Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

i am badly infected


  • Please log in to reply
6 replies to this topic

#1 keekeemama30

keekeemama30

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:21 AM

Posted 05 March 2015 - 11:36 AM

my kids use my computer all the time, all of a sudden it is so slow its almost impossible to use, my desktop is very old but i have windows 7 on it i believe, i tried to download some virus or malware programs from file hippo to see if i could get rid of this infection myself but they wont even download :(



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,220 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:21 AM

Posted 05 March 2015 - 01:05 PM

Hi keekee... Lets see if we can get thru these...

3Al62Pm.pngMiniToolBox
  • Please download MiniToolBox, save it to your desktop and run it.
  • Checkmark the following checkboxes:
    • Flush DNS
    • Report IE Proxy Settings
    • Reset IE Proxy Settings
    • Report FF Proxy Settings
    • Reset FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Installed Programs
    • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
SXvL3ZF.pngTDSSKiller
  • Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is required, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
zcMPezJ.pngAdwCleaner
  • Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool. Vista/Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
lv0mVRW.pngJunkware Removal Tool
  • Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
cvMlKv6.pngESET Online Scanner
  • Hold down Control and click on this link to open ESET Online Scanner in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE: Sometimes if ESET finds no infections it will not create a log.
>>>

51a46ae42d560-malwarebytes_anti_malware.Malwarebytes Anti-Malware
  • Download MalwareBytes Anti-Malware to your desktop.
  • Double-click mbam-setup-2.0.exe to start the installation of Malwarebytes Anti-Malware.
  • Follow the instructions on your screen to complete the installation. You can find the complete installation procedure here.
  • Click the Scan Now button, a threat scan will start automatically.
  • MalwareBytes Anti-Malware will now check for the latest updates. Click Update Now if new updates are available.
  • Your computer is now being scanned, please do not use your computer during the scan.
    • If no threats were found, click View detailed log.
      • Click Export and save the log as a .txt file on your Desktop or another location.
    • If the scan detected any threats, click Apply Actions.
      • To complete any actions taken you will be prompted to restart your computer...click on Yes.
      • After reboot, start Malwarebytes Anti-Malware again and click the History Tab at the top and select Application Logs.
      • Check the box next to Scan Log. Choose the most current scan and click View.
      • Click Export and save the log as a .txt file on your Desktop or another location.
  • Providing the MalwareBytes' Anti-Malware log file
    • Attach the log file you just saved to your next reply for further review.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 keekeemama30

keekeemama30
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:21 AM

Posted 05 March 2015 - 02:08 PM

MiniToolBox by Farbar  Version: 05-03-2015
Ran by PCs for People (administrator) on 05-03-2015 at 13:05:24
Running from "C:\Users\PCs for People\Downloads"
Microsoft Windows 7 Professional  Service Pack 1 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


========================= IP Configuration: ================================

Intel® 82566DM-2 Gigabit Network Connection = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : PCS-1G6RT6AOVC2
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : PK5001Z

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . : PK5001Z
   Description . . . . . . . . . . . : Intel® 82566DM-2 Gigabit Network Connection
   Physical Address. . . . . . . . . : 00-1A-A0-60-E8-83
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::6148:3ec6:870f:7178%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.0.87(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Thursday, March 05, 2015 9:44:51 AM
   Lease Expires . . . . . . . . . . : Friday, March 06, 2015 9:44:49 AM
   Default Gateway . . . . . . . . . : 192.168.0.1
   DHCP Server . . . . . . . . . . . : 192.168.0.1
   DHCPv6 IAID . . . . . . . . . . . : 234887840
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1A-7C-40-F4-00-1A-A0-60-E8-83
   DNS Servers . . . . . . . . . . . : 192.168.0.1
                                       205.171.202.166
   NetBIOS over Tcpip. . . . . . . . : Enabled
Server:  PK5001Z.PK5001Z
Address:  192.168.0.1

Name:    google.com
Addresses:  2607:f8b0:4009:807::1000
      173.194.46.103
      173.194.46.101
      173.194.46.102
      173.194.46.97
      173.194.46.105
      173.194.46.99
      173.194.46.110
      173.194.46.96
      173.194.46.100
      173.194.46.98
      173.194.46.104


Pinging google.com [173.194.46.102] with 32 bytes of data:
Reply from 173.194.46.102: bytes=32 time=29ms TTL=55
Reply from 173.194.46.102: bytes=32 time=28ms TTL=55

Ping statistics for 173.194.46.102:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 28ms, Maximum = 29ms, Average = 28ms
Server:  PK5001Z.PK5001Z
Address:  192.168.0.1

Name:    yahoo.com
Addresses:  98.138.253.109
      98.139.183.24
      206.190.36.45


Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=57ms TTL=50
Reply from 98.139.183.24: bytes=32 time=54ms TTL=50

Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 54ms, Maximum = 57ms, Average = 55ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 11...00 1a a0 60 e8 83 ......Intel® 82566DM-2 Gigabit Network Connection
  1...........................Software Loopback Interface 1
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.0.1     192.168.0.87     20
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.0.0    255.255.255.0         On-link      192.168.0.87    276
     192.168.0.87  255.255.255.255         On-link      192.168.0.87    276
    192.168.0.255  255.255.255.255         On-link      192.168.0.87    276
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      192.168.0.87    276
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      192.168.0.87    276
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 11    276 fe80::/64                On-link
 11    276 fe80::6148:3ec6:870f:7178/128
                                    On-link
  1    306 ff00::/8                 On-link
 11    276 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\system32\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\system32\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\LavasoftTcpService.dll [312424] (Lavasoft Limited)
Catalog9 02 C:\Windows\system32\LavasoftTcpService.dll [312424] (Lavasoft Limited)
Catalog9 03 C:\Windows\system32\LavasoftTcpService.dll [312424] (Lavasoft Limited)
Catalog9 04 C:\Windows\system32\LavasoftTcpService.dll [312424] (Lavasoft Limited)
Catalog9 05 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 25 C:\Windows\system32\LavasoftTcpService.dll [312424] (Lavasoft Limited)

========================= Event log errors: ===============================

Application errors:
==================
Error: (03/05/2015 01:05:27 PM) (Source: Application Error) (User: )
Description: Faulting application name: plugin-container.exe, version: 35.0.1.5500, time stamp: 0x54c1f9f3
Faulting module name: mozalloc.dll, version: 35.0.1.5500, time stamp: 0x54c1f224
Exception code: 0x80000003
Fault offset: 0x00001425
Faulting process id: 0x16bc
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3


System errors:
=============

Microsoft Office Sessions:
=========================
Error: (03/05/2015 01:05:27 PM) (Source: Application Error)(User: )
Description: plugin-container.exe35.0.1.550054c1f9f3mozalloc.dll35.0.1.550054c1f224800000030000142516bc01d0576b4ede6f9eC:\Program Files\Mozilla Firefox\plugin-container.exeC:\Program Files\Mozilla Firefox\mozalloc.dll9572d3bc-c36a-11e4-a09e-001aa060e883



=========================== Installed Programs ============================
Ad-Aware Web Companion (Version: 1.0.813.1538 - Lavasoft) Hidden
Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.0.2206 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
Coupon Printer for Windows (HKLM\...\Coupon Printer for Windows5.0.1.4) (Version: 5.0.1.4 - Coupons.com Incorporated)
Epson Connect Printer Setup (HKLM\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{0F13C24A-FFE2-4CD0-8E0B-DC804E0A0E0B}) (Version: 3.10.0035 - Seiko Epson Corporation)
Epson E-Web Print (HKLM\...\{682A3328-9621-4BAD-91FA-873A076610C4}) (Version: 1.21.0000 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON XP-310 Series Printer Uninstall (HKLM\...\EPSON XP-310 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google+ Auto Backup (HKCU\...\Google+ Auto Backup) (Version: 1.0.27.161 - Google, Inc.)
HPDiagnosticAlert (Version: 1.00.0001 - Microsoft) Hidden
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Intel® Network Connections Drivers (HKLM\...\PROSet) (Version: 18.1 - Intel)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java Auto Updater (Version: 2.8.31.13 - Oracle Corporation) Hidden
K-Lite Codec Pack 10.2.0 Full (HKLM\...\KLiteCodecPack_is1) (Version: 10.2.0 - )
LavasoftTcpService (Version: 2.2.9.5 - Lavasoft) Hidden
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Version: 4.5.51209 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 35.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 35.0.1 (x86 en-US)) (Version: 35.0.1 - Mozilla)
OpenOffice 4.0.1 (HKLM\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
P@H-Protocol (HKLM\...\{CF594DB8-CFB0-45B4-86DA-8BB4AC0941F8}) (Version: 3.0.7.0 - Valassis)
VLC media player 2.1.2 (HKLM\...\VLC media player) (Version: 2.1.2 - VideoLAN)
Web Companion (HKLM\...\{89C9F6E5-50D4-400C-AB96-5A947584D4D6}_WebCompanion) (Version: 1.0.813.1538 - Lavasoft)
WinZip 18.5 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E2}) (Version: 18.5.11111 - WinZip Computing, S.L. )
Yahoo! Toolbar (HKLM\...\Yahoo! Companion) (Version:  - Yahoo! Inc.)

========================= Memory info: ===================================

Percentage of memory in use: 49%
Total physical RAM: 2004.61 MB
Available physical RAM: 1021.11 MB
Total Pagefile: 4009.22 MB
Available Pagefile: 2806.68 MB
Total Virtual: 2047.88 MB
Available Virtual: 1922.9 MB

========================= Partitions: =====================================

2 Drive c: (New Volume) (Fixed) (Total:74.53 GB) (Free:46.09 GB) NTFS
3 Drive d: (OLYMPUS Setup) (CDROM) (Total:0.44 GB) (Free:0 GB) CDFS

========================= Users: ========================================

User accounts for \\PCS-1G6RT6AOVC2

Administrator            Guest                    PCs for People           


**** End of log ****
 



#4 keekeemama30

keekeemama30
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:21 AM

Posted 05 March 2015 - 02:30 PM

13:17:32.0221 0x10c8 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
13:19:42.0278 0x10c8 ============================================================
13:19:42.0278 0x10c8 Current date / time: 2015/03/05 13:19:42.0278
13:19:42.0278 0x10c8 SystemInfo:
13:19:42.0278 0x10c8
13:19:42.0278 0x10c8 OS Version: 6.1.7601 ServicePack: 1.0
13:19:42.0278 0x10c8 Product type: Workstation
13:19:42.0278 0x10c8 ComputerName: PCS-1G6RT6AOVC2
13:19:42.0278 0x10c8 UserName: PCs for People
13:19:42.0278 0x10c8 Windows directory: C:\Windows
13:19:42.0278 0x10c8 System windows directory: C:\Windows
13:19:42.0278 0x10c8 Processor architecture: Intel x86
13:19:42.0278 0x10c8 Number of processors: 2
13:19:42.0278 0x10c8 Page size: 0x1000
13:19:42.0278 0x10c8 Boot type: Normal boot
13:19:42.0278 0x10c8 ============================================================
13:19:44.0088 0x10c8 KLMD registered as C:\Windows\system32\drivers\72210198.sys
13:19:44.0538 0x10c8 System UUID: {6F7C3AE9-EDAF-03FD-BA42-4998D227BB7A}
13:19:45.0568 0x10c8 Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 ( 74.53 Gb ), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:19:45.0588 0x10c8 ============================================================
13:19:45.0588 0x10c8 \Device\Harddisk0\DR0:
13:19:45.0658 0x10c8 MBR partitions:
13:19:45.0658 0x10c8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x950E800
13:19:45.0658 0x10c8 ============================================================
13:19:45.0668 0x10c8 C: <-> \Device\Harddisk0\DR0\Partition1
13:19:45.0668 0x10c8 ============================================================
13:19:45.0668 0x10c8 Initialize success
13:19:45.0668 0x10c8 ============================================================
13:19:49.0418 0x0d54 ============================================================
13:19:49.0418 0x0d54 Scan started
13:19:49.0418 0x0d54 Mode: Manual;
13:19:49.0418 0x0d54 ============================================================
13:19:49.0418 0x0d54 KSN ping started
13:19:52.0058 0x0d54 KSN ping finished: true
13:19:52.0878 0x0d54 ================ Scan system memory ========================
13:19:52.0878 0x0d54 System memory - ok
13:19:52.0878 0x0d54 ================ Scan services =============================
13:19:53.0038 0x0d54 [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:19:53.0048 0x0d54 1394ohci - ok
13:19:53.0088 0x0d54 [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:19:53.0108 0x0d54 ACPI - ok
13:19:53.0128 0x0d54 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:19:53.0138 0x0d54 AcpiPmi - ok
13:19:53.0198 0x0d54 [ 5EE42C392D81DF4544E4286EBB231A7A, 49B9F873B75D9260B22ED8AF5CA3096534BD6F0EBDBA504C5B726643DFAAD91E ] ADIHdAudAddService C:\Windows\system32\drivers\ADIHdAud.sys
13:19:53.0218 0x0d54 ADIHdAudAddService - ok
13:19:53.0288 0x0d54 [ 4C72FDD915D62EAEF149BD9C73AB9CF4, 8EA45A1B88DFD819F0ADA3AF36D464E1BF52574269592370E0CC8D0490680E1F ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
13:19:53.0298 0x0d54 AdobeARMservice - ok
13:19:53.0348 0x0d54 [ 080255CDCB878813B481B8C348D47D8E, 75808821FBC732D0504795B8F85852E4C01D3B412989A1E597E1295CFF7B7A45 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:19:53.0358 0x0d54 AdobeFlashPlayerUpdateSvc - ok
13:19:53.0408 0x0d54 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
13:19:53.0418 0x0d54 adp94xx - ok
13:19:53.0458 0x0d54 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\drivers\adpahci.sys
13:19:53.0478 0x0d54 adpahci - ok
13:19:53.0488 0x0d54 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\drivers\adpu320.sys
13:19:53.0498 0x0d54 adpu320 - ok
13:19:53.0528 0x0d54 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:19:53.0528 0x0d54 AeLookupSvc - ok
13:19:53.0588 0x0d54 [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD C:\Windows\system32\drivers\afd.sys
13:19:53.0608 0x0d54 AFD - ok
13:19:53.0638 0x0d54 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys
13:19:53.0638 0x0d54 agp440 - ok
13:19:53.0688 0x0d54 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\drivers\djsvs.sys
13:19:53.0688 0x0d54 aic78xx - ok
13:19:53.0718 0x0d54 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
13:19:53.0728 0x0d54 ALG - ok
13:19:53.0748 0x0d54 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys
13:19:53.0748 0x0d54 aliide - ok
13:19:53.0768 0x0d54 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
13:19:53.0768 0x0d54 amdagp - ok
13:19:53.0798 0x0d54 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys
13:19:53.0798 0x0d54 amdide - ok
13:19:53.0838 0x0d54 [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
13:19:53.0838 0x0d54 AmdK8 - ok
13:19:54.0148 0x0d54 [ D05CF4523E0C04EF82454ABFD84FDC1D, 49716B95D6CD973ADBC02470BEB52DA93DFF43BBA9FCDAC8939A7AB567F0813F ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
13:19:54.0430 0x0d54 amdkmdag - ok
13:19:54.0490 0x0d54 [ 92DC2E0AE49148F83B24D89C737B0C97, 6251D002ADF0EC964C63F0E1481CCD4A9DA9CD1E1928907D5D5D21AAAF7DA701 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
13:19:54.0500 0x0d54 amdkmdap - ok
13:19:54.0530 0x0d54 [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
13:19:54.0540 0x0d54 AmdPPM - ok
13:19:54.0570 0x0d54 [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:19:54.0570 0x0d54 amdsata - ok
13:19:54.0590 0x0d54 [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
13:19:54.0600 0x0d54 amdsbs - ok
13:19:54.0620 0x0d54 [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:19:54.0620 0x0d54 amdxata - ok
13:19:54.0650 0x0d54 [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID C:\Windows\system32\drivers\appid.sys
13:19:54.0650 0x0d54 AppID - ok
13:19:54.0690 0x0d54 [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:19:54.0690 0x0d54 AppIDSvc - ok
13:19:54.0710 0x0d54 [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\Windows\System32\appinfo.dll
13:19:54.0710 0x0d54 Appinfo - ok
13:19:54.0740 0x0d54 [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt C:\Windows\System32\appmgmts.dll
13:19:54.0740 0x0d54 AppMgmt - ok
13:19:54.0780 0x0d54 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\drivers\arc.sys
13:19:54.0780 0x0d54 arc - ok
13:19:54.0810 0x0d54 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\drivers\arcsas.sys
13:19:54.0820 0x0d54 arcsas - ok
13:19:54.0940 0x0d54 [ 537B2948976F5D9B5767B74A63EBB395, 1A14F8B582E74AD15B612EDA5B707AA3CB0B2A107ED14572B4232EAA7383B634 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:19:54.0960 0x0d54 aspnet_state - ok
13:19:55.0000 0x0d54 [ C0E092CBE5644AE4B3C6CD7C5396DF86, 2EF4137F28A2704B7B26ECE2785332137C63A10FBB84F1626747DFCADA0B8982 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
13:19:55.0000 0x0d54 aswHwid - ok
13:19:55.0050 0x0d54 [ E452BCDA6AB8EB5A1F7DF7CF06BA92E9, A0FFA8AC1342D15C9804885841C824E5E9A8D3930605CA8CA736D906007EC3E0 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
13:19:55.0050 0x0d54 aswMonFlt - ok
13:19:55.0100 0x0d54 [ BCD184FF4CE25F1006A213C029671FEF, 51E8A8D24E8444D27786E426CB10A39ADE1F6BBC727D5B177910E16685E881E5 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
13:19:55.0100 0x0d54 aswRdr - ok
13:19:55.0130 0x0d54 [ 8474B5D0A5AC05AF046DC4EA69FA44DE, D4BE2972EF420A188374245B75B157A7EA2CC5D8DA9CFB2A2237412B66F900B0 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
13:19:55.0130 0x0d54 aswRvrt - ok
13:19:55.0190 0x0d54 [ E73CBE3420ECFA8FF7D0467E170E335D, B994342C92AE9167908B8CA3D03DC278E919C7073512461AFFD4C25E8D2D8D66 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
13:19:55.0210 0x0d54 aswSnx - ok
13:19:55.0260 0x0d54 [ 1624D5AD126B8AFE2B2E85E5B8364EB6, AB97A74C1CA9921F7753D98516D7E11750D5D3ACD143C83273B0B295625440A0 ] aswSP C:\Windows\system32\drivers\aswSP.sys
13:19:55.0270 0x0d54 aswSP - ok
13:19:55.0310 0x0d54 [ EE89A22FB9FEC2CCC8A58C3C5D3AAA73, B0273AF2C3CCBFE059CC2B4BDB82E3C14E7D7631924A964CAECDD8A0D08C3466 ] aswStm C:\Windows\system32\drivers\aswStm.sys
13:19:55.0320 0x0d54 aswStm - ok
13:19:55.0360 0x0d54 [ 0E9DC85996E79F3E4F3AEEA44B65468A, B82D09B70DFBB4D184E3B09F6321E94B0B6EFDD091818E9FB218D39C435A55BF ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
13:19:55.0370 0x0d54 aswVmm - ok
13:19:55.0410 0x0d54 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:19:55.0410 0x0d54 AsyncMac - ok
13:19:55.0430 0x0d54 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys
13:19:55.0430 0x0d54 atapi - ok
13:19:55.0500 0x0d54 [ F4157B3CECF19B1C266C83AFF051C97A, 26728B59B6003EB36BC322D189254574E94790CE23637228A669FAD6ED76ECE3 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:19:55.0520 0x0d54 AudioEndpointBuilder - ok
13:19:55.0550 0x0d54 [ F4157B3CECF19B1C266C83AFF051C97A, 26728B59B6003EB36BC322D189254574E94790CE23637228A669FAD6ED76ECE3 ] Audiosrv C:\Windows\System32\Audiosrv.dll
13:19:55.0560 0x0d54 Audiosrv - ok
13:19:55.0640 0x0d54 [ 5CE4F1E7D1BF789919DC7F2E7603C638, 604D4D824B9FE183B82637D212D7804DC88D6475383C1E6EE4269CAAD82E7C13 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:19:55.0640 0x0d54 avast! Antivirus - ok
13:19:55.0670 0x0d54 [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:19:55.0670 0x0d54 AxInstSV - ok
13:19:55.0730 0x0d54 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
13:19:55.0750 0x0d54 b06bdrv - ok
13:19:55.0790 0x0d54 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
13:19:55.0800 0x0d54 b57nd60x - ok
13:19:55.0840 0x0d54 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
13:19:55.0840 0x0d54 BDESVC - ok
13:19:55.0860 0x0d54 [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys
13:19:55.0860 0x0d54 Beep - ok
13:19:55.0890 0x0d54 [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\Windows\System32\bfe.dll
13:19:55.0920 0x0d54 BFE - ok
13:19:55.0970 0x0d54 [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\Windows\system32\qmgr.dll
13:19:56.0000 0x0d54 BITS - ok
13:19:56.0010 0x0d54 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:19:56.0010 0x0d54 blbdrive - ok
13:19:56.0050 0x0d54 [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:19:56.0050 0x0d54 bowser - ok
13:19:56.0070 0x0d54 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
13:19:56.0070 0x0d54 BrFiltLo - ok
13:19:56.0080 0x0d54 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
13:19:56.0080 0x0d54 BrFiltUp - ok
13:19:56.0120 0x0d54 [ 77361D72A04F18809D0EFB6CCEB74D4B, 55E7DB65BB29FF421F138CDFF05E5ECFFC7C8862FAA68F6179A3BA9D6B69AE64 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
13:19:56.0130 0x0d54 BridgeMP - ok
13:19:56.0160 0x0d54 [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\Windows\System32\browser.dll
13:19:56.0160 0x0d54 Browser - ok
13:19:56.0200 0x0d54 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:19:56.0210 0x0d54 Brserid - ok
13:19:56.0220 0x0d54 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:19:56.0220 0x0d54 BrSerWdm - ok
13:19:56.0240 0x0d54 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:19:56.0240 0x0d54 BrUsbMdm - ok
13:19:56.0260 0x0d54 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:19:56.0260 0x0d54 BrUsbSer - ok
13:19:56.0290 0x0d54 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
13:19:56.0290 0x0d54 BTHMODEM - ok
13:19:56.0340 0x0d54 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
13:19:56.0350 0x0d54 bthserv - ok
13:19:56.0430 0x0d54 catchme - ok
13:19:56.0470 0x0d54 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:19:56.0480 0x0d54 cdfs - ok
13:19:56.0520 0x0d54 [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:19:56.0530 0x0d54 cdrom - ok
13:19:56.0560 0x0d54 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\Windows\System32\certprop.dll
13:19:56.0570 0x0d54 CertPropSvc - ok
13:19:56.0580 0x0d54 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\drivers\circlass.sys
13:19:56.0590 0x0d54 circlass - ok
13:19:56.0610 0x0d54 [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS C:\Windows\system32\CLFS.sys
13:19:56.0620 0x0d54 CLFS - ok
13:19:56.0680 0x0d54 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:19:56.0680 0x0d54 clr_optimization_v2.0.50727_32 - ok
13:19:56.0730 0x0d54 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:19:56.0760 0x0d54 clr_optimization_v4.0.30319_32 - ok
13:19:56.0790 0x0d54 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
13:19:56.0790 0x0d54 CmBatt - ok
13:19:56.0790 0x0d54 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:19:56.0800 0x0d54 cmdide - ok
13:19:56.0850 0x0d54 [ F516F1167EFBBC5ABC90687C94497869, AD650D56241533439419EA00236ABE14AB6E50B768620211D1A44047A9FA14EC ] CNG C:\Windows\system32\Drivers\cng.sys
13:19:56.0860 0x0d54 CNG - ok
13:19:56.0880 0x0d54 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\drivers\compbatt.sys
13:19:56.0880 0x0d54 Compbatt - ok
13:19:56.0910 0x0d54 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
13:19:56.0910 0x0d54 CompositeBus - ok
13:19:56.0930 0x0d54 COMSysApp - ok
13:19:57.0020 0x0d54 [ 3B50B56AFC64C990E106DA23D2915E16, C231588921A53EAC96548034542FB35ADF5EE04ED61F5505C921D15C52555E2F ] CouponPrinterService C:\Program Files\Coupons\CouponPrinterService.exe
13:19:57.0020 0x0d54 CouponPrinterService - ok
13:19:57.0050 0x0d54 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
13:19:57.0050 0x0d54 crcdisk - ok
13:19:57.0100 0x0d54 [ 623E143F2DF17C0106A9988F5D7DC878, 9DA30262FF22FA9F1DB247CB3B4A2892D79730EF0ECC9589D399D24B4F58E565 ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:19:57.0110 0x0d54 CryptSvc - ok
13:19:57.0150 0x0d54 [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC C:\Windows\system32\drivers\csc.sys
13:19:57.0170 0x0d54 CSC - ok
13:19:57.0210 0x0d54 [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService C:\Windows\System32\cscsvc.dll
13:19:57.0250 0x0d54 CscService - ok
13:19:57.0290 0x0d54 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\Windows\system32\rpcss.dll
13:19:57.0330 0x0d54 DcomLaunch - ok
13:19:57.0370 0x0d54 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
13:19:57.0380 0x0d54 defragsvc - ok
13:19:57.0400 0x0d54 [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:19:57.0410 0x0d54 DfsC - ok
13:19:57.0440 0x0d54 [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\Windows\system32\dhcpcore.dll
13:19:57.0460 0x0d54 Dhcp - ok
13:19:57.0470 0x0d54 [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys
13:19:57.0470 0x0d54 discache - ok
13:19:57.0500 0x0d54 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\drivers\disk.sys
13:19:57.0510 0x0d54 Disk - ok
13:19:57.0530 0x0d54 [ 2A958EF85DB1B61FFCA65044FA4BCE9E, C83511685EE1CE85A5ADF9B5BE96C375A521601F66024BDC3EE044C0B6E85D69 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
13:19:57.0530 0x0d54 dmvsc - ok
13:19:57.0560 0x0d54 [ 2782A4549CC6558C52B0753126B2A833, D1B0AD4432EB81991A15A13DEB139CB122F6E442F7A59829D2E0CCB5CB8E2DF1 ] DNIMp50 C:\Windows\system32\Drivers\DNIMp50.sys
13:19:57.0570 0x0d54 DNIMp50 - ok
13:19:57.0580 0x0d54 [ B222622709A919C91CB54A90CF7CEEFC, 4B1ACF558B280CD5F98DAC493C4DC7EF7627F45B96C840163879765F85D8E36E ] DNISp50 C:\Windows\system32\Drivers\DNISp50.sys
13:19:57.0580 0x0d54 DNISp50 - ok
13:19:57.0610 0x0d54 [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:19:57.0620 0x0d54 Dnscache - ok
13:19:57.0640 0x0d54 [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\Windows\System32\dot3svc.dll
13:19:57.0650 0x0d54 dot3svc - ok
13:19:57.0680 0x0d54 [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll
13:19:57.0690 0x0d54 DPS - ok
13:19:57.0730 0x0d54 [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:19:57.0740 0x0d54 drmkaud - ok
13:19:57.0800 0x0d54 [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:19:57.0840 0x0d54 DXGKrnl - ok
13:19:57.0870 0x0d54 [ 43529B8D3655555D4C600538A1C90328, 647DFA7F27DD233C5128B58B40803B3DC8D4251BFBFB00541FD9697D6F61F316 ] e1cexpress C:\Windows\system32\DRIVERS\e1c6232.sys
13:19:57.0890 0x0d54 e1cexpress - ok
13:19:57.0920 0x0d54 [ 0535BFBEDB9378DDD15BDF9957D57D71, CA93DD66AF1DC8DFFE370C41EEDF57F6073B4859257BE35E30914F81C1478034 ] e1express C:\Windows\system32\DRIVERS\e1e6232.sys
13:19:57.0930 0x0d54 e1express - ok
13:19:57.0970 0x0d54 [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
13:19:57.0980 0x0d54 EapHost - ok
13:19:58.0130 0x0d54 [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
13:19:58.0240 0x0d54 ebdrv - ok
13:19:58.0280 0x0d54 [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] EFS C:\Windows\System32\lsass.exe
13:19:58.0290 0x0d54 EFS - ok
13:19:58.0350 0x0d54 [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:19:58.0370 0x0d54 ehRecvr - ok
13:19:58.0390 0x0d54 [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
13:19:58.0390 0x0d54 ehSched - ok
13:19:58.0440 0x0d54 [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
13:19:58.0470 0x0d54 elxstor - ok
13:19:58.0540 0x0d54 [ B538590B338F5379D4B33E266902008B, D73C4152DE0E9D225E29533FC5451D1C4DD344FE66024E6A8122B59ADD1611C8 ] EpsonScanSvc C:\Windows\system32\EscSvc.exe
13:19:58.0540 0x0d54 EpsonScanSvc - ok
13:19:58.0560 0x0d54 [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:19:58.0560 0x0d54 ErrDev - ok
13:19:58.0610 0x0d54 [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
13:19:58.0620 0x0d54 EventSystem - ok
13:19:58.0650 0x0d54 [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
13:19:58.0660 0x0d54 exfat - ok
13:19:58.0700 0x0d54 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:19:58.0700 0x0d54 fastfat - ok
13:19:58.0750 0x0d54 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe
13:19:58.0780 0x0d54 Fax - ok
13:19:58.0800 0x0d54 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:19:58.0800 0x0d54 fdc - ok
13:19:58.0810 0x0d54 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
13:19:58.0820 0x0d54 fdPHost - ok
13:19:58.0830 0x0d54 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
13:19:58.0840 0x0d54 FDResPub - ok
13:19:58.0860 0x0d54 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:19:58.0870 0x0d54 FileInfo - ok
13:19:58.0880 0x0d54 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:19:58.0880 0x0d54 Filetrace - ok
13:19:58.0890 0x0d54 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:19:58.0890 0x0d54 flpydisk - ok
13:19:58.0940 0x0d54 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:19:58.0950 0x0d54 FltMgr - ok
13:19:59.0012 0x0d54 [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\Windows\system32\FntCache.dll
13:19:59.0052 0x0d54 FontCache - ok
13:19:59.0112 0x0d54 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:19:59.0112 0x0d54 FontCache3.0.0.0 - ok
13:19:59.0132 0x0d54 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:19:59.0132 0x0d54 FsDepends - ok
13:19:59.0162 0x0d54 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:19:59.0172 0x0d54 Fs_Rec - ok
13:19:59.0212 0x0d54 [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:19:59.0212 0x0d54 fvevol - ok
13:19:59.0232 0x0d54 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
13:19:59.0242 0x0d54 gagp30kx - ok
13:19:59.0292 0x0d54 [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\Windows\System32\gpsvc.dll
13:19:59.0352 0x0d54 gpsvc - ok
13:19:59.0372 0x0d54 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:19:59.0372 0x0d54 hcw85cir - ok
13:19:59.0412 0x0d54 [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:19:59.0432 0x0d54 HdAudAddService - ok
13:19:59.0452 0x0d54 [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
13:19:59.0462 0x0d54 HDAudBus - ok
13:19:59.0492 0x0d54 [ C865D1F6D03595DF213DC3C67E4E4C58, A15028697383377D3E6DBC91F3729DEBEC135304DF27C057FFD9B1BF8861D509 ] HECI C:\Windows\system32\DRIVERS\HECI.sys
13:19:59.0502 0x0d54 HECI - ok
13:19:59.0512 0x0d54 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
13:19:59.0522 0x0d54 HidBatt - ok
13:19:59.0542 0x0d54 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\drivers\hidbth.sys
13:19:59.0542 0x0d54 HidBth - ok
13:19:59.0572 0x0d54 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\drivers\hidir.sys
13:19:59.0572 0x0d54 HidIr - ok
13:19:59.0592 0x0d54 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\System32\hidserv.dll
13:19:59.0592 0x0d54 hidserv - ok
13:19:59.0632 0x0d54 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:19:59.0642 0x0d54 HidUsb - ok
13:19:59.0652 0x0d54 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll
13:19:59.0662 0x0d54 hkmsvc - ok
13:19:59.0682 0x0d54 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:19:59.0692 0x0d54 HomeGroupListener - ok
13:19:59.0722 0x0d54 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:19:59.0742 0x0d54 HomeGroupProvider - ok
13:19:59.0762 0x0d54 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:19:59.0772 0x0d54 HpSAMD - ok
13:19:59.0812 0x0d54 [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:19:59.0832 0x0d54 HTTP - ok
13:19:59.0842 0x0d54 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:19:59.0852 0x0d54 hwpolicy - ok
13:19:59.0882 0x0d54 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:19:59.0882 0x0d54 i8042prt - ok
13:19:59.0922 0x0d54 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:19:59.0932 0x0d54 iaStorV - ok
13:20:00.0012 0x0d54 [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:20:00.0052 0x0d54 idsvc - ok
13:20:00.0082 0x0d54 IEEtwCollectorService - ok
13:20:00.0302 0x0d54 [ 9467514EA189475A6E7FDC5D7BDE9D3F, E6F5B99BF6B614832770F9310B06334A8174C7660DDEC7589433640527A14683 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
13:20:00.0484 0x0d54 igfx - ok
13:20:00.0524 0x0d54 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\drivers\iirsp.sys
13:20:00.0534 0x0d54 iirsp - ok
13:20:00.0594 0x0d54 [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\Windows\System32\ikeext.dll
13:20:00.0634 0x0d54 IKEEXT - ok
13:20:00.0754 0x0d54 [ AFDF0BA310759F2147E07DBE1369C070, 3B3C1196ACF396E5FAE86385A876034266D641F28321ABC4FCE850D85294F567 ] IntcAzAudAddService C:\Windows\system32\drivers\RTDVHDA.sys
13:20:00.0844 0x0d54 IntcAzAudAddService - ok
13:20:00.0874 0x0d54 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys
13:20:00.0874 0x0d54 intelide - ok
13:20:00.0914 0x0d54 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:20:00.0914 0x0d54 intelppm - ok
13:20:00.0934 0x0d54 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:20:00.0944 0x0d54 IPBusEnum - ok
13:20:00.0964 0x0d54 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:20:00.0964 0x0d54 IpFilterDriver - ok
13:20:01.0004 0x0d54 [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:20:01.0034 0x0d54 iphlpsvc - ok
13:20:01.0054 0x0d54 [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:20:01.0054 0x0d54 IPMIDRV - ok
13:20:01.0084 0x0d54 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:20:01.0084 0x0d54 IPNAT - ok
13:20:01.0114 0x0d54 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:20:01.0114 0x0d54 IRENUM - ok
13:20:01.0134 0x0d54 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:20:01.0134 0x0d54 isapnp - ok
13:20:01.0174 0x0d54 [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:20:01.0184 0x0d54 iScsiPrt - ok
13:20:01.0214 0x0d54 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
13:20:01.0214 0x0d54 kbdclass - ok
13:20:01.0254 0x0d54 [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
13:20:01.0254 0x0d54 kbdhid - ok
13:20:01.0274 0x0d54 [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] KeyIso C:\Windows\system32\lsass.exe
13:20:01.0284 0x0d54 KeyIso - ok
13:20:01.0324 0x0d54 [ EF88BAC2B489D9C46F4E41ACF0219CD0, BF0FAF51BB6D0E588E53E483EF48D8D96B33544113892CC723CDEFAE7E5FB97A ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:20:01.0324 0x0d54 KSecDD - ok
13:20:01.0354 0x0d54 [ 49D70660EE8266988C1F99A0297A1430, D17B7A3118DB42358DEA80D8A21C5F1B0CC33BF74F6570676D4708B36BB91FD4 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:20:01.0364 0x0d54 KSecPkg - ok
13:20:01.0394 0x0d54 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
13:20:01.0414 0x0d54 KtmRm - ok
13:20:01.0464 0x0d54 [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\Windows\System32\srvsvc.dll
13:20:01.0484 0x0d54 LanmanServer - ok
13:20:01.0514 0x0d54 [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:20:01.0524 0x0d54 LanmanWorkstation - ok
13:20:01.0634 0x0d54 [ 4A6198A5A6409772D9164495D7A78451, DE14D1E89B40F3B8621D34E621423F3C0C02BE8A4078BEAAFA3D2197DCE582B1 ] LavasoftTcpService C:\Program Files\Lavasoft\Web Companion\TcpService\2.2.9.5\LavasoftTcpService.exe
13:20:01.0684 0x0d54 LavasoftTcpService - ok
13:20:01.0724 0x0d54 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:20:01.0724 0x0d54 lltdio - ok
13:20:01.0764 0x0d54 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:20:01.0774 0x0d54 lltdsvc - ok
13:20:01.0794 0x0d54 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:20:01.0804 0x0d54 lmhosts - ok
13:20:01.0834 0x0d54 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
13:20:01.0844 0x0d54 LSI_FC - ok
13:20:01.0864 0x0d54 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
13:20:01.0864 0x0d54 LSI_SAS - ok
13:20:01.0884 0x0d54 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
13:20:01.0884 0x0d54 LSI_SAS2 - ok
13:20:01.0904 0x0d54 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
13:20:01.0914 0x0d54 LSI_SCSI - ok
13:20:01.0944 0x0d54 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
13:20:01.0944 0x0d54 luafv - ok
13:20:01.0964 0x0d54 MBAMSwissArmy - ok
13:20:01.0994 0x0d54 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:20:01.0994 0x0d54 Mcx2Svc - ok
13:20:02.0014 0x0d54 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\drivers\megasas.sys
13:20:02.0014 0x0d54 megasas - ok
13:20:02.0044 0x0d54 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
13:20:02.0064 0x0d54 MegaSR - ok
13:20:02.0084 0x0d54 [ C865D1F6D03595DF213DC3C67E4E4C58, A15028697383377D3E6DBC91F3729DEBEC135304DF27C057FFD9B1BF8861D509 ] MEI C:\Windows\system32\drivers\HECI.sys
13:20:02.0084 0x0d54 MEI - ok
13:20:02.0114 0x0d54 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
13:20:02.0114 0x0d54 MMCSS - ok
13:20:02.0134 0x0d54 [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys
13:20:02.0134 0x0d54 Modem - ok
13:20:02.0184 0x0d54 [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:20:02.0184 0x0d54 monitor - ok
13:20:02.0194 0x0d54 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:20:02.0194 0x0d54 mouclass - ok
13:20:02.0224 0x0d54 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:20:02.0234 0x0d54 mouhid - ok
13:20:02.0254 0x0d54 [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:20:02.0254 0x0d54 mountmgr - ok
13:20:02.0274 0x0d54 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\Windows\system32\drivers\mpio.sys
13:20:02.0284 0x0d54 mpio - ok
13:20:02.0304 0x0d54 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:20:02.0314 0x0d54 mpsdrv - ok
13:20:02.0354 0x0d54 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:20:02.0385 0x0d54 MpsSvc - ok
13:20:02.0426 0x0d54 [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:20:02.0426 0x0d54 MRxDAV - ok
13:20:02.0466 0x0d54 [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:20:02.0476 0x0d54 mrxsmb - ok
13:20:02.0506 0x0d54 [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:20:02.0516 0x0d54 mrxsmb10 - ok
13:20:02.0526 0x0d54 [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:20:02.0536 0x0d54 mrxsmb20 - ok
13:20:02.0546 0x0d54 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys
13:20:02.0546 0x0d54 msahci - ok
13:20:02.0576 0x0d54 [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:20:02.0576 0x0d54 msdsm - ok
13:20:02.0606 0x0d54 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
13:20:02.0626 0x0d54 MSDTC - ok
13:20:02.0656 0x0d54 [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:20:02.0656 0x0d54 Msfs - ok
13:20:02.0666 0x0d54 [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:20:02.0666 0x0d54 mshidkmdf - ok
13:20:02.0686 0x0d54 [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:20:02.0686 0x0d54 msisadrv - ok
13:20:02.0726 0x0d54 [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:20:02.0726 0x0d54 MSiSCSI - ok
13:20:02.0736 0x0d54 msiserver - ok
13:20:02.0766 0x0d54 [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:20:02.0776 0x0d54 MSKSSRV - ok
13:20:02.0806 0x0d54 [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:20:02.0806 0x0d54 MSPCLOCK - ok
13:20:02.0816 0x0d54 [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:20:02.0826 0x0d54 MSPQM - ok
13:20:02.0846 0x0d54 [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:20:02.0846 0x0d54 MsRPC - ok
13:20:02.0866 0x0d54 [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
13:20:02.0866 0x0d54 mssmbios - ok
13:20:02.0886 0x0d54 [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:20:02.0896 0x0d54 MSTEE - ok
13:20:02.0906 0x0d54 [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
13:20:02.0906 0x0d54 MTConfig - ok
13:20:02.0936 0x0d54 [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
13:20:02.0936 0x0d54 Mup - ok
13:20:02.0976 0x0d54 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll
13:20:03.0006 0x0d54 napagent - ok
13:20:03.0046 0x0d54 [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:20:03.0056 0x0d54 NativeWifiP - ok
13:20:03.0096 0x0d54 [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:20:03.0136 0x0d54 NDIS - ok
13:20:03.0156 0x0d54 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:20:03.0156 0x0d54 NdisCap - ok
13:20:03.0186 0x0d54 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:20:03.0186 0x0d54 NdisTapi - ok
13:20:03.0196 0x0d54 [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:20:03.0206 0x0d54 Ndisuio - ok
13:20:03.0216 0x0d54 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:20:03.0226 0x0d54 NdisWan - ok
13:20:03.0236 0x0d54 [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:20:03.0236 0x0d54 NDProxy - ok
13:20:03.0266 0x0d54 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:20:03.0266 0x0d54 NetBIOS - ok
13:20:03.0286 0x0d54 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:20:03.0286 0x0d54 NetBT - ok
13:20:03.0306 0x0d54 [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] Netlogon C:\Windows\system32\lsass.exe
13:20:03.0316 0x0d54 Netlogon - ok
13:20:03.0366 0x0d54 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
13:20:03.0386 0x0d54 Netman - ok
13:20:03.0436 0x0d54 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:20:03.0456 0x0d54 NetMsmqActivator - ok
13:20:03.0476 0x0d54 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:20:03.0476 0x0d54 NetPipeActivator - ok
13:20:03.0506 0x0d54 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
13:20:03.0536 0x0d54 netprofm - ok
13:20:03.0556 0x0d54 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:20:03.0566 0x0d54 NetTcpActivator - ok
13:20:03.0566 0x0d54 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:20:03.0576 0x0d54 NetTcpPortSharing - ok
13:20:03.0606 0x0d54 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
13:20:03.0606 0x0d54 nfrd960 - ok
13:20:03.0656 0x0d54 [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:20:03.0666 0x0d54 NlaSvc - ok
13:20:03.0696 0x0d54 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:20:03.0696 0x0d54 Npfs - ok
13:20:03.0726 0x0d54 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\Windows\system32\nsisvc.dll
13:20:03.0726 0x0d54 nsi - ok
13:20:03.0746 0x0d54 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:20:03.0746 0x0d54 nsiproxy - ok
13:20:03.0826 0x0d54 [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:20:03.0876 0x0d54 Ntfs - ok
13:20:03.0886 0x0d54 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys
13:20:03.0896 0x0d54 Null - ok
13:20:03.0916 0x0d54 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:20:03.0926 0x0d54 nvraid - ok
13:20:03.0956 0x0d54 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:20:03.0966 0x0d54 nvstor - ok
13:20:03.0986 0x0d54 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:20:03.0996 0x0d54 nv_agp - ok
13:20:04.0026 0x0d54 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:20:04.0026 0x0d54 ohci1394 - ok
13:20:04.0066 0x0d54 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:20:04.0076 0x0d54 p2pimsvc - ok
13:20:04.0096 0x0d54 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\Windows\system32\p2psvc.dll
13:20:04.0126 0x0d54 p2psvc - ok
13:20:04.0146 0x0d54 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:20:04.0156 0x0d54 Parport - ok
13:20:04.0176 0x0d54 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:20:04.0186 0x0d54 partmgr - ok
13:20:04.0196 0x0d54 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
13:20:04.0196 0x0d54 Parvdm - ok
13:20:04.0226 0x0d54 [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:20:04.0236 0x0d54 PcaSvc - ok
13:20:04.0266 0x0d54 [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\Windows\system32\drivers\pci.sys
13:20:04.0266 0x0d54 pci - ok
13:20:04.0276 0x0d54 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys
13:20:04.0276 0x0d54 pciide - ok
13:20:04.0306 0x0d54 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
13:20:04.0316 0x0d54 pcmcia - ok
13:20:04.0336 0x0d54 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys
13:20:04.0336 0x0d54 pcw - ok
13:20:04.0384 0x0d54 [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:20:04.0418 0x0d54 PEAUTH - ok
13:20:04.0478 0x0d54 [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
13:20:04.0528 0x0d54 PeerDistSvc - ok
13:20:04.0628 0x0d54 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\Windows\system32\pla.dll
13:20:04.0688 0x0d54 pla - ok
13:20:04.0738 0x0d54 [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:20:04.0768 0x0d54 PlugPlay - ok
13:20:04.0788 0x0d54 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:20:04.0798 0x0d54 PNRPAutoReg - ok
13:20:04.0818 0x0d54 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:20:04.0828 0x0d54 PNRPsvc - ok
13:20:04.0878 0x0d54 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:20:04.0898 0x0d54 PolicyAgent - ok
13:20:04.0928 0x0d54 [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\Windows\system32\umpo.dll
13:20:04.0948 0x0d54 Power - ok
13:20:04.0988 0x0d54 [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:20:04.0988 0x0d54 PptpMiniport - ok
13:20:05.0008 0x0d54 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\Windows\system32\drivers\processr.sys
13:20:05.0008 0x0d54 Processor - ok
13:20:05.0058 0x0d54 [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc C:\Windows\system32\profsvc.dll
13:20:05.0068 0x0d54 ProfSvc - ok
13:20:05.0078 0x0d54 [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:20:05.0088 0x0d54 ProtectedStorage - ok
13:20:05.0118 0x0d54 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:20:05.0118 0x0d54 Psched - ok
13:20:05.0198 0x0d54 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys
13:20:05.0268 0x0d54 ql2300 - ok
13:20:05.0291 0x0d54 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
13:20:05.0296 0x0d54 ql40xx - ok
13:20:05.0330 0x0d54 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
13:20:05.0340 0x0d54 QWAVE - ok
13:20:05.0360 0x0d54 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:20:05.0360 0x0d54 QWAVEdrv - ok
13:20:05.0380 0x0d54 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:20:05.0390 0x0d54 RasAcd - ok
13:20:05.0410 0x0d54 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:20:05.0410 0x0d54 RasAgileVpn - ok
13:20:05.0430 0x0d54 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
13:20:05.0450 0x0d54 RasAuto - ok
13:20:05.0460 0x0d54 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:20:05.0470 0x0d54 Rasl2tp - ok
13:20:05.0490 0x0d54 [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll
13:20:05.0510 0x0d54 RasMan - ok
13:20:05.0530 0x0d54 [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:20:05.0540 0x0d54 RasPppoe - ok
13:20:05.0560 0x0d54 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:20:05.0560 0x0d54 RasSstp - ok
13:20:05.0590 0x0d54 [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:20:05.0610 0x0d54 rdbss - ok
13:20:05.0630 0x0d54 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:20:05.0630 0x0d54 rdpbus - ok
13:20:05.0640 0x0d54 [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:20:05.0640 0x0d54 RDPCDD - ok
13:20:05.0670 0x0d54 [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
13:20:05.0680 0x0d54 RDPDR - ok
13:20:05.0700 0x0d54 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:20:05.0710 0x0d54 RDPENCDD - ok
13:20:05.0720 0x0d54 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:20:05.0720 0x0d54 RDPREFMP - ok
13:20:05.0780 0x0d54 [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:20:05.0780 0x0d54 RdpVideoMiniport - ok
13:20:05.0820 0x0d54 [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:20:05.0830 0x0d54 RDPWD - ok
13:20:05.0860 0x0d54 [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:20:05.0870 0x0d54 rdyboost - ok
13:20:05.0900 0x0d54 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:20:05.0900 0x0d54 RemoteAccess - ok
13:20:05.0930 0x0d54 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:20:05.0940 0x0d54 RemoteRegistry - ok
13:20:05.0960 0x0d54 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:20:05.0970 0x0d54 RpcEptMapper - ok
13:20:05.0990 0x0d54 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
13:20:06.0000 0x0d54 RpcLocator - ok
13:20:06.0020 0x0d54 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\Windows\system32\rpcss.dll
13:20:06.0040 0x0d54 RpcSs - ok
13:20:06.0070 0x0d54 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:20:06.0080 0x0d54 rspndr - ok
13:20:06.0100 0x0d54 [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap C:\Windows\system32\drivers\vms3cap.sys
13:20:06.0100 0x0d54 s3cap - ok
13:20:06.0110 0x0d54 [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] SamSs C:\Windows\system32\lsass.exe
13:20:06.0120 0x0d54 SamSs - ok
13:20:06.0150 0x0d54 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:20:06.0150 0x0d54 sbp2port - ok
13:20:06.0180 0x0d54 [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:20:06.0190 0x0d54 SCardSvr - ok
13:20:06.0200 0x0d54 [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:20:06.0210 0x0d54 scfilter - ok
13:20:06.0260 0x0d54 [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll
13:20:06.0290 0x0d54 Schedule - ok
13:20:06.0310 0x0d54 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll
13:20:06.0310 0x0d54 SCPolicySvc - ok
13:20:06.0330 0x0d54 [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:20:06.0350 0x0d54 SDRSVC - ok
13:20:06.0420 0x0d54 [ 866A0E42CDDFFD71B5CDF0C08F1B07E4, 2C10C049A809256B60084E4E4B39B2D91D98EE06EA14A7C146DF5E991582367B ] SearchProtectionService C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
13:20:06.0420 0x0d54 SearchProtectionService - ok
13:20:06.0450 0x0d54 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:20:06.0450 0x0d54 secdrv - ok
13:20:06.0480 0x0d54 [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll
13:20:06.0490 0x0d54 seclogon - ok
13:20:06.0500 0x0d54 [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\system32\sens.dll
13:20:06.0510 0x0d54 SENS - ok
13:20:06.0530 0x0d54 [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:20:06.0530 0x0d54 SensrSvc - ok
13:20:06.0550 0x0d54 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:20:06.0550 0x0d54 Serenum - ok
13:20:06.0570 0x0d54 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:20:06.0580 0x0d54 Serial - ok
13:20:06.0590 0x0d54 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys
13:20:06.0590 0x0d54 sermouse - ok
13:20:06.0630 0x0d54 [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll
13:20:06.0640 0x0d54 SessionEnv - ok
13:20:06.0660 0x0d54 [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:20:06.0660 0x0d54 sffdisk - ok
13:20:06.0670 0x0d54 [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:20:06.0670 0x0d54 sffp_mmc - ok
13:20:06.0700 0x0d54 [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:20:06.0700 0x0d54 sffp_sd - ok
13:20:06.0710 0x0d54 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
13:20:06.0710 0x0d54 sfloppy - ok
13:20:06.0760 0x0d54 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:20:06.0770 0x0d54 SharedAccess - ok
13:20:06.0800 0x0d54 [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:20:06.0830 0x0d54 ShellHWDetection - ok
13:20:06.0840 0x0d54 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
13:20:06.0850 0x0d54 sisagp - ok
13:20:06.0880 0x0d54 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
13:20:06.0880 0x0d54 SiSRaid2 - ok
13:20:06.0900 0x0d54 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
13:20:06.0900 0x0d54 SiSRaid4 - ok
13:20:06.0930 0x0d54 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:20:06.0940 0x0d54 Smb - ok
13:20:06.0970 0x0d54 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:20:06.0980 0x0d54 SNMPTRAP - ok
13:20:06.0990 0x0d54 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
13:20:06.0990 0x0d54 spldr - ok
13:20:07.0020 0x0d54 [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\Windows\System32\spoolsv.exe
13:20:07.0050 0x0d54 Spooler - ok
13:20:07.0190 0x0d54 [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe
13:20:07.0320 0x0d54 sppsvc - ok
13:20:07.0350 0x0d54 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:20:07.0360 0x0d54 sppuinotify - ok
13:20:07.0400 0x0d54 [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\Windows\system32\DRIVERS\srv.sys
13:20:07.0410 0x0d54 srv - ok
13:20:07.0450 0x0d54 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:20:07.0460 0x0d54 srv2 - ok
13:20:07.0470 0x0d54 [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:20:07.0480 0x0d54 srvnet - ok
13:20:07.0500 0x0d54 [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:20:07.0520 0x0d54 SSDPSRV - ok
13:20:07.0540 0x0d54 [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:20:07.0550 0x0d54 SstpSvc - ok
13:20:07.0570 0x0d54 [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys
13:20:07.0570 0x0d54 stexstor - ok
13:20:07.0610 0x0d54 [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
13:20:07.0640 0x0d54 StiSvc - ok
13:20:07.0660 0x0d54 [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt C:\Windows\system32\drivers\vmstorfl.sys
13:20:07.0660 0x0d54 storflt - ok
13:20:07.0670 0x0d54 [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc C:\Windows\system32\storsvc.dll
13:20:07.0680 0x0d54 StorSvc - ok
13:20:07.0700 0x0d54 [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc C:\Windows\system32\drivers\storvsc.sys
13:20:07.0700 0x0d54 storvsc - ok
13:20:07.0720 0x0d54 [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
13:20:07.0730 0x0d54 swenum - ok
13:20:07.0750 0x0d54 [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll
13:20:07.0780 0x0d54 swprv - ok
13:20:07.0830 0x0d54 [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll
13:20:07.0880 0x0d54 SysMain - ok
13:20:07.0910 0x0d54 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
13:20:07.0920 0x0d54 TabletInputService - ok
13:20:07.0940 0x0d54 [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll
13:20:07.0950 0x0d54 TapiSrv - ok
13:20:07.0970 0x0d54 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
13:20:07.0990 0x0d54 TBS - ok
13:20:08.0060 0x0d54 [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:20:08.0110 0x0d54 Tcpip - ok
13:20:08.0180 0x0d54 [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:20:08.0210 0x0d54 TCPIP6 - ok
13:20:08.0240 0x0d54 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:20:08.0250 0x0d54 tcpipreg - ok
13:20:08.0270 0x0d54 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:20:08.0270 0x0d54 TDPIPE - ok
13:20:08.0280 0x0d54 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:20:08.0290 0x0d54 TDTCP - ok
13:20:08.0330 0x0d54 [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:20:08.0330 0x0d54 tdx - ok
13:20:08.0350 0x0d54 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
13:20:08.0350 0x0d54 TermDD - ok
13:20:08.0370 0x0d54 [ E951866BAC5A23403F62A349EDBB6EEB, BE6FB3C09D1CF8952B4D041F45B4DEE53D78EE7D27A5135012BC92B2F7CFBEA3 ] terminpt C:\Windows\system32\drivers\terminpt.sys
13:20:08.0370 0x0d54 terminpt - ok
13:20:08.0422 0x0d54 [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService C:\Windows\System32\termsrv.dll
13:20:08.0452 0x0d54 TermService - ok
13:20:08.0482 0x0d54 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
13:20:08.0492 0x0d54 Themes - ok
13:20:08.0502 0x0d54 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
13:20:08.0512 0x0d54 THREADORDER - ok
13:20:08.0542 0x0d54 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
13:20:08.0552 0x0d54 TrkWks - ok
13:20:08.0612 0x0d54 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:20:08.0622 0x0d54 TrustedInstaller - ok
13:20:08.0662 0x0d54 [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:20:08.0662 0x0d54 tssecsrv - ok
13:20:08.0702 0x0d54 [ C6A5FBD4977305E1FA23E02C042DB463, A6EB5E4B8051A258D40A385609E930318EAA3494C8466F48542B806FE6A7C47A ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:20:08.0702 0x0d54 TsUsbFlt - ok
13:20:08.0732 0x0d54 [ 57C527AF84748B5C2F5178C499C0B81F, 2FF1F25BA16F8984E9F2CE4DE663F261BAF267EDF10D466A52BB211C567F763C ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
13:20:08.0732 0x0d54 TsUsbGD - ok
13:20:08.0772 0x0d54 [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:20:08.0772 0x0d54 tunnel - ok
13:20:08.0802 0x0d54 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
13:20:08.0802 0x0d54 uagp35 - ok
13:20:08.0822 0x0d54 [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:20:08.0832 0x0d54 udfs - ok
13:20:08.0862 0x0d54 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:20:08.0872 0x0d54 UI0Detect - ok
13:20:08.0902 0x0d54 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:20:08.0902 0x0d54 uliagpkx - ok
13:20:08.0932 0x0d54 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:20:08.0932 0x0d54 umbus - ok
13:20:08.0942 0x0d54 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\drivers\umpass.sys
13:20:08.0952 0x0d54 UmPass - ok
13:20:08.0972 0x0d54 [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService C:\Windows\System32\umrdp.dll
13:20:08.0992 0x0d54 UmRdpService - ok
13:20:09.0022 0x0d54 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
13:20:09.0042 0x0d54 upnphost - ok
13:20:09.0072 0x0d54 [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:20:09.0072 0x0d54 usbccgp - ok
13:20:09.0112 0x0d54 [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:20:09.0112 0x0d54 usbcir - ok
13:20:09.0132 0x0d54 [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
13:20:09.0142 0x0d54 usbehci - ok
13:20:09.0172 0x0d54 [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:20:09.0182 0x0d54 usbhub - ok
13:20:09.0202 0x0d54 [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:20:09.0212 0x0d54 usbohci - ok
13:20:09.0232 0x0d54 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:20:09.0232 0x0d54 usbprint - ok
13:20:09.0262 0x0d54 [ FC6B21DB4B5B398AB93DBE59CBF11036, A94094C208F376405C07822A6143001EF1B12AE93205CD8002E87F6EB45F6374 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
13:20:09.0262 0x0d54 usbscan - ok
13:20:09.0292 0x0d54 [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:20:09.0292 0x0d54 USBSTOR - ok
13:20:09.0322 0x0d54 [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
13:20:09.0322 0x0d54 usbuhci - ok
13:20:09.0372 0x0d54 [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\Windows\System32\uxsms.dll
13:20:09.0392 0x0d54 UxSms - ok
13:20:09.0402 0x0d54 [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] VaultSvc C:\Windows\system32\lsass.exe
13:20:09.0412 0x0d54 VaultSvc - ok
13:20:09.0442 0x0d54 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:20:09.0452 0x0d54 vdrvroot - ok
13:20:09.0472 0x0d54 [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\Windows\System32\vds.exe
13:20:09.0502 0x0d54 vds - ok
13:20:09.0522 0x0d54 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:20:09.0522 0x0d54 vga - ok
13:20:09.0542 0x0d54 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\Windows\System32\drivers\vga.sys
13:20:09.0542 0x0d54 VgaSave - ok
13:20:09.0562 0x0d54 [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:20:09.0572 0x0d54 vhdmp - ok
13:20:09.0602 0x0d54 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\Windows\system32\drivers\viaagp.sys
13:20:09.0602 0x0d54 viaagp - ok
13:20:09.0622 0x0d54 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
13:20:09.0622 0x0d54 ViaC7 - ok
13:20:09.0632 0x0d54 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\Windows\system32\drivers\viaide.sys
13:20:09.0632 0x0d54 viaide - ok
13:20:09.0652 0x0d54 [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus C:\Windows\system32\drivers\vmbus.sys
13:20:09.0672 0x0d54 vmbus - ok
13:20:09.0692 0x0d54 [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
13:20:09.0702 0x0d54 VMBusHID - ok
13:20:09.0722 0x0d54 [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:20:09.0722 0x0d54 volmgr - ok
13:20:09.0752 0x0d54 [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:20:09.0762 0x0d54 volmgrx - ok
13:20:09.0782 0x0d54 [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:20:09.0792 0x0d54 volsnap - ok
13:20:09.0832 0x0d54 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
13:20:09.0842 0x0d54 vsmraid - ok
13:20:09.0912 0x0d54 [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\Windows\system32\vssvc.exe
13:20:09.0962 0x0d54 VSS - ok
13:20:09.0972 0x0d54 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:20:09.0972 0x0d54 vwifibus - ok
13:20:10.0012 0x0d54 [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\Windows\system32\w32time.dll
13:20:10.0032 0x0d54 W32Time - ok
13:20:10.0062 0x0d54 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
13:20:10.0062 0x0d54 WacomPen - ok
13:20:10.0102 0x0d54 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:20:10.0102 0x0d54 WANARP - ok
13:20:10.0112 0x0d54 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:20:10.0112 0x0d54 Wanarpv6 - ok
13:20:10.0202 0x0d54 [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:20:10.0252 0x0d54 WatAdminSvc - ok
13:20:10.0322 0x0d54 [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\Windows\system32\wbengine.exe
13:20:10.0381 0x0d54 wbengine - ok
13:20:10.0404 0x0d54 [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:20:10.0416 0x0d54 WbioSrvc - ok
13:20:10.0443 0x0d54 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:20:10.0467 0x0d54 wcncsvc - ok
13:20:10.0484 0x0d54 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:20:10.0484 0x0d54 WcsPlugInService - ok
13:20:10.0514 0x0d54 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\Windows\system32\drivers\wd.sys
13:20:10.0514 0x0d54 Wd - ok
13:20:10.0564 0x0d54 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:20:10.0594 0x0d54 Wdf01000 - ok
13:20:10.0624 0x0d54 [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:20:10.0634 0x0d54 WdiServiceHost - ok
13:20:10.0644 0x0d54 [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:20:10.0654 0x0d54 WdiSystemHost - ok
13:20:10.0684 0x0d54 [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient C:\Windows\System32\webclnt.dll
13:20:10.0704 0x0d54 WebClient - ok
13:20:10.0724 0x0d54 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:20:10.0734 0x0d54 Wecsvc - ok
13:20:10.0754 0x0d54 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:20:10.0774 0x0d54 wercplsupport - ok
13:20:10.0804 0x0d54 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\Windows\System32\WerSvc.dll
13:20:10.0814 0x0d54 WerSvc - ok
13:20:10.0854 0x0d54 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:20:10.0854 0x0d54 WfpLwf - ok
13:20:10.0874 0x0d54 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:20:10.0874 0x0d54 WIMMount - ok
13:20:10.0954 0x0d54 [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
13:20:10.0984 0x0d54 WinDefend - ok
13:20:11.0004 0x0d54 WinHttpAutoProxySvc - ok
13:20:11.0054 0x0d54 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:20:11.0064 0x0d54 Winmgmt - ok
13:20:11.0144 0x0d54 [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM C:\Windows\system32\WsmSvc.dll
13:20:11.0204 0x0d54 WinRM - ok
13:20:11.0274 0x0d54 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:20:11.0284 0x0d54 WinUsb - ok
13:20:11.0334 0x0d54 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\Windows\System32\wlansvc.dll
13:20:11.0374 0x0d54 Wlansvc - ok
13:20:11.0394 0x0d54 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:20:11.0404 0x0d54 WmiAcpi - ok
13:20:11.0434 0x0d54 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:20:11.0444 0x0d54 wmiApSrv - ok
13:20:11.0534 0x0d54 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
13:20:11.0574 0x0d54 WMPNetworkSvc - ok
13:20:11.0634 0x0d54 [ 7520EC4D3C37FE487FE887CAC22524ED, BD84FF8D5B6C60F3CA1810826A39D141775A399A3129EC639250AA248C72CFB9 ] WN111v2 C:\Windows\system32\DRIVERS\WN111v2v.sys
13:20:11.0654 0x0d54 WN111v2 - ok
13:20:11.0684 0x0d54 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:20:11.0704 0x0d54 WPCSvc - ok
13:20:11.0724 0x0d54 [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:20:11.0734 0x0d54 WPDBusEnum - ok
13:20:11.0764 0x0d54 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:20:11.0764 0x0d54 ws2ifsl - ok
13:20:11.0784 0x0d54 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\Windows\system32\wscsvc.dll
13:20:11.0794 0x0d54 wscsvc - ok
13:20:11.0804 0x0d54 WSearch - ok
13:20:11.0924 0x0d54 [ D9B0134913E5EF007AF82A418C503322, 7418DD28C8E968674382F8352AAFFC4DE77887E2B71B8844D615F19432B4C55A ] wuauserv C:\Windows\system32\wuaueng.dll
13:20:12.0004 0x0d54 wuauserv - ok
13:20:12.0034 0x0d54 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:20:12.0034 0x0d54 WudfPf - ok
13:20:12.0074 0x0d54 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:20:12.0084 0x0d54 WUDFRd - ok
13:20:12.0124 0x0d54 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:20:12.0144 0x0d54 wudfsvc - ok
13:20:12.0174 0x0d54 [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc C:\Windows\System32\wwansvc.dll
13:20:12.0184 0x0d54 WwanSvc - ok
13:20:12.0274 0x0d54 [ DD0042F0C3B606A6A8B92D49AFB18AD6, 8D3BE4C93D02AF5F42EC46AF598D6DA40C61D467CB2FEE5E222F9C1E7A84B852 ] YahooAUService C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
13:20:12.0294 0x0d54 YahooAUService - ok
13:20:12.0324 0x0d54 ================ Scan global ===============================
13:20:12.0354 0x0d54 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
13:20:12.0394 0x0d54 [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
13:20:12.0414 0x0d54 [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
13:20:12.0444 0x0d54 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
13:20:12.0494 0x0d54 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
13:20:12.0504 0x0d54 [ Global ] - ok
13:20:12.0504 0x0d54 ================ Scan MBR ==================================
13:20:12.0514 0x0d54 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:20:12.0714 0x0d54 \Device\Harddisk0\DR0 - ok
13:20:12.0714 0x0d54 ================ Scan VBR ==================================
13:20:12.0714 0x0d54 [ 629B0BF5422D8A9B8F34F3EDFADA395D ] \Device\Harddisk0\DR0\Partition1
13:20:12.0724 0x0d54 \Device\Harddisk0\DR0\Partition1 - ok
13:20:12.0724 0x0d54 ================ Scan generic autorun ======================
13:20:12.0794 0x0d54 [ 3E04F1E482357B1FC8B088197C3D9FF8, 85524ADDC27ADC831EBBD24E079B412CFDC69E5F594BD153319087665A28D546 ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
13:20:12.0834 0x0d54 Adobe ARM - ok
13:20:12.0864 0x0d54 [ 68239842340DDFF8993DFD9127553EDA, 9FEC34A35D5A91FEF1C4859AFD0C2538C5CD3E1792FB118487368CFDF66CBCA0 ] C:\Windows\system32\igfxtray.exe
13:20:12.0874 0x0d54 IgfxTray - ok
13:20:12.0939 0x0d54 [ 004763BDF8E48244DBB9FDFDE3065EBC, AA88911C51D73C501C67F62A907425EF91D1820D3ED581F0952619EBB6216F14 ] C:\Windows\system32\hkcmd.exe
13:20:12.0955 0x0d54 HotKeysCmds - ok
13:20:12.0976 0x0d54 [ CD1102E5D340216138C7F56FA8D26998, 805BE128B6A52E304A91AD44B6A7322BAD5F72CD400DB5E74D8EF47424894266 ] C:\Windows\system32\igfxpers.exe
13:20:12.0986 0x0d54 Persistence - ok
13:20:13.0046 0x0d54 [ 1A4847CC028356563814DB495DBD1BBB, 280A490EB6A3A9A6DE63329FB343DF210EF813F97831920F03CB11CDBADA4E36 ] C:\Program Files\Analog Devices\Core\smax4pnp.exe
13:20:13.0106 0x0d54 SoundMAXPnP - ok
13:20:13.0356 0x0d54 [ C2D60F6277707014C1C670A4D27F36E8, 9F02C675BCE2BA500E8C1A4EA60BD553C1257836F5868126037E35772E9F251F ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
13:20:13.0536 0x0d54 AvastUI.exe - ok
13:20:13.0646 0x0d54 [ 82F68EBA0FCEA46BA8919D6A264A833E, 093140F47B047134D36A1D195BC01AA1A17B4B0215C7617A3FF846BC405651E6 ] C:\Program Files\Epson Software\Event Manager\EEventManager.exe
13:20:13.0686 0x0d54 EEventManager - ok
13:20:13.0786 0x0d54 [ 8096AC329AA67D9979515C2FE455EC4C, 397A704DEC7147E200F1AB8190820AF182E66921AF24BFAFD08213611017D49D ] C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe
13:20:13.0836 0x0d54 Web Companion - ok
13:20:13.0866 0x0d54 [ A7196DF316FE1C5D490CF3A3C3C323DF, D5ADEC2B0B13C06D92B4BF012CE27E4903CE8B74180D6974E70116F1B500549E ] C:\Program Files\Probit Software\Easy Speed PC\ESPCLauncher.exe
13:20:13.0876 0x0d54 Easy Speed PC - ok
13:20:13.0956 0x0d54 [ FB9F9392B3D24012D22CDA7F9FF17C18, E66EAA28153AE96CCFA3F8EC4AE8F0A798724C7CE46410A986C7869F7DEFA37B ] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATILBE.EXE
13:20:13.0966 0x0d54 EPLTarget\P0000000000000000 - ok
13:20:14.0026 0x0d54 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] C:\Users\PCs for People\AppData\Local\Google\Update\GoogleUpdate.exe
13:20:14.0036 0x0d54 Google Update - ok
13:20:14.0236 0x0d54 [ 6F142F0DE632B11D25E859550A228E9A, DEBA24995BE89FFFEC4230394C0A96E878C5946BA1B2B66CFCFCDEAB0F9E1151 ] C:\Users\PCs for People\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
13:20:14.0396 0x0d54 Google+ Auto Backup - ok
13:20:14.0436 0x0d54 [ 2F0EAAF91FC7A5C70D1F4BE9B18A1CF5, 6075E8ADD4136AC6497C1FE9CC937E6652FAD5024AED1CF901CE107078955C4F ] C:\Windows\system32\StikyNot.exe
13:20:14.0456 0x0d54 RESTART_STICKY_NOTES - ok
13:20:14.0456 0x0d54 Waiting for KSN requests completion. In queue: 64
13:20:15.0458 0x0d54 Waiting for KSN requests completion. In queue: 64
13:20:16.0458 0x0d54 Waiting for KSN requests completion. In queue: 64
13:20:17.0488 0x0d54 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.0.2206.692 ), 0x41000 ( enabled : updated )
13:20:17.0488 0x0d54 FW detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.0.2206.692 ), 0x40010 ( disabled )
13:20:17.0498 0x0d54 Win FW state via NFP2: enabled
13:20:20.0038 0x0d54 ============================================================
13:20:20.0038 0x0d54 Scan finished
13:20:20.0038 0x0d54 ============================================================
13:20:20.0048 0x194c Detected object count: 0
13:20:20.0048 0x194c Actual detected object count: 0

#5 keekeemama30

keekeemama30
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:21 AM

Posted 05 March 2015 - 02:38 PM

# AdwCleaner v4.111 - Logfile created 05/03/2015 at 13:33:19
# Updated 18/02/2015 by Xplode
# Database : 2015-03-05.1 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x86)
# Username : PCs for People - PCS-1G6RT6AOVC2
# Running from : C:\Users\PCs for People\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : YahooAUService
Service Found : CouponPrinterService

***** [ Files / Folders ] *****

File Found : C:\Users\PCs for People\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC.lnk
File Found : C:\Users\PCs for People\AppData\Roaming\Mozilla\Firefox\Profiles\rlh360di.default\searchplugins\yahoo_ff.xml
Folder Found : C:\Program Files\Coupons
Folder Found : C:\Program Files\Coupons
Folder Found : C:\Program Files\Probit Software
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Yahoo! Companion
Folder Found : C:\Users\PCs for People\AppData\Local\Rocket
Folder Found : C:\Users\PCs for People\AppData\LocalLow\Yahoo! Companion
Folder Found : C:\Users\PCs for People\AppData\Roaming\Probit Software

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Data Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\DriverSupport
Key Found : HKCU\Software\DriverTuner
Key Found : HKCU\Software\DriverTuner_Init
Key Found : HKCU\Software\Rocket Browser
Key Found : HKCU\Software\RocketUpdater
Key Found : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A85A5E6A-DE2C-4F4E-99DC-F469DF5A0EEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
Key Found : HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
Key Found : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Key Found : HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.1.4
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Toolbar
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Easy Speed PC]

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17631


-\\ Mozilla Firefox v35.0.1 (x86 en-US)


-\\ Google Chrome v

[C:\Users\PCs for People\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\PCs for People\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
*************************

AdwCleaner[R0].txt - [3689 bytes] - [05/03/2015 13:33:19]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3748 bytes] ##########

#6 keekeemama30

keekeemama30
  • Topic Starter

  • Members
  • 31 posts
  • OFFLINE
  •  
  • Local time:05:21 AM

Posted 05 March 2015 - 02:46 PM

# AdwCleaner v4.111 - Logfile created 05/03/2015 at 13:33:19
# Updated 18/02/2015 by Xplode
# Database : 2015-03-05.1 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x86)
# Username : PCs for People - PCS-1G6RT6AOVC2
# Running from : C:\Users\PCs for People\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : YahooAUService
Service Found : CouponPrinterService

***** [ Files / Folders ] *****

File Found : C:\Users\PCs for People\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC.lnk
File Found : C:\Users\PCs for People\AppData\Roaming\Mozilla\Firefox\Profiles\rlh360di.default\searchplugins\yahoo_ff.xml
Folder Found : C:\Program Files\Coupons
Folder Found : C:\Program Files\Coupons
Folder Found : C:\Program Files\Probit Software
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Found : C:\ProgramData\Yahoo! Companion
Folder Found : C:\Users\PCs for People\AppData\Local\Rocket
Folder Found : C:\Users\PCs for People\AppData\LocalLow\Yahoo! Companion
Folder Found : C:\Users\PCs for People\AppData\Roaming\Probit Software

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Data Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\DriverSupport
Key Found : HKCU\Software\DriverTuner
Key Found : HKCU\Software\DriverTuner_Init
Key Found : HKCU\Software\Rocket Browser
Key Found : HKCU\Software\RocketUpdater
Key Found : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A85A5E6A-DE2C-4F4E-99DC-F469DF5A0EEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
Key Found : HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
Key Found : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Key Found : HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.1.4
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Toolbar
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Easy Speed PC]

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17631


-\\ Mozilla Firefox v35.0.1 (x86 en-US)


-\\ Google Chrome v

[C:\Users\PCs for People\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\PCs for People\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
*************************

AdwCleaner[R0].txt - [3689 bytes] - [05/03/2015 13:33:19]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3748 bytes] ##########

#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,220 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:21 AM

Posted 05 March 2015 - 03:37 PM

OK good.. we need to remove what ADW has found
 
Double click on AdwCleaner.exe to run the tool again. Vista/Windows 7/8 users right-click and select Run As Administrator
  • The tool will start to update the database, please wait a bit.
  • Click on the Scan button.
  • AdwCleaner will begin to scan your computer like it did before.
  • After the scan has finished...
  • This time click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users