple Inc.)
HKLM-x32\...\Run: [Fitbit Connect] => C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3414560 2014-05-19] (Fitbit, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3216461962-2973069247-3417354726-1001\...\Run: [Logitech Vid] => C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [6129496 2011-01-12] (Logitech Inc.)
HKU\S-1-5-21-3216461962-2973069247-3417354726-1001\...\Run: [Fitbit Connect] => C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3414560 2014-05-19] (Fitbit, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (McAfee, Inc.)
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x80A0E404920ECC01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - {07150507-404E-4B05-9495-77AB9EC9F64D} URL = http://search.yahoo.com/search?fr=mcafee&type=A011US0&p={SearchTerms}
SearchScopes: HKCU - {E83B1559-2284-4288-91E3-E4E37FDB1D84} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=382950&p={searchTerms}
BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: No Name - {074C1DC5-9320-4A9A-947D-C042949C6216} -  No File
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll No File
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll No File
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll No File
Toolbar: HKLM-x32 - No Name - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} -  No File
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} -  No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
Tcpip\..\Interfaces\{0C2F489A-4267-4A98-9911-C95B481F9ECB}: [NameServer]192.168.1.1,71.250.0.12
 
FireFox:
========
FF ProfilePath: C:\Users\Jonathan\AppData\Roaming\Mozilla\Firefox\Profiles\spqpnzip.default
FF DefaultSearchEngine: AOL Search
FF SelectedSearchEngine: AOL Search
FF Homepage: hxxp://www.google.com
FF Keyword.URL: user_pref("keyword.URL", "");
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.102.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.102.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=2.1.3 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @mcafee.com/MVT - C:\Program Files (x86)\McAfee\Supportability\MVT\npmvtplugin.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @soe.sony.com/installer,version=1.0.3 - C:\Users\Jonathan\AppData\LocalLow\Sony Online Entertainment\npsoe.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @onlive.com/OnLiveGameClientDetector,version=1.0.0 - C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll No File
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Jonathan\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Jonathan\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Jonathan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Jonathan\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Jonathan\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\Jonathan\AppData\Roaming\Mozilla\Firefox\Profiles\spqpnzip.default\searchplugins\aol-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\McSiteAdvisor.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-09-10]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2013-09-10]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-09-10]
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-07-31]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-07-31]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-07-31]
 
Chrome: 
=======
CHR HomePage: 
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-24]
CHR Extension: (Adblock Plus) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-26]
CHR Extension: (SiteAdvisor) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2012-04-23]
CHR Extension: (Adventure Time - Finn, Jake & BMO (1920x1080)) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gefaonkfddpfhjnglpodoaakacenfjld [2014-02-26]
CHR Extension: (IE Tab) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2014-04-28]
CHR Extension: (Google Wallet) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR HKCU\...\Chrome\Extension: [cfgmipjabpfjdgflgbjjpgekdejokfci] - C:\Users\Jonathan\AppData\Local\CRE\cfgmipjabpfjdgflgbjjpgekdejokfci.crx [2013-10-02]
CHR HKLM-x32\...\Chrome\Extension: [cfgmipjabpfjdgflgbjjpgekdejokfci] - C:\Users\Jonathan\AppData\Local\CRE\cfgmipjabpfjdgflgbjjpgekdejokfci.crx [2013-10-02]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-05-27]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
CHR StartMenuInternet: Google Chrome - C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
 
==================== Services (Whitelisted) =================
 
R2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [395136 2011-07-04] (cFos Software GmbH)
R2 Fitbit Connect; C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe [1436192 2014-05-19] (Fitbit, Inc.)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [135584 2011-12-09] (Futuremark Corporation)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-04-15] (LogMeIn, Inc.)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [201304 2012-08-31] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-15] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-03-18] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-04-03] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-04-03] (McAfee, Inc.)
R2 MOBKbackup; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [231224 2010-04-13] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4005936 2011-06-06] (INCA Internet Co., Ltd.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1615192 2014-04-02] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [20541216 2014-04-02] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-02-13] ()
R2 WNDA6200; C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe [53976 2013-03-26] ()
 
==================== Drivers (Whitelisted) ====================
 
R3 A6200; C:\Windows\System32\DRIVERS\bcmwlhigh664.sys [2567984 2013-02-28] (Broadcom Corporation)
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [36608 2014-04-14] (Advanced Micro Devices, Inc.)
R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [36448 2011-03-23] (Asmedia Technology)
S1 AsrHidFilter; C:\Windows\System32\DRIVERS\AsrHidFilter.sys [17928 2011-02-17] (ASRock Inc.)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-04-03] (McAfee, Inc.)
S3 copperhd; C:\Windows\System32\drivers\copperhd.sys [14336 2009-11-10] (Razer (Asia-Pacific) Pte Ltd)
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [31808 2012-02-11] (FNet Co., Ltd.)
R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2012-01-18] (FNet Co., Ltd.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [74560 2013-09-09] (McAfee, Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2014-02-25] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [177544 2014-04-03] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311856 2014-04-03] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [522360 2014-04-03] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [784760 2014-04-03] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [441264 2014-03-18] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-03-18] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [346760 2014-04-03] (McAfee, Inc.)
R1 MOBKFilter; C:\Windows\System32\DRIVERS\MOBK.sys [66040 2010-04-13] (Mozy, Inc.)
S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2005-01-01] (INCA Internet Co., Ltd.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-21] (NVIDIA Corporation)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S3 uisp; C:\Windows\System32\Drivers\usbicp.sys [19200 2005-10-21] (Motorola)
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 dump_wmimmc; \??\c:\program files (x86)\steam\steamapps\common\ava\Binaries\GameGuard\dump_wmimmc.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Steam\steamapps\common\Driver Fusion Premium\DriverFusion.sys [X]
S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2014-06-06 20:31 - 2014-06-06 20:35 - 00031089 _____ () C:\Users\Jonathan\Desktop\FRST.txt
2014-06-06 20:30 - 2014-06-06 20:30 - 02072576 _____ (Farbar) C:\Users\Jonathan\Desktop\FRST64 (1).exe
2014-06-01 15:27 - 2014-06-01 15:27 - 00688992 ____R (Swearware) C:\Users\Jonathan\Desktop\dds.com
2014-06-01 15:11 - 2014-06-06 20:31 - 00000000 ____D () C:\FRST
2014-06-01 13:04 - 2014-06-01 15:10 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-06-01 13:04 - 2014-06-01 14:25 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-01 13:04 - 2014-06-01 14:23 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-01 13:04 - 2014-06-01 13:04 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-01 13:03 - 2014-06-01 13:03 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jonathan\Downloads\mbar-1.07.0.1009.exe
2014-06-01 12:53 - 2014-06-01 12:53 - 00038005 _____ () C:\ComboFix.txt
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.008\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.007\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.006\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.005\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.004\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.003\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.002\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.001\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.000\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Public\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\PS\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp
2014-06-01 12:14 - 2011-06-26 02:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-06-01 12:14 - 2010-11-07 13:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-06-01 12:14 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00098816 _____ () C:\Windows\sed.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00080412 _____ () C:\Windows\grep.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00068096 _____ () C:\Windows\zip.exe
2014-06-01 12:06 - 2014-06-01 12:53 - 00000000 ____D () C:\Qoobox
2014-06-01 12:05 - 2014-06-01 12:50 - 00000000 ____D () C:\Windows\erdnt
2014-06-01 11:52 - 2014-06-01 11:52 - 05201408 _____ () C:\Users\Jonathan\Downloads\RogueKillerX64.exe
2014-06-01 11:52 - 2014-06-01 11:52 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-06-01 11:45 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-06-01 11:44 - 2014-06-01 11:46 - 00000000 ____D () C:\AdwCleaner
2014-06-01 11:44 - 2014-06-01 11:44 - 01327971 _____ () C:\Users\Jonathan\Downloads\adwcleaner_3.211.exe
2014-06-01 11:21 - 2014-06-01 11:22 - 10971424 _____ (SurfRight B.V.) C:\Users\Jonathan\Downloads\HitmanPro_x64.exe
2014-06-01 05:17 - 2014-06-01 05:17 - 00000000 __RSD () C:\Users\PS\Documents\McAfee Vaults
2014-06-01 05:14 - 2014-06-01 05:15 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA Corporation
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\CrashDumps
2014-05-31 16:13 - 2014-05-31 16:13 - 00000128 _____ () C:\Users\Jonathan\Desktop\Slaaanesh Customization 1.txt
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fitbit Connect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\FitbitConnect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\Program Files (x86)\Fitbit Connect
2014-05-21 18:34 - 2009-12-08 06:27 - 08146944 ____N (C-Media Corporation) C:\Windows\SysWOW64\CM108.dll
2014-05-21 18:34 - 2009-04-02 04:59 - 00143360 ____N () C:\Windows\Vmix108.dll
2014-05-21 18:34 - 2008-07-23 07:00 - 00389120 ____N () C:\Windows\system32\CM108.cpl
2014-05-21 18:33 - 2014-05-27 16:48 - 00001282 _____ () C:\Windows\Cm108.ini.imi
2014-05-21 18:33 - 2014-05-21 18:34 - 00000257 _____ () C:\Windows\Cm108.ini.cfl
2014-05-21 18:33 - 2014-05-21 18:33 - 00000133 _____ () C:\Windows\system\Dlap.pfx
2014-05-21 18:33 - 2012-04-26 04:52 - 00006144 ____N () C:\Windows\Thumbs.db
2014-05-21 18:33 - 2009-11-18 05:55 - 01308160 _____ (C-Media Electronics Inc) C:\Windows\system32\Drivers\CM10864.sys
2014-05-21 18:33 - 2009-11-11 03:03 - 00792064 ____N () C:\Windows\system32\Cmeau108.exe
2014-05-21 18:33 - 2008-10-02 05:17 - 00002029 ____N () C:\Windows\Cm108.ini.cfg
2014-05-21 18:33 - 2006-09-12 22:21 - 00200704 ____N (C-Media) C:\Windows\SysWOW64\cmpa108.dll
2014-05-21 18:33 - 2004-04-13 23:28 - 00315392 _____ (C-Media Electronics Inc.) C:\Windows\system\fltr108.dll
2014-05-21 13:35 - 2009-08-19 04:00 - 00359424 ____N () C:\Windows\system32\CmiInstallResAll64.dll
2014-05-21 13:35 - 2006-10-05 17:45 - 00524768 ____R (Microsoft Corporation) C:\Windows\difxapi.dll
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\Program Files\iTunes
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\Program Files\iPod
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-05-16 17:24 - 2014-05-16 17:24 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-16 17:22 - 2014-05-16 17:23 - 30818216 _____ (Oracle Corporation) C:\Users\Jonathan\Downloads\jre-7u55-windows-x64.exe
2014-05-16 17:21 - 2014-05-28 22:13 - 00000000 ____D () C:\Users\Jonathan\Desktop\ATLauncher
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-05-12 14:26 - 2014-05-12 14:26 - 00020227 _____ () C:\Users\Jonathan\Downloads\hijackthis.log
2014-05-12 14:26 - 2014-05-12 14:26 - 00020227 _____ () C:\Users\Jonathan\Desktop\hijackthis.log
2014-05-12 14:25 - 2014-05-12 14:25 - 00388608 _____ (Trend Micro Inc.) C:\Users\Jonathan\Downloads\HijackThis.exe
2014-05-09 23:08 - 2014-05-09 23:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
2014-05-08 23:18 - 2014-05-08 23:19 - 00295816 _____ () C:\Windows\Minidump\050814-35443-01.dmp
2014-05-07 20:30 - 2014-05-07 20:30 - 00002077 _____ () C:\Users\Public\Desktop\The Repopulation (BETA).lnk
2014-05-07 20:29 - 2014-05-07 20:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Repopulation
2014-05-07 19:31 - 2014-05-07 20:03 - 257772840 _____ () C:\Users\Jonathan\Downloads\TheRepopulationInstaller (2).exe
 
==================== One Month Modified Files and Folders =======
 
2014-06-06 20:36 - 2010-05-10 20:01 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\Temp
2014-06-06 20:35 - 2014-06-06 20:31 - 00031089 _____ () C:\Users\Jonathan\Desktop\FRST.txt
2014-06-06 20:33 - 2012-02-15 01:35 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\CrashDumps
2014-06-06 20:31 - 2014-06-01 15:11 - 00000000 ____D () C:\FRST
2014-06-06 20:30 - 2014-06-06 20:30 - 02072576 _____ (Farbar) C:\Users\Jonathan\Desktop\FRST64 (1).exe
2014-06-06 20:30 - 2013-07-31 02:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-06-06 20:30 - 2012-07-07 02:09 - 00001763 _____ () C:\Users\Public\Desktop\McAfee Total Protection.lnk
2014-06-06 20:28 - 2012-07-07 02:08 - 00000000 __RSD () C:\Users\Jonathan\Documents\McAfee Vaults
2014-06-06 20:25 - 2014-03-27 18:37 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\LogMeIn Hamachi
2014-06-06 20:25 - 2014-02-08 09:46 - 07533034 _____ () C:\Windows\setupact.log
2014-06-06 20:25 - 2010-08-03 22:04 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\TSVNCache
2014-06-06 20:24 - 2012-06-12 16:43 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-06-06 20:24 - 2009-07-14 01:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-01 22:42 - 2010-05-10 20:36 - 01488903 _____ () C:\Windows\WindowsUpdate.log
2014-06-01 22:08 - 2013-02-21 18:01 - 00000920 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001UA.job
2014-06-01 22:06 - 2012-04-03 12:38 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-06-01 19:16 - 2013-02-21 18:01 - 00000868 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001Core.job
2014-06-01 16:05 - 2009-07-14 00:45 - 00017776 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-01 16:05 - 2009-07-14 00:45 - 00017776 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-01 15:27 - 2014-06-01 15:27 - 00688992 ____R (Swearware) C:\Users\Jonathan\Desktop\dds.com
2014-06-01 15:13 - 2011-01-05 05:11 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-06-01 15:10 - 2014-06-01 13:04 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-06-01 14:25 - 2014-06-01 13:04 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-01 14:23 - 2014-06-01 13:04 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-01 13:04 - 2014-06-01 13:04 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-01 13:03 - 2014-06-01 13:03 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jonathan\Downloads\mbar-1.07.0.1009.exe
2014-06-01 12:53 - 2014-06-01 12:53 - 00038005 _____ () C:\ComboFix.txt
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.008\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.007\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.006\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.005\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.004\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.003\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.002\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.001\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.000\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Public\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\PS\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:06 - 00000000 ____D () C:\Qoobox
2014-06-01 12:53 - 2011-10-12 12:20 - 00000000 ____D () C:\Users\TEMP.BostonCreme.007
2014-06-01 12:53 - 2011-02-07 15:28 - 00000000 ____D () C:\Users\TEMP.BostonCreme.001
2014-06-01 12:53 - 2009-07-13 23:20 - 00000000 __RHD () C:\Users\Default
2014-06-01 12:50 - 2014-06-01 12:05 - 00000000 ____D () C:\Windows\erdnt
2014-06-01 12:41 - 2009-07-13 22:34 - 00000215 _____ () C:\Windows\system.ini
2014-06-01 12:40 - 2014-02-08 09:46 - 00229786 _____ () C:\Windows\PFRO.log
2014-06-01 12:39 - 2009-07-13 22:34 - 88866816 _____ () C:\Windows\system32\config\software.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 35651584 _____ () C:\Windows\system32\config\system.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 01310720 _____ () C:\Windows\system32\config\default.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 00262144 _____ () C:\Windows\system32\config\security.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 00262144 _____ () C:\Windows\system32\config\sam.bak
2014-06-01 11:52 - 2014-06-01 11:52 - 05201408 _____ () C:\Users\Jonathan\Downloads\RogueKillerX64.exe
2014-06-01 11:52 - 2014-06-01 11:52 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-06-01 11:46 - 2014-06-01 11:44 - 00000000 ____D () C:\AdwCleaner
2014-06-01 11:44 - 2014-06-01 11:44 - 01327971 _____ () C:\Users\Jonathan\Downloads\adwcleaner_3.211.exe
2014-06-01 11:22 - 2014-06-01 11:21 - 10971424 _____ (SurfRight B.V.) C:\Users\Jonathan\Downloads\HitmanPro_x64.exe
2014-06-01 09:11 - 2012-01-18 19:28 - 00000000 ____D () C:\ProgramData\FNET
2014-06-01 09:11 - 2011-11-18 00:52 - 00000000 ____D () C:\Users\TEMP.BostonCreme.008
2014-06-01 09:11 - 2010-09-30 21:28 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-06-01 09:11 - 2010-05-10 20:01 - 00000000 ____D () C:\Users\PS
2014-06-01 09:11 - 2010-03-16 20:14 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Skype
2014-06-01 09:11 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\registration
2014-06-01 09:11 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\AppCompat
2014-06-01 05:17 - 2014-06-01 05:17 - 00000000 __RSD () C:\Users\PS\Documents\McAfee Vaults
2014-06-01 05:15 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA Corporation
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\CrashDumps
2014-06-01 05:13 - 2010-05-10 20:01 - 00000000 ____D () C:\Users\Jonathan
2014-05-31 16:13 - 2014-05-31 16:13 - 00000128 _____ () C:\Users\Jonathan\Desktop\Slaaanesh Customization 1.txt
2014-05-29 10:09 - 2010-03-16 20:10 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-05-29 09:48 - 2011-12-20 00:32 - 00007606 _____ () C:\Users\Jonathan\AppData\Local\Resmon.ResmonCfg
2014-05-28 22:13 - 2014-05-16 17:21 - 00000000 ____D () C:\Users\Jonathan\Desktop\ATLauncher
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fitbit Connect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\FitbitConnect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\Program Files (x86)\Fitbit Connect
2014-05-28 15:22 - 2011-12-31 02:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-05-28 15:22 - 2010-03-16 20:14 - 00000000 ____D () C:\ProgramData\Skype
2014-05-28 11:23 - 2010-03-16 19:23 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-05-27 16:48 - 2014-05-21 18:33 - 00001282 _____ () C:\Windows\Cm108.ini.imi
2014-05-26 22:55 - 2014-02-15 20:45 - 00000000 ____D () C:\Program Files (x86)\NETGEAR
2014-05-26 22:32 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-05-24 02:17 - 2010-03-16 19:29 - 00002386 _____ () C:\Users\Jonathan\Desktop\Google Chrome.lnk
2014-05-23 21:48 - 2012-07-07 02:06 - 00000000 ____D () C:\Program Files\Common Files\McAfee
2014-05-22 21:45 - 2011-01-01 17:09 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\TS3Client
2014-05-21 18:34 - 2014-05-21 18:33 - 00000257 _____ () C:\Windows\Cm108.ini.cfl
2014-05-21 18:33 - 2014-05-21 18:33 - 00000133 _____ () C:\Windows\system\Dlap.pfx
2014-05-21 18:33 - 2012-04-26 04:26 - 00000715 _____ () C:\Windows\system\Cm108.ini
2014-05-21 18:33 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\system
2014-05-21 17:04 - 2010-03-16 21:56 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Mozilla
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\Program Files\iTunes
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\Program Files\iPod
2014-05-21 12:12 - 2014-05-21 12:12 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-05-21 12:12 - 2014-02-28 21:02 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-05-21 12:12 - 2012-09-23 22:02 - 00001743 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-05-19 21:32 - 2013-09-10 21:06 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-17 18:13 - 2014-02-17 13:05 - 00090977 _____ () C:\Windows\DirectX.log
2014-05-16 17:24 - 2014-05-16 17:24 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-16 17:23 - 2014-05-16 17:22 - 30818216 _____ (Oracle Corporation) C:\Users\Jonathan\Downloads\jre-7u55-windows-x64.exe
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-05-14 22:23 - 2014-03-27 18:37 - 00000805 _____ () C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2014-05-13 23:48 - 2013-08-13 23:58 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-13 23:46 - 2010-05-18 21:58 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-13 18:06 - 2012-04-03 12:38 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-13 18:06 - 2012-04-03 12:38 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-05-13 18:06 - 2011-05-31 13:17 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-12 14:28 - 2013-11-13 19:46 - 00061183 _____ () C:\Users\Jonathan\Desktop\DxDiag.txt
2014-05-12 14:26 - 2014-05-12 14:26 - 00020227 _____ () C:\Users\Jonathan\Downloads\hijackthis.log
2014-05-12 14:26 - 2014-05-12 14:26 - 00020227 _____ () C:\Users\Jonathan\Desktop\hijackthis.log
2014-05-12 14:25 - 2014-05-12 14:25 - 00388608 _____ (Trend Micro Inc.) C:\Users\Jonathan\Downloads\HijackThis.exe
2014-05-09 23:08 - 2014-05-09 23:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
2014-05-09 23:08 - 2014-02-16 23:50 - 00000000 ____D () C:\Program Files (x86)\NCSOFT
2014-05-09 18:58 - 2013-02-21 18:01 - 00003900 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001UA
2014-05-09 18:58 - 2013-02-21 18:01 - 00003504 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001Core
2014-05-08 23:19 - 2014-05-08 23:18 - 00295816 _____ () C:\Windows\Minidump\050814-35443-01.dmp
2014-05-08 23:18 - 2014-02-09 23:57 - 4200012598 _____ () C:\Windows\MEMORY.DMP
2014-05-08 23:18 - 2010-08-31 12:55 - 00000000 ____D () C:\Windows\Minidump
2014-05-07 20:30 - 2014-05-07 20:30 - 00002077 _____ () C:\Users\Public\Desktop\The Repopulation (BETA).lnk
2014-05-07 20:29 - 2014-05-07 20:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Repopulation
2014-05-07 20:25 - 2013-02-13 00:26 - 00000000 ____D () C:\ProgramData\Package Cache
2014-05-07 20:03 - 2014-05-07 19:31 - 257772840 _____ () C:\Users\Jonathan\Downloads\TheRepopulationInstaller (2).exe
2014-05-07 19:16 - 2014-02-14 22:41 - 00000000 ____D () C:\Program Files (x86)\Piranha Games
 
Files to move or delete:
====================
C:\Users\Jonathan\AppData\Roaming\Camdata.ini
C:\Users\Jonathan\AppData\Roaming\CamLayout.ini
C:\Users\Jonathan\AppData\Roaming\CamShapes.ini
C:\ProgramData\hash.dat
C:\Users\Jonathan\jagex_cl_runescape_LIVE.dat
C:\Users\Jonathan\jagex_cl_runescape_LIVE1.dat
C:\Users\Jonathan\jagex_cl_speccollect_LIVE.dat
C:\Users\Jonathan\jagex_runescape_preferences.dat
C:\Users\Jonathan\jagex_runescape_preferences2.dat
C:\Users\Jonathan\jagex__preferences3.dat
C:\Users\Jonathan\random.dat
 
 
==================== Bamital & volsnap Check =================
 
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
 
 
LastRegBack: 2014-05-29 17:50
 
==================== End Of Log ============================

Addition.txt here:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2014
Ran by Jonathan at 2014-06-06 20:37:24
Running from C:\Users\Jonathan\Desktop
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
AV: McAfee Anti-Virus and Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892}
AS: McAfee Anti-Virus and Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9}
 
==================== Installed Programs ======================
 
µTorrent (HKCU\...\uTorrent) (Version: 3.4.0.30660 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
AC3Filter (remove only) (HKLM-x32\...\AC3Filter) (Version:  - )
Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe Acrobat 9 Pro - English, Français, Deutsch (x32 Version: 9.3.0 - Adobe Systems) Hidden
Adobe Acrobat 9.3.0 - CPSID_52073 (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000004}_930) (Version:  - Adobe Systems Incorporated)
Adobe After Effects CS4 (x32 Version: 9 - Adobe Systems Incorporated) Hidden
Adobe After Effects CS4 Presets (x32 Version: 9 - Adobe Systems Incorporated) Hidden
Adobe After Effects CS4 Third Party Content (x32 Version: 9 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.9.0.1030 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 1.1.0.5790 - Adobe Systems Inc.) Hidden
Adobe AIR (x32 Version: 3.9.0.1030 - Adobe Systems Incorporated) Hidden
Adobe Anchor Service CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Asset Services CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden
Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe CMaps CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Color - Photoshop Specific CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Color Video Profiles AE CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Color Video Profiles CS CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe Contribute CS4 (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden
Adobe Creative Suite 4 Master Collection (x32 Version: 4.0 - Adobe Systems Incorporated) Hidden
Adobe CS4 American English Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden
Adobe CSI CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Default Language CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Device Central CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden
Adobe Dreamweaver CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
Adobe Drive CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Dynamiclink Support (x32 Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Encore CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden
Adobe Encore CS4 Codecs (x32 Version: 4 - Adobe Systems Incorporated) Hidden
Adobe ExtendScript Toolkit CS4 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe Extension Manager CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Flash CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
Adobe Flash CS4 Extension - Flash Lite STI en (x32 Version: 3.0 - Adobe Systems Incorporated) Hidden
Adobe Flash CS4 STI-en (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Fonts All (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Illustrator CS4 (x32 Version: 14.0 - Adobe Systems Incorporated) Hidden
Adobe InDesign CS4 Application Feature Set Files (Roman) (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden
Adobe InDesign CS4 Common Base Files (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden
Adobe InDesign CS4 Icon Handler (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden
Adobe Linguistics CS4 (x32 Version: 4.0.0 - Adobe Systems Incorporated) Hidden
Adobe Media Encoder CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Media Encoder CS4 Additional Exporter (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Media Encoder CS4 Dolby (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Media Encoder CS4 Exporter (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Media Encoder CS4 Importer (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden
Adobe MotionPicture Color Files CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe OnLocation CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden
Adobe Output Module (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe PDF Library Files CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop CS4 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop CS4 Support (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Adobe Premiere Pro CS4 Functional Content (x32 Version: 4 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Search for Help (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Service Manager Extension (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe SGM CS4 (x32 Version: 3.0 - Adobe Systems Incorporated) Hidden
Adobe SING CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Soundbooth CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden
Adobe Soundbooth CS4 Codecs (x32 Version: 2 - Adobe Systems Incorporated) Hidden
Adobe Type Support CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Adobe Update Manager CS4 (x32 Version: 6.0.0 - Adobe Systems Incorporated) Hidden
Adobe Version Cue CS4 Server (x32 Version: 4.0 - Adobe Systems Incorporated) Hidden
Adobe WinSoft Linguistics Plugin (x32 Version: 1.1 - Adobe Systems Incorporated) Hidden
Adobe XMP Panels CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
AdobeColorCommonSetCMYK (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
AdobeColorCommonSetRGB (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
Age of Wonders 2 (HKLM-x32\...\Steam App 61510) (Version:  - Triumph Studios)
Alice: Madness Returns (HKLM-x32\...\Steam App 19680) (Version:  - Electronic Arts)
Anno 2070 (HKLM-x32\...\Steam App 48240) (Version:  - BlueByte)
APB Reloaded (HKLM-x32\...\Steam App 113400) (Version:  - )
Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.1.0 - Asmedia Technology)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.2.2.000 - Asmedia Technology)
Baldur's Gate: Enhanced Edition (HKLM-x32\...\Steam App 228280) (Version:  - Overhaul Games)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - )
Battlefield Heroes (HKLM-x32\...\{8DC910CD-8EE3-4ffc-A4EB-9B02701059C4}) (Version:  - EA Digital illusions)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB)
BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version:  - )
Belarc Advisor 8.2 (HKLM-x32\...\Belarc Advisor) (Version: 8.2.7.6 - Belarc Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version:  - Gearbox Software)
Botanicula (HKLM-x32\...\Steam App 207690) (Version:  - Amanita Design)
CameraHelperMsi (x32 Version: 13.31.1038.0 - Logitech) Hidden
Castle Crashers (HKLM-x32\...\Steam App 204360) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden
Contribtastic 2.1.2 (HKLM-x32\...\Contribtastic) (Version: 2.1.2 - StackFoundry LLC)
Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.44 - Creative Technology Limited)
Creative Audio Control Panel (HKLM-x32\...\AudioCS) (Version: 3.00 - Creative Technology Limited)
Creative AutoMode Switcher (HKLM-x32\...\Creative AutoMode Switcher) (Version: 1.00 - Creative Technology Limited)
Creative Console Launcher (HKLM-x32\...\Console Launcher) (Version: 2.61 - Creative Technology Limited)
Creative MediaSource 5 (HKLM-x32\...\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}) (Version: 5.26 - Creative Technology Limited)
Creative Smart Recorder (HKLM-x32\...\Smart Recorder) (Version:  - )
Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited)
Creative Sound Blaster Properties x64 Edition (HKLM-x32\...\Creative Sound Blaster Properties x64 Edition) (Version: 1.03 - Creative Technology Limited)
Creative WaveStudio 7 (HKLM-x32\...\WaveStudio 7) (Version: 7.14 - Creative Technology Limited)
Cube World version 0.0.1 (HKLM-x32\...\{D692A0E0-1BBB-4E9C-826E-4254EE330830}_is1) (Version: 0.0.1 - Picroma)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DarkCrusade (HKLM-x32\...\{32F27FAA-60D1-4EC3-8502-51AEC72BF50F}) (Version: 1.20 - THQ)
DarksidersInstaller (HKLM-x32\...\{B93EEE50-9C8F-45DF-95E4-3D85A6E242F3}) (Version: 1.00.1000 - THQ)
Dead Island (HKLM-x32\...\Steam App 91310) (Version:  - )
Dead Rising 2 (x32 Version: 1.0.0002.130 - Capcom) Hidden
DEFIANCE (HKLM-x32\...\{2BF4B6A7-9AB3-4A2B-A84E-91B5CBDC0000}_is1) (Version:  - Trion Worlds, Inc.)
Defiance (HKLM-x32\...\Defiance) (Version:  - GameStop)
Defiance Season Pass (HKLM-x32\...\Defiance Season Pass) (Version:  - GameStop)
DefianceRuntimes (HKLM-x32\...\{79B1FF35-9EA8-48ED-98D6-19ABE004BE89}) (Version: 1.0.2 - Trion Worlds, Inc.)
Deus Ex: Human Revolution (HKLM-x32\...\Steam App 28050) (Version:  - Eidos Montreal)
Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.90 - DivX, LLC)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - )
Driver Fusion Premium (HKLM-x32\...\Steam App 234820) (Version:  - Treexy)
Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version:  - )
Dungeon Keeper 2 (HKLM-x32\...\GOGPACKDUNGEONKEEPER2_is1) (Version: 2.0.0.32 - GOG.com)
Dungeon Lords MMXII (HKLM-x32\...\{5FE4CE4A-593C-4158-951F-75BB5A3CC743}_is1) (Version:  - Nordic Games GmbH)
Dungeons & Dragons Online ®:  Eberron Unlimited ™ v01.12.00.803 (HKLM-x32\...\15b35190-c6f9-11d9-9669-0800200c9a66_is1) (Version: 01.12.00.8032 - Atari, Inc.)
Earth Defense Force: Insect Armageddon (HKLM-x32\...\Steam App 23530) (Version:  - Vicious Cycle Software, Inc.)
Endless Space (HKLM-x32\...\Steam App 208140) (Version:  - AMPLITUDE Studios)
Enemy Territory - Quake Wars™ (HKLM-x32\...\{B7A585C8-CE4E-4150-84C6-A13C3CB1379F}) (Version:  - )
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
EVE Online (HKLM-x32\...\Steam App 8500) (Version:  - CCP)
EVEMon (HKLM-x32\...\EVEMon) (Version: 1.8.8.4290 - battleclinic.com)
Evil Genius (HKLM-x32\...\Steam App 3720) (Version:  - Elixir Studios)
Fitbit Connect (HKLM-x32\...\{D3CD091B-296B-48E9-9F0F-E9FE53E02E41}) (Version: 1.0.3.5511 - Fitbit Inc.)
F-Stream Tuning v0.1.73.5 (HKLM-x32\...\F-Stream Tuning_is1) (Version:  - )
Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.6.0 - Futuremark Corporation)
GameRanger (HKCU\...\GameRanger) (Version:  - GameRanger Technologies)
GOG.com Dungeon Keeper 2 (HKLM\...\{b6462b67-caf5-4a74-99df-cc2811bd1957}.sdb) (Version:  - )
Google Chrome (HKCU\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{217CEB43-6D22-3E1F-A311-DC0D7BFEE0A2}) (Version: 5.4.1.18709 - Google)
GPGNet (HKLM-x32\...\{C194D333-B84A-4BB7-B35E-060732D98DC4}) (Version: 1.0.0 - Gas Powered Games)
Guild Wars (HKLM-x32\...\Guild Wars) (Version:  - )
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - )
GX GAMING CAVIMANUS HEADSET (HKLM\...\C-Media CM108 Like Sound Driver) (Version:  - )
Hammerwatch (HKLM-x32\...\Steam App 239070) (Version:  - )
HAWKEN (HKLM-x32\...\Steam App 271290) (Version:  - Adhesive Games)
HE Auto Launcher (HKLM-x32\...\HE Auto Launcher) (Version:  - )
Impulse (HKLM-x32\...\Impulse) (Version: 1.0 - Stardock)
Impulse (x32 Version: 1.0 - Stardock Corporation) Hidden
InstantBoot (HKLM-x32\...\InstantBoot_is1) (Version:  - )
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel® OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
iTunes (HKLM\...\{1CF5754A-545B-4360-BFDE-2847BC728DFC}) (Version: 11.2.0.115 - Apple Inc.)
Java 7 Update 55 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417055FF}) (Version: 7.0.550 - Oracle)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Killing Floor (HKLM-x32\...\Steam App 1250) (Version:  - Tripwire Interactive)
Kingdoms of Amalur: Reckoning™ (HKLM-x32\...\Steam App 102500) (Version:  - Big Huge Games)
kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden
League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games)
League of Legends (HKLM-x32\...\League of Legends 3.0.0) (Version: 3.0.0 - Riot Games)
League of Legends (x32 Version: 1.0020 - Riot Games) Hidden
League of Legends (x32 Version: 3.0.0 - Riot Games) Hidden
Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7248) - Logitech Inc..)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.193 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.193 - LogMeIn, Inc.) Hidden
LWS Facebook (x32 Version: 13.31.1038.0 - Logitech) Hidden
LWS Gallery (x32 Version: 13.31.1038.0 - Logitech) Hidden
LWS Help_main (x32 Version: 13.31.1044.0 - Logitech) Hidden
LWS Launcher (x32 Version: 13.31.1038.0 - Logitech) Hidden
LWS Motion Detection (x32 Version: 13.30.1395.0 - Logitech) Hidden
LWS Pictures And Video (x32 Version: 13.31.1038.0 - Logitech) Hidden
LWS Twitter (x32 Version: 13.30.1346.0 - Logitech) Hidden
LWS Video Mask Maker (x32 Version: 13.30.1379.0 - Logitech) Hidden
LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden
LWS Webcam Software (x32 Version: 13.31.1038.0 - Logitech) Hidden
LWS WLM Plugin (x32 Version: 1.30.1201.0 - Logitech) Hidden
LWS YouTube Plugin (x32 Version: 13.31.1038.0 - Logitech) Hidden
Magicka (HKLM-x32\...\Steam App 42910) (Version:  - Arrowhead Game Studios AB)
Mass Effect (HKLM-x32\...\{1B0FBB9A-995D-47CD-87CD-13E68B676E4F}) (Version: 1.2.20608.0 - Electronic Arts)
Mass Effect™ 3 (HKLM-x32\...\{534A31BD-20F4-46b0-85CE-09778379663C}) (Version: 1.05.0.0 - Electronic Arts)
McAfee Online Backup (Version: 1.16.4.0 - McAfee, Inc.) Hidden
McAfee Online Backup (x32 Version:  - McAfee, Inc.) Hidden
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.141.11 - McAfee, Inc.)
McAfee Total Protection (HKLM-x32\...\MSC) (Version: 12.8.958 - McAfee, Inc.)
MechWarrior Online (HKLM-x32\...\{73bcb521-8936-42d7-ad00-ec2bb399e26c}) (Version: 1.4.3.0 - Piranha Games Inc.)
MechWarrior Online (x32 Version: 1.4.3.0 - Piranha Games Inc.) Hidden
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322 - Microsoft) Hidden
Microsoft .NET Framework 1.1 Security Update (KB953297) (HKLM-x32\...\M953297) (Version:  - )
Microsoft .NET Framework 4.5.1 RC (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50861 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 RC (Version: 4.5.50861 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual J# 2.0 Redistributable Package (HKLM-x32\...\Microsoft Visual J# 2.0 Redistributable Package) (Version:  - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Monaco (HKLM-x32\...\Steam App 113020) (Version:  - Pocketwatch Games)
Mortal Online (HKLM-x32\...\{69764F1C-55E1-4219-BDC5-299CD95FF004}_is1) (Version: 142332b - Star Vault)
Mount & Blade: With Fire and Sword (HKLM-x32\...\Steam App 48720) (Version:  - )
Mozilla Firefox 27.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 en-US)) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
NETGEAR A6200 Genie (HKLM-x32\...\{638CBDD4-5014-44D1-930A-1E5AC6083542}) (Version: 1.0.0.0 - NETGEAR)
Neverwinter (HKLM-x32\...\Neverwinter) (Version:  - Cryptic Studios)
Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
NVIDIA 3D Vision Controller Driver 335.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 335.21 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation)
NVIDIA Control Panel 335.23 (Version: 335.23 - NVIDIA Corporation) Hidden
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0 - NVIDIA Corporation)
NVIDIA Graphics Driver 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.151.1095 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA ShadowPlay 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3523 - NVIDIA Corporation) Hidden
NVIDIA Update 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.22 (Version: 1.2.22 - NVIDIA Corporation) Hidden
On the Rain-Slick Precipice of Darkness, Episode One (HKLM-x32\...\Steam App 18000) (Version:  - Hothead Games)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenOffice.org 3.4.1 (HKLM-x32\...\{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}) (Version: 3.41.9593 - Apache Software Foundation)
Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 8.5.0.4550 - Electronic Arts, Inc.)
ORION: Dino Horde (HKLM-x32\...\Steam App 104900) (Version:  - Spiral Game Studios)
PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version:  - OVERKILL - a Starbreeze Studio.)
PAYDAY 2 Beta (HKLM-x32\...\Steam App 246210) (Version:  - )
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version:  - )
PDF Settings CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
PFPortChecker 1.0.32 (HKLM-x32\...\PFPortChecker) (Version: 1.0.32 - Portforward.com)
Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden
Pixel Bender Toolkit (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version:  - Sony Online Entertainment)
PlanetSide 2 Beta (HKCU\...\SOE-PlanetSide 2 Beta) (Version:  - Sony Online Entertainment)
Plants vs. Zombies: Game of the Year (HKLM-x32\...\Steam App 3590) (Version:  - PopCap)
PlayerClientABTBETA (HKLM-x32\...\{f48c3d36-2732-4133-846c-93387597dfc1}) (Version: 2.17.0 - HeroEngine)
Portal 2 (HKLM-x32\...\Steam App 620) (Version:  - Valve)
Portforward Static IP Address 1.0.44 (HKLM-x32\...\Portforward Static IP Address) (Version: 1.0.44 - Portforward.com)
PowerISO (HKLM-x32\...\PowerISO) (Version: 5.9 - Power Software Ltd)
PROTOTYPE 2 (HKLM-x32\...\Steam App 115320) (Version:  - Radical Entertainment)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Razer Mamba (2012) Firmware Updater (HKLM-x32\...\{FBE577F7-8181-48EC-9676-6257228C18FF}) (Version: 1.07.00 - Razer USA Ltd.)
Razer Mamba (HKLM-x32\...\{BF60B320-3AA3-4DFB-B542-BDA6D4F1A60E}) (Version: 2.01.05 - Razer USA Ltd.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
Rocksmith (HKLM-x32\...\Steam App 205190) (Version:  - )
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version:  - Volition)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SHIELD Streaming (Version: 1.8.323 - NVIDIA Corporation) Hidden
Shoot Many Robots (HKLM-x32\...\Steam App 96400) (Version:  - )
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version:  - 2K Games, Inc.)
Singularity (remove only) (HKLM-x32\...\Singularity) (Version:  - )
Sins of a Solar Empire (HKLM-x32\...\Sins of a Solar Empire) (Version:  - Stardock Entertainment)
Sins of a Solar Empire (x32 Version: 1.00.00 - Stardock Entertainment, Inc.) Hidden
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.9.12585 - Skype Technologies S.A.)
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
SoundFont Bank Manager (HKLM-x32\...\SFBM) (Version: 3.21 - Creative Technology Limited)
Star Wars JK II Jedi Outcast (HKLM-x32\...\{8681B1E6-CD96-46EF-9065-CE0D1085ED99}) (Version: 1.0 - LucasArts)
Star Wars: Knights of the Old Republic (HKLM-x32\...\Steam App 32370) (Version:  - BioWare)
Star Wars: The Force Unleashed II (HKLM-x32\...\Steam App 32500) (Version:  - Lucas Arts)
Star Wars: The Force Unleashed Ultimate Sith Edition (HKLM-x32\...\Steam App 32430) (Version:  - LucasArts)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Station Launcher (HKLM-x32\...\{49668BEE-D721-449C-82D3-C7561945F706}) (Version: 1.01.4001 - Sony Online Entertainment)
Station Launcher (x32 Version: 1.01.4001 - Sony Online Entertainment) Hidden
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Supreme Commander - Forged Alliance (HKLM-x32\...\{31D95937-B237-405D-920C-A3EF4E482395}) (Version: 1.00.0000 - Gas Powered Games)
System Requirements Lab (HKLM-x32\...\{9E1BAB75-EB78-440D-94C0-A3857BE2E733}) (Version: 4.1.71.0 - Husdawg, LLC)
System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version:  - )
System Requirements Lab for Intel (HKLM-x32\...\{C5DA59CF-2BB8-48D5-8E5B-17F2E0F0FEE4}) (Version: 4.5.5.0 - Husdawg, LLC)
System Shock 2 (HKLM-x32\...\Steam App 238210) (Version:  - Irrational Games)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)
TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.16642 - TeamViewer)
The Guild II (HKLM-x32\...\Steam App 39650) (Version:  - 4 Head Studios)
The Mighty Quest For Epic Loot version 1.207978 (HKLM-x32\...\The Mighty Quest For Epic Loot_is1) (Version: 1.207978 - )
THE SETTLERS - Rise of an Empire (HKLM-x32\...\{D3F80A98-05AB-4D8C-9272-766CCFA6A48D}) (Version: 1.00.0000 - Ubisoft)
THX Setup Console (HKLM-x32\...\THX_Console_Unicode) (Version:  - )
Tinker (HKLM-x32\...\GFWL_{584109EB-4A5E-4467-B3C4-5C1000008300}) (Version: 1.0.0000.131 - Microsoft Corporation)
Tinker (x32 Version: 1.0.0000.131 - Microsoft Corporation) Hidden
TortoiseSVN 1.6.12.20536 (64 bit) (HKLM\...\{818AA386-29D5-4DFF-BBB5-3F16133F1409}) (Version: 1.6.20536 - TortoiseSVN)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Unreal Development Kit: 2012-07 (HKLM\...\UDK-884fd972-5ffd-47d6-8583-3ecad3bc77e6) (Version:  - Epic Games, Inc.)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
VIRTU 1.2.102 (HKLM\...\VIRTU_is1) (Version: 1.2.102 - Lucidlogix Technologies LTD)
Virtual Audio Cable 4.10 (HKLM\...\Virtual Audio Cable 4.10) (Version:  - )
Volume Panel (HKLM-x32\...\Creative Volume Panel) (Version: 2.21 - Creative Technology Limited)
Warframe (HKLM-x32\...\Steam App 230410) (Version:  - )
Warhammer 40,000 Space Marine (HKLM-x32\...\Steam App 55150) (Version:  - Relic)
Warhammer 40,000: Dawn Of War - Platinum Edition (HKLM-x32\...\{8F99E711-CE74-4718-BE04-19D1A53A735C}) (Version: 1.51 - THQ)
Warhammer® 40,000™: Dawn of War® II - Chaos Rising™ (HKLM-x32\...\Steam App 20570) (Version:  - Relic)
Warhammer® 40,000™: Dawn of War® II – Retribution™ (HKLM-x32\...\Steam App 56400) (Version:  - Relic)
Warhammer® 40,000™: Dawn of War® II (HKLM-x32\...\Steam App 15620) (Version:  - Relic)
Windows Installer Clean Up (HKLM-x32\...\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}) (Version: 3.00.00.0000 - Microsoft Corporation)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Windows Resource Kit Tools - SubInAcl.exe (HKLM-x32\...\{D3EE034D-5B92-4A55-AA02-2E6D0A6A96EE}) (Version: 5.2.3790.1164 - Microsoft Corporation)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Worms Revolution (HKLM-x32\...\Steam App 200170) (Version:  - Team17 Digital Ltd.)
XFast LAN v6.61 (HKLM\...\XFast LAN) (Version: 6.61 - cFos Software GmbH, Bonn)
XFastUsb (HKLM-x32\...\XFastUsb) (Version:  - )
XSplit (HKLM-x32\...\{8BD89760-6B5D-4A3C-8B0D-CDB93BEFC0F6}) (Version: 1.2.1303.0101 - SplitMediaLabs)
You Need A Budget 4 (YNAB) (HKLM-x32\...\Steam App 227320) (Version:  - YouNeedABudget.com)
Zeno Clash 2 (HKLM-x32\...\Steam App 215690) (Version:  - ACE Team)
 
==================== Restore Points  =========================
 
 
==================== Hosts content: ==========================
 
2010-10-27 15:03 - 2014-06-01 12:41 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
 
==================== Scheduled Tasks (whitelisted) =============
 
Task: {833840D0-0EBB-4F0B-9841-4168863327C9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd)
Task: {972B97FE-2631-4FFA-BFA5-69D6EFC8CD29} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster\AutoUpdate.exe
Task: {A625133F-54EC-40D3-9A4A-20A095DBB042} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001Core => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe [2010-03-16] (Google Inc.)
Task: {CED2397D-E59B-42EA-BE5B-90DF620587DA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001UA => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe [2010-03-16] (Google Inc.)
Task: {CFC13CC3-D682-43E4-BA3E-C8D210F79DFF} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
Task: {E3677C54-A493-46DE-9C1B-8F741A423ECC} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {EA53BEA4-0245-45C5-9B77-A5F492FBA71B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-13] (Adobe Systems Incorporated)
Task: {F96BE23D-669E-4C0E-857A-904469220103} - System32\Tasks\{6133CB21-30A7-495B-8682-51A6B2B9FB35} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08] (Skype Technologies S.A.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001Core.job => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001UA.job => C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
 
==================== Loaded Modules (whitelisted) =============
 
2014-02-25 21:02 - 2014-03-04 09:05 - 00116056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-04-10 23:38 - 2013-02-13 00:25 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-05-26 22:55 - 2013-03-26 17:36 - 00053976 _____ () C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe
2012-01-18 19:16 - 2011-04-09 22:40 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-02-12 22:37 - 2013-02-12 22:37 - 01263952 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
2011-11-11 14:07 - 2011-11-11 14:07 - 00265240 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
2011-08-12 12:19 - 2011-08-12 12:19 - 00680984 _____ () C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
2010-04-13 20:11 - 2010-04-13 20:11 - 00083256 _____ () C:\Program Files (x86)\McAfee Online Backup\librs2.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2009-04-09 19:04 - 2009-04-09 19:04 - 02141008 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtCore4.dll
2009-03-03 18:17 - 2009-03-03 18:17 - 07704400 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtGui4.dll
2009-04-22 17:53 - 2009-04-22 17:53 - 00969040 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtNetwork4.dll
2009-03-03 18:17 - 2009-03-03 18:17 - 00475472 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtOpenGL4.dll
2009-03-03 18:17 - 2009-03-03 18:17 - 00363856 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtXml4.dll
2009-03-03 18:17 - 2009-03-03 18:17 - 00200016 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtSql4.dll
2011-01-12 21:55 - 2011-01-12 21:55 - 00027472 _____ () C:\Program Files (x86)\Logitech\Vid HD\SDL.dll
2009-03-03 18:17 - 2009-03-03 18:17 - 11311952 _____ () C:\Program Files (x86)\Logitech\Vid HD\QtWebKit4.dll
2009-03-03 18:17 - 2009-03-03 18:17 - 00291664 _____ () C:\Program Files (x86)\Logitech\Vid HD\phonon4.dll
2011-01-12 21:57 - 2011-01-12 21:57 - 00751616 _____ () C:\Program Files (x86)\Logitech\Vid HD\vpxmd.dll
2009-03-03 18:18 - 2009-03-03 18:18 - 00029008 _____ () C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qgif4.dll
2009-03-03 18:18 - 2009-03-03 18:18 - 00035152 _____ () C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qico4.dll
2009-03-03 18:18 - 2009-03-03 18:18 - 00138064 _____ () C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qjpeg4.dll
2012-01-18 02:43 - 2012-01-18 02:43 - 00183320 _____ () C:\Program Files (x86)\Common Files\logishrd\SharedBin\LVAPI11.dll
2012-04-30 03:55 - 2012-04-30 03:55 - 08358400 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avcodec-54.dll
2012-04-30 03:55 - 2012-04-30 03:55 - 00151040 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avutil-51.dll
2012-04-30 03:55 - 2012-04-30 03:55 - 01152512 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avformat-54.dll
2012-04-30 03:55 - 2012-04-30 03:55 - 00333824 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\swscale-2.dll
2012-04-30 03:55 - 2012-04-30 03:55 - 00026112 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\swresample-0.dll
2011-03-01 23:14 - 2011-03-01 23:14 - 02143576 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll
2011-03-01 23:14 - 2011-03-01 23:14 - 07954776 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll
2011-03-01 23:15 - 2011-03-01 23:15 - 00340824 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll
2011-03-01 23:15 - 2011-03-01 23:15 - 00027480 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll
2011-03-01 23:15 - 2011-03-01 23:15 - 00126808 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll
2013-02-12 22:38 - 2013-02-12 22:38 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2010-05-10 19:59 - 2009-03-26 14:46 - 00148480 _____ () C:\Windows\SysWOW64\APOMngr.DLL
2010-05-10 19:59 - 2009-02-06 18:52 - 00073728 _____ () C:\Windows\SysWOW64\CmdRtr.DLL
2014-05-05 19:12 - 2014-03-01 01:20 - 00002560 _____ () C:\Windows\system32\CTXFIRES.DLL
2011-11-11 14:09 - 2011-11-11 14:09 - 00336408 _____ () C:\Program Files (x86)\Common Files\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll
2014-05-24 02:17 - 2014-05-13 19:40 - 00716616 _____ () C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\35.0.1916.114\libglesv2.dll
2014-05-24 02:17 - 2014-05-13 19:40 - 00126280 _____ () C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\35.0.1916.114\libegl.dll
2014-05-24 02:17 - 2014-05-13 19:40 - 04217672 _____ () C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\35.0.1916.114\pdf.dll
2014-05-24 02:17 - 2014-05-13 19:40 - 00414536 _____ () C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll
2014-05-24 02:17 - 2014-05-13 19:40 - 01732424 _____ () C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll
2014-05-24 02:17 - 2014-05-13 19:40 - 13695816 _____ () C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
AlternateDataStreams: C:\ProgramData\TEMP:BEB15613
 
==================== Safe Mode (whitelisted) ===================
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\plsapp => ""="service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
 
==================== EXE Association (whitelisted) =============
 
 
==================== Disabled items from MSCONFIG ==============
 
MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: Copperhead => C:\Program Files (x86)\Razer\Copperhead\razerhid.exe
MSCONFIG\startupreg: Creative Software Update => "C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe" /Silent
MSCONFIG\startupreg: CreativeTaskScheduler => "C:\Program Files (x86)\Creative\Shared Files\CTSched.exe" /logon
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: FlashPlayerUpdate => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe -update activex
MSCONFIG\startupreg: Google Update => "C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: igndlm.exe => C:\Program Files (x86)\Download Manager\DLM.exe /windowsstart /startifwork
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: PWRISOVM.EXE => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
 
==================== Faulty Device Manager Devices =============
 
Name: McAfee Inc. mfewfpk
Description: McAfee Inc. mfewfpk
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: mfewfpk
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (06/06/2014 08:33:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: McChHost.exe, version: 3.7.0.128, time stamp: 0x535937af
Faulting module name: ntdll.dll, version: 6.1.7600.16915, time stamp: 0x4ec49d10
Exception code: 0xc0000005
Fault offset: 0x0002dfe4
Faulting process id: 0x1a88
Faulting application start time: 0xMcChHost.exe0
Faulting application path: McChHost.exe1
Faulting module path: McChHost.exe2
Report Id: McChHost.exe3
 
Error: (06/06/2014 08:29:29 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {61dde9b9-89fb-49b0-bd7d-23dd3c3809e7}
 
Error: (06/06/2014 08:24:57 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
 
Error: (06/06/2014 08:24:57 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
 
Error: (06/06/2014 08:24:57 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]
 
Error: (06/01/2014 04:20:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: WLANExt.exe, version: 6.1.7600.16385, time stamp: 0x4a5bcc33
Faulting module name: FunDisc.dll_unloaded, version: 0.0.0.0, time stamp: 0x4a5bdf11
Exception code: 0xc0000005
Fault offset: 0x000007fef9c02664
Faulting process id: 0x66c
Faulting application start time: 0xWLANExt.exe0
Faulting application path: WLANExt.exe1
Faulting module path: WLANExt.exe2
Report Id: WLANExt.exe3
 
Error: (06/01/2014 04:00:36 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {97239c6d-2473-4ba6-a8e8-43f5c8dbcafc}
 
Error: (06/01/2014 03:58:13 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
 
Error: (06/01/2014 03:58:13 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
 
Error: (06/01/2014 03:58:13 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]
 
 
System errors:
=============
Error: (06/06/2014 08:38:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The McAfee Platform Services service failed to start due to the following error: 
%%1053
 
Error: (06/06/2014 08:38:12 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the McAfee Platform Services service to connect.
 
Error: (06/06/2014 08:38:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The McAfee Platform Services service failed to start due to the following error: 
%%1053
 
Error: (06/06/2014 08:38:12 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the McAfee Platform Services service to connect.
 
Error: (06/06/2014 08:38:12 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1053mcpltsvc{20966775-18A4-4299-B8E3-772C336B52A7}
 
Error: (06/06/2014 08:32:45 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Windows Update service hung on starting.
 
Error: (06/06/2014 08:29:12 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The McAfee Home Network service hung on starting.
 
Error: (06/06/2014 08:26:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The BCM42RLY service failed to start due to the following error: 
%%2
 
Error: (06/06/2014 08:25:07 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
AsrHidFilter
 
Error: (06/01/2014 05:06:04 PM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
 
 
Microsoft Office Sessions:
=========================
Error: (06/06/2014 08:33:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: McChHost.exe3.7.0.128535937afntdll.dll6.1.7600.169154ec49d10c00000050002dfe41a8801cf81e733723840C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exeC:\Windows\SysWOW64\ntdll.dll53369178-eddb-11e3-a0a6-bc5ff408d88f
 
Error: (06/06/2014 08:29:29 PM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Access is denied.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {61dde9b9-89fb-49b0-bd7d-23dd3c3809e7}
 
Error: (06/06/2014 08:24:57 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
 
Error: (06/06/2014 08:24:57 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
 
Error: (06/06/2014 08:24:57 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]
 
Error: (06/01/2014 04:20:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: WLANExt.exe6.1.7600.163854a5bcc33FunDisc.dll_unloaded0.0.0.04a5bdf11c0000005000007fef9c0266466c01cf7dd3ce7f40b4C:\Windows\system32\WLANExt.exeFunDisc.dll2b3c2649-e9ca-11e3-92bc-bc5ff408d88f
 
Error: (06/01/2014 04:00:36 PM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Access is denied.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {97239c6d-2473-4ba6-a8e8-43f5c8dbcafc}
 
Error: (06/01/2014 03:58:13 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
 
Error: (06/01/2014 03:58:13 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
 
Error: (06/01/2014 03:58:13 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-06-01 12:37:50.518
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-06-01 12:37:50.440
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
 
==================== Memory info =========================== 
 
Percentage of memory in use: 54%
Total physical RAM: 16293.37 MB
Available physical RAM: 7438.75 MB
Total Pagefile: 40732.37 MB
Available Pagefile: 29891.86 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:931.41 GB) (Free:126.3 GB) NTFS
Drive d: (A6200) (CDROM) (Total:0.11 GB) (Free:0 GB) CDFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 069E86C0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)
 
==================== End Of Log ============================


#4 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 11 June 2014 - 03:03 AM

I'm sorry I've lost sight of your topic.


Please download TDSSKiller and save it to your Desktop.
  • Start tdsskiller.exe with administrator privileges.
  • Accept the EULA and the KSN Statement.
  • Click on Change parameters.
  • Make sure that all available options (except "Loaded modules") are checked and click OK.
  • Click on Start scan.
  • If any threats are found don't delete them but choose the Skip option for all of them.
  • Click on Report to open the log file. (It is also saved at C:\TDSSKiller.<version_date_time>_log.txt).
    Copy and paste its contents in your next reply.


#5 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 11 June 2014 - 05:32 PM

No problem, I thought that might have been what happened :)

 

18:26:11.0011 0x2f24  TDSS rootkit removing tool 3.0.0.39 Jun  5 2014 20:35:54
18:26:22.0931 0x2f24  ============================================================
18:26:22.0931 0x2f24  Current date / time: 2014/06/11 18:26:22.0931
18:26:22.0931 0x2f24  SystemInfo:
18:26:22.0931 0x2f24  
18:26:22.0931 0x2f24  OS Version: 6.1.7600 ServicePack: 0.0
18:26:22.0931 0x2f24  Product type: Workstation
18:26:22.0931 0x2f24  ComputerName: BOSTONCREME
18:26:22.0931 0x2f24  UserName: Jonathan
18:26:22.0931 0x2f24  Windows directory: C:\Windows
18:26:22.0931 0x2f24  System windows directory: C:\Windows
18:26:22.0931 0x2f24  Running under WOW64
18:26:22.0931 0x2f24  Processor architecture: Intel x64
18:26:22.0931 0x2f24  Number of processors: 4
18:26:22.0931 0x2f24  Page size: 0x1000
18:26:22.0931 0x2f24  Boot type: Normal boot
18:26:22.0931 0x2f24  ============================================================
18:26:32.0183 0x2f24  KLMD registered as C:\Windows\system32\drivers\84332979.sys
18:26:32.0569 0x2f24  System UUID: {1634C6D5-98A8-CCAB-083A-9A3978968160}
18:26:33.0250 0x2f24  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0CADE00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0xEC931, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x20, Type 'K0', Flags 0x00000040
18:26:33.0255 0x2f24  ============================================================
18:26:33.0255 0x2f24  \Device\Harddisk0\DR0:
18:26:33.0255 0x2f24  MBR partitions:
18:26:33.0255 0x2f24  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
18:26:33.0255 0x2f24  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3000
18:26:33.0255 0x2f24  ============================================================
18:26:33.0355 0x2f24  C: <-> \Device\Harddisk0\DR0\Partition2
18:26:33.0355 0x2f24  ============================================================
18:26:33.0355 0x2f24  Initialize success
18:26:33.0355 0x2f24  ============================================================
18:27:14.0632 0x2ea4  ============================================================
18:27:14.0632 0x2ea4  Scan started
18:27:14.0632 0x2ea4  Mode: Manual; SigCheck; TDLFS; 
18:27:14.0632 0x2ea4  ============================================================
18:27:14.0632 0x2ea4  KSN ping started
18:27:40.0047 0x2ea4  KSN ping finished: true
18:27:58.0113 0x2ea4  ================ Scan system memory ========================
18:27:58.0113 0x2ea4  System memory - ok
18:27:58.0114 0x2ea4  ================ Scan services =============================
18:28:00.0288 0x2ea4  [ 1B00662092F9F9568B995902F0CC40D5, D345014CF146FA57B2682C189D5E7F27D4C78F321F2723D912D623E777C2BB70 ] 1394ohci        C:\Windows\system32\DRIVERS\1394ohci.sys
18:28:00.0509 0x2ea4  1394ohci - ok
18:28:01.0013 0x2ea4  [ CEB66453AFFE08518566151D2B86864C, B0E99D797E7E36F9DE5AC93C80C4D9047EA05A8C62DEC67E222CC7AE7D67AB18 ] A6200           C:\Windows\system32\DRIVERS\bcmwlhigh664.sys
18:28:01.0066 0x2ea4  A6200 - ok
18:28:01.0159 0x2ea4  [ 6F11E88748CDEFD2F76AA215F97DDFE5, BD0B3561EDCDE5EFD89372793CFD09DF879709BF469542F4A049705CBA9FD060 ] ACPI            C:\Windows\system32\DRIVERS\ACPI.sys
18:28:01.0184 0x2ea4  ACPI - ok
18:28:01.0233 0x2ea4  [ 63B05A0420CE4BF0E4AF6DCC7CADA254, 56BCC219D6B886FD42B7D335B4A7BBA3C9BC148220CBD99F8583FB505DAE63BF ] AcpiPmi         C:\Windows\system32\DRIVERS\acpipmi.sys
18:28:01.0409 0x2ea4  AcpiPmi - ok
18:28:01.0492 0x2ea4  [ D44BCAF639E4E45307C2BC80715273D5, 1E1CDE13C39D835447096CBEC104A2EDDCE15D94288DB3FBB02421B8B8307989 ] adfs            C:\Windows\system32\drivers\adfs.sys
18:28:01.0503 0x2ea4  adfs - ok
18:28:02.0035 0x2ea4  [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:28:02.0112 0x2ea4  AdobeARMservice - ok
18:28:02.0696 0x2ea4  [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:28:02.0709 0x2ea4  AdobeFlashPlayerUpdateSvc - ok
18:28:02.0784 0x2ea4  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
18:28:02.0826 0x2ea4  adp94xx - ok
18:28:02.0897 0x2ea4  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
18:28:02.0921 0x2ea4  adpahci - ok
18:28:02.0963 0x2ea4  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
18:28:02.0989 0x2ea4  adpu320 - ok
18:28:03.0020 0x2ea4  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:28:03.0823 0x2ea4  AeLookupSvc - ok
18:28:04.0007 0x2ea4  [ DB9D6C6B2CD95A9CA414D045B627422E, A4A0B2ACBFE311C20EF9F06A49DBE02CE90433C2364B292F6E8F78F6C274DF88 ] AFD             C:\Windows\system32\drivers\afd.sys
18:28:04.0095 0x2ea4  AFD - ok
18:28:04.0159 0x2ea4  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\DRIVERS\agp440.sys
18:28:04.0185 0x2ea4  agp440 - ok
18:28:04.0248 0x2ea4  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
18:28:04.0421 0x2ea4  ALG - ok
18:28:04.0488 0x2ea4  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\DRIVERS\aliide.sys
18:28:04.0536 0x2ea4  aliide - ok
18:28:04.0555 0x2ea4  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\DRIVERS\amdide.sys
18:28:04.0576 0x2ea4  amdide - ok
18:28:04.0623 0x2ea4  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
18:28:04.0688 0x2ea4  AmdK8 - ok
18:28:04.0838 0x2ea4  [ EF4680F07516F6D61F6E0BA1D34B3A3A, C367B323B26CF56AA6260E41129AE5F2DC97CFD0A9D984D9D5C051BE61ACD247 ] amdkmpfd        C:\Windows\system32\DRIVERS\amdkmpfd.sys
18:28:04.0846 0x2ea4  amdkmpfd - ok
18:28:04.0876 0x2ea4  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
18:28:04.0954 0x2ea4  AmdPPM - ok
18:28:05.0076 0x2ea4  [ EC7EBAB00A4D8448BAB68D1E49B4BEB9, 786B30C86FA7FEC6BA2569FF818044AA0F7C134693304ED0FF7BD0541F9A755F ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:28:05.0108 0x2ea4  amdsata - ok
18:28:05.0147 0x2ea4  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
18:28:05.0172 0x2ea4  amdsbs - ok
18:28:05.0202 0x2ea4  [ DB27766102C7BF7E95140A2AA81D042E, 489F812B596EA06E53D891CD05047AA17CDF752854BBD553BA65D10799AF78DF ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:28:05.0228 0x2ea4  amdxata - ok
18:28:05.0324 0x2ea4  [ 42FD751B27FA0E9C69BB39F39E409594, DE349CAA570957868CA1CB0BE0FAF551CD4D44FD53EBC4391B9C1C7B9CF295D2 ] AppID           C:\Windows\system32\drivers\appid.sys
18:28:05.0852 0x2ea4  AppID - ok
18:28:05.0893 0x2ea4  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:28:05.0960 0x2ea4  AppIDSvc - ok
18:28:06.0057 0x2ea4  [ D065BE66822847B7F127D1F90158376E, 20F911F390FF23C2C42361A449C4344DB59F1DC21EDD1E7EBC4E80914DEF7824 ] Appinfo         C:\Windows\System32\appinfo.dll
18:28:06.0185 0x2ea4  Appinfo - ok
18:28:06.0355 0x2ea4  [ 221564CC7BE37611FE15EACF443E1BF6, 381BDF17418C779D72332431BA174C2AD76CD9C7C1711FF5142EA9B05D5555E4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
18:28:06.0362 0x2ea4  Apple Mobile Device - ok
18:28:06.0568 0x2ea4  [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt         C:\Windows\System32\appmgmts.dll
18:28:06.0678 0x2ea4  AppMgmt - ok
18:28:06.0773 0x2ea4  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
18:28:06.0872 0x2ea4  arc - ok
18:28:06.0923 0x2ea4  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
18:28:06.0954 0x2ea4  arcsas - ok
18:28:07.0086 0x2ea4  [ D7989234601A2DE9A1801F4ED9533B6E, 59FEDA2BC940B9B45597B99F11F58EF0F09242840220BF305D75A5E94DF3E4B8 ] asahci64        C:\Windows\system32\DRIVERS\asahci64.sys
18:28:07.0093 0x2ea4  asahci64 - ok
18:28:07.0154 0x2ea4  [ 10920CCB66203D7EF48F024B1B35AE6F, 3C97FE6C91076C059E54234F54021F5D74FB42638BE14E2C1E4CF2EFC342C274 ] asmthub3        C:\Windows\system32\DRIVERS\asmthub3.sys
18:28:07.0164 0x2ea4  asmthub3 - ok
18:28:07.0277 0x2ea4  [ C479BFAF73CF726E01AA0A487B268A5E, D49F7779CD25E098EC9DAF1886C3B3DB8EB22CEC0FEA6FDF4522A2B2D282AE37 ] asmtxhci        C:\Windows\system32\DRIVERS\asmtxhci.sys
18:28:07.0291 0x2ea4  asmtxhci - ok
18:28:07.0812 0x2ea4  [ 041672BAC20B34EAEDEB033129655DD8, 14264732F0CACF5732C7652C411F0A1C3B4A4417C31DD289C8AFF170BE683E5A ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
18:28:08.0274 0x2ea4  aspnet_state - ok
18:28:08.0499 0x2ea4  [ EDC0C73FA41DF1C8B1FEA3852AED2848, A3FE7EE1AB15ED603403479CFD011DF9B506C1FE95730C0980F1410810C2F736 ] AsrHidFilter    C:\Windows\system32\DRIVERS\AsrHidFilter.sys
18:28:08.0547 0x2ea4  AsrHidFilter - ok
18:28:08.0678 0x2ea4  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
18:28:08.0756 0x2ea4  AsyncMac - ok
18:28:08.0787 0x2ea4  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\DRIVERS\atapi.sys
18:28:08.0795 0x2ea4  atapi - ok
18:28:08.0905 0x2ea4  [ 230CF51113CD4B830B3BFD09B0D4C066, 54751AA93E5E697A09B9C02EED34BFFE4B9C98B69490B738BFD4127EACC0E39F ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
18:28:08.0969 0x2ea4  AtiHDAudioService - ok
18:28:09.0193 0x2ea4  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:28:09.0254 0x2ea4  AudioEndpointBuilder - ok
18:28:09.0360 0x2ea4  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
18:28:09.0399 0x2ea4  AudioSrv - ok
18:28:09.0657 0x2ea4  [ B20B5FA5CA050E9926E4D1DB81501B32, 91B9038349BA07E32DE809E6798167EE44087809EB1174B84EC16580040F1BE0 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:28:09.0713 0x2ea4  AxInstSV - ok
18:28:09.0903 0x2ea4  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
18:28:09.0991 0x2ea4  b06bdrv - ok
18:28:10.0092 0x2ea4  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
18:28:10.0168 0x2ea4  b57nd60a - ok
18:28:10.0235 0x2ea4  BCM42RLY - ok
18:28:10.0341 0x2ea4  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
18:28:10.0426 0x2ea4  BDESVC - ok
18:28:10.0503 0x2ea4  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
18:28:10.0577 0x2ea4  Beep - ok
18:28:10.0768 0x2ea4  [ 4992C609A6315671463E30F6512BC022, 3020034556EAC25CD90F41D3BFFDD0BB2C3D1C5BAC4359F4B71B84A9FC404495 ] BFE             C:\Windows\System32\bfe.dll
18:28:10.0829 0x2ea4  BFE - ok
18:28:10.0968 0x2ea4  [ 7F0C323FE3DA28AA4AA1BDA3F575707F, 7FF09CBC16A9E5F357A76FF79A3F0DD047957D474031F51A6BB4916C7911F005 ] BITS            C:\Windows\system32\qmgr.dll
18:28:11.0049 0x2ea4  BITS - ok
18:28:11.0096 0x2ea4  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
18:28:11.0133 0x2ea4  blbdrive - ok
18:28:11.0324 0x2ea4  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
18:28:11.0338 0x2ea4  Bonjour Service - ok
18:28:11.0375 0x2ea4  [ 19D20159708E152267E53B66677A4995, 6401FA5C3EFF26BED075FEC68F868CD8D0598FDB45EA9381810615F7252F7A9A ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:28:11.0455 0x2ea4  bowser - ok
18:28:11.0500 0x2ea4  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:28:11.0553 0x2ea4  BrFiltLo - ok
18:28:11.0596 0x2ea4  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:28:11.0643 0x2ea4  BrFiltUp - ok
18:28:11.0740 0x2ea4  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
18:28:11.0810 0x2ea4  BridgeMP - ok
18:28:11.0880 0x2ea4  [ 6B054C67AAA87843504E8E3C09102009, 284AA58625FBDBFECB851A35407331B40BAEC141F2DCEDB9F15733BAB22F5C81 ] Browser         C:\Windows\System32\browser.dll
18:28:12.0003 0x2ea4  Browser - ok
18:28:12.0212 0x2ea4  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
18:28:12.0307 0x2ea4  Brserid - ok
18:28:12.0353 0x2ea4  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
18:28:12.0390 0x2ea4  BrSerWdm - ok
18:28:12.0418 0x2ea4  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
18:28:12.0472 0x2ea4  BrUsbMdm - ok
18:28:12.0496 0x2ea4  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
18:28:12.0534 0x2ea4  BrUsbSer - ok
18:28:12.0553 0x2ea4  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
18:28:12.0628 0x2ea4  BTHMODEM - ok
18:28:12.0691 0x2ea4  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
18:28:12.0743 0x2ea4  bthserv - ok
18:28:12.0804 0x2ea4  catchme - ok
18:28:12.0835 0x2ea4  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:28:12.0888 0x2ea4  cdfs - ok
18:28:12.0967 0x2ea4  [ 83D2D75E1EFB81B3450C18131443F7DB, F2C686C980D818E797818E75B808E1E0B51B2045840A4BFC32D860B7DB4DFA22 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
18:28:12.0999 0x2ea4  cdrom - ok
18:28:13.0081 0x2ea4  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:28:13.0165 0x2ea4  CertPropSvc - ok
18:28:13.0483 0x2ea4  [ 33B82CF69E41B38A2EC0C3CABDE80D6E, E7331B38232001A4055CE1F6D74AED0F108385DDBD5211006DA8EA932D3B1575 ] cFosSpeed       C:\Windows\system32\DRIVERS\cfosspeed6.sys
18:28:13.0532 0x2ea4  cFosSpeed - ok
18:28:13.0645 0x2ea4  [ 760085908644D2988F1B504C3FCA6959, 65BF8084E14A8755A4DBE8AEAFDC4D3A55F59AEE3D2FED021A202D8B6C02566C ] cFosSpeedS      C:\Program Files\ASRock\XFast LAN\spd.exe
18:28:13.0659 0x2ea4  cFosSpeedS - ok
18:28:13.0794 0x2ea4  [ 7975EABC23768C92B18ED2744A8FD2BE, C81E92B10E2A5F533DC3D2A554F469915DEF8C4F9D9C24D62ACBA8D1A86285AE ] cfwids          C:\Windows\system32\drivers\cfwids.sys
18:28:13.0803 0x2ea4  cfwids - ok
18:28:13.0853 0x2ea4  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
18:28:13.0896 0x2ea4  circlass - ok
18:28:14.0010 0x2ea4  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
18:28:14.0034 0x2ea4  CLFS - ok
18:28:14.0391 0x2ea4  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:28:14.0441 0x2ea4  clr_optimization_v2.0.50727_32 - ok
18:28:14.0604 0x2ea4  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
18:28:14.0797 0x2ea4  clr_optimization_v2.0.50727_64 - ok
18:28:15.0016 0x2ea4  [ 397C2677C25CBE213F3270245A401624, 8121E37108DE7A0402DC5111EBF452F91893B63EECE3AAD9EACF61C40D3FC182 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:28:15.0190 0x2ea4  clr_optimization_v4.0.30319_32 - ok
18:28:15.0221 0x2ea4  [ 29139759FCC4E4E0531ABE2EA82CE646, CFF7B2F4A9B37D343BE18DC40161DC03FA9DB308CAE9E0B3DF1FCDC3EBAC0C08 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
18:28:15.0287 0x2ea4  clr_optimization_v4.0.30319_64 - ok
18:28:15.0334 0x2ea4  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
18:28:15.0376 0x2ea4  CmBatt - ok
18:28:15.0412 0x2ea4  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\DRIVERS\cmdide.sys
18:28:15.0437 0x2ea4  cmdide - ok
18:28:15.0548 0x2ea4  [ CA7720B73446FDDEC5C69519C1174C98, F24796765587CC1D653A04783B1659564F42E600DA3AFA3DED724592B291D033 ] CNG             C:\Windows\system32\Drivers\cng.sys
18:28:15.0582 0x2ea4  CNG - ok
18:28:15.0598 0x2ea4  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
18:28:15.0622 0x2ea4  Compbatt - ok
18:28:15.0747 0x2ea4  [ 59D203C3F46F3CA536ECAC0E084CD887, 0D04D469ADE2AEFAA18920E13A8EC74FDFB7C6827A78BFCD987B66D579BFF846 ] CompFilter64    C:\Windows\system32\DRIVERS\lvbflt64.sys
18:28:15.0757 0x2ea4  CompFilter64 - ok
18:28:15.0813 0x2ea4  [ F26B3A86F6FA87CA360B879581AB4123, 723904362614FE47F6CC0EA0656BA1B47EA32D73BAFB61688A5E5CAE4340B1BF ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
18:28:15.0850 0x2ea4  CompositeBus - ok
18:28:15.0866 0x2ea4  COMSysApp - ok
18:28:15.0916 0x2ea4  [ 44622785D2D2DD8B13E6DC969B6E34A4, 98F3D48A80A6C28776EF77782472428F107C6B4203A82537730679EA5E742521 ] copperhd        C:\Windows\system32\drivers\copperhd.sys
18:28:15.0981 0x2ea4  copperhd - ok
18:28:16.0571 0x2ea4  [ 08F934092E0429BADF88E9F91DB0F61E, 6E9091C006FFFF261DC61C8E9A45219E47C351296E5355FC4B7242F30E1DDFE3 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
18:28:16.0593 0x2ea4  cphs - ok
18:28:16.0940 0x2ea4  [ 3CA734CE373E5675FBC15CA2C45228E5, A6C6E9FABDE5EA18D266DB71C0CC6B51D682116D1898CCB4E9BA730F15C44B32 ] cpudrv64        C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys
18:28:16.0976 0x2ea4  cpudrv64 - ok
18:28:17.0014 0x2ea4  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
18:28:17.0028 0x2ea4  crcdisk - ok
18:28:17.0194 0x2ea4  [ C8BD651E13895B93ED9EC5B4F1DF42BC, D86D6BF0BA3C09B49B3A52C86A7F3B3856A27F79EDD86A8FFA469D9A5F196E8D ] Creative ALchemy AL6 Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
18:28:17.0261 0x2ea4  Creative ALchemy AL6 Licensing Service - detected UnsignedFile.Multi.Generic ( 1 )
18:28:19.0969 0x2ea4  Detect skipped due to KSN trusted
18:28:19.0969 0x2ea4  Creative ALchemy AL6 Licensing Service - ok
18:28:20.0041 0x2ea4  [ C0EAD9F8AB83D41FF07303C75589C2B8, C89CAC39BCD2FA2DCC56D7EE84FF66127BCECCAE400E119FE41BF4C4D769504B ] Creative Audio Engine Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
18:28:20.0083 0x2ea4  Creative Audio Engine Licensing Service - detected UnsignedFile.Multi.Generic ( 1 )
18:28:22.0739 0x2ea4  Detect skipped due to KSN trusted
18:28:22.0739 0x2ea4  Creative Audio Engine Licensing Service - ok
18:28:22.0821 0x2ea4  [ BAF19B633933A9FB4883D27D66C39E9A, 2D8ABB5161736CCCADA67B3E6A8D70B0B5E1E3FE6084561891F394DA191B3439 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:28:22.0977 0x2ea4  CryptSvc - ok
18:28:23.0118 0x2ea4  [ 4A6173C2279B498CD8F57CAE504564CB, FF3CD404FD91EDE38C21780362CE892BFBBC2526B146BEBD139C7413EB29A216 ] CSC             C:\Windows\system32\drivers\csc.sys
18:28:23.0292 0x2ea4  CSC - ok
18:28:23.0396 0x2ea4  [ 873FBF927C06E5CEE04DEC617502F8FD, 8B452ED5D003337E66634EEC3D5C9FBA4D05FF5AE776239F3B769FAA505E729C ] CscService      C:\Windows\System32\cscsvc.dll
18:28:23.0423 0x2ea4  CscService - ok
18:28:23.0515 0x2ea4  [ 18CC77713154B81A5DFB4BA80F2733CB, 274770E549D073590FD5F004362108420F3065C24C2D7B6C25BCC9F4C26F2BDC ] CT20XUT         C:\Windows\system32\drivers\CT20XUT.SYS
18:28:23.0526 0x2ea4  CT20XUT - ok
18:28:23.0608 0x2ea4  [ 18CC77713154B81A5DFB4BA80F2733CB, 274770E549D073590FD5F004362108420F3065C24C2D7B6C25BCC9F4C26F2BDC ] CT20XUT.SYS     C:\Windows\System32\drivers\CT20XUT.SYS
18:28:23.0618 0x2ea4  CT20XUT.SYS - ok
18:28:23.0856 0x2ea4  [ D2B88CB94AEDFC34637CF12722A08C28, 66BF48058374D31D028F5C257980671ADF1E33DC31460220BA9709F5A20D7F65 ] ctac32k         C:\Windows\system32\drivers\ctac32k.sys
18:28:23.0873 0x2ea4  ctac32k - ok
18:28:24.0476 0x2ea4  [ 4CF2C3E2128594691DF31597C9EB80BB, CE9D8FA317363C1ECFEC34A800ED75867B6D453DAF6D860AD807208892277840 ] ctaud2k         C:\Windows\system32\drivers\ctaud2k.sys
18:28:24.0495 0x2ea4  ctaud2k - ok
18:28:25.0107 0x2ea4  [ 5CE3D0E1D1B3832EE052CFC442EEE0FA, 6B9DB2C350140ED547C7A96DB0EAD812E8987176B312C79AF52FC9B23EEEB8C4 ] CTAudSvcService C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
18:28:25.0181 0x2ea4  CTAudSvcService - detected UnsignedFile.Multi.Generic ( 1 )
18:28:27.0625 0x2ea4  Detect skipped due to KSN trusted
18:28:27.0625 0x2ea4  CTAudSvcService - ok
18:28:27.0855 0x2ea4  [ A9007C6A5E20B66B8EE61C07EAC7B49D, F9ACE95CF246F36674F6CBA11A3F6148021A0DAB46698DDC4B4537AA0B6CF78B ] CTEXFIFX        C:\Windows\system32\drivers\CTEXFIFX.SYS
18:28:33.0205 0x2ea4  CTEXFIFX - ok
18:28:33.0527 0x2ea4  [ A9007C6A5E20B66B8EE61C07EAC7B49D, F9ACE95CF246F36674F6CBA11A3F6148021A0DAB46698DDC4B4537AA0B6CF78B ] CTEXFIFX.SYS    C:\Windows\System32\drivers\CTEXFIFX.SYS
18:28:33.0559 0x2ea4  CTEXFIFX.SYS - ok
18:28:33.0576 0x2ea4  [ D75A69D9761735DBEDDD6E8D306370D3, B175493998B50BF1A60C4B2A882D6CB53A539C5835200197080ACCCDB4E30F22 ] CTHWIUT         C:\Windows\system32\drivers\CTHWIUT.SYS
18:28:33.0585 0x2ea4  CTHWIUT - ok
18:28:33.0590 0x2ea4  [ D75A69D9761735DBEDDD6E8D306370D3, B175493998B50BF1A60C4B2A882D6CB53A539C5835200197080ACCCDB4E30F22 ] CTHWIUT.SYS     C:\Windows\System32\drivers\CTHWIUT.SYS
18:28:33.0599 0x2ea4  CTHWIUT.SYS - ok
18:28:33.0634 0x2ea4  [ 2ABC26447CF31D3D8B4AD7F92FA16AF7, 17E1E2C87ADBC40D18DA5B73C736DA4C92F505C8DAC2E43431710A560165B942 ] ctprxy2k        C:\Windows\system32\drivers\ctprxy2k.sys
18:28:33.0642 0x2ea4  ctprxy2k - ok
18:28:33.0717 0x2ea4  [ 4681F3E73E3B83CF93A3A601687B3630, 82A215FA49BA917C39CE32DF51AD3B53B42C875DC09C7E8BD3B53044FFA8D810 ] ctsfm2k         C:\Windows\system32\drivers\ctsfm2k.sys
18:28:33.0739 0x2ea4  ctsfm2k - ok
18:28:33.0981 0x2ea4  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:28:34.0074 0x2ea4  DcomLaunch - ok
18:28:34.0206 0x2ea4  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
18:28:34.0333 0x2ea4  defragsvc - ok
18:28:34.0395 0x2ea4  [ 9C253CE7311CA60FC11C774692A13208, 23507138576DB75AA8B7415140F7B5D8A90CB2661796223870461C721A36AEBF ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
18:28:34.0467 0x2ea4  DfsC - ok
18:28:34.0770 0x2ea4  [ E428DFFA96FAD07D8CA3C9082563A225, F3D2E94A9FF2CF68CC99A8B42B8DEA5E57D46000D1845DC0908224493480C79F ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
18:28:34.0871 0x2ea4  dg_ssudbus - ok
18:28:35.0431 0x2ea4  [ CE3B9562D997F69B330D181A8875960F, 6FEE6622859198C5C13545867EF7CFE8EDC991360E976F792313DAA9C82CC5C8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:28:36.0635 0x2ea4  Dhcp - ok
18:28:36.0692 0x2ea4  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
18:28:36.0755 0x2ea4  discache - ok
18:28:36.0941 0x2ea4  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
18:28:36.0961 0x2ea4  Disk - ok
18:28:37.0098 0x2ea4  [ 85CF424C74A1D5EC33533E1DBFF9920A, 882D5FA0D5EC053D76A0C46A6047A621D607651693CF94E5506219EECCC8D079 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:28:37.0250 0x2ea4  Dnscache - ok
18:28:37.0350 0x2ea4  [ 14452ACDB09B70964C8C21BF80A13ACB, DA0AAAC04626EFF4256D7095FF1DDA1F1B17676E26990C418BDF5090476F2AB4 ] dot3svc         C:\Windows\System32\dot3svc.dll
18:28:37.0666 0x2ea4  dot3svc - ok
18:28:37.0927 0x2ea4  [ 8C2BA6BEA949EE6E68385F5692BAFB94, 1047F473DCE0FB56BEA5C1B7929752C1FBAB5983C8202ABB4EEA48FCD60A353A ] DPS             C:\Windows\system32\dps.dll
18:28:38.0051 0x2ea4  DPS - ok
18:28:38.0234 0x2ea4  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:28:38.0366 0x2ea4  drmkaud - ok
18:28:38.0979 0x2ea4  [ 1ED08A6264C5C92099D6D1DAE5E8F530, 4045AE77859B1DBF13972451972EAAF6F3C97BEA423E9E78F1C2F14330CD47CA ] DrvAgent64      C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS
18:28:39.0011 0x2ea4  DrvAgent64 - ok
18:28:43.0260 0x2ea4  dump_wmimmc - ok
18:28:43.0517 0x2ea4  [ 1633B9ABF52784A1331476397A48CBEF, 697780697C4C55FCCF5FB65C93FB37B3F5A43BF0C59FDBB9EF822D0E993E47BD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:28:43.0650 0x2ea4  DXGKrnl - ok
18:28:43.0899 0x2ea4  EagleX64 - ok
18:28:43.0991 0x2ea4  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
18:28:44.0070 0x2ea4  EapHost - ok
18:28:45.0577 0x2ea4  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
18:28:45.0910 0x2ea4  ebdrv - ok
18:28:46.0250 0x2ea4  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] EFS             C:\Windows\System32\lsass.exe
18:28:46.0358 0x2ea4  EFS - ok
18:28:47.0263 0x2ea4  [ 47C071994C3F649F23D9CD075AC9304A, B7AA2DD6AD14F18A19620F5FB79D50C630D3750E72DD67BF8D105CC4F5CE1D46 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
18:28:47.0551 0x2ea4  ehRecvr - ok
18:28:47.0772 0x2ea4  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
18:28:48.0156 0x2ea4  ehSched - ok
18:28:48.0609 0x2ea4  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
18:28:48.0687 0x2ea4  elxstor - ok
18:28:48.0806 0x2ea4  [ AF7217AE9E9A2493719462C890EB73B3, F0B8102C9515D3E020C1BBC6B60FDE3A2FB56E1BE83FC32FB6CC26DB076C591F ] emupia          C:\Windows\system32\drivers\emupia2k.sys
18:28:48.0851 0x2ea4  emupia - ok
18:28:48.0958 0x2ea4  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\DRIVERS\errdev.sys
18:28:49.0074 0x2ea4  ErrDev - ok
18:28:49.0289 0x2ea4  [ D0542D4590A83339F4AAAC58DF6AF43C, 3C65BB35506384190D94B3F91308BF178D2CA162DC9025CB91AD32F8DB1F46CE ] EuMusDesignVirtualAudioCableWdm C:\Windows\system32\DRIVERS\vrtaucbl.sys
18:28:49.0304 0x2ea4  EuMusDesignVirtualAudioCableWdm - ok
18:28:49.0681 0x2ea4  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
18:28:49.0842 0x2ea4  EventSystem - ok
18:28:50.0009 0x2ea4  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:28:50.0206 0x2ea4  exfat - ok
18:28:50.0230 0x2ea4  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:28:50.0398 0x2ea4  fastfat - ok
18:28:50.0905 0x2ea4  [ D607B2F1BEE3992AA6C2C92C0A2F0855, E22301C8F01DBF0A38A85165959BB070647C996CB1BCD50FDFE3DDDCA427DF2A ] Fax             C:\Windows\system32\fxssvc.exe
18:28:51.0626 0x2ea4  Fax - ok
18:28:52.0000 0x2ea4  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
18:28:52.0216 0x2ea4  fdc - ok
18:28:52.0514 0x2ea4  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
18:28:52.0667 0x2ea4  fdPHost - ok
18:28:53.0226 0x2ea4  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
18:28:53.0443 0x2ea4  FDResPub - ok
18:28:53.0495 0x2ea4  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:28:53.0550 0x2ea4  FileInfo - ok
18:28:53.0799 0x2ea4  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:28:53.0967 0x2ea4  Filetrace - ok
18:28:55.0203 0x2ea4  [ 31AC02203B716CBF8829343C91C8FD75, 6231A842733887C9A0CD513E9AFEF4A35152F4BCC9706EEAB38DC898B10AF9BD ] Fitbit Connect  C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
18:28:55.0268 0x2ea4  Fitbit Connect - ok
18:28:56.0419 0x2ea4  [ 1F63900E2EB00101B9ACA2B7A870704E, 5AFE1FC852937FECE6B33147BD0110436FE97F33BFDA3F69B1F5EDAD6FFC09C6 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
18:28:56.0604 0x2ea4  FLEXnet Licensing Service - ok
18:28:57.0814 0x2ea4  [ 1C3FB052A0BB72EDAED90785C34D6EED, 5300A82D1A79EBA1768F545E73974E3B8CE189AB39CDF905BF42AFA2E497186B ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
18:28:58.0132 0x2ea4  FLEXnet Licensing Service 64 - ok
18:28:58.0151 0x2ea4  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
18:28:58.0299 0x2ea4  flpydisk - ok
18:28:58.0712 0x2ea4  [ F7866AF72ABBAF84B1FA5AA195378C59, 9D522044FE9C18FB3EC327E675737C01F2A8231DDE900421D3A431596946A7F8 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:28:58.0774 0x2ea4  FltMgr - ok
18:28:59.0570 0x2ea4  [ FE95AE537B41A7E2F4CFE353064DC4AF, 1C354CAF4A8FB599BD252133C4C3845624C6F9B692E3F4C68573486FE8236EB3 ] FNETTBOH_305    C:\Windows\system32\drivers\FNETTBOH_305.SYS
18:29:09.0561 0x2ea4  FNETTBOH_305 - ok
18:29:09.0971 0x2ea4  [ 7C3C4B4C951EC1BDFD4F769D05E2CC68, 7B9DA195D3CF0E7BE6BB532CC5D058BC6658B7538B5C5CF09B1A4ABEF1ECACB4 ] FNETURPX        C:\Windows\system32\drivers\FNETURPX.SYS
18:29:09.0979 0x2ea4  FNETURPX - ok
18:29:10.0538 0x2ea4  [ CB5E4B9C319E3C6BB363EB7E58A4A051, C9DCF2C2A6AFE0A0F3E23A265843D0C423C08B2E54702C5B389CF293D9A6BAC5 ] FontCache       C:\Windows\system32\FntCache.dll
18:29:05.0786 0x2ea4  FontCache - ok
18:29:06.0489 0x2ea4  [ 8D89E3131C27FDD6932189CB785E1B7A, AC7DA4C5E6D2E41D1A1DE146E46F034FAF0FB11AD801F070F2D5CD08166E9EB7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:29:06.0732 0x2ea4  FontCache3.0.0.0 - ok
18:29:06.0806 0x2ea4  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:29:06.0846 0x2ea4  FsDepends - ok
18:29:07.0004 0x2ea4  [ D3E3F93D67821A2DB2B3D9FAC2DC2064, 727FAA7E15A20ED3A37668D294ABDE6EAF1C87C34EE283C99EE3303E85001404 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:29:07.0012 0x2ea4  Fs_Rec - ok
18:29:07.0545 0x2ea4  [ 0D015D3584704EC814A58276232F143B, 13290A33FEB4089DBD35259C60FD8BAD648DA2FC9435541FA89C7D9717AA095B ] Futuremark SystemInfo Service C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe
18:29:07.0592 0x2ea4  Futuremark SystemInfo Service - ok
18:29:07.0798 0x2ea4  [ 1F44F8559E61A8306ECC67BB1E168B7C, 5B7CDD4EDF128B48817145357BB36E2107F0D081C26004B44BFF7C63AD29D99B ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:29:07.0819 0x2ea4  fvevol - ok
18:29:08.0611 0x2ea4  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
18:29:08.0627 0x2ea4  gagp30kx - ok
18:29:09.0006 0x2ea4  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:29:09.0013 0x2ea4  GEARAspiWDM - ok
18:29:09.0303 0x2ea4  [ FE5AB4525BC2EC68B9119A6E5D40128B, 088DE37982CEE78A0C1181389A3BFF1E352DF504074B3E8F3EA244DB271BF216 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:29:09.0410 0x2ea4  gpsvc - ok
18:29:09.0730 0x2ea4  [ 69A60F8DDF90F462E289525E3BBC7ADC, BC53CCC73D57B315DA96543F818D97F1BF1359966EF1220D91F0DD96684AA866 ] ha20x2k         C:\Windows\system32\drivers\ha20x2k.sys
18:29:10.0978 0x2ea4  ha20x2k - ok
18:29:11.0927 0x2ea4  [ 69A60F8DDF90F462E289525E3BBC7ADC, BC53CCC73D57B315DA96543F818D97F1BF1359966EF1220D91F0DD96684AA866 ] ha20x2k         C:\Windows\system32\drivers\ha20x2k.sys
18:29:11.0964 0x2ea4  ha20x2k - ok
18:29:12.0336 0x2ea4  [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi         C:\Windows\system32\DRIVERS\hamachi.sys
18:29:12.0343 0x2ea4  hamachi - ok
18:29:13.0187 0x2ea4  [ 5D943A7CDD83F533D41A22E882677C6E, E9CD581EC985B3F765E5E890A02B2D8FE4E5345063969831278CB3876DFF1273 ] Hamachi2Svc     C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
18:29:13.0242 0x2ea4  Hamachi2Svc - ok
18:29:13.0292 0x2ea4  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
18:29:13.0603 0x2ea4  hcw85cir - ok
18:29:14.0091 0x2ea4  [ 6410F6F415B2A5A9037224C41DA8BF12, 5B8452BC49FDA2215281D27B22FA9BE46B0460F51C4DC70E58B687CFB541F3A5 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:29:14.0175 0x2ea4  HdAudAddService - ok
18:29:14.0546 0x2ea4  [ 0A49913402747A0B67DE940FB42CBDBB, 61A45DBDCEB4A2D5C3C28F6BC8C5ADC51D0240A7553DF44BCC4355FC06F72B83 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
18:29:14.0572 0x2ea4  HDAudBus - ok
18:29:16.0313 0x2ea4  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
18:29:16.0357 0x2ea4  HidBatt - ok
18:29:16.0497 0x2ea4  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
18:29:17.0263 0x2ea4  HidBth - ok
18:29:17.0305 0x2ea4  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
18:29:17.0569 0x2ea4  HidIr - ok
18:29:17.0644 0x2ea4  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
18:29:17.0959 0x2ea4  hidserv - ok
18:29:18.0073 0x2ea4  [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
18:29:18.0124 0x2ea4  HidUsb - ok
18:29:18.0819 0x2ea4  [ 29F981739E50305128022CBE10B3659C, 25060937145B0DCA8CD088E78993BFEF1430CDDFF433E606AFC93993CBBF4B3E ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
18:29:18.0837 0x2ea4  HipShieldK - ok
18:29:18.0949 0x2ea4  [ EFA58EDE58DD74388FFD04CB32681518, 76D81F9BC1A4D85A779B79DEC23B79F1568AA236CD49247414093CDC1FCC150F ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:29:19.0105 0x2ea4  hkmsvc - ok
18:29:19.0276 0x2ea4  [ 046B2673767CA626E2CFB7FDF735E9E8, 9C932DCC5DE9B1919AB38C01D76AD7BBAF491DE6D158662407974748BC0B4C6C ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:29:19.0438 0x2ea4  HomeGroupListener - ok
18:29:19.0550 0x2ea4  [ 06A7422224D9865A5613710A089987DF, EF604B4B6918D3FDC8E90ED9004E6E7340E0F399C214C65CCE3A7C8C576FA1C0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:29:19.0620 0x2ea4  HomeGroupProvider - ok
18:29:19.0882 0x2ea4  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] HomeNetSvc      C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
18:29:19.0898 0x2ea4  HomeNetSvc - ok
18:29:20.0376 0x2ea4  [ 0886D440058F203EBA0E1825E4355914, BC49C4CEFE324A08C864A4BF4FEA9A70151FAB7CC30BDC28344F3FFD2F500070 ] HpSAMD          C:\Windows\system32\DRIVERS\HpSAMD.sys
18:29:20.0450 0x2ea4  HpSAMD - ok
18:29:20.0569 0x2ea4  [ CEE049CAC4EFA7F4E1E4AD014414A5D4, 433AE2D845850F1D7A48275BBD87B3F0E7DD48F2282C727C4B777ECD92CC331D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:29:20.0632 0x2ea4  HTTP - ok
18:29:20.0700 0x2ea4  [ F17766A19145F111856378DF337A5D79, FC1633FB865A5324EBCBE5F97D297B899FABBDD965D862C2EFC743CD36F47E62 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:29:20.0709 0x2ea4  hwpolicy - ok
18:29:20.0865 0x2ea4  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
18:29:20.0909 0x2ea4  i8042prt - ok
18:29:21.0060 0x2ea4  [ B75E45C564E944A2657167D197AB29DA, 622EA73F4D9CAE17628C18148FB241817A0AE6D80A74B099204ED27C1A750B24 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:29:21.0087 0x2ea4  iaStorV - ok
18:29:21.0174 0x2ea4  [ 55004F2386405B28471E09C2373ED0E0, 4B706A725EC17650CCFE0D0D944FC187B4C943D8241B847F2B8C65A3A1145885 ] ICCWDT          C:\Windows\system32\DRIVERS\ICCWDT.sys
18:29:21.0182 0x2ea4  ICCWDT - ok
18:29:21.0396 0x2ea4  [ 2F2BE70D3E02B6FA877921AB9516D43C, E04255EE4BD95FC1539EB1EB9F702B039F65993D31A4531DA487274543EF5226 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
18:29:21.0432 0x2ea4  idsvc - ok
18:29:22.0182 0x2ea4  [ 8C44E6B688790E2AD3846C97661C54F1, CB487D167EDA3C1E30BD5FB8F98C15EB9E75A6FB793009C2F1BBCAAB4285F772 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:29:22.0434 0x2ea4  igfx - ok
18:29:22.0509 0x2ea4  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
18:29:22.0534 0x2ea4  iirsp - ok
18:29:22.0665 0x2ea4  [ C5B4683680DF085B57BC53E5EF34861F, 9C06517DFCB3ED7BB1166F7EB6CCC8713E6B68283C75420C0EDC182094AA1B8F ] IKEEXT          C:\Windows\System32\ikeext.dll
18:29:22.0774 0x2ea4  IKEEXT - ok
18:29:22.0793 0x2ea4  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\DRIVERS\intelide.sys
18:29:22.0811 0x2ea4  intelide - ok
18:29:22.0920 0x2ea4  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
18:29:22.0965 0x2ea4  intelppm - ok
18:29:23.0045 0x2ea4  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
18:29:23.0360 0x2ea4  IPBusEnum - ok
18:29:23.0427 0x2ea4  [ 722DD294DF62483CECAAE6E094B4D695, 41ABB42EF969EA8A84B546908EBBDC2411D964DE101CE6DD3D7ECF109085E0C0 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:29:23.0549 0x2ea4  IpFilterDriver - ok
18:29:23.0695 0x2ea4  [ F8E058D17363EC580E4B7232778B6CB5, 02352919F349C57930A0B032FBDC45327FB473D310DE7AC721F4694FDE7D21FB ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:29:23.0875 0x2ea4  iphlpsvc - ok
18:29:23.0900 0x2ea4  [ E2B4A4494DB7CB9B89B55CA268C337C5, C59BC4AA03D10647641EC7533F78BC7E2EA6FC48B8B2CF1A49B5148EF40A90FB ] IPMIDRV         C:\Windows\system32\DRIVERS\IPMIDrv.sys
18:29:23.0935 0x2ea4  IPMIDRV - ok
18:29:23.0971 0x2ea4  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:29:24.0029 0x2ea4  IPNAT - ok
18:29:24.0228 0x2ea4  [ 6BF622C46721CF6E2B35E868F319E6EB, 926D3C6334D8AF8A248A361D1F7C0A655835572ED8AC6F1D7932E1FA7A26B50A ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
18:29:24.0257 0x2ea4  iPod Service - ok
18:29:24.0286 0x2ea4  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:29:24.0335 0x2ea4  IRENUM - ok
18:29:24.0367 0x2ea4  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\DRIVERS\isapnp.sys
18:29:24.0388 0x2ea4  isapnp - ok
18:29:24.0414 0x2ea4  [ FA4D2557DE56D45B0A346F93564BE6E1, 2827EC3582FF59FFD55BBD4A4F0DDFFEAD4F2537FA043B3A69904FE920B1619C ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
18:29:24.0442 0x2ea4  iScsiPrt - ok
18:29:24.0515 0x2ea4  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
18:29:24.0523 0x2ea4  kbdclass - ok
18:29:24.0565 0x2ea4  [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
18:29:24.0596 0x2ea4  kbdhid - ok
18:29:24.0606 0x2ea4  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] KeyIso          C:\Windows\system32\lsass.exe
18:29:24.0616 0x2ea4  KeyIso - ok
18:29:24.0653 0x2ea4  [ 4F4B5FDE429416877DE7143044582EB5, A28FFEA078DBD91F3CC28088810EEEB727107B3F0F48370B44D87DC8F8C55B99 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:29:24.0804 0x2ea4  KSecDD - ok
18:29:24.0821 0x2ea4  [ 6F40465A44ECDC1731BEFAFEC5BDD03C, 317334D414D0AF73CB4D9CA11EA80C641E786760B8800F2795D0CB38378DBB80 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:29:24.0895 0x2ea4  KSecPkg - ok
18:29:24.0958 0x2ea4  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:29:24.0984 0x2ea4  ksthunk - ok
18:29:25.0028 0x2ea4  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:29:25.0082 0x2ea4  KtmRm - ok
18:29:25.0150 0x2ea4  [ 81F1D04D4D0E433099365127375FD501, C2A81B5A482C974E8108806486EC28CB2D81400D42639682FE7B7A9BDF14BA9B ] LanmanServer    C:\Windows\System32\srvsvc.dll
18:29:25.0228 0x2ea4  LanmanServer - ok
18:29:25.0263 0x2ea4  [ 27026EAC8818E8A6C00A1CAD2F11D29A, A12858CCB3B2419D66C667A46B106DA7A7BA97FFFA9634BFAE95DDF193C430D5 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:29:25.0319 0x2ea4  LanmanWorkstation - ok
18:29:25.0391 0x2ea4  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:29:25.0429 0x2ea4  lltdio - ok
18:29:25.0506 0x2ea4  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:29:25.0564 0x2ea4  lltdsvc - ok
18:29:25.0721 0x2ea4  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:29:25.0865 0x2ea4  lmhosts - ok
18:29:26.0354 0x2ea4  [ D5F9C50082FA5F82C35922998B3DAD6E, 4957FB1888EC69E16E6D019F2D984EE810F8532FAB504B30D32518E4D3F01FDB ] LMIGuardianSvc  C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
18:29:26.0398 0x2ea4  LMIGuardianSvc - ok
18:29:27.0212 0x2ea4  [ 9AD4BEE2FE76D4CA39AC969B617E94FB, 1DE5FC59CDA5C7D63C9C60B9FC70A09F755196DFA25E8FAC0FBF262C44731CF0 ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
18:29:27.0229 0x2ea4  LMS - ok
18:29:27.0266 0x2ea4  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
18:29:27.0284 0x2ea4  LSI_FC - ok
18:29:27.0335 0x2ea4  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
18:29:27.0350 0x2ea4  LSI_SAS - ok
18:29:27.0377 0x2ea4  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:29:27.0387 0x2ea4  LSI_SAS2 - ok
18:29:27.0439 0x2ea4  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:29:27.0458 0x2ea4  LSI_SCSI - ok
18:29:27.0510 0x2ea4  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:29:27.0548 0x2ea4  luafv - ok
18:29:27.0674 0x2ea4  [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64          C:\Windows\system32\DRIVERS\lvrs64.sys
18:29:27.0687 0x2ea4  LVRS64 - ok
18:29:28.0928 0x2ea4  [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64         C:\Windows\system32\DRIVERS\lvuvc64.sys
18:29:29.0035 0x2ea4  LVUVC64 - ok
18:29:29.0394 0x2ea4  [ F928E5E72BBA15DD0CE9A26E0413D236, D63EFA1408084F524464729C2F3BE16550E07ACE2BF8A00699A8438079AD381B ] McAfee SiteAdvisor Service C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
18:29:29.0405 0x2ea4  McAfee SiteAdvisor Service - ok
18:29:29.0843 0x2ea4  [ 96E7AA538AB0EDECCAB3862BA4B66232, 8AF460093B4DC1FD81C4508A57B6A80A7FB2E1818A3405506B8DB5B521615FB6 ] McAPExe         C:\Program Files\McAfee\MSC\McAPExe.exe
18:29:29.0869 0x2ea4  McAPExe - ok
18:29:30.0369 0x2ea4  [ 1704A8189EE5580AB147CFD25C5C8770, DFA076FD36B5CC844D4BE3B865E9A1F809E14CCB1D78D82A2D8D8EE38210E6EB ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
18:29:30.0381 0x2ea4  McComponentHostService - ok
18:29:30.0459 0x2ea4  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McMPFSvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
18:29:30.0472 0x2ea4  McMPFSvc - ok
18:29:30.0583 0x2ea4  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McNaiAnn        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
18:29:30.0596 0x2ea4  McNaiAnn - ok
18:29:30.0722 0x2ea4  [ 63D93A440E7AC015D85B9A3DA0C1BBAF, 849A13E91B041DEC2A47F5BE65ADBA6CAC8AF01675D0D8E13730724B54B4DD15 ] McODS           C:\Program Files\McAfee\VirusScan\mcods.exe
18:29:30.0740 0x2ea4  McODS - ok
18:29:30.0805 0x2ea4  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] mcpltsvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
18:29:30.0818 0x2ea4  mcpltsvc - ok
18:29:30.0890 0x2ea4  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McProxy         C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
18:29:30.0903 0x2ea4  McProxy - ok
18:29:30.0977 0x2ea4  [ F4BE81C919FC0A012F5357E3911D4B67, 8FC3D787A1FACE8022D9BF1A4B024E313F8FD7535696D5E868DC2839E3B76E72 ] McPvDrv         C:\Windows\system32\drivers\McPvDrv.sys
18:29:30.0985 0x2ea4  McPvDrv - ok
18:29:31.0043 0x2ea4  [ F84C8F1000BC11E3B7B23CBD3BAFF111, BB4C4FFE3F6C9E5C16C06F6F666F177B94E1CF878397BCC0BDAF6EB3341AAED8 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
18:29:31.0076 0x2ea4  Mcx2Svc - ok
18:29:31.0114 0x2ea4  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
18:29:31.0137 0x2ea4  megasas - ok
18:29:31.0181 0x2ea4  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
18:29:31.0210 0x2ea4  MegaSR - ok
18:29:31.0262 0x2ea4  [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
18:29:31.0271 0x2ea4  MEIx64 - ok
18:29:31.0391 0x2ea4  [ 10947232B5F652B282DD57F845875896, 4881CA76924AB55D93D727E3CDDD25A74F77EA0B62E4071ADBE7C649B3254E43 ] mfeapfk         C:\Windows\system32\drivers\mfeapfk.sys
18:29:31.0400 0x2ea4  mfeapfk - ok
18:29:31.0547 0x2ea4  [ A611EDB749D446A5F7D2DE8D5CCBC4AE, A9D2409872A578C83A610B6E91C68C30813205C43D3FDD94D8A1893E80DAD500 ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
18:29:31.0559 0x2ea4  mfeavfk - ok
18:29:31.0924 0x2ea4  [ BBC716D161B412F3298C105B9382864F, EB678BE0AC52268CA1AAFDD5D7ED2216DA6FA8C98735AC39983AFAF14F029EE5 ] mfecore         C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
18:29:32.0184 0x2ea4  mfecore - ok
18:29:32.0423 0x2ea4  [ 1D57A3BCBFE09980993F2899E95ECF1A, B2C5A72B316D18A94D4B1939E135CF21C72198102B68CE5C5D63B4E1C766635F ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
18:29:32.0494 0x2ea4  mfefire - ok
18:29:32.0798 0x2ea4  [ 45457CB3601D054D70DBC372BBE2A8E8, 16F66921DF0059595EC8CEF13D4C21C27146360236877DCC2F1887A9D0F8E996 ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
18:29:32.0815 0x2ea4  mfefirek - ok
18:29:33.0016 0x2ea4  [ DD264F5A7EE58C48BD5085563C9E8191, B36781946865851F75A585D6874421D67DA8986415C3E164C92240189E567572 ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
18:29:33.0041 0x2ea4  mfehidk - ok
18:29:33.0293 0x2ea4  [ 57EC9D22D989DD67E91A51BE082B1083, 4DF70334ACF3B34403E8C4B73B90298B465C481FD79EFDA756B147642CC7E27C ] mfencbdc        C:\Windows\system32\DRIVERS\mfencbdc.sys
18:29:33.0308 0x2ea4  mfencbdc - ok
18:29:33.0333 0x2ea4  [ FCEEE953517CA72E4238954467CD63E8, B83FCF5CD882D9325729A1B347BAF741E51BC10B3ED0A47AF977D47BB68B19B5 ] mfencrk         C:\Windows\system32\DRIVERS\mfencrk.sys
18:29:33.0345 0x2ea4  mfencrk - ok
18:29:33.0443 0x2ea4  [ BC0DFA8EBC3DD572834B640DC22847B4, F9391ECB65D8F4FF349240BE1400ED8F7D9094B5A45EF546C8C39FF3ED2F0D6F ] mfevtp          C:\Windows\system32\mfevtps.exe
18:29:33.0454 0x2ea4  mfevtp - ok
18:29:33.0557 0x2ea4  [ EAE62CCDFB34E27D2E0CF9943695F50E, 27BA32E1631EDF939D8FEAAA6AB5CEE4844B58FCA5E9F349029330D78CC7CA50 ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
18:29:33.0570 0x2ea4  mfewfpk - ok
18:29:33.0599 0x2ea4  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
18:29:33.0870 0x2ea4  MMCSS - ok
18:29:34.0272 0x2ea4  [ 8CC001C65C31633171991FA72A551D43, F256EED72C712C2B5C1DB6DE31DA52609EC0E47EB869E7BC0B70B286593A96DB ] MOBKbackup      C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
18:29:34.0337 0x2ea4  MOBKbackup - ok
18:29:34.0486 0x2ea4  [ 3800C23D0D90C59AAFCDEFDC82B5C4AF, D949CACB9EF881194B06A961071938F57F3AD57EBB5440B6E7F0B340757641BD ] MOBKFilter      C:\Windows\system32\DRIVERS\MOBK.sys
18:29:34.0494 0x2ea4  MOBKFilter - ok
18:29:34.0515 0x2ea4  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
18:29:34.0557 0x2ea4  Modem - ok
18:29:34.0735 0x2ea4  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
18:29:34.0751 0x2ea4  monitor - ok
18:29:34.0821 0x2ea4  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
18:29:34.0829 0x2ea4  mouclass - ok
18:29:34.0932 0x2ea4  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
18:29:34.0953 0x2ea4  mouhid - ok
18:29:35.0021 0x2ea4  [ 791AF66C4D0E7C90A3646066386FB571, BF67643099494AEADDDC85E4D97AFF1017806A1DF554F9BE6C864FFECC9EAF42 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:29:35.0040 0x2ea4  mountmgr - ok
18:29:35.0148 0x2ea4  [ 338037EFA0E8E8699B2667D57B751574, 59E0D39806D0C4EB57913AA013242837FD39AD378726AEE42D250CBA87C1C3BF ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:29:35.0158 0x2ea4  MozillaMaintenance - ok
18:29:35.0207 0x2ea4  [ 609D1D87649ECC19796F4D76D4C15CEA, 5369F4C83FBAE9C4CFB9ACD36F07479E3F3FD784D79B82AE8D95B818B9F9CE00 ] mpio            C:\Windows\system32\DRIVERS\mpio.sys
18:29:35.0236 0x2ea4  mpio - ok
18:29:35.0245 0x2ea4  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:29:35.0283 0x2ea4  mpsdrv - ok
18:29:35.0338 0x2ea4  [ AECAB449567D1846DAD63ECE49E893E3, 7A67A16A3E04574B7CAD097632ABA9B361BBEFDD6B36B7B8E3A1996EC529C2DC ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:29:35.0401 0x2ea4  MpsSvc - ok
18:29:35.0429 0x2ea4  [ 30524261BB51D96D6FCBAC20C810183C, 19598A9CD0EAAE4ACBF1069E721AB2853452F33FCFB3B5113F023A88A90BF42D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:29:35.0499 0x2ea4  MRxDAV - ok
18:29:35.0561 0x2ea4  [ 040D62A9D8AD28922632137ACDD984F2, D9457BDA88C2E3AA4E716C0657B77A4A3E212328CDABD5C18279B6440E1C1594 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:29:35.0613 0x2ea4  mrxsmb - ok
18:29:35.0682 0x2ea4  [ F0067552F8F9B33D7C59403AB808A3CB, 698B63528E1943BB4253BF7578DC128AA824C71BD04FF0521277E68B20656C02 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:29:35.0727 0x2ea4  mrxsmb10 - ok
18:29:35.0777 0x2ea4  [ 3C142D31DE9F2F193218A53FE2632051, 026B3A932A95D5160B64E470FC414F3D388D429317D5EAEA2D476F715C4CAE75 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:29:35.0789 0x2ea4  mrxsmb20 - ok
18:29:35.0901 0x2ea4  [ 5C37497276E3B3A5488B23A326A754B7, 9982FCDAFB963868EB93A4DEF811A3167488EB5246BAC3F4AE960506FDF63967 ] msahci          C:\Windows\system32\DRIVERS\msahci.sys
18:29:36.0033 0x2ea4  msahci - ok
18:29:36.0470 0x2ea4  [ 8D27B597229AED79430FB9DB3BCBFBD0, 3D58E08B47E8AE419D405BF263929DFA6F2F5F0C2D79FD8D6F2CED6452F6F248 ] msdsm           C:\Windows\system32\DRIVERS\msdsm.sys
18:29:36.0559 0x2ea4  msdsm - ok
18:29:36.0570 0x2ea4  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
18:29:36.0625 0x2ea4  MSDTC - ok
18:29:36.0678 0x2ea4  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:29:36.0788 0x2ea4  Msfs - ok
18:29:36.0869 0x2ea4  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:29:36.0920 0x2ea4  mshidkmdf - ok
18:29:36.0933 0x2ea4  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\DRIVERS\msisadrv.sys
18:29:36.0941 0x2ea4  msisadrv - ok
18:29:37.0038 0x2ea4  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:29:37.0097 0x2ea4  MSiSCSI - ok
18:29:37.0100 0x2ea4  msiserver - ok
18:29:37.0317 0x2ea4  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] MSK80Service    C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
18:29:37.0331 0x2ea4  MSK80Service - ok
18:29:37.0381 0x2ea4  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:29:37.0436 0x2ea4  MSKSSRV - ok
18:29:37.0454 0x2ea4  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:29:37.0517 0x2ea4  MSPCLOCK - ok
18:29:37.0535 0x2ea4  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:29:37.0578 0x2ea4  MSPQM - ok
18:29:37.0635 0x2ea4  [ 89CB141AA8616D8C6A4610FA26C60964, 76E72F6A0348EDC58A8E6F88C7F024B8B077670400BD5A833811DAFCF9F517CC ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:29:37.0663 0x2ea4  MsRPC - ok
18:29:37.0711 0x2ea4  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
18:29:37.0719 0x2ea4  mssmbios - ok
18:29:37.0747 0x2ea4  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:29:37.0919 0x2ea4  MSTEE - ok
18:29:37.0939 0x2ea4  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
18:29:37.0962 0x2ea4  MTConfig - ok
18:29:38.0003 0x2ea4  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
18:29:38.0011 0x2ea4  Mup - ok
18:29:38.0068 0x2ea4  [ 4987E079A4530FA737A128BE54B63B12, 27E51CC7D4D90DC4397575491DE7EFE15808709F097E2828E46AA73C771A47A4 ] napagent        C:\Windows\system32\qagentRT.dll
18:29:38.0110 0x2ea4  napagent - ok
18:29:38.0190 0x2ea4  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:29:38.0231 0x2ea4  NativeWifiP - ok
18:29:38.0527 0x2ea4  [ CAD515DBD07D082BB317D9928CE8962C, 7AFA6D6154AC68F9FCC37B7B3324F7A170AE91035805026445F24F6EB4FB7F2E ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:29:38.0591 0x2ea4  NDIS - ok
18:29:38.0657 0x2ea4  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:29:38.0952 0x2ea4  NdisCap - ok
18:29:38.0987 0x2ea4  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:29:39.0037 0x2ea4  NdisTapi - ok
18:29:39.0063 0x2ea4  [ F105BA1E22BF1F2EE8F005D4305E4BEC, 723DA09E13D0F50634D9F114590B837D16F7B36AA0DA2AB8F8C2D9991624EA8F ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:29:39.0104 0x2ea4  Ndisuio - ok
18:29:39.0121 0x2ea4  [ 557DFAB9CA1FCB036AC77564C010DAD3, 8A21B342AFE5B498FB62EDDC81A3ADA9570677B7A382666090E0ABB1F85FEF29 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:29:39.0147 0x2ea4  NdisWan - ok
18:29:39.0170 0x2ea4  [ 659B74FB74B86228D6338D643CD3E3CF, 83D741B7A2A204A661A80C226212749F514800060D05E217FA6DC14D62F38F80 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:29:39.0217 0x2ea4  NDProxy - ok
18:29:39.0238 0x2ea4  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:29:39.0286 0x2ea4  NetBIOS - ok
18:29:39.0320 0x2ea4  [ 9162B273A44AB9DCE5B44362731D062A, 5A1BA6DBFEBB2618DC9D4CC55FA071C170A5D22FFB24CE62DD5B3210D8B45F39 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:29:39.0371 0x2ea4  NetBT - ok
18:29:39.0422 0x2ea4  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] Netlogon        C:\Windows\system32\lsass.exe
18:29:39.0432 0x2ea4  Netlogon - ok
18:29:39.0497 0x2ea4  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
18:29:39.0530 0x2ea4  Netman - ok
18:29:40.0165 0x2ea4  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetMsmqActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:29:40.0242 0x2ea4  NetMsmqActivator - ok
18:29:40.0287 0x2ea4  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetPipeActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:29:40.0298 0x2ea4  NetPipeActivator - ok
18:29:40.0389 0x2ea4  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
18:29:40.0441 0x2ea4  netprofm - ok
18:29:40.0470 0x2ea4  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetTcpActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:29:40.0481 0x2ea4  NetTcpActivator - ok
18:29:40.0493 0x2ea4  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetTcpPortSharing c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:29:40.0504 0x2ea4  NetTcpPortSharing - ok
18:29:40.0552 0x2ea4  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
18:29:40.0585 0x2ea4  nfrd960 - ok
18:29:40.0674 0x2ea4  [ D9A0CE66046D6EFA0C61BAA885CBA0A8, 06C3331C7F3EE0E0B95E8302CB80315E965587C4D6231785B8ACF3FAE4731FAF ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:29:40.0726 0x2ea4  NlaSvc - ok
18:29:40.0744 0x2ea4  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:29:40.0795 0x2ea4  Npfs - ok
18:29:40.0863 0x2ea4  npggsvc - ok
18:29:40.0907 0x2ea4  NPPTNT2 - ok
18:29:40.0963 0x2ea4  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
18:29:41.0020 0x2ea4  nsi - ok
18:29:41.0041 0x2ea4  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:29:41.0088 0x2ea4  nsiproxy - ok
18:29:41.0340 0x2ea4  [ 9A6089B056EA1B83B36424FC9D0A300E, EA60282C5A32B497921B568C1FE735F5BDB9D954DDC4E609F7F3CAE5ED823CEC ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:29:41.0542 0x2ea4  Ntfs - ok
18:29:41.0574 0x2ea4  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
18:29:41.0643 0x2ea4  Null - ok
18:29:41.0738 0x2ea4  [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
18:29:41.0749 0x2ea4  NVHDA - ok
18:29:43.0334 0x2ea4  [ 757ACE4D4C9FF0571F86AA5D586B45E8, E7F23CC1DE26E2DAA690B78B05FC001EE0051F0ED9B9BCE9E7FA4E9684D4F3D4 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:29:43.0558 0x2ea4  nvlddmkm - ok
18:29:44.0160 0x2ea4  [ 6822CA012769844EB14FD6634F22C4F6, 967D4CAB760CF19BDF2199AFF9FF9E075A244BB0CB060EF06F7C43A9639433FF ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
18:29:44.0196 0x2ea4  NvNetworkService - ok
18:29:44.0329 0x2ea4  [ A4D9C9A608A97F59307C2F2600EDC6A4, D786F4CA2D10BAC31CE14A338C442F7027D4BB2E955AB99BC44C2F241D383BBE ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:29:44.0349 0x2ea4  nvraid - ok
18:29:44.0442 0x2ea4  [ 6C1D5F70E7A6A3FD1C90D840EDC048B9, 8D5337742A0F5B04D636C163CE77D4A9B3684CF81170026912A402513B44BA77 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:29:44.0465 0x2ea4  nvstor - ok
18:29:46.0764 0x2ea4  [ E13F48379AF383046E55C0C87C11CF63, 47C947FEE2532BFF9A0007A786EFE87C6FCEB61C875821FB17AFDCF8F59507E5 ] NvStreamSvc     C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
18:29:47.0203 0x2ea4  NvStreamSvc - ok
18:29:48.0119 0x2ea4  [ 1C7CC708AC4A02A3BE8915539780534A, 0EBDE100880963BF1EC05002BA244CA7700693E958D1974CDD2AC3927D93224F ] nvsvc           C:\Windows\system32\nvvsvc.exe
18:29:48.0160 0x2ea4  nvsvc - ok
18:29:48.0396 0x2ea4  [ 50A7C3FEA78D11B546EA9B0C25FBC6AB, E91313580D631473801E0995AF8A1FD43EC47FF7709ADEF3DCD80D7BC25878D7 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
18:29:48.0404 0x2ea4  nvvad_WaveExtensible - ok
18:29:48.0438 0x2ea4  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\DRIVERS\nv_agp.sys
18:29:48.0476 0x2ea4  nv_agp - ok
18:29:48.0504 0x2ea4  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
18:29:48.0538 0x2ea4  ohci1394 - ok
18:29:48.0586 0x2ea4  [ 47ED757ABB7885FA671D20C162EF4E77, 890BB04C42699A9F035CF37D719B2D1492E29884409591A1D62F693857EF8A93 ] ossrv           C:\Windows\system32\drivers\ctoss2k.sys
18:29:48.0597 0x2ea4  ossrv - ok
18:29:48.0698 0x2ea4  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:29:48.0816 0x2ea4  p2pimsvc - ok
18:29:48.0929 0x2ea4  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
18:29:49.0003 0x2ea4  p2psvc - ok
18:29:49.0103 0x2ea4  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
18:29:49.0173 0x2ea4  Parport - ok
18:29:49.0212 0x2ea4  [ 90061B1ACFE8CCAA5345750FFE08D8B8, 76309683FFDF380AF9C6E1D9A52E46B011A0BF1026D747181D01F3312B7541C7 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:29:49.0229 0x2ea4  partmgr - ok
18:29:49.0322 0x2ea4  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:29:49.0387 0x2ea4  PcaSvc - ok
18:29:49.0498 0x2ea4  [ F36F6504009F2FB0DFD1B17A116AD74B, 33A4C217F7DC5E5B7E1B6CF335327C8FE6CC5D6D048D420252965574CAD83918 ] pci             C:\Windows\system32\DRIVERS\pci.sys
18:29:49.0529 0x2ea4  pci - ok
18:29:49.0575 0x2ea4  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\DRIVERS\pciide.sys
18:29:49.0583 0x2ea4  pciide - ok
18:29:49.0650 0x2ea4  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
18:29:49.0674 0x2ea4  pcmcia - ok
18:29:49.0741 0x2ea4  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:29:49.0750 0x2ea4  pcw - ok
18:29:50.0237 0x2ea4  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:29:50.0273 0x2ea4  PEAUTH - ok
18:29:50.0756 0x2ea4  [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
18:29:50.0884 0x2ea4  PeerDistSvc - ok
18:29:53.0101 0x2ea4  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:29:53.0132 0x2ea4  PerfHost - ok
18:29:53.0208 0x2ea4  [ 557E9A86F65F0DE18C9B6751DFE9D3F1, 630EE5A80335929517A22D130C75CBCE882B92978372A6F36C30B9D353C7BB07 ] pla             C:\Windows\system32\pla.dll
18:29:53.0299 0x2ea4  pla - ok
18:29:53.0344 0x2ea4  [ 98B1721B8718164293B9701B98C52D77, 27F5F00D4AA394D4D8D0A0062EDC3F944B603E07CAAEDC5CC959BA1E8C208C2A ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:29:53.0386 0x2ea4  PlugPlay - ok
18:29:53.0440 0x2ea4  PnkBstrA - ok
18:29:53.0525 0x2ea4  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:29:53.0602 0x2ea4  PNRPAutoReg - ok
18:29:53.0644 0x2ea4  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:29:53.0661 0x2ea4  PNRPsvc - ok
18:29:53.0724 0x2ea4  [ 166EB40D1F5B47E615DE3D0FFFE5F243, E32BCCA0D25CD631C221986EBE9F6C54BF2F12DE1672D69CCC4E22AD07D0525A ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:29:54.0107 0x2ea4  PolicyAgent - ok
18:29:54.0261 0x2ea4  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
18:29:54.0301 0x2ea4  Power - ok
18:29:54.0359 0x2ea4  [ 27CC19E81BA5E3403C48302127BDA717, C580FC552DDF9C163FC325B38B05C06FFD696495E4C01514BCD6346CFE4F0B40 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
18:29:54.0411 0x2ea4  PptpMiniport - ok
18:29:54.0459 0x2ea4  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
18:29:54.0545 0x2ea4  Processor - ok
18:29:54.0669 0x2ea4  [ 97293447431311C06703368AD0F6C4BE, 302A3CA8F6961717D95469B20A8A71954D4ECFCDF4638238D3D44AAE5A8D9B8B ] ProfSvc         C:\Windows\system32\profsvc.dll
18:29:54.0784 0x2ea4  ProfSvc - ok
18:29:54.0805 0x2ea4  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] ProtectedStorage C:\Windows\system32\lsass.exe
18:29:54.0815 0x2ea4  ProtectedStorage - ok
18:29:54.0906 0x2ea4  [ EE992183BD8EAEFD9973F352E587A299, 6B28930FAA0A54FAADDAF2231553D7F5D45C7227454C6D49A86DFC9EF6BC9043 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:29:55.0026 0x2ea4  Psched - ok
18:29:55.0080 0x2ea4  [ 87B04878A6D59D6C79251DC960C674C1, 3EB8DB0624E646F0A65D0381408D35CF9FDC5ABFC30DF6431F4070A8EB68447C ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
18:29:55.0099 0x2ea4  PxHlpa64 - ok
18:29:55.0216 0x2ea4  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
18:29:55.0268 0x2ea4  ql2300 - ok
18:29:55.0318 0x2ea4  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
18:29:55.0351 0x2ea4  ql40xx - ok
18:29:55.0403 0x2ea4  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
18:29:55.0435 0x2ea4  QWAVE - ok
18:29:55.0473 0x2ea4  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:29:55.0511 0x2ea4  QWAVEdrv - ok
18:29:55.0550 0x2ea4  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:29:55.0609 0x2ea4  RasAcd - ok
18:29:55.0683 0x2ea4  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
18:29:55.0708 0x2ea4  RasAgileVpn - ok
18:29:55.0761 0x2ea4  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
18:29:55.0872 0x2ea4  RasAuto - ok
18:29:55.0919 0x2ea4  [ 87A6E852A22991580D6D39ADC4790463, 0F757C6E5B57DFC239CE1BEC88EF16C07E7F1A40D629A9A6DF3CB6B88FB9E642 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
18:29:55.0975 0x2ea4  Rasl2tp - ok
18:29:56.0174 0x2ea4  [ 47394ED3D16D053F5906EFE5AB51CC83, FE5D1249788DB6D85C55769251B0AED738D3BBA04DF57124E03397D3C0599286 ] RasMan          C:\Windows\System32\rasmans.dll
18:29:56.0234 0x2ea4  RasMan - ok
18:29:56.0306 0x2ea4  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:29:56.0332 0x2ea4  RasPppoe - ok
18:29:56.0457 0x2ea4  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
18:29:56.0503 0x2ea4  RasSstp - ok
18:29:56.0718 0x2ea4  [ 3BAC8142102C15D59A87757C1D41DCE5, C0C2C6887EA5A439E69221196348382ACE3E1942C9C6E0A970E153890F71724C ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:29:56.0748 0x2ea4  rdbss - ok
18:29:56.0765 0x2ea4  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
18:29:56.0777 0x2ea4  rdpbus - ok
18:29:56.0889 0x2ea4  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
18:29:56.0957 0x2ea4  RDPCDD - ok
18:29:57.0633 0x2ea4  [ 9706B84DBABFC4B4CA46C5A82B14DFA3, AFDC07C257BCB768861483A1842FFB647523946B16DA2812EFAE4FD3252BA303 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
18:29:57.0843 0x2ea4  RDPDR - ok
18:29:58.0011 0x2ea4  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
18:29:58.0048 0x2ea4  RDPENCDD - ok
18:29:58.0065 0x2ea4  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
18:29:58.0212 0x2ea4  RDPREFMP - ok
18:29:58.0287 0x2ea4  [ 447DE7E3DEA39D422C1504F245B668B1, C54D90D2F9405E011E490D3C2F0F64488B87B969C95E367C076BBFCFD8654909 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
18:29:58.0405 0x2ea4  RDPWD - ok
18:29:58.0564 0x2ea4  [ 634B9A2181D98F15941236886164EC8B, 15C55F05FD3CD751F619F18E2ADF91552AE82146501CD031402277F496A5B7D8 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:29:58.0589 0x2ea4  rdyboost - ok
18:29:58.0622 0x2ea4  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:29:58.0684 0x2ea4  RemoteAccess - ok
18:29:58.0741 0x2ea4  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:29:58.0811 0x2ea4  RemoteRegistry - ok
18:29:58.0857 0x2ea4  [ 7B04C9843921AB1F695FB395422C5360, C9B02BE0384357FD242613C2A12029B45322AF9A795CD69F33500CA7530899A7 ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
18:30:00.0419 0x2ea4  RimUsb - ok
18:30:00.0541 0x2ea4  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:30:00.0595 0x2ea4  RpcEptMapper - ok
18:30:00.0617 0x2ea4  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
18:30:00.0646 0x2ea4  RpcLocator - ok
18:30:00.0734 0x2ea4  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] RpcSs           C:\Windows\system32\rpcss.dll
18:30:00.0768 0x2ea4  RpcSs - ok
18:30:00.0949 0x2ea4  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:30:01.0019 0x2ea4  rspndr - ok
18:30:01.0431 0x2ea4  [ D787F86566F6EA23053D9C5F401E33B7, 82B1952A57FB800425E12FEFF5B326C7B7815980646F5359673CBC8BBB4C46CF ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
18:30:01.0453 0x2ea4  RTL8167 - ok
18:30:01.0521 0x2ea4  [ 2ABDAE282DBC2D2FB11144184517F850, A68C3B0CCB0441C22BD27F69D22ADF2183613B8B3F9317B89279418A02E78384 ] rzudd           C:\Windows\system32\DRIVERS\rzudd.sys
18:30:01.0531 0x2ea4  rzudd - ok
18:30:01.0567 0x2ea4  [ 88AF6E02AB19DF7FD07ECDF9C91E9AF6, C890DCCC875F957CAAD4655EBFF384E3C5998040CA2BA360E92C96A647D1C399 ] s3cap           C:\Windows\system32\DRIVERS\vms3cap.sys
18:30:01.0644 0x2ea4  s3cap - ok
18:30:01.0662 0x2ea4  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] SamSs           C:\Windows\system32\lsass.exe
18:30:01.0672 0x2ea4  SamSs - ok
18:30:01.0704 0x2ea4  [ E3BBB89983DAF5622C1D50CF49F28227, 49370DC142D577D657BF5755AA9B8625C35D3DDAF1F9466B4888507FB8E6FF07 ] sbp2port        C:\Windows\system32\DRIVERS\sbp2port.sys
18:30:01.0720 0x2ea4  sbp2port - ok
18:30:02.0083 0x2ea4  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:30:02.0125 0x2ea4  SCardSvr - ok
18:30:02.0257 0x2ea4  [ D33BFF730B222D00A2F665F8F3E0A788, 371C7E62FD8F1628F6130E0A67A90FBDB34BBCADB3ADA1E41481EFE073ADDC65 ] SCDEmu          C:\Windows\system32\drivers\SCDEmu.sys
18:30:02.0267 0x2ea4  SCDEmu - ok
18:30:02.0284 0x2ea4  [ C94DA20C7E3BA1DCA269BC8460D98387, E1A5629728A79233B62BA87B4354BC3A332A853CC36A60E77B34923F4BCA8A61 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:30:02.0351 0x2ea4  scfilter - ok
18:30:02.0593 0x2ea4  [ 624D0F5FF99428BB90A5B8A4123E918E, 90A43E6F09B56CB86A3E3851F8E5ABB74905AEB70296F4B87BEDBC3027E65E86 ] Schedule        C:\Windows\system32\schedsvc.dll
18:30:02.0675 0x2ea4  Schedule - ok
18:30:02.0733 0x2ea4  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:30:02.0758 0x2ea4  SCPolicySvc - ok
18:30:02.0787 0x2ea4  [ 765A27C3279CE11D14CB9E4F5869FCA5, B6C2EFFBA938828FEF7FE992A4C88B3154D053763C38762DCE13252FE9571FA1 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
18:30:02.0862 0x2ea4  SDRSVC - ok
18:30:02.0920 0x2ea4  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:30:02.0966 0x2ea4  secdrv - ok
18:30:02.0993 0x2ea4  [ 463B386EBC70F98DA5DFF85F7E654346, 8E27B18B04AF587719D1DAE75A042DB998E06CAE112BD68626EF046036D2DCDC ] seclogon        C:\Windows\system32\seclogon.dll
18:30:03.0045 0x2ea4  seclogon - ok
18:30:03.0069 0x2ea4  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
18:30:03.0121 0x2ea4  SENS - ok
18:30:03.0145 0x2ea4  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:30:03.0218 0x2ea4  SensrSvc - ok
18:30:03.0244 0x2ea4  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
18:30:03.0264 0x2ea4  Serenum - ok
18:30:03.0289 0x2ea4  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
18:30:03.0322 0x2ea4  Serial - ok
18:30:03.0342 0x2ea4  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
18:30:03.0353 0x2ea4  sermouse - ok
18:30:03.0382 0x2ea4  [ C3BC61CE47FF6F4E88AB8A3B429A36AF, 6CA53AD0CB7215BAE3467EC1FD490E3A18504BD6CD4F0FABF9BD37516AB9DFE0 ] SessionEnv      C:\Windows\system32\sessenv.dll
18:30:03.0417 0x2ea4  SessionEnv - ok
18:30:03.0443 0x2ea4  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\DRIVERS\sffdisk.sys
18:30:03.0507 0x2ea4  sffdisk - ok
18:30:03.0541 0x2ea4  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\DRIVERS\sffp_mmc.sys
18:30:03.0551 0x2ea4  sffp_mmc - ok
18:30:03.0578 0x2ea4  [ 178298F767FE638C9FEDCBDEF58BB5E4, 053D12CFEE5C54EA7D06F9C9CAE93544FE258A4825CDE2A14090BC81A96E1CF7 ] sffp_sd         C:\Windows\system32\DRIVERS\sffp_sd.sys
18:30:03.0588 0x2ea4  sffp_sd - ok
18:30:03.0618 0x2ea4  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
18:30:03.0799 0x2ea4  sfloppy - ok
18:30:03.0903 0x2ea4  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:30:03.0945 0x2ea4  SharedAccess - ok
18:30:03.0996 0x2ea4  [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF, 1C1D17301A4D37DBF906955CCABD2A3FDA47AFB24CBA978CF851123762249848 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:30:04.0029 0x2ea4  ShellHWDetection - ok
18:30:04.0068 0x2ea4  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:30:04.0089 0x2ea4  SiSRaid2 - ok
18:30:04.0124 0x2ea4  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
18:30:04.0155 0x2ea4  SiSRaid4 - ok
18:30:04.0629 0x2ea4  [ 4CA43B85F22C7739311788B651A779CB, 5F761B3ADBDB093A4198CE5FE3BB444AB3C063483815F45DFB186082DDEB8CBC ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
18:30:04.0685 0x2ea4  Skype C2C Service - ok
18:30:04.0927 0x2ea4  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
18:30:04.0953 0x2ea4  SkypeUpdate - ok
18:30:05.0004 0x2ea4  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
18:30:05.0067 0x2ea4  Smb - ok
18:30:05.0136 0x2ea4  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:30:05.0164 0x2ea4  SNMPTRAP - ok
18:30:05.0194 0x2ea4  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
18:30:05.0201 0x2ea4  spldr - ok
18:30:05.0285 0x2ea4  [ 567977DC43CC13C4C35ED7084C0B84D5, 93EEC3ABA66DA83157F49F056EF1CB3355122204F2BB0F8B618064AF47D59A61 ] Spooler         C:\Windows\System32\spoolsv.exe
18:30:05.0367 0x2ea4  Spooler - ok
18:30:06.0122 0x2ea4  [ 913D843498553A1BC8F8DBAD6358E49F, F8B931FDABF669D642CBDCD2FF31E07F8A5E2D5F72E11D4A8FF219CCFB5825E9 ] sppsvc          C:\Windows\system32\sppsvc.exe
18:30:06.0235 0x2ea4  sppsvc - ok
18:30:06.0269 0x2ea4  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
18:30:06.0319 0x2ea4  sppuinotify - ok
18:30:06.0415 0x2ea4  [ 2408C0366D96BCDF63E8F1C78E4A29C5, 66F646890695B5D80536E88B1566C8765D89CFE25954ED650F6D773EFF045016 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:30:06.0480 0x2ea4  srv - ok
18:30:06.0523 0x2ea4  [ 76548F7B818881B47D8D1AE1BE9C11F8, 8F1356B07A6A55746FC71B6DB0322128941AE890850196F2B19BC01E6FC9B41C ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:30:06.0561 0x2ea4  srv2 - ok
18:30:06.0596 0x2ea4  [ 0AF6E19D39C70844C5CAA8FB0183C36E, 4494EEFDEA7198888D32E74727E5BC0AC628FFA70B1FE7EB59DBEEDC1A95D0DD ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:30:06.0608 0x2ea4  srvnet - ok
18:30:06.0643 0x2ea4  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:30:06.0697 0x2ea4  SSDPSRV - ok
18:30:06.0721 0x2ea4  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:30:06.0752 0x2ea4  SstpSvc - ok
18:30:06.0827 0x2ea4  [ AAF6F247F1DC370C593B4430974EAD9C, 232D0D62EC83A5537ADB28B5DC01074BA812FE6C70C54F70CD7A5EF1BC19D3E1 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
18:30:06.0850 0x2ea4  ssudmdm - ok
18:30:06.0998 0x2ea4  [ 2F3B5A3567FFB343D8867C3D34C687F1, D01971412506746B2EA1CBB0ACF9472889ABBC23318C1332BEC9C8256011183E ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
18:30:07.0025 0x2ea4  Steam Client Service - ok
18:30:07.0137 0x2ea4  [ CDA9313E34887A111B8309B55BCDCD82, AC070AA093B7013E4D1B29F4FAF9B469C3C261E4D3D1512B4F77CC609CBD1484 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
18:30:07.0156 0x2ea4  Stereo Service - ok
18:30:07.0192 0x2ea4  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
18:30:07.0215 0x2ea4  stexstor - ok
18:30:07.0333 0x2ea4  [ 52D0E33B681BD0F33FDC08812FEE4F7D, BBEBC0773402F6697D2F14F63E5E4FDC2180466E7FDBD306E408535B10160249 ] stisvc          C:\Windows\System32\wiaservc.dll
18:30:07.0381 0x2ea4  stisvc - ok
18:30:07.0416 0x2ea4  [ FFD7A6F15B14234B5B0E5D49E7961895, 9553BDB65D021DA621BDFF1C180B9F4C6355FC748BAE854CE114D4B3EFF307B7 ] storflt         C:\Windows\system32\DRIVERS\vmstorfl.sys
18:30:07.0425 0x2ea4  storflt - ok
18:30:07.0453 0x2ea4  [ 8FCCBEFC5C440B3C23454656E551B09A, 392A38D0B18B7FD08ACBE3E56ADCB235FA49BDB99F81E0820434D57332FA8FF7 ] storvsc         C:\Windows\system32\DRIVERS\storvsc.sys
18:30:07.0485 0x2ea4  storvsc - ok
18:30:07.0501 0x2ea4  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
18:30:07.0509 0x2ea4  swenum - ok
18:30:07.0580 0x2ea4  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
18:30:07.0649 0x2ea4  swprv - ok
18:30:07.0901 0x2ea4  [ 3C1284516A62078FB68F768DE4F1A7BE, 67ECD462335EF88773E4BAEAB230A68EC92A25F8CD8F115873F669205AE6A1A9 ] SysMain         C:\Windows\system32\sysmain.dll
18:30:07.0987 0x2ea4  SysMain - ok
18:30:08.0034 0x2ea4  [ 238935C3CF2854886DC7CBB2A0E2CC66, BBF7A70BF218A544CC1A6FB81F75EAD29D418794162936BE197D6D61FE0DB1C4 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:30:08.0108 0x2ea4  TabletInputService - ok
18:30:08.0171 0x2ea4  [ 884264AC597B690C5707C89723BB8E7B, 9BF209A4128019421F7EC4AFF71103C5F411DB6CFB32AAC1633E789AD7A30708 ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:30:08.0229 0x2ea4  TapiSrv - ok
18:30:08.0255 0x2ea4  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
18:30:08.0319 0x2ea4  TBS - ok
18:30:08.0658 0x2ea4  [ 5CFB7AB8F9524D1A1E14369DE63B83CC, BC22FC5714A6A8F8CF95D3D9656332D7B315FF7CFA50C0DEB7437A30651D10C7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:30:08.0698 0x2ea4  Tcpip - ok
18:30:08.0788 0x2ea4  [ 5CFB7AB8F9524D1A1E14369DE63B83CC, BC22FC5714A6A8F8CF95D3D9656332D7B315FF7CFA50C0DEB7437A30651D10C7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:30:08.0828 0x2ea4  TCPIP6 - ok
18:30:08.0871 0x2ea4  [ 76D078AF6F587B162D50210F761EB9ED, 3813171036B4036306CADC29F877ADAE44B241DDF65B3699C352B7CDA9EC68C9 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:30:08.0943 0x2ea4  tcpipreg - ok
18:30:08.0967 0x2ea4  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
18:30:08.0995 0x2ea4  TDPIPE - ok
18:30:09.0024 0x2ea4  [ 7518F7BCFD4B308ABC9192BACAF6C970, CF08E547EF4059DA3F5A2FCBA98939E84092BB6E0E37F9BBCD1E4D9EBB8A58BB ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
18:30:09.0076 0x2ea4  TDTCP - ok
18:30:09.0091 0x2ea4  [ 079125C4B17B01FCAEEBCE0BCB290C0F, B2DF1F2317EF5DCF0A89327332E9F2770ED604005B3138C095FF01AA63B91437 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:30:09.0145 0x2ea4  tdx - ok
18:30:09.0640 0x2ea4  [ 9F3E7CABE86BBDECA009DE291DB6D9E2, C85176BA98382C82178D682C5F91B5590201BF8C7335DF7ABCAB469367701106 ] TeamViewer8     C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
18:30:09.0707 0x2ea4  TeamViewer8 - ok
18:30:09.0752 0x2ea4  [ C448651339196C0E869A355171875522, C12441CF21D7D47804952B968689D78E3BA0323A90C4C811B54A6B2E6260BAD4 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
18:30:09.0761 0x2ea4  TermDD - ok
18:30:09.0828 0x2ea4  [ 0F05EC2887BFE197AD82A13287D2F404, 78C8A8FE9B1101430CA79875DA34413C35B6D7A5EE1932E454C50731335437A6 ] TermService     C:\Windows\System32\termsrv.dll
18:30:09.0901 0x2ea4  TermService - ok
18:30:09.0913 0x2ea4  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
18:30:09.0939 0x2ea4  Themes - ok
18:30:09.0980 0x2ea4  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
18:30:10.0006 0x2ea4  THREADORDER - ok
18:30:10.0037 0x2ea4  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
18:30:10.0065 0x2ea4  TrkWks - ok
18:30:10.0122 0x2ea4  [ 840F7FB849F5887A49BA18C13B2DA920, A59C40A090E03C0136A865FC54508BA938E7B467C8198BC009FE263E6C275781 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:30:10.0153 0x2ea4  TrustedInstaller - ok
18:30:10.0176 0x2ea4  [ 61B96C26131E37B24E93327A0BD1FB95, 7C551B6FD0447258BC3FDED72D8D41A0E8B731562170C264295592D45F85D9FF ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
18:30:10.0210 0x2ea4  tssecsrv - ok
18:30:10.0297 0x2ea4  [ 3836171A2CDF3AF8EF10856DB9835A70, 74CD0A21B4E5B47E8D762CC28282CA8D512D424EC591D90099B9F8D034AA2FC2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:30:10.0331 0x2ea4  tunnel - ok
18:30:10.0367 0x2ea4  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
18:30:10.0389 0x2ea4  uagp35 - ok
18:30:10.0435 0x2ea4  [ D47BAEAD86C65D4F4069D7CE0A4EDCEB, DBAEA010F11A5EFD961B1841308EA3F220A9FFB01F364BA9B8F72200DA2BBCD8 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:30:10.0493 0x2ea4  udfs - ok
18:30:10.0507 0x2ea4  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:30:10.0527 0x2ea4  UI0Detect - ok
18:30:10.0662 0x2ea4  [ 75894B827B8CA53FC2BB991C91B6728C, F305ED07EFAF821A938BE8CD04D4A872940FD267C4AC6B87A2DF34B42F91996D ] uisp            C:\Windows\system32\Drivers\usbicp.sys
18:30:10.0693 0x2ea4  uisp - ok
18:30:10.0708 0x2ea4  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\DRIVERS\uliagpkx.sys
18:30:10.0726 0x2ea4  uliagpkx - ok
18:30:10.0769 0x2ea4  [ EAB6C35E62B1B0DB0D1B48B671D3A117, E65034BF757AE4D21F69D7A91A7990E326A29A0CE9F871FD704B5E6CCC821FF0 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
18:30:10.0779 0x2ea4  umbus - ok
18:30:10.0789 0x2ea4  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
18:30:10.0823 0x2ea4  UmPass - ok
18:30:10.0872 0x2ea4  [ AF0AC98EE5077EB844413EB54287FDE3, 1586326510DE94E2735EFAD94A68D06DB5B7347B68055A9EA8B95E19D91A2E69 ] UmRdpService    C:\Windows\System32\umrdp.dll
18:30:10.0913 0x2ea4  UmRdpService - ok
18:30:11.0157 0x2ea4  [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv        C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
18:30:11.0179 0x2ea4  UMVPFSrv - ok
18:30:12.0408 0x2ea4  [ CD114CE02A10FA79C229770788106842, A02E0FE0865CE7E14D27F23CE748F5EFBE3F14CA350B0F26623E174227F30643 ] UNS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
18:30:12.0506 0x2ea4  UNS - ok
18:30:12.0567 0x2ea4  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
18:30:12.0624 0x2ea4  upnphost - ok
18:30:12.0692 0x2ea4  [ 77B01BC848298223A95D4EC23E1785A1, 7D0FBBA746588401400226BB966507EE34EEBB2F4F16607601E3D7383CAD34E2 ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
18:30:12.0727 0x2ea4  usbaudio - ok
18:30:12.0768 0x2ea4  [ 7B6A127C93EE590E4D79A5F2A76FE46F, 6F178916EF6D58D1E5B26C0D9D95C276B776505BFC9F716BB1E3ABD3B2B72FCE ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
18:30:12.0787 0x2ea4  usbccgp - ok
18:30:12.0825 0x2ea4  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\Windows\system32\DRIVERS\usbcir.sys
18:30:12.0876 0x2ea4  usbcir - ok
18:30:12.0906 0x2ea4  [ 92969BA5AC44E229C55A332864F79677, 4ED1E1049E7641D3FFF5D296F2D59060225CE52AB9F7B5CA618898B46A772F98 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
18:30:12.0929 0x2ea4  usbehci - ok
18:30:13.0202 0x2ea4  [ E7DF1CFD28CA86B35EF5ADD0735CEEF3, AA751288EC34D61D934D7E8C036B60BBCEDC2A746815623478BB015D87D6A998 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
18:30:13.0233 0x2ea4  usbhub - ok
18:30:13.0313 0x2ea4  [ F1BB1E55F1E7A65C5839CCC7B36D773E, 4F517F81FA5688D78D3627EA7D2EA16AD4EB410D7624FE483C7AF26951E579A9 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
18:30:13.0342 0x2ea4  usbohci - ok
18:30:13.0449 0x2ea4  [ 813BFE2DE062A28CFE42C4EB8572A7F9, 3844513195DB05A7849AB2BDEE60D7E2540F81C9353010313A2A8879BA07A241 ] USBPNPA         C:\Windows\system32\drivers\CM10864.sys
18:30:13.0525 0x2ea4  USBPNPA - ok
18:30:13.0545 0x2ea4  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
18:30:13.0585 0x2ea4  usbprint - ok
18:30:13.0608 0x2ea4  [ F39983647BC1F3E6100778DDFE9DCE29, 3BD36594F7C753680DB5A4354B1D6A33FC3011631D2D56DD4B2464AA99C85F7B ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:30:13.0650 0x2ea4  USBSTOR - ok
18:30:13.0679 0x2ea4  [ BC3070350A491D84B518D7CCA9ABD36F, 96FFF9F76A93CF4806297AE7C11A5C6D1E7A9980260E6CFC960F8247D5032161 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
18:30:13.0726 0x2ea4  usbuhci - ok
18:30:13.0760 0x2ea4  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
18:30:13.0801 0x2ea4  UxSms - ok
18:30:13.0820 0x2ea4  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] VaultSvc        C:\Windows\system32\lsass.exe
18:30:13.0830 0x2ea4  VaultSvc - ok
18:30:13.0864 0x2ea4  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\DRIVERS\vdrvroot.sys
18:30:13.0873 0x2ea4  vdrvroot - ok
18:30:13.0929 0x2ea4  [ 44D73E0BBC1D3C8981304BA15135C2F2, 2849387BBCFB0189AF5604D2F7A631BD5D6BBB2CA73AF6E870069AF382A74DED ] vds             C:\Windows\System32\vds.exe
18:30:13.0993 0x2ea4  vds - ok
18:30:14.0060 0x2ea4  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
18:30:14.0102 0x2ea4  vga - ok
18:30:14.0113 0x2ea4  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
18:30:14.0149 0x2ea4  VgaSave - ok
18:30:14.0238 0x2ea4  [ C82E748660F62A242B2DFAC1442F22A4, 24AD6CAA918C5AB6F461D88825885C8637C224001AAD7A80BDC240368CDB0B7E ] vhdmp           C:\Windows\system32\DRIVERS\vhdmp.sys
18:30:14.0259 0x2ea4  vhdmp - ok
18:30:14.0285 0x2ea4  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\DRIVERS\viaide.sys
18:30:14.0303 0x2ea4  viaide - ok
18:30:14.0369 0x2ea4  [ 2FDD9F870BDE9C0353D6E82B4B309C44, 767D4F45898307BB91CE64DBE85B12698795FF8B60CF0B87E019143AA08D2470 ] VirtuWDDM       C:\Windows\system32\DRIVERS\VirtuWDDM.sys
18:30:14.0377 0x2ea4  VirtuWDDM - ok
18:30:14.0414 0x2ea4  [ 1501699D7EDA984ABC4155A7DA5738D1, 448DFEFF565F1467F387E4EC9782DDD48B8FFDDF6B1EA46A790C2782C20BD952 ] vmbus           C:\Windows\system32\DRIVERS\vmbus.sys
18:30:14.0442 0x2ea4  vmbus - ok
18:30:14.0458 0x2ea4  [ AE10C35761889E65A6F7176937C5592C, 9DC27647B6149C9B2523799F85B18122CCE749264624FE2E5FE843FE00642BBE ] VMBusHID        C:\Windows\system32\DRIVERS\VMBusHID.sys
18:30:14.0486 0x2ea4  VMBusHID - ok
18:30:14.0497 0x2ea4  [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3, 91F2B935E1E88C5542650F7D679A75D0562F4A5812179D1EC146D4B6351361E2 ] volmgr          C:\Windows\system32\DRIVERS\volmgr.sys
18:30:14.0512 0x2ea4  volmgr - ok
18:30:14.0602 0x2ea4  [ 99B0CBB569CA79ACAED8C91461D765FB, 5BE394A39A941DE2AA1212E66B7068F90D423FA816238657CB9B2DA8BBE69B9B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:30:14.0629 0x2ea4  volmgrx - ok
18:30:14.0673 0x2ea4  [ 9E425AC5C9A5A973273D169F43B4F5E1, 64C9A9D4A39865E56F01B4FDE1B56034C4B2A2AEF2ABE15EC1C37911C59595B0 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:30:14.0691 0x2ea4  volsnap - ok
18:30:14.0750 0x2ea4  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
18:30:14.0885 0x2ea4  vsmraid - ok
18:30:15.0155 0x2ea4  [ 787898BF9FB6D7BD87A36E2D95C899BA, A6C0C7402B1A198E7B3D6D7D283FCB5815AC429DA68FC9B54C67707F3233CCB5 ] VSS             C:\Windows\system32\vssvc.exe
18:30:15.0227 0x2ea4  VSS - ok
18:30:15.0269 0x2ea4  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
18:30:15.0296 0x2ea4  vwifibus - ok
18:30:15.0370 0x2ea4  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:30:15.0398 0x2ea4  vwififlt - ok
18:30:15.0448 0x2ea4  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
18:30:15.0489 0x2ea4  W32Time - ok
18:30:15.0528 0x2ea4  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
18:30:15.0573 0x2ea4  WacomPen - ok
18:30:15.0609 0x2ea4  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
18:30:15.0657 0x2ea4  WANARP - ok
18:30:15.0661 0x2ea4  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
18:30:15.0686 0x2ea4  Wanarpv6 - ok
18:30:15.0803 0x2ea4  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
18:30:15.0845 0x2ea4  WatAdminSvc - ok
18:30:16.0025 0x2ea4  [ 5AB1BB85BD8B5089CC5D64200DEDAE68, 28777D4F3CD07C8E3465B6DA0FCA994E0B93071A3A0D4D1D64C1DF633DD1C64F ] wbengine        C:\Windows\system32\wbengine.exe
18:30:16.0195 0x2ea4  wbengine - ok
18:30:16.0221 0x2ea4  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:30:16.0284 0x2ea4  WbioSrvc - ok
18:30:16.0326 0x2ea4  [ DD1BAE8EBFC653824D29CCF8C9054D68, 81D6640222FE276D721168745F6BB905D4E756909A9B2C706AF25465D748772D ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:30:16.0389 0x2ea4  wcncsvc - ok
18:30:16.0421 0x2ea4  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:30:16.0487 0x2ea4  WcsPlugInService - ok
18:30:16.0521 0x2ea4  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
18:30:16.0548 0x2ea4  Wd - ok
18:30:16.0591 0x2ea4  [ A3D04EBF5227886029B4532F20D026F7, D90F7B9C176008675DA0B5FD7E4973CBC2A04172CEDF8FB7D3B3B4F27B5440D7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
18:30:16.0661 0x2ea4  WDC_SAM - ok
18:30:16.0881 0x2ea4  [ 442783E2CB0DA19873B7A63833FF4CB4, 09254970265476214F3187CC22A4F9C7C2769D419600E83FBE302C3A103E527F ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:30:16.0914 0x2ea4  Wdf01000 - ok
18:30:16.0940 0x2ea4  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:30:16.0971 0x2ea4  WdiServiceHost - ok
18:30:16.0975 0x2ea4  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:30:16.0989 0x2ea4  WdiSystemHost - ok
18:30:17.0029 0x2ea4  [ 733006127F235BE7C35354EBEE7B9A7B, 2C7E7030D586C36261F33F29883337695493D48CEA415D6DBA7C5635845A5B32 ] WebClient       C:\Windows\System32\webclnt.dll
18:30:17.0057 0x2ea4  WebClient - ok
18:30:17.0095 0x2ea4  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:30:17.0145 0x2ea4  Wecsvc - ok
18:30:17.0163 0x2ea4  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:30:17.0270 0x2ea4  wercplsupport - ok
18:30:17.0341 0x2ea4  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
18:30:17.0377 0x2ea4  WerSvc - ok
18:30:17.0399 0x2ea4  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
18:30:17.0440 0x2ea4  WfpLwf - ok
18:30:17.0459 0x2ea4  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:30:17.0475 0x2ea4  WIMMount - ok
18:30:17.0500 0x2ea4  WinDefend - ok
18:30:17.0528 0x2ea4  WinHttpAutoProxySvc - ok
18:30:17.0740 0x2ea4  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:30:17.0799 0x2ea4  Winmgmt - ok
18:30:18.0303 0x2ea4  WinRing0_1_2_0 - ok
18:30:18.0643 0x2ea4  [ 41FBB751936B387F9179E7F03A74FE29, 7A73D887BEC19DFC485ED42B4E6ABEBF824555139B81EA30731A00773E707464 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:30:18.0757 0x2ea4  WinRM - ok
18:30:18.0885 0x2ea4  [ 817EAFF5D38674EDD7713B9DFB8E9791, F6E0BFC503BA7395F92989C11B454D1F1E58E29302BA203801449A2C5236E84D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
18:30:18.0937 0x2ea4  WinUsb - ok
18:30:19.0083 0x2ea4  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
18:30:19.0120 0x2ea4  Wlansvc - ok
18:30:19.0580 0x2ea4  [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
18:30:19.0624 0x2ea4  wlidsvc - ok
18:30:19.0665 0x2ea4  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
18:30:19.0707 0x2ea4  WmiAcpi - ok
18:30:19.0807 0x2ea4  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:30:19.0854 0x2ea4  wmiApSrv - ok
18:30:19.0878 0x2ea4  WMPNetworkSvc - ok
18:30:20.0011 0x2ea4  [ D0881646C9EBF39023DEE4A16F1F9285, DB69502E0202C9265901EB4B1AB754AC2A787CFCBF489A22AE8C466C12108FDD ] WNDA6200        C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe
18:30:20.0024 0x2ea4  WNDA6200 - ok
18:30:20.0063 0x2ea4  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:30:20.0130 0x2ea4  WPCSvc - ok
18:30:20.0181 0x2ea4  [ 2E57DDF2880A7E52E76F41C7E96D327B, D24E19B6091C197D77D71BC044CE2E5A57BE0A2F00D1BB0732E380A398230E63 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:30:20.0231 0x2ea4  WPDBusEnum - ok
18:30:20.0273 0x2ea4  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:30:20.0296 0x2ea4  ws2ifsl - ok
18:30:20.0327 0x2ea4  [ 8F9F3969933C02DA96EB0F84576DB43E, C424D7B881A4DCC348433CF02044383013E32DB94CC66D1D20E1866CB3B0F952 ] wscsvc          C:\Windows\system32\wscsvc.dll
18:30:20.0379 0x2ea4  wscsvc - ok
18:30:20.0382 0x2ea4  WSearch - ok
18:30:20.0654 0x2ea4  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:30:20.0727 0x2ea4  wuauserv - ok
18:30:20.0771 0x2ea4  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:30:20.0828 0x2ea4  WudfPf - ok
18:30:20.0883 0x2ea4  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
18:30:20.0901 0x2ea4  WUDFRd - ok
18:30:20.0955 0x2ea4  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:30:21.0010 0x2ea4  wudfsvc - ok
18:30:21.0033 0x2ea4  [ 9A3452B3C2A46C073166C5CF49FAD1AE, D6F95F51D8E37BA4CF403965EC08CCFEEA9EEFDBFC7752432EAEC19925BDA115 ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:30:21.0073 0x2ea4  WwanSvc - ok
18:30:21.0471 0x2ea4  X6va009 - ok
18:30:21.0634 0x2ea4  [ 2EE48CFCE7CA8E0DB4C44C7476C0943B, 2C324592F3F2D50BABA7123B6F9FC922667CC132777E019FF615F2D6F273A45E ] xusb21          C:\Windows\system32\DRIVERS\xusb21.sys
18:30:21.0682 0x2ea4  xusb21 - ok
18:30:21.0844 0x2ea4  ================ Scan global ===============================
18:30:21.0878 0x2ea4  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
18:30:21.0969 0x2ea4  [ 3FB74FF230B5D240A57AE1C4A3D0459D, 7A4036CAC3BAAEC719E4152F2CAA9D9B69DACBDC7502147D7160D04AE70BC8DF ] C:\Windows\system32\winsrv.dll
18:30:21.0996 0x2ea4  [ 3FB74FF230B5D240A57AE1C4A3D0459D, 7A4036CAC3BAAEC719E4152F2CAA9D9B69DACBDC7502147D7160D04AE70BC8DF ] C:\Windows\system32\winsrv.dll
18:30:22.0035 0x2ea4  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
18:30:22.0086 0x2ea4  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
18:30:22.0091 0x2ea4  [ Global ] - ok
18:30:22.0092 0x2ea4  ================ Scan MBR ==================================
18:30:22.0114 0x2ea4  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
18:30:26.0672 0x2ea4  \Device\Harddisk0\DR0 - ok
18:30:26.0672 0x2ea4  ================ Scan VBR ==================================
18:30:26.0704 0x2ea4  [ 4B0427F48CE235C60D0BE8CB16E81C34 ] \Device\Harddisk0\DR0\Partition1
18:30:26.0758 0x2ea4  \Device\Harddisk0\DR0\Partition1 - detected Rootkit.Boot.Cidox.b ( 0 )
18:30:26.0758 0x2ea4  \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - infected
18:30:42.0387 0x2ea4  [ 402D540F3F600850695B5B86B51C46A2 ] \Device\Harddisk0\DR0\Partition2
18:30:42.0575 0x2ea4  \Device\Harddisk0\DR0\Partition2 - ok
18:30:42.0575 0x2ea4  ================ Scan generic autorun ======================
18:30:43.0150 0x2ea4  [ 657902C8B78B8DE124116CC817B1C4C4, E67ABF655D826A3A972731FF5C24ED23E3F885E564E7BFC0882DEAE8DAD203ED ] C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe
18:30:43.0228 0x2ea4  XFast LAN - ok
18:30:43.0794 0x2ea4  [ 293770C94202D1EA18EE27E0D3EB6A41, B17D9A3ED5A5A52AF1BB6F1E8B057CAA9BDD868A7080401A7BF9CFDF5393EBF2 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
18:30:43.0839 0x2ea4  NvBackend - ok
18:30:44.0079 0x2ea4  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
18:30:44.0226 0x2ea4  ShadowPlay - ok
18:30:44.0324 0x2ea4  [ 28062B17191C9450BF6C6C3EF8C7EB27, 4859C5708DFD119021F7B7FFB38F0B316675E1E4D5D51A10D4265F712CF8CDB6 ] C:\Windows\system32\igfxtray.exe
18:30:44.0456 0x2ea4  IgfxTray - ok
18:30:44.0633 0x2ea4  [ 28FC280487F0BAAE5E8119257C4EEF8C, F574BC70B79B77912FC683B3EB0BE6929E7758284ED5B47008E18B0E4A4A09FD ] C:\Windows\system32\hkcmd.exe
18:30:44.0675 0x2ea4  HotKeysCmds - ok
18:30:44.0945 0x2ea4  [ F29BEA821C753E4F00177690F70CDC13, 0EDB40F4A4C23553C0288E6E3AD65E7B523F6764C87C6C36C3ECB0C1940C5176 ] C:\Windows\system32\igfxpers.exe
18:30:45.0007 0x2ea4  Persistence - ok
18:30:45.0149 0x2ea4  [ 51138BEEA3E2C21EC44D0932C71762A8, 5AD3C37E6F2B9DB3EE8B5AEEDC474645DE90C66E3D95F8620C48102F1EBA4124 ] C:\Windows\syswow64\RunDll32.exe
18:30:45.0266 0x2ea4  Cm108Sound - ok
18:30:46.0317 0x2ea4  [ 73CF56A3642DFBEBE4167772B6F422A6, F4F0BC4A745931E83C1B2D4D5E906A6899F6C062CB1001465D844003D7ACC6A2 ] C:\Program Files (x86)\XFastUsb\XFastUsb.exe
18:30:46.0508 0x2ea4  XFastUsb - detected UnsignedFile.Multi.Generic ( 1 )
18:30:49.0316 0x2ea4  Detect skipped due to KSN trusted
18:30:49.0317 0x2ea4  XFastUsb - ok
18:30:49.0483 0x2ea4  [ A2418D3C557C0A0C634DA713A8AC3789, 4D8212B15081A31134167B9A328EEE778797ADDEBD23C8B0160FA43BCA1349DE ] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
18:30:49.0522 0x2ea4  LWS - ok
18:30:49.0617 0x2ea4  [ 13E83F57B7A9849348D968C0E73F3BEA, 84D8D5F6AC4033DEF4374F0DBE16F4485934C10BDBC8F6BA3A299244840610DD ] C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe
18:30:49.0647 0x2ea4  Razer Mamba Elite Driver - ok
18:30:49.0705 0x2ea4  [ 04679E0DC30077EC1164BE82F2A2ADC9, E0193F0AE484DED0DD7F81407F0D98AC071F34358B9EA554DE3ADFC3BA1CBD60 ] C:\Program Files\McAfee.com\Agent\mcagent.exe
18:30:49.0729 0x2ea4  mcui_exe - ok
18:30:49.0809 0x2ea4  [ 1B22422DC7EAA39E86820387C5AA1CB4, 365F4E690EDCF1FB86D88858456997E8433D6FDBEC384853D866EEA91F3ACE77 ] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
18:30:49.0840 0x2ea4  DivXMediaServer - detected UnsignedFile.Multi.Generic ( 1 )
18:30:59.0885 0x2ea4  DivXMediaServer ( UnsignedFile.Multi.Generic ) - warning
18:31:02.0677 0x2ea4  [ 81800928E0F713DF31F3393CC26F4013, 0ABCC70297C83C01BCCAF03083BE67EB7A50A28557B2F9578EDB73B382F54182 ] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
18:31:02.0706 0x2ea4  DivXUpdate - ok
18:31:02.0783 0x2ea4  [ 04679E0DC30077EC1164BE82F2A2ADC9, E0193F0AE484DED0DD7F81407F0D98AC071F34358B9EA554DE3ADFC3BA1CBD60 ] C:\Program Files\McAfee.com\Agent\mcagent.exe
18:31:02.0801 0x2ea4  mcpltui_exe - ok
18:31:03.0040 0x2ea4  [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
18:31:03.0084 0x2ea4  Adobe ARM - ok
18:31:03.0191 0x2ea4  [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
18:31:03.0215 0x2ea4  QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
18:31:05.0824 0x2ea4  Detect skipped due to KSN trusted
18:31:05.0824 0x2ea4  QuickTime Task - ok
18:31:06.0000 0x2ea4  [ 0E67B5018A7FEA608D46466EDCAC89C1, BBDEB51B4D531C452FF033D7DEC7456F5210257FD96823367D4E038205E13E9F ] C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe
18:31:06.0011 0x2ea4  VolPanel - detected UnsignedFile.Multi.Generic ( 1 )
18:31:08.0453 0x2ea4  Detect skipped due to KSN trusted
18:31:08.0453 0x2ea4  VolPanel - ok
18:31:08.0455 0x2ea4  CTxfiHlp - ok
18:31:08.0854 0x2ea4  [ 2F0DEB0C6413D9DEABFD95A950A422CD, 76DA8246127028BDDCC551FC55A2D21914EEFBCF93D26E314F59FDB0192519B5 ] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
18:31:08.0948 0x2ea4  LogMeIn Hamachi Ui - ok
18:31:09.0031 0x2ea4  [ D9FAA5EFEB27DDBE99C720B9069A451E, FD33757E2674915409E54FBDF828DB900E31B99265035B16C216B38C6DBFC15F ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
18:31:09.0040 0x2ea4  iTunesHelper - ok
18:31:09.0718 0x2ea4  [ 15F3F063FAABB583C0A383DC0D4AAACC, FC0044F32E7805E382AED9670C59D1FC3238B43F9797839981B010E794BC7D24 ] C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
18:31:09.0783 0x2ea4  Fitbit Connect - ok
18:31:10.0902 0x2ea4  [ 61E3B5BEE1C10954F53DC07282F2A61C, 9B092FE63CAECDAD165B702D45B79D5D06DC879C11FEFFCE62B431712C50A1F2 ] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
18:31:11.0008 0x2ea4  Logitech Vid - ok
18:31:11.0442 0x2ea4  [ 15F3F063FAABB583C0A383DC0D4AAACC, FC0044F32E7805E382AED9670C59D1FC3238B43F9797839981B010E794BC7D24 ] C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
18:31:11.0505 0x2ea4  Fitbit Connect - ok
18:31:11.0802 0x2ea4  [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
18:31:12.0209 0x2ea4  Sidebar - ok
18:31:12.0503 0x2ea4  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
18:31:12.0514 0x2ea4  Google Update - ok
18:31:12.0545 0x2ea4  Skype - ok
18:31:12.0776 0x2ea4  [ 1C10324F2D829B2820B8E626F5CA9445, 37BE9A93E1F2D46557567EED9F3BE6B4ED3C74A0C7F75FFAA72685426FAD50BB ] c:\program files (x86)\steam\steam.exe
18:31:12.0836 0x2ea4  Steam - ok
18:31:12.0892 0x2ea4  [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
18:31:12.0904 0x2ea4  QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
18:31:12.0904 0x2ea4  Detect skipped due to KSN trusted
18:31:12.0904 0x2ea4  QuickTime Task - ok
18:31:12.0905 0x2ea4  igndlm.exe - ok
18:31:12.0907 0x2ea4  Waiting for KSN requests completion. In queue: 8
18:31:13.0908 0x2ea4  Waiting for KSN requests completion. In queue: 8
18:31:14.0908 0x2ea4  Waiting for KSN requests completion. In queue: 8
18:31:15.0918 0x2ea4  AV detected via SS2: McAfee Anti-Virus and Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51000 ( enabled : updated )
18:31:15.0919 0x2ea4  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51010 ( enabled )
18:31:18.0490 0x2ea4  ============================================================
18:31:18.0490 0x2ea4  Scan finished
18:31:18.0490 0x2ea4  ============================================================
18:31:18.0496 0x2e50  Detected object count: 2
18:31:18.0496 0x2e50  Actual detected object count: 2
18:31:30.0505 0x2e50  \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - skipped by user
18:31:30.0505 0x2e50  \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - User select action: Skip 
18:31:30.0505 0x2e50  DivXMediaServer ( UnsignedFile.Multi.Generic ) - skipped by user
18:31:30.0505 0x2e50  DivXMediaServer ( UnsignedFile.Multi.Generic ) - User select action: Skip 


#6 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 12 June 2014 - 12:51 AM

Looks like we've found the bad guy:


Start TDSSKiller.exe again with administrator privileges.
  • Set the parameters like in the first scan and click on Start scan.
  • This time select for the threat Rootkit.Boot.Cidox.b (and only for that) the option Cure (or Delete).
  • Click on Continue and allow the reboot.
  • Copy and paste the log file (C:\TDSSKiller.<version_date_time>_log.txt) of this run in your next reply.


#7 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 12 June 2014 - 10:37 AM

I seem to have run into a problem. When I performed the task you asked of me, when I got to the "reboot" stage, I closed out of Google Chrome and when I did so the computer gave me a BSoD. Does that mean its gone, or did the BSoD mess something up?
 
Here's the log:
 
08:44:21.0780 0x0230  TDSS rootkit removing tool 3.0.0.39 Jun  5 2014 20:35:54
08:44:26.0003 0x0230  ============================================================
08:44:26.0004 0x0230  Current date / time: 2014/06/12 08:44:26.0003
08:44:26.0004 0x0230  SystemInfo:
08:44:26.0004 0x0230  
08:44:26.0004 0x0230  OS Version: 6.1.7600 ServicePack: 0.0
08:44:26.0004 0x0230  Product type: Workstation
08:44:26.0004 0x0230  ComputerName: BOSTONCREME
08:44:26.0004 0x0230  UserName: Jonathan
08:44:26.0004 0x0230  Windows directory: C:\Windows
08:44:26.0004 0x0230  System windows directory: C:\Windows
08:44:26.0004 0x0230  Running under WOW64
08:44:26.0004 0x0230  Processor architecture: Intel x64
08:44:26.0004 0x0230  Number of processors: 4
08:44:26.0004 0x0230  Page size: 0x1000
08:44:26.0004 0x0230  Boot type: Normal boot
08:44:26.0004 0x0230  ============================================================
08:44:48.0469 0x0230  KLMD registered as C:\Windows\system32\drivers\60255034.sys
08:44:49.0261 0x0230  System UUID: {1634C6D5-98A8-CCAB-083A-9A3978968160}
08:44:50.0837 0x0230  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0CADE00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0xEC931, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x20, Type 'K0', Flags 0x00000040
08:44:50.0840 0x0230  ============================================================
08:44:50.0840 0x0230  \Device\Harddisk0\DR0:
08:44:50.0854 0x0230  MBR partitions:
08:44:50.0854 0x0230  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
08:44:50.0854 0x0230  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3000
08:44:50.0854 0x0230  ============================================================
08:44:50.0920 0x0230  C: <-> \Device\Harddisk0\DR0\Partition2
08:44:50.0920 0x0230  ============================================================
08:44:50.0920 0x0230  Initialize success
08:44:50.0920 0x0230  ============================================================
08:44:59.0537 0x0d78  ============================================================
08:44:59.0537 0x0d78  Scan started
08:44:59.0537 0x0d78  Mode: Manual; SigCheck; TDLFS; 
08:44:59.0537 0x0d78  ============================================================
08:44:59.0537 0x0d78  KSN ping started
08:45:25.0448 0x0d78  KSN ping finished: true
08:45:29.0647 0x0d78  ================ Scan system memory ========================
08:45:29.0647 0x0d78  System memory - ok
08:45:29.0647 0x0d78  ================ Scan services =============================
08:45:30.0538 0x0d78  [ 1B00662092F9F9568B995902F0CC40D5, D345014CF146FA57B2682C189D5E7F27D4C78F321F2723D912D623E777C2BB70 ] 1394ohci        C:\Windows\system32\DRIVERS\1394ohci.sys
08:45:30.0670 0x0d78  1394ohci - ok
08:45:30.0787 0x0d78  [ CEB66453AFFE08518566151D2B86864C, B0E99D797E7E36F9DE5AC93C80C4D9047EA05A8C62DEC67E222CC7AE7D67AB18 ] A6200           C:\Windows\system32\DRIVERS\bcmwlhigh664.sys
08:45:30.0837 0x0d78  A6200 - ok
08:45:30.0893 0x0d78  [ 6F11E88748CDEFD2F76AA215F97DDFE5, BD0B3561EDCDE5EFD89372793CFD09DF879709BF469542F4A049705CBA9FD060 ] ACPI            C:\Windows\system32\DRIVERS\ACPI.sys
08:45:30.0907 0x0d78  ACPI - ok
08:45:30.0938 0x0d78  [ 63B05A0420CE4BF0E4AF6DCC7CADA254, 56BCC219D6B886FD42B7D335B4A7BBA3C9BC148220CBD99F8583FB505DAE63BF ] AcpiPmi         C:\Windows\system32\DRIVERS\acpipmi.sys
08:45:30.0970 0x0d78  AcpiPmi - ok
08:45:31.0022 0x0d78  [ D44BCAF639E4E45307C2BC80715273D5, 1E1CDE13C39D835447096CBEC104A2EDDCE15D94288DB3FBB02421B8B8307989 ] adfs            C:\Windows\system32\drivers\adfs.sys
08:45:31.0092 0x0d78  adfs - ok
08:45:31.0323 0x0d78  [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
08:45:31.0332 0x0d78  AdobeARMservice - ok
08:45:31.0933 0x0d78  [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
08:45:31.0953 0x0d78  AdobeFlashPlayerUpdateSvc - ok
08:45:32.0012 0x0d78  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
08:45:32.0037 0x0d78  adp94xx - ok
08:45:32.0070 0x0d78  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
08:45:32.0086 0x0d78  adpahci - ok
08:45:32.0101 0x0d78  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
08:45:32.0113 0x0d78  adpu320 - ok
08:45:32.0141 0x0d78  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
08:45:32.0166 0x0d78  AeLookupSvc - ok
08:45:32.0245 0x0d78  [ DB9D6C6B2CD95A9CA414D045B627422E, A4A0B2ACBFE311C20EF9F06A49DBE02CE90433C2364B292F6E8F78F6C274DF88 ] AFD             C:\Windows\system32\drivers\afd.sys
08:45:32.0292 0x0d78  AFD - ok
08:45:32.0322 0x0d78  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\DRIVERS\agp440.sys
08:45:32.0331 0x0d78  agp440 - ok
08:45:32.0369 0x0d78  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
08:45:32.0395 0x0d78  ALG - ok
08:45:32.0418 0x0d78  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\DRIVERS\aliide.sys
08:45:32.0427 0x0d78  aliide - ok
08:45:32.0434 0x0d78  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\DRIVERS\amdide.sys
08:45:32.0443 0x0d78  amdide - ok
08:45:32.0453 0x0d78  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
08:45:32.0527 0x0d78  AmdK8 - ok
08:45:32.0576 0x0d78  [ EF4680F07516F6D61F6E0BA1D34B3A3A, C367B323B26CF56AA6260E41129AE5F2DC97CFD0A9D984D9D5C051BE61ACD247 ] amdkmpfd        C:\Windows\system32\DRIVERS\amdkmpfd.sys
08:45:32.0584 0x0d78  amdkmpfd - ok
08:45:32.0597 0x0d78  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
08:45:32.0618 0x0d78  AmdPPM - ok
08:45:32.0655 0x0d78  [ EC7EBAB00A4D8448BAB68D1E49B4BEB9, 786B30C86FA7FEC6BA2569FF818044AA0F7C134693304ED0FF7BD0541F9A755F ] amdsata         C:\Windows\system32\drivers\amdsata.sys
08:45:32.0666 0x0d78  amdsata - ok
08:45:32.0693 0x0d78  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
08:45:32.0706 0x0d78  amdsbs - ok
08:45:32.0715 0x0d78  [ DB27766102C7BF7E95140A2AA81D042E, 489F812B596EA06E53D891CD05047AA17CDF752854BBD553BA65D10799AF78DF ] amdxata         C:\Windows\system32\drivers\amdxata.sys
08:45:32.0723 0x0d78  amdxata - ok
08:45:32.0737 0x0d78  [ 42FD751B27FA0E9C69BB39F39E409594, DE349CAA570957868CA1CB0BE0FAF551CD4D44FD53EBC4391B9C1C7B9CF295D2 ] AppID           C:\Windows\system32\drivers\appid.sys
08:45:32.0752 0x0d78  AppID - ok
08:45:32.0815 0x0d78  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
08:45:32.0852 0x0d78  AppIDSvc - ok
08:45:32.0887 0x0d78  [ D065BE66822847B7F127D1F90158376E, 20F911F390FF23C2C42361A449C4344DB59F1DC21EDD1E7EBC4E80914DEF7824 ] Appinfo         C:\Windows\System32\appinfo.dll
08:45:32.0899 0x0d78  Appinfo - ok
08:45:33.0009 0x0d78  [ 221564CC7BE37611FE15EACF443E1BF6, 381BDF17418C779D72332431BA174C2AD76CD9C7C1711FF5142EA9B05D5555E4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
08:45:33.0017 0x0d78  Apple Mobile Device - ok
08:45:33.0081 0x0d78  [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt         C:\Windows\System32\appmgmts.dll
08:45:33.0096 0x0d78  AppMgmt - ok
08:45:33.0127 0x0d78  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
08:45:33.0138 0x0d78  arc - ok
08:45:33.0152 0x0d78  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
08:45:33.0163 0x0d78  arcsas - ok
08:45:33.0207 0x0d78  [ D7989234601A2DE9A1801F4ED9533B6E, 59FEDA2BC940B9B45597B99F11F58EF0F09242840220BF305D75A5E94DF3E4B8 ] asahci64        C:\Windows\system32\DRIVERS\asahci64.sys
08:45:33.0215 0x0d78  asahci64 - ok
08:45:33.0248 0x0d78  [ 10920CCB66203D7EF48F024B1B35AE6F, 3C97FE6C91076C059E54234F54021F5D74FB42638BE14E2C1E4CF2EFC342C274 ] asmthub3        C:\Windows\system32\DRIVERS\asmthub3.sys
08:45:33.0259 0x0d78  asmthub3 - ok
08:45:33.0281 0x0d78  [ C479BFAF73CF726E01AA0A487B268A5E, D49F7779CD25E098EC9DAF1886C3B3DB8EB22CEC0FEA6FDF4522A2B2D282AE37 ] asmtxhci        C:\Windows\system32\DRIVERS\asmtxhci.sys
08:45:33.0296 0x0d78  asmtxhci - ok
08:45:33.0592 0x0d78  [ 041672BAC20B34EAEDEB033129655DD8, 14264732F0CACF5732C7652C411F0A1C3B4A4417C31DD289C8AFF170BE683E5A ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
08:45:33.0606 0x0d78  aspnet_state - ok
08:45:33.0671 0x0d78  [ EDC0C73FA41DF1C8B1FEA3852AED2848, A3FE7EE1AB15ED603403479CFD011DF9B506C1FE95730C0980F1410810C2F736 ] AsrHidFilter    C:\Windows\system32\DRIVERS\AsrHidFilter.sys
08:45:33.0679 0x0d78  AsrHidFilter - ok
08:45:33.0724 0x0d78  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
08:45:33.0762 0x0d78  AsyncMac - ok
08:45:33.0775 0x0d78  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\DRIVERS\atapi.sys
08:45:33.0783 0x0d78  atapi - ok
08:45:33.0835 0x0d78  [ 230CF51113CD4B830B3BFD09B0D4C066, 54751AA93E5E697A09B9C02EED34BFFE4B9C98B69490B738BFD4127EACC0E39F ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
08:45:33.0845 0x0d78  AtiHDAudioService - ok
08:45:33.0909 0x0d78  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
08:45:33.0947 0x0d78  AudioEndpointBuilder - ok
08:45:33.0962 0x0d78  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
08:45:33.0999 0x0d78  AudioSrv - ok
08:45:34.0037 0x0d78  [ B20B5FA5CA050E9926E4D1DB81501B32, 91B9038349BA07E32DE809E6798167EE44087809EB1174B84EC16580040F1BE0 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
08:45:34.0053 0x0d78  AxInstSV - ok
08:45:34.0091 0x0d78  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
08:45:34.0113 0x0d78  b06bdrv - ok
08:45:34.0157 0x0d78  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
08:45:34.0174 0x0d78  b57nd60a - ok
08:45:34.0189 0x0d78  BCM42RLY - ok
08:45:34.0212 0x0d78  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
08:45:34.0235 0x0d78  BDESVC - ok
08:45:34.0266 0x0d78  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
08:45:34.0291 0x0d78  Beep - ok
08:45:34.0340 0x0d78  [ 4992C609A6315671463E30F6512BC022, 3020034556EAC25CD90F41D3BFFDD0BB2C3D1C5BAC4359F4B71B84A9FC404495 ] BFE             C:\Windows\System32\bfe.dll
08:45:34.0378 0x0d78  BFE - ok
08:45:34.0443 0x0d78  [ 7F0C323FE3DA28AA4AA1BDA3F575707F, 7FF09CBC16A9E5F357A76FF79A3F0DD047957D474031F51A6BB4916C7911F005 ] BITS            C:\Windows\system32\qmgr.dll
08:45:34.0486 0x0d78  BITS - ok
08:45:34.0518 0x0d78  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
08:45:34.0529 0x0d78  blbdrive - ok
08:45:34.0634 0x0d78  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
08:45:34.0649 0x0d78  Bonjour Service - ok
08:45:34.0688 0x0d78  [ 19D20159708E152267E53B66677A4995, 6401FA5C3EFF26BED075FEC68F868CD8D0598FDB45EA9381810615F7252F7A9A ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
08:45:34.0711 0x0d78  bowser - ok
08:45:34.0738 0x0d78  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
08:45:34.0759 0x0d78  BrFiltLo - ok
08:45:34.0776 0x0d78  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
08:45:34.0789 0x0d78  BrFiltUp - ok
08:45:34.0836 0x0d78  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
08:45:34.0873 0x0d78  BridgeMP - ok
08:45:34.0911 0x0d78  [ 6B054C67AAA87843504E8E3C09102009, 284AA58625FBDBFECB851A35407331B40BAEC141F2DCEDB9F15733BAB22F5C81 ] Browser         C:\Windows\System32\browser.dll
08:45:34.0925 0x0d78  Browser - ok
08:45:34.0946 0x0d78  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
08:45:34.0986 0x0d78  Brserid - ok
08:45:35.0000 0x0d78  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
08:45:35.0013 0x0d78  BrSerWdm - ok
08:45:35.0023 0x0d78  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
08:45:35.0036 0x0d78  BrUsbMdm - ok
08:45:35.0043 0x0d78  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
08:45:35.0055 0x0d78  BrUsbSer - ok
08:45:35.0208 0x0d78  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
08:45:35.0222 0x0d78  BTHMODEM - ok
08:45:35.0263 0x0d78  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
08:45:35.0303 0x0d78  bthserv - ok
08:45:35.0335 0x0d78  catchme - ok
08:45:35.0349 0x0d78  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
08:45:35.0375 0x0d78  cdfs - ok
08:45:35.0406 0x0d78  [ 83D2D75E1EFB81B3450C18131443F7DB, F2C686C980D818E797818E75B808E1E0B51B2045840A4BFC32D860B7DB4DFA22 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
08:45:35.0430 0x0d78  cdrom - ok
08:45:35.0461 0x0d78  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] CertPropSvc     C:\Windows\System32\certprop.dll
08:45:35.0489 0x0d78  CertPropSvc - ok
08:45:35.0593 0x0d78  [ 33B82CF69E41B38A2EC0C3CABDE80D6E, E7331B38232001A4055CE1F6D74AED0F108385DDBD5211006DA8EA932D3B1575 ] cFosSpeed       C:\Windows\system32\DRIVERS\cfosspeed6.sys
08:45:35.0629 0x0d78  cFosSpeed - ok
08:45:35.0767 0x0d78  [ 760085908644D2988F1B504C3FCA6959, 65BF8084E14A8755A4DBE8AEAFDC4D3A55F59AEE3D2FED021A202D8B6C02566C ] cFosSpeedS      C:\Program Files\ASRock\XFast LAN\spd.exe
08:45:35.0781 0x0d78  cFosSpeedS - ok
08:45:35.0849 0x0d78  [ 7975EABC23768C92B18ED2744A8FD2BE, C81E92B10E2A5F533DC3D2A554F469915DEF8C4F9D9C24D62ACBA8D1A86285AE ] cfwids          C:\Windows\system32\drivers\cfwids.sys
08:45:35.0858 0x0d78  cfwids - ok
08:45:35.0883 0x0d78  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
08:45:35.0911 0x0d78  circlass - ok
08:45:35.0957 0x0d78  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
08:45:35.0971 0x0d78  CLFS - ok
08:45:36.0105 0x0d78  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
08:45:36.0302 0x0d78  clr_optimization_v2.0.50727_32 - ok
08:45:36.0401 0x0d78  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
08:45:36.0412 0x0d78  clr_optimization_v2.0.50727_64 - ok
08:45:36.0546 0x0d78  [ 397C2677C25CBE213F3270245A401624, 8121E37108DE7A0402DC5111EBF452F91893B63EECE3AAD9EACF61C40D3FC182 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
08:45:36.0557 0x0d78  clr_optimization_v4.0.30319_32 - ok
08:45:36.0642 0x0d78  [ 29139759FCC4E4E0531ABE2EA82CE646, CFF7B2F4A9B37D343BE18DC40161DC03FA9DB308CAE9E0B3DF1FCDC3EBAC0C08 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
08:45:36.0654 0x0d78  clr_optimization_v4.0.30319_64 - ok
08:45:36.0714 0x0d78  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
08:45:36.0745 0x0d78  CmBatt - ok
08:45:36.0759 0x0d78  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\DRIVERS\cmdide.sys
08:45:36.0768 0x0d78  cmdide - ok
08:45:36.0820 0x0d78  [ CA7720B73446FDDEC5C69519C1174C98, F24796765587CC1D653A04783B1659564F42E600DA3AFA3DED724592B291D033 ] CNG             C:\Windows\system32\Drivers\cng.sys
08:45:36.0839 0x0d78  CNG - ok
08:45:36.0853 0x0d78  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
08:45:36.0862 0x0d78  Compbatt - ok
08:45:36.0903 0x0d78  [ 59D203C3F46F3CA536ECAC0E084CD887, 0D04D469ADE2AEFAA18920E13A8EC74FDFB7C6827A78BFCD987B66D579BFF846 ] CompFilter64    C:\Windows\system32\DRIVERS\lvbflt64.sys
08:45:36.0912 0x0d78  CompFilter64 - ok
08:45:36.0943 0x0d78  [ F26B3A86F6FA87CA360B879581AB4123, 723904362614FE47F6CC0EA0656BA1B47EA32D73BAFB61688A5E5CAE4340B1BF ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
08:45:36.0956 0x0d78  CompositeBus - ok
08:45:36.0972 0x0d78  COMSysApp - ok
08:45:37.0005 0x0d78  [ 44622785D2D2DD8B13E6DC969B6E34A4, 98F3D48A80A6C28776EF77782472428F107C6B4203A82537730679EA5E742521 ] copperhd        C:\Windows\system32\drivers\copperhd.sys
08:45:37.0016 0x0d78  copperhd - ok
08:45:37.0134 0x0d78  [ 08F934092E0429BADF88E9F91DB0F61E, 6E9091C006FFFF261DC61C8E9A45219E47C351296E5355FC4B7242F30E1DDFE3 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
08:45:37.0150 0x0d78  cphs - ok
08:45:37.0246 0x0d78  [ 3CA734CE373E5675FBC15CA2C45228E5, A6C6E9FABDE5EA18D266DB71C0CC6B51D682116D1898CCB4E9BA730F15C44B32 ] cpudrv64        C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys
08:45:37.0256 0x0d78  cpudrv64 - ok
08:45:37.0269 0x0d78  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
08:45:37.0278 0x0d78  crcdisk - ok
08:45:37.0350 0x0d78  [ C8BD651E13895B93ED9EC5B4F1DF42BC, D86D6BF0BA3C09B49B3A52C86A7F3B3856A27F79EDD86A8FFA469D9A5F196E8D ] Creative ALchemy AL6 Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
08:45:37.0356 0x0d78  Creative ALchemy AL6 Licensing Service - detected UnsignedFile.Multi.Generic ( 1 )
08:45:39.0797 0x0d78  Detect skipped due to KSN trusted
08:45:39.0797 0x0d78  Creative ALchemy AL6 Licensing Service - ok
08:45:39.0914 0x0d78  [ C0EAD9F8AB83D41FF07303C75589C2B8, C89CAC39BCD2FA2DCC56D7EE84FF66127BCECCAE400E119FE41BF4C4D769504B ] Creative Audio Engine Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
08:45:39.0965 0x0d78  Creative Audio Engine Licensing Service - detected UnsignedFile.Multi.Generic ( 1 )
08:45:42.0341 0x0d78  Detect skipped due to KSN trusted
08:45:42.0341 0x0d78  Creative Audio Engine Licensing Service - ok
08:45:42.0392 0x0d78  [ BAF19B633933A9FB4883D27D66C39E9A, 2D8ABB5161736CCCADA67B3E6A8D70B0B5E1E3FE6084561891F394DA191B3439 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
08:45:42.0406 0x0d78  CryptSvc - ok
08:45:42.0452 0x0d78  [ 4A6173C2279B498CD8F57CAE504564CB, FF3CD404FD91EDE38C21780362CE892BFBBC2526B146BEBD139C7413EB29A216 ] CSC             C:\Windows\system32\drivers\csc.sys
08:45:42.0472 0x0d78  CSC - ok
08:45:42.0611 0x0d78  [ 873FBF927C06E5CEE04DEC617502F8FD, 8B452ED5D003337E66634EEC3D5C9FBA4D05FF5AE776239F3B769FAA505E729C ] CscService      C:\Windows\System32\cscsvc.dll
08:45:42.0636 0x0d78  CscService - ok
08:45:42.0745 0x0d78  [ 18CC77713154B81A5DFB4BA80F2733CB, 274770E549D073590FD5F004362108420F3065C24C2D7B6C25BCC9F4C26F2BDC ] CT20XUT         C:\Windows\system32\drivers\CT20XUT.SYS
08:45:42.0757 0x0d78  CT20XUT - ok
08:45:42.0783 0x0d78  [ 18CC77713154B81A5DFB4BA80F2733CB, 274770E549D073590FD5F004362108420F3065C24C2D7B6C25BCC9F4C26F2BDC ] CT20XUT.SYS     C:\Windows\System32\drivers\CT20XUT.SYS
08:45:42.0795 0x0d78  CT20XUT.SYS - ok
08:45:43.0006 0x0d78  [ D2B88CB94AEDFC34637CF12722A08C28, 66BF48058374D31D028F5C257980671ADF1E33DC31460220BA9709F5A20D7F65 ] ctac32k         C:\Windows\system32\drivers\ctac32k.sys
08:45:43.0024 0x0d78  ctac32k - ok
08:45:43.0092 0x0d78  [ 4CF2C3E2128594691DF31597C9EB80BB, CE9D8FA317363C1ECFEC34A800ED75867B6D453DAF6D860AD807208892277840 ] ctaud2k         C:\Windows\system32\drivers\ctaud2k.sys
08:45:43.0112 0x0d78  ctaud2k - ok
08:45:43.0446 0x0d78  [ 5CE3D0E1D1B3832EE052CFC442EEE0FA, 6B9DB2C350140ED547C7A96DB0EAD812E8987176B312C79AF52FC9B23EEEB8C4 ] CTAudSvcService C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
08:45:43.0458 0x0d78  CTAudSvcService - detected UnsignedFile.Multi.Generic ( 1 )
08:45:45.0883 0x0d78  Detect skipped due to KSN trusted
08:45:45.0883 0x0d78  CTAudSvcService - ok
08:45:46.0095 0x0d78  [ A9007C6A5E20B66B8EE61C07EAC7B49D, F9ACE95CF246F36674F6CBA11A3F6148021A0DAB46698DDC4B4537AA0B6CF78B ] CTEXFIFX        C:\Windows\system32\drivers\CTEXFIFX.SYS
08:45:46.0126 0x0d78  CTEXFIFX - ok
08:45:46.0252 0x0d78  [ A9007C6A5E20B66B8EE61C07EAC7B49D, F9ACE95CF246F36674F6CBA11A3F6148021A0DAB46698DDC4B4537AA0B6CF78B ] CTEXFIFX.SYS    C:\Windows\System32\drivers\CTEXFIFX.SYS
08:45:46.0283 0x0d78  CTEXFIFX.SYS - ok
08:45:46.0408 0x0d78  [ D75A69D9761735DBEDDD6E8D306370D3, B175493998B50BF1A60C4B2A882D6CB53A539C5835200197080ACCCDB4E30F22 ] CTHWIUT         C:\Windows\system32\drivers\CTHWIUT.SYS
08:45:46.0418 0x0d78  CTHWIUT - ok
08:45:46.0422 0x0d78  [ D75A69D9761735DBEDDD6E8D306370D3, B175493998B50BF1A60C4B2A882D6CB53A539C5835200197080ACCCDB4E30F22 ] CTHWIUT.SYS     C:\Windows\System32\drivers\CTHWIUT.SYS
08:45:46.0431 0x0d78  CTHWIUT.SYS - ok
08:45:46.0524 0x0d78  [ 2ABC26447CF31D3D8B4AD7F92FA16AF7, 17E1E2C87ADBC40D18DA5B73C736DA4C92F505C8DAC2E43431710A560165B942 ] ctprxy2k        C:\Windows\system32\drivers\ctprxy2k.sys
08:45:46.0533 0x0d78  ctprxy2k - ok
08:45:46.0765 0x0d78  [ 4681F3E73E3B83CF93A3A601687B3630, 82A215FA49BA917C39CE32DF51AD3B53B42C875DC09C7E8BD3B53044FFA8D810 ] ctsfm2k         C:\Windows\system32\drivers\ctsfm2k.sys
08:45:46.0777 0x0d78  ctsfm2k - ok
08:45:46.0861 0x0d78  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] DcomLaunch      C:\Windows\system32\rpcss.dll
08:45:46.0896 0x0d78  DcomLaunch - ok
08:45:46.0985 0x0d78  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
08:45:47.0027 0x0d78  defragsvc - ok
08:45:47.0151 0x0d78  [ 9C253CE7311CA60FC11C774692A13208, 23507138576DB75AA8B7415140F7B5D8A90CB2661796223870461C721A36AEBF ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
08:45:47.0174 0x0d78  DfsC - ok
08:45:47.0260 0x0d78  [ E428DFFA96FAD07D8CA3C9082563A225, F3D2E94A9FF2CF68CC99A8B42B8DEA5E57D46000D1845DC0908224493480C79F ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
08:45:47.0301 0x0d78  dg_ssudbus - ok
08:45:47.0350 0x0d78  [ CE3B9562D997F69B330D181A8875960F, 6FEE6622859198C5C13545867EF7CFE8EDC991360E976F792313DAA9C82CC5C8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
08:45:47.0369 0x0d78  Dhcp - ok
08:45:47.0390 0x0d78  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
08:45:47.0415 0x0d78  discache - ok
08:45:47.0480 0x0d78  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
08:45:47.0490 0x0d78  Disk - ok
08:45:47.0522 0x0d78  [ 85CF424C74A1D5EC33533E1DBFF9920A, 882D5FA0D5EC053D76A0C46A6047A621D607651693CF94E5506219EECCC8D079 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
08:45:47.0537 0x0d78  Dnscache - ok
08:45:47.0581 0x0d78  [ 14452ACDB09B70964C8C21BF80A13ACB, DA0AAAC04626EFF4256D7095FF1DDA1F1B17676E26990C418BDF5090476F2AB4 ] dot3svc         C:\Windows\System32\dot3svc.dll
08:45:47.0612 0x0d78  dot3svc - ok
08:45:47.0646 0x0d78  [ 8C2BA6BEA949EE6E68385F5692BAFB94, 1047F473DCE0FB56BEA5C1B7929752C1FBAB5983C8202ABB4EEA48FCD60A353A ] DPS             C:\Windows\system32\dps.dll
08:45:47.0691 0x0d78  DPS - ok
08:45:47.0732 0x0d78  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
08:45:47.0754 0x0d78  drmkaud - ok
08:45:47.0843 0x0d78  [ 1ED08A6264C5C92099D6D1DAE5E8F530, 4045AE77859B1DBF13972451972EAAF6F3C97BEA423E9E78F1C2F14330CD47CA ] DrvAgent64      C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS
08:45:47.0852 0x0d78  DrvAgent64 - ok
08:45:48.0158 0x0d78  dump_wmimmc - ok
08:45:48.0279 0x0d78  [ 1633B9ABF52784A1331476397A48CBEF, 697780697C4C55FCCF5FB65C93FB37B3F5A43BF0C59FDBB9EF822D0E993E47BD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
08:45:48.0304 0x0d78  DXGKrnl - ok
08:45:48.0347 0x0d78  EagleX64 - ok
08:45:48.0381 0x0d78  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
08:45:48.0408 0x0d78  EapHost - ok
08:45:48.0897 0x0d78  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
08:45:49.0025 0x0d78  ebdrv - ok
08:45:49.0065 0x0d78  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] EFS             C:\Windows\System32\lsass.exe
08:45:49.0076 0x0d78  EFS - ok
08:45:49.0153 0x0d78  [ 47C071994C3F649F23D9CD075AC9304A, B7AA2DD6AD14F18A19620F5FB79D50C630D3750E72DD67BF8D105CC4F5CE1D46 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
08:45:49.0181 0x0d78  ehRecvr - ok
08:45:49.0228 0x0d78  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
08:45:49.0242 0x0d78  ehSched - ok
08:45:49.0297 0x0d78  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
08:45:49.0318 0x0d78  elxstor - ok
08:45:49.0363 0x0d78  [ AF7217AE9E9A2493719462C890EB73B3, F0B8102C9515D3E020C1BBC6B60FDE3A2FB56E1BE83FC32FB6CC26DB076C591F ] emupia          C:\Windows\system32\drivers\emupia2k.sys
08:45:49.0373 0x0d78  emupia - ok
08:45:49.0381 0x0d78  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\DRIVERS\errdev.sys
08:45:49.0392 0x0d78  ErrDev - ok
08:45:49.0427 0x0d78  [ D0542D4590A83339F4AAAC58DF6AF43C, 3C65BB35506384190D94B3F91308BF178D2CA162DC9025CB91AD32F8DB1F46CE ] EuMusDesignVirtualAudioCableWdm C:\Windows\system32\DRIVERS\vrtaucbl.sys
08:45:49.0437 0x0d78  EuMusDesignVirtualAudioCableWdm - ok
08:45:49.0487 0x0d78  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
08:45:49.0520 0x0d78  EventSystem - ok
08:45:49.0575 0x0d78  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
08:45:49.0606 0x0d78  exfat - ok
08:45:49.0701 0x0d78  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
08:45:49.0745 0x0d78  fastfat - ok
08:45:49.0803 0x0d78  [ D607B2F1BEE3992AA6C2C92C0A2F0855, E22301C8F01DBF0A38A85165959BB070647C996CB1BCD50FDFE3DDDCA427DF2A ] Fax             C:\Windows\system32\fxssvc.exe
08:45:49.0827 0x0d78  Fax - ok
08:45:49.0873 0x0d78  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
08:45:49.0897 0x0d78  fdc - ok
08:45:49.0913 0x0d78  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
08:45:49.0938 0x0d78  fdPHost - ok
08:45:49.0975 0x0d78  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
08:45:50.0001 0x0d78  FDResPub - ok
08:45:50.0010 0x0d78  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
08:45:50.0019 0x0d78  FileInfo - ok
08:45:50.0031 0x0d78  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
08:45:50.0057 0x0d78  Filetrace - ok
08:45:50.0180 0x0d78  [ 31AC02203B716CBF8829343C91C8FD75, 6231A842733887C9A0CD513E9AFEF4A35152F4BCC9706EEAB38DC898B10AF9BD ] Fitbit Connect  C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
08:45:50.0210 0x0d78  Fitbit Connect - ok
08:45:50.0368 0x0d78  [ 1F63900E2EB00101B9ACA2B7A870704E, 5AFE1FC852937FECE6B33147BD0110436FE97F33BFDA3F69B1F5EDAD6FFC09C6 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
08:45:50.0390 0x0d78  FLEXnet Licensing Service - ok
08:45:50.0583 0x0d78  [ 1C3FB052A0BB72EDAED90785C34D6EED, 5300A82D1A79EBA1768F545E73974E3B8CE189AB39CDF905BF42AFA2E497186B ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
08:45:50.0619 0x0d78  FLEXnet Licensing Service 64 - ok
08:45:50.0657 0x0d78  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
08:45:50.0669 0x0d78  flpydisk - ok
08:45:50.0707 0x0d78  [ F7866AF72ABBAF84B1FA5AA195378C59, 9D522044FE9C18FB3EC327E675737C01F2A8231DDE900421D3A431596946A7F8 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
08:45:50.0721 0x0d78  FltMgr - ok
08:45:50.0768 0x0d78  [ FE95AE537B41A7E2F4CFE353064DC4AF, 1C354CAF4A8FB599BD252133C4C3845624C6F9B692E3F4C68573486FE8236EB3 ] FNETTBOH_305    C:\Windows\system32\drivers\FNETTBOH_305.SYS
08:45:50.0778 0x0d78  FNETTBOH_305 - ok
08:45:50.0812 0x0d78  [ 7C3C4B4C951EC1BDFD4F769D05E2CC68, 7B9DA195D3CF0E7BE6BB532CC5D058BC6658B7538B5C5CF09B1A4ABEF1ECACB4 ] FNETURPX        C:\Windows\system32\drivers\FNETURPX.SYS
08:45:50.0820 0x0d78  FNETURPX - ok
08:45:50.0921 0x0d78  [ CB5E4B9C319E3C6BB363EB7E58A4A051, C9DCF2C2A6AFE0A0F3E23A265843D0C423C08B2E54702C5B389CF293D9A6BAC5 ] FontCache       C:\Windows\system32\FntCache.dll
08:45:50.0953 0x0d78  FontCache - ok
08:45:51.0070 0x0d78  [ 8D89E3131C27FDD6932189CB785E1B7A, AC7DA4C5E6D2E41D1A1DE146E46F034FAF0FB11AD801F070F2D5CD08166E9EB7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
08:45:51.0085 0x0d78  FontCache3.0.0.0 - ok
08:45:51.0096 0x0d78  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
08:45:51.0106 0x0d78  FsDepends - ok
08:45:51.0143 0x0d78  [ D3E3F93D67821A2DB2B3D9FAC2DC2064, 727FAA7E15A20ED3A37668D294ABDE6EAF1C87C34EE283C99EE3303E85001404 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
08:45:51.0152 0x0d78  Fs_Rec - ok
08:45:51.0260 0x0d78  [ 0D015D3584704EC814A58276232F143B, 13290A33FEB4089DBD35259C60FD8BAD648DA2FC9435541FA89C7D9717AA095B ] Futuremark SystemInfo Service C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe
08:45:51.0271 0x0d78  Futuremark SystemInfo Service - ok
08:45:51.0314 0x0d78  [ 1F44F8559E61A8306ECC67BB1E168B7C, 5B7CDD4EDF128B48817145357BB36E2107F0D081C26004B44BFF7C63AD29D99B ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
08:45:51.0329 0x0d78  fvevol - ok
08:45:51.0409 0x0d78  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
08:45:51.0421 0x0d78  gagp30kx - ok
08:45:51.0479 0x0d78  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
08:45:51.0487 0x0d78  GEARAspiWDM - ok
08:45:51.0534 0x0d78  [ FE5AB4525BC2EC68B9119A6E5D40128B, 088DE37982CEE78A0C1181389A3BFF1E352DF504074B3E8F3EA244DB271BF216 ] gpsvc           C:\Windows\System32\gpsvc.dll
08:45:51.0563 0x0d78  gpsvc - ok
08:45:51.0758 0x0d78  [ 69A60F8DDF90F462E289525E3BBC7ADC, BC53CCC73D57B315DA96543F818D97F1BF1359966EF1220D91F0DD96684AA866 ] ha20x2k         C:\Windows\system32\drivers\ha20x2k.sys
08:45:51.0792 0x0d78  ha20x2k - ok
08:45:51.0834 0x0d78  [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi         C:\Windows\system32\DRIVERS\hamachi.sys
08:45:51.0843 0x0d78  hamachi - ok
08:45:52.0059 0x0d78  [ 5D943A7CDD83F533D41A22E882677C6E, E9CD581EC985B3F765E5E890A02B2D8FE4E5345063969831278CB3876DFF1273 ] Hamachi2Svc     C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
08:45:52.0105 0x0d78  Hamachi2Svc - ok
08:45:52.0140 0x0d78  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
08:45:52.0160 0x0d78  hcw85cir - ok
08:45:52.0210 0x0d78  [ 6410F6F415B2A5A9037224C41DA8BF12, 5B8452BC49FDA2215281D27B22FA9BE46B0460F51C4DC70E58B687CFB541F3A5 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
08:45:52.0274 0x0d78  HdAudAddService - ok
08:45:52.0312 0x0d78  [ 0A49913402747A0B67DE940FB42CBDBB, 61A45DBDCEB4A2D5C3C28F6BC8C5ADC51D0240A7553DF44BCC4355FC06F72B83 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
08:45:52.0327 0x0d78  HDAudBus - ok
08:45:52.0337 0x0d78  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
08:45:52.0348 0x0d78  HidBatt - ok
08:45:52.0362 0x0d78  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
08:45:52.0377 0x0d78  HidBth - ok
08:45:52.0388 0x0d78  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
08:45:52.0411 0x0d78  HidIr - ok
08:45:52.0435 0x0d78  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
08:45:52.0461 0x0d78  hidserv - ok
08:45:52.0522 0x0d78  [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
08:45:52.0550 0x0d78  HidUsb - ok
08:45:52.0600 0x0d78  [ 29F981739E50305128022CBE10B3659C, 25060937145B0DCA8CD088E78993BFEF1430CDDFF433E606AFC93993CBBF4B3E ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
08:45:52.0617 0x0d78  HipShieldK - ok
08:45:52.0648 0x0d78  [ EFA58EDE58DD74388FFD04CB32681518, 76D81F9BC1A4D85A779B79DEC23B79F1568AA236CD49247414093CDC1FCC150F ] hkmsvc          C:\Windows\system32\kmsvc.dll
08:45:52.0675 0x0d78  hkmsvc - ok
08:45:52.0709 0x0d78  [ 046B2673767CA626E2CFB7FDF735E9E8, 9C932DCC5DE9B1919AB38C01D76AD7BBAF491DE6D158662407974748BC0B4C6C ] HomeGroupListener C:\Windows\system32\ListSvc.dll
08:45:52.0724 0x0d78  HomeGroupListener - ok
08:45:52.0766 0x0d78  [ 06A7422224D9865A5613710A089987DF, EF604B4B6918D3FDC8E90ED9004E6E7340E0F399C214C65CCE3A7C8C576FA1C0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
08:45:52.0781 0x0d78  HomeGroupProvider - ok
08:45:52.0945 0x0d78  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] HomeNetSvc      C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:45:52.0959 0x0d78  HomeNetSvc - ok
08:45:52.0991 0x0d78  [ 0886D440058F203EBA0E1825E4355914, BC49C4CEFE324A08C864A4BF4FEA9A70151FAB7CC30BDC28344F3FFD2F500070 ] HpSAMD          C:\Windows\system32\DRIVERS\HpSAMD.sys
08:45:53.0002 0x0d78  HpSAMD - ok
08:45:53.0026 0x0d78  [ CEE049CAC4EFA7F4E1E4AD014414A5D4, 433AE2D845850F1D7A48275BBD87B3F0E7DD48F2282C727C4B777ECD92CC331D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
08:45:53.0065 0x0d78  HTTP - ok
08:45:53.0125 0x0d78  [ F17766A19145F111856378DF337A5D79, FC1633FB865A5324EBCBE5F97D297B899FABBDD965D862C2EFC743CD36F47E62 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
08:45:53.0134 0x0d78  hwpolicy - ok
08:45:53.0172 0x0d78  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
08:45:53.0193 0x0d78  i8042prt - ok
08:45:53.0232 0x0d78  [ B75E45C564E944A2657167D197AB29DA, 622EA73F4D9CAE17628C18148FB241817A0AE6D80A74B099204ED27C1A750B24 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
08:45:53.0250 0x0d78  iaStorV - ok
08:45:53.0298 0x0d78  [ 55004F2386405B28471E09C2373ED0E0, 4B706A725EC17650CCFE0D0D944FC187B4C943D8241B847F2B8C65A3A1145885 ] ICCWDT          C:\Windows\system32\DRIVERS\ICCWDT.sys
08:45:53.0307 0x0d78  ICCWDT - ok
08:45:53.0383 0x0d78  [ 2F2BE70D3E02B6FA877921AB9516D43C, E04255EE4BD95FC1539EB1EB9F702B039F65993D31A4531DA487274543EF5226 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
08:45:53.0410 0x0d78  idsvc - ok
08:45:53.0607 0x0d78  [ 8C44E6B688790E2AD3846C97661C54F1, CB487D167EDA3C1E30BD5FB8F98C15EB9E75A6FB793009C2F1BBCAAB4285F772 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
08:45:53.0737 0x0d78  igfx - ok
08:45:53.0766 0x0d78  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
08:45:53.0776 0x0d78  iirsp - ok
08:45:53.0824 0x0d78  [ C5B4683680DF085B57BC53E5EF34861F, 9C06517DFCB3ED7BB1166F7EB6CCC8713E6B68283C75420C0EDC182094AA1B8F ] IKEEXT          C:\Windows\System32\ikeext.dll
08:45:53.0866 0x0d78  IKEEXT - ok
08:45:53.0892 0x0d78  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\DRIVERS\intelide.sys
08:45:53.0906 0x0d78  intelide - ok
08:45:53.0953 0x0d78  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
08:45:53.0981 0x0d78  intelppm - ok
08:45:53.0994 0x0d78  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
08:45:54.0034 0x0d78  IPBusEnum - ok
08:45:54.0059 0x0d78  [ 722DD294DF62483CECAAE6E094B4D695, 41ABB42EF969EA8A84B546908EBBDC2411D964DE101CE6DD3D7ECF109085E0C0 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
08:45:54.0087 0x0d78  IpFilterDriver - ok
08:45:54.0139 0x0d78  [ F8E058D17363EC580E4B7232778B6CB5, 02352919F349C57930A0B032FBDC45327FB473D310DE7AC721F4694FDE7D21FB ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
08:45:54.0174 0x0d78  iphlpsvc - ok
08:45:54.0191 0x0d78  [ E2B4A4494DB7CB9B89B55CA268C337C5, C59BC4AA03D10647641EC7533F78BC7E2EA6FC48B8B2CF1A49B5148EF40A90FB ] IPMIDRV         C:\Windows\system32\DRIVERS\IPMIDrv.sys
08:45:54.0204 0x0d78  IPMIDRV - ok
08:45:54.0212 0x0d78  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
08:45:54.0255 0x0d78  IPNAT - ok
08:45:54.0310 0x0d78  [ 6BF622C46721CF6E2B35E868F319E6EB, 926D3C6334D8AF8A248A361D1F7C0A655835572ED8AC6F1D7932E1FA7A26B50A ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
08:45:54.0328 0x0d78  iPod Service - ok
08:45:54.0377 0x0d78  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
08:45:54.0402 0x0d78  IRENUM - ok
08:45:54.0416 0x0d78  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\DRIVERS\isapnp.sys
08:45:54.0426 0x0d78  isapnp - ok
08:45:54.0439 0x0d78  [ FA4D2557DE56D45B0A346F93564BE6E1, 2827EC3582FF59FFD55BBD4A4F0DDFFEAD4F2537FA043B3A69904FE920B1619C ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
08:45:54.0452 0x0d78  iScsiPrt - ok
08:45:54.0498 0x0d78  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
08:45:54.0507 0x0d78  kbdclass - ok
08:45:54.0526 0x0d78  [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
08:45:54.0537 0x0d78  kbdhid - ok
08:45:54.0564 0x0d78  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] KeyIso          C:\Windows\system32\lsass.exe
08:45:54.0575 0x0d78  KeyIso - ok
08:45:54.0602 0x0d78  [ 4F4B5FDE429416877DE7143044582EB5, A28FFEA078DBD91F3CC28088810EEEB727107B3F0F48370B44D87DC8F8C55B99 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
08:45:54.0612 0x0d78  KSecDD - ok
08:45:54.0659 0x0d78  [ 6F40465A44ECDC1731BEFAFEC5BDD03C, 317334D414D0AF73CB4D9CA11EA80C641E786760B8800F2795D0CB38378DBB80 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
08:45:54.0670 0x0d78  KSecPkg - ok
08:45:54.0691 0x0d78  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
08:45:54.0716 0x0d78  ksthunk - ok
08:45:54.0762 0x0d78  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
08:45:54.0864 0x0d78  KtmRm - ok
08:45:54.0933 0x0d78  [ 81F1D04D4D0E433099365127375FD501, C2A81B5A482C974E8108806486EC28CB2D81400D42639682FE7B7A9BDF14BA9B ] LanmanServer    C:\Windows\System32\srvsvc.dll
08:45:54.0949 0x0d78  LanmanServer - ok
08:45:54.0987 0x0d78  [ 27026EAC8818E8A6C00A1CAD2F11D29A, A12858CCB3B2419D66C667A46B106DA7A7BA97FFFA9634BFAE95DDF193C430D5 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
08:45:55.0015 0x0d78  LanmanWorkstation - ok
08:45:55.0044 0x0d78  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
08:45:55.0080 0x0d78  lltdio - ok
08:45:55.0123 0x0d78  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
08:45:55.0161 0x0d78  lltdsvc - ok
08:45:55.0179 0x0d78  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
08:45:55.0205 0x0d78  lmhosts - ok
08:45:55.0253 0x0d78  [ D5F9C50082FA5F82C35922998B3DAD6E, 4957FB1888EC69E16E6D019F2D984EE810F8532FAB504B30D32518E4D3F01FDB ] LMIGuardianSvc  C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
08:45:55.0266 0x0d78  LMIGuardianSvc - ok
08:45:55.0366 0x0d78  [ 9AD4BEE2FE76D4CA39AC969B617E94FB, 1DE5FC59CDA5C7D63C9C60B9FC70A09F755196DFA25E8FAC0FBF262C44731CF0 ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
08:45:55.0380 0x0d78  LMS - ok
08:45:55.0407 0x0d78  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
08:45:55.0418 0x0d78  LSI_FC - ok
08:45:55.0451 0x0d78  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
08:45:55.0462 0x0d78  LSI_SAS - ok
08:45:55.0477 0x0d78  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
08:45:55.0487 0x0d78  LSI_SAS2 - ok
08:45:55.0497 0x0d78  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
08:45:55.0508 0x0d78  LSI_SCSI - ok
08:45:55.0543 0x0d78  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
08:45:55.0571 0x0d78  luafv - ok
08:45:55.0674 0x0d78  [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64          C:\Windows\system32\DRIVERS\lvrs64.sys
08:45:55.0688 0x0d78  LVRS64 - ok
08:45:55.0871 0x0d78  [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64         C:\Windows\system32\DRIVERS\lvuvc64.sys
08:45:55.0965 0x0d78  LVUVC64 - ok
08:45:56.0057 0x0d78  [ F928E5E72BBA15DD0CE9A26E0413D236, D63EFA1408084F524464729C2F3BE16550E07ACE2BF8A00699A8438079AD381B ] McAfee SiteAdvisor Service C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
08:45:56.0068 0x0d78  McAfee SiteAdvisor Service - ok
08:45:56.0214 0x0d78  [ 96E7AA538AB0EDECCAB3862BA4B66232, 8AF460093B4DC1FD81C4508A57B6A80A7FB2E1818A3405506B8DB5B521615FB6 ] McAPExe         C:\Program Files\McAfee\MSC\McAPExe.exe
08:45:56.0225 0x0d78  McAPExe - ok
08:45:56.0411 0x0d78  [ 1704A8189EE5580AB147CFD25C5C8770, DFA076FD36B5CC844D4BE3B865E9A1F809E14CCB1D78D82A2D8D8EE38210E6EB ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
08:45:56.0434 0x0d78  McComponentHostService - ok
08:45:56.0470 0x0d78  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McMPFSvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:45:56.0484 0x0d78  McMPFSvc - ok
08:45:56.0545 0x0d78  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McNaiAnn        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:45:56.0558 0x0d78  McNaiAnn - ok
08:45:56.0665 0x0d78  [ 63D93A440E7AC015D85B9A3DA0C1BBAF, 849A13E91B041DEC2A47F5BE65ADBA6CAC8AF01675D0D8E13730724B54B4DD15 ] McODS           C:\Program Files\McAfee\VirusScan\mcods.exe
08:45:56.0684 0x0d78  McODS - ok
08:45:56.0706 0x0d78  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] mcpltsvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:45:56.0719 0x0d78  mcpltsvc - ok
08:45:56.0783 0x0d78  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McProxy         C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:45:56.0796 0x0d78  McProxy - ok
08:45:56.0827 0x0d78  [ F4BE81C919FC0A012F5357E3911D4B67, 8FC3D787A1FACE8022D9BF1A4B024E313F8FD7535696D5E868DC2839E3B76E72 ] McPvDrv         C:\Windows\system32\drivers\McPvDrv.sys
08:45:56.0836 0x0d78  McPvDrv - ok
08:45:56.0876 0x0d78  [ F84C8F1000BC11E3B7B23CBD3BAFF111, BB4C4FFE3F6C9E5C16C06F6F666F177B94E1CF878397BCC0BDAF6EB3341AAED8 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
08:45:57.0018 0x0d78  Mcx2Svc - ok
08:45:57.0081 0x0d78  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
08:45:57.0101 0x0d78  megasas - ok
08:45:57.0114 0x0d78  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
08:45:57.0130 0x0d78  MegaSR - ok
08:45:57.0170 0x0d78  [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
08:45:57.0180 0x0d78  MEIx64 - ok
08:45:57.0232 0x0d78  [ 10947232B5F652B282DD57F845875896, 4881CA76924AB55D93D727E3CDDD25A74F77EA0B62E4071ADBE7C649B3254E43 ] mfeapfk         C:\Windows\system32\drivers\mfeapfk.sys
08:45:57.0242 0x0d78  mfeapfk - ok
08:45:57.0297 0x0d78  [ A611EDB749D446A5F7D2DE8D5CCBC4AE, A9D2409872A578C83A610B6E91C68C30813205C43D3FDD94D8A1893E80DAD500 ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
08:45:57.0310 0x0d78  mfeavfk - ok
08:45:57.0492 0x0d78  [ BBC716D161B412F3298C105B9382864F, EB678BE0AC52268CA1AAFDD5D7ED2216DA6FA8C98735AC39983AFAF14F029EE5 ] mfecore         C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
08:45:57.0517 0x0d78  mfecore - ok
08:45:57.0590 0x0d78  [ 1D57A3BCBFE09980993F2899E95ECF1A, B2C5A72B316D18A94D4B1939E135CF21C72198102B68CE5C5D63B4E1C766635F ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
08:45:57.0601 0x0d78  mfefire - ok
08:45:57.0661 0x0d78  [ 45457CB3601D054D70DBC372BBE2A8E8, 16F66921DF0059595EC8CEF13D4C21C27146360236877DCC2F1887A9D0F8E996 ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
08:45:57.0678 0x0d78  mfefirek - ok
08:45:57.0749 0x0d78  [ DD264F5A7EE58C48BD5085563C9E8191, B36781946865851F75A585D6874421D67DA8986415C3E164C92240189E567572 ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
08:45:57.0770 0x0d78  mfehidk - ok
08:45:57.0818 0x0d78  [ 57EC9D22D989DD67E91A51BE082B1083, 4DF70334ACF3B34403E8C4B73B90298B465C481FD79EFDA756B147642CC7E27C ] mfencbdc        C:\Windows\system32\DRIVERS\mfencbdc.sys
08:45:57.0834 0x0d78  mfencbdc - ok
08:45:57.0849 0x0d78  [ FCEEE953517CA72E4238954467CD63E8, B83FCF5CD882D9325729A1B347BAF741E51BC10B3ED0A47AF977D47BB68B19B5 ] mfencrk         C:\Windows\system32\DRIVERS\mfencrk.sys
08:45:57.0860 0x0d78  mfencrk - ok
08:45:57.0909 0x0d78  [ BC0DFA8EBC3DD572834B640DC22847B4, F9391ECB65D8F4FF349240BE1400ED8F7D9094B5A45EF546C8C39FF3ED2F0D6F ] mfevtp          C:\Windows\system32\mfevtps.exe
08:45:57.0921 0x0d78  mfevtp - ok
08:45:57.0965 0x0d78  [ EAE62CCDFB34E27D2E0CF9943695F50E, 27BA32E1631EDF939D8FEAAA6AB5CEE4844B58FCA5E9F349029330D78CC7CA50 ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
08:45:57.0980 0x0d78  mfewfpk - ok
08:45:58.0016 0x0d78  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
08:45:58.0043 0x0d78  MMCSS - ok
08:45:58.0147 0x0d78  [ 8CC001C65C31633171991FA72A551D43, F256EED72C712C2B5C1DB6DE31DA52609EC0E47EB869E7BC0B70B286593A96DB ] MOBKbackup      C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
08:45:58.0158 0x0d78  MOBKbackup - ok
08:45:58.0211 0x0d78  [ 3800C23D0D90C59AAFCDEFDC82B5C4AF, D949CACB9EF881194B06A961071938F57F3AD57EBB5440B6E7F0B340757641BD ] MOBKFilter      C:\Windows\system32\DRIVERS\MOBK.sys
08:45:58.0221 0x0d78  MOBKFilter - ok
08:45:58.0232 0x0d78  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
08:45:58.0267 0x0d78  Modem - ok
08:45:58.0302 0x0d78  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
08:45:58.0315 0x0d78  monitor - ok
08:45:58.0355 0x0d78  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
08:45:58.0364 0x0d78  mouclass - ok
08:45:58.0390 0x0d78  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
08:45:58.0401 0x0d78  mouhid - ok
08:45:58.0429 0x0d78  [ 791AF66C4D0E7C90A3646066386FB571, BF67643099494AEADDDC85E4D97AFF1017806A1DF554F9BE6C864FFECC9EAF42 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
08:45:58.0439 0x0d78  mountmgr - ok
08:45:58.0498 0x0d78  [ 338037EFA0E8E8699B2667D57B751574, 59E0D39806D0C4EB57913AA013242837FD39AD378726AEE42D250CBA87C1C3BF ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
08:45:58.0509 0x0d78  MozillaMaintenance - ok
08:45:58.0549 0x0d78  [ 609D1D87649ECC19796F4D76D4C15CEA, 5369F4C83FBAE9C4CFB9ACD36F07479E3F3FD784D79B82AE8D95B818B9F9CE00 ] mpio            C:\Windows\system32\DRIVERS\mpio.sys
08:45:58.0562 0x0d78  mpio - ok
08:45:58.0571 0x0d78  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
08:45:58.0609 0x0d78  mpsdrv - ok
08:45:58.0655 0x0d78  [ AECAB449567D1846DAD63ECE49E893E3, 7A67A16A3E04574B7CAD097632ABA9B361BBEFDD6B36B7B8E3A1996EC529C2DC ] MpsSvc          C:\Windows\system32\mpssvc.dll
08:45:58.0697 0x0d78  MpsSvc - ok
08:45:58.0722 0x0d78  [ 30524261BB51D96D6FCBAC20C810183C, 19598A9CD0EAAE4ACBF1069E721AB2853452F33FCFB3B5113F023A88A90BF42D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
08:45:58.0749 0x0d78  MRxDAV - ok
08:45:58.0782 0x0d78  [ 040D62A9D8AD28922632137ACDD984F2, D9457BDA88C2E3AA4E716C0657B77A4A3E212328CDABD5C18279B6440E1C1594 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
08:45:58.0815 0x0d78  mrxsmb - ok
08:45:58.0855 0x0d78  [ F0067552F8F9B33D7C59403AB808A3CB, 698B63528E1943BB4253BF7578DC128AA824C71BD04FF0521277E68B20656C02 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
08:45:58.0886 0x0d78  mrxsmb10 - ok
08:45:58.0919 0x0d78  [ 3C142D31DE9F2F193218A53FE2632051, 026B3A932A95D5160B64E470FC414F3D388D429317D5EAEA2D476F715C4CAE75 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
08:45:58.0932 0x0d78  mrxsmb20 - ok
08:45:58.0943 0x0d78  [ 5C37497276E3B3A5488B23A326A754B7, 9982FCDAFB963868EB93A4DEF811A3167488EB5246BAC3F4AE960506FDF63967 ] msahci          C:\Windows\system32\DRIVERS\msahci.sys
08:45:58.0952 0x0d78  msahci - ok
08:45:58.0966 0x0d78  [ 8D27B597229AED79430FB9DB3BCBFBD0, 3D58E08B47E8AE419D405BF263929DFA6F2F5F0C2D79FD8D6F2CED6452F6F248 ] msdsm           C:\Windows\system32\DRIVERS\msdsm.sys
08:45:58.0978 0x0d78  msdsm - ok
08:45:59.0029 0x0d78  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
08:45:59.0044 0x0d78  MSDTC - ok
08:45:59.0079 0x0d78  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
08:45:59.0104 0x0d78  Msfs - ok
08:45:59.0128 0x0d78  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
08:45:59.0154 0x0d78  mshidkmdf - ok
08:45:59.0209 0x0d78  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\DRIVERS\msisadrv.sys
08:45:59.0218 0x0d78  msisadrv - ok
08:45:59.0289 0x0d78  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
08:45:59.0398 0x0d78  MSiSCSI - ok
08:45:59.0401 0x0d78  msiserver - ok
08:45:59.0444 0x0d78  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] MSK80Service    C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
08:45:59.0458 0x0d78  MSK80Service - ok
08:45:59.0465 0x0d78  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
08:45:59.0505 0x0d78  MSKSSRV - ok
08:45:59.0522 0x0d78  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
08:45:59.0547 0x0d78  MSPCLOCK - ok
08:45:59.0577 0x0d78  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
08:45:59.0603 0x0d78  MSPQM - ok
08:45:59.0636 0x0d78  [ 89CB141AA8616D8C6A4610FA26C60964, 76E72F6A0348EDC58A8E6F88C7F024B8B077670400BD5A833811DAFCF9F517CC ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
08:45:59.0650 0x0d78  MsRPC - ok
08:45:59.0686 0x0d78  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
08:45:59.0695 0x0d78  mssmbios - ok
08:45:59.0714 0x0d78  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
08:45:59.0810 0x0d78  MSTEE - ok
08:45:59.0832 0x0d78  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
08:45:59.0895 0x0d78  MTConfig - ok
08:45:59.0912 0x0d78  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
08:45:59.0921 0x0d78  Mup - ok
08:46:00.0068 0x0d78  [ 4987E079A4530FA737A128BE54B63B12, 27E51CC7D4D90DC4397575491DE7EFE15808709F097E2828E46AA73C771A47A4 ] napagent        C:\Windows\system32\qagentRT.dll
08:46:00.0103 0x0d78  napagent - ok
08:46:00.0144 0x0d78  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
08:46:00.0163 0x0d78  NativeWifiP - ok
08:46:00.0370 0x0d78  [ CAD515DBD07D082BB317D9928CE8962C, 7AFA6D6154AC68F9FCC37B7B3324F7A170AE91035805026445F24F6EB4FB7F2E ] NDIS            C:\Windows\system32\drivers\ndis.sys
08:46:00.0394 0x0d78  NDIS - ok
08:46:00.0449 0x0d78  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
08:46:00.0475 0x0d78  NdisCap - ok
08:46:00.0529 0x0d78  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
08:46:00.0554 0x0d78  NdisTapi - ok
08:46:00.0572 0x0d78  [ F105BA1E22BF1F2EE8F005D4305E4BEC, 723DA09E13D0F50634D9F114590B837D16F7B36AA0DA2AB8F8C2D9991624EA8F ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
08:46:00.0598 0x0d78  Ndisuio - ok
08:46:00.0643 0x0d78  [ 557DFAB9CA1FCB036AC77564C010DAD3, 8A21B342AFE5B498FB62EDDC81A3ADA9570677B7A382666090E0ABB1F85FEF29 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
08:46:00.0672 0x0d78  NdisWan - ok
08:46:00.0729 0x0d78  [ 659B74FB74B86228D6338D643CD3E3CF, 83D741B7A2A204A661A80C226212749F514800060D05E217FA6DC14D62F38F80 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
08:46:00.0767 0x0d78  NDProxy - ok
08:46:00.0788 0x0d78  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
08:46:00.0828 0x0d78  NetBIOS - ok
08:46:00.0845 0x0d78  [ 9162B273A44AB9DCE5B44362731D062A, 5A1BA6DBFEBB2618DC9D4CC55FA071C170A5D22FFB24CE62DD5B3210D8B45F39 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
08:46:00.0875 0x0d78  NetBT - ok
08:46:00.0906 0x0d78  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] Netlogon        C:\Windows\system32\lsass.exe
08:46:00.0917 0x0d78  Netlogon - ok
08:46:00.0973 0x0d78  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
08:46:01.0005 0x0d78  Netman - ok
08:46:01.0090 0x0d78  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetMsmqActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:46:01.0104 0x0d78  NetMsmqActivator - ok
08:46:01.0109 0x0d78  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetPipeActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:46:01.0120 0x0d78  NetPipeActivator - ok
08:46:01.0156 0x0d78  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
08:46:01.0191 0x0d78  netprofm - ok
08:46:01.0207 0x0d78  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetTcpActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:46:01.0218 0x0d78  NetTcpActivator - ok
08:46:01.0223 0x0d78  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetTcpPortSharing c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:46:01.0234 0x0d78  NetTcpPortSharing - ok
08:46:01.0270 0x0d78  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
08:46:01.0280 0x0d78  nfrd960 - ok
08:46:01.0300 0x0d78  [ D9A0CE66046D6EFA0C61BAA885CBA0A8, 06C3331C7F3EE0E0B95E8302CB80315E965587C4D6231785B8ACF3FAE4731FAF ] NlaSvc          C:\Windows\System32\nlasvc.dll
08:46:01.0331 0x0d78  NlaSvc - ok
08:46:01.0353 0x0d78  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
08:46:01.0378 0x0d78  Npfs - ok
08:46:01.0414 0x0d78  npggsvc - ok
08:46:01.0424 0x0d78  NPPTNT2 - ok
08:46:01.0455 0x0d78  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
08:46:01.0481 0x0d78  nsi - ok
08:46:01.0517 0x0d78  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
08:46:01.0547 0x0d78  nsiproxy - ok
08:46:01.0629 0x0d78  [ 9A6089B056EA1B83B36424FC9D0A300E, EA60282C5A32B497921B568C1FE735F5BDB9D954DDC4E609F7F3CAE5ED823CEC ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
08:46:01.0666 0x0d78  Ntfs - ok
08:46:01.0683 0x0d78  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
08:46:01.0720 0x0d78  Null - ok
08:46:01.0762 0x0d78  [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
08:46:01.0774 0x0d78  NVHDA - ok
08:46:02.0712 0x0d78  [ 757ACE4D4C9FF0571F86AA5D586B45E8, E7F23CC1DE26E2DAA690B78B05FC001EE0051F0ED9B9BCE9E7FA4E9684D4F3D4 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
08:46:02.0930 0x0d78  nvlddmkm - ok
08:46:03.0177 0x0d78  [ 6822CA012769844EB14FD6634F22C4F6, 967D4CAB760CF19BDF2199AFF9FF9E075A244BB0CB060EF06F7C43A9639433FF ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
08:46:03.0214 0x0d78  NvNetworkService - ok
08:46:03.0254 0x0d78  [ A4D9C9A608A97F59307C2F2600EDC6A4, D786F4CA2D10BAC31CE14A338C442F7027D4BB2E955AB99BC44C2F241D383BBE ] nvraid          C:\Windows\system32\drivers\nvraid.sys
08:46:03.0345 0x0d78  nvraid - ok
08:46:03.0393 0x0d78  [ 6C1D5F70E7A6A3FD1C90D840EDC048B9, 8D5337742A0F5B04D636C163CE77D4A9B3684CF81170026912A402513B44BA77 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
08:46:03.0405 0x0d78  nvstor - ok
08:46:04.0448 0x0d78  [ E13F48379AF383046E55C0C87C11CF63, 47C947FEE2532BFF9A0007A786EFE87C6FCEB61C875821FB17AFDCF8F59507E5 ] NvStreamSvc     C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
08:46:04.0850 0x0d78  NvStreamSvc - ok
08:46:04.0947 0x0d78  [ 1C7CC708AC4A02A3BE8915539780534A, 0EBDE100880963BF1EC05002BA244CA7700693E958D1974CDD2AC3927D93224F ] nvsvc           C:\Windows\system32\nvvsvc.exe
08:46:04.0972 0x0d78  nvsvc - ok
08:46:05.0062 0x0d78  [ 50A7C3FEA78D11B546EA9B0C25FBC6AB, E91313580D631473801E0995AF8A1FD43EC47FF7709ADEF3DCD80D7BC25878D7 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
08:46:05.0072 0x0d78  nvvad_WaveExtensible - ok
08:46:05.0138 0x0d78  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\DRIVERS\nv_agp.sys
08:46:05.0154 0x0d78  nv_agp - ok
08:46:05.0179 0x0d78  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
08:46:05.0222 0x0d78  ohci1394 - ok
08:46:05.0260 0x0d78  [ 47ED757ABB7885FA671D20C162EF4E77, 890BB04C42699A9F035CF37D719B2D1492E29884409591A1D62F693857EF8A93 ] ossrv           C:\Windows\system32\drivers\ctoss2k.sys
08:46:05.0272 0x0d78  ossrv - ok
08:46:05.0330 0x0d78  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
08:46:05.0348 0x0d78  p2pimsvc - ok
08:46:05.0414 0x0d78  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
08:46:05.0434 0x0d78  p2psvc - ok
08:46:05.0470 0x0d78  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
08:46:05.0498 0x0d78  Parport - ok
08:46:05.0529 0x0d78  [ 90061B1ACFE8CCAA5345750FFE08D8B8, 76309683FFDF380AF9C6E1D9A52E46B011A0BF1026D747181D01F3312B7541C7 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
08:46:05.0539 0x0d78  partmgr - ok
08:46:05.0576 0x0d78  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
08:46:05.0593 0x0d78  PcaSvc - ok
08:46:05.0639 0x0d78  [ F36F6504009F2FB0DFD1B17A116AD74B, 33A4C217F7DC5E5B7E1B6CF335327C8FE6CC5D6D048D420252965574CAD83918 ] pci             C:\Windows\system32\DRIVERS\pci.sys
08:46:05.0650 0x0d78  pci - ok
08:46:05.0658 0x0d78  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\DRIVERS\pciide.sys
08:46:05.0667 0x0d78  pciide - ok
08:46:05.0709 0x0d78  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
08:46:05.0729 0x0d78  pcmcia - ok
08:46:05.0741 0x0d78  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
08:46:05.0751 0x0d78  pcw - ok
08:46:05.0772 0x0d78  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
08:46:05.0809 0x0d78  PEAUTH - ok
08:46:05.0872 0x0d78  [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
08:46:05.0975 0x0d78  PeerDistSvc - ok
08:46:06.0068 0x0d78  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
08:46:06.0083 0x0d78  PerfHost - ok
08:46:06.0166 0x0d78  [ 557E9A86F65F0DE18C9B6751DFE9D3F1, 630EE5A80335929517A22D130C75CBCE882B92978372A6F36C30B9D353C7BB07 ] pla             C:\Windows\system32\pla.dll
08:46:06.0240 0x0d78  pla - ok
08:46:06.0286 0x0d78  [ 98B1721B8718164293B9701B98C52D77, 27F5F00D4AA394D4D8D0A0062EDC3F944B603E07CAAEDC5CC959BA1E8C208C2A ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
08:46:06.0306 0x0d78  PlugPlay - ok
08:46:06.0333 0x0d78  PnkBstrA - ok
08:46:06.0359 0x0d78  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
08:46:06.0386 0x0d78  PNRPAutoReg - ok
08:46:06.0405 0x0d78  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
08:46:06.0422 0x0d78  PNRPsvc - ok
08:46:06.0464 0x0d78  [ 166EB40D1F5B47E615DE3D0FFFE5F243, E32BCCA0D25CD631C221986EBE9F6C54BF2F12DE1672D69CCC4E22AD07D0525A ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
08:46:06.0499 0x0d78  PolicyAgent - ok
08:46:06.0560 0x0d78  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
08:46:06.0590 0x0d78  Power - ok
08:46:06.0634 0x0d78  [ 27CC19E81BA5E3403C48302127BDA717, C580FC552DDF9C163FC325B38B05C06FFD696495E4C01514BCD6346CFE4F0B40 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
08:46:06.0661 0x0d78  PptpMiniport - ok
08:46:06.0759 0x0d78  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
08:46:06.0785 0x0d78  Processor - ok
08:46:06.0862 0x0d78  [ 97293447431311C06703368AD0F6C4BE, 302A3CA8F6961717D95469B20A8A71954D4ECFCDF4638238D3D44AAE5A8D9B8B ] ProfSvc         C:\Windows\system32\profsvc.dll
08:46:06.0877 0x0d78  ProfSvc - ok
08:46:06.0889 0x0d78  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] ProtectedStorage C:\Windows\system32\lsass.exe
08:46:06.0900 0x0d78  ProtectedStorage - ok
08:46:06.0931 0x0d78  [ EE992183BD8EAEFD9973F352E587A299, 6B28930FAA0A54FAADDAF2231553D7F5D45C7227454C6D49A86DFC9EF6BC9043 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
08:46:06.0958 0x0d78  Psched - ok
08:46:06.0997 0x0d78  [ 87B04878A6D59D6C79251DC960C674C1, 3EB8DB0624E646F0A65D0381408D35CF9FDC5ABFC30DF6431F4070A8EB68447C ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
08:46:07.0006 0x0d78  PxHlpa64 - ok
08:46:07.0110 0x0d78  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
08:46:07.0152 0x0d78  ql2300 - ok
08:46:07.0177 0x0d78  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
08:46:07.0190 0x0d78  ql40xx - ok
08:46:07.0210 0x0d78  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
08:46:07.0230 0x0d78  QWAVE - ok
08:46:07.0274 0x0d78  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
08:46:07.0304 0x0d78  QWAVEdrv - ok
08:46:07.0317 0x0d78  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
08:46:07.0343 0x0d78  RasAcd - ok
08:46:07.0383 0x0d78  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
08:46:07.0409 0x0d78  RasAgileVpn - ok
08:46:07.0453 0x0d78  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
08:46:07.0481 0x0d78  RasAuto - ok
08:46:07.0486 0x0d78  [ 87A6E852A22991580D6D39ADC4790463, 0F757C6E5B57DFC239CE1BEC88EF16C07E7F1A40D629A9A6DF3CB6B88FB9E642 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
08:46:07.0514 0x0d78  Rasl2tp - ok
08:46:07.0534 0x0d78  [ 47394ED3D16D053F5906EFE5AB51CC83, FE5D1249788DB6D85C55769251B0AED738D3BBA04DF57124E03397D3C0599286 ] RasMan          C:\Windows\System32\rasmans.dll
08:46:07.0566 0x0d78  RasMan - ok
08:46:07.0598 0x0d78  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
08:46:07.0624 0x0d78  RasPppoe - ok
08:46:07.0649 0x0d78  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
08:46:07.0676 0x0d78  RasSstp - ok
08:46:07.0763 0x0d78  [ 3BAC8142102C15D59A87757C1D41DCE5, C0C2C6887EA5A439E69221196348382ACE3E1942C9C6E0A970E153890F71724C ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
08:46:07.0794 0x0d78  rdbss - ok
08:46:07.0858 0x0d78  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
08:46:07.0870 0x0d78  rdpbus - ok
08:46:07.0914 0x0d78  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
08:46:07.0939 0x0d78  RDPCDD - ok
08:46:07.0993 0x0d78  [ 9706B84DBABFC4B4CA46C5A82B14DFA3, AFDC07C257BCB768861483A1842FFB647523946B16DA2812EFAE4FD3252BA303 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
08:46:08.0011 0x0d78  RDPDR - ok
08:46:08.0020 0x0d78  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
08:46:08.0044 0x0d78  RDPENCDD - ok
08:46:08.0058 0x0d78  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
08:46:08.0083 0x0d78  RDPREFMP - ok
08:46:08.0114 0x0d78  [ 447DE7E3DEA39D422C1504F245B668B1, C54D90D2F9405E011E490D3C2F0F64488B87B969C95E367C076BBFCFD8654909 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
08:46:08.0132 0x0d78  RDPWD - ok
08:46:08.0148 0x0d78  [ 634B9A2181D98F15941236886164EC8B, 15C55F05FD3CD751F619F18E2ADF91552AE82146501CD031402277F496A5B7D8 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
08:46:08.0160 0x0d78  rdyboost - ok
08:46:08.0198 0x0d78  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
08:46:08.0236 0x0d78  RemoteAccess - ok
08:46:08.0284 0x0d78  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
08:46:08.0315 0x0d78  RemoteRegistry - ok
08:46:08.0367 0x0d78  [ 7B04C9843921AB1F695FB395422C5360, C9B02BE0384357FD242613C2A12029B45322AF9A795CD69F33500CA7530899A7 ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
08:46:08.0378 0x0d78  RimUsb - ok
08:46:08.0392 0x0d78  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
08:46:08.0419 0x0d78  RpcEptMapper - ok
08:46:08.0452 0x0d78  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
08:46:08.0464 0x0d78  RpcLocator - ok
08:46:08.0516 0x0d78  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] RpcSs           C:\Windows\system32\rpcss.dll
08:46:08.0551 0x0d78  RpcSs - ok
08:46:08.0566 0x0d78  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
08:46:08.0591 0x0d78  rspndr - ok
08:46:08.0749 0x0d78  [ D787F86566F6EA23053D9C5F401E33B7, 82B1952A57FB800425E12FEFF5B326C7B7815980646F5359673CBC8BBB4C46CF ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
08:46:08.0772 0x0d78  RTL8167 - ok
08:46:08.0821 0x0d78  [ 2ABDAE282DBC2D2FB11144184517F850, A68C3B0CCB0441C22BD27F69D22ADF2183613B8B3F9317B89279418A02E78384 ] rzudd           C:\Windows\system32\DRIVERS\rzudd.sys
08:46:08.0832 0x0d78  rzudd - ok
08:46:08.0868 0x0d78  [ 88AF6E02AB19DF7FD07ECDF9C91E9AF6, C890DCCC875F957CAAD4655EBFF384E3C5998040CA2BA360E92C96A647D1C399 ] s3cap           C:\Windows\system32\DRIVERS\vms3cap.sys
08:46:08.0879 0x0d78  s3cap - ok
08:46:08.0897 0x0d78  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] SamSs           C:\Windows\system32\lsass.exe
08:46:08.0908 0x0d78  SamSs - ok
08:46:08.0938 0x0d78  [ E3BBB89983DAF5622C1D50CF49F28227, 49370DC142D577D657BF5755AA9B8625C35D3DDAF1F9466B4888507FB8E6FF07 ] sbp2port        C:\Windows\system32\DRIVERS\sbp2port.sys
08:46:08.0959 0x0d78  sbp2port - ok
08:46:09.0001 0x0d78  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
08:46:09.0046 0x0d78  SCardSvr - ok
08:46:09.0117 0x0d78  [ D33BFF730B222D00A2F665F8F3E0A788, 371C7E62FD8F1628F6130E0A67A90FBDB34BBCADB3ADA1E41481EFE073ADDC65 ] SCDEmu          C:\Windows\system32\drivers\SCDEmu.sys
08:46:09.0128 0x0d78  SCDEmu - ok
08:46:09.0135 0x0d78  [ C94DA20C7E3BA1DCA269BC8460D98387, E1A5629728A79233B62BA87B4354BC3A332A853CC36A60E77B34923F4BCA8A61 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
08:46:09.0161 0x0d78  scfilter - ok
08:46:09.0365 0x0d78  [ 624D0F5FF99428BB90A5B8A4123E918E, 90A43E6F09B56CB86A3E3851F8E5ABB74905AEB70296F4B87BEDBC3027E65E86 ] Schedule        C:\Windows\system32\schedsvc.dll
08:46:09.0398 0x0d78  Schedule - ok
08:46:09.0476 0x0d78  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] SCPolicySvc     C:\Windows\System32\certprop.dll
08:46:09.0503 0x0d78  SCPolicySvc - ok
08:46:09.0547 0x0d78  [ 765A27C3279CE11D14CB9E4F5869FCA5, B6C2EFFBA938828FEF7FE992A4C88B3154D053763C38762DCE13252FE9571FA1 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
08:46:09.0585 0x0d78  SDRSVC - ok
08:46:09.0605 0x0d78  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
08:46:09.0631 0x0d78  secdrv - ok
08:46:09.0661 0x0d78  [ 463B386EBC70F98DA5DFF85F7E654346, 8E27B18B04AF587719D1DAE75A042DB998E06CAE112BD68626EF046036D2DCDC ] seclogon        C:\Windows\system32\seclogon.dll
08:46:09.0688 0x0d78  seclogon - ok
08:46:09.0728 0x0d78  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
08:46:09.0754 0x0d78  SENS - ok
08:46:09.0805 0x0d78  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
08:46:09.0829 0x0d78  SensrSvc - ok
08:46:09.0837 0x0d78  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
08:46:09.0848 0x0d78  Serenum - ok
08:46:09.0857 0x0d78  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
08:46:09.0869 0x0d78  Serial - ok
08:46:09.0910 0x0d78  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
08:46:09.0922 0x0d78  sermouse - ok
08:46:09.0941 0x0d78  [ C3BC61CE47FF6F4E88AB8A3B429A36AF, 6CA53AD0CB7215BAE3467EC1FD490E3A18504BD6CD4F0FABF9BD37516AB9DFE0 ] SessionEnv      C:\Windows\system32\sessenv.dll
08:46:09.0970 0x0d78  SessionEnv - ok
08:46:10.0018 0x0d78  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\DRIVERS\sffdisk.sys
08:46:10.0050 0x0d78  sffdisk - ok
08:46:10.0066 0x0d78  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\DRIVERS\sffp_mmc.sys
08:46:10.0077 0x0d78  sffp_mmc - ok
08:46:10.0095 0x0d78  [ 178298F767FE638C9FEDCBDEF58BB5E4, 053D12CFEE5C54EA7D06F9C9CAE93544FE258A4825CDE2A14090BC81A96E1CF7 ] sffp_sd         C:\Windows\system32\DRIVERS\sffp_sd.sys
08:46:10.0106 0x0d78  sffp_sd - ok
08:46:10.0135 0x0d78  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
08:46:10.0158 0x0d78  sfloppy - ok
08:46:10.0203 0x0d78  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
08:46:10.0243 0x0d78  SharedAccess - ok
08:46:10.0262 0x0d78  [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF, 1C1D17301A4D37DBF906955CCABD2A3FDA47AFB24CBA978CF851123762249848 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
08:46:10.0284 0x0d78  ShellHWDetection - ok
08:46:10.0302 0x0d78  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
08:46:10.0312 0x0d78  SiSRaid2 - ok
08:46:10.0324 0x0d78  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
08:46:10.0334 0x0d78  SiSRaid4 - ok
08:46:10.0733 0x0d78  [ 4CA43B85F22C7739311788B651A779CB, 5F761B3ADBDB093A4198CE5FE3BB444AB3C063483815F45DFB186082DDEB8CBC ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
08:46:10.0789 0x0d78  Skype C2C Service - ok
08:46:10.0869 0x0d78  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
08:46:10.0881 0x0d78  SkypeUpdate - ok
08:46:10.0905 0x0d78  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
08:46:10.0943 0x0d78  Smb - ok
08:46:11.0011 0x0d78  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
08:46:11.0023 0x0d78  SNMPTRAP - ok
08:46:11.0086 0x0d78  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
08:46:11.0095 0x0d78  spldr - ok
08:46:11.0142 0x0d78  [ 567977DC43CC13C4C35ED7084C0B84D5, 93EEC3ABA66DA83157F49F056EF1CB3355122204F2BB0F8B618064AF47D59A61 ] Spooler         C:\Windows\System32\spoolsv.exe
08:46:11.0165 0x0d78  Spooler - ok
08:46:11.0684 0x0d78  [ 913D843498553A1BC8F8DBAD6358E49F, F8B931FDABF669D642CBDCD2FF31E07F8A5E2D5F72E11D4A8FF219CCFB5825E9 ] sppsvc          C:\Windows\system32\sppsvc.exe
08:46:11.0804 0x0d78  sppsvc - ok
08:46:11.0861 0x0d78  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
08:46:11.0904 0x0d78  sppuinotify - ok
08:46:11.0940 0x0d78  [ 2408C0366D96BCDF63E8F1C78E4A29C5, 66F646890695B5D80536E88B1566C8765D89CFE25954ED650F6D773EFF045016 ] srv             C:\Windows\system32\DRIVERS\srv.sys
08:46:11.0960 0x0d78  srv - ok
08:46:11.0981 0x0d78  [ 76548F7B818881B47D8D1AE1BE9C11F8, 8F1356B07A6A55746FC71B6DB0322128941AE890850196F2B19BC01E6FC9B41C ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
08:46:11.0999 0x0d78  srv2 - ok
08:46:12.0040 0x0d78  [ 0AF6E19D39C70844C5CAA8FB0183C36E, 4494EEFDEA7198888D32E74727E5BC0AC628FFA70B1FE7EB59DBEEDC1A95D0DD ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
08:46:12.0053 0x0d78  srvnet - ok
08:46:12.0152 0x0d78  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
08:46:12.0205 0x0d78  SSDPSRV - ok
08:46:12.0229 0x0d78  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
08:46:12.0256 0x0d78  SstpSvc - ok
08:46:12.0327 0x0d78  [ AAF6F247F1DC370C593B4430974EAD9C, 232D0D62EC83A5537ADB28B5DC01074BA812FE6C70C54F70CD7A5EF1BC19D3E1 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
08:46:12.0358 0x0d78  ssudmdm - ok
08:46:12.0451 0x0d78  [ 2F3B5A3567FFB343D8867C3D34C687F1, D01971412506746B2EA1CBB0ACF9472889ABBC23318C1332BEC9C8256011183E ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
08:46:12.0472 0x0d78  Steam Client Service - ok
08:46:12.0552 0x0d78  [ CDA9313E34887A111B8309B55BCDCD82, AC070AA093B7013E4D1B29F4FAF9B469C3C261E4D3D1512B4F77CC609CBD1484 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
08:46:12.0568 0x0d78  Stereo Service - ok
08:46:12.0593 0x0d78  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
08:46:12.0604 0x0d78  stexstor - ok
08:46:12.0751 0x0d78  [ 52D0E33B681BD0F33FDC08812FEE4F7D, BBEBC0773402F6697D2F14F63E5E4FDC2180466E7FDBD306E408535B10160249 ] stisvc          C:\Windows\System32\wiaservc.dll
08:46:12.0776 0x0d78  stisvc - ok
08:46:12.0834 0x0d78  [ FFD7A6F15B14234B5B0E5D49E7961895, 9553BDB65D021DA621BDFF1C180B9F4C6355FC748BAE854CE114D4B3EFF307B7 ] storflt         C:\Windows\system32\DRIVERS\vmstorfl.sys
08:46:12.0843 0x0d78  storflt - ok
08:46:12.0853 0x0d78  [ 8FCCBEFC5C440B3C23454656E551B09A, 392A38D0B18B7FD08ACBE3E56ADCB235FA49BDB99F81E0820434D57332FA8FF7 ] storvsc         C:\Windows\system32\DRIVERS\storvsc.sys
08:46:12.0862 0x0d78  storvsc - ok
08:46:12.0866 0x0d78  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
08:46:12.0874 0x0d78  swenum - ok
08:46:12.0922 0x0d78  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
08:46:12.0967 0x0d78  swprv - ok
08:46:13.0043 0x0d78  [ 3C1284516A62078FB68F768DE4F1A7BE, 67ECD462335EF88773E4BAEAB230A68EC92A25F8CD8F115873F669205AE6A1A9 ] SysMain         C:\Windows\system32\sysmain.dll
08:46:13.0096 0x0d78  SysMain - ok
08:46:13.0126 0x0d78  [ 238935C3CF2854886DC7CBB2A0E2CC66, BBF7A70BF218A544CC1A6FB81F75EAD29D418794162936BE197D6D61FE0DB1C4 ] TabletInputService C:\Windows\System32\TabSvc.dll
08:46:13.0178 0x0d78  TabletInputService - ok
08:46:13.0212 0x0d78  [ 884264AC597B690C5707C89723BB8E7B, 9BF209A4128019421F7EC4AFF71103C5F411DB6CFB32AAC1633E789AD7A30708 ] TapiSrv         C:\Windows\System32\tapisrv.dll
08:46:13.0256 0x0d78  TapiSrv - ok
08:46:13.0306 0x0d78  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
08:46:13.0334 0x0d78  TBS - ok
08:46:13.0626 0x0d78  [ 5CFB7AB8F9524D1A1E14369DE63B83CC, BC22FC5714A6A8F8CF95D3D9656332D7B315FF7CFA50C0DEB7437A30651D10C7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
08:46:13.0666 0x0d78  Tcpip - ok
08:46:13.0720 0x0d78  [ 5CFB7AB8F9524D1A1E14369DE63B83CC, BC22FC5714A6A8F8CF95D3D9656332D7B315FF7CFA50C0DEB7437A30651D10C7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
08:46:13.0759 0x0d78  TCPIP6 - ok
08:46:13.0815 0x0d78  [ 76D078AF6F587B162D50210F761EB9ED, 3813171036B4036306CADC29F877ADAE44B241DDF65B3699C352B7CDA9EC68C9 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
08:46:13.0840 0x0d78  tcpipreg - ok
08:46:13.0885 0x0d78  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
08:46:13.0930 0x0d78  TDPIPE - ok
08:46:13.0959 0x0d78  [ 7518F7BCFD4B308ABC9192BACAF6C970, CF08E547EF4059DA3F5A2FCBA98939E84092BB6E0E37F9BBCD1E4D9EBB8A58BB ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
08:46:13.0987 0x0d78  TDTCP - ok
08:46:14.0009 0x0d78  [ 079125C4B17B01FCAEEBCE0BCB290C0F, B2DF1F2317EF5DCF0A89327332E9F2770ED604005B3138C095FF01AA63B91437 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
08:46:14.0036 0x0d78  tdx - ok
08:46:14.0307 0x0d78  [ 9F3E7CABE86BBDECA009DE291DB6D9E2, C85176BA98382C82178D682C5F91B5590201BF8C7335DF7ABCAB469367701106 ] TeamViewer8     C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
08:46:14.0371 0x0d78  TeamViewer8 - ok
08:46:14.0412 0x0d78  [ C448651339196C0E869A355171875522, C12441CF21D7D47804952B968689D78E3BA0323A90C4C811B54A6B2E6260BAD4 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
08:46:14.0421 0x0d78  TermDD - ok
08:46:14.0521 0x0d78  [ 0F05EC2887BFE197AD82A13287D2F404, 78C8A8FE9B1101430CA79875DA34413C35B6D7A5EE1932E454C50731335437A6 ] TermService     C:\Windows\System32\termsrv.dll
08:46:14.0587 0x0d78  TermService - ok
08:46:14.0639 0x0d78  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
08:46:14.0654 0x0d78  Themes - ok
08:46:14.0698 0x0d78  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
08:46:14.0725 0x0d78  THREADORDER - ok
08:46:14.0764 0x0d78  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
08:46:14.0792 0x0d78  TrkWks - ok
08:46:14.0912 0x0d78  [ 840F7FB849F5887A49BA18C13B2DA920, A59C40A090E03C0136A865FC54508BA938E7B467C8198BC009FE263E6C275781 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
08:46:14.0926 0x0d78  TrustedInstaller - ok
08:46:14.0961 0x0d78  [ 61B96C26131E37B24E93327A0BD1FB95, 7C551B6FD0447258BC3FDED72D8D41A0E8B731562170C264295592D45F85D9FF ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
08:46:15.0018 0x0d78  tssecsrv - ok
08:46:15.0073 0x0d78  [ 3836171A2CDF3AF8EF10856DB9835A70, 74CD0A21B4E5B47E8D762CC28282CA8D512D424EC591D90099B9F8D034AA2FC2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
08:46:15.0101 0x0d78  tunnel - ok
08:46:15.0143 0x0d78  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
08:46:15.0165 0x0d78  uagp35 - ok
08:46:15.0190 0x0d78  [ D47BAEAD86C65D4F4069D7CE0A4EDCEB, DBAEA010F11A5EFD961B1841308EA3F220A9FFB01F364BA9B8F72200DA2BBCD8 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
08:46:15.0225 0x0d78  udfs - ok
08:46:15.0231 0x0d78  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
08:46:15.0244 0x0d78  UI0Detect - ok
08:46:15.0289 0x0d78  [ 75894B827B8CA53FC2BB991C91B6728C, F305ED07EFAF821A938BE8CD04D4A872940FD267C4AC6B87A2DF34B42F91996D ] uisp            C:\Windows\system32\Drivers\usbicp.sys
08:46:15.0308 0x0d78  uisp - ok
08:46:15.0334 0x0d78  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\DRIVERS\uliagpkx.sys
08:46:15.0344 0x0d78  uliagpkx - ok
08:46:15.0387 0x0d78  [ EAB6C35E62B1B0DB0D1B48B671D3A117, E65034BF757AE4D21F69D7A91A7990E326A29A0CE9F871FD704B5E6CCC821FF0 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
08:46:15.0398 0x0d78  umbus - ok
08:46:15.0407 0x0d78  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
08:46:15.0433 0x0d78  UmPass - ok
08:46:15.0465 0x0d78  [ AF0AC98EE5077EB844413EB54287FDE3, 1586326510DE94E2735EFAD94A68D06DB5B7347B68055A9EA8B95E19D91A2E69 ] UmRdpService    C:\Windows\System32\umrdp.dll
08:46:15.0490 0x0d78  UmRdpService - ok
08:46:15.0577 0x0d78  [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv        C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
08:46:15.0592 0x0d78  UMVPFSrv - ok
08:46:15.0781 0x0d78  [ CD114CE02A10FA79C229770788106842, A02E0FE0865CE7E14D27F23CE748F5EFBE3F14CA350B0F26623E174227F30643 ] UNS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
08:46:15.0833 0x0d78  UNS - ok
08:46:15.0900 0x0d78  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
08:46:15.0933 0x0d78  upnphost - ok
08:46:15.0968 0x0d78  [ 77B01BC848298223A95D4EC23E1785A1, 7D0FBBA746588401400226BB966507EE34EEBB2F4F16607601E3D7383CAD34E2 ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
08:46:15.0983 0x0d78  usbaudio - ok
08:46:16.0012 0x0d78  [ 7B6A127C93EE590E4D79A5F2A76FE46F, 6F178916EF6D58D1E5B26C0D9D95C276B776505BFC9F716BB1E3ABD3B2B72FCE ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
08:46:16.0025 0x0d78  usbccgp - ok
08:46:16.0085 0x0d78  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\Windows\system32\DRIVERS\usbcir.sys
08:46:16.0100 0x0d78  usbcir - ok
08:46:16.0116 0x0d78  [ 92969BA5AC44E229C55A332864F79677, 4ED1E1049E7641D3FFF5D296F2D59060225CE52AB9F7B5CA618898B46A772F98 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
08:46:16.0127 0x0d78  usbehci - ok
08:46:16.0178 0x0d78  [ E7DF1CFD28CA86B35EF5ADD0735CEEF3, AA751288EC34D61D934D7E8C036B60BBCEDC2A746815623478BB015D87D6A998 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
08:46:16.0195 0x0d78  usbhub - ok
08:46:16.0206 0x0d78  [ F1BB1E55F1E7A65C5839CCC7B36D773E, 4F517F81FA5688D78D3627EA7D2EA16AD4EB410D7624FE483C7AF26951E579A9 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
08:46:16.0231 0x0d78  usbohci - ok
08:46:16.0291 0x0d78  [ 813BFE2DE062A28CFE42C4EB8572A7F9, 3844513195DB05A7849AB2BDEE60D7E2540F81C9353010313A2A8879BA07A241 ] USBPNPA         C:\Windows\system32\drivers\CM10864.sys
08:46:16.0325 0x0d78  USBPNPA - ok
08:46:16.0347 0x0d78  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
08:46:16.0370 0x0d78  usbprint - ok
08:46:16.0393 0x0d78  [ F39983647BC1F3E6100778DDFE9DCE29, 3BD36594F7C753680DB5A4354B1D6A33FC3011631D2D56DD4B2464AA99C85F7B ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
08:46:16.0422 0x0d78  USBSTOR - ok
08:46:16.0439 0x0d78  [ BC3070350A491D84B518D7CCA9ABD36F, 96FFF9F76A93CF4806297AE7C11A5C6D1E7A9980260E6CFC960F8247D5032161 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
08:46:16.0462 0x0d78  usbuhci - ok
08:46:16.0478 0x0d78  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
08:46:16.0505 0x0d78  UxSms - ok
08:46:16.0555 0x0d78  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] VaultSvc        C:\Windows\system32\lsass.exe
08:46:16.0567 0x0d78  VaultSvc - ok
08:46:16.0708 0x0d78  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\DRIVERS\vdrvroot.sys
08:46:16.0716 0x0d78  vdrvroot - ok
08:46:16.0820 0x0d78  [ 44D73E0BBC1D3C8981304BA15135C2F2, 2849387BBCFB0189AF5604D2F7A631BD5D6BBB2CA73AF6E870069AF382A74DED ] vds             C:\Windows\System32\vds.exe
08:46:16.0895 0x0d78  vds - ok
08:46:16.0937 0x0d78  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
08:46:16.0950 0x0d78  vga - ok
08:46:16.0965 0x0d78  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
08:46:16.0990 0x0d78  VgaSave - ok
08:46:17.0014 0x0d78  [ C82E748660F62A242B2DFAC1442F22A4, 24AD6CAA918C5AB6F461D88825885C8637C224001AAD7A80BDC240368CDB0B7E ] vhdmp           C:\Windows\system32\DRIVERS\vhdmp.sys
08:46:17.0027 0x0d78  vhdmp - ok
08:46:17.0037 0x0d78  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\DRIVERS\viaide.sys
08:46:17.0045 0x0d78  viaide - ok
08:46:17.0087 0x0d78  [ 2FDD9F870BDE9C0353D6E82B4B309C44, 767D4F45898307BB91CE64DBE85B12698795FF8B60CF0B87E019143AA08D2470 ] VirtuWDDM       C:\Windows\system32\DRIVERS\VirtuWDDM.sys
08:46:17.0096 0x0d78  VirtuWDDM - ok
08:46:17.0158 0x0d78  [ 1501699D7EDA984ABC4155A7DA5738D1, 448DFEFF565F1467F387E4EC9782DDD48B8FFDDF6B1EA46A790C2782C20BD952 ] vmbus           C:\Windows\system32\DRIVERS\vmbus.sys
08:46:17.0197 0x0d78  vmbus - ok
08:46:17.0210 0x0d78  [ AE10C35761889E65A6F7176937C5592C, 9DC27647B6149C9B2523799F85B18122CCE749264624FE2E5FE843FE00642BBE ] VMBusHID        C:\Windows\system32\DRIVERS\VMBusHID.sys
08:46:17.0222 0x0d78  VMBusHID - ok
08:46:17.0232 0x0d78  [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3, 91F2B935E1E88C5542650F7D679A75D0562F4A5812179D1EC146D4B6351361E2 ] volmgr          C:\Windows\system32\DRIVERS\volmgr.sys
08:46:17.0242 0x0d78  volmgr - ok
08:46:17.0358 0x0d78  [ 99B0CBB569CA79ACAED8C91461D765FB, 5BE394A39A941DE2AA1212E66B7068F90D423FA816238657CB9B2DA8BBE69B9B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
08:46:17.0372 0x0d78  volmgrx - ok
08:46:17.0476 0x0d78  [ 9E425AC5C9A5A973273D169F43B4F5E1, 64C9A9D4A39865E56F01B4FDE1B56034C4B2A2AEF2ABE15EC1C37911C59595B0 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
08:46:17.0491 0x0d78  volsnap - ok
08:46:17.0518 0x0d78  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
08:46:17.0530 0x0d78  vsmraid - ok
08:46:17.0575 0x0d78  [ 787898BF9FB6D7BD87A36E2D95C899BA, A6C0C7402B1A198E7B3D6D7D283FCB5815AC429DA68FC9B54C67707F3233CCB5 ] VSS             C:\Windows\system32\vssvc.exe
08:46:17.0618 0x0d78  VSS - ok
08:46:17.0646 0x0d78  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
08:46:17.0659 0x0d78  vwifibus - ok
08:46:17.0713 0x0d78  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
08:46:17.0727 0x0d78  vwififlt - ok
08:46:17.0824 0x0d78  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
08:46:17.0885 0x0d78  W32Time - ok
08:46:17.0922 0x0d78  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
08:46:17.0933 0x0d78  WacomPen - ok
08:46:17.0969 0x0d78  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
08:46:17.0996 0x0d78  WANARP - ok
08:46:18.0022 0x0d78  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
08:46:18.0049 0x0d78  Wanarpv6 - ok
08:46:18.0120 0x0d78  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
08:46:18.0170 0x0d78  WatAdminSvc - ok
08:46:18.0220 0x0d78  [ 5AB1BB85BD8B5089CC5D64200DEDAE68, 28777D4F3CD07C8E3465B6DA0FCA994E0B93071A3A0D4D1D64C1DF633DD1C64F ] wbengine        C:\Windows\system32\wbengine.exe
08:46:18.0295 0x0d78  wbengine - ok
08:46:18.0314 0x0d78  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
08:46:18.0334 0x0d78  WbioSrvc - ok
08:46:18.0370 0x0d78  [ DD1BAE8EBFC653824D29CCF8C9054D68, 81D6640222FE276D721168745F6BB905D4E756909A9B2C706AF25465D748772D ] wcncsvc         C:\Windows\System32\wcncsvc.dll
08:46:18.0391 0x0d78  wcncsvc - ok
08:46:18.0423 0x0d78  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
08:46:18.0436 0x0d78  WcsPlugInService - ok
08:46:18.0448 0x0d78  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
08:46:18.0458 0x0d78  Wd - ok
08:46:18.0493 0x0d78  [ A3D04EBF5227886029B4532F20D026F7, D90F7B9C176008675DA0B5FD7E4973CBC2A04172CEDF8FB7D3B3B4F27B5440D7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
08:46:18.0503 0x0d78  WDC_SAM - ok
08:46:18.0549 0x0d78  [ 442783E2CB0DA19873B7A63833FF4CB4, 09254970265476214F3187CC22A4F9C7C2769D419600E83FBE302C3A103E527F ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
08:46:18.0571 0x0d78  Wdf01000 - ok
08:46:18.0600 0x0d78  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
08:46:18.0617 0x0d78  WdiServiceHost - ok
08:46:18.0623 0x0d78  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
08:46:18.0639 0x0d78  WdiSystemHost - ok
08:46:18.0673 0x0d78  [ 733006127F235BE7C35354EBEE7B9A7B, 2C7E7030D586C36261F33F29883337695493D48CEA415D6DBA7C5635845A5B32 ] WebClient       C:\Windows\System32\webclnt.dll
08:46:18.0708 0x0d78  WebClient - ok
08:46:18.0730 0x0d78  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
08:46:18.0762 0x0d78  Wecsvc - ok
08:46:18.0806 0x0d78  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
08:46:18.0834 0x0d78  wercplsupport - ok
08:46:18.0868 0x0d78  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
08:46:18.0908 0x0d78  WerSvc - ok
08:46:18.0934 0x0d78  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
08:46:18.0959 0x0d78  WfpLwf - ok
08:46:18.0986 0x0d78  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
08:46:18.0995 0x0d78  WIMMount - ok
08:46:19.0010 0x0d78  WinDefend - ok
08:46:19.0030 0x0d78  WinHttpAutoProxySvc - ok
08:46:19.0159 0x0d78  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
08:46:19.0190 0x0d78  Winmgmt - ok
08:46:19.0438 0x0d78  WinRing0_1_2_0 - ok
08:46:19.0527 0x0d78  [ 41FBB751936B387F9179E7F03A74FE29, 7A73D887BEC19DFC485ED42B4E6ABEBF824555139B81EA30731A00773E707464 ] WinRM           C:\Windows\system32\WsmSvc.dll
08:46:19.0660 0x0d78  WinRM - ok
08:46:19.0712 0x0d78  [ 817EAFF5D38674EDD7713B9DFB8E9791, F6E0BFC503BA7395F92989C11B454D1F1E58E29302BA203801449A2C5236E84D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
08:46:19.0726 0x0d78  WinUsb - ok
08:46:19.0784 0x0d78  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
08:46:19.0815 0x0d78  Wlansvc - ok
08:46:20.0223 0x0d78  [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
08:46:20.0268 0x0d78  wlidsvc - ok
08:46:20.0408 0x0d78  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
08:46:20.0420 0x0d78  WmiAcpi - ok
08:46:20.0493 0x0d78  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
08:46:20.0536 0x0d78  wmiApSrv - ok
08:46:20.0588 0x0d78  WMPNetworkSvc - ok
08:46:20.0838 0x0d78  [ D0881646C9EBF39023DEE4A16F1F9285, DB69502E0202C9265901EB4B1AB754AC2A787CFCBF489A22AE8C466C12108FDD ] WNDA6200        C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe
08:46:20.0847 0x0d78  WNDA6200 - ok
08:46:20.0855 0x0d78  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
08:46:20.0892 0x0d78  WPCSvc - ok
08:46:20.0916 0x0d78  [ 2E57DDF2880A7E52E76F41C7E96D327B, D24E19B6091C197D77D71BC044CE2E5A57BE0A2F00D1BB0732E380A398230E63 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
08:46:20.0931 0x0d78  WPDBusEnum - ok
08:46:20.0966 0x0d78  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
08:46:20.0991 0x0d78  ws2ifsl - ok
08:46:21.0004 0x0d78  [ 8F9F3969933C02DA96EB0F84576DB43E, C424D7B881A4DCC348433CF02044383013E32DB94CC66D1D20E1866CB3B0F952 ] wscsvc          C:\Windows\system32\wscsvc.dll
08:46:21.0016 0x0d78  wscsvc - ok
08:46:21.0019 0x0d78  WSearch - ok
08:46:21.0116 0x0d78  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\Windows\system32\wuaueng.dll
08:46:21.0167 0x0d78  wuauserv - ok
08:46:21.0223 0x0d78  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
08:46:21.0254 0x0d78  WudfPf - ok
08:46:21.0285 0x0d78  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
08:46:21.0300 0x0d78  WUDFRd - ok
08:46:21.0317 0x0d78  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
08:46:21.0364 0x0d78  wudfsvc - ok
08:46:21.0401 0x0d78  [ 9A3452B3C2A46C073166C5CF49FAD1AE, D6F95F51D8E37BA4CF403965EC08CCFEEA9EEFDBFC7752432EAEC19925BDA115 ] WwanSvc         C:\Windows\System32\wwansvc.dll
08:46:21.0422 0x0d78  WwanSvc - ok
08:46:21.0555 0x0d78  X6va009 - ok
08:46:21.0609 0x0d78  [ 2EE48CFCE7CA8E0DB4C44C7476C0943B, 2C324592F3F2D50BABA7123B6F9FC922667CC132777E019FF615F2D6F273A45E ] xusb21          C:\Windows\system32\DRIVERS\xusb21.sys
08:46:21.0621 0x0d78  xusb21 - ok
08:46:21.0655 0x0d78  ================ Scan global ===============================
08:46:21.0679 0x0d78  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
08:46:21.0712 0x0d78  [ 3FB74FF230B5D240A57AE1C4A3D0459D, 7A4036CAC3BAAEC719E4152F2CAA9D9B69DACBDC7502147D7160D04AE70BC8DF ] C:\Windows\system32\winsrv.dll
08:46:21.0736 0x0d78  [ 3FB74FF230B5D240A57AE1C4A3D0459D, 7A4036CAC3BAAEC719E4152F2CAA9D9B69DACBDC7502147D7160D04AE70BC8DF ] C:\Windows\system32\winsrv.dll
08:46:21.0770 0x0d78  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
08:46:21.0864 0x0d78  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
08:46:21.0870 0x0d78  [ Global ] - ok
08:46:21.0870 0x0d78  ================ Scan MBR ==================================
08:46:21.0898 0x0d78  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
08:46:24.0299 0x0d78  \Device\Harddisk0\DR0 - ok
08:46:24.0299 0x0d78  ================ Scan VBR ==================================
08:46:24.0306 0x0d78  [ 4B0427F48CE235C60D0BE8CB16E81C34 ] \Device\Harddisk0\DR0\Partition1
08:46:24.0342 0x0d78  \Device\Harddisk0\DR0\Partition1 - detected Rootkit.Boot.Cidox.b ( 0 )
08:46:24.0342 0x0d78  \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - infected
08:46:39.0888 0x0d78  [ 402D540F3F600850695B5B86B51C46A2 ] \Device\Harddisk0\DR0\Partition2
08:46:40.0037 0x0d78  \Device\Harddisk0\DR0\Partition2 - ok
08:46:40.0037 0x0d78  ================ Scan generic autorun ======================
08:46:40.0356 0x0d78  [ 657902C8B78B8DE124116CC817B1C4C4, E67ABF655D826A3A972731FF5C24ED23E3F885E564E7BFC0882DEAE8DAD203ED ] C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe
08:46:40.0388 0x0d78  XFast LAN - ok
08:46:40.0994 0x0d78  [ 293770C94202D1EA18EE27E0D3EB6A41, B17D9A3ED5A5A52AF1BB6F1E8B057CAA9BDD868A7080401A7BF9CFDF5393EBF2 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
08:46:41.0038 0x0d78  NvBackend - ok
08:46:41.0113 0x0d78  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
08:46:41.0125 0x0d78  ShadowPlay - ok
08:46:41.0193 0x0d78  [ 28062B17191C9450BF6C6C3EF8C7EB27, 4859C5708DFD119021F7B7FFB38F0B316675E1E4D5D51A10D4265F712CF8CDB6 ] C:\Windows\system32\igfxtray.exe
08:46:41.0205 0x0d78  IgfxTray - ok
08:46:41.0283 0x0d78  [ 28FC280487F0BAAE5E8119257C4EEF8C, F574BC70B79B77912FC683B3EB0BE6929E7758284ED5B47008E18B0E4A4A09FD ] C:\Windows\system32\hkcmd.exe
08:46:41.0298 0x0d78  HotKeysCmds - ok
08:46:41.0380 0x0d78  [ F29BEA821C753E4F00177690F70CDC13, 0EDB40F4A4C23553C0288E6E3AD65E7B523F6764C87C6C36C3ECB0C1940C5176 ] C:\Windows\system32\igfxpers.exe
08:46:41.0395 0x0d78  Persistence - ok
08:46:41.0450 0x0d78  [ 51138BEEA3E2C21EC44D0932C71762A8, 5AD3C37E6F2B9DB3EE8B5AEEDC474645DE90C66E3D95F8620C48102F1EBA4124 ] C:\Windows\syswow64\RunDll32.exe
08:46:41.0462 0x0d78  Cm108Sound - ok
08:46:42.0216 0x0d78  [ 73CF56A3642DFBEBE4167772B6F422A6, F4F0BC4A745931E83C1B2D4D5E906A6899F6C062CB1001465D844003D7ACC6A2 ] C:\Program Files (x86)\XFastUsb\XFastUsb.exe
08:46:42.0316 0x0d78  XFastUsb - detected UnsignedFile.Multi.Generic ( 1 )
08:46:44.0900 0x0d78  Detect skipped due to KSN trusted
08:46:44.0900 0x0d78  XFastUsb - ok
08:46:45.0044 0x0d78  [ A2418D3C557C0A0C634DA713A8AC3789, 4D8212B15081A31134167B9A328EEE778797ADDEBD23C8B0160FA43BCA1349DE ] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
08:46:45.0054 0x0d78  LWS - ok
08:46:45.0213 0x0d78  [ 13E83F57B7A9849348D968C0E73F3BEA, 84D8D5F6AC4033DEF4374F0DBE16F4485934C10BDBC8F6BA3A299244840610DD ] C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe
08:46:45.0235 0x0d78  Razer Mamba Elite Driver - ok
08:46:45.0376 0x0d78  [ 04679E0DC30077EC1164BE82F2A2ADC9, E0193F0AE484DED0DD7F81407F0D98AC071F34358B9EA554DE3ADFC3BA1CBD60 ] C:\Program Files\McAfee.com\Agent\mcagent.exe
08:46:45.0394 0x0d78  mcui_exe - ok
08:46:45.0498 0x0d78  [ 1B22422DC7EAA39E86820387C5AA1CB4, 365F4E690EDCF1FB86D88858456997E8433D6FDBEC384853D866EEA91F3ACE77 ] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
08:46:45.0511 0x0d78  DivXMediaServer - detected UnsignedFile.Multi.Generic ( 1 )
08:46:47.0880 0x0d78  Detect skipped due to KSN trusted
08:46:47.0880 0x0d78  DivXMediaServer - ok
08:46:48.0053 0x0d78  [ 81800928E0F713DF31F3393CC26F4013, 0ABCC70297C83C01BCCAF03083BE67EB7A50A28557B2F9578EDB73B382F54182 ] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
08:46:48.0081 0x0d78  DivXUpdate - ok
08:46:48.0127 0x0d78  [ 04679E0DC30077EC1164BE82F2A2ADC9, E0193F0AE484DED0DD7F81407F0D98AC071F34358B9EA554DE3ADFC3BA1CBD60 ] C:\Program Files\McAfee.com\Agent\mcagent.exe
08:46:48.0145 0x0d78  mcpltui_exe - ok
08:46:48.0296 0x0d78  [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
08:46:48.0319 0x0d78  Adobe ARM - ok
08:46:48.0397 0x0d78  [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
08:46:48.0409 0x0d78  QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
08:46:51.0063 0x0d78  Detect skipped due to KSN trusted
08:46:51.0063 0x0d78  QuickTime Task - ok
08:46:51.0249 0x0d78  [ 0E67B5018A7FEA608D46466EDCAC89C1, BBDEB51B4D531C452FF033D7DEC7456F5210257FD96823367D4E038205E13E9F ] C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe
08:46:51.0259 0x0d78  VolPanel - detected UnsignedFile.Multi.Generic ( 1 )
08:46:53.0635 0x0d78  Detect skipped due to KSN trusted
08:46:53.0635 0x0d78  VolPanel - ok
08:46:53.0637 0x0d78  CTxfiHlp - ok
08:46:54.0397 0x0d78  [ 2F0DEB0C6413D9DEABFD95A950A422CD, 76DA8246127028BDDCC551FC55A2D21914EEFBCF93D26E314F59FDB0192519B5 ] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
08:46:54.0467 0x0d78  LogMeIn Hamachi Ui - ok
08:46:54.0526 0x0d78  [ D9FAA5EFEB27DDBE99C720B9069A451E, FD33757E2674915409E54FBDF828DB900E31B99265035B16C216B38C6DBFC15F ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
08:46:54.0536 0x0d78  iTunesHelper - ok
08:46:54.0901 0x0d78  [ 15F3F063FAABB583C0A383DC0D4AAACC, FC0044F32E7805E382AED9670C59D1FC3238B43F9797839981B010E794BC7D24 ] C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
08:46:54.0965 0x0d78  Fitbit Connect - ok
08:46:55.0996 0x0d78  [ 61E3B5BEE1C10954F53DC07282F2A61C, 9B092FE63CAECDAD165B702D45B79D5D06DC879C11FEFFCE62B431712C50A1F2 ] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
08:46:56.0104 0x0d78  Logitech Vid - ok
08:46:56.0303 0x0d78  [ 15F3F063FAABB583C0A383DC0D4AAACC, FC0044F32E7805E382AED9670C59D1FC3238B43F9797839981B010E794BC7D24 ] C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
08:46:56.0366 0x0d78  Fitbit Connect - ok
08:46:56.0663 0x0d78  [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
08:46:56.0716 0x0d78  Sidebar - ok
08:46:57.0106 0x0d78  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
08:46:57.0116 0x0d78  Google Update - ok
08:46:57.0147 0x0d78  Skype - ok
08:46:57.0253 0x0d78  [ 1C10324F2D829B2820B8E626F5CA9445, 37BE9A93E1F2D46557567EED9F3BE6B4ED3C74A0C7F75FFAA72685426FAD50BB ] c:\program files (x86)\steam\steam.exe
08:46:57.0289 0x0d78  Steam - ok
08:46:57.0312 0x0d78  [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
08:46:57.0325 0x0d78  QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
08:46:57.0325 0x0d78  Detect skipped due to KSN trusted
08:46:57.0325 0x0d78  QuickTime Task - ok
08:46:57.0325 0x0d78  igndlm.exe - ok
08:46:57.0327 0x0d78  Waiting for KSN requests completion. In queue: 8
08:46:58.0327 0x0d78  Waiting for KSN requests completion. In queue: 8
08:46:59.0327 0x0d78  Waiting for KSN requests completion. In queue: 8
08:47:00.0614 0x0d78  AV detected via SS2: McAfee Anti-Virus and Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51000 ( enabled : updated )
08:47:00.0617 0x0d78  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51010 ( enabled )
08:47:03.0065 0x0d78  ============================================================
08:47:03.0065 0x0d78  Scan finished
08:47:03.0065 0x0d78  ============================================================
08:47:03.0069 0x11bc  Detected object count: 1
08:47:03.0069 0x11bc  Actual detected object count: 1
 


#8 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 12 June 2014 - 11:27 AM

Then do one more scan with TDSSKiller as before: http://www.bleepingcomputer.com/forums/t/536270/iexploreexe-running-multiple-instances/?p=3391910

#9 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 12 June 2014 - 05:26 PM

13:05:08.0965 0x16d8  TDSS rootkit removing tool 3.0.0.39 Jun  5 2014 20:35:54
13:05:22.0290 0x16d8  ============================================================
13:05:22.0290 0x16d8  Current date / time: 2014/06/12 13:05:22.0290
13:05:22.0290 0x16d8  SystemInfo:
13:05:22.0290 0x16d8  
13:05:22.0290 0x16d8  OS Version: 6.1.7600 ServicePack: 0.0
13:05:22.0290 0x16d8  Product type: Workstation
13:05:22.0290 0x16d8  ComputerName: BOSTONCREME
13:05:22.0290 0x16d8  UserName: Jonathan
13:05:22.0290 0x16d8  Windows directory: C:\Windows
13:05:22.0290 0x16d8  System windows directory: C:\Windows
13:05:22.0290 0x16d8  Running under WOW64
13:05:22.0290 0x16d8  Processor architecture: Intel x64
13:05:22.0290 0x16d8  Number of processors: 4
13:05:22.0290 0x16d8  Page size: 0x1000
13:05:22.0290 0x16d8  Boot type: Normal boot
13:05:22.0290 0x16d8  ============================================================
13:05:24.0818 0x16d8  KLMD registered as C:\Windows\system32\drivers\45434255.sys
13:05:25.0054 0x16d8  System UUID: {1634C6D5-98A8-CCAB-083A-9A3978968160}
13:05:25.0345 0x16d8  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0CADE00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0xEC931, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x20, Type 'K0', Flags 0x00000040
13:05:25.0425 0x16d8  Drive \Device\Harddisk1\DR1 - Size: 0x1D1BF100000 ( 1862.99 Gb ), SectorSize: 0x200, Cylinders: 0x3B5FD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:05:25.0798 0x16d8  ============================================================
13:05:25.0798 0x16d8  \Device\Harddisk0\DR0:
13:05:25.0798 0x16d8  MBR partitions:
13:05:25.0798 0x16d8  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
13:05:25.0798 0x16d8  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3000
13:05:25.0798 0x16d8  \Device\Harddisk1\DR1:
13:05:26.0302 0x16d8  MBR partitions:
13:05:26.0302 0x16d8  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8DF8000
13:05:26.0302 0x16d8  ============================================================
13:05:26.0334 0x16d8  C: <-> \Device\Harddisk0\DR0\Partition2
13:05:27.0732 0x16d8  E: <-> \Device\Harddisk1\DR1\Partition1
13:05:27.0732 0x16d8  ============================================================
13:05:27.0732 0x16d8  Initialize success
13:05:27.0732 0x16d8  ============================================================
13:05:48.0538 0x2234  ============================================================
13:05:48.0538 0x2234  Scan started
13:05:48.0538 0x2234  Mode: Manual; SigCheck; TDLFS; 
13:05:48.0538 0x2234  ============================================================
13:05:48.0538 0x2234  KSN ping started
13:16:35.0335 0x2234  KSN ping finished: false
13:16:41.0842 0x2234  ================ Scan system memory ========================
13:16:41.0842 0x2234  System memory - ok
13:16:41.0842 0x2234  ================ Scan services =============================
13:16:42.0527 0x2234  0247321402580405mcinstcleanup - ok
13:16:42.0675 0x2234  [ 1B00662092F9F9568B995902F0CC40D5, D345014CF146FA57B2682C189D5E7F27D4C78F321F2723D912D623E777C2BB70 ] 1394ohci        C:\Windows\system32\DRIVERS\1394ohci.sys
13:16:42.0845 0x2234  1394ohci - ok
13:16:42.0953 0x2234  [ CEB66453AFFE08518566151D2B86864C, B0E99D797E7E36F9DE5AC93C80C4D9047EA05A8C62DEC67E222CC7AE7D67AB18 ] A6200           C:\Windows\system32\DRIVERS\bcmwlhigh664.sys
13:16:43.0029 0x2234  A6200 - ok
13:16:43.0075 0x2234  [ 6F11E88748CDEFD2F76AA215F97DDFE5, BD0B3561EDCDE5EFD89372793CFD09DF879709BF469542F4A049705CBA9FD060 ] ACPI            C:\Windows\system32\DRIVERS\ACPI.sys
13:16:43.0091 0x2234  ACPI - ok
13:16:43.0120 0x2234  [ 63B05A0420CE4BF0E4AF6DCC7CADA254, 56BCC219D6B886FD42B7D335B4A7BBA3C9BC148220CBD99F8583FB505DAE63BF ] AcpiPmi         C:\Windows\system32\DRIVERS\acpipmi.sys
13:16:43.0133 0x2234  AcpiPmi - ok
13:16:43.0171 0x2234  [ D44BCAF639E4E45307C2BC80715273D5, 1E1CDE13C39D835447096CBEC104A2EDDCE15D94288DB3FBB02421B8B8307989 ] adfs            C:\Windows\system32\drivers\adfs.sys
13:16:43.0230 0x2234  adfs - ok
13:16:43.0430 0x2234  [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:16:43.0439 0x2234  AdobeARMservice - ok
13:16:43.0648 0x2234  [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:16:43.0660 0x2234  AdobeFlashPlayerUpdateSvc - ok
13:16:43.0927 0x2234  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
13:16:43.0981 0x2234  adp94xx - ok
13:16:44.0152 0x2234  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
13:16:44.0201 0x2234  adpahci - ok
13:16:44.0286 0x2234  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
13:16:44.0316 0x2234  adpu320 - ok
13:16:44.0381 0x2234  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
13:16:44.0453 0x2234  AeLookupSvc - ok
13:16:44.0777 0x2234  [ DB9D6C6B2CD95A9CA414D045B627422E, A4A0B2ACBFE311C20EF9F06A49DBE02CE90433C2364B292F6E8F78F6C274DF88 ] AFD             C:\Windows\system32\drivers\afd.sys
13:16:44.0898 0x2234  AFD - ok
13:16:45.0037 0x2234  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\DRIVERS\agp440.sys
13:16:45.0084 0x2234  agp440 - ok
13:16:45.0217 0x2234  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
13:16:45.0268 0x2234  ALG - ok
13:16:45.0341 0x2234  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\DRIVERS\aliide.sys
13:16:45.0386 0x2234  aliide - ok
13:16:45.0416 0x2234  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\DRIVERS\amdide.sys
13:16:45.0463 0x2234  amdide - ok
13:16:45.0559 0x2234  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
13:16:45.0609 0x2234  AmdK8 - ok
13:16:45.0816 0x2234  [ EF4680F07516F6D61F6E0BA1D34B3A3A, C367B323B26CF56AA6260E41129AE5F2DC97CFD0A9D984D9D5C051BE61ACD247 ] amdkmpfd        C:\Windows\system32\DRIVERS\amdkmpfd.sys
13:16:45.0859 0x2234  amdkmpfd - ok
13:16:45.0912 0x2234  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
13:16:45.0960 0x2234  AmdPPM - ok
13:16:46.0129 0x2234  [ EC7EBAB00A4D8448BAB68D1E49B4BEB9, 786B30C86FA7FEC6BA2569FF818044AA0F7C134693304ED0FF7BD0541F9A755F ] amdsata         C:\Windows\system32\drivers\amdsata.sys
13:16:46.0177 0x2234  amdsata - ok
13:16:46.0341 0x2234  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
13:16:46.0392 0x2234  amdsbs - ok
13:16:46.0488 0x2234  [ DB27766102C7BF7E95140A2AA81D042E, 489F812B596EA06E53D891CD05047AA17CDF752854BBD553BA65D10799AF78DF ] amdxata         C:\Windows\system32\drivers\amdxata.sys
13:16:46.0536 0x2234  amdxata - ok
13:16:46.0660 0x2234  [ 42FD751B27FA0E9C69BB39F39E409594, DE349CAA570957868CA1CB0BE0FAF551CD4D44FD53EBC4391B9C1C7B9CF295D2 ] AppID           C:\Windows\system32\drivers\appid.sys
13:16:46.0715 0x2234  AppID - ok
13:16:46.0838 0x2234  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
13:16:46.0906 0x2234  AppIDSvc - ok
13:16:47.0035 0x2234  [ D065BE66822847B7F127D1F90158376E, 20F911F390FF23C2C42361A449C4344DB59F1DC21EDD1E7EBC4E80914DEF7824 ] Appinfo         C:\Windows\System32\appinfo.dll
13:16:47.0114 0x2234  Appinfo - ok
13:16:47.0191 0x2234  [ 221564CC7BE37611FE15EACF443E1BF6, 381BDF17418C779D72332431BA174C2AD76CD9C7C1711FF5142EA9B05D5555E4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:16:47.0198 0x2234  Apple Mobile Device - ok
13:16:47.0254 0x2234  [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt         C:\Windows\System32\appmgmts.dll
13:16:47.0290 0x2234  AppMgmt - ok
13:16:47.0334 0x2234  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
13:16:47.0345 0x2234  arc - ok
13:16:47.0359 0x2234  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
13:16:47.0369 0x2234  arcsas - ok
13:16:47.0399 0x2234  [ D7989234601A2DE9A1801F4ED9533B6E, 59FEDA2BC940B9B45597B99F11F58EF0F09242840220BF305D75A5E94DF3E4B8 ] asahci64        C:\Windows\system32\DRIVERS\asahci64.sys
13:16:47.0407 0x2234  asahci64 - ok
13:16:47.0471 0x2234  [ 10920CCB66203D7EF48F024B1B35AE6F, 3C97FE6C91076C059E54234F54021F5D74FB42638BE14E2C1E4CF2EFC342C274 ] asmthub3        C:\Windows\system32\DRIVERS\asmthub3.sys
13:16:47.0483 0x2234  asmthub3 - ok
13:16:47.0505 0x2234  [ C479BFAF73CF726E01AA0A487B268A5E, D49F7779CD25E098EC9DAF1886C3B3DB8EB22CEC0FEA6FDF4522A2B2D282AE37 ] asmtxhci        C:\Windows\system32\DRIVERS\asmtxhci.sys
13:16:47.0522 0x2234  asmtxhci - ok
13:16:47.0673 0x2234  [ 041672BAC20B34EAEDEB033129655DD8, 14264732F0CACF5732C7652C411F0A1C3B4A4417C31DD289C8AFF170BE683E5A ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
13:16:47.0684 0x2234  aspnet_state - ok
13:16:47.0744 0x2234  [ EDC0C73FA41DF1C8B1FEA3852AED2848, A3FE7EE1AB15ED603403479CFD011DF9B506C1FE95730C0980F1410810C2F736 ] AsrHidFilter    C:\Windows\system32\DRIVERS\AsrHidFilter.sys
13:16:47.0753 0x2234  AsrHidFilter - ok
13:16:47.0772 0x2234  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
13:16:47.0797 0x2234  AsyncMac - ok
13:16:47.0815 0x2234  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\DRIVERS\atapi.sys
13:16:47.0823 0x2234  atapi - ok
13:16:47.0875 0x2234  [ 230CF51113CD4B830B3BFD09B0D4C066, 54751AA93E5E697A09B9C02EED34BFFE4B9C98B69490B738BFD4127EACC0E39F ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
13:16:47.0884 0x2234  AtiHDAudioService - ok
13:16:47.0941 0x2234  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:16:48.0010 0x2234  AudioEndpointBuilder - ok
13:16:48.0049 0x2234  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
13:16:48.0087 0x2234  AudioSrv - ok
13:16:48.0127 0x2234  [ B20B5FA5CA050E9926E4D1DB81501B32, 91B9038349BA07E32DE809E6798167EE44087809EB1174B84EC16580040F1BE0 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
13:16:48.0143 0x2234  AxInstSV - ok
13:16:48.0181 0x2234  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
13:16:48.0212 0x2234  b06bdrv - ok
13:16:48.0255 0x2234  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
13:16:48.0288 0x2234  b57nd60a - ok
13:16:48.0304 0x2234  BCM42RLY - ok
13:16:48.0307 0x2234  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
13:16:48.0320 0x2234  BDESVC - ok
13:16:48.0331 0x2234  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
13:16:48.0356 0x2234  Beep - ok
13:16:48.0405 0x2234  [ 4992C609A6315671463E30F6512BC022, 3020034556EAC25CD90F41D3BFFDD0BB2C3D1C5BAC4359F4B71B84A9FC404495 ] BFE             C:\Windows\System32\bfe.dll
13:16:48.0447 0x2234  BFE - ok
13:16:48.0496 0x2234  [ 7F0C323FE3DA28AA4AA1BDA3F575707F, 7FF09CBC16A9E5F357A76FF79A3F0DD047957D474031F51A6BB4916C7911F005 ] BITS            C:\Windows\system32\qmgr.dll
13:16:48.0538 0x2234  BITS - ok
13:16:48.0566 0x2234  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
13:16:48.0577 0x2234  blbdrive - ok
13:16:48.0669 0x2234  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:16:48.0683 0x2234  Bonjour Service - ok
13:16:48.0728 0x2234  [ 19D20159708E152267E53B66677A4995, 6401FA5C3EFF26BED075FEC68F868CD8D0598FDB45EA9381810615F7252F7A9A ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
13:16:48.0750 0x2234  bowser - ok
13:16:48.0762 0x2234  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:16:48.0785 0x2234  BrFiltLo - ok
13:16:48.0799 0x2234  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:16:48.0812 0x2234  BrFiltUp - ok
13:16:48.0851 0x2234  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
13:16:48.0879 0x2234  BridgeMP - ok
13:16:48.0918 0x2234  [ 6B054C67AAA87843504E8E3C09102009, 284AA58625FBDBFECB851A35407331B40BAEC141F2DCEDB9F15733BAB22F5C81 ] Browser         C:\Windows\System32\browser.dll
13:16:48.0932 0x2234  Browser - ok
13:16:48.0951 0x2234  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
13:16:49.0010 0x2234  Brserid - ok
13:16:49.0023 0x2234  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
13:16:49.0049 0x2234  BrSerWdm - ok
13:16:49.0063 0x2234  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
13:16:49.0076 0x2234  BrUsbMdm - ok
13:16:49.0083 0x2234  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
13:16:49.0109 0x2234  BrUsbSer - ok
13:16:49.0131 0x2234  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
13:16:49.0146 0x2234  BTHMODEM - ok
13:16:49.0186 0x2234  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
13:16:49.0221 0x2234  bthserv - ok
13:16:49.0254 0x2234  catchme - ok
13:16:49.0272 0x2234  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
13:16:49.0299 0x2234  cdfs - ok
13:16:49.0330 0x2234  [ 83D2D75E1EFB81B3450C18131443F7DB, F2C686C980D818E797818E75B808E1E0B51B2045840A4BFC32D860B7DB4DFA22 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
13:16:49.0360 0x2234  cdrom - ok
13:16:49.0384 0x2234  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] CertPropSvc     C:\Windows\System32\certprop.dll
13:16:49.0412 0x2234  CertPropSvc - ok
13:16:49.0517 0x2234  [ 33B82CF69E41B38A2EC0C3CABDE80D6E, E7331B38232001A4055CE1F6D74AED0F108385DDBD5211006DA8EA932D3B1575 ] cFosSpeed       C:\Windows\system32\DRIVERS\cfosspeed6.sys
13:16:49.0571 0x2234  cFosSpeed - ok
13:16:49.0674 0x2234  [ 760085908644D2988F1B504C3FCA6959, 65BF8084E14A8755A4DBE8AEAFDC4D3A55F59AEE3D2FED021A202D8B6C02566C ] cFosSpeedS      C:\Program Files\ASRock\XFast LAN\spd.exe
13:16:49.0689 0x2234  cFosSpeedS - ok
13:16:49.0757 0x2234  [ 7975EABC23768C92B18ED2744A8FD2BE, C81E92B10E2A5F533DC3D2A554F469915DEF8C4F9D9C24D62ACBA8D1A86285AE ] cfwids          C:\Windows\system32\drivers\cfwids.sys
13:16:49.0766 0x2234  cfwids - ok
13:16:49.0791 0x2234  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
13:16:49.0804 0x2234  circlass - ok
13:16:49.0848 0x2234  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
13:16:49.0864 0x2234  CLFS - ok
13:16:49.0929 0x2234  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:16:49.0939 0x2234  clr_optimization_v2.0.50727_32 - ok
13:16:50.0008 0x2234  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:16:50.0020 0x2234  clr_optimization_v2.0.50727_64 - ok
13:16:50.0096 0x2234  [ 397C2677C25CBE213F3270245A401624, 8121E37108DE7A0402DC5111EBF452F91893B63EECE3AAD9EACF61C40D3FC182 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:16:50.0108 0x2234  clr_optimization_v4.0.30319_32 - ok
13:16:50.0142 0x2234  [ 29139759FCC4E4E0531ABE2EA82CE646, CFF7B2F4A9B37D343BE18DC40161DC03FA9DB308CAE9E0B3DF1FCDC3EBAC0C08 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:16:50.0154 0x2234  clr_optimization_v4.0.30319_64 - ok
13:16:50.0172 0x2234  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
13:16:50.0201 0x2234  CmBatt - ok
13:16:50.0208 0x2234  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\DRIVERS\cmdide.sys
13:16:50.0217 0x2234  cmdide - ok
13:16:50.0269 0x2234  [ CA7720B73446FDDEC5C69519C1174C98, F24796765587CC1D653A04783B1659564F42E600DA3AFA3DED724592B291D033 ] CNG             C:\Windows\system32\Drivers\cng.sys
13:16:50.0291 0x2234  CNG - ok
13:16:50.0319 0x2234  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
13:16:50.0328 0x2234  Compbatt - ok
13:16:50.0369 0x2234  [ 59D203C3F46F3CA536ECAC0E084CD887, 0D04D469ADE2AEFAA18920E13A8EC74FDFB7C6827A78BFCD987B66D579BFF846 ] CompFilter64    C:\Windows\system32\DRIVERS\lvbflt64.sys
13:16:50.0377 0x2234  CompFilter64 - ok
13:16:50.0417 0x2234  [ F26B3A86F6FA87CA360B879581AB4123, 723904362614FE47F6CC0EA0656BA1B47EA32D73BAFB61688A5E5CAE4340B1BF ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
13:16:50.0437 0x2234  CompositeBus - ok
13:16:50.0450 0x2234  COMSysApp - ok
13:16:50.0488 0x2234  [ 44622785D2D2DD8B13E6DC969B6E34A4, 98F3D48A80A6C28776EF77782472428F107C6B4203A82537730679EA5E742521 ] copperhd        C:\Windows\system32\drivers\copperhd.sys
13:16:50.0528 0x2234  copperhd - ok
13:16:50.0642 0x2234  [ 08F934092E0429BADF88E9F91DB0F61E, 6E9091C006FFFF261DC61C8E9A45219E47C351296E5355FC4B7242F30E1DDFE3 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
13:16:50.0657 0x2234  cphs - ok
13:16:50.0770 0x2234  [ 3CA734CE373E5675FBC15CA2C45228E5, A6C6E9FABDE5EA18D266DB71C0CC6B51D682116D1898CCB4E9BA730F15C44B32 ] cpudrv64        C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys
13:16:50.0779 0x2234  cpudrv64 - ok
13:16:50.0810 0x2234  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
13:16:50.0819 0x2234  crcdisk - ok
13:16:50.0891 0x2234  [ C8BD651E13895B93ED9EC5B4F1DF42BC, D86D6BF0BA3C09B49B3A52C86A7F3B3856A27F79EDD86A8FFA469D9A5F196E8D ] Creative ALchemy AL6 Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
13:16:50.0908 0x2234  Creative ALchemy AL6 Licensing Service - detected UnsignedFile.Multi.Generic ( 1 )
13:17:00.0951 0x2234  Creative ALchemy AL6 Licensing Service ( UnsignedFile.Multi.Generic ) - warning
13:17:20.0977 0x2234  [ C0EAD9F8AB83D41FF07303C75589C2B8, C89CAC39BCD2FA2DCC56D7EE84FF66127BCECCAE400E119FE41BF4C4D769504B ] Creative Audio Engine Licensing Service C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
13:17:20.0990 0x2234  Creative Audio Engine Licensing Service - detected UnsignedFile.Multi.Generic ( 1 )
13:17:30.0991 0x2234  Creative Audio Engine Licensing Service ( UnsignedFile.Multi.Generic ) - warning
13:17:30.0991 0x2234  Force sending object to P2P due to detect: Creative Audio Engine Licensing Service
13:17:50.0993 0x2234  Object send P2P result: false
13:18:11.0036 0x2234  [ BAF19B633933A9FB4883D27D66C39E9A, 2D8ABB5161736CCCADA67B3E6A8D70B0B5E1E3FE6084561891F394DA191B3439 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
13:18:11.0050 0x2234  CryptSvc - ok
13:18:11.0105 0x2234  [ 4A6173C2279B498CD8F57CAE504564CB, FF3CD404FD91EDE38C21780362CE892BFBBC2526B146BEBD139C7413EB29A216 ] CSC             C:\Windows\system32\drivers\csc.sys
13:18:11.0133 0x2234  CSC - ok
13:18:11.0181 0x2234  [ 873FBF927C06E5CEE04DEC617502F8FD, 8B452ED5D003337E66634EEC3D5C9FBA4D05FF5AE776239F3B769FAA505E729C ] CscService      C:\Windows\System32\cscsvc.dll
13:18:11.0207 0x2234  CscService - ok
13:18:11.0281 0x2234  [ 18CC77713154B81A5DFB4BA80F2733CB, 274770E549D073590FD5F004362108420F3065C24C2D7B6C25BCC9F4C26F2BDC ] CT20XUT         C:\Windows\system32\drivers\CT20XUT.SYS
13:18:11.0293 0x2234  CT20XUT - ok
13:18:11.0314 0x2234  [ 18CC77713154B81A5DFB4BA80F2733CB, 274770E549D073590FD5F004362108420F3065C24C2D7B6C25BCC9F4C26F2BDC ] CT20XUT.SYS     C:\Windows\System32\drivers\CT20XUT.SYS
13:18:11.0324 0x2234  CT20XUT.SYS - ok
13:18:11.0369 0x2234  [ D2B88CB94AEDFC34637CF12722A08C28, 66BF48058374D31D028F5C257980671ADF1E33DC31460220BA9709F5A20D7F65 ] ctac32k         C:\Windows\system32\drivers\ctac32k.sys
13:18:11.0390 0x2234  ctac32k - ok
13:18:11.0436 0x2234  [ 4CF2C3E2128594691DF31597C9EB80BB, CE9D8FA317363C1ECFEC34A800ED75867B6D453DAF6D860AD807208892277840 ] ctaud2k         C:\Windows\system32\drivers\ctaud2k.sys
13:18:11.0458 0x2234  ctaud2k - ok
13:18:11.0555 0x2234  [ 5CE3D0E1D1B3832EE052CFC442EEE0FA, 6B9DB2C350140ED547C7A96DB0EAD812E8987176B312C79AF52FC9B23EEEB8C4 ] CTAudSvcService C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
13:18:11.0566 0x2234  CTAudSvcService - detected UnsignedFile.Multi.Generic ( 1 )
13:18:21.0568 0x2234  CTAudSvcService ( UnsignedFile.Multi.Generic ) - warning
13:18:21.0568 0x2234  Force sending object to P2P due to detect: CTAudSvcService
13:18:41.0570 0x2234  Object send P2P result: false
13:19:02.0119 0x2234  [ A9007C6A5E20B66B8EE61C07EAC7B49D, F9ACE95CF246F36674F6CBA11A3F6148021A0DAB46698DDC4B4537AA0B6CF78B ] CTEXFIFX        C:\Windows\system32\drivers\CTEXFIFX.SYS
13:19:02.0174 0x2234  CTEXFIFX - ok
13:19:02.0431 0x2234  [ A9007C6A5E20B66B8EE61C07EAC7B49D, F9ACE95CF246F36674F6CBA11A3F6148021A0DAB46698DDC4B4537AA0B6CF78B ] CTEXFIFX.SYS    C:\Windows\System32\drivers\CTEXFIFX.SYS
13:19:02.0463 0x2234  CTEXFIFX.SYS - ok
13:19:02.0541 0x2234  [ D75A69D9761735DBEDDD6E8D306370D3, B175493998B50BF1A60C4B2A882D6CB53A539C5835200197080ACCCDB4E30F22 ] CTHWIUT         C:\Windows\system32\drivers\CTHWIUT.SYS
13:19:02.0586 0x2234  CTHWIUT - ok
13:19:02.0600 0x2234  [ D75A69D9761735DBEDDD6E8D306370D3, B175493998B50BF1A60C4B2A882D6CB53A539C5835200197080ACCCDB4E30F22 ] CTHWIUT.SYS     C:\Windows\System32\drivers\CTHWIUT.SYS
13:19:02.0610 0x2234  CTHWIUT.SYS - ok
13:19:02.0682 0x2234  [ 2ABC26447CF31D3D8B4AD7F92FA16AF7, 17E1E2C87ADBC40D18DA5B73C736DA4C92F505C8DAC2E43431710A560165B942 ] ctprxy2k        C:\Windows\system32\drivers\ctprxy2k.sys
13:19:02.0720 0x2234  ctprxy2k - ok
13:19:02.0807 0x2234  [ 4681F3E73E3B83CF93A3A601687B3630, 82A215FA49BA917C39CE32DF51AD3B53B42C875DC09C7E8BD3B53044FFA8D810 ] ctsfm2k         C:\Windows\system32\drivers\ctsfm2k.sys
13:19:02.0848 0x2234  ctsfm2k - ok
13:19:02.0936 0x2234  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] DcomLaunch      C:\Windows\system32\rpcss.dll
13:19:02.0972 0x2234  DcomLaunch - ok
13:19:03.0029 0x2234  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
13:19:03.0062 0x2234  defragsvc - ok
13:19:03.0109 0x2234  [ 9C253CE7311CA60FC11C774692A13208, 23507138576DB75AA8B7415140F7B5D8A90CB2661796223870461C721A36AEBF ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
13:19:03.0132 0x2234  DfsC - ok
13:19:03.0185 0x2234  [ E428DFFA96FAD07D8CA3C9082563A225, F3D2E94A9FF2CF68CC99A8B42B8DEA5E57D46000D1845DC0908224493480C79F ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
13:19:03.0195 0x2234  dg_ssudbus - ok
13:19:03.0241 0x2234  [ CE3B9562D997F69B330D181A8875960F, 6FEE6622859198C5C13545867EF7CFE8EDC991360E976F792313DAA9C82CC5C8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
13:19:03.0262 0x2234  Dhcp - ok
13:19:03.0273 0x2234  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
13:19:03.0316 0x2234  discache - ok
13:19:03.0364 0x2234  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
13:19:03.0374 0x2234  Disk - ok
13:19:03.0431 0x2234  [ 85CF424C74A1D5EC33533E1DBFF9920A, 882D5FA0D5EC053D76A0C46A6047A621D607651693CF94E5506219EECCC8D079 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
13:19:03.0449 0x2234  Dnscache - ok
13:19:03.0482 0x2234  [ 14452ACDB09B70964C8C21BF80A13ACB, DA0AAAC04626EFF4256D7095FF1DDA1F1B17676E26990C418BDF5090476F2AB4 ] dot3svc         C:\Windows\System32\dot3svc.dll
13:19:03.0519 0x2234  dot3svc - ok
13:19:03.0554 0x2234  [ 8C2BA6BEA949EE6E68385F5692BAFB94, 1047F473DCE0FB56BEA5C1B7929752C1FBAB5983C8202ABB4EEA48FCD60A353A ] DPS             C:\Windows\system32\dps.dll
13:19:03.0597 0x2234  DPS - ok
13:19:03.0632 0x2234  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
13:19:03.0644 0x2234  drmkaud - ok
13:19:03.0742 0x2234  [ 1ED08A6264C5C92099D6D1DAE5E8F530, 4045AE77859B1DBF13972451972EAAF6F3C97BEA423E9E78F1C2F14330CD47CA ] DrvAgent64      C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS
13:19:03.0751 0x2234  DrvAgent64 - ok
13:19:03.0916 0x2234  dump_wmimmc - ok
13:19:03.0968 0x2234  [ 1633B9ABF52784A1331476397A48CBEF, 697780697C4C55FCCF5FB65C93FB37B3F5A43BF0C59FDBB9EF822D0E993E47BD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
13:19:04.0000 0x2234  DXGKrnl - ok
13:19:04.0040 0x2234  EagleX64 - ok
13:19:04.0064 0x2234  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
13:19:04.0103 0x2234  EapHost - ok
13:19:04.0210 0x2234  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
13:19:04.0353 0x2234  ebdrv - ok
13:19:04.0390 0x2234  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] EFS             C:\Windows\System32\lsass.exe
13:19:04.0401 0x2234  EFS - ok
13:19:04.0548 0x2234  [ 47C071994C3F649F23D9CD075AC9304A, B7AA2DD6AD14F18A19620F5FB79D50C630D3750E72DD67BF8D105CC4F5CE1D46 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
13:19:04.0625 0x2234  ehRecvr - ok
13:19:04.0695 0x2234  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
13:19:04.0708 0x2234  ehSched - ok
13:19:04.0764 0x2234  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
13:19:04.0785 0x2234  elxstor - ok
13:19:04.0821 0x2234  [ AF7217AE9E9A2493719462C890EB73B3, F0B8102C9515D3E020C1BBC6B60FDE3A2FB56E1BE83FC32FB6CC26DB076C591F ] emupia          C:\Windows\system32\drivers\emupia2k.sys
13:19:04.0832 0x2234  emupia - ok
13:19:04.0839 0x2234  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\DRIVERS\errdev.sys
13:19:04.0849 0x2234  ErrDev - ok
13:19:04.0886 0x2234  [ D0542D4590A83339F4AAAC58DF6AF43C, 3C65BB35506384190D94B3F91308BF178D2CA162DC9025CB91AD32F8DB1F46CE ] EuMusDesignVirtualAudioCableWdm C:\Windows\system32\DRIVERS\vrtaucbl.sys
13:19:04.0896 0x2234  EuMusDesignVirtualAudioCableWdm - ok
13:19:04.0937 0x2234  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
13:19:04.0984 0x2234  EventSystem - ok
13:19:05.0009 0x2234  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
13:19:05.0038 0x2234  exfat - ok
13:19:05.0084 0x2234  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
13:19:05.0127 0x2234  fastfat - ok
13:19:05.0270 0x2234  [ D607B2F1BEE3992AA6C2C92C0A2F0855, E22301C8F01DBF0A38A85165959BB070647C996CB1BCD50FDFE3DDDCA427DF2A ] Fax             C:\Windows\system32\fxssvc.exe
13:19:05.0324 0x2234  Fax - ok
13:19:05.0407 0x2234  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
13:19:05.0452 0x2234  fdc - ok
13:19:05.0479 0x2234  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
13:19:05.0545 0x2234  fdPHost - ok
13:19:05.0583 0x2234  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
13:19:05.0649 0x2234  FDResPub - ok
13:19:05.0710 0x2234  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
13:19:05.0757 0x2234  FileInfo - ok
13:19:05.0789 0x2234  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
13:19:05.0852 0x2234  Filetrace - ok
13:19:06.0838 0x2234  [ 31AC02203B716CBF8829343C91C8FD75, 6231A842733887C9A0CD513E9AFEF4A35152F4BCC9706EEAB38DC898B10AF9BD ] Fitbit Connect  C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
13:19:06.0870 0x2234  Fitbit Connect - ok
13:19:07.0276 0x2234  [ 1F63900E2EB00101B9ACA2B7A870704E, 5AFE1FC852937FECE6B33147BD0110436FE97F33BFDA3F69B1F5EDAD6FFC09C6 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
13:19:07.0316 0x2234  FLEXnet Licensing Service - ok
13:19:07.0955 0x2234  [ 1C3FB052A0BB72EDAED90785C34D6EED, 5300A82D1A79EBA1768F545E73974E3B8CE189AB39CDF905BF42AFA2E497186B ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
13:19:08.0007 0x2234  FLEXnet Licensing Service 64 - ok
13:19:08.0040 0x2234  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
13:19:08.0088 0x2234  flpydisk - ok
13:19:08.0244 0x2234  [ F7866AF72ABBAF84B1FA5AA195378C59, 9D522044FE9C18FB3EC327E675737C01F2A8231DDE900421D3A431596946A7F8 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
13:19:08.0277 0x2234  FltMgr - ok
13:19:08.0401 0x2234  [ FE95AE537B41A7E2F4CFE353064DC4AF, 1C354CAF4A8FB599BD252133C4C3845624C6F9B692E3F4C68573486FE8236EB3 ] FNETTBOH_305    C:\Windows\system32\drivers\FNETTBOH_305.SYS
13:19:08.0409 0x2234  FNETTBOH_305 - ok
13:19:08.0445 0x2234  [ 7C3C4B4C951EC1BDFD4F769D05E2CC68, 7B9DA195D3CF0E7BE6BB532CC5D058BC6658B7538B5C5CF09B1A4ABEF1ECACB4 ] FNETURPX        C:\Windows\system32\drivers\FNETURPX.SYS
13:19:08.0453 0x2234  FNETURPX - ok
13:19:08.0513 0x2234  [ CB5E4B9C319E3C6BB363EB7E58A4A051, C9DCF2C2A6AFE0A0F3E23A265843D0C423C08B2E54702C5B389CF293D9A6BAC5 ] FontCache       C:\Windows\system32\FntCache.dll
13:19:08.0592 0x2234  FontCache - ok
13:19:08.0703 0x2234  [ 8D89E3131C27FDD6932189CB785E1B7A, AC7DA4C5E6D2E41D1A1DE146E46F034FAF0FB11AD801F070F2D5CD08166E9EB7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:19:08.0711 0x2234  FontCache3.0.0.0 - ok
13:19:08.0720 0x2234  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
13:19:08.0730 0x2234  FsDepends - ok
13:19:08.0776 0x2234  [ D3E3F93D67821A2DB2B3D9FAC2DC2064, 727FAA7E15A20ED3A37668D294ABDE6EAF1C87C34EE283C99EE3303E85001404 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
13:19:08.0785 0x2234  Fs_Rec - ok
13:19:08.0880 0x2234  [ 0D015D3584704EC814A58276232F143B, 13290A33FEB4089DBD35259C60FD8BAD648DA2FC9435541FA89C7D9717AA095B ] Futuremark SystemInfo Service C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe
13:19:08.0890 0x2234  Futuremark SystemInfo Service - ok
13:19:08.0931 0x2234  [ 1F44F8559E61A8306ECC67BB1E168B7C, 5B7CDD4EDF128B48817145357BB36E2107F0D081C26004B44BFF7C63AD29D99B ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
13:19:08.0946 0x2234  fvevol - ok
13:19:08.0984 0x2234  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
13:19:08.0994 0x2234  gagp30kx - ok
13:19:09.0046 0x2234  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
13:19:09.0054 0x2234  GEARAspiWDM - ok
13:19:09.0134 0x2234  [ FE5AB4525BC2EC68B9119A6E5D40128B, 088DE37982CEE78A0C1181389A3BFF1E352DF504074B3E8F3EA244DB271BF216 ] gpsvc           C:\Windows\System32\gpsvc.dll
13:19:09.0163 0x2234  gpsvc - ok
13:19:09.0523 0x2234  [ 69A60F8DDF90F462E289525E3BBC7ADC, BC53CCC73D57B315DA96543F818D97F1BF1359966EF1220D91F0DD96684AA866 ] ha20x2k         C:\Windows\system32\drivers\ha20x2k.sys
13:19:09.0614 0x2234  ha20x2k - ok
13:19:09.0652 0x2234  [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi         C:\Windows\system32\DRIVERS\hamachi.sys
13:19:09.0660 0x2234  hamachi - ok
13:19:09.0783 0x2234  [ 5D943A7CDD83F533D41A22E882677C6E, E9CD581EC985B3F765E5E890A02B2D8FE4E5345063969831278CB3876DFF1273 ] Hamachi2Svc     C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
13:19:09.0828 0x2234  Hamachi2Svc - ok
13:19:09.0841 0x2234  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
13:19:09.0860 0x2234  hcw85cir - ok
13:19:09.0911 0x2234  [ 6410F6F415B2A5A9037224C41DA8BF12, 5B8452BC49FDA2215281D27B22FA9BE46B0460F51C4DC70E58B687CFB541F3A5 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:19:09.0942 0x2234  HdAudAddService - ok
13:19:09.0988 0x2234  [ 0A49913402747A0B67DE940FB42CBDBB, 61A45DBDCEB4A2D5C3C28F6BC8C5ADC51D0240A7553DF44BCC4355FC06F72B83 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
13:19:10.0017 0x2234  HDAudBus - ok
13:19:10.0029 0x2234  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
13:19:10.0068 0x2234  HidBatt - ok
13:19:10.0080 0x2234  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
13:19:10.0094 0x2234  HidBth - ok
13:19:10.0113 0x2234  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
13:19:10.0143 0x2234  HidIr - ok
13:19:10.0169 0x2234  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
13:19:10.0194 0x2234  hidserv - ok
13:19:10.0248 0x2234  [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
13:19:10.0259 0x2234  HidUsb - ok
13:19:10.0309 0x2234  [ 29F981739E50305128022CBE10B3659C, 25060937145B0DCA8CD088E78993BFEF1430CDDFF433E606AFC93993CBBF4B3E ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
13:19:10.0322 0x2234  HipShieldK - ok
13:19:10.0357 0x2234  [ EFA58EDE58DD74388FFD04CB32681518, 76D81F9BC1A4D85A779B79DEC23B79F1568AA236CD49247414093CDC1FCC150F ] hkmsvc          C:\Windows\system32\kmsvc.dll
13:19:10.0405 0x2234  hkmsvc - ok
13:19:10.0444 0x2234  [ 046B2673767CA626E2CFB7FDF735E9E8, 9C932DCC5DE9B1919AB38C01D76AD7BBAF491DE6D158662407974748BC0B4C6C ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:19:10.0469 0x2234  HomeGroupListener - ok
13:19:10.0507 0x2234  [ 06A7422224D9865A5613710A089987DF, EF604B4B6918D3FDC8E90ED9004E6E7340E0F399C214C65CCE3A7C8C576FA1C0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:19:10.0522 0x2234  HomeGroupProvider - ok
13:19:10.0670 0x2234  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] HomeNetSvc      C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:19:10.0683 0x2234  HomeNetSvc - ok
13:19:10.0709 0x2234  [ 0886D440058F203EBA0E1825E4355914, BC49C4CEFE324A08C864A4BF4FEA9A70151FAB7CC30BDC28344F3FFD2F500070 ] HpSAMD          C:\Windows\system32\DRIVERS\HpSAMD.sys
13:19:10.0719 0x2234  HpSAMD - ok
13:19:10.0743 0x2234  [ CEE049CAC4EFA7F4E1E4AD014414A5D4, 433AE2D845850F1D7A48275BBD87B3F0E7DD48F2282C727C4B777ECD92CC331D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
13:19:10.0787 0x2234  HTTP - ok
13:19:10.0792 0x2234  [ F17766A19145F111856378DF337A5D79, FC1633FB865A5324EBCBE5F97D297B899FABBDD965D862C2EFC743CD36F47E62 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
13:19:10.0800 0x2234  hwpolicy - ok
13:19:10.0831 0x2234  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
13:19:10.0854 0x2234  i8042prt - ok
13:19:10.0900 0x2234  [ B75E45C564E944A2657167D197AB29DA, 622EA73F4D9CAE17628C18148FB241817A0AE6D80A74B099204ED27C1A750B24 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
13:19:10.0918 0x2234  iaStorV - ok
13:19:10.0957 0x2234  [ 55004F2386405B28471E09C2373ED0E0, 4B706A725EC17650CCFE0D0D944FC187B4C943D8241B847F2B8C65A3A1145885 ] ICCWDT          C:\Windows\system32\DRIVERS\ICCWDT.sys
13:19:10.0966 0x2234  ICCWDT - ok
13:19:11.0021 0x2234  [ 2F2BE70D3E02B6FA877921AB9516D43C, E04255EE4BD95FC1539EB1EB9F702B039F65993D31A4531DA487274543EF5226 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:19:11.0047 0x2234  idsvc - ok
13:19:11.0217 0x2234  [ 8C44E6B688790E2AD3846C97661C54F1, CB487D167EDA3C1E30BD5FB8F98C15EB9E75A6FB793009C2F1BBCAAB4285F772 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
13:19:11.0411 0x2234  igfx - ok
13:19:11.0426 0x2234  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
13:19:11.0434 0x2234  iirsp - ok
13:19:11.0484 0x2234  [ C5B4683680DF085B57BC53E5EF34861F, 9C06517DFCB3ED7BB1166F7EB6CCC8713E6B68283C75420C0EDC182094AA1B8F ] IKEEXT          C:\Windows\System32\ikeext.dll
13:19:11.0530 0x2234  IKEEXT - ok
13:19:11.0543 0x2234  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\DRIVERS\intelide.sys
13:19:11.0552 0x2234  intelide - ok
13:19:11.0587 0x2234  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
13:19:11.0609 0x2234  intelppm - ok
13:19:11.0637 0x2234  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
13:19:11.0677 0x2234  IPBusEnum - ok
13:19:11.0693 0x2234  [ 722DD294DF62483CECAAE6E094B4D695, 41ABB42EF969EA8A84B546908EBBDC2411D964DE101CE6DD3D7ECF109085E0C0 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:19:11.0720 0x2234  IpFilterDriver - ok
13:19:11.0787 0x2234  [ F8E058D17363EC580E4B7232778B6CB5, 02352919F349C57930A0B032FBDC45327FB473D310DE7AC721F4694FDE7D21FB ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
13:19:11.0826 0x2234  iphlpsvc - ok
13:19:11.0834 0x2234  [ E2B4A4494DB7CB9B89B55CA268C337C5, C59BC4AA03D10647641EC7533F78BC7E2EA6FC48B8B2CF1A49B5148EF40A90FB ] IPMIDRV         C:\Windows\system32\DRIVERS\IPMIDrv.sys
13:19:11.0845 0x2234  IPMIDRV - ok
13:19:11.0871 0x2234  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
13:19:11.0899 0x2234  IPNAT - ok
13:19:11.0975 0x2234  [ 835FC2EA0631B734BB06C12B0665F01D, B8A8B0148C6C3AFC40835B44E3D6508CB9EEE8AC430A7904711C8B51C2116A8D ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
13:19:11.0993 0x2234  iPod Service - ok
13:19:12.0020 0x2234  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
13:19:12.0033 0x2234  IRENUM - ok
13:19:12.0042 0x2234  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\DRIVERS\isapnp.sys
13:19:12.0051 0x2234  isapnp - ok
13:19:12.0082 0x2234  [ FA4D2557DE56D45B0A346F93564BE6E1, 2827EC3582FF59FFD55BBD4A4F0DDFFEAD4F2537FA043B3A69904FE920B1619C ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
13:19:12.0095 0x2234  iScsiPrt - ok
13:19:12.0123 0x2234  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
13:19:12.0133 0x2234  kbdclass - ok
13:19:12.0148 0x2234  [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
13:19:12.0170 0x2234  kbdhid - ok
13:19:12.0181 0x2234  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] KeyIso          C:\Windows\system32\lsass.exe
13:19:12.0191 0x2234  KeyIso - ok
13:19:12.0220 0x2234  [ 4F4B5FDE429416877DE7143044582EB5, A28FFEA078DBD91F3CC28088810EEEB727107B3F0F48370B44D87DC8F8C55B99 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
13:19:12.0230 0x2234  KSecDD - ok
13:19:12.0238 0x2234  [ 6F40465A44ECDC1731BEFAFEC5BDD03C, 317334D414D0AF73CB4D9CA11EA80C641E786760B8800F2795D0CB38378DBB80 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
13:19:12.0249 0x2234  KSecPkg - ok
13:19:12.0283 0x2234  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
13:19:12.0322 0x2234  ksthunk - ok
13:19:12.0354 0x2234  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
13:19:12.0402 0x2234  KtmRm - ok
13:19:12.0451 0x2234  [ 81F1D04D4D0E433099365127375FD501, C2A81B5A482C974E8108806486EC28CB2D81400D42639682FE7B7A9BDF14BA9B ] LanmanServer    C:\Windows\System32\srvsvc.dll
13:19:12.0466 0x2234  LanmanServer - ok
13:19:12.0496 0x2234  [ 27026EAC8818E8A6C00A1CAD2F11D29A, A12858CCB3B2419D66C667A46B106DA7A7BA97FFFA9634BFAE95DDF193C430D5 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:19:12.0524 0x2234  LanmanWorkstation - ok
13:19:12.0548 0x2234  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
13:19:12.0583 0x2234  lltdio - ok
13:19:12.0623 0x2234  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
13:19:12.0670 0x2234  lltdsvc - ok
13:19:12.0688 0x2234  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
13:19:12.0713 0x2234  lmhosts - ok
13:19:12.0762 0x2234  [ D5F9C50082FA5F82C35922998B3DAD6E, 4957FB1888EC69E16E6D019F2D984EE810F8532FAB504B30D32518E4D3F01FDB ] LMIGuardianSvc  C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
13:19:12.0775 0x2234  LMIGuardianSvc - ok
13:19:12.0917 0x2234  [ 9AD4BEE2FE76D4CA39AC969B617E94FB, 1DE5FC59CDA5C7D63C9C60B9FC70A09F755196DFA25E8FAC0FBF262C44731CF0 ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
13:19:12.0930 0x2234  LMS - ok
13:19:12.0950 0x2234  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
13:19:12.0961 0x2234  LSI_FC - ok
13:19:12.0993 0x2234  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
13:19:13.0004 0x2234  LSI_SAS - ok
13:19:13.0027 0x2234  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:19:13.0038 0x2234  LSI_SAS2 - ok
13:19:13.0065 0x2234  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:19:13.0092 0x2234  LSI_SCSI - ok
13:19:13.0119 0x2234  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
13:19:13.0154 0x2234  luafv - ok
13:19:13.0245 0x2234  [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64          C:\Windows\system32\DRIVERS\lvrs64.sys
13:19:13.0263 0x2234  LVRS64 - ok
13:19:13.0594 0x2234  [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64         C:\Windows\system32\DRIVERS\lvuvc64.sys
13:19:13.0736 0x2234  LVUVC64 - ok
13:19:13.0861 0x2234  [ F928E5E72BBA15DD0CE9A26E0413D236, D63EFA1408084F524464729C2F3BE16550E07ACE2BF8A00699A8438079AD381B ] McAfee SiteAdvisor Service C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
13:19:13.0871 0x2234  McAfee SiteAdvisor Service - ok
13:19:14.0059 0x2234  [ 96E7AA538AB0EDECCAB3862BA4B66232, 8AF460093B4DC1FD81C4508A57B6A80A7FB2E1818A3405506B8DB5B521615FB6 ] McAPExe         C:\Program Files\McAfee\MSC\McAPExe.exe
13:19:14.0070 0x2234  McAPExe - ok
13:19:14.0256 0x2234  [ 49F5B235EDC9C6AC0ABA44737B190317, 096D8D583ED024F1B3AD30DD5EBA38B1FEE518166E157C0E3890D80687181F60 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe
13:19:14.0279 0x2234  McComponentHostService - ok
13:19:14.0328 0x2234  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McMPFSvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:19:14.0341 0x2234  McMPFSvc - ok
13:19:14.0372 0x2234  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McNaiAnn        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:19:14.0384 0x2234  McNaiAnn - ok
13:19:14.0530 0x2234  [ 63D93A440E7AC015D85B9A3DA0C1BBAF, 849A13E91B041DEC2A47F5BE65ADBA6CAC8AF01675D0D8E13730724B54B4DD15 ] McODS           C:\Program Files\McAfee\VirusScan\mcods.exe
13:19:14.0548 0x2234  McODS - ok
13:19:14.0590 0x2234  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] mcpltsvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:19:14.0603 0x2234  mcpltsvc - ok
13:19:14.0634 0x2234  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McProxy         C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:19:14.0647 0x2234  McProxy - ok
13:19:14.0693 0x2234  [ F4BE81C919FC0A012F5357E3911D4B67, 8FC3D787A1FACE8022D9BF1A4B024E313F8FD7535696D5E868DC2839E3B76E72 ] McPvDrv         C:\Windows\system32\drivers\McPvDrv.sys
13:19:14.0704 0x2234  McPvDrv - ok
13:19:14.0742 0x2234  [ F84C8F1000BC11E3B7B23CBD3BAFF111, BB4C4FFE3F6C9E5C16C06F6F666F177B94E1CF878397BCC0BDAF6EB3341AAED8 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
13:19:14.0764 0x2234  Mcx2Svc - ok
13:19:14.0797 0x2234  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
13:19:14.0806 0x2234  megasas - ok
13:19:14.0847 0x2234  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
13:19:14.0874 0x2234  MegaSR - ok
13:19:14.0911 0x2234  [ E0EF6C1399A9B1AAA0B28590411BED04, 10C193D1ED434A6DC2AD8C450012B9AF1C848A0A0B3B775F13495648FB77E009 ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
13:19:14.0922 0x2234  MEIx64 - ok
13:19:15.0010 0x2234  [ 10947232B5F652B282DD57F845875896, 4881CA76924AB55D93D727E3CDDD25A74F77EA0B62E4071ADBE7C649B3254E43 ] mfeapfk         C:\Windows\system32\drivers\mfeapfk.sys
13:19:15.0029 0x2234  mfeapfk - ok
13:19:15.0130 0x2234  [ A611EDB749D446A5F7D2DE8D5CCBC4AE, A9D2409872A578C83A610B6E91C68C30813205C43D3FDD94D8A1893E80DAD500 ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
13:19:15.0153 0x2234  mfeavfk - ok
13:19:15.0256 0x2234  [ BBC716D161B412F3298C105B9382864F, EB678BE0AC52268CA1AAFDD5D7ED2216DA6FA8C98735AC39983AFAF14F029EE5 ] mfecore         C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
13:19:15.0288 0x2234  mfecore - ok
13:19:15.0398 0x2234  [ 1D57A3BCBFE09980993F2899E95ECF1A, B2C5A72B316D18A94D4B1939E135CF21C72198102B68CE5C5D63B4E1C766635F ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
13:19:15.0629 0x2234  mfefire - ok
13:19:15.0786 0x2234  [ 45457CB3601D054D70DBC372BBE2A8E8, 16F66921DF0059595EC8CEF13D4C21C27146360236877DCC2F1887A9D0F8E996 ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
13:19:15.0832 0x2234  mfefirek - ok
13:19:15.0907 0x2234  [ DD264F5A7EE58C48BD5085563C9E8191, B36781946865851F75A585D6874421D67DA8986415C3E164C92240189E567572 ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
13:19:15.0934 0x2234  mfehidk - ok
13:19:16.0043 0x2234  [ 57EC9D22D989DD67E91A51BE082B1083, 4DF70334ACF3B34403E8C4B73B90298B465C481FD79EFDA756B147642CC7E27C ] mfencbdc        C:\Windows\system32\DRIVERS\mfencbdc.sys
13:19:16.0068 0x2234  mfencbdc - ok
13:19:16.0091 0x2234  [ FCEEE953517CA72E4238954467CD63E8, B83FCF5CD882D9325729A1B347BAF741E51BC10B3ED0A47AF977D47BB68B19B5 ] mfencrk         C:\Windows\system32\DRIVERS\mfencrk.sys
13:19:16.0100 0x2234  mfencrk - ok
13:19:16.0168 0x2234  [ BC0DFA8EBC3DD572834B640DC22847B4, F9391ECB65D8F4FF349240BE1400ED8F7D9094B5A45EF546C8C39FF3ED2F0D6F ] mfevtp          C:\Windows\system32\mfevtps.exe
13:19:16.0179 0x2234  mfevtp - ok
13:19:16.0215 0x2234  [ EAE62CCDFB34E27D2E0CF9943695F50E, 27BA32E1631EDF939D8FEAAA6AB5CEE4844B58FCA5E9F349029330D78CC7CA50 ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
13:19:16.0239 0x2234  mfewfpk - ok
13:19:16.0274 0x2234  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
13:19:16.0301 0x2234  MMCSS - ok
13:19:16.0439 0x2234  [ 8CC001C65C31633171991FA72A551D43, F256EED72C712C2B5C1DB6DE31DA52609EC0E47EB869E7BC0B70B286593A96DB ] MOBKbackup      C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
13:19:16.0449 0x2234  MOBKbackup - ok
13:19:16.0553 0x2234  [ 3800C23D0D90C59AAFCDEFDC82B5C4AF, D949CACB9EF881194B06A961071938F57F3AD57EBB5440B6E7F0B340757641BD ] MOBKFilter      C:\Windows\system32\DRIVERS\MOBK.sys
13:19:16.0572 0x2234  MOBKFilter - ok
13:19:16.0590 0x2234  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
13:19:16.0627 0x2234  Modem - ok
13:19:16.0668 0x2234  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
13:19:16.0680 0x2234  monitor - ok
13:19:16.0730 0x2234  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
13:19:16.0739 0x2234  mouclass - ok
13:19:16.0748 0x2234  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
13:19:16.0777 0x2234  mouhid - ok
13:19:16.0804 0x2234  [ 791AF66C4D0E7C90A3646066386FB571, BF67643099494AEADDDC85E4D97AFF1017806A1DF554F9BE6C864FFECC9EAF42 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
13:19:16.0821 0x2234  mountmgr - ok
13:19:16.0873 0x2234  [ 338037EFA0E8E8699B2667D57B751574, 59E0D39806D0C4EB57913AA013242837FD39AD378726AEE42D250CBA87C1C3BF ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:19:16.0883 0x2234  MozillaMaintenance - ok
13:19:16.0922 0x2234  [ 609D1D87649ECC19796F4D76D4C15CEA, 5369F4C83FBAE9C4CFB9ACD36F07479E3F3FD784D79B82AE8D95B818B9F9CE00 ] mpio            C:\Windows\system32\DRIVERS\mpio.sys
13:19:16.0938 0x2234  mpio - ok
13:19:16.0954 0x2234  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
13:19:16.0981 0x2234  mpsdrv - ok
13:19:17.0046 0x2234  [ AECAB449567D1846DAD63ECE49E893E3, 7A67A16A3E04574B7CAD097632ABA9B361BBEFDD6B36B7B8E3A1996EC529C2DC ] MpsSvc          C:\Windows\system32\mpssvc.dll
13:19:17.0101 0x2234  MpsSvc - ok
13:19:17.0131 0x2234  [ 30524261BB51D96D6FCBAC20C810183C, 19598A9CD0EAAE4ACBF1069E721AB2853452F33FCFB3B5113F023A88A90BF42D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
13:19:17.0147 0x2234  MRxDAV - ok
13:19:17.0182 0x2234  [ 040D62A9D8AD28922632137ACDD984F2, D9457BDA88C2E3AA4E716C0657B77A4A3E212328CDABD5C18279B6440E1C1594 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
13:19:17.0223 0x2234  mrxsmb - ok
13:19:17.0263 0x2234  [ F0067552F8F9B33D7C59403AB808A3CB, 698B63528E1943BB4253BF7578DC128AA824C71BD04FF0521277E68B20656C02 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:19:17.0285 0x2234  mrxsmb10 - ok
13:19:17.0319 0x2234  [ 3C142D31DE9F2F193218A53FE2632051, 026B3A932A95D5160B64E470FC414F3D388D429317D5EAEA2D476F715C4CAE75 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:19:17.0341 0x2234  mrxsmb20 - ok
13:19:17.0351 0x2234  [ 5C37497276E3B3A5488B23A326A754B7, 9982FCDAFB963868EB93A4DEF811A3167488EB5246BAC3F4AE960506FDF63967 ] msahci          C:\Windows\system32\DRIVERS\msahci.sys
13:19:17.0370 0x2234  msahci - ok
13:19:17.0400 0x2234  [ 8D27B597229AED79430FB9DB3BCBFBD0, 3D58E08B47E8AE419D405BF263929DFA6F2F5F0C2D79FD8D6F2CED6452F6F248 ] msdsm           C:\Windows\system32\DRIVERS\msdsm.sys
13:19:17.0429 0x2234  msdsm - ok
13:19:17.0444 0x2234  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
13:19:17.0459 0x2234  MSDTC - ok
13:19:17.0495 0x2234  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
13:19:17.0530 0x2234  Msfs - ok
13:19:17.0561 0x2234  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
13:19:17.0587 0x2234  mshidkmdf - ok
13:19:17.0608 0x2234  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\DRIVERS\msisadrv.sys
13:19:17.0631 0x2234  msisadrv - ok
13:19:17.0672 0x2234  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
13:19:17.0713 0x2234  MSiSCSI - ok
13:19:17.0715 0x2234  msiserver - ok
13:19:17.0778 0x2234  [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] MSK80Service    C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:19:17.0792 0x2234  MSK80Service - ok
13:19:17.0807 0x2234  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
13:19:17.0861 0x2234  MSKSSRV - ok
13:19:17.0888 0x2234  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
13:19:17.0925 0x2234  MSPCLOCK - ok
13:19:17.0943 0x2234  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
13:19:17.0981 0x2234  MSPQM - ok
13:19:18.0002 0x2234  [ 89CB141AA8616D8C6A4610FA26C60964, 76E72F6A0348EDC58A8E6F88C7F024B8B077670400BD5A833811DAFCF9F517CC ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
13:19:18.0018 0x2234  MsRPC - ok
13:19:18.0061 0x2234  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
13:19:18.0069 0x2234  mssmbios - ok
13:19:18.0081 0x2234  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
13:19:18.0128 0x2234  MSTEE - ok
13:19:18.0139 0x2234  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
13:19:18.0175 0x2234  MTConfig - ok
13:19:18.0186 0x2234  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
13:19:18.0196 0x2234  Mup - ok
13:19:18.0285 0x2234  [ 4987E079A4530FA737A128BE54B63B12, 27E51CC7D4D90DC4397575491DE7EFE15808709F097E2828E46AA73C771A47A4 ] napagent        C:\Windows\system32\qagentRT.dll
13:19:18.0318 0x2234  napagent - ok
13:19:18.0388 0x2234  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
13:19:18.0428 0x2234  NativeWifiP - ok
13:19:18.0462 0x2234  [ CAD515DBD07D082BB317D9928CE8962C, 7AFA6D6154AC68F9FCC37B7B3324F7A170AE91035805026445F24F6EB4FB7F2E ] NDIS            C:\Windows\system32\drivers\ndis.sys
13:19:18.0496 0x2234  NDIS - ok
13:19:18.0541 0x2234  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
13:19:18.0586 0x2234  NdisCap - ok
13:19:18.0604 0x2234  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
13:19:18.0640 0x2234  NdisTapi - ok
13:19:18.0655 0x2234  [ F105BA1E22BF1F2EE8F005D4305E4BEC, 723DA09E13D0F50634D9F114590B837D16F7B36AA0DA2AB8F8C2D9991624EA8F ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
13:19:18.0681 0x2234  Ndisuio - ok
13:19:18.0704 0x2234  [ 557DFAB9CA1FCB036AC77564C010DAD3, 8A21B342AFE5B498FB62EDDC81A3ADA9570677B7A382666090E0ABB1F85FEF29 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
13:19:18.0734 0x2234  NdisWan - ok
13:19:18.0745 0x2234  [ 659B74FB74B86228D6338D643CD3E3CF, 83D741B7A2A204A661A80C226212749F514800060D05E217FA6DC14D62F38F80 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
13:19:18.0782 0x2234  NDProxy - ok
13:19:18.0821 0x2234  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
13:19:18.0846 0x2234  NetBIOS - ok
13:19:18.0870 0x2234  [ 9162B273A44AB9DCE5B44362731D062A, 5A1BA6DBFEBB2618DC9D4CC55FA071C170A5D22FFB24CE62DD5B3210D8B45F39 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
13:19:18.0901 0x2234  NetBT - ok
13:19:18.0947 0x2234  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] Netlogon        C:\Windows\system32\lsass.exe
13:19:18.0957 0x2234  Netlogon - ok
13:19:19.0014 0x2234  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
13:19:19.0050 0x2234  Netman - ok
13:19:19.0156 0x2234  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetMsmqActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:19:19.0177 0x2234  NetMsmqActivator - ok
13:19:19.0181 0x2234  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetPipeActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:19:19.0193 0x2234  NetPipeActivator - ok
13:19:19.0239 0x2234  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
13:19:19.0273 0x2234  netprofm - ok
13:19:19.0281 0x2234  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetTcpActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:19:19.0292 0x2234  NetTcpActivator - ok
13:19:19.0312 0x2234  [ 9A7D3A1AA5C830744FF6C44BB55A347A, 42D3281893DB4C0DDA6A7BDA92D3CCE23968D0E3CF880777B8DBBFD955629B08 ] NetTcpPortSharing c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:19:19.0324 0x2234  NetTcpPortSharing - ok
13:19:19.0394 0x2234  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
13:19:19.0404 0x2234  nfrd960 - ok
13:19:19.0433 0x2234  [ D9A0CE66046D6EFA0C61BAA885CBA0A8, 06C3331C7F3EE0E0B95E8302CB80315E965587C4D6231785B8ACF3FAE4731FAF ] NlaSvc          C:\Windows\System32\nlasvc.dll
13:19:19.0464 0x2234  NlaSvc - ok
13:19:19.0478 0x2234  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
13:19:19.0504 0x2234  Npfs - ok
13:19:19.0587 0x2234  npggsvc - ok
13:19:19.0654 0x2234  NPPTNT2 - ok
13:19:19.0697 0x2234  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
13:19:19.0727 0x2234  nsi - ok
13:19:19.0750 0x2234  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
13:19:19.0802 0x2234  nsiproxy - ok
13:19:19.0974 0x2234  [ 9A6089B056EA1B83B36424FC9D0A300E, EA60282C5A32B497921B568C1FE735F5BDB9D954DDC4E609F7F3CAE5ED823CEC ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
13:19:20.0018 0x2234  Ntfs - ok
13:19:20.0050 0x2234  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
13:19:20.0089 0x2234  Null - ok
13:19:20.0189 0x2234  [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
13:19:20.0211 0x2234  NVHDA - ok
13:19:21.0885 0x2234  [ 0AC797F70F2F3E5B69A34FF2F63496F3, 80A811F8234BA00779BA76AAF41E830FB6CED03667E6E8F430C14DEBF2E45DD9 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:19:22.0180 0x2234  nvlddmkm - ok
13:19:22.0433 0x2234  [ 048C6FACA905A7DF0A86D3CC31D7E6AE, 7222B301DBBDFF15B038E13FEA076759D8AC392F5145ECD60A640BDA6CFABE8C ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
13:19:22.0470 0x2234  NvNetworkService - ok
13:19:22.0504 0x2234  [ A4D9C9A608A97F59307C2F2600EDC6A4, D786F4CA2D10BAC31CE14A338C442F7027D4BB2E955AB99BC44C2F241D383BBE ] nvraid          C:\Windows\system32\drivers\nvraid.sys
13:19:22.0515 0x2234  nvraid - ok
13:19:22.0551 0x2234  [ 6C1D5F70E7A6A3FD1C90D840EDC048B9, 8D5337742A0F5B04D636C163CE77D4A9B3684CF81170026912A402513B44BA77 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
13:19:22.0563 0x2234  nvstor - ok
13:19:22.0749 0x2234  [ A88135181D776F8C18550A589A9CAF2D, 47CA5246A55198BA5DEDD34C93A3C5E2DF0EED29ADA3F27AB963857116B6048E ] NvStreamKms     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
13:19:22.0768 0x2234  NvStreamKms - ok
13:19:22.0775 0x2234  NvStreamSvc - ok
13:19:22.0845 0x2234  [ C135A25E8CF21EB631AB041ABB1F73EA, D0A3DC0411E888D0934B7579EEB980FA7824E3F22F70819A33411D8B8BC9EE42 ] nvsvc           C:\Windows\system32\nvvsvc.exe
13:19:22.0869 0x2234  nvsvc - ok
13:19:22.0959 0x2234  [ 75034A4D7C02327D150B617571D4196A, 8E7DAFEC4307E883D52BD0B5F0732E26E019C953770B52ACBBAD3074A66393CB ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
13:19:22.0975 0x2234  nvvad_WaveExtensible - ok
13:19:23.0004 0x2234  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\DRIVERS\nv_agp.sys
13:19:23.0015 0x2234  nv_agp - ok
13:19:23.0029 0x2234  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
13:19:23.0048 0x2234  ohci1394 - ok
13:19:23.0085 0x2234  [ 47ED757ABB7885FA671D20C162EF4E77, 890BB04C42699A9F035CF37D719B2D1492E29884409591A1D62F693857EF8A93 ] ossrv           C:\Windows\system32\drivers\ctoss2k.sys
13:19:23.0098 0x2234  ossrv - ok
13:19:23.0188 0x2234  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
13:19:23.0206 0x2234  p2pimsvc - ok
13:19:23.0247 0x2234  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
13:19:23.0271 0x2234  p2psvc - ok
13:19:23.0303 0x2234  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
13:19:23.0357 0x2234  Parport - ok
13:19:23.0396 0x2234  [ 90061B1ACFE8CCAA5345750FFE08D8B8, 76309683FFDF380AF9C6E1D9A52E46B011A0BF1026D747181D01F3312B7541C7 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
13:19:23.0417 0x2234  partmgr - ok
13:19:23.0459 0x2234  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
13:19:23.0491 0x2234  PcaSvc - ok
13:19:23.0554 0x2234  [ F36F6504009F2FB0DFD1B17A116AD74B, 33A4C217F7DC5E5B7E1B6CF335327C8FE6CC5D6D048D420252965574CAD83918 ] pci             C:\Windows\system32\DRIVERS\pci.sys
13:19:23.0566 0x2234  pci - ok
13:19:23.0583 0x2234  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\DRIVERS\pciide.sys
13:19:23.0599 0x2234  pciide - ok
13:19:23.0650 0x2234  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
13:19:23.0668 0x2234  pcmcia - ok
13:19:23.0683 0x2234  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
13:19:23.0693 0x2234  pcw - ok
13:19:23.0714 0x2234  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
13:19:23.0754 0x2234  PEAUTH - ok
13:19:23.0848 0x2234  [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
13:19:23.0910 0x2234  PeerDistSvc - ok
13:19:24.0085 0x2234  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
13:19:24.0111 0x2234  PerfHost - ok
13:19:24.0249 0x2234  [ 557E9A86F65F0DE18C9B6751DFE9D3F1, 630EE5A80335929517A22D130C75CBCE882B92978372A6F36C30B9D353C7BB07 ] pla             C:\Windows\system32\pla.dll
13:19:24.0311 0x2234  pla - ok
13:19:24.0422 0x2234  [ 98B1721B8718164293B9701B98C52D77, 27F5F00D4AA394D4D8D0A0062EDC3F944B603E07CAAEDC5CC959BA1E8C208C2A ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
13:19:24.0448 0x2234  PlugPlay - ok
13:19:24.0477 0x2234  PnkBstrA - ok
13:19:24.0517 0x2234  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
13:19:24.0556 0x2234  PNRPAutoReg - ok
13:19:24.0605 0x2234  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
13:19:24.0622 0x2234  PNRPsvc - ok
13:19:24.0698 0x2234  [ 166EB40D1F5B47E615DE3D0FFFE5F243, E32BCCA0D25CD631C221986EBE9F6C54BF2F12DE1672D69CCC4E22AD07D0525A ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
13:19:24.0758 0x2234  PolicyAgent - ok
13:19:24.0827 0x2234  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
13:19:24.0856 0x2234  Power - ok
13:19:24.0934 0x2234  [ 27CC19E81BA5E3403C48302127BDA717, C580FC552DDF9C163FC325B38B05C06FFD696495E4C01514BCD6346CFE4F0B40 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
13:19:24.0978 0x2234  PptpMiniport - ok
13:19:25.0017 0x2234  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
13:19:25.0045 0x2234  Processor - ok
13:19:25.0103 0x2234  [ 97293447431311C06703368AD0F6C4BE, 302A3CA8F6961717D95469B20A8A71954D4ECFCDF4638238D3D44AAE5A8D9B8B ] ProfSvc         C:\Windows\system32\profsvc.dll
13:19:25.0143 0x2234  ProfSvc - ok
13:19:25.0155 0x2234  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:19:25.0165 0x2234  ProtectedStorage - ok
13:19:25.0248 0x2234  [ EE992183BD8EAEFD9973F352E587A299, 6B28930FAA0A54FAADDAF2231553D7F5D45C7227454C6D49A86DFC9EF6BC9043 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
13:19:25.0288 0x2234  Psched - ok
13:19:25.0322 0x2234  [ 87B04878A6D59D6C79251DC960C674C1, 3EB8DB0624E646F0A65D0381408D35CF9FDC5ABFC30DF6431F4070A8EB68447C ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
13:19:25.0331 0x2234  PxHlpa64 - ok
13:19:25.0508 0x2234  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
13:19:25.0553 0x2234  ql2300 - ok
13:19:25.0593 0x2234  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
13:19:25.0604 0x2234  ql40xx - ok
13:19:25.0632 0x2234  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
13:19:25.0651 0x2234  QWAVE - ok
13:19:25.0665 0x2234  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
13:19:25.0697 0x2234  QWAVEdrv - ok
13:19:25.0717 0x2234  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
13:19:25.0750 0x2234  RasAcd - ok
13:19:25.0800 0x2234  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
13:19:25.0839 0x2234  RasAgileVpn - ok
13:19:25.0853 0x2234  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
13:19:25.0891 0x2234  RasAuto - ok
13:19:25.0911 0x2234  [ 87A6E852A22991580D6D39ADC4790463, 0F757C6E5B57DFC239CE1BEC88EF16C07E7F1A40D629A9A6DF3CB6B88FB9E642 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
13:19:25.0950 0x2234  Rasl2tp - ok
13:19:26.0034 0x2234  [ 47394ED3D16D053F5906EFE5AB51CC83, FE5D1249788DB6D85C55769251B0AED738D3BBA04DF57124E03397D3C0599286 ] RasMan          C:\Windows\System32\rasmans.dll
13:19:26.0065 0x2234  RasMan - ok
13:19:26.0081 0x2234  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
13:19:26.0118 0x2234  RasPppoe - ok
13:19:26.0157 0x2234  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
13:19:26.0189 0x2234  RasSstp - ok
13:19:26.0268 0x2234  [ 3BAC8142102C15D59A87757C1D41DCE5, C0C2C6887EA5A439E69221196348382ACE3E1942C9C6E0A970E153890F71724C ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
13:19:26.0301 0x2234  rdbss - ok
13:19:26.0324 0x2234  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
13:19:26.0346 0x2234  rdpbus - ok
13:19:26.0406 0x2234  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
13:19:26.0443 0x2234  RDPCDD - ok
13:19:26.0484 0x2234  [ 9706B84DBABFC4B4CA46C5A82B14DFA3, AFDC07C257BCB768861483A1842FFB647523946B16DA2812EFAE4FD3252BA303 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
13:19:26.0507 0x2234  RDPDR - ok
13:19:26.0561 0x2234  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
13:19:26.0586 0x2234  RDPENCDD - ok
13:19:26.0599 0x2234  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
13:19:26.0624 0x2234  RDPREFMP - ok
13:19:26.0696 0x2234  [ 447DE7E3DEA39D422C1504F245B668B1, C54D90D2F9405E011E490D3C2F0F64488B87B969C95E367C076BBFCFD8654909 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
13:19:26.0839 0x2234  RDPWD - ok
13:19:26.0881 0x2234  [ 634B9A2181D98F15941236886164EC8B, 15C55F05FD3CD751F619F18E2ADF91552AE82146501CD031402277F496A5B7D8 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
13:19:26.0901 0x2234  rdyboost - ok
13:19:26.0940 0x2234  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
13:19:26.0967 0x2234  RemoteAccess - ok
13:19:27.0000 0x2234  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
13:19:27.0043 0x2234  RemoteRegistry - ok
13:19:27.0101 0x2234  [ 7B04C9843921AB1F695FB395422C5360, C9B02BE0384357FD242613C2A12029B45322AF9A795CD69F33500CA7530899A7 ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
13:19:27.0146 0x2234  RimUsb - ok
13:19:27.0184 0x2234  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
13:19:27.0228 0x2234  RpcEptMapper - ok
13:19:27.0311 0x2234  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
13:19:27.0329 0x2234  RpcLocator - ok
13:19:27.0369 0x2234  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] RpcSs           C:\Windows\system32\rpcss.dll
13:19:27.0404 0x2234  RpcSs - ok
13:19:27.0459 0x2234  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
13:19:27.0500 0x2234  rspndr - ok
13:19:27.0622 0x2234  [ D787F86566F6EA23053D9C5F401E33B7, 82B1952A57FB800425E12FEFF5B326C7B7815980646F5359673CBC8BBB4C46CF ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
13:19:27.0652 0x2234  RTL8167 - ok
13:19:27.0737 0x2234  [ 2ABDAE282DBC2D2FB11144184517F850, A68C3B0CCB0441C22BD27F69D22ADF2183613B8B3F9317B89279418A02E78384 ] rzudd           C:\Windows\system32\DRIVERS\rzudd.sys
13:19:27.0749 0x2234  rzudd - ok
13:19:27.0802 0x2234  [ 88AF6E02AB19DF7FD07ECDF9C91E9AF6, C890DCCC875F957CAAD4655EBFF384E3C5998040CA2BA360E92C96A647D1C399 ] s3cap           C:\Windows\system32\DRIVERS\vms3cap.sys
13:19:27.0868 0x2234  s3cap - ok
13:19:27.0881 0x2234  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] SamSs           C:\Windows\system32\lsass.exe
13:19:27.0891 0x2234  SamSs - ok
13:19:27.0905 0x2234  [ E3BBB89983DAF5622C1D50CF49F28227, 49370DC142D577D657BF5755AA9B8625C35D3DDAF1F9466B4888507FB8E6FF07 ] sbp2port        C:\Windows\system32\DRIVERS\sbp2port.sys
13:19:27.0924 0x2234  sbp2port - ok
13:19:27.0968 0x2234  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
13:19:28.0036 0x2234  SCardSvr - ok
13:19:28.0101 0x2234  [ D33BFF730B222D00A2F665F8F3E0A788, 371C7E62FD8F1628F6130E0A67A90FBDB34BBCADB3ADA1E41481EFE073ADDC65 ] SCDEmu          C:\Windows\system32\drivers\SCDEmu.sys
13:19:28.0123 0x2234  SCDEmu - ok
13:19:28.0136 0x2234  [ C94DA20C7E3BA1DCA269BC8460D98387, E1A5629728A79233B62BA87B4354BC3A332A853CC36A60E77B34923F4BCA8A61 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
13:19:28.0183 0x2234  scfilter - ok
13:19:28.0308 0x2234  [ 624D0F5FF99428BB90A5B8A4123E918E, 90A43E6F09B56CB86A3E3851F8E5ABB74905AEB70296F4B87BEDBC3027E65E86 ] Schedule        C:\Windows\system32\schedsvc.dll
13:19:28.0419 0x2234  Schedule - ok
13:19:28.0452 0x2234  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] SCPolicySvc     C:\Windows\System32\certprop.dll
13:19:28.0478 0x2234  SCPolicySvc - ok
13:19:28.0508 0x2234  [ 765A27C3279CE11D14CB9E4F5869FCA5, B6C2EFFBA938828FEF7FE992A4C88B3154D053763C38762DCE13252FE9571FA1 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
13:19:28.0548 0x2234  SDRSVC - ok
13:19:28.0572 0x2234  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
13:19:28.0597 0x2234  secdrv - ok
13:19:28.0620 0x2234  [ 463B386EBC70F98DA5DFF85F7E654346, 8E27B18B04AF587719D1DAE75A042DB998E06CAE112BD68626EF046036D2DCDC ] seclogon        C:\Windows\system32\seclogon.dll
13:19:28.0647 0x2234  seclogon - ok
13:19:28.0695 0x2234  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
13:19:28.0722 0x2234  SENS - ok
13:19:28.0725 0x2234  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
13:19:28.0762 0x2234  SensrSvc - ok
13:19:28.0779 0x2234  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
13:19:28.0827 0x2234  Serenum - ok
13:19:28.0866 0x2234  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
13:19:28.0893 0x2234  Serial - ok
13:19:28.0911 0x2234  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
13:19:28.0931 0x2234  sermouse - ok
13:19:28.0950 0x2234  [ C3BC61CE47FF6F4E88AB8A3B429A36AF, 6CA53AD0CB7215BAE3467EC1FD490E3A18504BD6CD4F0FABF9BD37516AB9DFE0 ] SessionEnv      C:\Windows\system32\sessenv.dll
13:19:28.0978 0x2234  SessionEnv - ok
13:19:29.0019 0x2234  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\DRIVERS\sffdisk.sys
13:19:29.0050 0x2234  sffdisk - ok
13:19:29.0083 0x2234  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\DRIVERS\sffp_mmc.sys
13:19:29.0101 0x2234  sffp_mmc - ok
13:19:29.0121 0x2234  [ 178298F767FE638C9FEDCBDEF58BB5E4, 053D12CFEE5C54EA7D06F9C9CAE93544FE258A4825CDE2A14090BC81A96E1CF7 ] sffp_sd         C:\Windows\system32\DRIVERS\sffp_sd.sys
13:19:29.0186 0x2234  sffp_sd - ok
13:19:29.0211 0x2234  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
13:19:29.0226 0x2234  sfloppy - ok
13:19:29.0270 0x2234  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
13:19:29.0327 0x2234  SharedAccess - ok
13:19:29.0363 0x2234  [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF, 1C1D17301A4D37DBF906955CCABD2A3FDA47AFB24CBA978CF851123762249848 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:19:29.0392 0x2234  ShellHWDetection - ok
13:19:29.0419 0x2234  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:19:29.0428 0x2234  SiSRaid2 - ok
13:19:29.0441 0x2234  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
13:19:29.0452 0x2234  SiSRaid4 - ok
13:19:29.0740 0x2234  [ 4CA43B85F22C7739311788B651A779CB, 5F761B3ADBDB093A4198CE5FE3BB444AB3C063483815F45DFB186082DDEB8CBC ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
13:19:29.0799 0x2234  Skype C2C Service - ok
13:19:29.0944 0x2234  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
13:19:29.0963 0x2234  SkypeUpdate - ok
13:19:30.0005 0x2234  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
13:19:30.0042 0x2234  Smb - ok
13:19:30.0112 0x2234  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
13:19:30.0123 0x2234  SNMPTRAP - ok
13:19:30.0153 0x2234  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
13:19:30.0162 0x2234  spldr - ok
13:19:30.0259 0x2234  [ 567977DC43CC13C4C35ED7084C0B84D5, 93EEC3ABA66DA83157F49F056EF1CB3355122204F2BB0F8B618064AF47D59A61 ] Spooler         C:\Windows\System32\spoolsv.exe
13:19:30.0302 0x2234  Spooler - ok
13:19:30.0715 0x2234  [ 913D843498553A1BC8F8DBAD6358E49F, F8B931FDABF669D642CBDCD2FF31E07F8A5E2D5F72E11D4A8FF219CCFB5825E9 ] sppsvc          C:\Windows\system32\sppsvc.exe
13:19:30.0821 0x2234  sppsvc - ok
13:19:30.0861 0x2234  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
13:19:30.0897 0x2234  sppuinotify - ok
13:19:30.0966 0x2234  [ 2408C0366D96BCDF63E8F1C78E4A29C5, 66F646890695B5D80536E88B1566C8765D89CFE25954ED650F6D773EFF045016 ] srv             C:\Windows\system32\DRIVERS\srv.sys
13:19:31.0015 0x2234  srv - ok
13:19:31.0065 0x2234  [ 76548F7B818881B47D8D1AE1BE9C11F8, 8F1356B07A6A55746FC71B6DB0322128941AE890850196F2B19BC01E6FC9B41C ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
13:19:31.0116 0x2234  srv2 - ok
13:19:31.0156 0x2234  [ 0AF6E19D39C70844C5CAA8FB0183C36E, 4494EEFDEA7198888D32E74727E5BC0AC628FFA70B1FE7EB59DBEEDC1A95D0DD ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
13:19:31.0185 0x2234  srvnet - ok
13:19:31.0211 0x2234  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
13:19:31.0240 0x2234  SSDPSRV - ok
13:19:31.0255 0x2234  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
13:19:31.0282 0x2234  SstpSvc - ok
13:19:31.0345 0x2234  [ AAF6F247F1DC370C593B4430974EAD9C, 232D0D62EC83A5537ADB28B5DC01074BA812FE6C70C54F70CD7A5EF1BC19D3E1 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
13:19:31.0357 0x2234  ssudmdm - ok
13:19:31.0591 0x2234  [ 2F3B5A3567FFB343D8867C3D34C687F1, D01971412506746B2EA1CBB0ACF9472889ABBC23318C1332BEC9C8256011183E ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
13:19:31.0614 0x2234  Steam Client Service - ok
13:19:31.0857 0x2234  [ 718D79F2E7EC3AFFD3661DA81F93BBEA, BA2A4E58E5EE06392EE6F4C2E738DC807EC5A8B9F6DD4B7935FE27CBC648E390 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
13:19:31.0873 0x2234  Stereo Service - ok
13:19:32.0143 0x2234  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
13:19:32.0166 0x2234  stexstor - ok
13:19:32.0309 0x2234  [ 52D0E33B681BD0F33FDC08812FEE4F7D, BBEBC0773402F6697D2F14F63E5E4FDC2180466E7FDBD306E408535B10160249 ] stisvc          C:\Windows\System32\wiaservc.dll
13:19:32.0442 0x2234  stisvc - ok
13:19:32.0518 0x2234  [ FFD7A6F15B14234B5B0E5D49E7961895, 9553BDB65D021DA621BDFF1C180B9F4C6355FC748BAE854CE114D4B3EFF307B7 ] storflt         C:\Windows\system32\DRIVERS\vmstorfl.sys
13:19:32.0539 0x2234  storflt - ok
13:19:32.0620 0x2234  [ 8FCCBEFC5C440B3C23454656E551B09A, 392A38D0B18B7FD08ACBE3E56ADCB235FA49BDB99F81E0820434D57332FA8FF7 ] storvsc         C:\Windows\system32\DRIVERS\storvsc.sys
13:19:32.0630 0x2234  storvsc - ok
13:19:32.0677 0x2234  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
13:19:32.0698 0x2234  swenum - ok
13:19:32.0831 0x2234  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
13:19:32.0885 0x2234  swprv - ok
13:19:33.0178 0x2234  [ 3C1284516A62078FB68F768DE4F1A7BE, 67ECD462335EF88773E4BAEAB230A68EC92A25F8CD8F115873F669205AE6A1A9 ] SysMain         C:\Windows\system32\sysmain.dll
13:19:33.0229 0x2234  SysMain - ok
13:19:33.0260 0x2234  [ 238935C3CF2854886DC7CBB2A0E2CC66, BBF7A70BF218A544CC1A6FB81F75EAD29D418794162936BE197D6D61FE0DB1C4 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:19:33.0315 0x2234  TabletInputService - ok
13:19:33.0380 0x2234  [ 884264AC597B690C5707C89723BB8E7B, 9BF209A4128019421F7EC4AFF71103C5F411DB6CFB32AAC1633E789AD7A30708 ] TapiSrv         C:\Windows\System32\tapisrv.dll
13:19:33.0421 0x2234  TapiSrv - ok
13:19:33.0439 0x2234  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
13:19:33.0480 0x2234  TBS - ok
13:19:33.0893 0x2234  [ 5CFB7AB8F9524D1A1E14369DE63B83CC, BC22FC5714A6A8F8CF95D3D9656332D7B315FF7CFA50C0DEB7437A30651D10C7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
13:19:33.0946 0x2234  Tcpip - ok
13:19:33.0994 0x2234  [ 5CFB7AB8F9524D1A1E14369DE63B83CC, BC22FC5714A6A8F8CF95D3D9656332D7B315FF7CFA50C0DEB7437A30651D10C7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
13:19:34.0051 0x2234  TCPIP6 - ok
13:19:34.0081 0x2234  [ 76D078AF6F587B162D50210F761EB9ED, 3813171036B4036306CADC29F877ADAE44B241DDF65B3699C352B7CDA9EC68C9 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
13:19:34.0106 0x2234  tcpipreg - ok
13:19:34.0126 0x2234  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
13:19:34.0164 0x2234  TDPIPE - ok
13:19:34.0225 0x2234  [ 7518F7BCFD4B308ABC9192BACAF6C970, CF08E547EF4059DA3F5A2FCBA98939E84092BB6E0E37F9BBCD1E4D9EBB8A58BB ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
13:19:34.0245 0x2234  TDTCP - ok
13:19:34.0275 0x2234  [ 079125C4B17B01FCAEEBCE0BCB290C0F, B2DF1F2317EF5DCF0A89327332E9F2770ED604005B3138C095FF01AA63B91437 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
13:19:34.0332 0x2234  tdx - ok
13:19:35.0689 0x2234  [ 9F3E7CABE86BBDECA009DE291DB6D9E2, C85176BA98382C82178D682C5F91B5590201BF8C7335DF7ABCAB469367701106 ] TeamViewer8     C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
13:19:35.0757 0x2234  TeamViewer8 - ok
13:19:35.0786 0x2234  [ C448651339196C0E869A355171875522, C12441CF21D7D47804952B968689D78E3BA0323A90C4C811B54A6B2E6260BAD4 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
13:19:35.0828 0x2234  TermDD - ok
13:19:36.0178 0x2234  [ 0F05EC2887BFE197AD82A13287D2F404, 78C8A8FE9B1101430CA79875DA34413C35B6D7A5EE1932E454C50731335437A6 ] TermService     C:\Windows\System32\termsrv.dll
13:19:36.0244 0x2234  TermService - ok
13:19:36.0279 0x2234  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
13:19:36.0333 0x2234  Themes - ok
13:19:36.0406 0x2234  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
13:19:36.0432 0x2234  THREADORDER - ok
13:19:36.0463 0x2234  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
13:19:36.0491 0x2234  TrkWks - ok
13:19:36.0697 0x2234  [ 840F7FB849F5887A49BA18C13B2DA920, A59C40A090E03C0136A865FC54508BA938E7B467C8198BC009FE263E6C275781 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:19:36.0752 0x2234  TrustedInstaller - ok
13:19:36.0785 0x2234  [ 61B96C26131E37B24E93327A0BD1FB95, 7C551B6FD0447258BC3FDED72D8D41A0E8B731562170C264295592D45F85D9FF ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
13:19:36.0844 0x2234  tssecsrv - ok
13:19:37.0014 0x2234  [ 3836171A2CDF3AF8EF10856DB9835A70, 74CD0A21B4E5B47E8D762CC28282CA8D512D424EC591D90099B9F8D034AA2FC2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
13:19:37.0105 0x2234  tunnel - ok
13:19:37.0192 0x2234  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
13:19:37.0240 0x2234  uagp35 - ok
13:19:37.0408 0x2234  [ D47BAEAD86C65D4F4069D7CE0A4EDCEB, DBAEA010F11A5EFD961B1841308EA3F220A9FFB01F364BA9B8F72200DA2BBCD8 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
13:19:37.0492 0x2234  udfs - ok
13:19:37.0558 0x2234  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
13:19:37.0602 0x2234  UI0Detect - ok
13:19:37.0755 0x2234  [ 75894B827B8CA53FC2BB991C91B6728C, F305ED07EFAF821A938BE8CD04D4A872940FD267C4AC6B87A2DF34B42F91996D ] uisp            C:\Windows\system32\Drivers\usbicp.sys
13:19:38.0069 0x2234  uisp - ok
13:19:38.0117 0x2234  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\DRIVERS\uliagpkx.sys
13:19:38.0164 0x2234  uliagpkx - ok
13:19:38.0286 0x2234  [ EAB6C35E62B1B0DB0D1B48B671D3A117, E65034BF757AE4D21F69D7A91A7990E326A29A0CE9F871FD704B5E6CCC821FF0 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
13:19:38.0344 0x2234  umbus - ok
13:19:38.0448 0x2234  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
13:19:38.0525 0x2234  UmPass - ok
13:19:38.0664 0x2234  [ AF0AC98EE5077EB844413EB54287FDE3, 1586326510DE94E2735EFAD94A68D06DB5B7347B68055A9EA8B95E19D91A2E69 ] UmRdpService    C:\Windows\System32\umrdp.dll
13:19:38.0716 0x2234  UmRdpService - ok
13:19:39.0168 0x2234  [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv        C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
13:19:39.0272 0x2234  UMVPFSrv - ok
13:19:40.0861 0x2234  [ CD114CE02A10FA79C229770788106842, A02E0FE0865CE7E14D27F23CE748F5EFBE3F14CA350B0F26623E174227F30643 ] UNS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
13:19:41.0004 0x2234  UNS - ok
13:19:41.0190 0x2234  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
13:19:41.0253 0x2234  upnphost - ok
13:19:41.0384 0x2234  [ 77B01BC848298223A95D4EC23E1785A1, 7D0FBBA746588401400226BB966507EE34EEBB2F4F16607601E3D7383CAD34E2 ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
13:19:41.0460 0x2234  usbaudio - ok
13:19:41.0544 0x2234  [ 7B6A127C93EE590E4D79A5F2A76FE46F, 6F178916EF6D58D1E5B26C0D9D95C276B776505BFC9F716BB1E3ABD3B2B72FCE ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
13:19:41.0590 0x2234  usbccgp - ok
13:19:41.0709 0x2234  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\Windows\system32\DRIVERS\usbcir.sys
13:19:41.0760 0x2234  usbcir - ok
13:19:41.0831 0x2234  [ 92969BA5AC44E229C55A332864F79677, 4ED1E1049E7641D3FFF5D296F2D59060225CE52AB9F7B5CA618898B46A772F98 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
13:19:41.0880 0x2234  usbehci - ok
13:19:42.0102 0x2234  [ E7DF1CFD28CA86B35EF5ADD0735CEEF3, AA751288EC34D61D934D7E8C036B60BBCEDC2A746815623478BB015D87D6A998 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
13:19:42.0172 0x2234  usbhub - ok
13:19:42.0221 0x2234  [ F1BB1E55F1E7A65C5839CCC7B36D773E, 4F517F81FA5688D78D3627EA7D2EA16AD4EB410D7624FE483C7AF26951E579A9 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
13:19:42.0271 0x2234  usbohci - ok
13:19:42.0907 0x2234  [ 813BFE2DE062A28CFE42C4EB8572A7F9, 3844513195DB05A7849AB2BDEE60D7E2540F81C9353010313A2A8879BA07A241 ] USBPNPA         C:\Windows\system32\drivers\CM10864.sys
13:19:43.0034 0x2234  USBPNPA - ok
13:19:43.0104 0x2234  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
13:19:43.0150 0x2234  usbprint - ok
13:19:43.0234 0x2234  [ F39983647BC1F3E6100778DDFE9DCE29, 3BD36594F7C753680DB5A4354B1D6A33FC3011631D2D56DD4B2464AA99C85F7B ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:19:43.0368 0x2234  USBSTOR - ok
13:19:43.0462 0x2234  [ BC3070350A491D84B518D7CCA9ABD36F, 96FFF9F76A93CF4806297AE7C11A5C6D1E7A9980260E6CFC960F8247D5032161 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
13:19:43.0533 0x2234  usbuhci - ok
13:19:43.0618 0x2234  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
13:19:43.0710 0x2234  UxSms - ok
13:19:43.0746 0x2234  [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] VaultSvc        C:\Windows\system32\lsass.exe
13:19:43.0756 0x2234  VaultSvc - ok
13:19:43.0890 0x2234  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\DRIVERS\vdrvroot.sys
13:19:43.0941 0x2234  vdrvroot - ok
13:19:44.0257 0x2234  [ 44D73E0BBC1D3C8981304BA15135C2F2, 2849387BBCFB0189AF5604D2F7A631BD5D6BBB2CA73AF6E870069AF382A74DED ] vds             C:\Windows\System32\vds.exe
13:19:44.0295 0x2234  vds - ok
13:19:44.0427 0x2234  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
13:19:44.0505 0x2234  vga - ok
13:19:44.0555 0x2234  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
13:19:44.0613 0x2234  VgaSave - ok
13:19:44.0739 0x2234  [ C82E748660F62A242B2DFAC1442F22A4, 24AD6CAA918C5AB6F461D88825885C8637C224001AAD7A80BDC240368CDB0B7E ] vhdmp           C:\Windows\system32\DRIVERS\vhdmp.sys
13:19:44.0785 0x2234  vhdmp - ok
13:19:44.0812 0x2234  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\DRIVERS\viaide.sys
13:19:44.0873 0x2234  viaide - ok
13:19:45.0087 0x2234  [ 2FDD9F870BDE9C0353D6E82B4B309C44, 767D4F45898307BB91CE64DBE85B12698795FF8B60CF0B87E019143AA08D2470 ] VirtuWDDM       C:\Windows\system32\DRIVERS\VirtuWDDM.sys
13:19:45.0129 0x2234  VirtuWDDM - ok
13:19:45.0274 0x2234  [ 1501699D7EDA984ABC4155A7DA5738D1, 448DFEFF565F1467F387E4EC9782DDD48B8FFDDF6B1EA46A790C2782C20BD952 ] vmbus           C:\Windows\system32\DRIVERS\vmbus.sys
13:19:45.0320 0x2234  vmbus - ok
13:19:45.0343 0x2234  [ AE10C35761889E65A6F7176937C5592C, 9DC27647B6149C9B2523799F85B18122CCE749264624FE2E5FE843FE00642BBE ] VMBusHID        C:\Windows\system32\DRIVERS\VMBusHID.sys
13:19:45.0439 0x2234  VMBusHID - ok
13:19:45.0532 0x2234  [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3, 91F2B935E1E88C5542650F7D679A75D0562F4A5812179D1EC146D4B6351361E2 ] volmgr          C:\Windows\system32\DRIVERS\volmgr.sys
13:19:45.0577 0x2234  volmgr - ok
13:19:45.0749 0x2234  [ 99B0CBB569CA79ACAED8C91461D765FB, 5BE394A39A941DE2AA1212E66B7068F90D423FA816238657CB9B2DA8BBE69B9B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
13:19:45.0796 0x2234  volmgrx - ok
13:19:45.0974 0x2234  [ 9E425AC5C9A5A973273D169F43B4F5E1, 64C9A9D4A39865E56F01B4FDE1B56034C4B2A2AEF2ABE15EC1C37911C59595B0 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
13:19:46.0008 0x2234  volsnap - ok
13:19:46.0152 0x2234  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
13:19:46.0185 0x2234  vsmraid - ok
13:19:46.0684 0x2234  [ 787898BF9FB6D7BD87A36E2D95C899BA, A6C0C7402B1A198E7B3D6D7D283FCB5815AC429DA68FC9B54C67707F3233CCB5 ] VSS             C:\Windows\system32\vssvc.exe
13:19:46.0812 0x2234  VSS - ok
13:19:46.0837 0x2234  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
13:19:47.0037 0x2234  vwifibus - ok
13:19:47.0170 0x2234  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
13:19:47.0312 0x2234  vwififlt - ok
13:19:47.0507 0x2234  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
13:19:47.0575 0x2234  W32Time - ok
13:19:47.0679 0x2234  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
13:19:47.0700 0x2234  WacomPen - ok
13:19:47.0869 0x2234  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
13:19:47.0933 0x2234  WANARP - ok
13:19:48.0050 0x2234  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
13:19:48.0078 0x2234  Wanarpv6 - ok
13:19:48.0703 0x2234  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
13:19:48.0762 0x2234  WatAdminSvc - ok
13:19:49.0420 0x2234  [ 5AB1BB85BD8B5089CC5D64200DEDAE68, 28777D4F3CD07C8E3465B6DA0FCA994E0B93071A3A0D4D1D64C1DF633DD1C64F ] wbengine        C:\Windows\system32\wbengine.exe
13:19:49.0505 0x2234  wbengine - ok
13:19:49.0647 0x2234  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
13:19:49.0704 0x2234  WbioSrvc - ok
13:19:49.0869 0x2234  [ DD1BAE8EBFC653824D29CCF8C9054D68, 81D6640222FE276D721168745F6BB905D4E756909A9B2C706AF25465D748772D ] wcncsvc         C:\Windows\System32\wcncsvc.dll
13:19:49.0941 0x2234  wcncsvc - ok
13:19:49.0989 0x2234  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:19:50.0063 0x2234  WcsPlugInService - ok
13:19:50.0138 0x2234  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
13:19:50.0186 0x2234  Wd - ok
13:19:50.0259 0x2234  [ A3D04EBF5227886029B4532F20D026F7, D90F7B9C176008675DA0B5FD7E4973CBC2A04172CEDF8FB7D3B3B4F27B5440D7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
13:19:50.0386 0x2234  WDC_SAM - ok
13:19:50.0757 0x2234  [ 442783E2CB0DA19873B7A63833FF4CB4, 09254970265476214F3187CC22A4F9C7C2769D419600E83FBE302C3A103E527F ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
13:19:50.0806 0x2234  Wdf01000 - ok
13:19:50.0866 0x2234  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
13:19:50.0917 0x2234  WdiServiceHost - ok
13:19:50.0925 0x2234  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
13:19:50.0940 0x2234  WdiSystemHost - ok
13:19:51.0047 0x2234  [ 733006127F235BE7C35354EBEE7B9A7B, 2C7E7030D586C36261F33F29883337695493D48CEA415D6DBA7C5635845A5B32 ] WebClient       C:\Windows\System32\webclnt.dll
13:19:51.0116 0x2234  WebClient - ok
13:19:51.0263 0x2234  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
13:19:51.0326 0x2234  Wecsvc - ok
13:19:51.0355 0x2234  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
13:19:51.0422 0x2234  wercplsupport - ok
13:19:51.0500 0x2234  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
13:19:51.0527 0x2234  WerSvc - ok
13:19:51.0650 0x2234  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
13:19:51.0736 0x2234  WfpLwf - ok
13:19:51.0777 0x2234  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
13:19:51.0818 0x2234  WIMMount - ok
13:19:51.0842 0x2234  WinDefend - ok
13:19:51.0890 0x2234  WinHttpAutoProxySvc - ok
13:19:52.0300 0x2234  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
13:19:52.0385 0x2234  Winmgmt - ok
13:19:53.0562 0x2234  WinRing0_1_2_0 - ok
13:19:54.0476 0x2234  [ 41FBB751936B387F9179E7F03A74FE29, 7A73D887BEC19DFC485ED42B4E6ABEBF824555139B81EA30731A00773E707464 ] WinRM           C:\Windows\system32\WsmSvc.dll
13:19:54.0576 0x2234  WinRM - ok
13:19:54.0744 0x2234  [ 817EAFF5D38674EDD7713B9DFB8E9791, F6E0BFC503BA7395F92989C11B454D1F1E58E29302BA203801449A2C5236E84D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
13:19:54.0821 0x2234  WinUsb - ok
13:19:55.0200 0x2234  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
13:19:55.0243 0x2234  Wlansvc - ok
13:19:56.0615 0x2234  [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:19:56.0662 0x2234  wlidsvc - ok
13:19:56.0732 0x2234  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
13:19:56.0792 0x2234  WmiAcpi - ok
13:19:56.0924 0x2234  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
13:19:56.0974 0x2234  wmiApSrv - ok
13:19:57.0037 0x2234  WMPNetworkSvc - ok
13:19:57.0320 0x2234  [ D0881646C9EBF39023DEE4A16F1F9285, DB69502E0202C9265901EB4B1AB754AC2A787CFCBF489A22AE8C466C12108FDD ] WNDA6200        C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe
13:19:57.0364 0x2234  WNDA6200 - ok
13:19:57.0430 0x2234  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
13:19:57.0506 0x2234  WPCSvc - ok
13:19:57.0598 0x2234  [ 2E57DDF2880A7E52E76F41C7E96D327B, D24E19B6091C197D77D71BC044CE2E5A57BE0A2F00D1BB0732E380A398230E63 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
13:19:57.0677 0x2234  WPDBusEnum - ok
13:19:57.0748 0x2234  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
13:19:57.0812 0x2234  ws2ifsl - ok
13:19:57.0844 0x2234  [ 8F9F3969933C02DA96EB0F84576DB43E, C424D7B881A4DCC348433CF02044383013E32DB94CC66D1D20E1866CB3B0F952 ] wscsvc          C:\Windows\system32\wscsvc.dll
13:19:57.0922 0x2234  wscsvc - ok
13:19:57.0924 0x2234  WSearch - ok
13:19:58.0989 0x2234  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\Windows\system32\wuaueng.dll
13:19:59.0078 0x2234  wuauserv - ok
13:19:59.0146 0x2234  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
13:19:59.0230 0x2234  WudfPf - ok
13:19:59.0400 0x2234  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
13:19:59.0450 0x2234  WUDFRd - ok
13:19:59.0504 0x2234  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
13:19:59.0576 0x2234  wudfsvc - ok
13:19:59.0716 0x2234  [ 9A3452B3C2A46C073166C5CF49FAD1AE, D6F95F51D8E37BA4CF403965EC08CCFEEA9EEFDBFC7752432EAEC19925BDA115 ] WwanSvc         C:\Windows\System32\wwansvc.dll
13:19:59.0796 0x2234  WwanSvc - ok
13:20:01.0470 0x2234  X6va009 - ok
13:20:01.0783 0x2234  [ 2EE48CFCE7CA8E0DB4C44C7476C0943B, 2C324592F3F2D50BABA7123B6F9FC922667CC132777E019FF615F2D6F273A45E ] xusb21          C:\Windows\system32\DRIVERS\xusb21.sys
13:20:01.0857 0x2234  xusb21 - ok
13:20:02.0499 0x2234  ================ Scan global ===============================
13:20:02.0595 0x2234  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
13:20:02.0944 0x2234  [ 3FB74FF230B5D240A57AE1C4A3D0459D, 7A4036CAC3BAAEC719E4152F2CAA9D9B69DACBDC7502147D7160D04AE70BC8DF ] C:\Windows\system32\winsrv.dll
13:20:03.0120 0x2234  [ 3FB74FF230B5D240A57AE1C4A3D0459D, 7A4036CAC3BAAEC719E4152F2CAA9D9B69DACBDC7502147D7160D04AE70BC8DF ] C:\Windows\system32\winsrv.dll
13:20:03.0177 0x2234  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
13:20:03.0479 0x2234  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
13:20:03.0485 0x2234  [ Global ] - ok
13:20:03.0485 0x2234  ================ Scan MBR ==================================
13:20:03.0514 0x2234  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:20:14.0788 0x2234  \Device\Harddisk0\DR0 - ok
13:20:15.0195 0x2234  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
13:20:47.0255 0x2234  \Device\Harddisk1\DR1 - ok
13:20:47.0255 0x2234  ================ Scan VBR ==================================
13:20:47.0257 0x2234  [ 16309E7BA09C7937F00F6FB1042F3B9D ] \Device\Harddisk0\DR0\Partition1
13:20:47.0426 0x2234  \Device\Harddisk0\DR0\Partition1 - ok
13:20:47.0444 0x2234  [ 402D540F3F600850695B5B86B51C46A2 ] \Device\Harddisk0\DR0\Partition2
13:20:47.0649 0x2234  \Device\Harddisk0\DR0\Partition2 - ok
13:20:47.0650 0x2234  [ 97793C6EBE782489632BE676E2C9BE30 ] \Device\Harddisk1\DR1\Partition1
13:20:47.0714 0x2234  \Device\Harddisk1\DR1\Partition1 - ok
13:20:47.0714 0x2234  ================ Scan generic autorun ======================
13:20:48.0379 0x2234  [ 657902C8B78B8DE124116CC817B1C4C4, E67ABF655D826A3A972731FF5C24ED23E3F885E564E7BFC0882DEAE8DAD203ED ] C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe
13:20:48.0412 0x2234  XFast LAN - ok
13:20:48.0498 0x2234  [ 28062B17191C9450BF6C6C3EF8C7EB27, 4859C5708DFD119021F7B7FFB38F0B316675E1E4D5D51A10D4265F712CF8CDB6 ] C:\Windows\system32\igfxtray.exe
13:20:48.0529 0x2234  IgfxTray - ok
13:20:48.0721 0x2234  [ 28FC280487F0BAAE5E8119257C4EEF8C, F574BC70B79B77912FC683B3EB0BE6929E7758284ED5B47008E18B0E4A4A09FD ] C:\Windows\system32\hkcmd.exe
13:20:48.0753 0x2234  HotKeysCmds - ok
13:20:48.0952 0x2234  [ F29BEA821C753E4F00177690F70CDC13, 0EDB40F4A4C23553C0288E6E3AD65E7B523F6764C87C6C36C3ECB0C1940C5176 ] C:\Windows\system32\igfxpers.exe
13:20:48.0967 0x2234  Persistence - ok
13:20:49.0030 0x2234  [ 51138BEEA3E2C21EC44D0932C71762A8, 5AD3C37E6F2B9DB3EE8B5AEEDC474645DE90C66E3D95F8620C48102F1EBA4124 ] C:\Windows\syswow64\RunDll32.exe
13:20:49.0077 0x2234  Cm108Sound - ok
13:20:49.0945 0x2234  [ 44FE94FCDF97E574B6986C5A81758628, D950CF92623CA2AD053F7DCC44B483176D02E721C716255957DA90A083D0F1B9 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
13:20:49.0990 0x2234  NvBackend - ok
13:20:50.0035 0x2234  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
13:20:50.0081 0x2234  ShadowPlay - ok
13:20:51.0697 0x2234  [ 73CF56A3642DFBEBE4167772B6F422A6, F4F0BC4A745931E83C1B2D4D5E906A6899F6C062CB1001465D844003D7ACC6A2 ] C:\Program Files (x86)\XFastUsb\XFastUsb.exe
13:20:51.0797 0x2234  XFastUsb - detected UnsignedFile.Multi.Generic ( 1 )
13:21:01.0798 0x2234  XFastUsb ( UnsignedFile.Multi.Generic ) - warning
13:21:01.0798 0x2234  Force sending object to P2P due to detect: C:\Program Files (x86)\XFastUsb\XFastUsb.exe
13:21:21.0811 0x2234  Object send P2P result: false
13:21:41.0904 0x2234  [ A2418D3C557C0A0C634DA713A8AC3789, 4D8212B15081A31134167B9A328EEE778797ADDEBD23C8B0160FA43BCA1349DE ] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
13:21:41.0914 0x2234  LWS - ok
13:21:42.0004 0x2234  [ 13E83F57B7A9849348D968C0E73F3BEA, 84D8D5F6AC4033DEF4374F0DBE16F4485934C10BDBC8F6BA3A299244840610DD ] C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe
13:21:42.0026 0x2234  Razer Mamba Elite Driver - ok
13:21:42.0080 0x2234  [ 04679E0DC30077EC1164BE82F2A2ADC9, E0193F0AE484DED0DD7F81407F0D98AC071F34358B9EA554DE3ADFC3BA1CBD60 ] C:\Program Files\McAfee.com\Agent\mcagent.exe
13:21:42.0099 0x2234  mcui_exe - ok
13:21:42.0205 0x2234  [ 1B22422DC7EAA39E86820387C5AA1CB4, 365F4E690EDCF1FB86D88858456997E8433D6FDBEC384853D866EEA91F3ACE77 ] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
13:21:42.0222 0x2234  DivXMediaServer - detected UnsignedFile.Multi.Generic ( 1 )
13:21:52.0223 0x2234  DivXMediaServer ( UnsignedFile.Multi.Generic ) - warning
13:22:12.0789 0x2234  [ 81800928E0F713DF31F3393CC26F4013, 0ABCC70297C83C01BCCAF03083BE67EB7A50A28557B2F9578EDB73B382F54182 ] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
13:22:12.0817 0x2234  DivXUpdate - ok
13:22:13.0045 0x2234  [ 04679E0DC30077EC1164BE82F2A2ADC9, E0193F0AE484DED0DD7F81407F0D98AC071F34358B9EA554DE3ADFC3BA1CBD60 ] C:\Program Files\McAfee.com\Agent\mcagent.exe
13:22:13.0062 0x2234  mcpltui_exe - ok
13:22:13.0743 0x2234  [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
13:22:13.0780 0x2234  Adobe ARM - ok
13:22:14.0088 0x2234  [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
13:22:14.0117 0x2234  QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
13:22:24.0119 0x2234  QuickTime Task ( UnsignedFile.Multi.Generic ) - warning
13:22:44.0215 0x2234  [ 0E67B5018A7FEA608D46466EDCAC89C1, BBDEB51B4D531C452FF033D7DEC7456F5210257FD96823367D4E038205E13E9F ] C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe
13:22:44.0224 0x2234  VolPanel - detected UnsignedFile.Multi.Generic ( 1 )
13:22:54.0224 0x2234  VolPanel ( UnsignedFile.Multi.Generic ) - warning
13:22:54.0224 0x2234  Force sending object to P2P due to detect: C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe
13:23:14.0226 0x2234  Object send P2P result: false
13:23:34.0228 0x2234  CTxfiHlp - ok
13:23:34.0355 0x2234  [ 2F0DEB0C6413D9DEABFD95A950A422CD, 76DA8246127028BDDCC551FC55A2D21914EEFBCF93D26E314F59FDB0192519B5 ] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
13:23:34.0490 0x2234  LogMeIn Hamachi Ui - ok
13:23:34.0599 0x2234  [ 15F3F063FAABB583C0A383DC0D4AAACC, FC0044F32E7805E382AED9670C59D1FC3238B43F9797839981B010E794BC7D24 ] C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
13:23:34.0662 0x2234  Fitbit Connect - ok
13:23:34.0728 0x2234  [ D2E3E6D94A9E1CFA1561D9C748136FD0, C8CD851F1872086D18A329B47C7DEFAD2CE2E3A8F4321411247D06D07B2DB1D3 ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
13:23:34.0736 0x2234  iTunesHelper - ok
13:23:34.0943 0x2234  [ 61E3B5BEE1C10954F53DC07282F2A61C, 9B092FE63CAECDAD165B702D45B79D5D06DC879C11FEFFCE62B431712C50A1F2 ] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
13:23:35.0052 0x2234  Logitech Vid - ok
13:23:35.0141 0x2234  [ 15F3F063FAABB583C0A383DC0D4AAACC, FC0044F32E7805E382AED9670C59D1FC3238B43F9797839981B010E794BC7D24 ] C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
13:23:35.0204 0x2234  Fitbit Connect - ok
13:23:35.0267 0x2234  [ A91F22603C71D37310B828969C6FCD66, 675B0AB51ACF36E4B8E7502E2F756780F7862038005FF61B657A8FDF3EA0E3E6 ] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_13_0_0_214_ActiveX.exe
13:23:35.0293 0x2234  FlashPlayerUpdate - ok
13:23:35.0377 0x2234  [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:23:35.0433 0x2234  Sidebar - ok
13:23:35.0595 0x2234  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] C:\Users\Jonathan\AppData\Local\Google\Update\GoogleUpdate.exe
13:23:35.0605 0x2234  Google Update - ok
13:23:35.0637 0x2234  Skype - ok
13:23:35.0718 0x2234  [ 1C10324F2D829B2820B8E626F5CA9445, 37BE9A93E1F2D46557567EED9F3BE6B4ED3C74A0C7F75FFAA72685426FAD50BB ] c:\program files (x86)\steam\steam.exe
13:23:35.0754 0x2234  Steam - ok
13:23:35.0768 0x2234  [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
13:23:35.0780 0x2234  QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
13:23:45.0780 0x2234  QuickTime Task ( UnsignedFile.Multi.Generic ) - warning
13:24:05.0780 0x2234  igndlm.exe - ok
13:24:06.0809 0x2234  AV detected via SS2: McAfee Anti-Virus and Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51000 ( enabled : updated )
13:24:06.0812 0x2234  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 12.8.0.0 ), 0x51010 ( enabled )
13:24:26.0814 0x2234  ============================================================
13:24:26.0814 0x2234  Scan finished
13:24:26.0814 0x2234  ============================================================
13:24:26.0818 0x1f10  Detected object count: 8
13:24:26.0818 0x1f10  Actual detected object count: 8
13:24:39.0555 0x1f10  Creative ALchemy AL6 Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0555 0x1f10  Creative ALchemy AL6 Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0555 0x1f10  Creative Audio Engine Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0555 0x1f10  Creative Audio Engine Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0556 0x1f10  CTAudSvcService ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0556 0x1f10  CTAudSvcService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0556 0x1f10  XFastUsb ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0556 0x1f10  XFastUsb ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0556 0x1f10  DivXMediaServer ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0556 0x1f10  DivXMediaServer ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0556 0x1f10  QuickTime Task ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0556 0x1f10  QuickTime Task ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0556 0x1f10  VolPanel ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0556 0x1f10  VolPanel ( UnsignedFile.Multi.Generic ) - User select action: Skip 
13:24:39.0556 0x1f10  QuickTime Task ( UnsignedFile.Multi.Generic ) - skipped by user
13:24:39.0557 0x1f10  QuickTime Task ( UnsignedFile.Multi.Generic ) - User select action: Skip 


#10 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 13 June 2014 - 01:44 AM

The bootkit seems to be gone. Are you still experiencing the sympons?


Step 1

Please download the ESET Online Scanner and save it to your Desktop.
  • Disable the realtime-protection of your antivirus and anti-malware programs because they might interfere with the scan.
  • Start esetsmartinstaller_enu.exe with administartor privileges.
  • Select the option Yes, I accept the Terms of Use and click on Start.
  • Make sure that the option Remove found threats is NOT checked, and the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Click on Start. The virus signature database will begin to download. This may take some time.
  • When completed the Online Scan will begin automatically.
    Note: This scan might take a long time! Please be patient.
  • When completed select Uninstall application on close if you so wish, but make sure you copy the logfile first!
  • Now click on Finish
  • A log file is created at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
    Copy and paste the content of this log file in your next reply.
Note: Do not forget to re-enable your antivirus application after running the above scan!



Step 2

Start FRST with administator privileges.
  • Press the Scan button.
  • When finished, FRST will produce a log (FRST.txt) in the same directory the tool was run from.
    Please copy and paste this log in your next reply.


#11 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 13 June 2014 - 09:55 PM

Nope but other things have happened and now I think I know why lol. . .

 

ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7587
# api_version=3.0.2
# EOSSerial=121ee72641366f41bca66a8c28b3ad01
# engine=18708
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2014-06-14 02:53:04
# local_time=2014-06-13 10:53:04 (-0500, Eastern Daylight Time)
# country="United States"
# lang=1033
# osver=6.1.7600 NT 
# compatibility_mode_1='McAfee Anti-Virus and Anti-Spyware'
# compatibility_mode=5125 16777214 100 100 0 164577762 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 0 154257834 0 0
# scanned=1224904
# found=12
# cleaned=0
# scan_time=21082
sh=13A9C46220507B016852CD0C847E7F2DC0D7564B ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18\5680bc52-47085556"
sh=1BDFAC7CB7A8023E660B12665FB6C0E8F0A2EF03 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2\64ab5542-27749d11"
sh=C1D6481F4F0AE606B057BD0E0A364F5A46B52FD8 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\24\3ed59058-1826d6ff"
sh=65E31D330C38156170818E1D18B82159558E55D1 ft=0 fh=0000000000000000 vn="a variant of Java/Exploit.CVE-2012-5076.Z trojan" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44\781423ac-1a131708"
sh=17584CAD441D9531EB0CD0B5C45A1CB315B2CA37 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\7a1f6c32-3c56189a"
sh=AF67C6735483F2FDEE8CD9BD226DEFC61D1BAEA0 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\56\73d00ff8-50300afc"
sh=13A9C46220507B016852CD0C847E7F2DC0D7564B ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57\28e0e379-4b62e0bc"
sh=2D11EFC53D1E29E276137400D7AE894631FC142E ft=0 fh=0000000000000000 vn="a variant of Java/JShrink.A potentially unsafe application" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\59\47363e7b-5f53c9c1"
sh=65E31D330C38156170818E1D18B82159558E55D1 ft=0 fh=0000000000000000 vn="a variant of Java/Exploit.CVE-2012-5076.Z trojan" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\6\67ac83c6-2a9c51f6"
sh=0CAA11349E6F9C1917C4817F7B676CF0FC4C09FA ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\62\432ab6fe-52397dfe"
sh=17584CAD441D9531EB0CD0B5C45A1CB315B2CA37 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\48a88c87-2bb82bd3"
sh=7100C4DFCAD8C7406C10375A5BA935C659C2A79C ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jonathan\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\9\5c323d89-62af8bdd"


#12 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 13 June 2014 - 09:58 PM

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-06-2014 01
Ran by Jonathan (administrator) on BOSTONCREME on 13-06-2014 22:57:22
Running from C:\Users\Jonathan\Desktop
Platform: Windows 7 Ultimate (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
 
The only official download link for FRST:
Download link from any site other than Bleeping Computer is unpermitted or outdated.
 
==================== Processes (Whitelisted) =================
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(cFos Software GmbH) C:\Program Files\ASRock\XFast LAN\spd.exe
(Fitbit, Inc.) C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(cFos Software GmbH) C:\Program Files\ASRock\XFast LAN\cfosspeed.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
(FNet Co., Ltd.) C:\Program Files (x86)\XFastUsb\XFastUsb.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
(Razer USA Ltd) C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
() C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe
(Creative Technology Ltd) C:\Windows\SysWOW64\Ctxfihlp.exe
() C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(http://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Fitbit, Inc.) C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\McAfee\VUL\McVulCtr.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
 
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [1441152 2011-07-04] (cFos Software GmbH)
HKLM\...\Run: [Cm108Sound] => C:\Windows\Syswow64\cm108.dll [8146944 2009-12-08] (C-Media Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [XFastUsb] => C:\Program Files (x86)\XFastUsb\XFastUsb.exe [4838912 2012-01-18] (FNet Co., Ltd.)
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.)
HKLM-x32\...\Run: [Razer Mamba Elite Driver] => C:\Program Files (x86)\Razer\Mamba\RazerMambaSysTray.exe [973720 2011-11-25] (Razer USA Ltd)
HKLM-x32\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-19] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-12] ()
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe [241789 2010-02-18] (Creative Technology Ltd)
HKLM-x32\...\Run: [CTxfiHlp] => CTXFIHLP.EXE
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)
HKLM-x32\...\Run: [Fitbit Connect] => C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3414560 2014-05-19] (Fitbit, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3216461962-2973069247-3417354726-1001\...\Run: [Logitech Vid] => C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [6129496 2011-01-12] (Logitech Inc.)
HKU\S-1-5-21-3216461962-2973069247-3417354726-1001\...\Run: [Fitbit Connect] => C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3414560 2014-05-19] (Fitbit, Inc.)
HKU\S-1-5-21-3216461962-2973069247-3417354726-1001\...\Run: [uTorrent] => C:\Users\Jonathan\AppData\Roaming\uTorrent\uTorrent.exe [1700688 2014-06-13] (BitTorrent Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (McAfee, Inc.)
BootExecute: autocheck autochk * bootdelete
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x80A0E404920ECC01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {07150507-404E-4B05-9495-77AB9EC9F64D} URL = http://search.yahoo.com/search?fr=mcafee&type=A011US0&p={SearchTerms}
SearchScopes: HKCU - {07150507-404E-4B05-9495-77AB9EC9F64D} URL = http://search.yahoo.com/search?fr=mcafee&type=A011US0&p={SearchTerms}
SearchScopes: HKCU - {E83B1559-2284-4288-91E3-E4E37FDB1D84} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=382950&p={searchTerms}
BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: No Name - {074C1DC5-9320-4A9A-947D-C042949C6216} -  No File
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll No File
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll No File
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll No File
Toolbar: HKLM-x32 - No Name - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} -  No File
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} -  No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0C2F489A-4267-4A98-9911-C95B481F9ECB}: [NameServer]192.168.1.1,71.250.0.12
 
FireFox:
========
FF ProfilePath: C:\Users\Jonathan\AppData\Roaming\Mozilla\Firefox\Profiles\spqpnzip.default
FF DefaultSearchEngine: AOL Search
FF SelectedSearchEngine: AOL Search
FF Homepage: hxxp://www.google.com
FF Keyword.URL: user_pref("keyword.URL", "");
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_125.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_125.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.102.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.102.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=2.1.3 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @mcafee.com/MVT - C:\Program Files (x86)\McAfee\Supportability\MVT\npmvtplugin.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @soe.sony.com/installer,version=1.0.3 - C:\Users\Jonathan\AppData\LocalLow\Sony Online Entertainment\npsoe.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @onlive.com/OnLiveGameClientDetector,version=1.0.0 - C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll No File
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Jonathan\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Jonathan\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Jonathan\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Jonathan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Jonathan\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Jonathan\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\Jonathan\AppData\Roaming\Mozilla\Firefox\Profiles\spqpnzip.default\searchplugins\aol-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\McSiteAdvisor.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-09-10]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2013-09-10]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-09-10]
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-07-31]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-07-31]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-07-31]
 
Chrome: 
=======
CHR HomePage: 
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-24]
CHR Extension: (Adblock Plus) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-26]
CHR Extension: (SiteAdvisor) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2012-04-23]
CHR Extension: (Adventure Time - Finn, Jake & BMO (1920x1080)) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gefaonkfddpfhjnglpodoaakacenfjld [2014-02-26]
CHR Extension: (IE Tab) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2014-04-28]
CHR Extension: (Google Wallet) - C:\Users\Jonathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR HKCU\...\Chrome\Extension: [cfgmipjabpfjdgflgbjjpgekdejokfci] - C:\Users\Jonathan\AppData\Local\CRE\cfgmipjabpfjdgflgbjjpgekdejokfci.crx [2013-10-02]
CHR HKLM-x32\...\Chrome\Extension: [cfgmipjabpfjdgflgbjjpgekdejokfci] - C:\Users\Jonathan\AppData\Local\CRE\cfgmipjabpfjdgflgbjjpgekdejokfci.crx [2013-10-02]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-06-12]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
CHR StartMenuInternet: Google Chrome - C:\Users\Jonathan\AppData\Local\Google\Chrome\Application\chrome.exe
 
==================== Services (Whitelisted) =================
 
S2 0066991402635089mcinstcleanup; C:\Windows\TEMP\006699~1.EXE [836168 2014-03-13] (McAfee, Inc.)
R2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [395136 2011-07-04] (cFos Software GmbH)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2014-05-05] (Creative Labs) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2010-03-16] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-12-18] (Creative Technology Ltd) [File not signed]
R2 Fitbit Connect; C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe [1436192 2014-05-19] (Fitbit, Inc.)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [135584 2011-12-09] (Futuremark Corporation)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-04-15] (LogMeIn, Inc.)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [201304 2012-08-31] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-15] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-03-18] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-04-03] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-04-03] (McAfee, Inc.)
R2 MOBKbackup; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [231224 2010-04-13] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4005936 2011-06-06] (INCA Internet Co., Ltd.) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21007192 2014-04-30] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-02-13] ()
R2 WNDA6200; C:\Program Files (x86)\NETGEAR\A6200\WifiService.exe [53976 2013-03-26] ()
 
==================== Drivers (Whitelisted) ====================
 
R3 A6200; C:\Windows\System32\DRIVERS\bcmwlhigh664.sys [2567984 2013-02-28] (Broadcom Corporation)
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [36608 2014-04-14] (Advanced Micro Devices, Inc.)
R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [36448 2011-03-23] (Asmedia Technology)
S1 AsrHidFilter; C:\Windows\System32\DRIVERS\AsrHidFilter.sys [17928 2011-02-17] (ASRock Inc.)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-04-03] (McAfee, Inc.)
S3 copperhd; C:\Windows\System32\drivers\copperhd.sys [14336 2009-11-10] (Razer (Asia-Pacific) Pte Ltd)
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [31808 2012-02-11] (FNet Co., Ltd.)
R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2012-01-18] (FNet Co., Ltd.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [74560 2013-09-09] (McAfee, Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2014-02-25] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [177544 2014-04-03] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311856 2014-04-03] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [522360 2014-04-03] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [784760 2014-04-03] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [441264 2014-03-18] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-03-18] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [346760 2014-04-03] (McAfee, Inc.)
R1 MOBKFilter; C:\Windows\System32\DRIVERS\MOBK.sys [66040 2010-04-13] (Mozy, Inc.)
S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2005-01-01] (INCA Internet Co., Ltd.) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18776 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S3 uisp; C:\Windows\System32\Drivers\usbicp.sys [19200 2005-10-21] (Motorola)
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 dump_wmimmc; \??\c:\program files (x86)\steam\steamapps\common\ava\Binaries\GameGuard\dump_wmimmc.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Steam\steamapps\common\Driver Fusion Premium\DriverFusion.sys [X]
S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2014-06-13 16:51 - 2014-06-13 16:54 - 00000000 ____D () C:\Users\Jonathan\Desktop\X17-59465
2014-06-13 16:30 - 2014-06-13 16:30 - 02347384 _____ (ESET) C:\Users\Jonathan\Desktop\esetsmartinstaller_enu.exe
2014-06-13 16:30 - 2014-06-13 16:30 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-06-13 15:12 - 2014-06-13 15:21 - 3320903680 _____ () C:\Users\Jonathan\Desktop\X17-59465.iso
2014-06-12 14:55 - 2014-06-12 14:55 - 00001545 _____ () C:\Users\Jonathan\Desktop\Software Licenses.txt
2014-06-12 14:54 - 2014-06-12 14:54 - 00002655 _____ () C:\Users\Jonathan\Desktop\Important Computer Info.txt
2014-06-12 14:54 - 2014-06-12 14:54 - 00000270 _____ () C:\Users\Jonathan\Desktop\Stuff to reinstall.txt
2014-06-12 14:14 - 2014-06-12 14:15 - 00397710 _____ () C:\Users\Jonathan\Documents\bookmarks_6_12_14.html
2014-06-12 13:15 - 2014-06-12 13:15 - 00530261 _____ () C:\Users\Jonathan\Desktop\bookmarks_6_12_14.html
2014-06-12 11:14 - 2014-06-12 11:14 - 02081792 _____ (Farbar) C:\Users\Jonathan\Desktop\FRST64.exe
2014-06-12 11:14 - 2014-06-12 11:14 - 00000000 ____D () C:\Users\Jonathan\Desktop\FRST-OlderVersion
2014-06-12 10:27 - 2014-06-12 10:27 - 00001144 _____ () C:\Users\Public\Desktop\WildStar.lnk
2014-06-12 10:20 - 2014-06-12 10:20 - 00001311 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2014-06-12 10:18 - 2014-06-12 10:20 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\NVIDIA
2014-06-12 10:18 - 2014-04-30 14:27 - 01081112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-06-12 10:18 - 2014-04-30 14:26 - 01225920 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-06-12 10:17 - 2014-06-12 10:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-06-12 10:17 - 2014-05-19 19:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-06-12 10:16 - 2014-05-19 21:25 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-06-12 10:16 - 2014-05-19 21:25 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-06-12 10:16 - 2014-05-19 21:25 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-06-12 10:16 - 2014-05-19 21:25 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-06-12 10:16 - 2014-05-19 21:25 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-06-12 10:16 - 2014-05-14 19:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin
2014-06-12 10:15 - 2014-05-19 22:44 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-06-12 10:15 - 2014-05-19 22:44 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-06-12 10:12 - 2014-05-19 22:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-06-12 10:12 - 2014-05-19 22:44 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-06-12 10:12 - 2014-05-19 22:44 - 00026069 _____ () C:\Windows\system32\nvinfo.pb
2014-06-12 10:09 - 2014-03-31 12:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-06-12 10:09 - 2014-03-31 12:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-06-12 10:09 - 2014-03-31 12:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-06-12 10:06 - 2014-06-12 10:08 - 283793864 _____ (NVIDIA Corporation) C:\Users\Jonathan\Downloads\337.88-desktop-win8-win7-winvista-64bit-english-whql.exe
2014-06-12 10:05 - 2014-06-12 10:05 - 30000520 _____ (NVIDIA Corporation) C:\Users\Jonathan\Downloads\GeForce_Experience_v2.1.0.0 (1).exe
2014-06-12 10:02 - 2014-06-12 10:03 - 30000520 _____ (NVIDIA Corporation) C:\Users\Jonathan\Downloads\GeForce_Experience_v2.1.0.0.exe
2014-06-12 09:47 - 2014-06-12 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-12 09:46 - 2014-06-12 09:47 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-12 09:46 - 2014-06-12 09:47 - 00000000 ____D () C:\Program Files\iTunes
2014-06-12 09:46 - 2014-06-12 09:47 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-12 09:46 - 2014-06-12 09:46 - 00000000 ____D () C:\Program Files\iPod
2014-06-12 09:33 - 2014-06-12 09:33 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Jonathan\Desktop\tdsskiller.exe
2014-06-12 08:47 - 2014-06-12 08:47 - 00000000 ____D () C:\TDSSKiller_Quarantine
2014-06-06 20:37 - 2014-06-06 20:38 - 00056507 _____ () C:\Users\Jonathan\Desktop\Addition.txt
2014-06-06 20:31 - 2014-06-13 22:57 - 00030718 _____ () C:\Users\Jonathan\Desktop\FRST.txt
2014-06-01 15:27 - 2014-06-01 15:27 - 00688992 ____R (Swearware) C:\Users\Jonathan\Desktop\dds.com
2014-06-01 15:11 - 2014-06-13 22:57 - 00000000 ____D () C:\FRST
2014-06-01 13:04 - 2014-06-01 15:10 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-06-01 13:04 - 2014-06-01 14:25 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-01 13:04 - 2014-06-01 14:23 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-01 13:04 - 2014-06-01 13:04 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-01 13:03 - 2014-06-01 13:03 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jonathan\Downloads\mbar-1.07.0.1009.exe
2014-06-01 12:53 - 2014-06-01 12:53 - 00038005 _____ () C:\ComboFix.txt
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.008\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.007\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.006\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.005\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.004\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.003\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.002\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.001\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.000\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Public\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\PS\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp
2014-06-01 12:14 - 2011-06-26 02:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-06-01 12:14 - 2010-11-07 13:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-06-01 12:14 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00098816 _____ () C:\Windows\sed.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00080412 _____ () C:\Windows\grep.exe
2014-06-01 12:14 - 2000-08-30 20:00 - 00068096 _____ () C:\Windows\zip.exe
2014-06-01 12:06 - 2014-06-01 12:53 - 00000000 ____D () C:\Qoobox
2014-06-01 12:05 - 2014-06-01 12:50 - 00000000 ____D () C:\Windows\erdnt
2014-06-01 11:52 - 2014-06-01 11:52 - 05201408 _____ () C:\Users\Jonathan\Downloads\RogueKillerX64.exe
2014-06-01 11:52 - 2014-06-01 11:52 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-06-01 11:45 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-06-01 11:44 - 2014-06-01 11:46 - 00000000 ____D () C:\AdwCleaner
2014-06-01 11:44 - 2014-06-01 11:44 - 01327971 _____ () C:\Users\Jonathan\Downloads\adwcleaner_3.211.exe
2014-06-01 11:21 - 2014-06-01 11:22 - 10971424 _____ (SurfRight B.V.) C:\Users\Jonathan\Downloads\HitmanPro_x64.exe
2014-06-01 05:17 - 2014-06-01 05:17 - 00000000 __RSD () C:\Users\PS\Documents\McAfee Vaults
2014-06-01 05:14 - 2014-06-12 10:12 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA Corporation
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\CrashDumps
2014-05-31 16:13 - 2014-05-31 16:13 - 00000128 _____ () C:\Users\Jonathan\Desktop\Slaaanesh Customization 1.txt
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fitbit Connect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\FitbitConnect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\Program Files (x86)\Fitbit Connect
2014-05-21 18:34 - 2009-12-08 06:27 - 08146944 ____N (C-Media Corporation) C:\Windows\SysWOW64\CM108.dll
2014-05-21 18:34 - 2009-04-02 04:59 - 00143360 ____N () C:\Windows\Vmix108.dll
2014-05-21 18:34 - 2008-07-23 07:00 - 00389120 ____N () C:\Windows\system32\CM108.cpl
2014-05-21 18:33 - 2014-05-27 16:48 - 00001282 _____ () C:\Windows\Cm108.ini.imi
2014-05-21 18:33 - 2014-05-21 18:34 - 00000257 _____ () C:\Windows\Cm108.ini.cfl
2014-05-21 18:33 - 2014-05-21 18:33 - 00000133 _____ () C:\Windows\system\Dlap.pfx
2014-05-21 18:33 - 2012-04-26 04:52 - 00006144 ____N () C:\Windows\Thumbs.db
2014-05-21 18:33 - 2009-11-18 05:55 - 01308160 _____ (C-Media Electronics Inc) C:\Windows\system32\Drivers\CM10864.sys
2014-05-21 18:33 - 2009-11-11 03:03 - 00792064 ____N () C:\Windows\system32\Cmeau108.exe
2014-05-21 18:33 - 2008-10-02 05:17 - 00002029 ____N () C:\Windows\Cm108.ini.cfg
2014-05-21 18:33 - 2006-09-12 22:21 - 00200704 ____N (C-Media) C:\Windows\SysWOW64\cmpa108.dll
2014-05-21 18:33 - 2004-04-13 23:28 - 00315392 _____ (C-Media Electronics Inc.) C:\Windows\system\fltr108.dll
2014-05-21 13:35 - 2009-08-19 04:00 - 00359424 ____N () C:\Windows\system32\CmiInstallResAll64.dll
2014-05-21 13:35 - 2006-10-05 17:45 - 00524768 ____R (Microsoft Corporation) C:\Windows\difxapi.dll
2014-05-16 17:24 - 2014-05-16 17:24 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-16 17:22 - 2014-05-16 17:23 - 30818216 _____ (Oracle Corporation) C:\Users\Jonathan\Downloads\jre-7u55-windows-x64.exe
2014-05-16 17:21 - 2014-05-28 22:13 - 00000000 ____D () C:\Users\Jonathan\Desktop\ATLauncher
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
 
==================== One Month Modified Files and Folders =======
 
2014-06-13 22:57 - 2014-06-06 20:31 - 00030718 _____ () C:\Users\Jonathan\Desktop\FRST.txt
2014-06-13 22:57 - 2014-06-01 15:11 - 00000000 ____D () C:\FRST
2014-06-13 22:57 - 2010-05-10 20:01 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\Temp
2014-06-13 22:06 - 2012-04-03 12:38 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-06-13 22:03 - 2013-02-21 18:01 - 00000920 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001UA.job
2014-06-13 21:32 - 2013-07-31 02:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-06-13 21:32 - 2012-07-07 02:09 - 00001763 _____ () C:\Users\Public\Desktop\McAfee Total Protection.lnk
2014-06-13 19:03 - 2013-02-21 18:01 - 00000868 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3216461962-2973069247-3417354726-1001Core.job
2014-06-13 16:54 - 2014-06-13 16:51 - 00000000 ____D () C:\Users\Jonathan\Desktop\X17-59465
2014-06-13 16:30 - 2014-06-13 16:30 - 02347384 _____ (ESET) C:\Users\Jonathan\Desktop\esetsmartinstaller_enu.exe
2014-06-13 16:30 - 2014-06-13 16:30 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-06-13 16:30 - 2011-01-05 05:11 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-06-13 16:22 - 2014-02-08 09:46 - 08089541 _____ () C:\Windows\setupact.log
2014-06-13 15:21 - 2014-06-13 15:12 - 3320903680 _____ () C:\Users\Jonathan\Desktop\X17-59465.iso
2014-06-13 15:11 - 2010-03-16 20:14 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Skype
2014-06-13 09:35 - 2010-05-10 20:36 - 01648055 _____ () C:\Windows\WindowsUpdate.log
2014-06-13 08:15 - 2013-10-18 21:52 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-06-13 08:15 - 2010-03-30 12:59 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\uTorrent
2014-06-13 08:14 - 2013-10-18 21:53 - 00000857 _____ () C:\Users\Jonathan\Desktop\µTorrent.lnk
2014-06-13 08:14 - 2013-10-18 21:53 - 00000837 _____ () C:\Users\Jonathan\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-06-13 08:14 - 2013-09-10 21:06 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-06-13 08:14 - 2012-05-07 23:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-13 08:14 - 2011-05-31 02:17 - 00001123 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-06-13 08:14 - 2010-05-10 14:29 - 00001111 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-06-13 08:13 - 2012-04-03 12:38 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-06-13 08:13 - 2012-04-03 12:38 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-06-13 08:13 - 2011-05-31 13:17 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-13 00:50 - 2012-07-07 02:06 - 00000000 ____D () C:\Program Files\Common Files\McAfee
2014-06-13 00:50 - 2010-03-16 19:23 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-06-12 19:01 - 2009-07-14 00:45 - 00017776 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-12 19:01 - 2009-07-14 00:45 - 00017776 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-12 18:35 - 2012-07-07 02:08 - 00000000 __RSD () C:\Users\Jonathan\Documents\McAfee Vaults
2014-06-12 18:33 - 2014-03-27 18:37 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\LogMeIn Hamachi
2014-06-12 18:33 - 2010-08-03 22:04 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\TSVNCache
2014-06-12 18:32 - 2014-02-08 09:46 - 00327336 _____ () C:\Windows\PFRO.log
2014-06-12 18:32 - 2012-06-12 16:43 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-06-12 18:32 - 2009-07-14 01:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-12 14:55 - 2014-06-12 14:55 - 00001545 _____ () C:\Users\Jonathan\Desktop\Software Licenses.txt
2014-06-12 14:54 - 2014-06-12 14:54 - 00002655 _____ () C:\Users\Jonathan\Desktop\Important Computer Info.txt
2014-06-12 14:54 - 2014-06-12 14:54 - 00000270 _____ () C:\Users\Jonathan\Desktop\Stuff to reinstall.txt
2014-06-12 14:15 - 2014-06-12 14:14 - 00397710 _____ () C:\Users\Jonathan\Documents\bookmarks_6_12_14.html
2014-06-12 13:15 - 2014-06-12 13:15 - 00530261 _____ () C:\Users\Jonathan\Desktop\bookmarks_6_12_14.html
2014-06-12 13:08 - 2014-02-11 22:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2014-06-12 13:08 - 2014-02-11 22:28 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2014-06-12 13:08 - 2011-11-18 00:52 - 00000000 ____D () C:\Users\TEMP.BostonCreme.008
2014-06-12 13:08 - 2010-09-30 21:28 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-06-12 13:08 - 2010-05-10 20:01 - 00000000 ____D () C:\Users\PS
2014-06-12 13:08 - 2009-07-13 23:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
2014-06-12 13:07 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\registration
2014-06-12 12:58 - 2012-01-18 19:28 - 00000000 ____D () C:\ProgramData\FNET
2014-06-12 11:28 - 2011-01-01 17:09 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\TS3Client
2014-06-12 11:14 - 2014-06-12 11:14 - 02081792 _____ (Farbar) C:\Users\Jonathan\Desktop\FRST64.exe
2014-06-12 11:14 - 2014-06-12 11:14 - 00000000 ____D () C:\Users\Jonathan\Desktop\FRST-OlderVersion
2014-06-12 10:27 - 2014-06-12 10:27 - 00001144 _____ () C:\Users\Public\Desktop\WildStar.lnk
2014-06-12 10:27 - 2014-05-09 23:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
2014-06-12 10:27 - 2014-03-23 13:27 - 10332632 _____ (NCSOFT) C:\Users\Jonathan\Downloads\Wildstar.exe
2014-06-12 10:23 - 2013-01-05 20:48 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\McAfee File Lock
2014-06-12 10:20 - 2014-06-12 10:20 - 00001311 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2014-06-12 10:20 - 2014-06-12 10:18 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\NVIDIA
2014-06-12 10:18 - 2014-06-12 10:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-06-12 10:18 - 2014-02-25 21:28 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\NVIDIA Corporation
2014-06-12 10:18 - 2010-09-15 18:18 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-06-12 10:18 - 2010-09-04 16:35 - 00000000 ____D () C:\temp
2014-06-12 10:18 - 2010-05-10 19:58 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-06-12 10:18 - 2010-03-16 20:51 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-06-12 10:16 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\Help
2014-06-12 10:12 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA Corporation
2014-06-12 10:08 - 2014-06-12 10:06 - 283793864 _____ (NVIDIA Corporation) C:\Users\Jonathan\Downloads\337.88-desktop-win8-win7-winvista-64bit-english-whql.exe
2014-06-12 10:05 - 2014-06-12 10:05 - 30000520 _____ (NVIDIA Corporation) C:\Users\Jonathan\Downloads\GeForce_Experience_v2.1.0.0 (1).exe
2014-06-12 10:05 - 2010-03-16 21:56 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Mozilla
2014-06-12 10:04 - 2010-03-16 19:29 - 00002386 _____ () C:\Users\Jonathan\Desktop\Google Chrome.lnk
2014-06-12 10:03 - 2014-06-12 10:02 - 30000520 _____ (NVIDIA Corporation) C:\Users\Jonathan\Downloads\GeForce_Experience_v2.1.0.0.exe
2014-06-12 10:03 - 2009-07-14 01:13 - 00006664 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-12 09:53 - 2012-02-15 01:35 - 00000000 ____D () C:\Users\Jonathan\AppData\Local\CrashDumps
2014-06-12 09:47 - 2014-06-12 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-12 09:47 - 2014-06-12 09:46 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-12 09:47 - 2014-06-12 09:46 - 00000000 ____D () C:\Program Files\iTunes
2014-06-12 09:47 - 2014-06-12 09:46 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-12 09:47 - 2012-09-23 22:02 - 00001743 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-12 09:46 - 2014-06-12 09:46 - 00000000 ____D () C:\Program Files\iPod
2014-06-12 09:46 - 2014-02-28 21:02 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-06-12 09:43 - 2013-08-13 23:58 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-12 09:38 - 2010-05-18 21:58 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-06-12 09:33 - 2014-06-12 09:33 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Jonathan\Desktop\tdsskiller.exe
2014-06-12 09:29 - 2010-05-10 20:01 - 00000000 ____D () C:\Users\Jonathan
2014-06-12 08:47 - 2014-06-12 08:47 - 00000000 ____D () C:\TDSSKiller_Quarantine
2014-06-06 20:38 - 2014-06-06 20:37 - 00056507 _____ () C:\Users\Jonathan\Desktop\Addition.txt
2014-06-01 15:27 - 2014-06-01 15:27 - 00688992 ____R (Swearware) C:\Users\Jonathan\Desktop\dds.com
2014-06-01 15:10 - 2014-06-01 13:04 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-06-01 14:25 - 2014-06-01 13:04 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-01 14:23 - 2014-06-01 13:04 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-01 13:04 - 2014-06-01 13:04 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-01 13:03 - 2014-06-01 13:03 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jonathan\Downloads\mbar-1.07.0.1009.exe
2014-06-01 12:53 - 2014-06-01 12:53 - 00038005 _____ () C:\ComboFix.txt
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.008\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.007\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.006\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.005\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.004\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.003\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.002\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.001\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\TEMP.BostonCreme.000\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Public\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\PS\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:53 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp
2014-06-01 12:53 - 2014-06-01 12:06 - 00000000 ____D () C:\Qoobox
2014-06-01 12:53 - 2011-10-12 12:20 - 00000000 ____D () C:\Users\TEMP.BostonCreme.007
2014-06-01 12:53 - 2011-02-07 15:28 - 00000000 ____D () C:\Users\TEMP.BostonCreme.001
2014-06-01 12:53 - 2009-07-13 23:20 - 00000000 __RHD () C:\Users\Default
2014-06-01 12:50 - 2014-06-01 12:05 - 00000000 ____D () C:\Windows\erdnt
2014-06-01 12:41 - 2009-07-13 22:34 - 00000215 _____ () C:\Windows\system.ini
2014-06-01 12:39 - 2009-07-13 22:34 - 88866816 _____ () C:\Windows\system32\config\software.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 35651584 _____ () C:\Windows\system32\config\system.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 01310720 _____ () C:\Windows\system32\config\default.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 00262144 _____ () C:\Windows\system32\config\security.bak
2014-06-01 12:39 - 2009-07-13 22:34 - 00262144 _____ () C:\Windows\system32\config\sam.bak
2014-06-01 11:52 - 2014-06-01 11:52 - 05201408 _____ () C:\Users\Jonathan\Downloads\RogueKillerX64.exe
2014-06-01 11:52 - 2014-06-01 11:52 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-06-01 11:46 - 2014-06-01 11:44 - 00000000 ____D () C:\AdwCleaner
2014-06-01 11:44 - 2014-06-01 11:44 - 01327971 _____ () C:\Users\Jonathan\Downloads\adwcleaner_3.211.exe
2014-06-01 11:22 - 2014-06-01 11:21 - 10971424 _____ (SurfRight B.V.) C:\Users\Jonathan\Downloads\HitmanPro_x64.exe
2014-06-01 09:11 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\AppCompat
2014-06-01 05:17 - 2014-06-01 05:17 - 00000000 __RSD () C:\Users\PS\Documents\McAfee Vaults
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\NVIDIA
2014-06-01 05:14 - 2014-06-01 05:14 - 00000000 ____D () C:\Users\PS\AppData\Local\CrashDumps
2014-05-31 16:13 - 2014-05-31 16:13 - 00000128 _____ () C:\Users\Jonathan\Desktop\Slaaanesh Customization 1.txt
2014-05-29 10:09 - 2010-03-16 20:10 - 00000000 ____D () C:\Users\Jonathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-05-29 09:48 - 2011-12-20 00:32 - 00007606 _____ () C:\Users\Jonathan\AppData\Local\Resmon.ResmonCfg
2014-05-28 22:13 - 2014-05-16 17:21 - 00000000 ____D () C:\Users\Jonathan\Desktop\ATLauncher
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fitbit Connect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\ProgramData\FitbitConnect
2014-05-28 20:12 - 2014-05-28 20:12 - 00000000 ____D () C:\Program Files (x86)\Fitbit Connect
2014-05-28 15:22 - 2011-12-31 02:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-05-28 15:22 - 2010-03-16 20:14 - 00000000 ____D () C:\ProgramData\Skype
2014-05-27 16:48 - 2014-05-21 18:33 - 00001282 _____ () C:\Windows\Cm108.ini.imi
2014-05-26 22:55 - 2014-02-15 20:45 - 00000000 ____D () C:\Program Files (x86)\NETGEAR
2014-05-26 22:32 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-05-21 18:34 - 2014-05-21 18:33 - 00000257 _____ () C:\Windows\Cm108.ini.cfl
2014-05-21 18:33 - 2014-05-21 18:33 - 00000133 _____ () C:\Windows\system\Dlap.pfx
2014-05-21 18:33 - 2012-04-26 04:26 - 00000715 _____ () C:\Windows\system\Cm108.ini
2014-05-21 18:33 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\system
2014-05-19 22:44 - 2014-06-12 10:15 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-05-19 22:44 - 2014-06-12 10:15 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-05-19 22:44 - 2014-06-12 10:12 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-05-19 22:44 - 2014-06-12 10:12 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-05-19 22:44 - 2014-06-12 10:12 - 00026069 _____ () C:\Windows\system32\nvinfo.pb
2014-05-19 21:25 - 2014-06-12 10:16 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-05-19 21:25 - 2014-06-12 10:16 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-05-19 21:25 - 2014-06-12 10:16 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-05-19 21:25 - 2014-06-12 10:16 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-05-19 21:25 - 2014-06-12 10:16 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-05-19 19:10 - 2014-06-12 10:17 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-05-17 18:13 - 2014-02-17 13:05 - 00090977 _____ () C:\Windows\DirectX.log
2014-05-16 17:24 - 2014-05-16 17:24 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-16 17:24 - 2014-05-16 17:24 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-16 17:23 - 2014-05-16 17:22 - 30818216 _____ (Oracle Corporation) C:\Users\Jonathan\Downloads\jre-7u55-windows-x64.exe
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-05-14 22:23 - 2014-05-14 22:23 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-05-14 22:23 - 2014-03-27 18:37 - 00000805 _____ () C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2014-05-14 19:49 - 2014-06-12 10:16 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin
 
Files to move or delete:
====================
C:\Users\Jonathan\AppData\Roaming\Camdata.ini
C:\Users\Jonathan\AppData\Roaming\CamLayout.ini
C:\Users\Jonathan\AppData\Roaming\CamShapes.ini
C:\ProgramData\hash.dat
C:\Users\Jonathan\jagex_cl_runescape_LIVE.dat
C:\Users\Jonathan\jagex_cl_runescape_LIVE1.dat
C:\Users\Jonathan\jagex_cl_speccollect_LIVE.dat
C:\Users\Jonathan\jagex_runescape_preferences.dat
C:\Users\Jonathan\jagex_runescape_preferences2.dat
C:\Users\Jonathan\jagex__preferences3.dat
C:\Users\Jonathan\random.dat
 
 
Some content of TEMP:
====================
C:\Users\Jonathan\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Jonathan\AppData\Local\Temp\nvStInst.exe
 
 
==================== Bamital & volsnap Check =================
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2014-06-12 22:28
 
==================== End Of Log ============================


#13 b0b_b0bertson

b0b_b0bertson
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:50 PM

Posted 13 June 2014 - 10:31 PM

I actually am going to reformat I think. . . I appreciate all of your help, thank you so much for your time and effort!



#14 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 14 June 2014 - 03:12 AM

Alright, thanks for letting me know.
All the best.

#15 aharonov

aharonov

  • Malware Response Team
  • 2,441 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 14 June 2014 - 03:12 AM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users