Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Spam or Bug? - Logs


  • This topic is locked This topic is locked
5 replies to this topic

#1 ontrack

ontrack

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:08:34 AM

Posted 29 May 2015 - 09:44 PM

Continuation of topic from here:

http://www.bleepingcomputer.com/forums/t/577612/spam-or-bug/

MiniToolBox by Farbar  Version: 11-05-2015 01
Ran by User (administrator) on 29-05-2015 at 21:27:52
Running from "C:\Users\User\Desktop\TEMP"
Microsoft Windows 7 Professional  Service Pack 1 (X86)
Model: OptiPlex 990 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
 
 
 
========================= IP Configuration: ================================
 
Intel® 82579LM Gigabit Network Connection = Local Area Connection (Connected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
add route prefix=0.0.0.0/0 interface="Local Area Connection" nexthop=192.168.2.1 publish=Yes
add address name="Local Area Connection" address=192.168.2.31 mask=255.255.255.0
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : FRONTDESK1
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Ethernet adapter Local Area Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Intel® 82579LM Gigabit Network Connection
   Physical Address. . . . . . . . . : 18-03-73-1D-25-75
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::603a:54bb:a8d0:91bd%12(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.2.31(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.2.1
   DHCPv6 IAID . . . . . . . . . . . : 253231987
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-17-6A-8B-A7-18-03-73-1D-25-75
   DNS Servers . . . . . . . . . . . : 192.168.2.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter Local Area Connection* 11:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft Teredo Tunneling Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  my.firewall
Address:  192.168.2.1
 
Name:    google.com
Addresses:  2607:f8b0:4009:808::200e
 216.58.216.206
 
 
Pinging google.com [216.58.216.206] with 32 bytes of data:
Reply from 216.58.216.206: bytes=32 time=49ms TTL=53
Reply from 216.58.216.206: bytes=32 time=49ms TTL=53
 
Ping statistics for 216.58.216.206:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 49ms, Maximum = 49ms, Average = 49ms
Server:  my.firewall
Address:  192.168.2.1
 
Name:    yahoo.com
Addresses:  98.139.183.24
 98.138.253.109
 206.190.36.45
 
 
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=52ms TTL=48
Reply from 98.139.183.24: bytes=32 time=53ms TTL=48
 
Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 52ms, Maximum = 53ms, Average = 52ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 12...18 03 73 1d 25 75 ......Intel® 82579LM Gigabit Network Connection
  1...........................Software Loopback Interface 1
 10...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.2.1     192.168.2.31    266
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.2.0    255.255.255.0         On-link      192.168.2.31    266
     192.168.2.31  255.255.255.255         On-link      192.168.2.31    266
    192.168.2.255  255.255.255.255         On-link      192.168.2.31    266
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      192.168.2.31    266
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      192.168.2.31    266
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
          0.0.0.0          0.0.0.0      192.168.2.1  Default 
===========================================================================
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 12    266 fe80::/64                On-link
 12    266 fe80::603a:54bb:a8d0:91bd/128
                                    On-link
  1    306 ff00::/8                 On-link
 12    266 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\system32\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\system32\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (05/29/2015 02:34:37 PM) (Source: Crystal Reports) (User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/29/2015 02:33:59 PM) (Source: Crystal Reports) (User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/29/2015 02:33:40 PM) (Source: Crystal Reports) (User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/29/2015 07:39:58 AM) (Source: Crystal Reports) (User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/28/2015 11:46:54 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/28/2015 02:25:52 PM) (Source: Application Error) (User: )
Description: Faulting application name: ledger.exe, version: 15.1.256.0, time stamp: 0x50a0f389
Faulting module name: ntdll.dll, version: 6.1.7601.18839, time stamp: 0x553e8801
Exception code: 0xc0000374
Fault offset: 0x000c3c23
Faulting process id: 0x19bc
Faulting application start time: 0xledger.exe0
Faulting application path: ledger.exe1
Faulting module path: ledger.exe2
Report Id: ledger.exe3
 
Error: (05/28/2015 00:21:26 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/27/2015 05:01:08 PM) (Source: Crystal Reports) (User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/27/2015 00:47:29 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/26/2015 00:15:23 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
 
System errors:
=============
Error: (05/29/2015 09:13:36 PM) (Source: UmrdpService) (User: )
Description: Driver novaPDF OEM 7 Printer Driver required for printer Send to Dentrix Document Center is unknown. Contact the administrator to install the driver before you log in again.
 
Error: (05/27/2015 07:36:26 AM) (Source: Schannel) (User: NT AUTHORITY)
Description: The following fatal alert was received: 40.
 
Error: (05/27/2015 07:36:26 AM) (Source: Schannel) (User: NT AUTHORITY)
Description: The following fatal alert was received: 40.
 
Error: (05/27/2015 07:36:26 AM) (Source: Schannel) (User: NT AUTHORITY)
Description: The following fatal alert was received: 40.
 
Error: (05/13/2015 03:02:53 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80080005: Security Update for Windows 7 (KB3046002).
 
Error: (05/13/2015 03:02:48 AM) (Source: DCOM) (User: )
Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED}
 
Error: (05/05/2015 02:12:08 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: The following fatal alert was received: 80.
 
Error: (04/13/2015 07:57:04 AM) (Source: Schannel) (User: NT AUTHORITY)
Description: The following fatal alert was received: 80.
 
Error: (03/17/2015 08:05:27 AM) (Source: Service Control Manager) (User: )
Description: The UPnP Device Host service depends on the SSDP Discovery service which failed to start because of the following error: 
%%1070
 
Error: (03/17/2015 08:05:27 AM) (Source: Service Control Manager) (User: )
Description: The SSDP Discovery service hung on starting.
 
 
Microsoft Office Sessions:
=========================
Error: (05/29/2015 02:34:37 PM) (Source: Crystal Reports)(User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/29/2015 02:33:59 PM) (Source: Crystal Reports)(User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/29/2015 02:33:40 PM) (Source: Crystal Reports)(User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/29/2015 07:39:58 AM) (Source: Crystal Reports)(User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/28/2015 11:46:54 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\DEXIS\DPInst\X64\DPInst.exe
 
Error: (05/28/2015 02:25:52 PM) (Source: Application Error)(User: )
Description: ledger.exe15.1.256.050a0f389ntdll.dll6.1.7601.18839553e8801c0000374000c3c2319bc01d0997c1b2d04baC:\Program Files\Dentrix\ledger.exeC:\Windows\SYSTEM32\ntdll.dll5a16269f-056f-11e5-be09-1803731d2575
 
Error: (05/28/2015 00:21:26 AM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\DEXIS\DPInst\X64\DPInst.exe
 
Error: (05/27/2015 05:01:08 PM) (Source: Crystal Reports)(User: )
Description: The keycode assembly, BusinessObjects.Licensing.KeycodeDecoder.dll, cannot be loaded.
 
Error: (05/27/2015 00:47:29 AM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\DEXIS\DPInst\X64\DPInst.exe
 
Error: (05/26/2015 00:15:23 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\DEXIS\DPInst\X64\DPInst.exe
 
 
CodeIntegrity Errors:
===================================
  Date: 2015-05-29 21:16:17.025
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.
 
 
=========================== Installed Programs ============================
 
Adobe AIR (HKLM\...\{AFF7E080-1974-45BF-9310-10DE1A1F5ED0}) (Version: 2.6.0.19140 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM\...\{AC76BA86-0804-1033-1959-001802114130}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Apple Application Support (HKLM\...\{63EC2120-1742-4625-AA47-C6A8AEC9C64C}) (Version: 2.2.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{D4DDFAA1-EC37-4529-AD5B-A433ADE68662}) (Version: 6.0.0.59 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ask Toolbar (HKLM\...\{4F524A2D-5637-006A-76A7-A758B70C1C01}) (Version: 12.28.1.166 - APN, LLC)
ATI Catalyst Install Manager (HKLM\...\{18981B42-4A58-CD2F-DDBB-E44C0D46B2EE}) (Version: 3.0.795.0 - ATI Technologies, Inc.)
AVG 2012 (HKLM\...\{18FB0F02-B07D-4826-AC69-99F6B2C10DFA}) (Version: 12.0.4311 - AVG Technologies) Hidden
AVG 2012 (HKLM\...\{F863E1A8-3CE4-41D4-B6A9-4ACA7B696C1E}) (Version: 12.1.2250 - AVG Technologies) Hidden
AVG 2012 (HKLM\...\AVG) (Version: 2012.1.2250 - AVG Technologies)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Catalyst Control Center - Branding (HKLM\...\{2136B58D-D966-49C7-AD88-011FB089CCBD}) (Version: 1.00.0000 - ATI) Hidden
Catalyst Control Center Graphics Previews Common (HKLM\...\{DCB72B24-65FC-C9E1-6E67-5C2E90339329}) (Version: 2010.1116.2152.39231 - ATI) Hidden
Catalyst Control Center Graphics Previews Vista (HKLM\...\{9AD88BCA-B29F-093B-6528-1CDAFA86CA38}) (Version: 2010.1116.2152.39231 - ATI) Hidden
Catalyst Control Center InstallProxy (HKLM\...\{9344A914-BA20-AF1E-5453-E1A6346CFD2E}) (Version: 2010.1116.2152.39231 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (HKLM\...\{3B18EC59-50B8-2C83-86C5-F91C9B7F2593}) (Version: 2010.1116.2152.39231 - ATI) Hidden
CCC Help Chinese Standard (HKLM\...\{80B875EF-04C3-9007-BB8E-1D60F32303BE}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Chinese Traditional (HKLM\...\{14ADD362-A9D0-DB6D-6445-A99F8EDA5559}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Czech (HKLM\...\{D298995C-4824-F44B-3EB7-035BD22B5190}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Danish (HKLM\...\{369F62CC-BAE9-CCDF-C4D3-8F2B3A398609}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Dutch (HKLM\...\{662A52A4-FE70-9435-47C6-30079DA87C01}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help English (HKLM\...\{375444C6-3CF6-B995-CDB0-F625C295E946}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Finnish (HKLM\...\{9A11B8B8-97EB-2966-21C4-AF9A675CCD0F}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help French (HKLM\...\{3E13E92F-464A-00D3-E497-FB7D4107B696}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help German (HKLM\...\{050FFD99-5C2F-9A1F-416E-AE0F4651CCB1}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Greek (HKLM\...\{95919D2E-A36B-33DF-5F67-0DFB995750A3}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Hungarian (HKLM\...\{951B0E3B-C10A-CC53-FE74-3B1BD78A843E}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Italian (HKLM\...\{8603EC92-211C-738F-0E1E-6A1F528728C5}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Japanese (HKLM\...\{86557367-811F-4C6D-05D8-9352FB75EA8D}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Korean (HKLM\...\{D69AF3B0-C06C-5F96-D855-DEB079847230}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Norwegian (HKLM\...\{267D591E-CC5C-9951-890A-97BD66717E30}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Polish (HKLM\...\{A15CC4B9-8429-E99D-DCF9-6C7789774D94}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Portuguese (HKLM\...\{94C1F0A5-2DE9-98A6-8EC7-0DC8EAA9471B}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Russian (HKLM\...\{3E79966D-59AB-B5F5-19FD-898F4F0B5F32}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Spanish (HKLM\...\{9162CD39-6DD5-0624-6CC6-14806B5F9B8F}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Swedish (HKLM\...\{624B2C5A-4343-E681-8BF7-838D792D8561}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Thai (HKLM\...\{1A4AABD1-8619-9747-3914-0B50A2B420EA}) (Version: 2010.1116.2151.39231 - ATI) Hidden
CCC Help Turkish (HKLM\...\{B06A41D0-2F55-3AC0-14E7-2CE108273414}) (Version: 2010.1116.2151.39231 - ATI) Hidden
ccc-core-static (HKLM\...\{71188404-9807-BFEB-36D8-65269BDD381A}) (Version: 2010.1116.2152.39231 - ATI) Hidden
Cisco WebEx Meetings (HKLM\...\ActiveTouchMeetingClient) (Version:  - Cisco WebEx LLC)
Coupon Printer for Windows (HKLM\...\Coupon Printer for Windows5.0.0.2) (Version: 5.0.0.2 - Coupons.com Incorporated)
Crystal Reports 2008 Runtime SP2 (HKLM\...\{C484CC8D-03CF-4022-89C4-DB4F02E8A15B}) (Version: 12.2.0.290 - Business Objects)
Crystal Reports Basic Runtime for Visual Studio 2008 (HKLM\...\{CE26F10F-C80F-4377-908B-1B7882AE2CE3}) (Version: 10.5.0.0 - Business Objects)
Dentrix G5 (HKLM\...\{A100E691-8D02-4A36-80AE-26392EE98495}) (Version: 15.1.232.0 i2 - Dentrix Dental Systems) Hidden
Dentrix G5 (HKLM\...\InstallShield_{A100E691-8D02-4A36-80AE-26392EE98495}) (Version: 15.1.232.0 i2 - Dentrix Dental Systems)
DENTRIX Image (HKLM\...\{9107A8B5-B6BF-4EC9-9ACB-25571C0D5F53}) (Version: 4.5.16.0 i2 - Dentrix Dental Systems, Inc.) Hidden
DENTRIX Image 4.5 (HKLM\...\{63F4C447-439C-47CC-BC63-AE7D40A7A3A1}) (Version: 4.5.16.0 i2 - Dentrix Dental Systems, Inc.)
DentrixG5PermissionUtility version 15 (HKLM\...\{FFDDCCB2-52E9-4267-8611-7E8895A1D5C1}_is1) (Version: 15 - Imaging Sciences, LLC)
DEXIS Imaging Suite 10 (HKLM\...\{E87048A6-37F2-4B4B-ABCE-29F86944A674}) (Version: 10.1.0 - DEXIS) Hidden
DEXIS Imaging Suite 10 (HKLM\...\InstallShield_{E87048A6-37F2-4B4B-ABCE-29F86944A674}) (Version: 10.1.0 - DEXIS)
DEXIS Integrator for Dentrix (HKLM\...\{84FD33E5-51B9-449E-9E2A-D98DA4ABB377}) (Version: 3.0.3 - DEXIS)
DEXIS Sensor Library (HKLM\...\{6B99ED9C-580D-4009-A122-CD639E6C248D}) (Version: 9.0.2 - DEXIS)
DEXIS Software Suite (HKLM\...\{A24D5C35-9CDE-4C2A-ADD8-D28F9A60DA2F}) (Version: 9.0.2 - DEXIS)
Dolphin 3D (HKLM\...\{6F146B81-5C3A-413B-86AA-569FFA629E5C}) (Version: 11.7.31 - Dolphin Imaging & Management Solutions) Hidden
Dolphin 3D (HKLM\...\InstallShield_{6F146B81-5C3A-413B-86AA-569FFA629E5C}) (Version: 11.7.31 - Dolphin Imaging & Management Solutions)
DTX_LMAddIn (HKCU\...\B4A1700C407386876F90FF16B9C303E45A0EB810) (Version: 1.0.2.28 - DTX_LMAddIn)
DYMO Label v.8 (HKLM\...\DYMO Label v.8) (Version: 8.3.0.1242 - Sanford, L.P.)
EDIdEv Framework EDI (HKLM\...\EDIdEv (32-bit)) (Version:  - Edidev)
Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.27.5 - Google Inc.) Hidden
Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
GPL Ghostscript (HKLM\...\GPL Ghostscript 9.07) (Version: 9.07 - Artifex Software Inc.)
Guru Limited Edition (HKLM\...\{2288BE45-8868-47DD-A501-7F881C9184DD}) (Version: 3.0.0.11 - Reality Engineering, Inc.)
iCloud (HKLM\...\{8CC68433-5837-4075-B81F-EA7E4F14CE60}) (Version: 2.0.2.187 - Apple Inc.)
ImageRAYi Drivers (HKLM\...\{001983B6-F929-4367-AF07-15471E0EA0E8}) (Version: 1.0.4.5 - )
Intel® Network Connections Drivers (HKLM\...\PROSet) (Version: 15.4 - Intel)
iTunes (HKLM\...\{0F6F6876-6334-4977-B5DD-CFC12E193420}) (Version: 10.7.0.21 - Apple Inc.)
Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.670 - Oracle)
Java Auto Updater (HKLM\...\{4A03706F-666A-4037-7777-5F2748764D10}) (Version: 2.1.67.1 - Oracle, Inc.) Hidden
JavaFX 2.1.1 (HKLM\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
LogMeIn (HKLM\...\{F8511796-1457-4A92-BEF7-71080FCF297A}) (Version: 4.1.4132 - LogMeIn, Inc.)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.130.10 - McAfee, Inc.)
Microsoft .NET Framework 1.1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Primary Interop Assemblies (HKLM\...\{50120000-1105-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office Home and Business 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6215.1000 - Microsoft Corporation)
Microsoft SQL Server 2008 Management Objects (HKLM\...\{F5E87B12-3C27-452F-8E78-21D42164FD83}) (Version: 10.0.1600.22 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{D9D937B0-E842-4130-9588-B948E876904A}) (Version: 10.0.1600.22 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Core Components (x86) ENU  (HKLM\...\{FF63121D-91C6-42CC-B341-F1AA729728E7}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Provider Services (x86) ENU  (HKLM\...\{D3A80508-CD83-4CA3-8671-914A1BC78B61}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Windows Journal Viewer (HKLM\...\{43DCF766-6838-4F9A-8C91-D92DA586DFA7}) (Version: 1.5.2315.3 - Microsoft)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Patterson Auto Update (HKLM\...\{14042FD8-DEB1-4300-AFEA-BD0CA55025E0}) (Version: 1.0.2013.810 - Patterson Companies)
Patterson Imaging (HKLM\...\{9607BFFA-B512-42DD-A040-0FEE6212437C}) (Version: 17.00.0045 - Patterson Dental)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.0 - Frank Heindörfer, Philip Chinery)
PowerDVD DX (HKLM\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.6107 - CyberLink Corp.)
QuickTime (HKLM\...\{0E64B098-8018-4256-BA23-C316A43AD9B0}) (Version: 7.72.80.56 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5883 - Realtek Semiconductor Corp.)
Remote Lite (HKLM\...\{6D33938A-50EA-4BC1-9EBA-666FD4A883F1}) (Version: 5.00.0041 - RES, LLC)
RES Updater (HKLM\...\{F408C772-D067-4B44-8816-83E747E63278}) (Version: 1.00.0024 - Renaissance Electronic Services, LLC)
Roxio Creator Audio (HKLM\...\{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}) (Version: 3.7.0 - Roxio) Hidden
Roxio Creator Copy (HKLM\...\{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}) (Version: 3.7.0 - Roxio) Hidden
Roxio Creator Data (HKLM\...\{08E81ABD-79F7-49C2-881F-FD6CB0975693}) (Version: 3.7.0 - Roxio) Hidden
Roxio Creator DE 10.3 (HKLM\...\{09760D42-E223-42AD-8C3E-55B47D0DDAC3}) (Version: 10.3 - Roxio)
Roxio Creator DE 10.3 (HKLM\...\{ED439A64-F018-4DD4-8BA5-328D85AB09AB}) (Version: 3.7.0 - Roxio) Hidden
Roxio Creator Tools (HKLM\...\{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}) (Version: 3.7.0 - Roxio) Hidden
Roxio Express Labeler 3 (HKLM\...\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}) (Version: 3.2.2 - Roxio) Hidden
Roxio Update Manager (HKLM\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio) Hidden
SAP Crystal Reports runtime engine for .NET Framework 4 (32-bit) (HKLM\...\{8D6181F3-CACB-4B48-8B08-981F3A7F318B}) (Version: 13.0.0.99 - SAP)
Send to Dentrix Document Center (novaPDF OEM 7.5 printer) (HKLM\...\Send to Dentrix Document Center_is1) (Version:  - Softland)
SQL Server System CLR Types (HKLM\...\{342D4AD7-EC4C-4EC8-AEA6-E70F5905A490}) (Version: 10.0.1600.22 - Microsoft Corporation)
TechCentral Support Connection (HKLM\...\{398DA395-DF34-4A03-8DE9-3E7A8680BB51}) (Version: 6.2.340 - LogMeIn, Inc.)
TightVNC 2.0.4 (HKLM\...\TightVNC) (Version: 2.0.4 - GlavSoft LLC.)
TVClientServiceInstaller (HKLM\...\{F9A8E1F6-23D8-42FB-9160-963A8639B60C}) (Version: 1.0.0 - Televox Software)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
Yahoo! Messenger (HKLM\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)
Yahoo! Software Update (HKLM\...\Yahoo! Software Update) (Version:  - )
Yahoo! Toolbar (HKLM\...\Yahoo! Companion) (Version:  - Yahoo! Inc.)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 48%
Total physical RAM: 3317.02 MB
Available physical RAM: 1697.34 MB
Total Pagefile: 6632.34 MB
Available Pagefile: 3958.07 MB
Total Virtual: 2047.88 MB
Available Virtual: 1925.12 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:232.75 GB) (Free:169.79 GB) NTFS
3 Drive m: (DATA) (Network) (Total:1554.94 GB) (Free:1304.54 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\FRONTDESK1
 
Administrator            ASPNET                   Guest                    
tlink                    User                     
 
 
**** End of log ****
 
 

21:32:02.0600 0x1dfc  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
21:32:08.0036 0x1dfc  ============================================================
21:32:08.0036 0x1dfc  Current date / time: 2015/05/29 21:32:08.0036
21:32:08.0036 0x1dfc  SystemInfo:
21:32:08.0037 0x1dfc  
21:32:08.0037 0x1dfc  OS Version: 6.1.7601 ServicePack: 1.0
21:32:08.0037 0x1dfc  Product type: Workstation
21:32:08.0037 0x1dfc  ComputerName: FRONTDESK1
21:32:08.0037 0x1dfc  UserName: User
21:32:08.0037 0x1dfc  Windows directory: C:\Windows
21:32:08.0037 0x1dfc  System windows directory: C:\Windows
21:32:08.0037 0x1dfc  Processor architecture: Intel x86
21:32:08.0037 0x1dfc  Number of processors: 4
21:32:08.0037 0x1dfc  Page size: 0x1000
21:32:08.0037 0x1dfc  Boot type: Normal boot
21:32:08.0037 0x1dfc  ============================================================
21:32:08.0206 0x1dfc  KLMD registered as C:\Windows\system32\drivers\93261035.sys
21:32:08.0467 0x1dfc  System UUID: {86400B45-8359-A29A-29F2-385215086CC0}
21:32:08.0742 0x1dfc  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
21:32:08.0743 0x1dfc  ============================================================
21:32:08.0743 0x1dfc  \Device\Harddisk0\DR0:
21:32:08.0744 0x1dfc  MBR partitions:
21:32:08.0744 0x1dfc  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x14000, BlocksNum 0x32000
21:32:08.0744 0x1dfc  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x46000, BlocksNum 0x1D17F170
21:32:08.0744 0x1dfc  ============================================================
21:32:08.0769 0x1dfc  C: <-> \Device\Harddisk0\DR0\Partition2
21:32:08.0769 0x1dfc  ============================================================
21:32:08.0769 0x1dfc  Initialize success
21:32:08.0769 0x1dfc  ============================================================
21:32:14.0510 0x05b4  ============================================================
21:32:14.0510 0x05b4  Scan started
21:32:14.0510 0x05b4  Mode: Manual; 
21:32:14.0510 0x05b4  ============================================================
21:32:14.0510 0x05b4  KSN ping started
21:32:17.0393 0x05b4  KSN ping finished: true
21:32:18.0483 0x05b4  ================ Scan system memory ========================
21:32:18.0483 0x05b4  System memory - ok
21:32:18.0483 0x05b4  ================ Scan services =============================
21:32:18.0661 0x05b4  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
21:32:18.0665 0x05b4  1394ohci - ok
21:32:18.0702 0x05b4  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\Windows\system32\drivers\ACPI.sys
21:32:18.0707 0x05b4  ACPI - ok
21:32:18.0727 0x05b4  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
21:32:18.0728 0x05b4  AcpiPmi - ok
21:32:18.0828 0x05b4  [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
21:32:18.0830 0x05b4  AdobeARMservice - ok
21:32:18.0889 0x05b4  [ B04A4810C6CC205F9DC72DC22E4AB236, 547321F5C28C80D4818372D65E2A33D4BAC593015DD6613B24586FE4B4A95D5D ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:32:18.0895 0x05b4  AdobeFlashPlayerUpdateSvc - ok
21:32:18.0935 0x05b4  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
21:32:18.0956 0x05b4  adp94xx - ok
21:32:18.0988 0x05b4  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\Windows\system32\drivers\adpahci.sys
21:32:18.0993 0x05b4  adpahci - ok
21:32:19.0025 0x05b4  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\Windows\system32\drivers\adpu320.sys
21:32:19.0029 0x05b4  adpu320 - ok
21:32:19.0060 0x05b4  [ 12E6A172D72AFC626727B8635DD17E39, 33B3D109C39DF6EA86AFC3C89A93657906E981D3D22FF854401BC7326990CC08 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
21:32:19.0062 0x05b4  AeLookupSvc - ok
21:32:19.0111 0x05b4  [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD             C:\Windows\system32\drivers\afd.sys
21:32:19.0117 0x05b4  AFD - ok
21:32:19.0140 0x05b4  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\Windows\system32\drivers\agp440.sys
21:32:19.0142 0x05b4  agp440 - ok
21:32:19.0156 0x05b4  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\Windows\system32\drivers\djsvs.sys
21:32:19.0158 0x05b4  aic78xx - ok
21:32:19.0192 0x05b4  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\Windows\System32\alg.exe
21:32:19.0193 0x05b4  ALG - ok
21:32:19.0219 0x05b4  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\Windows\system32\drivers\aliide.sys
21:32:19.0220 0x05b4  aliide - ok
21:32:19.0253 0x05b4  [ 912935C4DF55BEC1C951363D19C9BA92, 903D2FA37BE02412DB38E4416AB2FC2A296539A29F34C18DB25DF15154CE32D2 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
21:32:19.0257 0x05b4  AMD External Events Utility - ok
21:32:19.0272 0x05b4  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
21:32:19.0274 0x05b4  amdagp - ok
21:32:19.0284 0x05b4  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\Windows\system32\drivers\amdide.sys
21:32:19.0285 0x05b4  amdide - ok
21:32:19.0298 0x05b4  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
21:32:19.0300 0x05b4  AmdK8 - ok
21:32:19.0470 0x05b4  [ 82563243A0C2B6864E24846820B57D52, AF6901EA96D901432CC9153167137D1C161602617CF54FEF8BE913C8B0A00C85 ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
21:32:19.0645 0x05b4  amdkmdag - ok
21:32:19.0659 0x05b4  [ 4A9F47A08D29510AFA24638540071A60, 62AFBFFDAF91B18482D18C9733A2F53901AEC5B434257186F053997F5B20366B ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
21:32:19.0663 0x05b4  amdkmdap - ok
21:32:19.0667 0x05b4  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
21:32:19.0669 0x05b4  AmdPPM - ok
21:32:19.0713 0x05b4  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
21:32:19.0715 0x05b4  amdsata - ok
21:32:19.0738 0x05b4  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
21:32:19.0741 0x05b4  amdsbs - ok
21:32:19.0758 0x05b4  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
21:32:19.0759 0x05b4  amdxata - ok
21:32:19.0835 0x05b4  [ 2BB7E9A887F26CDB5C19C76636E85394, 21E22E750DA3682511D1DD906414D7C74B63BAAF8BB9694393465B396201BB4F ] APNMCP          C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
21:32:19.0839 0x05b4  APNMCP - ok
21:32:19.0875 0x05b4  [ 81F97D8F8B3FB94A451CC6F7CF8B2965, 8DEBA4E47E1016D69740C0BB7CDD23852D86E0D42C1C1EA5A847ECB115C38CB1 ] AppID           C:\Windows\system32\drivers\appid.sys
21:32:19.0877 0x05b4  AppID - ok
21:32:19.0921 0x05b4  [ F5090F8FA6757C58E17BAEAA86093636, 5E14CF3032DF5801240F45C59AA93962EA41AA5648A0C6458D16D9B9D95A131F ] AppIDSvc        C:\Windows\System32\appidsvc.dll
21:32:19.0928 0x05b4  AppIDSvc - ok
21:32:19.0954 0x05b4  [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo         C:\Windows\System32\appinfo.dll
21:32:19.0955 0x05b4  Appinfo - ok
21:32:20.0019 0x05b4  [ A5299D04ED225D64CF07A568A3E1BF8C, 6F7E73893127BADC8C9815E9BCC0EB5F6584E254D0D09A0B6A680704C71E0A90 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
21:32:20.0021 0x05b4  Apple Mobile Device - ok
21:32:20.0043 0x05b4  [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt         C:\Windows\System32\appmgmts.dll
21:32:20.0046 0x05b4  AppMgmt - ok
21:32:20.0066 0x05b4  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\Windows\system32\drivers\arc.sys
21:32:20.0069 0x05b4  arc - ok
21:32:20.0085 0x05b4  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
21:32:20.0087 0x05b4  arcsas - ok
21:32:20.0175 0x05b4  [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
21:32:20.0177 0x05b4  aspnet_state - ok
21:32:20.0207 0x05b4  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
21:32:20.0208 0x05b4  AsyncMac - ok
21:32:20.0237 0x05b4  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\Windows\system32\drivers\atapi.sys
21:32:20.0239 0x05b4  atapi - ok
21:32:20.0295 0x05b4  [ AD34E144CD7FF45E4837793DECF20275, 377FD316C2A2B464E49B56EBDBAD7EEB94965FEC81ABCFA007A39C10B8E7152E ] atashost        C:\Windows\system32\atashost.exe
21:32:20.0298 0x05b4  atashost - ok
21:32:20.0357 0x05b4  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:32:20.0422 0x05b4  AudioEndpointBuilder - ok
21:32:20.0481 0x05b4  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
21:32:20.0488 0x05b4  Audiosrv - ok
21:32:20.0515 0x05b4  [ D63D83659EEDF60B3A3E620281A888E5, 25516B505832F8BF3DE5FD7DE8E6C2C1F2C0FBB622501503AF64584AB5ED936E ] AVGIDSHX        C:\Windows\system32\DRIVERS\avgidshx.sys
21:32:20.0516 0x05b4  AVGIDSHX - ok
21:32:20.0550 0x05b4  [ 6671345A6E2669AF1966BAF68EC5620F, 30D24160252532E7CBF8030D4A905D0ED7A7CE83DF183287ED53C3476C801D11 ] Avgldx86        C:\Windows\system32\DRIVERS\avgldx86.sys
21:32:20.0555 0x05b4  Avgldx86 - ok
21:32:20.0579 0x05b4  [ CCDD61545AAEA265977E4B1EFDC74E8C, A41CBDADC80DAD0D4F22E04A6F158C35E6C47A5A8B71CAB8B51F6CEF92607722 ] Avgmfx86        C:\Windows\system32\DRIVERS\avgmfx86.sys
21:32:20.0580 0x05b4  Avgmfx86 - ok
21:32:20.0589 0x05b4  [ 1FD90B28D2C3100BF4500199C8AD6358, 514FB89932B1636D2FE893ABABB24FF6D0C4E494AF4DD3810CA09E15D4270538 ] Avgrkx86        C:\Windows\system32\DRIVERS\avgrkx86.sys
21:32:20.0590 0x05b4  Avgrkx86 - ok
21:32:20.0626 0x05b4  [ 8F045BC7E5C2AB4F450034CE16A3EADC, 5F380111B66A62EE5876AB6EDEE4CC8E9AB0E0326A37E98E2B283FD629BE25B4 ] Avgtdix         C:\Windows\system32\DRIVERS\avgtdix.sys
21:32:20.0633 0x05b4  Avgtdix - ok
21:32:20.0676 0x05b4  [ EA1145DEBCD508FD25BD1E95C4346929, E6D9C84C61DBD69726E4B5BB081B53330E9F7662374D539CF25D8EE3539B9885 ] avgwd           C:\Program Files\AVG\AVG2012\avgwdsvc.exe
21:32:20.0680 0x05b4  avgwd - ok
21:32:20.0716 0x05b4  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\Windows\System32\AxInstSV.dll
21:32:20.0718 0x05b4  AxInstSV - ok
21:32:20.0748 0x05b4  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\Windows\system32\drivers\bxvbdx.sys
21:32:20.0757 0x05b4  b06bdrv - ok
21:32:20.0780 0x05b4  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
21:32:20.0785 0x05b4  b57nd60x - ok
21:32:20.0824 0x05b4  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\Windows\System32\bdesvc.dll
21:32:20.0826 0x05b4  BDESVC - ok
21:32:20.0839 0x05b4  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\Windows\system32\drivers\Beep.sys
21:32:20.0840 0x05b4  Beep - ok
21:32:20.0872 0x05b4  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\Windows\System32\bfe.dll
21:32:20.0881 0x05b4  BFE - ok
21:32:20.0910 0x05b4  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\Windows\System32\qmgr.dll
21:32:20.0925 0x05b4  BITS - ok
21:32:20.0950 0x05b4  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
21:32:20.0952 0x05b4  blbdrive - ok
21:32:20.0999 0x05b4  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
21:32:21.0006 0x05b4  Bonjour Service - ok
21:32:21.0024 0x05b4  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
21:32:21.0026 0x05b4  bowser - ok
21:32:21.0041 0x05b4  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
21:32:21.0042 0x05b4  BrFiltLo - ok
21:32:21.0056 0x05b4  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
21:32:21.0057 0x05b4  BrFiltUp - ok
21:32:21.0084 0x05b4  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\Windows\System32\browser.dll
21:32:21.0087 0x05b4  Browser - ok
21:32:21.0112 0x05b4  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
21:32:21.0118 0x05b4  Brserid - ok
21:32:21.0134 0x05b4  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
21:32:21.0136 0x05b4  BrSerWdm - ok
21:32:21.0167 0x05b4  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
21:32:21.0169 0x05b4  BrUsbMdm - ok
21:32:21.0178 0x05b4  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
21:32:21.0180 0x05b4  BrUsbSer - ok
21:32:21.0186 0x05b4  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
21:32:21.0187 0x05b4  BTHMODEM - ok
21:32:21.0220 0x05b4  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\Windows\system32\bthserv.dll
21:32:21.0222 0x05b4  bthserv - ok
21:32:21.0248 0x05b4  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
21:32:21.0250 0x05b4  cdfs - ok
21:32:21.0273 0x05b4  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
21:32:21.0276 0x05b4  cdrom - ok
21:32:21.0289 0x05b4  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\Windows\System32\certprop.dll
21:32:21.0291 0x05b4  CertPropSvc - ok
21:32:21.0310 0x05b4  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\Windows\system32\drivers\circlass.sys
21:32:21.0312 0x05b4  circlass - ok
21:32:21.0347 0x05b4  [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS            C:\Windows\system32\CLFS.sys
21:32:21.0352 0x05b4  CLFS - ok
21:32:21.0401 0x05b4  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:32:21.0404 0x05b4  clr_optimization_v2.0.50727_32 - ok
21:32:21.0433 0x05b4  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:32:21.0464 0x05b4  clr_optimization_v4.0.30319_32 - ok
21:32:21.0477 0x05b4  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
21:32:21.0479 0x05b4  CmBatt - ok
21:32:21.0504 0x05b4  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
21:32:21.0505 0x05b4  cmdide - ok
21:32:21.0535 0x05b4  [ 3051724F223EA48968B19567DE2A81F4, DCC27DE1B2B35866FC6DBDE95A368E7D0D346B6C3F31D0BACA63DD39B0A8874E ] CNG             C:\Windows\system32\Drivers\cng.sys
21:32:21.0542 0x05b4  CNG - ok
21:32:21.0571 0x05b4  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
21:32:21.0572 0x05b4  Compbatt - ok
21:32:21.0601 0x05b4  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
21:32:21.0602 0x05b4  CompositeBus - ok
21:32:21.0605 0x05b4  COMSysApp - ok
21:32:21.0616 0x05b4  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
21:32:21.0617 0x05b4  crcdisk - ok
21:32:21.0665 0x05b4  [ 49474B3E37969AF4B5C076F42B623AFF, BDA6B57E9B60EF1B67C74099263D33A367AAA035667239F76AB8B268FD3E8F23 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
21:32:21.0675 0x05b4  CryptSvc - ok
21:32:21.0711 0x05b4  [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC             C:\Windows\system32\drivers\csc.sys
21:32:21.0718 0x05b4  CSC - ok
21:32:21.0757 0x05b4  [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService      C:\Windows\System32\cscsvc.dll
21:32:21.0767 0x05b4  CscService - ok
21:32:21.0801 0x05b4  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\Windows\system32\rpcss.dll
21:32:21.0810 0x05b4  DcomLaunch - ok
21:32:21.0839 0x05b4  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\Windows\System32\defragsvc.dll
21:32:21.0843 0x05b4  defragsvc - ok
21:32:21.0865 0x05b4  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
21:32:21.0867 0x05b4  DfsC - ok
21:32:21.0894 0x05b4  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\Windows\system32\dhcpcore.dll
21:32:21.0899 0x05b4  Dhcp - ok
21:32:21.0968 0x05b4  [ E95DE5B790B2D16706DAC8472E51F31A, 9D7A72742D369B9F0E4ACEC9C1850D0D60E975AEBEFF5BA06B954EA3AB3E9FF6 ] DiagTrack       C:\Windows\system32\diagtrack.dll
21:32:22.0006 0x05b4  DiagTrack - ok
21:32:22.0062 0x05b4  [ 26AF93E352D3201C91334FA81A09957F, 4FC27ED090B5D714C7DCAD3CB272E1D011DE1A9B4F591A97FFBAF3DD2D86632C ] Digital Highway Server C:\Program Files\Henry Schein, Inc\HSPS.eServices.DigitalHighway.Services.exe
21:32:22.0064 0x05b4  Digital Highway Server - ok
21:32:22.0085 0x05b4  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\Windows\system32\drivers\discache.sys
21:32:22.0086 0x05b4  discache - ok
21:32:22.0124 0x05b4  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\Windows\system32\drivers\disk.sys
21:32:22.0126 0x05b4  Disk - ok
21:32:22.0143 0x05b4  [ 2A958EF85DB1B61FFCA65044FA4BCE9E, C83511685EE1CE85A5ADF9B5BE96C375A521601F66024BDC3EE044C0B6E85D69 ] dmvsc           C:\Windows\system32\drivers\dmvsc.sys
21:32:22.0145 0x05b4  dmvsc - ok
21:32:22.0165 0x05b4  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\Windows\System32\dnsrslvr.dll
21:32:22.0169 0x05b4  Dnscache - ok
21:32:22.0196 0x05b4  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\Windows\System32\dot3svc.dll
21:32:22.0201 0x05b4  dot3svc - ok
21:32:22.0232 0x05b4  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\Windows\system32\dps.dll
21:32:22.0235 0x05b4  DPS - ok
21:32:22.0265 0x05b4  [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
21:32:22.0266 0x05b4  drmkaud - ok
21:32:22.0308 0x05b4  [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
21:32:22.0333 0x05b4  DXGKrnl - ok
21:32:22.0381 0x05b4  [ 8CCDCA22D95D41EFC79F23B4356F2A5F, B4AD1603109543701B414178D8284208FCFD389FD71F710D1F67D4B5F08FA8A9 ] DymoPnpService  C:\Program Files\DYMO\DYMO Label Software\DymoPnpService.exe
21:32:22.0382 0x05b4  DymoPnpService - ok
21:32:22.0412 0x05b4  [ 94AD8BAE670E55BF646796B56BAC53A4, 87A63C0325D998083FF14644CE6B9E00B272AEBB7C5529A9F3CCF4FC9FA423F2 ] e1cexpress      C:\Windows\system32\DRIVERS\e1c6232.sys
21:32:22.0417 0x05b4  e1cexpress - ok
21:32:22.0436 0x05b4  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\Windows\System32\eapsvc.dll
21:32:22.0439 0x05b4  EapHost - ok
21:32:22.0539 0x05b4  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\Windows\system32\drivers\evbdx.sys
21:32:22.0614 0x05b4  ebdrv - ok
21:32:22.0645 0x05b4  [ 1667D76FBF42B24B9DE3E8B0A7CF06BE, AB9FD4F7B007633FEC552D14932CDEB56DBCE56D152C0EDC91FAFD08E636AADC ] EFS             C:\Windows\System32\lsass.exe
21:32:22.0651 0x05b4  EFS - ok
21:32:22.0693 0x05b4  [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
21:32:22.0706 0x05b4  ehRecvr - ok
21:32:22.0728 0x05b4  [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched         C:\Windows\ehome\ehsched.exe
21:32:22.0731 0x05b4  ehSched - ok
21:32:22.0749 0x05b4  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
21:32:22.0758 0x05b4  elxstor - ok
21:32:22.0769 0x05b4  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
21:32:22.0770 0x05b4  ErrDev - ok
21:32:22.0807 0x05b4  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\Windows\system32\es.dll
21:32:22.0813 0x05b4  EventSystem - ok
21:32:22.0842 0x05b4  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\Windows\system32\drivers\exfat.sys
21:32:22.0845 0x05b4  exfat - ok
21:32:22.0858 0x05b4  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
21:32:22.0861 0x05b4  fastfat - ok
21:32:22.0891 0x05b4  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\Windows\system32\fxssvc.exe
21:32:22.0904 0x05b4  Fax - ok
21:32:22.0930 0x05b4  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\Windows\system32\drivers\fdc.sys
21:32:22.0932 0x05b4  fdc - ok
21:32:22.0946 0x05b4  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\Windows\system32\fdPHost.dll
21:32:22.0947 0x05b4  fdPHost - ok
21:32:22.0953 0x05b4  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\Windows\system32\fdrespub.dll
21:32:22.0954 0x05b4  FDResPub - ok
21:32:22.0964 0x05b4  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
21:32:22.0966 0x05b4  FileInfo - ok
21:32:22.0972 0x05b4  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
21:32:22.0973 0x05b4  Filetrace - ok
21:32:22.0994 0x05b4  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
21:32:22.0995 0x05b4  flpydisk - ok
21:32:23.0024 0x05b4  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
21:32:23.0028 0x05b4  FltMgr - ok
21:32:23.0078 0x05b4  [ 6EC244F102C7F129678E5F7309D1366D, C30DA201AC623DA440B0A0716534557C578218C2A591FA8893CCCBD96B4518F9 ] FontCache       C:\Windows\system32\FntCache.dll
21:32:23.0111 0x05b4  FontCache - ok
21:32:23.0157 0x05b4  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
21:32:23.0158 0x05b4  FontCache3.0.0.0 - ok
21:32:23.0169 0x05b4  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
21:32:23.0171 0x05b4  FsDepends - ok
21:32:23.0190 0x05b4  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
21:32:23.0192 0x05b4  Fs_Rec - ok
21:32:23.0233 0x05b4  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
21:32:23.0237 0x05b4  fvevol - ok
21:32:23.0259 0x05b4  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
21:32:23.0261 0x05b4  gagp30kx - ok
21:32:23.0278 0x05b4  [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
21:32:23.0279 0x05b4  GEARAspiWDM - ok
21:32:23.0310 0x05b4  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\Windows\System32\gpsvc.dll
21:32:23.0324 0x05b4  gpsvc - ok
21:32:23.0390 0x05b4  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
21:32:23.0393 0x05b4  gupdate - ok
21:32:23.0397 0x05b4  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
21:32:23.0399 0x05b4  gupdatem - ok
21:32:23.0416 0x05b4  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
21:32:23.0417 0x05b4  hcw85cir - ok
21:32:23.0458 0x05b4  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:32:23.0464 0x05b4  HdAudAddService - ok
21:32:23.0506 0x05b4  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
21:32:23.0509 0x05b4  HDAudBus - ok
21:32:23.0532 0x05b4  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
21:32:23.0533 0x05b4  HidBatt - ok
21:32:23.0551 0x05b4  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\Windows\system32\drivers\hidbth.sys
21:32:23.0553 0x05b4  HidBth - ok
21:32:23.0571 0x05b4  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\Windows\system32\drivers\hidir.sys
21:32:23.0573 0x05b4  HidIr - ok
21:32:23.0594 0x05b4  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\Windows\system32\hidserv.dll
21:32:23.0596 0x05b4  hidserv - ok
21:32:23.0623 0x05b4  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
21:32:23.0625 0x05b4  HidUsb - ok
21:32:23.0642 0x05b4  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\Windows\system32\kmsvc.dll
21:32:23.0645 0x05b4  hkmsvc - ok
21:32:23.0671 0x05b4  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:32:23.0676 0x05b4  HomeGroupListener - ok
21:32:23.0701 0x05b4  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:32:23.0706 0x05b4  HomeGroupProvider - ok
21:32:23.0717 0x05b4  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
21:32:23.0719 0x05b4  HpSAMD - ok
21:32:23.0761 0x05b4  [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
21:32:23.0770 0x05b4  HTTP - ok
21:32:23.0796 0x05b4  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
21:32:23.0797 0x05b4  hwpolicy - ok
21:32:23.0823 0x05b4  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
21:32:23.0825 0x05b4  i8042prt - ok
21:32:23.0840 0x05b4  [ F4037A3FEDB92DD97C95F320766EA5C9, 3872166AA17E9C19D9F5BBCBC6CA202F6D5CCB1F9E04ED2AA0D43F642B9C85FD ] iaStor          C:\Windows\system32\drivers\iaStor.sys
21:32:23.0846 0x05b4  iaStor - ok
21:32:23.0882 0x05b4  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
21:32:23.0889 0x05b4  iaStorV - ok
21:32:23.0950 0x05b4  [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:32:23.0975 0x05b4  idsvc - ok
21:32:24.0007 0x05b4  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\Windows\system32\drivers\iirsp.sys
21:32:24.0008 0x05b4  iirsp - ok
21:32:24.0055 0x05b4  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\Windows\System32\ikeext.dll
21:32:24.0072 0x05b4  IKEEXT - ok
21:32:24.0186 0x05b4  [ 55DA507FF4762D38427C19DBFDF56763, 3AE888CA975468FE963FF7873A7D67D43743B51339AA07A3089389E5E9ECC895 ] IntcAzAudAddService C:\Windows\system32\drivers\RTDVHDA.sys
21:32:24.0253 0x05b4  IntcAzAudAddService - ok
21:32:24.0287 0x05b4  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\Windows\system32\drivers\intelide.sys
21:32:24.0288 0x05b4  intelide - ok
21:32:24.0315 0x05b4  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
21:32:24.0317 0x05b4  intelppm - ok
21:32:24.0341 0x05b4  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
21:32:24.0344 0x05b4  IPBusEnum - ok
21:32:24.0364 0x05b4  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:32:24.0366 0x05b4  IpFilterDriver - ok
21:32:24.0408 0x05b4  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
21:32:24.0417 0x05b4  iphlpsvc - ok
21:32:24.0428 0x05b4  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
21:32:24.0430 0x05b4  IPMIDRV - ok
21:32:24.0444 0x05b4  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
21:32:24.0446 0x05b4  IPNAT - ok
21:32:24.0505 0x05b4  [ BC0EA61246F8D940FBC5F652D337D6BD, BF018317631937EED13136608831F526BE34AF7E59FEF4863E3EDD205C02E1A7 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
21:32:24.0529 0x05b4  iPod Service - ok
21:32:24.0544 0x05b4  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
21:32:24.0545 0x05b4  IRENUM - ok
21:32:24.0574 0x05b4  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
21:32:24.0576 0x05b4  isapnp - ok
21:32:24.0604 0x05b4  [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
21:32:24.0609 0x05b4  iScsiPrt - ok
21:32:24.0646 0x05b4  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
21:32:24.0648 0x05b4  kbdclass - ok
21:32:24.0654 0x05b4  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
21:32:24.0656 0x05b4  kbdhid - ok
21:32:24.0678 0x05b4  [ 1667D76FBF42B24B9DE3E8B0A7CF06BE, AB9FD4F7B007633FEC552D14932CDEB56DBCE56D152C0EDC91FAFD08E636AADC ] KeyIso          C:\Windows\system32\lsass.exe
21:32:24.0679 0x05b4  KeyIso - ok
21:32:24.0706 0x05b4  [ 6DD2A1064DD8AFBED22E71176E2AF59B, 915F36860DAA72DA89E906A7F6F255A854A2A91EEA536A7C2EDB4A63250F66CC ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
21:32:24.0707 0x05b4  KSecDD - ok
21:32:24.0722 0x05b4  [ 76C0D35167B1369C68388FEDB56A3048, 2788962AB21DBB0A4D130AE5F822E9FDB96D7FF6320E2798714BF18BCB9CAE4F ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
21:32:24.0725 0x05b4  KSecPkg - ok
21:32:24.0762 0x05b4  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\Windows\system32\msdtckrm.dll
21:32:24.0769 0x05b4  KtmRm - ok
21:32:24.0788 0x05b4  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\Windows\system32\srvsvc.dll
21:32:24.0793 0x05b4  LanmanServer - ok
21:32:24.0813 0x05b4  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:32:24.0816 0x05b4  LanmanWorkstation - ok
21:32:24.0852 0x05b4  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
21:32:24.0854 0x05b4  lltdio - ok
21:32:24.0879 0x05b4  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
21:32:24.0884 0x05b4  lltdsvc - ok
21:32:24.0894 0x05b4  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\Windows\System32\lmhsvc.dll
21:32:24.0896 0x05b4  lmhosts - ok
21:32:24.0987 0x05b4  [ E746267EC7124ADC76D3902E26AAF514, 6B052F691CA3F57C84E3E07C7E77318907A11F2C1D8AB418D2D302AF4109C16C ] LMIGuardianSvc  C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
21:32:24.0996 0x05b4  LMIGuardianSvc - ok
21:32:25.0017 0x05b4  [ 26E3BEC8F2F0CFAF9FFE4C7AEF1BC049, CFB86B860FF4F856DA75EB132E06B77C71DC5D994799C08EDC01F2CA8B47AB44 ] LMIInfo         C:\Program Files\LogMeIn\x86\RaInfo.sys
21:32:25.0018 0x05b4  LMIInfo - ok
21:32:25.0055 0x05b4  [ F008D02AD756F64A41CF83114F95FC3F, 900E3824568A1628F98D7067BC32DA4044D5E747F93488F5E3CD36DDCA98616D ] LMIMaint        C:\Program Files\LogMeIn\x86\RaMaint.exe
21:32:25.0059 0x05b4  LMIMaint - ok
21:32:25.0076 0x05b4  [ 4477689E2D8AE6B78BA34C9AF4CC1ED1, 0BC8AF546901E6C20611C5250BD65ACD0C4A8613BD8F8835F0D4680B5777F051 ] lmimirr         C:\Windows\system32\DRIVERS\lmimirr.sys
21:32:25.0077 0x05b4  lmimirr - ok
21:32:25.0085 0x05b4  LMIRfsClientNP - ok
21:32:25.0101 0x05b4  [ 3FAA563DDF853320F90259D455A01D79, D81B5FCC0CBCF9CE18E44A31071D357B12F5016159E24954E50E68D80C9F61B8 ] LMIRfsDriver    C:\Windows\system32\drivers\LMIRfsDriver.sys
21:32:25.0103 0x05b4  LMIRfsDriver - ok
21:32:25.0142 0x05b4  [ 432618FA75B61059D2C57D6A7E55147A, 0E7D771AE9F98667A68C8C07A664D70B71B78EC08D7FEA92AD979E1E049EC0B1 ] LogMeIn         C:\Program Files\LogMeIn\x86\LogMeIn.exe
21:32:25.0149 0x05b4  LogMeIn - ok
21:32:25.0175 0x05b4  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
21:32:25.0178 0x05b4  LSI_FC - ok
21:32:25.0197 0x05b4  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
21:32:25.0200 0x05b4  LSI_SAS - ok
21:32:25.0212 0x05b4  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
21:32:25.0214 0x05b4  LSI_SAS2 - ok
21:32:25.0236 0x05b4  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
21:32:25.0239 0x05b4  LSI_SCSI - ok
21:32:25.0257 0x05b4  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\Windows\system32\drivers\luafv.sys
21:32:25.0259 0x05b4  luafv - ok
21:32:25.0337 0x05b4  [ E4DFBE4C4A9C2BD87C1430F445F3E3CB, 34A0295D0AC37537B010FEC4534535D92AA4C30900DC37444C992C15F86D3AA4 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe
21:32:25.0341 0x05b4  McComponentHostService - ok
21:32:25.0362 0x05b4  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
21:32:25.0366 0x05b4  Mcx2Svc - ok
21:32:25.0380 0x05b4  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\Windows\system32\drivers\megasas.sys
21:32:25.0381 0x05b4  megasas - ok
21:32:25.0405 0x05b4  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
21:32:25.0410 0x05b4  MegaSR - ok
21:32:25.0445 0x05b4  [ D86AC00883B9C98B570E7643AAF8E554, 4B4BDC01DC20F820A9D1E1B8E875B6445F9B920F0AB1E115ADD9651A368911C4 ] MEI             C:\Windows\system32\DRIVERS\HECI.sys
21:32:25.0446 0x05b4  MEI - ok
21:32:25.0469 0x05b4  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\Windows\system32\mmcss.dll
21:32:25.0471 0x05b4  MMCSS - ok
21:32:25.0505 0x05b4  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\Windows\system32\drivers\modem.sys
21:32:25.0506 0x05b4  Modem - ok
21:32:25.0515 0x05b4  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
21:32:25.0516 0x05b4  monitor - ok
21:32:25.0548 0x05b4  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
21:32:25.0549 0x05b4  mouclass - ok
21:32:25.0562 0x05b4  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
21:32:25.0564 0x05b4  mouhid - ok
21:32:25.0606 0x05b4  [ 644905A19D0F37F2233DFCE53BC4BC19, F52CB40AA0FD1EBF8CBF0F3BFB20C47142C637719840877FB93F10D085EB8C2B ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
21:32:25.0608 0x05b4  mountmgr - ok
21:32:25.0634 0x05b4  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\Windows\system32\drivers\mpio.sys
21:32:25.0644 0x05b4  mpio - ok
21:32:25.0664 0x05b4  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
21:32:25.0666 0x05b4  mpsdrv - ok
21:32:25.0696 0x05b4  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\Windows\system32\mpssvc.dll
21:32:25.0711 0x05b4  MpsSvc - ok
21:32:25.0748 0x05b4  [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
21:32:25.0751 0x05b4  MRxDAV - ok
21:32:25.0776 0x05b4  [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
21:32:25.0778 0x05b4  mrxsmb - ok
21:32:25.0789 0x05b4  [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:32:25.0793 0x05b4  mrxsmb10 - ok
21:32:25.0805 0x05b4  [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:32:25.0807 0x05b4  mrxsmb20 - ok
21:32:25.0820 0x05b4  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\Windows\system32\drivers\msahci.sys
21:32:25.0821 0x05b4  msahci - ok
21:32:25.0841 0x05b4  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
21:32:25.0844 0x05b4  msdsm - ok
21:32:25.0864 0x05b4  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\Windows\System32\msdtc.exe
21:32:25.0868 0x05b4  MSDTC - ok
21:32:25.0891 0x05b4  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\Windows\system32\drivers\Msfs.sys
21:32:25.0892 0x05b4  Msfs - ok
21:32:25.0899 0x05b4  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
21:32:25.0900 0x05b4  mshidkmdf - ok
21:32:25.0921 0x05b4  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
21:32:25.0921 0x05b4  msisadrv - ok
21:32:25.0950 0x05b4  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
21:32:25.0953 0x05b4  MSiSCSI - ok
21:32:25.0956 0x05b4  msiserver - ok
21:32:25.0972 0x05b4  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
21:32:25.0973 0x05b4  MSKSSRV - ok
21:32:25.0990 0x05b4  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
21:32:25.0992 0x05b4  MSPCLOCK - ok
21:32:25.0995 0x05b4  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
21:32:25.0996 0x05b4  MSPQM - ok
21:32:26.0007 0x05b4  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
21:32:26.0010 0x05b4  MsRPC - ok
21:32:26.0023 0x05b4  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
21:32:26.0024 0x05b4  mssmbios - ok
21:32:26.0032 0x05b4  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
21:32:26.0033 0x05b4  MSTEE - ok
21:32:26.0036 0x05b4  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
21:32:26.0037 0x05b4  MTConfig - ok
21:32:26.0041 0x05b4  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\Windows\system32\Drivers\mup.sys
21:32:26.0042 0x05b4  Mup - ok
21:32:26.0074 0x05b4  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\Windows\system32\qagentRT.dll
21:32:26.0083 0x05b4  napagent - ok
21:32:26.0118 0x05b4  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
21:32:26.0123 0x05b4  NativeWifiP - ok
21:32:26.0160 0x05b4  [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS            C:\Windows\system32\drivers\ndis.sys
21:32:26.0186 0x05b4  NDIS - ok
21:32:26.0208 0x05b4  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
21:32:26.0209 0x05b4  NdisCap - ok
21:32:26.0232 0x05b4  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
21:32:26.0234 0x05b4  NdisTapi - ok
21:32:26.0255 0x05b4  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
21:32:26.0257 0x05b4  Ndisuio - ok
21:32:26.0281 0x05b4  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
21:32:26.0284 0x05b4  NdisWan - ok
21:32:26.0309 0x05b4  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
21:32:26.0311 0x05b4  NDProxy - ok
21:32:26.0320 0x05b4  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
21:32:26.0321 0x05b4  NetBIOS - ok
21:32:26.0351 0x05b4  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
21:32:26.0354 0x05b4  NetBT - ok
21:32:26.0369 0x05b4  [ 1667D76FBF42B24B9DE3E8B0A7CF06BE, AB9FD4F7B007633FEC552D14932CDEB56DBCE56D152C0EDC91FAFD08E636AADC ] Netlogon        C:\Windows\system32\lsass.exe
21:32:26.0371 0x05b4  Netlogon - ok
21:32:26.0402 0x05b4  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\Windows\System32\netman.dll
21:32:26.0408 0x05b4  Netman - ok
21:32:26.0440 0x05b4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
21:32:26.0456 0x05b4  NetMsmqActivator - ok
21:32:26.0461 0x05b4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
21:32:26.0463 0x05b4  NetPipeActivator - ok
21:32:26.0484 0x05b4  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\Windows\System32\netprofm.dll
21:32:26.0491 0x05b4  netprofm - ok
21:32:26.0496 0x05b4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
21:32:26.0499 0x05b4  NetTcpActivator - ok
21:32:26.0504 0x05b4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
21:32:26.0506 0x05b4  NetTcpPortSharing - ok
21:32:26.0539 0x05b4  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
21:32:26.0541 0x05b4  nfrd960 - ok
21:32:26.0580 0x05b4  [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc          C:\Windows\System32\nlasvc.dll
21:32:26.0585 0x05b4  NlaSvc - ok
21:32:26.0599 0x05b4  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
21:32:26.0600 0x05b4  Npfs - ok
21:32:26.0615 0x05b4  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\Windows\system32\nsisvc.dll
21:32:26.0617 0x05b4  nsi - ok
21:32:26.0623 0x05b4  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
21:32:26.0623 0x05b4  nsiproxy - ok
21:32:26.0682 0x05b4  [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
21:32:26.0715 0x05b4  Ntfs - ok
21:32:26.0728 0x05b4  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\Windows\system32\drivers\Null.sys
21:32:26.0729 0x05b4  Null - ok
21:32:26.0757 0x05b4  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
21:32:26.0760 0x05b4  nvraid - ok
21:32:26.0775 0x05b4  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
21:32:26.0778 0x05b4  nvstor - ok
21:32:26.0801 0x05b4  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
21:32:26.0804 0x05b4  nv_agp - ok
21:32:26.0814 0x05b4  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
21:32:26.0816 0x05b4  ohci1394 - ok
21:32:26.0870 0x05b4  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:32:26.0874 0x05b4  ose - ok
21:32:27.0024 0x05b4  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
21:32:27.0133 0x05b4  osppsvc - ok
21:32:27.0165 0x05b4  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
21:32:27.0171 0x05b4  p2pimsvc - ok
21:32:27.0208 0x05b4  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\Windows\system32\p2psvc.dll
21:32:27.0215 0x05b4  p2psvc - ok
21:32:27.0237 0x05b4  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\Windows\system32\drivers\parport.sys
21:32:27.0239 0x05b4  Parport - ok
21:32:27.0262 0x05b4  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
21:32:27.0263 0x05b4  partmgr - ok
21:32:27.0277 0x05b4  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\Windows\system32\drivers\parvdm.sys
21:32:27.0278 0x05b4  Parvdm - ok
21:32:27.0310 0x05b4  [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc          C:\Windows\System32\pcasvc.dll
21:32:27.0321 0x05b4  PcaSvc - ok
21:32:27.0354 0x05b4  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\Windows\system32\drivers\pci.sys
21:32:27.0357 0x05b4  pci - ok
21:32:27.0387 0x05b4  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\Windows\system32\drivers\pciide.sys
21:32:27.0388 0x05b4  pciide - ok
21:32:27.0408 0x05b4  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
21:32:27.0412 0x05b4  pcmcia - ok
21:32:27.0430 0x05b4  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\Windows\system32\drivers\pcw.sys
21:32:27.0431 0x05b4  pcw - ok
21:32:27.0477 0x05b4  [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
21:32:27.0492 0x05b4  PEAUTH - ok
21:32:27.0549 0x05b4  [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
21:32:27.0574 0x05b4  PeerDistSvc - ok
21:32:27.0642 0x05b4  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\Windows\system32\pla.dll
21:32:27.0685 0x05b4  pla - ok
21:32:27.0723 0x05b4  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
21:32:27.0730 0x05b4  PlugPlay - ok
21:32:27.0756 0x05b4  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
21:32:27.0758 0x05b4  PNRPAutoReg - ok
21:32:27.0773 0x05b4  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
21:32:27.0779 0x05b4  PNRPsvc - ok
21:32:27.0805 0x05b4  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
21:32:27.0812 0x05b4  PolicyAgent - ok
21:32:27.0840 0x05b4  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\Windows\system32\umpo.dll
21:32:27.0860 0x05b4  Power - ok
21:32:27.0886 0x05b4  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
21:32:27.0888 0x05b4  PptpMiniport - ok
21:32:27.0906 0x05b4  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\Windows\system32\drivers\processr.sys
21:32:27.0908 0x05b4  Processor - ok
21:32:27.0938 0x05b4  [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc         C:\Windows\system32\profsvc.dll
21:32:27.0943 0x05b4  ProfSvc - ok
21:32:27.0952 0x05b4  [ 1667D76FBF42B24B9DE3E8B0A7CF06BE, AB9FD4F7B007633FEC552D14932CDEB56DBCE56D152C0EDC91FAFD08E636AADC ] ProtectedStorage C:\Windows\system32\lsass.exe
21:32:27.0954 0x05b4  ProtectedStorage - ok
21:32:27.0993 0x05b4  [ 03E0FE281823BA64B3782F5B38950E73, D47E5536AD28D02B7D784846CFB2F4FD96187BFD64FC07BACDE9DC7B75D1D2E2 ] PxHelp20        C:\Windows\system32\Drivers\PxHelp20.sys
21:32:27.0995 0x05b4  PxHelp20 - ok
21:32:28.0041 0x05b4  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\Windows\system32\drivers\ql2300.sys
21:32:28.0083 0x05b4  ql2300 - ok
21:32:28.0102 0x05b4  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
21:32:28.0105 0x05b4  ql40xx - ok
21:32:28.0127 0x05b4  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\Windows\system32\qwave.dll
21:32:28.0133 0x05b4  QWAVE - ok
21:32:28.0150 0x05b4  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
21:32:28.0152 0x05b4  QWAVEdrv - ok
21:32:28.0167 0x05b4  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
21:32:28.0168 0x05b4  RasAcd - ok
21:32:28.0200 0x05b4  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
21:32:28.0202 0x05b4  RasAgileVpn - ok
21:32:28.0213 0x05b4  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\Windows\System32\rasauto.dll
21:32:28.0217 0x05b4  RasAuto - ok
21:32:28.0230 0x05b4  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
21:32:28.0232 0x05b4  Rasl2tp - ok
21:32:28.0264 0x05b4  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\Windows\System32\rasmans.dll
21:32:28.0271 0x05b4  RasMan - ok
21:32:28.0285 0x05b4  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
21:32:28.0288 0x05b4  RasPppoe - ok
21:32:28.0294 0x05b4  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
21:32:28.0296 0x05b4  RasSstp - ok
21:32:28.0316 0x05b4  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
21:32:28.0320 0x05b4  rdbss - ok
21:32:28.0332 0x05b4  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
21:32:28.0333 0x05b4  rdpbus - ok
21:32:28.0354 0x05b4  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
21:32:28.0354 0x05b4  RDPCDD - ok
21:32:28.0381 0x05b4  [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
21:32:28.0384 0x05b4  RDPDR - ok
21:32:28.0410 0x05b4  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
21:32:28.0410 0x05b4  RDPENCDD - ok
21:32:28.0415 0x05b4  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
21:32:28.0416 0x05b4  RDPREFMP - ok
21:32:28.0451 0x05b4  [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
21:32:28.0455 0x05b4  RDPWD - ok
21:32:28.0481 0x05b4  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
21:32:28.0485 0x05b4  rdyboost - ok
21:32:28.0508 0x05b4  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\Windows\System32\mprdim.dll
21:32:28.0511 0x05b4  RemoteAccess - ok
21:32:28.0537 0x05b4  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
21:32:28.0541 0x05b4  RemoteRegistry - ok
21:32:28.0616 0x05b4  [ 0C636FD2B45732DC796C9D1B9C4C2D14, 3AB8C50B7C72082AC6EEDEBF22F77F957AA3F726D28E4322D6BE9A9D286EFDF8 ] RESUpdater      C:\Program Files\RES Updater\RESUpdaterMain.exe
21:32:28.0618 0x05b4  RESUpdater - ok
21:32:28.0625 0x05b4  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
21:32:28.0627 0x05b4  RpcEptMapper - ok
21:32:28.0651 0x05b4  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\Windows\system32\locator.exe
21:32:28.0652 0x05b4  RpcLocator - ok
21:32:28.0667 0x05b4  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\Windows\system32\rpcss.dll
21:32:28.0674 0x05b4  RpcSs - ok
21:32:28.0692 0x05b4  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
21:32:28.0694 0x05b4  rspndr - ok
21:32:28.0713 0x05b4  [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
21:32:28.0715 0x05b4  s3cap - ok
21:32:28.0727 0x05b4  [ 1667D76FBF42B24B9DE3E8B0A7CF06BE, AB9FD4F7B007633FEC552D14932CDEB56DBCE56D152C0EDC91FAFD08E636AADC ] SamSs           C:\Windows\system32\lsass.exe
21:32:28.0729 0x05b4  SamSs - ok
21:32:28.0764 0x05b4  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
21:32:28.0766 0x05b4  sbp2port - ok
21:32:28.0774 0x05b4  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
21:32:28.0779 0x05b4  SCardSvr - ok
21:32:28.0792 0x05b4  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
21:32:28.0794 0x05b4  scfilter - ok
21:32:28.0837 0x05b4  [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule        C:\Windows\system32\schedsvc.dll
21:32:28.0862 0x05b4  Schedule - ok
21:32:28.0880 0x05b4  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\Windows\System32\certprop.dll
21:32:28.0882 0x05b4  SCPolicySvc - ok
21:32:28.0905 0x05b4  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
21:32:28.0909 0x05b4  SDRSVC - ok
21:32:28.0925 0x05b4  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
21:32:28.0926 0x05b4  secdrv - ok
21:32:28.0943 0x05b4  [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon        C:\Windows\system32\seclogon.dll
21:32:28.0945 0x05b4  seclogon - ok
21:32:28.0953 0x05b4  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\Windows\System32\sens.dll
21:32:28.0956 0x05b4  SENS - ok
21:32:28.0975 0x05b4  [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
21:32:28.0978 0x05b4  SensrSvc - ok
21:32:29.0014 0x05b4  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
21:32:29.0015 0x05b4  Serenum - ok
21:32:29.0023 0x05b4  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
21:32:29.0025 0x05b4  Serial - ok
21:32:29.0050 0x05b4  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\Windows\system32\drivers\sermouse.sys
21:32:29.0052 0x05b4  sermouse - ok
21:32:29.0076 0x05b4  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\Windows\system32\sessenv.dll
21:32:29.0080 0x05b4  SessionEnv - ok
21:32:29.0092 0x05b4  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
21:32:29.0093 0x05b4  sffdisk - ok
21:32:29.0104 0x05b4  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
21:32:29.0106 0x05b4  sffp_mmc - ok
21:32:29.0115 0x05b4  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
21:32:29.0116 0x05b4  sffp_sd - ok
21:32:29.0127 0x05b4  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
21:32:29.0128 0x05b4  sfloppy - ok
21:32:29.0158 0x05b4  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\Windows\System32\ipnathlp.dll
21:32:29.0165 0x05b4  SharedAccess - ok
21:32:29.0194 0x05b4  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:32:29.0202 0x05b4  ShellHWDetection - ok
21:32:29.0219 0x05b4  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\Windows\system32\drivers\sisagp.sys
21:32:29.0220 0x05b4  sisagp - ok
21:32:29.0236 0x05b4  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
21:32:29.0238 0x05b4  SiSRaid2 - ok
21:32:29.0253 0x05b4  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
21:32:29.0256 0x05b4  SiSRaid4 - ok
21:32:29.0280 0x05b4  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
21:32:29.0282 0x05b4  Smb - ok
21:32:29.0311 0x05b4  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
21:32:29.0314 0x05b4  SNMPTRAP - ok
21:32:29.0323 0x05b4  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\Windows\system32\drivers\spldr.sys
21:32:29.0324 0x05b4  spldr - ok
21:32:29.0345 0x05b4  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\Windows\System32\spoolsv.exe
21:32:29.0353 0x05b4  Spooler - ok
21:32:29.0463 0x05b4  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\Windows\system32\sppsvc.exe
21:32:29.0539 0x05b4  sppsvc - ok
21:32:29.0564 0x05b4  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\Windows\system32\sppuinotify.dll
21:32:29.0567 0x05b4  sppuinotify - ok
21:32:29.0595 0x05b4  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
21:32:29.0601 0x05b4  srv - ok
21:32:29.0629 0x05b4  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
21:32:29.0635 0x05b4  srv2 - ok
21:32:29.0646 0x05b4  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
21:32:29.0649 0x05b4  srvnet - ok
21:32:29.0669 0x05b4  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
21:32:29.0674 0x05b4  SSDPSRV - ok
21:32:29.0681 0x05b4  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
21:32:29.0684 0x05b4  SstpSvc - ok
21:32:29.0692 0x05b4  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\Windows\system32\drivers\stexstor.sys
21:32:29.0694 0x05b4  stexstor - ok
21:32:29.0719 0x05b4  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\Windows\System32\wiaservc.dll
21:32:29.0730 0x05b4  StiSvc - ok
21:32:29.0770 0x05b4  [ E476C66713C842F58E61A95826ED1D57, 33632E8AE6D868EAC7D676E4236E78A0B1E613C9A5FA2470A0419B2E9A6CAE4B ] stllssvr        C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
21:32:29.0773 0x05b4  stllssvr - ok
21:32:29.0794 0x05b4  [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
21:32:29.0795 0x05b4  storflt - ok
21:32:29.0820 0x05b4  [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc         C:\Windows\system32\storsvc.dll
21:32:29.0823 0x05b4  StorSvc - ok
21:32:29.0846 0x05b4  [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
21:32:29.0848 0x05b4  storvsc - ok
21:32:29.0860 0x05b4  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
21:32:29.0861 0x05b4  swenum - ok
21:32:29.0889 0x05b4  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\Windows\System32\swprv.dll
21:32:29.0896 0x05b4  swprv - ok
21:32:29.0950 0x05b4  [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain         C:\Windows\system32\sysmain.dll
21:32:29.0984 0x05b4  SysMain - ok
21:32:30.0000 0x05b4  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
21:32:30.0003 0x05b4  TabletInputService - ok
21:32:30.0029 0x05b4  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\Windows\System32\tapisrv.dll
21:32:30.0035 0x05b4  TapiSrv - ok
21:32:30.0044 0x05b4  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\Windows\System32\tbssvc.dll
21:32:30.0047 0x05b4  TBS - ok
21:32:30.0104 0x05b4  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
21:32:30.0138 0x05b4  Tcpip - ok
21:32:30.0174 0x05b4  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
21:32:30.0193 0x05b4  TCPIP6 - ok
21:32:30.0235 0x05b4  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
21:32:30.0237 0x05b4  tcpipreg - ok
21:32:30.0257 0x05b4  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
21:32:30.0258 0x05b4  TDPIPE - ok
21:32:30.0274 0x05b4  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
21:32:30.0275 0x05b4  TDTCP - ok
21:32:30.0305 0x05b4  [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
21:32:30.0308 0x05b4  tdx - ok
21:32:30.0362 0x05b4  [ D4D759CF0217291745A58EE8044D1CA0, D391E33F05265F504A5B567E602A92542D7FA5229CED517E6C763FE5E8837760 ] Televox Client  C:\TVClient\TVClient.exe
21:32:30.0364 0x05b4  Televox Client - ok
21:32:30.0374 0x05b4  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
21:32:30.0375 0x05b4  TermDD - ok
21:32:30.0420 0x05b4  [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService     C:\Windows\System32\termsrv.dll
21:32:30.0435 0x05b4  TermService - ok
21:32:30.0457 0x05b4  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\Windows\system32\themeservice.dll
21:32:30.0460 0x05b4  Themes - ok
21:32:30.0468 0x05b4  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\Windows\system32\mmcss.dll
21:32:30.0470 0x05b4  THREADORDER - ok
21:32:30.0478 0x05b4  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\Windows\System32\trkwks.dll
21:32:30.0482 0x05b4  TrkWks - ok
21:32:30.0515 0x05b4  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:32:30.0520 0x05b4  TrustedInstaller - ok
21:32:30.0552 0x05b4  [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
21:32:30.0553 0x05b4  tssecsrv - ok
21:32:30.0574 0x05b4  [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
21:32:30.0576 0x05b4  TsUsbFlt - ok
21:32:30.0598 0x05b4  [ 01246F0BAAD7B68EC0F472AA41E33282, 51F975AF029AD015576FFFA3E88F5DBB8B40C7CD30ECDEDE8AFABCB08C954199 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
21:32:30.0600 0x05b4  TsUsbGD - ok
21:32:30.0636 0x05b4  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
21:32:30.0639 0x05b4  tunnel - ok
21:32:30.0712 0x05b4  [ AAF458CC200326BEF602B5339400BF86, DD47C58A855E4FE2D9AFD9912C0661871F0A4CA385D864267F5245480AB8F4D7 ] tvnserver       C:\Program Files\TightVNC\tvnserver.exe
21:32:30.0737 0x05b4  tvnserver - ok
21:32:30.0762 0x05b4  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
21:32:30.0764 0x05b4  uagp35 - ok
21:32:30.0840 0x05b4  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
21:32:30.0845 0x05b4  udfs - ok
21:32:30.0874 0x05b4  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\Windows\system32\UI0Detect.exe
21:32:30.0877 0x05b4  UI0Detect - ok
21:32:30.0892 0x05b4  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
21:32:30.0894 0x05b4  uliagpkx - ok
21:32:30.0897 0x05b4  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
21:32:30.0899 0x05b4  umbus - ok
21:32:30.0919 0x05b4  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\Windows\system32\drivers\umpass.sys
21:32:30.0920 0x05b4  UmPass - ok
21:32:30.0946 0x05b4  [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService    C:\Windows\System32\umrdp.dll
21:32:30.0951 0x05b4  UmRdpService - ok
21:32:30.0963 0x05b4  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\Windows\System32\upnphost.dll
21:32:30.0970 0x05b4  upnphost - ok
21:32:31.0007 0x05b4  [ 73B41F4EAD65F355962168D766AF0F2E, AA33CAE55D4766C9F1E9F1B50EEAE1CA4BE968380C89892A46D2D25EAEEDC64D ] USBAAPL         C:\Windows\system32\Drivers\usbaapl.sys
21:32:31.0009 0x05b4  USBAAPL - ok
21:32:31.0042 0x05b4  [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
21:32:31.0045 0x05b4  usbccgp - ok
21:32:31.0082 0x05b4  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\Windows\system32\drivers\usbcir.sys
21:32:31.0084 0x05b4  usbcir - ok
21:32:31.0107 0x05b4  [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci         C:\Windows\system32\drivers\usbehci.sys
21:32:31.0109 0x05b4  usbehci - ok
21:32:31.0121 0x05b4  [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
21:32:31.0127 0x05b4  usbhub - ok
21:32:31.0151 0x05b4  [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
21:32:31.0152 0x05b4  usbohci - ok
21:32:31.0173 0x05b4  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
21:32:31.0174 0x05b4  usbprint - ok
21:32:31.0189 0x05b4  [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:32:31.0191 0x05b4  USBSTOR - ok
21:32:31.0206 0x05b4  [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
21:32:31.0208 0x05b4  usbuhci - ok
21:32:31.0227 0x05b4  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\Windows\System32\uxsms.dll
21:32:31.0230 0x05b4  UxSms - ok
21:32:31.0235 0x05b4  [ 1667D76FBF42B24B9DE3E8B0A7CF06BE, AB9FD4F7B007633FEC552D14932CDEB56DBCE56D152C0EDC91FAFD08E636AADC ] VaultSvc        C:\Windows\system32\lsass.exe
21:32:31.0237 0x05b4  VaultSvc - ok
21:32:31.0260 0x05b4  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
21:32:31.0261 0x05b4  vdrvroot - ok
21:32:31.0286 0x05b4  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\Windows\System32\vds.exe
21:32:31.0300 0x05b4  vds - ok
21:32:31.0324 0x05b4  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
21:32:31.0325 0x05b4  vga - ok
21:32:31.0337 0x05b4  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\Windows\System32\drivers\vga.sys
21:32:31.0338 0x05b4  VgaSave - ok
21:32:31.0349 0x05b4  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
21:32:31.0353 0x05b4  vhdmp - ok
21:32:31.0372 0x05b4  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
21:32:31.0374 0x05b4  viaagp - ok
21:32:31.0386 0x05b4  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\Windows\system32\drivers\viac7.sys
21:32:31.0388 0x05b4  ViaC7 - ok
21:32:31.0425 0x05b4  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\Windows\system32\drivers\viaide.sys
21:32:31.0426 0x05b4  viaide - ok
21:32:31.0455 0x05b4  [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus           C:\Windows\system32\drivers\vmbus.sys
21:32:31.0459 0x05b4  vmbus - ok
21:32:31.0477 0x05b4  [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
21:32:31.0478 0x05b4  VMBusHID - ok
21:32:31.0489 0x05b4  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
21:32:31.0491 0x05b4  volmgr - ok
21:32:31.0509 0x05b4  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
21:32:31.0515 0x05b4  volmgrx - ok
21:32:31.0539 0x05b4  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
21:32:31.0544 0x05b4  volsnap - ok
21:32:31.0564 0x05b4  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
21:32:31.0567 0x05b4  vsmraid - ok
21:32:31.0607 0x05b4  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\Windows\system32\vssvc.exe
21:32:31.0640 0x05b4  VSS - ok
21:32:31.0664 0x05b4  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
21:32:31.0665 0x05b4  vwifibus - ok
21:32:31.0696 0x05b4  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\Windows\system32\w32time.dll
21:32:31.0703 0x05b4  W32Time - ok
21:32:31.0712 0x05b4  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
21:32:31.0714 0x05b4  WacomPen - ok
21:32:31.0745 0x05b4  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
21:32:31.0747 0x05b4  WANARP - ok
21:32:31.0750 0x05b4  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
21:32:31.0752 0x05b4  Wanarpv6 - ok
21:32:31.0821 0x05b4  [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
21:32:31.0855 0x05b4  WatAdminSvc - ok
21:32:31.0919 0x05b4  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\Windows\system32\wbengine.exe
21:32:31.0953 0x05b4  wbengine - ok
21:32:31.0974 0x05b4  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
21:32:31.0979 0x05b4  WbioSrvc - ok
21:32:32.0008 0x05b4  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\Windows\System32\wcncsvc.dll
21:32:32.0015 0x05b4  wcncsvc - ok
21:32:32.0022 0x05b4  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:32:32.0024 0x05b4  WcsPlugInService - ok
21:32:32.0037 0x05b4  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\Windows\system32\drivers\wd.sys
21:32:32.0038 0x05b4  Wd - ok
21:32:32.0079 0x05b4  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
21:32:32.0088 0x05b4  Wdf01000 - ok
21:32:32.0119 0x05b4  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost  C:\Windows\system32\wdi.dll
21:32:32.0122 0x05b4  WdiServiceHost - ok
21:32:32.0126 0x05b4  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost   C:\Windows\system32\wdi.dll
21:32:32.0128 0x05b4  WdiSystemHost - ok
21:32:32.0163 0x05b4  [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient       C:\Windows\System32\webclnt.dll
21:32:32.0168 0x05b4  WebClient - ok
21:32:32.0184 0x05b4  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\Windows\system32\wecsvc.dll
21:32:32.0189 0x05b4  Wecsvc - ok
21:32:32.0201 0x05b4  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
21:32:32.0204 0x05b4  wercplsupport - ok
21:32:32.0220 0x05b4  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\Windows\System32\WerSvc.dll
21:32:32.0224 0x05b4  WerSvc - ok
21:32:32.0242 0x05b4  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
21:32:32.0243 0x05b4  WfpLwf - ok
21:32:32.0253 0x05b4  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
21:32:32.0254 0x05b4  WIMMount - ok
21:32:32.0306 0x05b4  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
21:32:32.0331 0x05b4  WinDefend - ok
21:32:32.0350 0x05b4  WinHttpAutoProxySvc - ok
21:32:32.0392 0x05b4  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
21:32:32.0396 0x05b4  Winmgmt - ok
21:32:32.0455 0x05b4  [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM           C:\Windows\system32\WsmSvc.dll
21:32:32.0489 0x05b4  WinRM - ok
21:32:32.0566 0x05b4  [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb          C:\Windows\system32\drivers\WinUsb.sys
21:32:32.0568 0x05b4  WinUsb - ok
21:32:32.0612 0x05b4  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\Windows\System32\wlansvc.dll
21:32:32.0637 0x05b4  Wlansvc - ok
21:32:32.0649 0x05b4  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
21:32:32.0650 0x05b4  WmiAcpi - ok
21:32:32.0679 0x05b4  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
21:32:32.0682 0x05b4  wmiApSrv - ok
21:32:32.0737 0x05b4  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
21:32:32.0771 0x05b4  WMPNetworkSvc - ok
21:32:32.0787 0x05b4  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
21:32:32.0790 0x05b4  WPCSvc - ok
21:32:32.0810 0x05b4  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
21:32:32.0814 0x05b4  WPDBusEnum - ok
21:32:32.0842 0x05b4  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
21:32:32.0844 0x05b4  ws2ifsl - ok
21:32:32.0852 0x05b4  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\Windows\System32\wscsvc.dll
21:32:32.0856 0x05b4  wscsvc - ok
21:32:32.0858 0x05b4  WSearch - ok
21:32:32.0940 0x05b4  [ 7E5C454A3F986FEBAD075DB8D915917E, 9E9147DDACD075958689523130DB92FC4ED0E38433461D8AB8792BCFBD9376DA ] wuauserv        C:\Windows\system32\wuaueng.dll
21:32:32.0991 0x05b4  wuauserv - ok
21:32:33.0013 0x05b4  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
21:32:33.0015 0x05b4  WudfPf - ok
21:32:33.0051 0x05b4  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\Windows\system32\drivers\WUDFRd.sys
21:32:33.0055 0x05b4  WUDFRd - ok
21:32:33.0077 0x05b4  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
21:32:33.0081 0x05b4  wudfsvc - ok
21:32:33.0109 0x05b4  [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc         C:\Windows\System32\wwansvc.dll
21:32:33.0114 0x05b4  WwanSvc - ok
21:32:33.0178 0x05b4  [ DD0042F0C3B606A6A8B92D49AFB18AD6, 8D3BE4C93D02AF5F42EC46AF598D6DA40C61D467CB2FEE5E222F9C1E7A84B852 ] YahooAUService  C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
21:32:33.0193 0x05b4  YahooAUService - ok
21:32:33.0197 0x05b4  ================ Scan global ===============================
21:32:33.0218 0x05b4  [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
21:32:33.0244 0x05b4  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
21:32:33.0253 0x05b4  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
21:32:33.0272 0x05b4  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
21:32:33.0310 0x05b4  [ 0780A42DBD7D9969F9BF4A19AA4285B5, 8EA41124A4E97732C5DAA616457FBA7111CB38986F3427FA776ED00BC1407171 ] C:\Windows\system32\services.exe
21:32:33.0316 0x05b4  [ Global ] - ok
21:32:33.0316 0x05b4  ================ Scan MBR ==================================
21:32:33.0325 0x05b4  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:32:33.0538 0x05b4  \Device\Harddisk0\DR0 - ok
21:32:33.0539 0x05b4  ================ Scan VBR ==================================
21:32:33.0541 0x05b4  [ 7F56F3D464BD02D12B5C6913FD035842 ] \Device\Harddisk0\DR0\Partition1
21:32:33.0542 0x05b4  \Device\Harddisk0\DR0\Partition1 - ok
21:32:33.0544 0x05b4  [ 073DFA08753F8C2E851BC9A2CC3A0736 ] \Device\Harddisk0\DR0\Partition2
21:32:33.0545 0x05b4  \Device\Harddisk0\DR0\Partition2 - ok
21:32:33.0545 0x05b4  ================ Scan generic autorun ======================
21:32:33.0600 0x05b4  [ 362F71D514064F7B2B9C2B15531F93A3, 1CB2CA4C7CFB62CE4D9A0A6044C1BFDB1A9FE3397336C6367CE91232FF6EFBDE ] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
21:32:33.0628 0x05b4  StartCCC - ok
21:32:33.0664 0x05b4  [ 0D70B3218B3B810B769A4A45A4E93700, 112ECA16A54474AB97D5DF2C23C3AEE9760978A8355C8B2EE92706B2248ABEB4 ] C:\BGINFO\BGINFO.EXE
21:32:33.0697 0x05b4  BGINFO - ok
21:32:33.0737 0x05b4  [ C07A6F058A7DB354EBEE77DF9537127A, 14CEFA21065270AD92F9AD091C5EF90701B4CF24FEFC51C9610A3335541EA763 ] C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
21:32:33.0741 0x05b4  PDVDDXSrv - ok
21:32:33.0770 0x05b4  [ AAF458CC200326BEF602B5339400BF86, DD47C58A855E4FE2D9AFD9912C0661871F0A4CA385D864267F5245480AB8F4D7 ] C:\Program Files\TightVNC\tvnserver.exe
21:32:33.0781 0x05b4  tvncontrol - ok
21:32:33.0887 0x05b4  [ 371BA71B566260932DCCCF843BF6C7E7, 3F34769DD1EA9C6CBAA3DC099B2512E4D5B888A6B76A568BB79ED08452C7EA17 ] C:\Program Files\AVG\AVG2012\avgtray.exe
21:32:33.0953 0x05b4  AVG_TRAY - ok
21:32:34.0031 0x05b4  [ 78A633EDFECD0D937B0BF0F2FD21B88B, 1E85B0F1F87548AB8B2A5DF3451D605DB83B8CED61B49289139176E6BD60EB32 ] C:\Program Files\Realtek\Audio\HDA\RtDCpl.exe
21:32:34.0097 0x05b4  RtHDVCpl - ok
21:32:34.0112 0x05b4  DLSService - ok
21:32:34.0146 0x05b4  [ 82CC8F77E9EC61C6B4D48DD4D5CA78E7, 51F3072F9AB9C6B8FF62731834530870A517F3099D1E94E8E2F953484B7A04FE ] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
21:32:34.0148 0x05b4  APSDaemon - ok
21:32:34.0197 0x05b4  [ 4AFFDCAADCB1DBBFFAF06C7F82E7F6FC, 8BAD14D327C60B4CBC00278802A5F6453D641EFC2EF97D90E7AB579758DF7FFC ] C:\Program Files\iTunes\iTunesHelper.exe
21:32:34.0205 0x05b4  iTunesHelper - ok
21:32:34.0239 0x05b4  [ 916A2C4EB028604783FD5EA169236C1D, C97DAA1BE5C912DDCEDBA7619631BB98F4A9B32B1E40C5374A64E25305E0A1C4 ] C:\Program Files\QuickTime\QTTask.exe
21:32:34.0247 0x05b4  QuickTime Task - ok
21:32:34.0351 0x05b4  [ 4F1F1783FBD5EDCE63CD546813E4AAFE, BF6A76BB77B58C861B199AA10B4E7310F0FAEE65744655B9C6FAC71E3305BDDB ] C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
21:32:34.0400 0x05b4  ApnTBMon - ok
21:32:34.0468 0x05b4  [ 234051C0D242A6F4A79AE5212C1323D4, CA40BDB2AC40D1685310B4D56E97C91B72626D5C2CC3A986139CB37BA1071E7E ] C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
21:32:34.0470 0x05b4  LogMeIn GUI - ok
21:32:34.0555 0x05b4  [ B072823170EB7BE1E38FB94135AC2072, A40910E7F25970A57C32C622649C968B0034B650DA0AEC9C94626A216877DD02 ] C:\Patterson Imaging\Shared Files\esinetconnect.exe
21:32:34.0646 0x05b4  ESInetConnect - ok
21:32:34.0690 0x05b4  [ 308F2EE28005510DE616409148CF077B, A2126CB185B0053086BDD6F0A16A503F6CA629AC677E4B7AE6D43C770061D087 ] C:\Program Files\Common Files\Java\Java Update\jusched.exe
21:32:34.0695 0x05b4  SunJavaUpdateSched - ok
21:32:34.0746 0x05b4  [ 9EC8E9CB624799FB68ACE719B8079D6A, 60078752C81ABAC5EFCB76CC4A4E74D07EDA33C1A9B1796252E99EEDF88EDF0B ] C:\Program Files\RES Updater\RESTrayNotifier.exe
21:32:34.0747 0x05b4  RES Updater - ok
21:32:34.0845 0x05b4  [ 4BB1AB2FB9A72D4610EA6FA22F86F9B2, B1EDED932CCB7CDABAAFB4EAFD4C92C7C2B0EFD82E2BCCC53E9043B5F7A10319 ] C:\Users\Public\res\Filewatcher.exe
21:32:34.0846 0x05b4  Filewatcher - ok
21:32:34.0918 0x05b4  [ 3E04F1E482357B1FC8B088197C3D9FF8, 85524ADDC27ADC831EBBD24E079B412CFDC69E5F594BD153319087665A28D546 ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
21:32:34.0943 0x05b4  Adobe ARM - ok
21:32:35.0013 0x05b4  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
21:32:35.0046 0x05b4  Sidebar - ok
21:32:35.0079 0x05b4  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
21:32:35.0082 0x05b4  mctadmin - ok
21:32:35.0106 0x05b4  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
21:32:35.0123 0x05b4  Sidebar - ok
21:32:35.0128 0x05b4  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
21:32:35.0130 0x05b4  mctadmin - ok
21:32:35.0175 0x05b4  [ 16213CF3E7BC2BABF5A3874CF9BFAEBD, 9220FBCA1DE85847043EBAD82AA2B1079C606FBFED6C1B5583874FC356F11D02 ] C:\Program Files\Dentrix\DtxQuickLaunch.exe
21:32:35.0177 0x05b4  DtxQuickLaunch.exe - ok
21:32:35.0374 0x05b4  [ 127CD00925C1A2B759765C5B9600DE30, 22A9710B84873622EB1027552F3E7CC3E054FF367010149822F476A143556335 ] C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
21:32:35.0555 0x05b4  Messenger (Yahoo!) - ok
21:32:35.0585 0x05b4  [ 2F0EAAF91FC7A5C70D1F4BE9B18A1CF5, 6075E8ADD4136AC6497C1FE9CC937E6652FAD5024AED1CF901CE107078955C4F ] C:\Windows\System32\StikyNot.exe
21:32:35.0592 0x05b4  RESTART_STICKY_NOTES - ok
21:32:35.0660 0x05b4  [ 7E6B4AD487ED241D8224108E8E86A351, 8246F75DF64BBCC35CDC8DFF2F5157AD9523179344AC0517D42BAC99F2E87E8D ] C:\Windows\system32\Macromed\Flash\FlashUtil32_17_0_0_169_ActiveX.exe
21:32:35.0685 0x05b4  FlashPlayerUpdate - ok
21:32:35.0690 0x05b4  [ 16213CF3E7BC2BABF5A3874CF9BFAEBD, 9220FBCA1DE85847043EBAD82AA2B1079C606FBFED6C1B5583874FC356F11D02 ] C:\Program Files\Dentrix\DtxQuickLaunch.exe
21:32:35.0691 0x05b4  DtxQuickLaunch.exe - ok
21:32:35.0692 0x05b4  Waiting for KSN requests completion. In queue: 336
21:32:36.0692 0x05b4  Waiting for KSN requests completion. In queue: 28
21:32:37.0693 0x05b4  Waiting for KSN requests completion. In queue: 28
21:32:38.0740 0x05b4  AV detected via SS2: AVG Anti-Virus Business Edition 2012, C:\Program Files\AVG\AVG2012\avgwsc.exe ( 12.0.0.2222 ), 0x41000 ( enabled : updated )
21:32:38.0743 0x05b4  Win FW state via NFP2: disabled
21:32:41.0534 0x05b4  ============================================================
21:32:41.0534 0x05b4  Scan finished
21:32:41.0534 0x05b4  ============================================================
21:32:41.0542 0x0154  Detected object count: 0
21:32:41.0542 0x0154  Actual detected object count: 0

Edited by Platypus, 29 May 2015 - 11:49 PM.


BC AdBot (Login to Remove)

 


#2 ontrack

ontrack
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:08:34 AM

Posted 29 May 2015 - 10:05 PM

# AdwCleaner v4.205 - Logfile created 29/05/2015 at 21:46:27
# Updated 21/05/2015 by Xplode
# Database : 2015-05-25.3 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x86)
# Username : User - FRONTDESK1
# Running from : C:\Users\User\Desktop\TEMP\AdwCleaner.exe
# Option : Cleaning
 
***** [ Services ] *****
 
Service Deleted : APNMCP
[x] Not Deleted : YahooAUService
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\ProgramData\Yahoo! Companion
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons
Folder Deleted : C:\Program Files\AskPartnerNetwork
Folder Deleted : C:\Program Files\Coupons
Folder Deleted : C:\Users\User\AppData\Local\Temp\apn
Folder Deleted : C:\Users\User\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\Users\User\AppData\Local\visi_coupon
Folder Deleted : C:\Users\User\AppData\LocalLow\Yahoo! Companion
Folder Deleted : C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
 
***** [ Scheduled tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4F524A2D-5637-006A-76A7-7A786E7484D7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F524A2D-5637-006A-76A7-7A786E7484D7}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4F524A2D-5637-006A-76A7-7A786E7484D7}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4F524A2D-5637-006A-76A7-7A786E7484D7}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{4F524A2D-5637-006A-76A7-7A786E7484D7}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4F524A2D-5637-006A-76A7-7A786E7484D7}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7A497A5E-301A-4A1C-AD80-A5910E120DE0}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\SOFTWARE\AskPartnerNetwork
Key Deleted : HKU\.DEFAULT\Software\AskPartnerNetwork
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Coupon Printer for Windows5.0.0.2
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
 
***** [ Web browsers ] *****
 
-\\ Internet Explorer v8.0.7601.18835
 
 
-\\ Google Chrome v43.0.2357.81
 
 
*************************
 
AdwCleaner[R0].txt - [6187 bytes] - [29/05/2015 21:43:33]
AdwCleaner[S0].txt - [6116 bytes] - [29/05/2015 21:46:27]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6175  bytes] ##########


#3 ontrack

ontrack
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:08:34 AM

Posted 29 May 2015 - 10:14 PM

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.8.4 (05.29.2015:1)
OS: Windows 7 Professional x86
Ran by User on Fri 05/29/2015 at 22:08:05.23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
Successfully stopped: [Service] yahooauservice
Successfully deleted: [Service] yahooauservice
 
 
 
~~~ Tasks
 
 
 
~~~ Registry Values
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\158D6D9E3FE81FA428925F22ACB3A965
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6C514FEFC09F45BAFAAE1D7546ED4
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\189F6D048E923EA48B11D15B30CDAC81
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DB42320A8525634AA089F0BEC86473B
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22468B0D6050B2E46B9C4B67A8F59577
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2251BF05A2F606D43BB064BD63CBD87E
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CDF313E9B28C944FBC7579CF4949414
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\661134B612233374391C95E8AC373BA3
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71E54748EDD3DC1468548785DC856EDA
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\754590DD06DE8D249B526503432F99D4
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8036C72171EF4BA46856BF57969F6A36
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CBC85D72B148084ABE8C2F072F781F4
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC5A38A64D6098468BC8395BA0EFF03
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DF9A1AC557F56C49B56F6B83E293C15
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A08449608E3CA1F4ABF236256A256754
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A431C8F3F57D7844B89242F5F7A5F62C
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B448F401EF39C8346BF7BE9B8D1C7060
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFA51B44D54927C4E9B7BC1D3FD1E49F
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D14A7F65792054F418578C78367D13F7
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D538E650623CB2C43AD5FBF587227D55
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE9F0BD163D827438CB6AD6B100EC48
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F739A19A8327DC64C9A8B641A9E89646
 
 
 
~~~ Files
 
Successfully deleted: [File] C:\Windows\couponprinter.ocx
 
 
 
~~~ Folders
 
 
 
~~~ Chrome
 
 
[C:\Users\User\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
 
[C:\Users\User\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
 
[C:\Users\User\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
 
[C:\Users\User\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 05/29/2015 at 22:09:01.67
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


#4 ontrack

ontrack
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:08:34 AM

Posted 29 May 2015 - 11:12 PM

ESET online scanner found the following:
 
C:\AdwCleaner\Quarantine\C\Program Files\AskPartnerNetwork\Toolbar\APNSetup.exe.vir a variant of Win32/Bundled.Toolbar.Ask.E potentially unsafe application
C:\AdwCleaner\Quarantine\C\Program Files\AskPartnerNetwork\Toolbar\ORJ-V7\Source\program files\AskPartnerNetwork\ChromeUtils\APNNativeMsgHost.exe.vir a variant of Win32/Bundled.Toolbar.Ask.M potentially unsafe application
C:\AdwCleaner\Quarantine\C\Program Files\AskPartnerNetwork\Toolbar\ORJ-V7\Source\program files\VNT\vntldr.exe.vir a variant of Win32/Bundled.Toolbar.Ask.M potentially unsafe application


#5 nasdaq

nasdaq

  • Malware Response Team
  • 39,944 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:34 AM

Posted 01 June 2015 - 07:50 AM

Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

Download the version of this tool for your operating system.
Farbar Recovery Scan Tool (64 bit)
Farbar Recovery Scan Tool (32 bit)
and save it to a folder on your computer's Desktop.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
===

Wait for further instructions.

#6 nasdaq

nasdaq

  • Malware Response Team
  • 39,944 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:34 AM

Posted 07 June 2015 - 08:36 AM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users