Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Battlenet browser screen replaced with msg and coding; freq popups for Flash


  • This topic is locked This topic is locked
28 replies to this topic

#1 Zanadoon

Zanadoon

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 16 August 2015 - 11:15 PM

Hi.. I'm having huge problems.  Even attempting to login to this site an error flashed that I wasn't authorized.  Last night attempting to loggoff here a popup occurred  (this is where it gets weird).  The popup was a cartoon with a little guy at a desk and the lights went out.  All you could see was his eyes, then he turned on a flashlight, looked around and hit a big red button on the wall.  Then a web address popped up in that same window after the cartoon was finished.  I did Not click on that web address and sadly I didn't write it down either.    But,  About 2 weeks ago my Battlenet game client loading screen did not load the usual  mini browser that can direct you to the battle.net website.  Instead, it was frozen with this msg:   >>>   "Oh no, we couldn't find what we wanted to show you!  (some weird characters inserted like a phrase)  We'll keep looking.  Check back later"!     I'm trying to think back to a couple of weeks ago and I might have clicked on  "You need to update the Adobe Flash"      I do not recall which site I was on.  For the last couple of days Blizzard has been trying to lead me through some things to do, but it's not working so here I am.   I go in Utube alot.

 

So, I had PC Matic on..  I uninstalled it.  I uninstalled Adobe Flash, and battlenet.   I went into %ProgramData% and deleted all Battlenet and Blizzard folders.   I emptied the recycle bin, the turned the computer off and turned it back on. I then updated all of my windows files, all of them, optional and important.   I had to reboot several times.  I then d/l and ran Rkill.  Then d/l and ran Malwarebytes.  Then Adwcleaner.  Adwcleaner did find 2 items to take care of.    I reinstalled battlenet and the screen with code and msg is still there.    I went through this whole process again and got rid of IE and instead installed Firefox to use as my browser.   Screwy window in Battlenet is still there.  So  worrisome also because of my bank sites I've logged into.   I'm not sure what is going on.  If anyone can help I'd appreciate it.   I'm attaching a screen print of the battlenet screen so you can see what I'm talking about with the code.    Thank you for any help you can provide.  I am glad you guys made this forum.     

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:16-08-2015
Ran by  (administrator) on HP (16-08-2015 23:26:49)
Running from C:\Users\P\Desktop
Loaded Profiles: P(Available Profiles: P)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Hewlett-Packard ) C:\Program Files\IDT\WDM\Beats64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqbam08.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqgpc01.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Luis Cobian, CobianSoft) C:\Program Files (x86)\Cobian Backup 11\Cobian.exe
(Luis Cobian, CobianSoft) C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [37888 2012-03-30] (Hewlett-Packard )
HKLM\...\Run: [HPSYSDRV] => C:\Program Files (x86)\Hewlett-Packard\HP Odometer\HPSYSDRV.EXE [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-04-24] (IDT, Inc.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [290688 2013-09-23] (Intel Corporation)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [592704 2015-07-08] (Razer Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [684024 2012-04-04] (PDF Complete Inc)
HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe -autorun
AppInit_DLLs: => File not found
Lsa: [Notification Packages] scecli c:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-04-12]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2014-03-26]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3070340987-904931712-1595273943-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3070340987-904931712-1595273943-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM -> {5DF5D17E-C6B0-4C92-84D4-6AE2401F972C} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=hxxp://www.ebay.com/sch/i.html?_nkw={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {5DF5D17E-C6B0-4C92-84D4-6AE2401F972C} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=hxxp://www.ebay.com/sch/i.html?_nkw={searchTerms}
SearchScopes: HKU\S-1-5-21-3070340987-904931712-1595273943-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3070340987-904931712-1595273943-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3070340987-904931712-1595273943-1000 -> {5DF5D17E-C6B0-4C92-84D4-6AE2401F972C} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-3070340987-904931712-1595273943-1000 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=hxxp://www.ebay.com/sch/i.html?_nkw={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20] (Hewlett-Packard Co.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20] (Hewlett-Packard Co.)
DPF: HKLM-x32 {0E5F0222-96B9-11D3-8997-00104BD12D94} hxxp://utilities.pcpitstop.com/Nirvana/controls/pcmatic.cab
Tcpip\Parameters: [DhcpNameServer] 99.196.99.99 99.197.99.99
Tcpip\..\Interfaces\{4293BA2A-F8DC-48C4-9862-8BDA5C42FC79}: [DhcpNameServer] 99.196.99.99 99.197.99.99

FireFox:
========
FF ProfilePath: C:\Users\Pat\AppData\Roaming\Mozilla\Firefox\Profiles\l0x9pr0o.default
FF DefaultSearchEngine.US: Ixquick HTTPS
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF SearchPlugin: C:\Users\Pat\AppData\Roaming\Mozilla\Firefox\Profiles\l0x9pr0o.default\searchplugins\ixquick-https-1.xml [2015-08-16]
FF SearchPlugin: C:\Users\Pat\AppData\Roaming\Mozilla\Firefox\Profiles\l0x9pr0o.default\searchplugins\ixquick-https.xml [2015-08-16]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-05-12]
FF HKU\S-1-5-21-3070340987-904931712-1595273943-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

Chrome:
=======
CHR Profile: C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-07]
CHR Extension: (Google Drive) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-07]
CHR Extension: (YouTube) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-07]
CHR Extension: (Google Search) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-07]
CHR Extension: (Avira Browser Safety) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-04-26]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-26]
CHR Extension: (Google Wallet) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-07]
CHR Extension: (Gmail) - C:\Users\Pat\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-07]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AdobeActiveFileMonitor10.0; c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-15] (Adobe Systems Incorporated)
S3 CalendarSynchService; C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe [16384 2011-08-16] (Hewlett-Packard) [File not signed]
S3 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-17] (Hewlett-Packard)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2010-10-22] (Hewlett-Packard Co.) [File not signed]
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S3 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-04-04] (PDF Complete Inc)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
S3 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-04-01] (Broadcom Corporation.)
S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [41032 2013-05-23] (ThreatTrack Security)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [36736 2015-07-31] (Intel Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46768 2015-06-17] (NVIDIA Corporation)
S3 pelmouse; C:\Windows\System32\DRIVERS\pelmouse.sys [22016 2009-04-30] (TPMX Electronics Ltd.)
S3 pelusblf; C:\Windows\System32\DRIVERS\pelusblf.sys [24576 2009-04-30] (TPMX Electronics Ltd.)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129472 2015-06-26] (Razer, Inc.)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-16 23:26 - 2015-08-16 23:27 - 00017349 _____ C:\Users\Pat\Desktop\FRST.txt
2015-08-16 23:23 - 2015-08-16 23:26 - 00000000 ____D C:\FRST
2015-08-16 23:22 - 2015-08-16 23:22 - 02173440 _____ (Farbar) C:\Users\Pat\Desktop\FRST64.exe
2015-08-16 21:52 - 2015-08-16 21:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cobian Backup 11
2015-08-16 21:52 - 2015-08-16 21:52 - 00000000 ____D C:\Program Files (x86)\Cobian Backup 11
2015-08-16 21:46 - 2015-08-16 21:47 - 19709440 _____ (Luis Cobian, CobianSoft) C:\Users\Pat\Desktop\COBIAN BACK UP SETUP.exe
2015-08-16 15:10 - 2015-08-16 17:18 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-16 15:10 - 2015-08-16 15:10 - 00001104 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-16 15:10 - 2015-08-16 15:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-16 15:10 - 2015-08-16 15:10 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-08-16 15:10 - 2015-08-16 15:10 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-16 15:10 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-16 15:10 - 2015-06-18 08:41 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-16 15:10 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-16 15:06 - 2015-08-16 15:06 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Pat\Desktop\mbam-setup-2.1.8.1057.exe
2015-08-16 14:19 - 2015-08-16 14:19 - 02077392 _____ (Microsoft Corporation) C:\Users\Pat\Desktop\IE11-Windows6.1.exe
2015-08-16 14:13 - 2015-08-16 14:13 - 00000000 ____D C:\Users\Pat\AppData\Local\GWX
2015-08-16 11:36 - 2015-08-16 11:37 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Mozilla
2015-08-16 11:36 - 2015-08-16 11:36 - 00001149 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-16 11:35 - 2015-08-16 11:36 - 00001161 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-16 11:35 - 2015-08-16 11:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-16 11:35 - 2015-08-16 11:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-08-15 22:52 - 2015-08-15 22:52 - 00004188 _____ C:\AdwCleaner[C1].txt
2015-08-15 22:50 - 2015-08-15 22:52 - 00000000 ____D C:\AdwCleaner
2015-08-15 22:50 - 2015-08-15 22:50 - 00003814 _____ C:\AdwCleaner[S1].txt
2015-08-15 21:59 - 2015-08-15 22:00 - 01563648 _____ C:\Users\Pat\Desktop\AdwCleaner.exe
2015-08-15 21:56 - 2015-08-15 21:56 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\Pat\Desktop\rkill.exe
2015-08-15 21:32 - 2015-08-15 21:32 - 02864184 _____ (Blizzard Entertainment) C:\Users\Pat\Downloads\Battle.net-Setup-enUS.exe
2015-08-15 21:23 - 2015-08-15 21:23 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-15 21:23 - 2015-08-15 21:23 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-15 21:13 - 2015-08-15 21:13 - 00000000 ____D C:\Users\Pat\AppData\Local\Skype
2015-08-15 21:02 - 2015-08-15 21:03 - 00000000 ___SD C:\Windows\system32\GWX
2015-08-15 21:02 - 2015-08-15 21:02 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-08-15 20:35 - 2015-08-15 20:54 - 00002119 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-08-15 20:34 - 2015-08-15 20:54 - 00000000 ____D C:\Program Files\Microsoft Security Client
2015-08-15 20:34 - 2015-08-15 20:54 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2015-08-15 18:17 - 2015-08-15 20:54 - 00001945 _____ C:\Windows\epplauncher.mif
2015-08-15 18:06 - 2015-01-08 19:44 - 00419936 _____ C:\Windows\SysWOW64\locale.nls
2015-08-15 18:06 - 2015-01-08 19:43 - 00419936 _____ C:\Windows\system32\locale.nls
2015-08-15 18:03 - 2014-06-26 22:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-08-15 18:03 - 2014-06-26 21:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-08-15 18:02 - 2015-05-25 14:19 - 01255424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-08-15 18:02 - 2015-05-25 14:19 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-08-15 18:02 - 2015-05-25 14:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-08-15 18:02 - 2015-05-25 14:18 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-08-15 18:02 - 2015-05-25 14:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-08-15 18:02 - 2015-05-25 14:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-08-15 18:02 - 2015-05-25 14:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-08-15 18:02 - 2015-05-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-08-15 18:02 - 2015-05-25 14:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-08-15 18:02 - 2015-05-25 14:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-08-15 18:02 - 2015-05-25 14:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-08-15 18:02 - 2015-05-25 14:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-08-15 18:02 - 2015-05-25 14:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-08-15 18:02 - 2015-05-25 14:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-08-15 18:02 - 2015-05-25 14:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-08-15 18:02 - 2015-05-25 14:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-08-15 18:02 - 2015-05-25 14:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-08-15 18:02 - 2015-05-25 13:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-08-15 18:02 - 2015-04-27 15:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-08-15 18:02 - 2015-04-27 15:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-08-15 18:02 - 2015-04-27 15:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-08-15 18:02 - 2015-04-27 15:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-08-15 18:02 - 2015-04-27 15:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-08-15 18:02 - 2015-04-27 15:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-08-15 18:02 - 2015-04-27 15:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-08-15 18:02 - 2015-04-27 15:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-08-15 18:02 - 2014-08-01 07:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-08-15 18:02 - 2014-08-01 07:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-08-15 18:02 - 2014-02-03 22:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-08-15 18:02 - 2014-02-03 22:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-08-15 18:02 - 2014-02-03 22:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-08-15 18:02 - 2014-02-03 22:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-08-15 18:02 - 2014-02-03 22:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-08-15 18:02 - 2013-12-03 22:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-08-15 18:02 - 2013-12-03 22:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-08-15 18:02 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-08-15 18:02 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-08-15 18:02 - 2013-12-03 22:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-08-15 18:02 - 2013-12-03 22:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-08-15 18:02 - 2013-12-03 22:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-08-15 18:02 - 2013-12-03 22:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-08-15 18:02 - 2013-12-03 22:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-08-15 18:02 - 2013-12-03 22:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-08-15 18:02 - 2013-12-03 22:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-08-15 18:02 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-08-15 18:02 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-08-15 18:02 - 2013-12-03 22:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-08-15 18:02 - 2013-12-03 21:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-08-15 18:02 - 2013-12-03 21:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-08-15 18:02 - 2013-12-03 21:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-08-15 18:02 - 2013-12-03 21:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-08-15 18:02 - 2013-10-03 22:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-08-15 18:02 - 2013-10-03 22:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-08-15 18:02 - 2013-10-03 21:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-08-15 18:02 - 2013-10-03 21:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-08-15 18:01 - 2015-07-28 16:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-15 18:01 - 2015-07-28 16:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-15 18:01 - 2015-07-28 16:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-15 18:01 - 2015-07-28 16:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-15 18:01 - 2015-07-28 16:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-15 18:01 - 2015-07-28 16:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-15 18:01 - 2015-07-28 16:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-15 18:01 - 2015-07-28 15:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-15 18:01 - 2015-06-03 16:16 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-08-15 18:01 - 2015-06-03 16:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-08-15 18:01 - 2015-04-10 23:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-08-15 18:01 - 2015-03-13 23:21 - 01632768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-08-15 18:01 - 2015-03-13 23:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-08-15 18:01 - 2015-03-13 23:04 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-08-15 18:01 - 2015-03-13 23:04 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-08-15 18:01 - 2015-03-04 00:41 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-08-15 18:01 - 2015-03-04 00:41 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-08-15 18:01 - 2015-03-04 00:41 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-08-15 18:01 - 2015-03-04 00:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-08-15 18:01 - 2015-03-04 00:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-08-15 18:01 - 2015-03-04 00:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-08-15 18:01 - 2015-03-04 00:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-08-15 18:01 - 2015-01-28 23:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-08-15 18:01 - 2015-01-28 23:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-08-15 18:01 - 2015-01-08 23:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-08-15 18:01 - 2015-01-08 23:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-08-15 18:01 - 2015-01-08 23:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-08-15 18:01 - 2015-01-08 22:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-08-15 18:01 - 2014-11-25 23:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-08-15 18:01 - 2014-11-25 23:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-08-15 18:01 - 2014-11-10 21:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-08-15 18:01 - 2014-11-07 23:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-08-15 18:01 - 2014-11-07 22:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-08-15 18:01 - 2014-10-29 22:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-08-15 18:01 - 2014-10-29 21:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-08-15 18:01 - 2014-10-02 22:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-08-15 18:01 - 2014-10-02 22:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-08-15 18:01 - 2014-10-02 22:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-08-15 18:01 - 2014-10-02 22:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-08-15 18:01 - 2014-10-02 22:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-08-15 18:01 - 2014-10-02 21:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-08-15 18:01 - 2014-10-02 21:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-08-15 18:01 - 2014-10-02 21:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-08-15 18:01 - 2014-10-02 21:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-08-15 18:01 - 2014-10-02 21:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-08-15 18:01 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-08-15 18:01 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-08-15 18:01 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-08-15 18:01 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-08-15 18:01 - 2014-07-08 22:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-08-15 18:01 - 2014-07-08 21:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-08-15 18:01 - 2014-07-08 21:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-08-15 18:01 - 2014-07-08 21:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-08-15 18:01 - 2014-07-08 21:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-08-15 18:01 - 2014-07-08 21:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-08-15 18:01 - 2014-01-27 22:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-08-15 18:01 - 2014-01-23 22:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-08-15 18:01 - 2013-10-29 22:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-08-15 18:01 - 2013-10-29 22:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-08-15 17:57 - 2013-08-27 21:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-08-15 16:18 - 2015-07-30 09:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 16:18 - 2015-07-30 09:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 16:09 - 2015-07-20 20:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-15 16:09 - 2015-07-20 20:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-08-15 16:09 - 2015-07-16 16:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-15 16:09 - 2015-07-16 16:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-08-15 16:09 - 2015-07-16 16:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-15 16:09 - 2015-07-16 16:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-15 16:09 - 2015-07-16 16:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-15 16:09 - 2015-07-16 16:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-15 16:09 - 2015-07-16 16:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-15 16:09 - 2015-07-16 16:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-15 16:09 - 2015-07-16 16:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-15 16:09 - 2015-07-16 16:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-15 16:09 - 2015-07-16 16:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-15 16:09 - 2015-07-16 16:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-15 16:09 - 2015-07-16 16:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-15 16:09 - 2015-07-16 16:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-15 16:09 - 2015-07-16 16:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-15 16:09 - 2015-07-16 16:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-15 16:09 - 2015-07-16 16:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-15 16:09 - 2015-07-16 16:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-15 16:09 - 2015-07-16 16:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-15 16:09 - 2015-07-16 15:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-15 16:09 - 2015-07-16 15:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-15 16:09 - 2015-07-16 15:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-15 16:09 - 2015-07-16 15:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-08-15 16:09 - 2015-07-16 15:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-15 16:09 - 2015-07-16 15:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-08-15 16:09 - 2015-07-16 15:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-08-15 16:09 - 2015-07-16 15:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-15 16:09 - 2015-07-16 15:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-15 16:09 - 2015-07-16 15:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-08-15 16:09 - 2015-07-16 15:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-15 16:09 - 2015-07-16 15:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-15 16:09 - 2015-07-16 15:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-15 16:09 - 2015-07-16 15:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-08-15 16:09 - 2015-07-16 15:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-15 16:09 - 2015-07-16 15:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-15 16:09 - 2015-07-16 15:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-15 16:09 - 2015-07-16 15:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-08-15 16:09 - 2015-07-16 15:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-15 16:09 - 2015-07-16 15:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-15 16:09 - 2015-07-16 15:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-08-15 16:09 - 2015-07-16 15:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-08-15 16:09 - 2015-07-16 15:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-15 16:09 - 2015-07-16 15:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-15 16:09 - 2015-07-16 15:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-15 16:09 - 2015-07-16 15:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-15 16:09 - 2015-07-16 15:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-15 16:09 - 2015-07-16 15:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-15 16:09 - 2015-07-16 15:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-15 16:09 - 2015-07-16 15:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-08-15 16:09 - 2015-07-16 15:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-15 16:09 - 2015-07-16 14:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-15 16:09 - 2015-07-16 14:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-15 16:09 - 2015-07-16 14:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-15 16:09 - 2015-07-16 14:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-08-15 16:08 - 2015-07-16 17:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-15 16:08 - 2015-07-16 16:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-15 16:08 - 2015-07-16 16:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-15 16:08 - 2015-07-16 15:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-15 16:08 - 2015-07-16 15:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-15 16:08 - 2015-07-16 15:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-08-15 16:08 - 2015-07-16 15:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-15 16:08 - 2015-07-16 15:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-15 16:08 - 2015-07-16 15:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-08-15 16:08 - 2015-07-16 15:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-15 16:08 - 2015-07-15 14:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-15 16:08 - 2015-07-15 14:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-08-15 16:08 - 2015-07-15 14:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-08-15 16:08 - 2015-07-15 14:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-15 16:08 - 2015-07-15 14:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-15 16:08 - 2015-07-15 14:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-08-15 16:08 - 2015-07-15 14:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-08-15 16:08 - 2015-07-15 14:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-08-15 16:08 - 2015-07-15 14:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-08-15 16:08 - 2015-07-15 14:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-08-15 16:08 - 2015-07-15 14:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-08-15 16:08 - 2015-07-15 14:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-08-15 16:08 - 2015-07-15 14:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-08-15 16:08 - 2015-07-15 14:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-15 16:08 - 2015-07-15 14:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-08-15 16:08 - 2015-07-15 14:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-08-15 16:08 - 2015-07-15 14:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-08-15 16:08 - 2015-07-15 14:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 14:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-15 16:08 - 2015-07-15 13:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-15 16:08 - 2015-07-15 13:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-15 16:08 - 2015-07-15 13:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-15 16:08 - 2015-07-15 13:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-15 16:08 - 2015-07-15 13:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-15 16:08 - 2015-07-15 13:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-15 16:08 - 2015-07-15 13:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-15 16:08 - 2015-07-15 13:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-15 16:08 - 2015-07-15 13:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-15 16:08 - 2015-07-15 13:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-15 16:08 - 2015-07-15 13:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-15 16:08 - 2015-07-15 13:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-15 16:08 - 2015-07-15 13:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-15 16:08 - 2015-07-15 13:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-15 16:08 - 2015-07-15 13:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-15 16:08 - 2015-07-15 13:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-15 16:08 - 2015-07-15 13:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-15 16:08 - 2015-07-15 13:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-15 16:08 - 2015-07-15 13:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-15 16:08 - 2015-07-15 13:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-15 16:08 - 2015-07-15 13:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-15 16:08 - 2015-07-15 13:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 13:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 12:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-08-15 16:08 - 2015-07-15 12:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-08-15 16:08 - 2015-07-15 12:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-08-15 16:08 - 2015-07-15 12:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-15 16:08 - 2015-07-15 12:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-15 16:08 - 2015-07-15 12:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 12:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 12:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 16:08 - 2015-07-15 12:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-15 16:08 - 2015-07-14 23:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-15 16:08 - 2015-07-11 09:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-08-15 16:08 - 2015-06-09 14:03 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-08-15 16:08 - 2015-06-09 14:03 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-08-15 16:08 - 2015-06-03 16:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-08-15 16:08 - 2015-06-01 20:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-08-15 16:08 - 2015-06-01 19:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-08-15 16:08 - 2015-04-29 14:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-08-15 16:08 - 2015-04-29 14:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-08-15 16:08 - 2015-04-29 14:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-08-15 16:08 - 2015-04-29 14:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-08-15 16:08 - 2015-04-29 14:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-08-15 16:08 - 2015-04-29 14:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-08-15 16:08 - 2015-04-29 14:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-08-15 16:08 - 2015-04-29 14:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-08-15 16:08 - 2015-04-29 14:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-08-15 16:08 - 2015-04-29 14:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-08-15 16:08 - 2015-04-17 23:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-08-15 16:08 - 2015-04-17 22:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-08-15 16:08 - 2015-04-12 23:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-08-15 16:08 - 2015-04-07 23:29 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-08-15 16:08 - 2015-04-07 23:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2015-08-15 16:08 - 2015-02-02 23:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-08-15 16:08 - 2015-02-02 23:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-08-15 16:08 - 2015-02-02 23:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-08-15 16:08 - 2015-02-02 23:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-08-15 16:08 - 2015-02-02 23:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-08-15 16:08 - 2015-02-02 23:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-08-15 16:08 - 2015-02-02 23:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-08-15 16:08 - 2015-02-02 23:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-08-15 16:08 - 2015-02-02 23:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-08-15 16:08 - 2015-02-02 23:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-08-15 16:08 - 2015-02-02 23:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-08-15 16:08 - 2015-02-02 23:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-08-15 16:08 - 2015-02-02 23:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-08-15 16:08 - 2015-02-02 23:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-08-15 16:08 - 2015-02-02 23:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-08-15 16:08 - 2015-02-02 23:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-08-15 16:08 - 2015-02-02 23:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-08-15 16:08 - 2015-02-02 23:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-08-15 16:08 - 2015-02-02 23:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-08-15 16:08 - 2015-02-02 22:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-08-15 16:08 - 2014-12-18 23:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-08-15 16:08 - 2014-12-18 21:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-08-15 16:08 - 2014-12-06 00:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-08-15 16:08 - 2014-12-05 23:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-08-15 16:08 - 2014-12-05 23:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-08-15 16:08 - 2014-10-31 18:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-08-15 16:08 - 2014-06-27 20:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-08-15 16:08 - 2014-06-27 20:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-08-15 16:07 - 2015-07-14 23:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-15 16:07 - 2015-07-14 23:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-15 16:07 - 2015-07-14 23:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-08-15 16:07 - 2015-07-14 23:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-08-15 16:07 - 2015-07-14 22:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-08-15 16:07 - 2015-07-14 22:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-08-15 16:07 - 2015-07-14 22:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-08-15 16:07 - 2015-07-14 22:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-08-15 16:07 - 2015-07-01 16:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-15 16:07 - 2015-07-01 16:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-15 16:07 - 2015-07-01 16:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-15 16:07 - 2015-07-01 16:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-15 16:07 - 2015-06-17 13:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-08-15 16:07 - 2015-06-17 13:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-08-15 16:05 - 2015-07-30 14:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-08-15 16:05 - 2015-07-30 13:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-15 16:05 - 2015-07-30 13:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-15 16:05 - 2015-07-30 13:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-08-15 16:05 - 2015-07-30 13:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-08-15 16:05 - 2015-07-30 13:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-08-15 16:05 - 2015-07-30 13:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-08-15 16:05 - 2015-07-30 12:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-08-15 16:05 - 2015-07-30 12:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-08-15 16:05 - 2015-07-30 12:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-15 16:05 - 2015-07-20 14:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-15 16:05 - 2015-07-20 14:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-08-15 16:05 - 2015-07-20 14:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-08-15 16:05 - 2015-07-20 13:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-15 16:05 - 2015-07-20 13:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-15 16:05 - 2015-07-20 13:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-15 16:05 - 2015-07-20 13:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-15 16:05 - 2015-07-20 13:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-08-15 16:05 - 2015-07-10 13:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-08-15 16:05 - 2015-06-15 17:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-08-15 16:05 - 2015-06-15 17:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-08-15 16:05 - 2015-06-15 17:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-08-15 16:05 - 2015-06-15 17:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-08-15 16:05 - 2015-06-15 17:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-08-15 16:05 - 2015-06-15 17:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-08-15 16:05 - 2015-06-15 17:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-08-15 16:05 - 2015-06-15 17:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-08-15 16:05 - 2015-06-15 17:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-08-15 16:05 - 2015-06-15 17:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-08-15 16:05 - 2015-06-15 17:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-08-15 16:05 - 2015-06-15 17:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2015-08-15 16:05 - 2015-06-03 16:17 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-08-15 16:05 - 2015-02-18 03:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-08-15 16:05 - 2015-02-18 03:04 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-08-15 16:04 - 2015-07-10 13:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-15 16:04 - 2015-07-09 13:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-08-15 16:04 - 2015-07-09 13:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-15 16:04 - 2015-07-09 13:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-08-15 16:04 - 2015-07-04 14:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-08-15 16:04 - 2015-07-04 13:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-08-15 16:04 - 2015-04-24 14:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-08-15 16:04 - 2015-04-24 13:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-08-15 16:04 - 2015-03-04 00:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-08-15 16:04 - 2015-03-04 00:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-08-15 16:04 - 2015-03-04 00:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-08-15 16:04 - 2015-02-24 23:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-08-15 16:04 - 2015-02-03 23:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-08-15 16:04 - 2015-02-03 22:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-08-15 16:04 - 2015-02-02 23:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-08-15 16:04 - 2015-02-02 23:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-08-15 16:04 - 2015-01-16 22:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-08-15 16:04 - 2015-01-16 22:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-08-15 16:04 - 2014-12-11 13:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-08-15 16:04 - 2014-12-07 23:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-08-15 16:04 - 2014-12-07 22:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-08-14 06:19 - 2015-08-14 06:19 - 01730328 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2015-08-14 06:19 - 2015-08-14 06:19 - 00201432 _____ (Razer Inc) C:\Windows\system32\Drivers\rzudd.sys
2015-08-05 11:59 - 2015-07-23 01:06 - 42730128 _____ C:\Windows\system32\nvcompiler.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 30487880 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 22950544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 16151688 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 15892200 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 15129192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 14503880 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 13268712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 11836680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 11055248 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-08-05 11:59 - 2015-07-23 01:06 - 03008880 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 02933576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 02600592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435362.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435362.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 01061008 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 01053000 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00983368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00976528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00940104 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00503592 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00408208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00407296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00364176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00176904 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00155280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-08-05 11:59 - 2015-07-23 01:06 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-07-31 23:01 - 2015-07-31 23:01 - 00036736 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys
2015-07-31 22:58 - 2015-07-31 22:58 - 00680832 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
2015-07-27 18:58 - 2015-08-14 18:39 - 00003174 _____ C:\Windows\System32\Tasks\HPCeeScheduleForPat
2015-07-27 18:58 - 2015-08-14 18:39 - 00000324 _____ C:\Windows\Tasks\HPCeeScheduleForPat.job
2015-07-27 09:21 - 2015-07-27 09:21 - 00089104 _____ (Razer Inc) C:\Windows\system32\RazerCoinstaller.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-16 23:10 - 2009-07-14 00:45 - 00027568 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-16 23:10 - 2009-07-14 00:45 - 00027568 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-16 22:08 - 2015-02-09 03:32 - 00000000 ____D C:\Users\Pat\Desktop\SHORTCUTS
2015-08-16 21:48 - 2013-05-12 01:29 - 01883097 _____ C:\Windows\WindowsUpdate.log
2015-08-16 21:34 - 2009-07-14 01:13 - 00782470 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-16 20:31 - 2013-05-21 11:26 - 00157552 _____ C:\Windows\setupact.log
2015-08-16 17:18 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-16 17:12 - 2013-05-12 01:30 - 00000000 ____D C:\Users\Pat
2015-08-16 17:08 - 2013-05-24 13:28 - 00578952 _____ C:\Windows\PFRO.log
2015-08-16 16:20 - 2014-03-13 16:45 - 00000000 ____D C:\Users\Pat\AppData\Local\Battle.net
2015-08-16 16:00 - 2015-07-10 09:39 - 00000000 ___HD C:\$Windows.~BT
2015-08-16 15:55 - 2013-05-12 01:36 - 00003910 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{D14ABA59-49E9-4484-8BF1-435491D73636}
2015-08-16 15:50 - 2013-05-13 01:00 - 00000000 ____D C:\Program Files (x86)\World of Warcraft
2015-08-16 15:48 - 2014-12-02 18:06 - 00001238 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2015-08-16 15:17 - 2011-02-11 16:13 - 00000000 ____D C:\Windows\Panther
2015-08-16 14:20 - 2014-11-14 12:58 - 00021803 _____ C:\Windows\IE11_main.log
2015-08-16 14:11 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2015-08-16 14:11 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2015-08-16 14:11 - 2009-07-13 23:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-16 14:11 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-08-16 14:10 - 2010-11-21 03:17 - 00000000 ____D C:\Windows\ShellNew
2015-08-16 11:43 - 2013-10-13 11:30 - 00000000 ____D C:\Users\Pat\AppData\Local\Mozilla
2015-08-16 04:23 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\rescache
2015-08-16 03:31 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\AppCompat
2015-08-15 22:54 - 2009-07-14 01:08 - 00032572 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-08-15 21:16 - 2013-12-30 15:42 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Skype
2015-08-15 20:42 - 2013-05-12 17:49 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-15 20:39 - 2011-02-11 16:29 - 00774592 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-08-15 18:44 - 2009-07-14 00:45 - 00411544 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-15 18:30 - 2014-06-11 02:39 - 00000000 ___HD C:\Windows\msdownld.tmp
2015-08-15 18:30 - 2014-06-11 02:39 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-08-15 18:29 - 2015-01-29 12:16 - 00000000 ____D C:\temp
2015-08-15 18:06 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\tracing
2015-08-15 18:06 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-08-15 18:06 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\Dism
2015-08-15 18:06 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-08-15 17:02 - 2014-05-12 12:57 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-15 17:02 - 2014-05-12 12:57 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-15 17:01 - 2014-05-12 12:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-15 16:59 - 2014-11-14 13:13 - 00000000 __SHD C:\Users\Pat\AppData\Local\EmieUserList
2015-08-15 16:59 - 2014-11-14 13:13 - 00000000 __SHD C:\Users\Pat\AppData\Local\EmieSiteList
2015-08-15 16:59 - 2014-11-14 13:13 - 00000000 __SHD C:\Users\Pat\AppData\Local\EmieBrowserModeList
2015-08-15 16:41 - 2013-09-23 21:54 - 00000000 ____D C:\Windows\system32\MRT
2015-08-15 15:23 - 2015-07-14 04:34 - 00000000 ____D C:\Program Files\Google
2015-08-15 15:14 - 2014-03-07 12:03 - 00000000 ____D C:\Users\Pat\AppData\Local\Google
2015-08-14 11:27 - 2013-05-12 01:36 - 00000000 ____D C:\Users\Pat\AppData\Local\Adobe
2015-08-10 18:39 - 2013-05-13 19:48 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-08-10 18:38 - 2013-05-13 19:45 - 00000000 ____D C:\Users\Pat\AppData\Roaming\HP Support Assistant
2015-08-10 18:38 - 2013-05-12 18:04 - 00000000 ____D C:\Users\Pat\AppData\Roaming\HpUpdate
2015-08-05 12:00 - 2013-05-28 14:43 - 00004732 _____ C:\Windows\DPINST.LOG
2015-08-05 12:00 - 2013-04-12 18:04 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-08-05 12:00 - 2013-04-12 18:04 - 00000000 ____D C:\ProgramData\NVIDIA
2015-08-05 00:24 - 2013-05-12 23:17 - 00000000 ____D C:\Users\Pat\AppData\Local\CrashDumps
2015-07-29 12:55 - 2014-03-13 16:46 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2015-07-28 10:59 - 2013-09-23 21:54 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-23 07:13 - 2013-05-12 20:06 - 00111352 _____ C:\Users\Pat\AppData\Local\GDIPFONTCACHEV1.DAT
2015-07-23 01:06 - 2015-06-26 00:30 - 03407144 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-07-23 01:06 - 2015-06-26 00:30 - 01101856 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-07-23 01:06 - 2012-03-15 00:59 - 17615408 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-07-23 01:06 - 2012-03-15 00:59 - 12876336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-07-23 01:06 - 2012-03-15 00:59 - 00030966 _____ C:\Windows\system32\nvinfo.pb
2015-07-22 21:31 - 2013-04-12 18:04 - 06873744 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-07-22 21:31 - 2013-04-12 18:04 - 03493008 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-07-22 21:31 - 2013-04-12 18:04 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-07-22 21:31 - 2013-04-12 18:04 - 00937616 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-07-22 21:31 - 2013-04-12 18:04 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-07-22 21:31 - 2013-04-12 18:04 - 00062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-07-20 10:16 - 2013-04-12 18:04 - 05121613 _____ C:\Windows\system32\nvcoproc.bin

==================== Files in the root of some directories =======

2013-05-12 22:16 - 2013-05-12 22:22 - 0001258 _____ () C:\ProgramData\hpzinstall.log

Some files in TEMP:
====================
C:\Users\Pat\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-08-12 12:50

==================== End of log ============================

 



BC AdBot (Login to Remove)

 


#2 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 17 August 2015 - 11:44 AM

Also, after checking with   Bliz,   this has nothing to do with game itself being hacked.   More like browser problems.   I used IE at first and then went to firefox after I attempted to clean everything up.   Also, currently I'm looking here and adobe to insure i did a complete uninstall of Flash.    Thx



#3 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,952 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:06:34 PM

Posted 21 August 2015 - 09:55 AM

Greetings Zanadoon and :welcome: to BleepingComputer's Virus/Trojan/Spyware/Malware Removal forum.

My name is Oh My! and I am here to help you! Now that we are "friends" please call me Gary.

If you would allow me to call you by your first name I would prefer to do that. :thumbup2:

===================================================

Ground Rules:
  • First, I would like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. Please try to match our commitment to you with your patience toward us. If this was easy we would never have met. :)
  • Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
  • Please perform all steps in the order they are listed in each set of instructions. Some steps may be a bit complicated. If things are not clear, be sure to stop and let me know. We need to work on this together with confidence.
  • Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems simply stop and tell me.
  • When you post your reply, use the Replytopic.jpg button instead.
  • In the upper right hand corner of the topic you will see the Followtopic.jpg button. Click on this then choose Immediate E-Mail notification and then Proceed and you will be sent an email once I have posted a response.
  • If you do not reply to your topic after 5 days we assume it has been abandoned and I will close it.
  • When your computer is clean I will alert you of such. I will also provide for you detailed information about how you can combat future infections.
  • I would like to remind you to make no further changes to your computer unless I direct you to do so.
  • Now let's get started :thumbup2:
===================================================

Now that I am assisting you, you can expect that I will be very responsive to your situation. If you are able, I would request you check this thread at least once per day so that we can try to resolve your issues effectively and efficiently. If you are going to be delayed please be considerate and post that information so that I know you are still with me. Unfortunately, there are many people waiting to be assisted and not enough of us at BleepingComputer to go around. I appreciate your understanding and diligence.

Thank you for your patience thus far.

Check to see if there is an Addition.txt document on your desktop. If so, copy and paste the information in your reply. If not, rerun FRST.exe making sure to place a check mark in Addition.txt.

Do you have satellite Internet service?

Please do this.

===================================================

RogueKiller by Tigzy

--------------------
  • Download RogueKiller and save it to your desktop
  • Close all running programs
  • For Windows 8/7/Vista users right click on the icon and select Run as Administrator
  • For Windows XP simply double click on the icon
  • The program will conduct a prescan and when finished you wlll see Prescan Finished. Please hit the scan button
  • Click Scan
  • A report should open and a copy of the report will be placed on your desktop. If not, hit the Report button.
  • If RogueKiller has been blocked, do not hesitate to try a few times more. If it really won't run, rename it winlogon.exe (or winlogon.com) and try again
  • Copy and paste the contents of the report in your reply
===================================================

Run TDSSKiller by Kaspersky

--------------------
  • Please download Kaspersky's TDSSKiller and save it to your Desktop. <-Important!!!
  • Right-click on TDSSKiller.exe and select Run As Administrator.
  • When the program opens, click the Start Scan button.

tdss1.png

  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • Any objects found will show in the Scan results - Select action for found objects and offer three options.
  • If an infected file is detected, the default action will be Cure...do not change it.

tdss2.png

  • Click Continue > Reboot now to finish the cleaning process.<- Important!!

tdss4.png

  • If 'Suspicious' objects are detected, you will be given the option to Skip or Quarantine. Skip will be the default selection. Leave it as such for now.
  • A log file named TDSSKiller_version_date_time_log.txt will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply even if no threats are found.
-- If TDSSKiller does not run, try renaming it. To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to these instructions. In some cases it may be necessary to redownload TDSSKiller and randomly rename it before downloading and saving to the computer or to perform the scan in "safe mode".

===================================================

aswMBR

--------------------
  • Download aswMBR and save it to your desktop.
  • Please disable your real time protection of any Antivirus, Antispyware or Antimalware programs temporarily. They will interfere and may cause unexpected results.
  • If you need help to disable your protection programs see here and here.
  • Double click the aswMBR.exe file to run it. Please allow when you are asked to download AVAST antivirus engine defs.
  • Wait until the AV update is done, then click on the Scan button to start. The program will launch a scan.

aswMBR1.png

  • When done, you will see Scan finished successfully. Please click on Save log and save the file to your desktop.

aswMBR2.png

  • Please post the contents of the log in your next reply.
NOTE: aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.

===================================================

Farbar's MiniToolBox

--------------------
  • Please download MiniToolBox, save it to your desktop
  • Please close any Firefox browsers you may have open
  • Double click the icon to launch the program
  • Make sure only the following options are checked:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries

  • Click Go and once the scan is completed a Result.txt Notepad document will open on your desktop
  • Please copy and paste the contents in your reply
===================================================

System Summary Information

--------------------
  • Press the windows key Windows_Logo_key.gif + r on your keyboard at the same time
  • Type msinfo32 and press Enter
  • Left click on System Summary
  • Click File, Save, and name the file Summary
  • Zip and attach the file to your reply
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Satellite service?
  • Addition.txt
  • RogueKiller log
  • TDSSKiller log
  • aswMBR log
  • Result.txt
  • System Summary Information

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#4 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 21 August 2015 - 05:48 PM

Okay, I will do all this but quick question.  I thought Kaspersky wasn't safe?  That article about employees hiding files with competitors..

 

Thank you for the bullets at the end of your post making it much clearer.         I got so frustrated that O.o    I installed the default factory settings and updated to Windows 10. 

 

I will stop changing things and wait.   Please just list what you want me to do and I can go back and find out the directions on this post.   I will check in frequently and not do anymore updates to anything.

 

I am on Satellite.  The guy there told me to check and make sure the latency is okay with the game company as that might have something to do with it.  Also to call back after Win 10 finished and flush the router.        I will do that now then log back on and complete the other steps.     I apologize and thank you  for your help. ;)


Edited by Zanadoon, 21 August 2015 - 06:23 PM.


#5 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,952 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:06:34 PM

Posted 21 August 2015 - 09:53 PM

Greetings,

No need to worry about the Kaspersky steps, they are safe.

Keep me updated on the router issue. I am not sure what they meant by flushing but I would prefer they help you reset the router. Go ahead and complete the steps I listed in Post #3 and we will see what they tell us.
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#6 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 12:36 AM

aswMBR version 1.0.1.2252 Copyright© 2014 AVAST Software
Run date: 2015-08-22 00:16:53
-----------------------------
00:16:53.892    OS Version: Windows x64 6.2.9200
00:16:53.892    Number of processors: 8 586 0x3A09
00:16:53.893    ComputerName: PAT-HP  UserName:
00:16:55.072    Initialize success
00:16:55.094    VM: initialized successfully
00:16:55.094    VM: Intel CPU BiosDisabled
00:22:33.323    AVAST engine defs: 15082001
00:26:35.730    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000024
00:26:35.732    Disk 0 Vendor: WDC_WD10EZEX-60ZF5A0 80.00A80 Size: 953869MB BusType: 11
00:26:35.811    Disk 0 MBR read successfully
00:26:35.813    Disk 0 MBR scan
00:26:35.815    Disk 0 unknown MBR code
00:26:35.819    Disk 0 Partition 1 00     EE          GPT           2097151 MB offset 1
00:26:35.843    Disk 0 scanning C:\WINDOWS\system32\drivers
00:26:41.365    Service scanning
00:26:55.557    Modules scanning
00:26:55.561    Disk 0 trace - called modules:
00:26:55.568    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll iaStorA.sys
00:26:55.904    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xffffe00096bd4060]
00:26:55.906    3 CLASSPNP.SYS[fffff800811746c5] -> nt!IofCallDriver -> [0xffffe00096a6dd60]
00:26:55.908    5 ACPI.sys[fffff80080021361] -> nt!IofCallDriver -> \Device\00000024[0xffffe00096a6f430]
00:26:56.973    AVAST engine scan C:\WINDOWS
00:26:58.716    AVAST engine scan C:\WINDOWS\system32
00:28:22.751    AVAST engine scan C:\WINDOWS\system32\drivers
00:28:32.183    AVAST engine scan C:\Users\Dogbone
00:29:56.794    AVAST engine scan C:\ProgramData
00:31:03.275    Disk 0 statistics 3879275/0/0 @ 9.61 MB/s
00:31:03.278    Scan finished successfully
00:31:33.854    Disk 0 MBR has been saved successfully to "C:\Users\Dogbone\Desktop\MBR.dat"
00:31:33.856    The log file has been saved successfully to "C:\Users\Dogbone\Desktop\aswMBR - Quick Scan was default.txt"
 
 



#7 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 01:18 AM

Additional scan result of Farbar Recovery Scan Tool (x64) Version:21-08-2015 03
Ran by Dogbone (2015-08-21 23:12:50)
Running from C:\Users\Dogbone\Desktop
Boot Mode: Normal
==========================================================
 

==================== Accounts: =============================
 
Administrator (S-1-5-21-2785022474-3071207944-3203506637-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2785022474-3071207944-3203506637-503 - Limited - Disabled)
Dogbone (S-1-5-21-2785022474-3071207944-3203506637-1003 - Administrator - Enabled) => C:\Users\Dogbone
Guest (S-1-5-21-2785022474-3071207944-3203506637-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2785022474-3071207944-3203506637-1002 - Limited - Enabled)
Simone (S-1-5-21-2785022474-3071207944-3203506637-1004 - Limited - Enabled) => C:\Users\Simone
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: PC Matic Super Shield (Enabled - Up to date) {A75D148F-9EA0-5C05-DCC3-E2888D63FFEC}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: PC Matic Super Shield (Enabled - Up to date) {1C3CF56B-B89A-538B-E673-D9FAF6E4B551}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
2600 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
2600_Help (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
2600Trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
4 Elements II (x32 Version: 2.2.0.98 - WildTangent) Hidden
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.199 - Adobe Systems Incorporated)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.5.23 - Adobe Systems Incorporated.)
Adobe Flash Player 11 ActiveX (x64) (HKLM\...\{5C804EBB-475F-4555-A225-1D6573F158BD}) (Version: 11.2.202.222 - Adobe Systems Incorporated)
Adobe Photoshop Elements 10 (HKLM-x32\...\Adobe Photoshop Elements 10) (Version: 10.0 - Adobe Systems Incorporated)
Adobe Premiere Elements 10 (HKLM\...\PremElem100) (Version: 10.0 - Adobe Systems Incorporated)
Adobe Premiere Elements 10 (Version: 10.0 - Adobe Systems Incorporated) Hidden
AIO_CDB_ProductContext (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blio (HKLM-x32\...\{FCD6D60F-AF2B-49E3-ABC4-A4C96B56225D}) (Version: 3.0.9482 - K-NFB Reading Technology, Inc.)
Broadcom Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.2700 - Broadcom Corporation)
BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Elements 10 Organizer (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
Escape the Emerald Star (x32 Version: 2.2.0.98 - WildTangent) Hidden
Facebook (HKLM-x32\...\{8AE50893-3A87-4439-9A57-942ED43F7189}) (Version: 1.1.0004 - Hewlett-Packard)
Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Farmscapes (x32 Version: 2.2.0.97 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
Fax (x32 Version: 140.0.307.000 - Hewlett-Packard) Hidden
Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden
Golden Trails 2: The Lost Legacy Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Hewlett-Packard ACLM.NET v1.1.2.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
Hoyle Card Games (x32 Version: 2.2.0.95 - WildTangent) Hidden
HP Calendar (HKLM-x32\...\{2B38E0FA-D8A5-4EBF-A018-E3C1C8E7A2E2}) (Version: 5.1.4245.23508 - Hewlett-Packard)
HP Clock (HKLM-x32\...\{750E9D0F-B188-4A7E-ADD2-84B7ED7D32F6}) (Version: 5.1.4281.27332 - Hewlett-Packard)
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP LinkUp (HKLM-x32\...\{7E750542-55BC-4300-8B7B-AC2A762FB435}) (Version: 2.01.029 - Hewlett-Packard)
HP Notes (HKLM-x32\...\{86BAB08A-5E66-4C53-82E3-C1E91673C7CA}) (Version: 5.1.4274.30382 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.2024 - HP Photo Creations Powered by RocketLife)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP RSS (HKLM-x32\...\{452479C5-0118-48E9-AA69-0A7339F95FC8}) (Version: 5.1.4289.23799 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{438363A8-F486-4C37-834C-4955773CB3D3}) (Version: 9.1.15430.4033 - Hewlett-Packard Company)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 11.00.0001 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{F6A11738-3EE4-4573-AEA5-6CD5D491C167}) (Version: 12.0.30.81 - Hewlett-Packard Company)
HP TouchSmart RecipeBox (HKLM-x32\...\{20714B53-FC73-4F9C-9687-49EB237D6FD7}) (Version: 3.0.3830.27730 - Hewlett-Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HP Weather (HKLM-x32\...\{776CC95E-8160-401B-AC79-164822AA8306}) (Version: 5.1.4245.22595 - Hewlett-Packard)
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.0.1351 - Intel Corporation)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.0.199 - Intel Corporation)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Jewel Quest Mysteries: The Seventh Gate Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.4507 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.4507 - CyberLink Corp.) Hidden
Luxor HD (x32 Version: 2.2.0.98 - WildTangent) Hidden
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
MarketResearch (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mortimer Beckett and the Crimson Thief Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
Mozilla Firefox 40.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 40.0.2 (x86 en-US)) (Version: 40.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.2 - Mozilla)
My Farm Life 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden
NVIDIA HD Audio Driver 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.12.0213 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0213 - NVIDIA Corporation)
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden
PC Matic 1.1.0.56 (HKLM-x32\...\PC Matic_is1) (Version: 1.1.0.56 - PC Pitstop LLC)
PC Matic Super Shield 1.0.0.55 (HKLM-x32\...\PC Pitstop SuperShield_is1) (Version: 1.0.0.55 - PC Pitstop LLC)
PC Pitstop Info Center 1.0.0.18 (HKLM-x32\...\PCPitstopInfoCenter_is1) (Version: 1.0.0.18 - PC Pitstop LLC.)
PDF Complete Corporate Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.95 - PDF Complete, Inc)
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.98 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.6207 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.6207 - CyberLink Corp.) Hidden
PRE10STI64Installer (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
PSE10 STI Installer (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.27343 - Razer Inc.)
Recovery Manager (x32 Version: 5.5.0.5119 - CyberLink Corp.) Hidden
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
Roads of Rome 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype™ 6.21 (HKLM-x32\...\{1845470B-EB14-4ABC-835B-E36C693DC07D}) (Version: 6.21.104 - Skype Technologies S.A.)
SmartSound Common Data (HKLM-x32\...\InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8}) (Version: 1.1.0 - SmartSound Software Inc.)
SmartSound Common Data (x32 Version: 1.1.0 - SmartSound Software Inc.) Hidden
SmartSound Premiere Elements 10 x64 Plugin (HKLM\...\{3DAE9A67-DD8D-4EDB-91F7-7B5132B1864D}) (Version: 5.70.0001 - SmartSound Software Inc.)
SmartSound Sonicfire Pro 5 (HKLM-x32\...\InstallShield_{1D273D91-D7D5-4036-8B84-EB4615FF5F81}) (Version: 5.7.1 - SmartSound Software Inc.)
SmartSound Sonicfire Pro 5 (x32 Version: 5.7.1 - SmartSound Software Inc.) Hidden
SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden
Tales of Lagoona (x32 Version: 2.2.0.98 - WildTangent) Hidden
Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden
Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden
TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden
WildTangent Games App (HP Games) (x32 Version: 4.0.5.36 - WildTangent) Hidden
Windows Driver Package - NVIDIA (nvlddmkm) Display  (07/22/2015 10.18.13.5362) (HKLM\...\48DE2EE8CC7BE5E664866426EA660A7040D056AA) (Version: 07/22/2015 10.18.13.5362 - NVIDIA)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinZip 16.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240CD}) (Version: 16.0.9715 - WinZip Computing, S.L. )
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
Youda Fisherman (x32 Version: 2.2.0.98 - WildTangent) Hidden
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2785022474-3071207944-3203506637-1003_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncApi64.dll (Microsoft Corporation)
 
==================== Restore Points =========================
 
20-08-2015 04:09:59 PC Pitstop Restore Point
21-08-2015 14:33:41 Installed Microsoft Office Enterprise 2007
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {028192E9-3B5D-4947-8913-D409CC2B0C3E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {04348BDF-EBDA-4329-AFA1-9FBDC6263BF2} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {0A075633-4604-4224-B06E-4B0B9C8EAD41} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-06-24] (Hewlett-Packard)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {1611D121-7B64-40AF-BF38-1F74EB55E852} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D758AFA-90A7-432F-A786-759C3120078A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1FEF3DB7-8992-414B-AF5A-71AB3B2A5341} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {218CA032-9F1C-4429-93AB-1B735E0F04AF} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {2B17263B-EAA3-479E-AD4D-F0DA00531B15} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {2C3D6146-4F52-4F52-A2A9-A080950843EC} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {35FA3322-1292-4DB0-B960-CBEF29046E4C} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {37C0938B-233F-426B-9673-9C08E7F9D7F0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\First Boot => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe [2015-07-11] (Hewlett-Packard Company)
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4D0FF355-5DFF-4978-B15D-94DD0B644C67} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {4E377430-67D8-4792-85FA-180207148C31} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-07-11] (Hewlett-Packard Company)
Task: {565A4880-9707-4275-A7CE-EBD2D576A9F5} - System32\Tasks\HPCeeScheduleForPat => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {5BADE7AF-E2D5-4E64-80DB-3BA95A45A422} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-04-12] (Adobe Systems Incorporated)
Task: {5FA6C33C-2438-45DA-887F-767DF1E831DD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {71FA6689-4987-49CF-9E2D-C6D001032601} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {73B79E09-060B-420C-9E07-6CB8A0FF35CB} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7E4C5F2E-5C13-42E9-939C-E34190E6FC72} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {89A17677-59F5-434B-9248-445146887D6A} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {89FD74C1-D7A7-41A1-AD33-31918D3659F8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-08-20] (Microsoft Corporation)
Task: {8F4C3A2F-D807-437E-BAA4-10DF9721ED47} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
Task: {9695DE37-9381-4035-B6F8-6D87A95ACD84} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {9AB9104D-D336-4C67-A7B3-19C1141932CA} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {A7FCFDE0-7B73-4AB6-8391-388204C9EA76} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {A8DADF29-6409-4ACD-BB62-B2ED483E1FC3} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {B3054E1A-E050-4638-814F-BDB50040890A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {B3528A0C-262E-48CC-9A6D-D46BC4205FA0} - System32\Tasks\HPCeeScheduleForDogbone => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {B90B3A32-D90E-418B-9CF2-FBE32EEDC5A9} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {BC53CE63-FC2F-4008-A910-9B54FD476847} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {C33A8D5A-9B4A-403C-9DAC-C74D6D66A849} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {C4535B3A-90BA-4974-BEFC-60461E871949} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {CD11F51A-DAEB-4311-A042-666076B3A5E6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {CD8436B8-BB27-4FE7-80C6-BC882D638F2F} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\WINDOWS\SYSTEM32\OOBE\SETUPSQM.EXE [2015-07-10] (Microsoft Corporation)
Task: {D5C936B3-5215-4D14-B9C4-C66D736D4A37} - System32\Tasks\HPCeeScheduleForPAT-HP$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {D7E0CF17-06D5-44F2-B771-80EF50DB8F9A} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {D9DBEA6A-3973-4C77-AA14-45BB43A0DDD9} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {DA8317C0-F9F6-4136-9D31-B55F53C08A4D} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {DBB2270E-8D38-4611-923A-54DAA084D826} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {E03820A8-5DB7-4080-A9AF-094B3DDCACA3} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {E56D6C7F-BB0C-44A8-95C5-AE89C41F0918} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {E96C9A72-6491-4BAE-9245-D05F932E9248} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {F245C407-79D9-4F1C-9758-651D2E6B7731} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForDogbone.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForPAT-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForPat.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-08-20 04:05 - 2015-08-20 04:05 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-08-20 00:26 - 2015-06-17 02:30 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-08-20 04:05 - 2015-08-20 04:05 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-08-20 04:05 - 2015-08-20 04:05 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-20 04:05 - 2015-08-20 04:05 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-07-10 06:59 - 2015-07-10 06:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-08-20 04:05 - 2015-08-20 04:05 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 07:00 - 2015-07-10 09:14 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-20 04:05 - 2015-08-20 04:05 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-20 04:05 - 2015-08-20 04:05 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 07:00 - 2015-07-10 09:14 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-20 01:58 - 2015-08-20 01:58 - 07824896 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.12.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll
2015-08-20 01:58 - 2015-08-20 01:58 - 02062336 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.12.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll
2015-08-18 18:20 - 2014-04-15 13:02 - 00524288 _____ () C:\Program Files (x86)\PCPitstop\Super Shield\SQLiteEncrypt.dll
2015-08-18 18:22 - 2015-06-26 03:13 - 00184184 _____ () C:\ProgramData\PCPitstopDat\dat\libBase64.dll
2015-08-18 18:22 - 2015-06-26 03:13 - 00175992 _____ () C:\ProgramData\PCPitstopDat\dat\libMachoUniv.dll
2015-05-19 22:29 - 2015-05-19 22:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2015-08-18 18:20 - 2015-06-24 18:29 - 00187200 _____ () C:\Program Files (x86)\PCPitstop\Super Shield\PCMaticRTen.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 

==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 

==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 

==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-2785022474-3071207944-3203506637-1003\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 99.196.99.99 - 99.197.99.99
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\Services: btwdins => 2
MSCONFIG\Services: CalendarSynchService => 3
MSCONFIG\Services: GamesAppService => 3
MSCONFIG\Services: HP Support Assistant Service => 2
MSCONFIG\Services: HPDrvMntSvc.exe => 3
MSCONFIG\Services: STacSV => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: BeatsOSDApp => C:\Program Files\IDT\WDM\beats64.exe
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: PDF Complete => C:\Program Files (x86)\PDF Complete\pdfsty.exe
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{076EBCD2-8F1C-4E79-9D20-8F325255E144}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{84FACE90-8BE9-4D0B-BB27-EAC9B1A9AC13}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DE2D0940-8FDE-4DD7-9094-59A5E59ED22A}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{780B5548-B0A5-462E-8013-6F643DCB8F99}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{0709A2BA-CC0E-49AA-8E2C-5C2DCDE74FBB}] => (Allow) LPort=1900
FirewallRules: [{7BC65847-8696-47C3-A59D-F67C49859E3F}] => (Allow) LPort=2869
FirewallRules: [{50C4C8FA-4A9F-430F-A73E-12AA0A02CE79}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{28EAA2E2-C343-4EFD-B1BA-92A3DC4DFC28}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{76462818-1278-409A-A01A-1FBED4A37FAF}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe
FirewallRules: [{DD65C92D-65D6-4ECD-AF42-6D0A79E2012D}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe
FirewallRules: [{CB3E47E1-F68D-4547-BCD4-5227AF4BE4B7}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe
FirewallRules: [{93535426-F3D3-4DC0-ADB8-4645E47C14B0}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe
FirewallRules: [{227AAAA1-3845-4B44-A903-1EA47FB973F5}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{8AD36F34-0FBF-4283-A18D-B283FE5FFA70}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{54AE8FA0-8B3C-46DF-B188-26F97F8CFB57}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{8F77E7D8-A01C-4296-8E28-788792F9254E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{3DED1469-4FCB-42C6-8CAE-B79D916181EC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{1FEB9E83-7ADA-4109-8FA6-28897FC2ABC5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{4461EA4F-E9D4-4414-BE93-95CB0F0C4A08}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{B673E201-BD49-4422-869D-6848CC969EDA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{165E597A-30D7-4960-A095-DE8E6CD6AF7E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe
FirewallRules: [{5B925A7D-462C-4A78-A231-1C596A9B11C5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{7B0A05E9-2615-4969-A410-DFF396B8F9E1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{B4FF6C64-3339-46DE-9A7E-CA029FB84498}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{9655BEC0-B878-48CB-8177-240CB659A418}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe
FirewallRules: [{F13248F7-E0D4-4756-B54C-D41627E99A30}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{E9B4FB71-4999-4598-B170-88D05285CD81}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{93C0BCC5-6159-4955-8B89-C8922E15F7F7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{7569498D-83F9-4D50-99F3-4E950A3D2B94}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{75CDDE5A-C065-4EA0-A3C4-D2DFCFE94962}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{E14F04EE-5288-4E35-99AC-3FAAEDE56DBD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{635601BB-6CF7-48BF-ADC5-E54A3C9D29A9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{0C729B64-F604-4B59-87CF-366FE4477574}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe
 
==================== Faulty Device Manager Devices =============
 

==================== Event log errors: =========================
 
Application errors:
==================
Error: (08/21/2015 10:34:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1
Faulting module name: MSOIMM.dll, version: 16.0.6014.1000, time stamp: 0x55a578c7
Exception code: 0xc0000005
Fault offset: 0x000000000041cb3c
Faulting process id: 0xa3c
Faulting application start time: 0xOHub.exe0
Faulting application path: OHub.exe1
Faulting module path: OHub.exe2
Report Id: OHub.exe3
Faulting package full name: OHub.exe4
Faulting package-relative application ID: OHub.exe5
 
Error: (08/21/2015 10:13:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pat-HP)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (08/21/2015 07:32:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program MicrosoftEdge.exe version 11.0.10240.16431 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 29d4
 
Start Time: 01d0dc68d49d5d86
 
Termination Time: 4294967295
 
Application Path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
 
Report Id: ee1c28d9-485c-11e5-9bc6-2cd05a04df29
 
Faulting package full name: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe
 
Faulting package-relative application ID: MicrosoftEdge
 
Error: (08/21/2015 07:32:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Pat-HP)
Description: Package Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe+MicrosoftEdge was terminated because it took too long to suspend.
 
Error: (08/21/2015 03:18:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pat-HP)
Description: Activation of app Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (08/21/2015 03:04:21 PM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail (8788) WindowsMail0: The backup has been stopped because it was halted by the client or the connection with the client failed.
 
Error: (08/21/2015 03:02:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x0000000000000000
Faulting process id: 0x1f6c
Faulting application start time: 0xOHub.exe0
Faulting application path: OHub.exe1
Faulting module path: OHub.exe2
Report Id: OHub.exe3
Faulting package full name: OHub.exe4
Faulting package-relative application ID: OHub.exe5
 
Error: (08/21/2015 02:46:16 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pat-HP)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (08/21/2015 02:33:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
 
System Error:
Access is denied.
.
 
Error: (08/21/2015 01:59:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1
Faulting module name: Mso30Imm.dll, version: 16.0.6014.1000, time stamp: 0x55a5783f
Exception code: 0xc0000005
Fault offset: 0x0000000000012b70
Faulting process id: 0x2018
Faulting application start time: 0xOHub.exe0
Faulting application path: OHub.exe1
Faulting module path: OHub.exe2
Report Id: OHub.exe3
Faulting package full name: OHub.exe4
Faulting package-relative application ID: OHub.exe5
 

System errors:
=============
Error: (08/21/2015 10:14:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Net.Tcp Listener Adapter service depends on the Net.Tcp Port Sharing Service service which failed to start because of the following error:
%%1058
 
Error: (08/21/2015 10:14:32 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: The password notification DLL c:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll failed to load with error 126. Please verify that the notification DLL path defined in the registry, HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages, refers to a correct and absolute path (<drive>:\<path>\<filename>.<ext>) and not a relative or invalid path. If the DLL path is correct, please validate that any supporting files are located in the same directory, and that the system account has read access to both the DLL path and any supporting files.  Contact the provider of the notification DLL for additional support. Further details can be found on the web at http://go.microsoft.com/fwlink/?LinkId=245898.
 
Error: (08/21/2015 10:13:19 PM) (Source: DCOM) (EventID: 10010) (User: Pat-HP)
Description: CortanaUI.AppXd4tad4d57t4wtdbnnmb8v2xtzym8c1n8.mca
 
Error: (08/21/2015 10:13:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_Session2 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (08/21/2015 10:04:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_Session1 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (08/21/2015 10:01:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Net.Tcp Listener Adapter service depends on the Net.Tcp Port Sharing Service service which failed to start because of the following error:
%%1058
 
Error: (08/21/2015 10:01:45 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: The password notification DLL c:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll failed to load with error 126. Please verify that the notification DLL path defined in the registry, HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages, refers to a correct and absolute path (<drive>:\<path>\<filename>.<ext>) and not a relative or invalid path. If the DLL path is correct, please validate that any supporting files are located in the same directory, and that the system account has read access to both the DLL path and any supporting files.  Contact the provider of the notification DLL for additional support. Further details can be found on the web at http://go.microsoft.com/fwlink/?LinkId=245898.
 
Error: (08/21/2015 10:00:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Sync Host_Session1 service to connect.
 
Error: (08/21/2015 10:00:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_Session1 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (08/21/2015 07:40:16 PM) (Source: DCOM) (EventID: 10016) (User: Pat-HP)
Description: application-specificLocalActivation{9E175B6D-F52A-11D8-B9A5-505054503030}{9E175B9C-F52A-11D8-B9A5-505054503030}Pat-HPDogboneS-1-5-21-2785022474-3071207944-3203506637-1003LocalHost (Using LRPC)Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbweS-1-15-2-3624051433-2125758914-1423191267-1740899205-1073925389-3782572162-737981194
 

Microsoft Office:
=========================
Error: (08/21/2015 10:34:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OHub.exe16.0.6106.235055c40ea1MSOIMM.dll16.0.6014.100055a578c7c0000005000000000041cb3ca3c01d0dc812c7a374aC:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exeC:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\MSOIMM.dlldd164a54-01b0-4b03-8849-10f7fac12b62Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub
 
Error: (08/21/2015 10:13:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pat-HP)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141
 
Error: (08/21/2015 07:32:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: MicrosoftEdge.exe11.0.10240.1643129d401d0dc68d49d5d864294967295C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exeee1c28d9-485c-11e5-9bc6-2cd05a04df29Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbweMicrosoftEdge
 
Error: (08/21/2015 07:32:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Pat-HP)
Description: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe+MicrosoftEdge
 
Error: (08/21/2015 03:18:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pat-HP)
Description: Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen-2144927141
 
Error: (08/21/2015 03:04:21 PM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail8788WindowsMail0:
 
Error: (08/21/2015 03:02:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OHub.exe16.0.6106.235055c40ea1unknown0.0.0.000000000c000000500000000000000001f6c01d0dc43f93d9d8fC:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exeunknownea88955c-3bfa-4613-902a-397f36b9bdf5Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub
 
Error: (08/21/2015 02:46:16 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pat-HP)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141
 
Error: (08/21/2015 02:33:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
 
System Error:
Access is denied.
 
Error: (08/21/2015 01:59:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OHub.exe16.0.6106.235055c40ea1Mso30Imm.dll16.0.6014.100055a5783fc00000050000000000012b70201801d0dc3b26cadd4cC:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exeC:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\Mso30Imm.dll0978890c-73df-48c4-8d6c-4d6841c45515Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub
 

==================== Memory info ===========================
 
Processor: Intel® Core™ i7-3770 CPU @ 3.40GHz
Percentage of memory in use: 25%
Total physical RAM: 8149.41 MB
Available physical RAM: 6103.7 MB
Total Virtual: 10069.41 MB
Available Virtual: 7904.31 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:910.36 GB) (Free:809.96 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (HP_RECOVERY) (Fixed) (Total:20.49 GB) (Free:2.56 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 9B5BA8BF)
 
Partition: GPT.
 
==================== End of log ============================



#8 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 01:20 AM

RogueKiller V10.10.1.0 [Aug 17 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
 
Operating System : Windows 10 (10.0.10240) 64 bits version
Started in : Normal mode
User : Dogbone [Administrator]
Started from : C:\Users\Dogbone\Desktop\RogueKiller.exe
Mode : Scan -- Date : 08/21/2015 23:30:46
 
¤¤¤ Processes : 1 ¤¤¤
[ZeroAccess] PCPitstopRTService.exe(2740) -- C:\Program Files (x86)\PCPitstop\Super Shield\PCPitstopRTService.exe[7] -> Killed [TermProc]
 
¤¤¤ Registry : 8 ¤¤¤
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-2785022474-3071207944-3203506637-1003\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve  -> Found
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-2785022474-3071207944-3203506637-1003\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 99.196.99.99 99.197.99.99 ([(Unknown Country?) (XX)][(Unknown Country?) (XX)])  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 99.196.99.99 99.197.99.99 ([(Unknown Country?) (XX)][(Unknown Country?) (XX)])  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4293ba2a-f8dc-48c4-9862-8bda5c42fc79} | DhcpNameServer : 99.196.99.99 99.197.99.99 ([(Unknown Country?) (XX)][(Unknown Country?) (XX)])  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{4293ba2a-f8dc-48c4-9862-8bda5c42fc79} | DhcpNameServer : 99.196.99.99 99.197.99.99 ([(Unknown Country?) (XX)][(Unknown Country?) (XX)])  -> Found
[PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-2785022474-3071207944-3203506637-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0  -> Found
[PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-2785022474-3071207944-3203506637-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0  -> Found
 
¤¤¤ Tasks : 0 ¤¤¤
 
¤¤¤ Files : 0 ¤¤¤
 
¤¤¤ Hosts File : 0 ¤¤¤
 
¤¤¤ Antirootkit : 0 (Driver: Not loaded [0xc000036b]) ¤¤¤
 
¤¤¤ Web browsers : 0 ¤¤¤
 
¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-60ZF5A0 SCSI Disk Device +++++
--- User ---
[MBR] 0ff8816e491142025faae3e0a1bdff3f
[BSP] 0b0c87c12f7568b439ee5aedde8f8386 : Empty|VT.Unknown MBR Code
Partition table:
0 - [MAN-MOUNT] EFI system partition | Offset (sectors): 2048 | Size: 100 MB
1 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 206848 | Size: 128 MB
2 - Basic data partition | Offset (sectors): 468992 | Size: 932211 MB
3 - [SYSTEM][MAN-MOUNT]  | Offset (sectors): 1909637120 | Size: 450 MB
4 - Basic data partition | Offset (sectors): 1910558720 | Size: 20979 MB
User = LL1 ... OK
User = LL2 ... OK
 
+++++ PhysicalDrive1: HP Photosmart 2610x USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )
 
+++++ PhysicalDrive2: Generic- SD/MMC USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )
 
+++++ PhysicalDrive3: Generic- Compact Flash USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )
 
+++++ PhysicalDrive4: Generic- SM/xD-Picture USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )
 
+++++ PhysicalDrive5: Generic- MS/MS-Pro USB Device +++++
Error reading User MBR! ([15] The device is not ready. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] The request is not supported. )


#9 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 01:21 AM

MiniToolBox by Farbar  Version: 25-07-2015 01
Ran by Dogbone (administrator) on 22-08-2015 at 00:48:49
Running from "C:\Users\Dogbone\Desktop"
Microsoft Windows 10 Pro  (X64)
Model: h8-1360t Manufacturer: Hewlett-Packard
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ==============================
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ==============================
 

"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
 
 
 
========================= IP Configuration: ================================
 
Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) = Local Area Connection (Connected)
Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter = Wireless Network Connection (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
 

# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global
 

popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Pat-HP
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Wireless LAN adapter Wireless Network Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter
   Physical Address. . . . . . . . . : 2C-D0-5A-6E-4A-BA
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Ethernet adapter Local Area Connection:
 
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
   Physical Address. . . . . . . . . : 70-54-D2-BC-C7-CF
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::9c38:3fb3:61fc:326b%2(Preferred)
   IPv4 Address. . . . . . . . . . . : 75.107.245.77(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.252.0
   Lease Obtained. . . . . . . . . . : Friday, August 21, 2015 10:14:36 PM
   Lease Expires . . . . . . . . . . : Saturday, August 22, 2015 12:31:08 PM
   Default Gateway . . . . . . . . . : 75.107.244.1
   DHCP Server . . . . . . . . . . . : 184.63.0.10
   DHCPv6 IAID . . . . . . . . . . . : 275797202
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1D-64-BB-9A-70-54-D2-BC-C7-CF
   DNS Servers . . . . . . . . . . . : 99.196.99.99
                                       99.197.99.99
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter 6TO4 Adapter:
 
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2002:4b6b:f54d::4b6b:f54d(Preferred)
   Default Gateway . . . . . . . . . :
   DHCPv6 IAID . . . . . . . . . . . : 251658240
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1D-64-BB-9A-70-54-D2-BC-C7-CF
   DNS Servers . . . . . . . . . . . : 99.196.99.99
                                       99.197.99.99
   NetBIOS over Tcpip. . . . . . . . : Disabled
 
Ethernet adapter Bluetooth Network Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 2C-D0-5A-04-DF-29
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter isatap.{4293BA2A-F8DC-48C4-9862-8BDA5C42FC79}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Teredo Tunneling Pseudo-Interface:
 
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Teredo Tunneling Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fd:24ee:3c26:b494:ab2(Preferred)
   Link-local IPv6 Address . . . . . : fe80::24ee:3c26:b494:ab2%3(Preferred)
   Default Gateway . . . . . . . . . :
   DHCPv6 IAID . . . . . . . . . . . : 285212672
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1D-64-BB-9A-70-54-D2-BC-C7-CF
   NetBIOS over Tcpip. . . . . . . . : Disabled
Server:  UnKnown
Address:  99.196.99.99
 
Name:    google.com
Address:  216.58.217.46
 

Pinging google.com [216.58.217.46] with 32 bytes of data:
Reply from 216.58.217.46: bytes=32 time=663ms TTL=55
Reply from 216.58.217.46: bytes=32 time=682ms TTL=55
 
Ping statistics for 216.58.217.46:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 663ms, Maximum = 682ms, Average = 672ms
Server:  UnKnown
Address:  99.196.99.99
 
Name:    yahoo.com
Addresses:  206.190.36.45
   98.138.253.109
   98.139.183.24
 

Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=686ms TTL=52
Reply from 206.190.36.45: bytes=32 time=673ms TTL=52
 
Ping statistics for 206.190.36.45:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 673ms, Maximum = 686ms, Average = 679ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
  7...2c d0 5a 6e 4a ba ......Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter
  2...70 54 d2 bc c7 cf ......Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
  8...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
  9...2c d0 5a 04 df 29 ......Bluetooth Device (Personal Area Network)
  1...........................Software Loopback Interface 1
  4...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
  3...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0     75.107.244.1    75.107.245.77     10
     75.107.244.0    255.255.252.0         On-link     75.107.245.77    266
    75.107.245.77  255.255.255.255         On-link     75.107.245.77    266
   75.107.247.255  255.255.255.255         On-link     75.107.245.77    266
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     75.107.245.77    266
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     75.107.245.77    266
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
  3    306 2001::/32                On-link
  3    306 2001:0:5ef5:79fd:24ee:3c26:b494:ab2/128
                                    On-link
  8   1010 2002::/16                On-link
  8    266 2002:4b6b:f54d::4b6b:f54d/128
                                    On-link
  2    266 fe80::/64                On-link
  3    306 fe80::/64                On-link
  3    306 fe80::24ee:3c26:b494:ab2/128
                                    On-link
  2    266 fe80::9c38:3fb3:61fc:326b/128
                                    On-link
  1    306 ff00::/8                 On-link
  2    266 ff00::/8                 On-link
  3    306 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\WINDOWS\SysWOW64\NLAapi.dll [64000] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\SysWOW64\napinsp.dll [54784] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70144] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70144] (Microsoft Corporation)
Catalog5 05 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog5 06 C:\WINDOWS\SysWOW64\winrnr.dll [23552] (Microsoft Corporation)
Catalog5 07 C:\WINDOWS\SysWOW64\wshbth.dll [51200] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\SysWOW64\mswsock.dll [306528] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [79872] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [67072] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [31744] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\wshbth.dll [62976] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
x64-Catalog9 12 C:\Windows\System32\mswsock.dll [364384] (Microsoft Corporation)
 
**** End of log ****


#10 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 01:40 AM

System Information report written at: 08/22/15 02:27:46
System Name: PAT-HP
[System Summary (C:\Users\Dogbone\Desktop\Summary.nfo)]
 
Item Value 
OS Name Microsoft Windows 10 Pro 
Version 10.0.10240 Build 10240 
Other OS Description  Not Available 
OS Manufacturer Microsoft Corporation 
System Name PAT-HP 
System Manufacturer Hewlett-Packard 
System Model h8-1360t 
System Type x64-based PC 
System SKU B4J27AV#ABA 
Processor Intel® Core™ i7-3770 CPU @ 3.40GHz, 3401 Mhz, 4 Core(s), 8 Logical Processor(s) 
BIOS Version/Date AMI 7.15, 7/2/2012 
SMBIOS Version 2.7 
Embedded Controller Version 255.255 
BIOS Mode UEFI 
BaseBoard Manufacturer PEGATRON CORPORATION 
BaseBoard Model Not Available 
BaseBoard Name Base Board 
Platform Role Desktop 
Secure Boot State Off 
PCR7 Configuration Binding Not Possible 
Windows Directory C:\WINDOWS 
System Directory C:\WINDOWS\system32 
Boot Device \Device\HarddiskVolume1 
Locale United States 
Hardware Abstraction Layer Version = "10.0.10240.16392" 
User Name Pat-HP\Dogbone 
Time Zone Eastern Daylight Time 
Installed Physical Memory (RAM) 8.00 GB 
Total Physical Memory 7.96 GB 
Available Physical Memory 5.49 GB 
Total Virtual Memory 9.83 GB 
Available Virtual Memory 7.55 GB 
Page File Space 1.88 GB 
Page File C:\pagefile.sys 
Hyper-V - VM Monitor Mode Extensions Yes 
Hyper-V - Second Level Address Translation Extensions Yes 
Hyper-V - Virtualization Enabled in Firmware No 
Hyper-V - Data Execution Protection Yes 
 
[Hardware Resources]
 
 
 
[Conflicts/Sharing]
 
Resource Device 
I/O Port 0x00000000-0x0000001F Direct memory access controller 
I/O Port 0x00000000-0x0000001F PCI bus 
  
I/O Port 0x000003C0-0x000003DF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 
I/O Port 0x000003C0-0x000003DF NVIDIA GeForce GT 630 
  
I/O Port 0x00000070-0x00000070 Motherboard resources 
I/O Port 0x00000070-0x00000070 System CMOS/real time clock 
  
I/O Port 0x00000065-0x00000065 Motherboard resources 
I/O Port 0x00000065-0x00000065 Motherboard resources 
  
I/O Port 0x000004D0-0x000004D1 Motherboard resources 
I/O Port 0x000004D0-0x000004D1 Programmable interrupt controller 
  
I/O Port 0x0000E000-0x0000EFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 
I/O Port 0x0000E000-0x0000EFFF NVIDIA GeForce GT 630 
  
Memory Address 0xF6000000-0xF70FFFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 
Memory Address 0xF6000000-0xF70FFFFF NVIDIA GeForce GT 630 
  
Memory Address 0xFF000000-0xFFFFFFFF Motherboard resources 
Memory Address 0xFF000000-0xFFFFFFFF Legacy device 
  
IRQ 16 Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E2D 
IRQ 16 Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter 
IRQ 16 NVIDIA GeForce GT 630 
IRQ 16 Intel® Management Engine Interface  
  
Memory Address 0xE0000000-0xF1FFFFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 
Memory Address 0xE0000000-0xF1FFFFFF PCI bus 
Memory Address 0xE0000000-0xF1FFFFFF NVIDIA GeForce GT 630 
  
IRQ 17 Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) 
IRQ 17 High Definition Audio Controller 
  
Memory Address 0xA0000-0xBFFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 
Memory Address 0xA0000-0xBFFFF PCI bus 
Memory Address 0xA0000-0xBFFFF NVIDIA GeForce GT 630 
  
I/O Port 0x000003B0-0x000003BB Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 
I/O Port 0x000003B0-0x000003BB NVIDIA GeForce GT 630 
  
Memory Address 0xF7100000-0xF713FFFF Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) 
Memory Address 0xF7100000-0xF713FFFF Intel® 7 Series/C216 Chipset Family PCI Express Root Port 6 - 1E1A 
  
I/O Port 0x00000080-0x00000080 Motherboard resources 
I/O Port 0x00000080-0x00000080 Motherboard resources 
  
I/O Port 0x0000D000-0x0000D07F Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) 
I/O Port 0x0000D000-0x0000D07F Intel® 7 Series/C216 Chipset Family PCI Express Root Port 6 - 1E1A 
  
I/O Port 0x0000FFFF-0x0000FFFF Motherboard resources 
I/O Port 0x0000FFFF-0x0000FFFF Motherboard resources 
  
 
[DMA]
 
Resource Device Status 
Channel 4 Direct memory access controller OK 
 
[Forced Hardware]
 
Device PNP_Device_ID 
  
 
[I/O]
 
Resource Device Status 
0x0000002E-0x0000002F Motherboard resources OK 
0x0000004E-0x0000004F Motherboard resources OK 
0x00000061-0x00000061 Motherboard resources OK 
0x00000063-0x00000063 Motherboard resources OK 
0x00000065-0x00000065 Motherboard resources OK 
0x00000065-0x00000065 Motherboard resources OK 
0x00000067-0x00000067 Motherboard resources OK 
0x00000070-0x00000070 Motherboard resources OK 
0x00000070-0x00000070 System CMOS/real time clock OK 
0x00000080-0x00000080 Motherboard resources OK 
0x00000080-0x00000080 Motherboard resources OK 
0x00000092-0x00000092 Motherboard resources OK 
0x000000B2-0x000000B3 Motherboard resources OK 
0x00000680-0x0000069F Motherboard resources OK 
0x00000200-0x0000020F Motherboard resources OK 
0x0000FFFF-0x0000FFFF Motherboard resources OK 
0x0000FFFF-0x0000FFFF Motherboard resources OK 
0x00000400-0x00000453 Motherboard resources OK 
0x00000458-0x0000047F Motherboard resources OK 
0x00000500-0x0000057F Motherboard resources OK 
0x0000164E-0x0000164F Motherboard resources OK 
0x0000D000-0x0000D07F Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) OK 
0x0000D000-0x0000D07F Intel® 7 Series/C216 Chipset Family PCI Express Root Port 6 - 1E1A OK 
0x00000000-0x0000001F Direct memory access controller OK 
0x00000000-0x0000001F PCI bus OK 
0x00000081-0x00000091 Direct memory access controller OK 
0x00000093-0x0000009F Direct memory access controller OK 
0x000000C0-0x000000DF Direct memory access controller OK 
0x0000F070-0x0000F077 Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
0x0000F060-0x0000F063 Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
0x0000F050-0x0000F057 Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
0x0000F040-0x0000F043 Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
0x0000F020-0x0000F03F Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
0x0000E000-0x0000EFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 OK 
0x0000E000-0x0000EFFF NVIDIA GeForce GT 630 OK 
0x000003B0-0x000003BB Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 OK 
0x000003B0-0x000003BB NVIDIA GeForce GT 630 OK 
0x000003C0-0x000003DF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 OK 
0x000003C0-0x000003DF NVIDIA GeForce GT 630 OK 
0x000000F0-0x000000FF Numeric data processor OK 
0x00000040-0x00000043 System timer OK 
0x00000050-0x00000053 System timer OK 
0x00000D00-0x0000FFFF PCI bus OK 
0x00000010-0x0000001F Motherboard resources OK 
0x00000022-0x0000003F Motherboard resources OK 
0x00000044-0x0000005F Motherboard resources OK 
0x00000062-0x00000063 Motherboard resources OK 
0x00000072-0x0000007F Motherboard resources OK 
0x00000084-0x00000086 Motherboard resources OK 
0x00000088-0x00000088 Motherboard resources OK 
0x0000008C-0x0000008E Motherboard resources OK 
0x00000090-0x0000009F Motherboard resources OK 
0x000000A2-0x000000BF Motherboard resources OK 
0x000000E0-0x000000EF Motherboard resources OK 
0x000004D0-0x000004D1 Motherboard resources OK 
0x000004D0-0x000004D1 Programmable interrupt controller OK 
0x00000290-0x0000029F Motherboard resources OK 
0x00000020-0x00000021 Programmable interrupt controller OK 
0x00000024-0x00000025 Programmable interrupt controller OK 
0x00000028-0x00000029 Programmable interrupt controller OK 
0x0000002C-0x0000002D Programmable interrupt controller OK 
0x00000030-0x00000031 Programmable interrupt controller OK 
0x00000034-0x00000035 Programmable interrupt controller OK 
0x00000038-0x00000039 Programmable interrupt controller OK 
0x0000003C-0x0000003D Programmable interrupt controller OK 
0x000000A0-0x000000A1 Programmable interrupt controller OK 
0x000000A4-0x000000A5 Programmable interrupt controller OK 
0x000000A8-0x000000A9 Programmable interrupt controller OK 
0x000000AC-0x000000AD Programmable interrupt controller OK 
0x000000B0-0x000000B1 Programmable interrupt controller OK 
0x000000B4-0x000000B5 Programmable interrupt controller OK 
0x000000B8-0x000000B9 Programmable interrupt controller OK 
0x000000BC-0x000000BD Programmable interrupt controller OK 
0x0000F000-0x0000F01F Intel® 7 Series/C216 Chipset Family SMBus Host Controller - 1E22 OK 
0x00000454-0x00000457 Motherboard resources OK 
 
[IRQs]
 
Resource Device Status 
IRQ 17 Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) OK 
IRQ 17 High Definition Audio Controller OK 
IRQ 4294967294 Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
IRQ 13 Numeric data processor OK 
IRQ 16 Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E2D OK 
IRQ 16 Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter OK 
IRQ 16 NVIDIA GeForce GT 630 OK 
IRQ 16 Intel® Management Engine Interface  OK 
IRQ 0 System timer OK 
IRQ 23 Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E26 OK 
IRQ 54 Microsoft ACPI-Compliant System OK 
IRQ 55 Microsoft ACPI-Compliant System OK 
IRQ 56 Microsoft ACPI-Compliant System OK 
IRQ 57 Microsoft ACPI-Compliant System OK 
IRQ 58 Microsoft ACPI-Compliant System OK 
IRQ 59 Microsoft ACPI-Compliant System OK 
IRQ 60 Microsoft ACPI-Compliant System OK 
IRQ 61 Microsoft ACPI-Compliant System OK 
IRQ 62 Microsoft ACPI-Compliant System OK 
IRQ 63 Microsoft ACPI-Compliant System OK 
IRQ 64 Microsoft ACPI-Compliant System OK 
IRQ 65 Microsoft ACPI-Compliant System OK 
IRQ 66 Microsoft ACPI-Compliant System OK 
IRQ 67 Microsoft ACPI-Compliant System OK 
IRQ 68 Microsoft ACPI-Compliant System OK 
IRQ 69 Microsoft ACPI-Compliant System OK 
IRQ 70 Microsoft ACPI-Compliant System OK 
IRQ 71 Microsoft ACPI-Compliant System OK 
IRQ 72 Microsoft ACPI-Compliant System OK 
IRQ 73 Microsoft ACPI-Compliant System OK 
IRQ 74 Microsoft ACPI-Compliant System OK 
IRQ 75 Microsoft ACPI-Compliant System OK 
IRQ 76 Microsoft ACPI-Compliant System OK 
IRQ 77 Microsoft ACPI-Compliant System OK 
IRQ 78 Microsoft ACPI-Compliant System OK 
IRQ 79 Microsoft ACPI-Compliant System OK 
IRQ 80 Microsoft ACPI-Compliant System OK 
IRQ 81 Microsoft ACPI-Compliant System OK 
IRQ 82 Microsoft ACPI-Compliant System OK 
IRQ 83 Microsoft ACPI-Compliant System OK 
IRQ 84 Microsoft ACPI-Compliant System OK 
IRQ 85 Microsoft ACPI-Compliant System OK 
IRQ 86 Microsoft ACPI-Compliant System OK 
IRQ 87 Microsoft ACPI-Compliant System OK 
IRQ 88 Microsoft ACPI-Compliant System OK 
IRQ 89 Microsoft ACPI-Compliant System OK 
IRQ 90 Microsoft ACPI-Compliant System OK 
IRQ 91 Microsoft ACPI-Compliant System OK 
IRQ 92 Microsoft ACPI-Compliant System OK 
IRQ 93 Microsoft ACPI-Compliant System OK 
IRQ 94 Microsoft ACPI-Compliant System OK 
IRQ 95 Microsoft ACPI-Compliant System OK 
IRQ 96 Microsoft ACPI-Compliant System OK 
IRQ 97 Microsoft ACPI-Compliant System OK 
IRQ 98 Microsoft ACPI-Compliant System OK 
IRQ 99 Microsoft ACPI-Compliant System OK 
IRQ 100 Microsoft ACPI-Compliant System OK 
IRQ 101 Microsoft ACPI-Compliant System OK 
IRQ 102 Microsoft ACPI-Compliant System OK 
IRQ 103 Microsoft ACPI-Compliant System OK 
IRQ 104 Microsoft ACPI-Compliant System OK 
IRQ 105 Microsoft ACPI-Compliant System OK 
IRQ 106 Microsoft ACPI-Compliant System OK 
IRQ 107 Microsoft ACPI-Compliant System OK 
IRQ 108 Microsoft ACPI-Compliant System OK 
IRQ 109 Microsoft ACPI-Compliant System OK 
IRQ 110 Microsoft ACPI-Compliant System OK 
IRQ 111 Microsoft ACPI-Compliant System OK 
IRQ 112 Microsoft ACPI-Compliant System OK 
IRQ 113 Microsoft ACPI-Compliant System OK 
IRQ 114 Microsoft ACPI-Compliant System OK 
IRQ 115 Microsoft ACPI-Compliant System OK 
IRQ 116 Microsoft ACPI-Compliant System OK 
IRQ 117 Microsoft ACPI-Compliant System OK 
IRQ 118 Microsoft ACPI-Compliant System OK 
IRQ 119 Microsoft ACPI-Compliant System OK 
IRQ 120 Microsoft ACPI-Compliant System OK 
IRQ 121 Microsoft ACPI-Compliant System OK 
IRQ 122 Microsoft ACPI-Compliant System OK 
IRQ 123 Microsoft ACPI-Compliant System OK 
IRQ 124 Microsoft ACPI-Compliant System OK 
IRQ 125 Microsoft ACPI-Compliant System OK 
IRQ 126 Microsoft ACPI-Compliant System OK 
IRQ 127 Microsoft ACPI-Compliant System OK 
IRQ 128 Microsoft ACPI-Compliant System OK 
IRQ 129 Microsoft ACPI-Compliant System OK 
IRQ 130 Microsoft ACPI-Compliant System OK 
IRQ 131 Microsoft ACPI-Compliant System OK 
IRQ 132 Microsoft ACPI-Compliant System OK 
IRQ 133 Microsoft ACPI-Compliant System OK 
IRQ 134 Microsoft ACPI-Compliant System OK 
IRQ 135 Microsoft ACPI-Compliant System OK 
IRQ 136 Microsoft ACPI-Compliant System OK 
IRQ 137 Microsoft ACPI-Compliant System OK 
IRQ 138 Microsoft ACPI-Compliant System OK 
IRQ 139 Microsoft ACPI-Compliant System OK 
IRQ 140 Microsoft ACPI-Compliant System OK 
IRQ 141 Microsoft ACPI-Compliant System OK 
IRQ 142 Microsoft ACPI-Compliant System OK 
IRQ 143 Microsoft ACPI-Compliant System OK 
IRQ 144 Microsoft ACPI-Compliant System OK 
IRQ 145 Microsoft ACPI-Compliant System OK 
IRQ 146 Microsoft ACPI-Compliant System OK 
IRQ 147 Microsoft ACPI-Compliant System OK 
IRQ 148 Microsoft ACPI-Compliant System OK 
IRQ 149 Microsoft ACPI-Compliant System OK 
IRQ 150 Microsoft ACPI-Compliant System OK 
IRQ 151 Microsoft ACPI-Compliant System OK 
IRQ 152 Microsoft ACPI-Compliant System OK 
IRQ 153 Microsoft ACPI-Compliant System OK 
IRQ 154 Microsoft ACPI-Compliant System OK 
IRQ 155 Microsoft ACPI-Compliant System OK 
IRQ 156 Microsoft ACPI-Compliant System OK 
IRQ 157 Microsoft ACPI-Compliant System OK 
IRQ 158 Microsoft ACPI-Compliant System OK 
IRQ 159 Microsoft ACPI-Compliant System OK 
IRQ 160 Microsoft ACPI-Compliant System OK 
IRQ 161 Microsoft ACPI-Compliant System OK 
IRQ 162 Microsoft ACPI-Compliant System OK 
IRQ 163 Microsoft ACPI-Compliant System OK 
IRQ 164 Microsoft ACPI-Compliant System OK 
IRQ 165 Microsoft ACPI-Compliant System OK 
IRQ 166 Microsoft ACPI-Compliant System OK 
IRQ 167 Microsoft ACPI-Compliant System OK 
IRQ 168 Microsoft ACPI-Compliant System OK 
IRQ 169 Microsoft ACPI-Compliant System OK 
IRQ 170 Microsoft ACPI-Compliant System OK 
IRQ 171 Microsoft ACPI-Compliant System OK 
IRQ 172 Microsoft ACPI-Compliant System OK 
IRQ 173 Microsoft ACPI-Compliant System OK 
IRQ 174 Microsoft ACPI-Compliant System OK 
IRQ 175 Microsoft ACPI-Compliant System OK 
IRQ 176 Microsoft ACPI-Compliant System OK 
IRQ 177 Microsoft ACPI-Compliant System OK 
IRQ 178 Microsoft ACPI-Compliant System OK 
IRQ 179 Microsoft ACPI-Compliant System OK 
IRQ 180 Microsoft ACPI-Compliant System OK 
IRQ 181 Microsoft ACPI-Compliant System OK 
IRQ 182 Microsoft ACPI-Compliant System OK 
IRQ 183 Microsoft ACPI-Compliant System OK 
IRQ 184 Microsoft ACPI-Compliant System OK 
IRQ 185 Microsoft ACPI-Compliant System OK 
IRQ 186 Microsoft ACPI-Compliant System OK 
IRQ 187 Microsoft ACPI-Compliant System OK 
IRQ 188 Microsoft ACPI-Compliant System OK 
IRQ 189 Microsoft ACPI-Compliant System OK 
IRQ 190 Microsoft ACPI-Compliant System OK 
IRQ 191 Microsoft ACPI-Compliant System OK 
IRQ 192 Microsoft ACPI-Compliant System OK 
IRQ 193 Microsoft ACPI-Compliant System OK 
IRQ 194 Microsoft ACPI-Compliant System OK 
IRQ 195 Microsoft ACPI-Compliant System OK 
IRQ 196 Microsoft ACPI-Compliant System OK 
IRQ 197 Microsoft ACPI-Compliant System OK 
IRQ 198 Microsoft ACPI-Compliant System OK 
IRQ 199 Microsoft ACPI-Compliant System OK 
IRQ 200 Microsoft ACPI-Compliant System OK 
IRQ 201 Microsoft ACPI-Compliant System OK 
IRQ 202 Microsoft ACPI-Compliant System OK 
IRQ 203 Microsoft ACPI-Compliant System OK 
IRQ 204 Microsoft ACPI-Compliant System OK 
IRQ 256 Microsoft ACPI-Compliant System OK 
IRQ 257 Microsoft ACPI-Compliant System OK 
IRQ 258 Microsoft ACPI-Compliant System OK 
IRQ 259 Microsoft ACPI-Compliant System OK 
IRQ 260 Microsoft ACPI-Compliant System OK 
IRQ 261 Microsoft ACPI-Compliant System OK 
IRQ 262 Microsoft ACPI-Compliant System OK 
IRQ 263 Microsoft ACPI-Compliant System OK 
IRQ 264 Microsoft ACPI-Compliant System OK 
IRQ 265 Microsoft ACPI-Compliant System OK 
IRQ 266 Microsoft ACPI-Compliant System OK 
IRQ 267 Microsoft ACPI-Compliant System OK 
IRQ 268 Microsoft ACPI-Compliant System OK 
IRQ 269 Microsoft ACPI-Compliant System OK 
IRQ 270 Microsoft ACPI-Compliant System OK 
IRQ 271 Microsoft ACPI-Compliant System OK 
IRQ 272 Microsoft ACPI-Compliant System OK 
IRQ 273 Microsoft ACPI-Compliant System OK 
IRQ 274 Microsoft ACPI-Compliant System OK 
IRQ 275 Microsoft ACPI-Compliant System OK 
IRQ 276 Microsoft ACPI-Compliant System OK 
IRQ 277 Microsoft ACPI-Compliant System OK 
IRQ 278 Microsoft ACPI-Compliant System OK 
IRQ 279 Microsoft ACPI-Compliant System OK 
IRQ 280 Microsoft ACPI-Compliant System OK 
IRQ 281 Microsoft ACPI-Compliant System OK 
IRQ 282 Microsoft ACPI-Compliant System OK 
IRQ 283 Microsoft ACPI-Compliant System OK 
IRQ 284 Microsoft ACPI-Compliant System OK 
IRQ 285 Microsoft ACPI-Compliant System OK 
IRQ 286 Microsoft ACPI-Compliant System OK 
IRQ 287 Microsoft ACPI-Compliant System OK 
IRQ 288 Microsoft ACPI-Compliant System OK 
IRQ 289 Microsoft ACPI-Compliant System OK 
IRQ 290 Microsoft ACPI-Compliant System OK 
IRQ 291 Microsoft ACPI-Compliant System OK 
IRQ 292 Microsoft ACPI-Compliant System OK 
IRQ 293 Microsoft ACPI-Compliant System OK 
IRQ 294 Microsoft ACPI-Compliant System OK 
IRQ 295 Microsoft ACPI-Compliant System OK 
IRQ 296 Microsoft ACPI-Compliant System OK 
IRQ 297 Microsoft ACPI-Compliant System OK 
IRQ 298 Microsoft ACPI-Compliant System OK 
IRQ 299 Microsoft ACPI-Compliant System OK 
IRQ 300 Microsoft ACPI-Compliant System OK 
IRQ 301 Microsoft ACPI-Compliant System OK 
IRQ 302 Microsoft ACPI-Compliant System OK 
IRQ 303 Microsoft ACPI-Compliant System OK 
IRQ 304 Microsoft ACPI-Compliant System OK 
IRQ 305 Microsoft ACPI-Compliant System OK 
IRQ 306 Microsoft ACPI-Compliant System OK 
IRQ 307 Microsoft ACPI-Compliant System OK 
IRQ 308 Microsoft ACPI-Compliant System OK 
IRQ 309 Microsoft ACPI-Compliant System OK 
IRQ 310 Microsoft ACPI-Compliant System OK 
IRQ 311 Microsoft ACPI-Compliant System OK 
IRQ 312 Microsoft ACPI-Compliant System OK 
IRQ 313 Microsoft ACPI-Compliant System OK 
IRQ 314 Microsoft ACPI-Compliant System OK 
IRQ 315 Microsoft ACPI-Compliant System OK 
IRQ 316 Microsoft ACPI-Compliant System OK 
IRQ 317 Microsoft ACPI-Compliant System OK 
IRQ 318 Microsoft ACPI-Compliant System OK 
IRQ 319 Microsoft ACPI-Compliant System OK 
IRQ 320 Microsoft ACPI-Compliant System OK 
IRQ 321 Microsoft ACPI-Compliant System OK 
IRQ 322 Microsoft ACPI-Compliant System OK 
IRQ 323 Microsoft ACPI-Compliant System OK 
IRQ 324 Microsoft ACPI-Compliant System OK 
IRQ 325 Microsoft ACPI-Compliant System OK 
IRQ 326 Microsoft ACPI-Compliant System OK 
IRQ 327 Microsoft ACPI-Compliant System OK 
IRQ 328 Microsoft ACPI-Compliant System OK 
IRQ 329 Microsoft ACPI-Compliant System OK 
IRQ 330 Microsoft ACPI-Compliant System OK 
IRQ 331 Microsoft ACPI-Compliant System OK 
IRQ 332 Microsoft ACPI-Compliant System OK 
IRQ 333 Microsoft ACPI-Compliant System OK 
IRQ 334 Microsoft ACPI-Compliant System OK 
IRQ 335 Microsoft ACPI-Compliant System OK 
IRQ 336 Microsoft ACPI-Compliant System OK 
IRQ 337 Microsoft ACPI-Compliant System OK 
IRQ 338 Microsoft ACPI-Compliant System OK 
IRQ 339 Microsoft ACPI-Compliant System OK 
IRQ 340 Microsoft ACPI-Compliant System OK 
IRQ 341 Microsoft ACPI-Compliant System OK 
IRQ 342 Microsoft ACPI-Compliant System OK 
IRQ 343 Microsoft ACPI-Compliant System OK 
IRQ 344 Microsoft ACPI-Compliant System OK 
IRQ 345 Microsoft ACPI-Compliant System OK 
IRQ 346 Microsoft ACPI-Compliant System OK 
IRQ 347 Microsoft ACPI-Compliant System OK 
IRQ 348 Microsoft ACPI-Compliant System OK 
IRQ 349 Microsoft ACPI-Compliant System OK 
IRQ 350 Microsoft ACPI-Compliant System OK 
IRQ 351 Microsoft ACPI-Compliant System OK 
IRQ 352 Microsoft ACPI-Compliant System OK 
IRQ 353 Microsoft ACPI-Compliant System OK 
IRQ 354 Microsoft ACPI-Compliant System OK 
IRQ 355 Microsoft ACPI-Compliant System OK 
IRQ 356 Microsoft ACPI-Compliant System OK 
IRQ 357 Microsoft ACPI-Compliant System OK 
IRQ 358 Microsoft ACPI-Compliant System OK 
IRQ 359 Microsoft ACPI-Compliant System OK 
IRQ 360 Microsoft ACPI-Compliant System OK 
IRQ 361 Microsoft ACPI-Compliant System OK 
IRQ 362 Microsoft ACPI-Compliant System OK 
IRQ 363 Microsoft ACPI-Compliant System OK 
IRQ 364 Microsoft ACPI-Compliant System OK 
IRQ 365 Microsoft ACPI-Compliant System OK 
IRQ 366 Microsoft ACPI-Compliant System OK 
IRQ 367 Microsoft ACPI-Compliant System OK 
IRQ 368 Microsoft ACPI-Compliant System OK 
IRQ 369 Microsoft ACPI-Compliant System OK 
IRQ 370 Microsoft ACPI-Compliant System OK 
IRQ 371 Microsoft ACPI-Compliant System OK 
IRQ 372 Microsoft ACPI-Compliant System OK 
IRQ 373 Microsoft ACPI-Compliant System OK 
IRQ 374 Microsoft ACPI-Compliant System OK 
IRQ 375 Microsoft ACPI-Compliant System OK 
IRQ 376 Microsoft ACPI-Compliant System OK 
IRQ 377 Microsoft ACPI-Compliant System OK 
IRQ 378 Microsoft ACPI-Compliant System OK 
IRQ 379 Microsoft ACPI-Compliant System OK 
IRQ 380 Microsoft ACPI-Compliant System OK 
IRQ 381 Microsoft ACPI-Compliant System OK 
IRQ 382 Microsoft ACPI-Compliant System OK 
IRQ 383 Microsoft ACPI-Compliant System OK 
IRQ 384 Microsoft ACPI-Compliant System OK 
IRQ 385 Microsoft ACPI-Compliant System OK 
IRQ 386 Microsoft ACPI-Compliant System OK 
IRQ 387 Microsoft ACPI-Compliant System OK 
IRQ 388 Microsoft ACPI-Compliant System OK 
IRQ 389 Microsoft ACPI-Compliant System OK 
IRQ 390 Microsoft ACPI-Compliant System OK 
IRQ 391 Microsoft ACPI-Compliant System OK 
IRQ 392 Microsoft ACPI-Compliant System OK 
IRQ 393 Microsoft ACPI-Compliant System OK 
IRQ 394 Microsoft ACPI-Compliant System OK 
IRQ 395 Microsoft ACPI-Compliant System OK 
IRQ 396 Microsoft ACPI-Compliant System OK 
IRQ 397 Microsoft ACPI-Compliant System OK 
IRQ 398 Microsoft ACPI-Compliant System OK 
IRQ 399 Microsoft ACPI-Compliant System OK 
IRQ 400 Microsoft ACPI-Compliant System OK 
IRQ 401 Microsoft ACPI-Compliant System OK 
IRQ 402 Microsoft ACPI-Compliant System OK 
IRQ 403 Microsoft ACPI-Compliant System OK 
IRQ 404 Microsoft ACPI-Compliant System OK 
IRQ 405 Microsoft ACPI-Compliant System OK 
IRQ 406 Microsoft ACPI-Compliant System OK 
IRQ 407 Microsoft ACPI-Compliant System OK 
IRQ 408 Microsoft ACPI-Compliant System OK 
IRQ 409 Microsoft ACPI-Compliant System OK 
IRQ 410 Microsoft ACPI-Compliant System OK 
IRQ 411 Microsoft ACPI-Compliant System OK 
IRQ 412 Microsoft ACPI-Compliant System OK 
IRQ 413 Microsoft ACPI-Compliant System OK 
IRQ 414 Microsoft ACPI-Compliant System OK 
IRQ 415 Microsoft ACPI-Compliant System OK 
IRQ 416 Microsoft ACPI-Compliant System OK 
IRQ 417 Microsoft ACPI-Compliant System OK 
IRQ 418 Microsoft ACPI-Compliant System OK 
IRQ 419 Microsoft ACPI-Compliant System OK 
IRQ 420 Microsoft ACPI-Compliant System OK 
IRQ 421 Microsoft ACPI-Compliant System OK 
IRQ 422 Microsoft ACPI-Compliant System OK 
IRQ 423 Microsoft ACPI-Compliant System OK 
IRQ 424 Microsoft ACPI-Compliant System OK 
IRQ 425 Microsoft ACPI-Compliant System OK 
IRQ 426 Microsoft ACPI-Compliant System OK 
IRQ 427 Microsoft ACPI-Compliant System OK 
IRQ 428 Microsoft ACPI-Compliant System OK 
IRQ 429 Microsoft ACPI-Compliant System OK 
IRQ 430 Microsoft ACPI-Compliant System OK 
IRQ 431 Microsoft ACPI-Compliant System OK 
IRQ 432 Microsoft ACPI-Compliant System OK 
IRQ 433 Microsoft ACPI-Compliant System OK 
IRQ 434 Microsoft ACPI-Compliant System OK 
IRQ 435 Microsoft ACPI-Compliant System OK 
IRQ 436 Microsoft ACPI-Compliant System OK 
IRQ 437 Microsoft ACPI-Compliant System OK 
IRQ 438 Microsoft ACPI-Compliant System OK 
IRQ 439 Microsoft ACPI-Compliant System OK 
IRQ 440 Microsoft ACPI-Compliant System OK 
IRQ 441 Microsoft ACPI-Compliant System OK 
IRQ 442 Microsoft ACPI-Compliant System OK 
IRQ 443 Microsoft ACPI-Compliant System OK 
IRQ 444 Microsoft ACPI-Compliant System OK 
IRQ 445 Microsoft ACPI-Compliant System OK 
IRQ 446 Microsoft ACPI-Compliant System OK 
IRQ 447 Microsoft ACPI-Compliant System OK 
IRQ 448 Microsoft ACPI-Compliant System OK 
IRQ 449 Microsoft ACPI-Compliant System OK 
IRQ 450 Microsoft ACPI-Compliant System OK 
IRQ 451 Microsoft ACPI-Compliant System OK 
IRQ 452 Microsoft ACPI-Compliant System OK 
IRQ 453 Microsoft ACPI-Compliant System OK 
IRQ 454 Microsoft ACPI-Compliant System OK 
IRQ 455 Microsoft ACPI-Compliant System OK 
IRQ 456 Microsoft ACPI-Compliant System OK 
IRQ 457 Microsoft ACPI-Compliant System OK 
IRQ 458 Microsoft ACPI-Compliant System OK 
IRQ 459 Microsoft ACPI-Compliant System OK 
IRQ 460 Microsoft ACPI-Compliant System OK 
IRQ 461 Microsoft ACPI-Compliant System OK 
IRQ 462 Microsoft ACPI-Compliant System OK 
IRQ 463 Microsoft ACPI-Compliant System OK 
IRQ 464 Microsoft ACPI-Compliant System OK 
IRQ 465 Microsoft ACPI-Compliant System OK 
IRQ 466 Microsoft ACPI-Compliant System OK 
IRQ 467 Microsoft ACPI-Compliant System OK 
IRQ 468 Microsoft ACPI-Compliant System OK 
IRQ 469 Microsoft ACPI-Compliant System OK 
IRQ 470 Microsoft ACPI-Compliant System OK 
IRQ 471 Microsoft ACPI-Compliant System OK 
IRQ 472 Microsoft ACPI-Compliant System OK 
IRQ 473 Microsoft ACPI-Compliant System OK 
IRQ 474 Microsoft ACPI-Compliant System OK 
IRQ 475 Microsoft ACPI-Compliant System OK 
IRQ 476 Microsoft ACPI-Compliant System OK 
IRQ 477 Microsoft ACPI-Compliant System OK 
IRQ 478 Microsoft ACPI-Compliant System OK 
IRQ 479 Microsoft ACPI-Compliant System OK 
IRQ 480 Microsoft ACPI-Compliant System OK 
IRQ 481 Microsoft ACPI-Compliant System OK 
IRQ 482 Microsoft ACPI-Compliant System OK 
IRQ 483 Microsoft ACPI-Compliant System OK 
IRQ 484 Microsoft ACPI-Compliant System OK 
IRQ 485 Microsoft ACPI-Compliant System OK 
IRQ 486 Microsoft ACPI-Compliant System OK 
IRQ 487 Microsoft ACPI-Compliant System OK 
IRQ 488 Microsoft ACPI-Compliant System OK 
IRQ 489 Microsoft ACPI-Compliant System OK 
IRQ 490 Microsoft ACPI-Compliant System OK 
IRQ 491 Microsoft ACPI-Compliant System OK 
IRQ 492 Microsoft ACPI-Compliant System OK 
IRQ 493 Microsoft ACPI-Compliant System OK 
IRQ 494 Microsoft ACPI-Compliant System OK 
IRQ 495 Microsoft ACPI-Compliant System OK 
IRQ 496 Microsoft ACPI-Compliant System OK 
IRQ 497 Microsoft ACPI-Compliant System OK 
IRQ 498 Microsoft ACPI-Compliant System OK 
IRQ 499 Microsoft ACPI-Compliant System OK 
IRQ 500 Microsoft ACPI-Compliant System OK 
IRQ 501 Microsoft ACPI-Compliant System OK 
IRQ 502 Microsoft ACPI-Compliant System OK 
IRQ 503 Microsoft ACPI-Compliant System OK 
IRQ 504 Microsoft ACPI-Compliant System OK 
IRQ 505 Microsoft ACPI-Compliant System OK 
IRQ 506 Microsoft ACPI-Compliant System OK 
IRQ 507 Microsoft ACPI-Compliant System OK 
IRQ 508 Microsoft ACPI-Compliant System OK 
IRQ 509 Microsoft ACPI-Compliant System OK 
IRQ 510 Microsoft ACPI-Compliant System OK 
IRQ 511 Microsoft ACPI-Compliant System OK 
IRQ 22 High Definition Audio Controller OK 
IRQ 4294967293 Intel® USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) OK 
IRQ 8 System CMOS/real time clock OK 
IRQ 11 Intel® 7 Series/C216 Chipset Family SMBus Host Controller - 1E22 OK 
 
[Memory]
 
Resource Device Status 
0xFED40000-0xFED44FFF System board OK 
0xFED1C000-0xFED1FFFF Motherboard resources OK 
0xFED10000-0xFED17FFF Motherboard resources OK 
0xFED18000-0xFED18FFF Motherboard resources OK 
0xFED19000-0xFED19FFF Motherboard resources OK 
0xF8000000-0xFBFFFFFF Motherboard resources OK 
0xFED20000-0xFED3FFFF Motherboard resources OK 
0xFED90000-0xFED93FFF Motherboard resources OK 
0xFED45000-0xFED8FFFF Motherboard resources OK 
0xFF000000-0xFFFFFFFF Motherboard resources OK 
0xFF000000-0xFFFFFFFF Legacy device OK 
0xFEE00000-0xFEEFFFFF Motherboard resources OK 
0xF2000000-0xF2000FFF Motherboard resources OK 
0xF7100000-0xF713FFFF Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) OK 
0xF7100000-0xF713FFFF Intel® 7 Series/C216 Chipset Family PCI Express Root Port 6 - 1E1A OK 
0xF7316000-0xF73167FF Intel® 7 Series/C216 Chipset Family SATA AHCI Controller OK 
0xF6000000-0xF70FFFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 OK 
0xF6000000-0xF70FFFFF NVIDIA GeForce GT 630 OK 
0xE0000000-0xF1FFFFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 OK 
0xE0000000-0xF1FFFFFF PCI bus OK 
0xE0000000-0xF1FFFFFF NVIDIA GeForce GT 630 OK 
0xA0000-0xBFFFF Xeon® processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port - 0151 OK 
0xA0000-0xBFFFF PCI bus OK 
0xA0000-0xBFFFF NVIDIA GeForce GT 630 OK 
0xFED00000-0xFED003FF High precision event timer OK 
0xF7318000-0xF73183FF Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E2D OK 
0xF7317000-0xF73173FF Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E26 OK 
0xDC000-0xDFFFF PCI bus OK 
0xF72FC000-0xF72FFFFF Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter OK 
0xF0000000-0xF1FFFFFF NVIDIA GeForce GT 630 OK 
0xF70FC000-0xF70FFFFF High Definition Audio Controller OK 
0xFEAFC000-0xFEAFFFFF High Definition Audio Controller OK 
0xF7300000-0xF730FFFF Intel® USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) OK 
0xF731A000-0xF731A00F Intel® Management Engine Interface  OK 
0xF7200000-0xF72FFFFF Intel® 7 Series/C216 Chipset Family PCI Express Root Port 5 - 1E18 OK 
0xF7315000-0xF73150FF Intel® 7 Series/C216 Chipset Family SMBus Host Controller - 1E22 OK 
 
[Components]
 
 
 
[Multimedia]
 
 
 
[Audio Codecs]
 
CODEC Manufacturer Description Status File Version Size Creation_Date 
c:\windows\system32\imaadp32.acm Microsoft Corporation  OK C:\WINDOWS\system32\IMAADP32.ACM 10.0.10240.16384 34.86 KB (35,696 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\msgsm32.acm Microsoft Corporation  OK C:\WINDOWS\system32\MSGSM32.ACM 10.0.10240.16384 41.93 KB (42,936 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\msadp32.acm Microsoft Corporation  OK C:\WINDOWS\system32\MSADP32.ACM 10.0.10240.16384 33.83 KB (34,640 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\l3codeca.acm Fraunhofer Institut Integrierte Schaltungen IIS Fraunhofer IIS MPEG Layer-3 Codec OK C:\WINDOWS\system32\L3CODECA.ACM 1.9.0.401 85.00 KB (87,040 bytes) 7/10/2015 6:59 AM 
c:\windows\system32\msg711.acm Microsoft Corporation  OK C:\WINDOWS\system32\MSG711.ACM 10.0.10240.16384 24.76 KB (25,352 bytes) 7/10/2015 7:00 AM 
 
[Video Codecs]
 
CODEC Manufacturer Description Status File Version Size Creation_Date 
c:\windows\system32\iyuv_32.dll Microsoft Corporation  OK C:\WINDOWS\system32\IYUV_32.DLL 10.0.10240.16384 52.50 KB (53,760 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\msrle32.dll Microsoft Corporation  OK C:\WINDOWS\system32\MSRLE32.DLL 10.0.10240.16384 17.50 KB (17,920 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\msvidc32.dll Microsoft Corporation  OK C:\WINDOWS\system32\MSVIDC32.DLL 10.0.10240.16384 38.00 KB (38,912 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\tsbyuv.dll Microsoft Corporation  OK C:\WINDOWS\system32\TSBYUV.DLL 10.0.10240.16384 16.50 KB (16,896 bytes) 7/10/2015 7:00 AM 
c:\windows\system32\msyuv.dll Microsoft Corporation  OK C:\WINDOWS\system32\MSYUV.DLL 10.0.10240.16384 26.00 KB (26,624 bytes) 7/10/2015 7:00 AM 
 
[CD-ROM]
 
Item Value 
Drive E: 
Description CD-ROM Drive 
Media Loaded No 
Media Type DVD Writer 
Name hp DVD A  DH16ACSHR SCSI CdRom Device 
Manufacturer (Standard CD-ROM drives) 
Status OK 
Transfer Rate -1.00 kbytes/sec 
SCSI Target ID 0 
PNP Device ID SCSI\CDROM&VEN_HP&PROD_DVD_A__DH16ACSHR\4&38DC178C&0&040000 
Driver c:\windows\system32\drivers\cdrom.sys (10.0.10240.16384, 170.00 KB (174,080 bytes), 7/10/2015 6:59 AM) 
 
[Sound Device]
 
Item Value 
Name IDT High Definition Audio CODEC 
Manufacturer IDT 
Status OK 
PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_7676&SUBSYS_103C2AD5&REV_1001\4&1798F155&0&0001 
Driver c:\windows\system32\drivers\stwrt64.sys (6.10.6491.0, 539.00 KB (551,936 bytes), 11/20/2013 9:43 AM) 
  
Name NVIDIA High Definition Audio 
Manufacturer NVIDIA 
Status OK 
PNP Device ID HDAUDIO\FUNC_01&VEN_10DE&DEV_0042&SUBSYS_14622750&REV_1001\5&2EC8B37E&0&0001 
Driver c:\windows\system32\drivers\nvhda64v.sys (1.3.34.3, 191.32 KB (195,912 bytes), 4/16/2015 7:03 PM) 
 
[Display]
 
Item Value 
Name NVIDIA GeForce GT 630 
PNP Device ID PCI\VEN_10DE&DEV_0FC2&SUBSYS_27501462&REV_A1\4&7188812&0&0008 
Adapter Type GeForce GT 630, NVIDIA compatible 
Adapter Description NVIDIA GeForce GT 630 
Adapter RAM (2,147,483,648) bytes 
Installed Drivers nvd3dumx.dll,nvwgf2umx.dll,nvwgf2umx.dll,nvwgf2umx.dll,nvd3dum,nvwgf2um,nvwgf2um,nvwgf2um 
Driver Version 10.18.13.5330 
INF File oem214.inf (Section010 section) 
Color Planes Not Available 
Color Table Entries 4294967296 
Resolution 1920 x 1080 x 60 hertz 
Bits/Pixel 32 
Memory Address 0xF6000000-0xF70FFFFF 
Memory Address 0xE0000000-0xF1FFFFFF 
Memory Address 0xF0000000-0xF1FFFFFF 
I/O Port 0x0000E000-0x0000EFFF 
IRQ Channel IRQ 16 
I/O Port 0x000003B0-0x000003BB 
I/O Port 0x000003C0-0x000003DF 
Memory Address 0xA0000-0xBFFFF 
Driver c:\windows\system32\drivers\nvlddmkm.sys (10.18.13.5330, 10.58 MB (11,095,696 bytes), 6/17/2015 9:22 AM) 
 
[Infrared]
 
Item Value 
  
 
[Input]
 
 
 
[Keyboard]
 
Item Value 
Description Razer Naga Hex 
Name Enhanced (101- or 102-key) 
Layout 00000409 
PNP Device ID HID\VID_1532&PID_0036&MI_01&COL01\7&AC0134F&0&0000 
Number of Function Keys 12 
Driver c:\windows\system32\drivers\kbdhid.sys (10.0.10240.16384, 36.00 KB (36,864 bytes), 7/10/2015 6:59 AM) 
  
Description USB Input Device 
Name Enhanced (101- or 102-key) 
Layout 00000409 
PNP Device ID USB\VID_0461&PID_4DD7&MI_00\7&369952BD&0&0000 
Number of Function Keys 12 
Driver c:\windows\system32\drivers\hidusb.sys (10.0.10240.16384, 37.50 KB (38,400 bytes), 7/10/2015 6:59 AM) 
 
[Pointing Device]
 
Item Value 
Hardware Type Razer Naga Hex 
Number of Buttons 0 
Status OK 
PNP Device ID USB\VID_1532&PID_0036&MI_00\6&1A4E5A54&0&0000 
Power Management Supported No 
Double Click Threshold Not Available 
Handedness Not Available 
Driver c:\windows\system32\drivers\hidusb.sys (10.0.10240.16384, 37.50 KB (38,400 bytes), 7/10/2015 6:59 AM) 
 
[Modem]
 
Item Value 
  
 
[Network]
 
 
 
[Adapter]
 
Item Value 
Name [00000000] Microsoft Kernel Debug Network Adapter 
Adapter Type Not Available 
Product Type Microsoft Kernel Debug Network Adapter 
Installed Yes 
PNP Device ID ROOT\KDNIC\0000 
Last Reset 8/21/2015 10:13 PM 
Index 0 
Service Name kdnic 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled Yes 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address Not Available 
Driver c:\windows\system32\drivers\kdnic.sys (6.1.0.0, 22.50 KB (23,040 bytes), 7/10/2015 6:59 AM) 
  
Name [00000001] Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) 
Adapter Type Ethernet 802.3 
Product Type Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30) 
Installed Yes 
PNP Device ID PCI\VEN_1969&DEV_1091&SUBSYS_2AD5103C&REV_08\4&2072C9EC&0&00E5 
Last Reset 8/21/2015 10:13 PM 
Index 1 
Service Name L1C 
IP Address 75.107.245.77, fe80::9c38:3fb3:61fc:326b 
IP Subnet 255.255.252.0, 64 
Default IP Gateway 75.107.244.1 
DHCP Enabled Yes 
DHCP Server 184.63.0.10 
DHCP Lease Expires 8/22/2015 12:31 PM 
DHCP Lease Obtained 8/21/2015 10:14 PM 
MAC Address ‪70:54:D2:BC:C7:CF‬ 
Memory Address 0xF7100000-0xF713FFFF 
I/O Port 0x0000D000-0x0000D07F 
IRQ Channel IRQ 17 
Driver c:\windows\system32\drivers\l1c63x64.sys (2.1.0.16, 126.20 KB (129,224 bytes), 7/10/2015 6:59 AM) 
  
Name [00000002] Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter 
Adapter Type Ethernet 802.3 
Product Type Broadcom BCM943228HMB 802.11abgn 2x2 Wi-Fi Adapter 
Installed Yes 
PNP Device ID PCI\VEN_14E4&DEV_4359&SUBSYS_05E214E4&REV_00\4&131A977F&0&00E4 
Last Reset 8/21/2015 10:13 PM 
Index 2 
Service Name BCM43XX 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled Yes 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address ‪2C:D0:5A:6E:4A:BA‬ 
Memory Address 0xF72FC000-0xF72FFFFF 
IRQ Channel IRQ 16 
Driver c:\windows\system32\drivers\bcmwl664.sys (6.30.223.228, 7.70 MB (8,071,888 bytes), 4/7/2014 9:44 AM) 
  
Name [00000003] Bluetooth Device (RFCOMM Protocol TDI) 
Adapter Type Not Available 
Product Type Bluetooth Device (RFCOMM Protocol TDI) 
Installed Yes 
PNP Device ID BTH\MS_RFCOMM\7&1F863C1&0&0 
Last Reset 8/21/2015 10:13 PM 
Index 3 
Service Name RFCOMM 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled No 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address Not Available 
Driver c:\windows\system32\drivers\rfcomm.sys (10.0.10240.16384, 164.00 KB (167,936 bytes), 7/10/2015 6:59 AM) 
  
Name [00000004] Bluetooth Device (Personal Area Network) 
Adapter Type Ethernet 802.3 
Product Type Bluetooth Device (Personal Area Network) 
Installed Yes 
PNP Device ID BTH\MS_BTHPAN\7&1F863C1&0&2 
Last Reset 8/21/2015 10:13 PM 
Index 4 
Service Name BthPan 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled Yes 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address ‪2C:D0:5A:04:DF:29‬ 
Driver c:\windows\system32\drivers\bthpan.sys (10.0.10240.16384, 125.50 KB (128,512 bytes), 7/10/2015 6:59 AM) 
  
Name [00000005] Microsoft Teredo Tunneling Adapter 
Adapter Type Tunnel 
Product Type Microsoft Teredo Tunneling Adapter 
Installed Yes 
PNP Device ID SWD\IP_TUNNEL_VBUS\TEREDO_TUNNEL_DEVICE 
Last Reset 8/21/2015 10:13 PM 
Index 5 
Service Name tunnel 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled No 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address Not Available 
Driver c:\windows\system32\drivers\tunnel.sys (10.0.10240.16412, 151.50 KB (155,136 bytes), 8/20/2015 4:05 AM) 
  
Name [00000006] Microsoft ISATAP Adapter 
Adapter Type Tunnel 
Product Type Microsoft ISATAP Adapter 
Installed Yes 
PNP Device ID SWD\IP_TUNNEL_VBUS\ISATAP_0 
Last Reset 8/21/2015 10:13 PM 
Index 6 
Service Name tunnel 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled No 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address Not Available 
Driver c:\windows\system32\drivers\tunnel.sys (10.0.10240.16412, 151.50 KB (155,136 bytes), 8/20/2015 4:05 AM) 
  
Name [00000007] Microsoft 6to4 Adapter 
Adapter Type Tunnel 
Product Type Microsoft 6to4 Adapter 
Installed Yes 
PNP Device ID SWD\IP_TUNNEL_VBUS\6TO4_ADAPTER 
Last Reset 8/21/2015 10:13 PM 
Index 7 
Service Name tunnel 
IP Address Not Available 
IP Subnet Not Available 
Default IP Gateway Not Available 
DHCP Enabled No 
DHCP Server Not Available 
DHCP Lease Expires Not Available 
DHCP Lease Obtained Not Available 
MAC Address Not Available 
Driver c:\windows\system32\drivers\tunnel.sys (10.0.10240.16412, 151.50 KB (155,136 bytes), 8/20/2015 4:05 AM) 
 
[Protocol]
 
Item Value 
Name MSAFD Tcpip [TCP/IP] 
Connectionless Service No 
Guarantees Delivery Yes 
Guarantees Sequencing Yes 
Maximum Address Size 16 bytes 
Maximum Message Size 0 bytes 
Message Oriented No 
Minimum Address Size 16 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting No 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption No 
Supports Expedited Data Yes 
Supports Graceful Closing Yes 
Supports Guaranteed Bandwidth No 
Supports Multicasting No 
  
Name MSAFD Tcpip [UDP/IP] 
Connectionless Service Yes 
Guarantees Delivery No 
Guarantees Sequencing No 
Maximum Address Size 16 bytes 
Maximum Message Size 63.99 KB (65,527 bytes) 
Message Oriented Yes 
Minimum Address Size 16 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting Yes 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption No 
Supports Expedited Data No 
Supports Graceful Closing No 
Supports Guaranteed Bandwidth No 
Supports Multicasting Yes 
  
Name MSAFD Tcpip [TCP/IPv6] 
Connectionless Service No 
Guarantees Delivery Yes 
Guarantees Sequencing Yes 
Maximum Address Size 28 bytes 
Maximum Message Size 0 bytes 
Message Oriented No 
Minimum Address Size 28 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting No 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption No 
Supports Expedited Data Yes 
Supports Graceful Closing Yes 
Supports Guaranteed Bandwidth No 
Supports Multicasting No 
  
Name MSAFD Tcpip [UDP/IPv6] 
Connectionless Service Yes 
Guarantees Delivery No 
Guarantees Sequencing No 
Maximum Address Size 28 bytes 
Maximum Message Size 63.99 KB (65,527 bytes) 
Message Oriented Yes 
Minimum Address Size 28 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting Yes 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption No 
Supports Expedited Data No 
Supports Graceful Closing No 
Supports Guaranteed Bandwidth No 
Supports Multicasting Yes 
  
Name RSVP TCPv6 Service Provider 
Connectionless Service No 
Guarantees Delivery Yes 
Guarantees Sequencing Yes 
Maximum Address Size 28 bytes 
Maximum Message Size 0 bytes 
Message Oriented No 
Minimum Address Size 28 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting No 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption Yes 
Supports Expedited Data Yes 
Supports Graceful Closing Yes 
Supports Guaranteed Bandwidth No 
Supports Multicasting No 
  
Name RSVP TCP Service Provider 
Connectionless Service No 
Guarantees Delivery Yes 
Guarantees Sequencing Yes 
Maximum Address Size 16 bytes 
Maximum Message Size 0 bytes 
Message Oriented No 
Minimum Address Size 16 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting No 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption Yes 
Supports Expedited Data Yes 
Supports Graceful Closing Yes 
Supports Guaranteed Bandwidth No 
Supports Multicasting No 
  
Name RSVP UDPv6 Service Provider 
Connectionless Service Yes 
Guarantees Delivery No 
Guarantees Sequencing No 
Maximum Address Size 28 bytes 
Maximum Message Size 63.99 KB (65,527 bytes) 
Message Oriented Yes 
Minimum Address Size 28 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting Yes 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption Yes 
Supports Expedited Data No 
Supports Graceful Closing No 
Supports Guaranteed Bandwidth No 
Supports Multicasting Yes 
  
Name RSVP UDP Service Provider 
Connectionless Service Yes 
Guarantees Delivery No 
Guarantees Sequencing No 
Maximum Address Size 16 bytes 
Maximum Message Size 63.99 KB (65,527 bytes) 
Message Oriented Yes 
Minimum Address Size 16 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting Yes 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption Yes 
Supports Expedited Data No 
Supports Graceful Closing No 
Supports Guaranteed Bandwidth No 
Supports Multicasting Yes 
  
Name Hyper-V RAW 
Connectionless Service No 
Guarantees Delivery Yes 
Guarantees Sequencing Yes 
Maximum Address Size 36 bytes 
Maximum Message Size 0 bytes 
Message Oriented No 
Minimum Address Size 36 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting No 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption No 
Supports Expedited Data Yes 
Supports Graceful Closing Yes 
Supports Guaranteed Bandwidth No 
Supports Multicasting No 
  
Name MSAFD RfComm [Bluetooth] 
Connectionless Service No 
Guarantees Delivery Yes 
Guarantees Sequencing Yes 
Maximum Address Size 30 bytes 
Maximum Message Size 0 bytes 
Message Oriented No 
Minimum Address Size 30 bytes 
Pseudo Stream Oriented No 
Supports Broadcasting No 
Supports Connect Data No 
Supports Disconnect Data No 
Supports Encryption No 
Supports Expedited Data No 
Supports Graceful Closing Yes 
Supports Guaranteed Bandwidth No 
Supports Multicasting No 
 
[WinSock]
 
Item Value 
File c:\windows\syswow64\wsock32.dll 
Size 16.00 KB (16,384 bytes) 
Version 10.0.10240.16384 
  
File c:\windows\system32\wsock32.dll 
Size 18.00 KB (18,432 bytes) 
Version 10.0.10240.16384 
 
[Ports]
 
 
 
[Serial]
 
Item Value 
  
 
[Parallel]
 
Item Value 
  
 
[Storage]
 
 
 
[Drives]
 
Item Value 
Drive C: 
Description Local Fixed Disk 
Compressed No 
File System NTFS 
Size 910.36 GB (977,494,077,440 bytes) 
Free Space 809.58 GB (869,276,569,600 bytes) 
Volume Name OS 
Volume Serial Number CAB7CA6E 
  
Drive D: 
Description Local Fixed Disk 
Compressed No 
File System NTFS 
Size 20.49 GB (21,998,071,808 bytes) 
Free Space 2.56 GB (2,751,930,368 bytes) 
Volume Name HP_RECOVERY 
Volume Serial Number 12ACCF81 
  
Drive E: 
Description CD-ROM Disc 
  
Drive F: 
Description Removable Disk 
  
Drive G: 
Description Removable Disk 
  
Drive H: 
Description Removable Disk 
  
Drive I: 
Description Removable Disk 
 
[Disks]
 
Item Value 
Description Disk drive 
Manufacturer (Standard disk drives) 
Model Generic- Compact Flash USB Device 
Bytes/Sector Not Available 
Media Loaded Yes 
Media Type Not Available 
Partitions 0 
SCSI Bus 0 
SCSI Logical Unit 1 
SCSI Port 0 
SCSI Target ID 0 
Sectors/Track Not Available 
Size Not Available 
Total Cylinders Not Available 
Total Sectors Not Available 
Total Tracks Not Available 
Tracks/Cylinder Not Available 
  
Description Disk drive 
Manufacturer (Standard disk drives) 
Model Generic- SD/MMC USB Device 
Bytes/Sector Not Available 
Media Loaded Yes 
Media Type Not Available 
Partitions 0 
SCSI Bus 0 
SCSI Logical Unit 0 
SCSI Port 0 
SCSI Target ID 0 
Sectors/Track Not Available 
Size Not Available 
Total Cylinders Not Available 
Total Sectors Not Available 
Total Tracks Not Available 
Tracks/Cylinder Not Available 
  
Description Disk drive 
Manufacturer (Standard disk drives) 
Model Generic- MS/MS-Pro USB Device 
Bytes/Sector Not Available 
Media Loaded Yes 
Media Type Not Available 
Partitions 0 
SCSI Bus 0 
SCSI Logical Unit 3 
SCSI Port 0 
SCSI Target ID 0 
Sectors/Track Not Available 
Size Not Available 
Total Cylinders Not Available 
Total Sectors Not Available 
Total Tracks Not Available 
Tracks/Cylinder Not Available 
  
Description Disk drive 
Manufacturer (Standard disk drives) 
Model WDC WD10EZEX-60ZF5A0 SCSI Disk Device 
Bytes/Sector 512 
Media Loaded Yes 
Media Type Fixed hard disk 
Partitions 4 
SCSI Bus 0 
SCSI Logical Unit 0 
SCSI Port 0 
SCSI Target ID 0 
Sectors/Track 63 
Size 931.51 GB (1,000,202,273,280 bytes) 
Total Cylinders 121,601 
Total Sectors 1,953,520,065 
Total Tracks 31,008,255 
Tracks/Cylinder 255 
Partition Disk #0, Partition #0 
Partition Size 100.00 MB (104,857,600 bytes) 
Partition Starting Offset 1,048,576 bytes 
Partition Disk #0, Partition #1 
Partition Size 910.36 GB (977,494,081,536 bytes) 
Partition Starting Offset 240,123,904 bytes 
Partition Disk #0, Partition #2 
Partition Size 450.00 MB (471,859,200 bytes) 
Partition Starting Offset 977,734,205,440 bytes 
Partition Disk #0, Partition #3 
Partition Size 20.49 GB (21,998,075,904 bytes) 
Partition Starting Offset 978,206,064,640 bytes 
  
Description Disk drive 
Manufacturer (Standard disk drives) 
Model Generic- SM/xD-Picture USB Device 
Bytes/Sector Not Available 
Media Loaded Yes 
Media Type Not Available 
Partitions 0 
SCSI Bus 0 
SCSI Logical Unit 2 
SCSI Port 0 
SCSI Target ID 0 
Sectors/Track Not Available 
Size Not Available 
Total Cylinders Not Available 
Total Sectors Not Available 
Total Tracks Not Available 
Tracks/Cylinder Not Available 
 
[SCSI]
 
Item Value 
Name Microsoft Storage Spaces Controller 
Manufacturer Microsoft 
Status OK 
PNP Device ID ROOT\SPACEPORT\0000 
Driver c:\windows\system32\drivers\spaceport.sys (10.0.10240.16384, 463.34 KB (474,464 bytes), 7/10/2015 6:59 AM) 
 
[IDE]
 
Item Value 
Name Intel® 7 Series/C216 Chipset Family SATA AHCI Controller 
Manufacturer Intel Corporation 
Status OK 
PNP Device ID PCI\VEN_8086&DEV_1E02&SUBSYS_2AD5103C&REV_04\3&11583659&0&FA 
I/O Port 0x0000F070-0x0000F077 
I/O Port 0x0000F060-0x0000F063 
I/O Port 0x0000F050-0x0000F057 
I/O Port 0x0000F040-0x0000F043 
I/O Port 0x0000F020-0x0000F03F 
Memory Address 0xF7316000-0xF73167FF 
IRQ Channel IRQ 4294967294 
Driver c:\windows\system32\drivers\iastora.sys (13.1.0.1058, 664.88 KB (680,832 bytes), 7/31/2015 10:58 PM) 


#11 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 01:45 AM

[Printing]
 
Name Driver Port_Name Server_Name 
PDF Complete PDF Complete Converter PDFC Not Available 
Microsoft XPS Document Writer Microsoft XPS Document Writer v4 PORTPROMPT: Not Available 
Microsoft Print to PDF Microsoft Print To PDF PORTPROMPT: Not Available 
HP Photosmart 2600 series fax HP Photosmart 2600 series fax USB001 Not Available 
HP Photosmart 2600 series HP Photosmart 2600 series USB001 Not Available 
Fax Microsoft Shared Fax Driver SHRFAX: Not Available 
 
[Problem Devices]
 
Device PNP_Device_ID Error_Code 
   
 
[USB]
 
Device PNP_Device_ID 
Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E2D PCI\VEN_8086&DEV_1E2D&SUBSYS_2AD5103C&REV_04\3&11583659&0&D0 
Intel® 7 Series/C216 Chipset Family USB Enhanced Host Controller - 1E26 PCI\VEN_8086&DEV_1E26&SUBSYS_2AD5103C&REV_04\3&11583659&0&E8 
Intel® USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) PCI\VEN_8086&DEV_1E31&SUBSYS_2AD5103C&REV_04\3&11583659&0&A0 
 
[Software Environment]
 
 
 
[System Drivers]
 
Name Description File Type Started Start_Mode State Status Error_Control Accept_Pause Accept_Stop 
1394ohci 1394 OHCI Compliant Host Controller c:\windows\system32\drivers\1394ohci.sys Kernel Driver No Manual Stopped OK Normal No No 
3ware 3ware c:\windows\system32\drivers\3ware.sys Kernel Driver No Manual Stopped OK Normal No No 
acpi Microsoft ACPI Driver c:\windows\system32\drivers\acpi.sys Kernel Driver Yes Boot Running OK Critical No Yes 
acpiex Microsoft ACPIEx Driver c:\windows\system32\drivers\acpiex.sys Kernel Driver Yes Boot Running OK Critical No Yes 
acpipagr ACPI Processor Aggregator Driver c:\windows\system32\drivers\acpipagr.sys Kernel Driver No Manual Stopped OK Normal No No 
acpipmi ACPI Power Meter Driver c:\windows\system32\drivers\acpipmi.sys Kernel Driver No Manual Stopped OK Normal No No 
acpitime ACPI Wake Alarm Driver c:\windows\system32\drivers\acpitime.sys Kernel Driver No Manual Stopped OK Normal No No 
adp80xx ADP80XX c:\windows\system32\drivers\adp80xx.sys Kernel Driver No Manual Stopped OK Normal No No 
afd Ancillary Function Driver for Winsock c:\windows\system32\drivers\afd.sys Kernel Driver Yes System Running OK Normal No Yes 
agp440 Intel AGP Bus Filter c:\windows\system32\drivers\agp440.sys Kernel Driver No Manual Stopped OK Normal No No 
ahcache Application Compatibility Cache c:\windows\system32\drivers\ahcache.sys Kernel Driver Yes System Running OK Normal No Yes 
amdk8 AMD K8 Processor Driver c:\windows\system32\drivers\amdk8.sys Kernel Driver No Manual Stopped OK Normal No No 
amdppm AMD Processor Driver c:\windows\system32\drivers\amdppm.sys Kernel Driver No Manual Stopped OK Normal No No 
amdsata amdsata c:\windows\system32\drivers\amdsata.sys Kernel Driver No Manual Stopped OK Normal No No 
amdsbs amdsbs c:\windows\system32\drivers\amdsbs.sys Kernel Driver No Manual Stopped OK Normal No No 
amdxata amdxata c:\windows\system32\drivers\amdxata.sys Kernel Driver No Manual Stopped OK Normal No No 
appid AppID Driver c:\windows\system32\drivers\appid.sys Kernel Driver No Manual Stopped OK Normal No No 
arcsas Adaptec SAS/SATA-II RAID Storport's Miniport Driver c:\windows\system32\drivers\arcsas.sys Kernel Driver No Manual Stopped OK Normal No No 
asyncmac RAS Asynchronous Media Driver c:\windows\system32\drivers\asyncmac.sys Kernel Driver No Manual Stopped OK Normal No No 
atapi IDE Channel c:\windows\system32\drivers\atapi.sys Kernel Driver No Manual Stopped OK Critical No No 
b06bdrv Broadcom NetXtreme II VBD c:\windows\system32\drivers\bxvbda.sys Kernel Driver No Manual Stopped OK Normal No No 
basicdisplay BasicDisplay c:\windows\system32\drivers\basicdisplay.sys Kernel Driver Yes System Running OK Ignore No Yes 
basicrender BasicRender c:\windows\system32\drivers\basicrender.sys Kernel Driver Yes System Running OK Ignore No Yes 
bcbtums Bluetooth RAM Firmware Download USB Filter c:\windows\system32\drivers\bcbtums.sys Kernel Driver Yes Manual Running OK Normal No Yes 
bcm43xx Broadcom 802.11 Network Adapter Driver c:\windows\system32\drivers\bcmwl664.sys Kernel Driver Yes Manual Running OK Normal No Yes 
bcmfn2 bcmfn2 Service c:\windows\system32\drivers\bcmfn2.sys Kernel Driver No Manual Stopped OK Normal No No 
beep Beep c:\windows\system32\drivers\beep.sys Kernel Driver Yes System Running OK Normal No Yes 
bowser Browser Support Driver c:\windows\system32\drivers\bowser.sys File System Driver Yes Manual Running OK Normal No Yes 
bthavrcptg Bluetooth Audio/Video Remote Control HID c:\windows\system32\drivers\bthavrcptg.sys Kernel Driver No Manual Stopped OK Normal No No 
bthenum Bluetooth Enumerator Service c:\windows\system32\drivers\bthenum.sys Kernel Driver Yes Manual Running OK Normal No Yes 
bthhfenum Bluetooth Hands-Free Audio and Call Control HID Enumerator c:\windows\system32\drivers\bthhfenum.sys Kernel Driver No Manual Stopped OK Normal No No 
bthhfhid Bluetooth Hands-Free Call Control HID c:\windows\system32\drivers\bthhfhid.sys Kernel Driver No Manual Stopped OK Normal No No 
bthleenum Bluetooth Low Energy Driver c:\windows\system32\drivers\bthleenum.sys Kernel Driver Yes Manual Running OK Normal No Yes 
bthmodem Bluetooth Serial Communications Driver c:\windows\system32\drivers\bthmodem.sys Kernel Driver No Manual Stopped OK Normal No No 
bthpan Bluetooth Device (Personal Area Network) c:\windows\system32\drivers\bthpan.sys Kernel Driver Yes Manual Running OK Normal No Yes 
bthport Bluetooth Port Driver c:\windows\system32\drivers\bthport.sys Kernel Driver No Manual Stopped OK Normal No No 
bthusb Bluetooth Radio USB Driver c:\windows\system32\drivers\bthusb.sys Kernel Driver Yes Manual Running OK Normal No Yes 
btwampfl btwampfl c:\windows\system32\drivers\btwampfl.sys Kernel Driver No Manual Stopped OK Normal No No 
buttonconverter Service for Portable Device Control devices c:\windows\system32\drivers\buttonconverter.sys Kernel Driver No Manual Stopped OK Normal No No 
capimg HID driver for CapImg touch screen c:\windows\system32\drivers\capimg.sys Kernel Driver No Manual Stopped OK Normal No No 
cdfs CD/DVD File System Reader c:\windows\system32\drivers\cdfs.sys File System Driver No Disabled Stopped OK Normal No No 
cdrom CD-ROM Driver c:\windows\system32\drivers\cdrom.sys Kernel Driver Yes System Running OK Normal No Yes 
circlass Consumer IR Devices c:\windows\system32\drivers\circlass.sys Kernel Driver No Manual Stopped OK Normal No No 
clfs Common Log (CLFS) c:\windows\system32\drivers\clfs.sys Kernel Driver Yes Boot Running OK Critical No Yes 
cmbatt Microsoft ACPI Control Method Battery Driver c:\windows\system32\drivers\cmbatt.sys Kernel Driver No Manual Stopped OK Normal No No 
cng CNG c:\windows\system32\drivers\cng.sys Kernel Driver Yes Boot Running OK Critical No Yes 
cnghwassist CNG Hardware Assist algorithm provider c:\windows\system32\drivers\cnghwassist.sys Kernel Driver No Disabled Stopped OK Normal No No 
compositebus Composite Bus Enumerator Driver c:\windows\system32\driverstore\filerepository\compositebus.inf_amd64_98334ba6e76853ba\compositebus.sys Kernel Driver Yes Manual Running OK Normal No Yes 
condrv Console Driver c:\windows\system32\drivers\condrv.sys Kernel Driver Yes Manual Running OK Normal No Yes 
csc Offline Files Driver c:\windows\system32\drivers\csc.sys Kernel Driver Yes System Running OK Normal No Yes 
dam Desktop Activity Moderator Driver c:\windows\system32\drivers\dam.sys Kernel Driver No System Stopped OK Normal No No 
dfsc DFS Namespace Client Driver c:\windows\system32\drivers\dfsc.sys File System Driver Yes System Running OK Normal No Yes 
disk Disk Driver c:\windows\system32\drivers\disk.sys Kernel Driver Yes Boot Running OK Normal No Yes 
dmvsc dmvsc c:\windows\system32\drivers\dmvsc.sys Kernel Driver No Manual Stopped OK Normal No No 
dot4 MS IEEE-1284.4 Driver c:\windows\system32\drivers\dot4.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
dot4print Print Class Driver for IEEE-1284.4 c:\windows\system32\drivers\dot4prt.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
dot4usb Dot4USB Filter c:\windows\system32\drivers\dot4usb.sys Kernel Driver Yes Manual Running Degraded Ignore No Yes 
drmkaud Microsoft Trusted Audio Drivers c:\windows\system32\drivers\drmkaud.sys Kernel Driver No Manual Stopped OK Normal No No 
dxgkrnl LDDM Graphics Subsystem c:\windows\system32\drivers\dxgkrnl.sys Kernel Driver Yes Manual Running OK Ignore No Yes 
ebdrv QLogic 10 Gigabit Ethernet Adapter VBD c:\windows\system32\drivers\evbda.sys Kernel Driver No Manual Stopped OK Normal No No 
ehstorclass Enhanced Storage Filter Driver c:\windows\system32\drivers\ehstorclass.sys Kernel Driver No Boot Stopped OK Normal No No 
ehstortcgdrv Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols c:\windows\system32\drivers\ehstortcgdrv.sys Kernel Driver No Manual Stopped OK Normal No No 
errdev Microsoft Hardware Error Device Driver c:\windows\system32\drivers\errdev.sys Kernel Driver No Manual Stopped OK Normal No No 
exfat exFAT File System Driver c:\windows\system32\drivers\exfat.sys File System Driver No Manual Stopped OK Normal No No 
fastfat FAT12/16/32 File System Driver c:\windows\system32\drivers\fastfat.sys File System Driver Yes Manual Running OK Normal No Yes 
fcvsc fcvsc c:\windows\system32\drivers\fcvsc.sys Kernel Driver No Manual Stopped OK Normal No No 
fdc Floppy Disk Controller Driver c:\windows\system32\drivers\fdc.sys Kernel Driver No Manual Stopped OK Normal No No 
filecrypt FileCrypt c:\windows\system32\drivers\filecrypt.sys File System Driver Yes System Running OK Critical No Yes 
fileinfo File Information FS MiniFilter c:\windows\system32\drivers\fileinfo.sys File System Driver Yes Boot Running OK Normal No Yes 
filetrace Filetrace c:\windows\system32\drivers\filetrace.sys File System Driver No Manual Stopped OK Normal No No 
flpydisk Floppy Disk Driver c:\windows\system32\drivers\flpydisk.sys Kernel Driver No Manual Stopped OK Normal No No 
fltmgr FltMgr c:\windows\system32\drivers\fltmgr.sys File System Driver Yes Boot Running OK Critical No Yes 
fsdepends File System Dependency Minifilter c:\windows\system32\drivers\fsdepends.sys File System Driver No Manual Stopped OK Critical No No 
fvevol BitLocker Drive Encryption Filter Driver c:\windows\system32\drivers\fvevol.sys Kernel Driver Yes Boot Running OK Critical No Yes 
gagp30kx Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms c:\windows\system32\drivers\gagp30kx.sys Kernel Driver No Manual Stopped OK Normal No No 
gencounter Microsoft Hyper-V Generation Counter c:\windows\system32\drivers\vmgencounter.sys Kernel Driver No Manual Stopped OK Normal No No 
genericusbfn Generic USB Function Class c:\windows\system32\drivers\genericusbfn.sys Kernel Driver No Manual Stopped OK Normal No No 
gfiark gfiark c:\windows\system32\drivers\gfiark.sys Kernel Driver No Manual Stopped OK Normal No No 
gpioclx0101 Microsoft GPIO Class Extension Driver c:\windows\system32\drivers\msgpioclx.sys Kernel Driver No Manual Stopped OK Critical No No 
gpuenergydrv GPU Energy Driver c:\windows\system32\drivers\gpuenergydrv.sys Kernel Driver Yes System Running OK Normal No Yes 
hdaudbus Microsoft UAA Bus Driver for High Definition Audio c:\windows\system32\drivers\hdaudbus.sys Kernel Driver Yes Manual Running OK Normal No Yes 
hidbatt HID UPS Battery Driver c:\windows\system32\drivers\hidbatt.sys Kernel Driver No Manual Stopped OK Normal No No 
hidbth Microsoft Bluetooth HID Miniport c:\windows\system32\drivers\hidbth.sys Kernel Driver No Manual Stopped OK Ignore No No 
hidi2c Microsoft I2C HID Miniport Driver c:\windows\system32\drivers\hidi2c.sys Kernel Driver No Manual Stopped OK Normal No No 
hidinterrupt Common Driver for HID Buttons implemented with interrupts c:\windows\system32\drivers\hidinterrupt.sys Kernel Driver No Manual Stopped OK Normal No No 
hidir Microsoft Infrared HID Driver c:\windows\system32\drivers\hidir.sys Kernel Driver No Manual Stopped OK Ignore No No 
hidusb Microsoft HID Class Driver c:\windows\system32\drivers\hidusb.sys Kernel Driver Yes Manual Running OK Ignore No Yes 
hpsamd HpSAMD c:\windows\system32\drivers\hpsamd.sys Kernel Driver No Manual Stopped OK Normal No No 
http HTTP Service c:\windows\system32\drivers\http.sys Kernel Driver Yes Manual Running OK Normal No Yes 
hwpolicy Hardware Policy Driver c:\windows\system32\drivers\hwpolicy.sys Kernel Driver No Boot Stopped OK Ignore No No 
hyperkbd hyperkbd c:\windows\system32\drivers\hyperkbd.sys Kernel Driver No Manual Stopped OK Ignore No No 
hypervideo HyperVideo c:\windows\system32\drivers\hypervideo.sys Kernel Driver No Manual Stopped OK Ignore No No 
i8042prt i8042 Keyboard and PS/2 Mouse Port Driver c:\windows\system32\drivers\i8042prt.sys Kernel Driver No Manual Stopped OK Normal No No 
ialpssi_gpio Intel® Serial IO GPIO Controller Driver c:\windows\system32\drivers\ialpssi_gpio.sys Kernel Driver No Manual Stopped OK Normal No No 
ialpssi_i2c Intel® Serial IO I2C Controller Driver c:\windows\system32\drivers\ialpssi_i2c.sys Kernel Driver No Manual Stopped OK Normal No No 
iastor Intel RAID Controller c:\windows\system32\drivers\iastor.sys Kernel Driver No Manual Stopped OK Normal No No 
iastora iaStorA c:\windows\system32\drivers\iastora.sys Kernel Driver Yes Boot Running OK Normal No Yes 
iastorav Intel® SATA RAID Controller Windows c:\windows\system32\drivers\iastorav.sys Kernel Driver No Manual Stopped OK Normal No No 
iastorv Intel RAID Controller Windows 7 c:\windows\system32\drivers\iastorv.sys Kernel Driver No Manual Stopped OK Normal No No 
ibbus Mellanox InfiniBand Bus/AL (Filter Driver) c:\windows\system32\drivers\ibbus.sys Kernel Driver No Manual Stopped OK Normal No No 
intelide intelide c:\windows\system32\drivers\intelide.sys Kernel Driver No Manual Stopped OK Critical No No 
intelpep Intel® Power Engine Plug-in Driver c:\windows\system32\drivers\intelpep.sys Kernel Driver No Manual Stopped OK Normal No No 
intelppm Intel Processor Driver c:\windows\system32\drivers\intelppm.sys Kernel Driver Yes Manual Running OK Normal No Yes 
ioqos IoQos c:\windows\system32\drivers\ioqos.sys File System Driver No Manual Stopped OK Normal No No 
ipfilterdriver IP Traffic Filter Driver c:\windows\system32\drivers\ipfltdrv.sys Kernel Driver No Manual Stopped OK Normal No No 
ipmidrv IPMIDRV c:\windows\system32\drivers\ipmidrv.sys Kernel Driver No Manual Stopped OK Normal No No 
ipnat IP Network Address Translator c:\windows\system32\drivers\ipnat.sys Kernel Driver No Manual Stopped OK Normal No No 
irenum IR Bus Enumerator c:\windows\system32\drivers\irenum.sys Kernel Driver No Manual Stopped OK Ignore No No 
isapnp isapnp c:\windows\system32\drivers\isapnp.sys Kernel Driver No Manual Stopped OK Critical No No 
iscsiprt iScsiPort Driver c:\windows\system32\drivers\msiscsi.sys Kernel Driver No Manual Stopped OK Normal No No 
iusb3hcs Intel® USB 3.0 Host Controller Switch Driver c:\windows\system32\drivers\iusb3hcs.sys Kernel Driver Yes Boot Running OK Normal No Yes 
kbdclass Keyboard Class Driver c:\windows\system32\drivers\kbdclass.sys Kernel Driver Yes Manual Running OK Normal No Yes 
kbdhid Keyboard HID Driver c:\windows\system32\drivers\kbdhid.sys Kernel Driver Yes Manual Running OK Ignore No Yes 
kdnic Microsoft Kernel Debug Network Miniport (NDIS 6.20) c:\windows\system32\drivers\kdnic.sys Kernel Driver Yes Manual Running OK Normal No Yes 
ksecdd KSecDD c:\windows\system32\drivers\ksecdd.sys Kernel Driver Yes Boot Running OK Critical No Yes 
ksecpkg KSecPkg c:\windows\system32\drivers\ksecpkg.sys Kernel Driver Yes Boot Running OK Critical No Yes 
ksthunk Kernel Streaming Thunks c:\windows\system32\drivers\ksthunk.sys Kernel Driver Yes Manual Running OK Normal No Yes 
l1c NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller c:\windows\system32\drivers\l1c63x64.sys Kernel Driver Yes Manual Running OK Normal No Yes 
lltdio Link-Layer Topology Discovery Mapper I/O Driver c:\windows\system32\drivers\lltdio.sys Kernel Driver Yes Auto Running OK Normal No Yes 
lsi_sas LSI_SAS c:\windows\system32\drivers\lsi_sas.sys Kernel Driver No Manual Stopped OK Normal No No 
lsi_sas2i LSI_SAS2i c:\windows\system32\drivers\lsi_sas2i.sys Kernel Driver No Manual Stopped OK Normal No No 
lsi_sas3i LSI_SAS3i c:\windows\system32\drivers\lsi_sas3i.sys Kernel Driver No Manual Stopped OK Normal No No 
lsi_sss LSI_SSS c:\windows\system32\drivers\lsi_sss.sys Kernel Driver No Manual Stopped OK Normal No No 
luafv UAC File Virtualization c:\windows\system32\drivers\luafv.sys File System Driver Yes Auto Running OK Normal No Yes 
mbamprotector MBAMProtector \??\c:\windows\system32\drivers\mbam.sys File System Driver Yes Manual Running OK Normal No Yes 
mbamwebaccesscontrol MBAMWebAccessControl \??\c:\windows\system32\drivers\mwac.sys File System Driver Yes Manual Running OK Normal No Yes 
megasas megasas c:\windows\system32\drivers\megasas.sys Kernel Driver No Manual Stopped OK Normal No No 
megasr megasr c:\windows\system32\drivers\megasr.sys Kernel Driver No Manual Stopped OK Normal No No 
meix64 Intel® Management Engine Interface c:\windows\system32\drivers\hecix64.sys Kernel Driver Yes Manual Running OK Normal No Yes 
mlx4_bus Mellanox ConnectX Bus Enumerator c:\windows\system32\drivers\mlx4_bus.sys Kernel Driver No Manual Stopped OK Normal No No 
mmcss Multimedia Class Scheduler c:\windows\system32\drivers\mmcss.sys Kernel Driver Yes Auto Running OK Normal No Yes 
modem Modem c:\windows\system32\drivers\modem.sys Kernel Driver No Manual Stopped OK Ignore No No 
monitor Microsoft Monitor Class Function Driver Service c:\windows\system32\drivers\monitor.sys Kernel Driver Yes Manual Running OK Normal No Yes 
mouclass Mouse Class Driver c:\windows\system32\drivers\mouclass.sys Kernel Driver Yes Manual Running OK Normal No Yes 
mouhid Mouse HID Driver c:\windows\system32\drivers\mouhid.sys Kernel Driver Yes Manual Running OK Ignore No Yes 
mountmgr Mount Point Manager c:\windows\system32\drivers\mountmgr.sys Kernel Driver Yes Boot Running OK Critical No Yes 
mpsdrv Windows Firewall Authorization Driver c:\windows\system32\drivers\mpsdrv.sys Kernel Driver Yes Manual Running OK Normal No Yes 
mqac Message Queuing Access Control c:\windows\system32\drivers\mqac.sys Kernel Driver Yes Manual Running OK Normal No Yes 
mrxdav WebDav Client Redirector Driver c:\windows\system32\drivers\mrxdav.sys File System Driver No Manual Stopped OK Normal No No 
mrxsmb SMB MiniRedirector Wrapper and Engine c:\windows\system32\drivers\mrxsmb.sys File System Driver Yes Manual Running OK Normal No Yes 
mrxsmb10 SMB 1.x MiniRedirector c:\windows\system32\drivers\mrxsmb10.sys File System Driver Yes Auto Running OK Normal No Yes 
mrxsmb20 SMB 2.0 MiniRedirector c:\windows\system32\drivers\mrxsmb20.sys File System Driver Yes Manual Running OK Normal No Yes 
msbridge Microsoft MAC Bridge c:\windows\system32\drivers\bridge.sys Kernel Driver No Manual Stopped OK Normal No No 
msfs Msfs c:\windows\system32\drivers\msfs.sys File System Driver Yes System Running OK Normal No Yes 
msgpiowin32 Common Driver for Buttons, DockMode and Laptop/Slate Indicator c:\windows\system32\drivers\msgpiowin32.sys Kernel Driver No Manual Stopped OK Normal No No 
mshidkmdf mshidkmdf c:\windows\system32\drivers\mshidkmdf.sys Kernel Driver No Manual Stopped OK Ignore No No 
mshidumdf Pass-through HID to UMDF Driver c:\windows\system32\drivers\mshidumdf.sys Kernel Driver No Manual Stopped OK Ignore No No 
msisadrv msisadrv c:\windows\system32\drivers\msisadrv.sys Kernel Driver Yes Boot Running OK Critical No Yes 
mskssrv Microsoft Streaming Service Proxy c:\windows\system32\drivers\mskssrv.sys Kernel Driver No Manual Stopped OK Normal No No 
mspclock Microsoft Streaming Clock Proxy c:\windows\system32\drivers\mspclock.sys Kernel Driver No Manual Stopped OK Normal No No 
mspqm Microsoft Streaming Quality Manager Proxy c:\windows\system32\drivers\mspqm.sys Kernel Driver No Manual Stopped OK Normal No No 
msrpc MsRPC c:\windows\system32\drivers\msrpc.sys Kernel Driver No Manual Stopped OK Normal No No 
mssmbios Microsoft System Management BIOS Driver c:\windows\system32\drivers\mssmbios.sys Kernel Driver Yes System Running OK Normal No Yes 
mstee Microsoft Streaming Tee/Sink-to-Sink Converter c:\windows\system32\drivers\mstee.sys Kernel Driver No Manual Stopped OK Normal No No 
mtconfig Microsoft Input Configuration Driver c:\windows\system32\drivers\mtconfig.sys Kernel Driver No Manual Stopped OK Normal No No 
mup Mup c:\windows\system32\drivers\mup.sys File System Driver Yes Boot Running OK Normal No Yes 
mvumis mvumis c:\windows\system32\drivers\mvumis.sys Kernel Driver No Manual Stopped OK Normal No No 
nativewifip NativeWiFi Filter c:\windows\system32\drivers\nwifi.sys Kernel Driver Yes Manual Running OK Normal No Yes 
ndfltr NetworkDirect Service c:\windows\system32\drivers\ndfltr.sys Kernel Driver No Manual Stopped OK Normal No No 
ndis NDIS System Driver c:\windows\system32\drivers\ndis.sys Kernel Driver Yes Boot Running OK Critical No Yes 
ndiscap Microsoft NDIS Capture c:\windows\system32\drivers\ndiscap.sys Kernel Driver No Manual Stopped OK Normal No No 
ndisimplatform Microsoft Network Adapter Multiplexor Protocol c:\windows\system32\drivers\ndisimplatform.sys Kernel Driver No Manual Stopped OK Normal No No 
ndistapi Remote Access NDIS TAPI Driver c:\windows\system32\drivers\ndistapi.sys Kernel Driver No Manual Stopped OK Normal No No 
ndisuio NDIS Usermode I/O Protocol c:\windows\system32\drivers\ndisuio.sys Kernel Driver Yes Manual Running OK Normal No Yes 
ndisvirtualbus Microsoft Virtual Network Adapter Enumerator c:\windows\system32\drivers\ndisvirtualbus.sys Kernel Driver Yes Manual Running OK Normal No Yes 
ndiswan Remote Access NDIS WAN Driver c:\windows\system32\drivers\ndiswan.sys Kernel Driver No Manual Stopped OK Normal No No 
ndiswanlegacy Remote Access LEGACY NDIS WAN Driver c:\windows\system32\drivers\ndiswan.sys Kernel Driver No Manual Stopped OK Normal No No 
ndproxy @%SystemRoot%\system32\drivers\todo.sys,-101;NDIS Proxy c:\windows\system32\drivers\ndproxy.sys Kernel Driver No Manual Stopped OK Normal No No 
ndu Windows Network Data Usage Monitoring Driver c:\windows\system32\drivers\ndu.sys Kernel Driver Yes Auto Running OK Normal No Yes 
netbios NetBIOS Interface c:\windows\system32\drivers\netbios.sys File System Driver Yes System Running OK Normal No Yes 
netbt NetBT c:\windows\system32\drivers\netbt.sys Kernel Driver Yes System Running OK Normal No Yes 
netvsc netvsc c:\windows\system32\drivers\netvsc.sys Kernel Driver No Manual Stopped OK Normal No No 
npfs Npfs c:\windows\system32\drivers\npfs.sys File System Driver Yes System Running OK Normal No Yes 
npsvctrig Named pipe service trigger provider c:\windows\system32\drivers\npsvctrig.sys Kernel Driver Yes System Running OK Severe No Yes 
nsiproxy NSI Proxy Service Driver c:\windows\system32\drivers\nsiproxy.sys Kernel Driver Yes System Running OK Normal No Yes 
ntfs NTFS c:\windows\system32\drivers\ntfs.sys File System Driver Yes Manual Running OK Normal No Yes 
null Null c:\windows\system32\drivers\null.sys Kernel Driver Yes System Running OK Normal No Yes 
nvhda Service for NVIDIA High Definition Audio Driver c:\windows\system32\drivers\nvhda64v.sys Kernel Driver Yes Manual Running OK Normal No Yes 
nvlddmkm nvlddmkm c:\windows\system32\drivers\nvlddmkm.sys Kernel Driver Yes Manual Running OK Ignore No Yes 
nvraid nvraid c:\windows\system32\drivers\nvraid.sys Kernel Driver No Manual Stopped OK Normal No No 
nvstor nvstor c:\windows\system32\drivers\nvstor.sys Kernel Driver No Manual Stopped OK Critical No No 
nv_agp NVIDIA nForce AGP Bus Filter c:\windows\system32\drivers\nv_agp.sys Kernel Driver No Manual Stopped OK Normal No No 
parport Parallel port driver c:\windows\system32\drivers\parport.sys Kernel Driver No Manual Stopped OK Ignore No No 
partmgr Partition Manager c:\windows\system32\drivers\partmgr.sys Kernel Driver Yes Boot Running OK Critical No Yes 
pci PCI Bus Driver c:\windows\system32\drivers\pci.sys Kernel Driver Yes Boot Running OK Critical No Yes 
pciide pciide c:\windows\system32\drivers\pciide.sys Kernel Driver No Manual Stopped OK Critical No No 
pcmcia pcmcia c:\windows\system32\drivers\pcmcia.sys Kernel Driver No Manual Stopped OK Normal No No 
pcw Performance Counters for Windows Driver c:\windows\system32\drivers\pcw.sys Kernel Driver Yes Boot Running OK Normal No Yes 
pdc pdc c:\windows\system32\drivers\pdc.sys Kernel Driver Yes Boot Running OK Critical No Yes 
peauth PEAUTH c:\windows\system32\drivers\peauth.sys Kernel Driver Yes Auto Running OK Normal No Yes 
percsas2i percsas2i c:\windows\system32\drivers\percsas2i.sys Kernel Driver No Manual Stopped OK Normal No No 
percsas3i percsas3i c:\windows\system32\drivers\percsas3i.sys Kernel Driver No Manual Stopped OK Normal No No 
pptpminiport WAN Miniport (PPTP) c:\windows\system32\drivers\raspptp.sys Kernel Driver No Manual Stopped OK Normal No No 
processor Processor Driver c:\windows\system32\drivers\processr.sys Kernel Driver No Manual Stopped OK Normal No No 
psched QoS Packet Scheduler c:\windows\system32\drivers\pacer.sys Kernel Driver Yes System Running OK Normal No Yes 
pxhlpa64 PxHlpa64 c:\windows\system32\drivers\pxhlpa64.sys Kernel Driver Yes Boot Running OK Normal No Yes 
qwavedrv QWAVE driver c:\windows\system32\drivers\qwavedrv.sys Kernel Driver No Manual Stopped OK Normal No No 
rasacd Remote Access Auto Connection Driver c:\windows\system32\drivers\rasacd.sys Kernel Driver No Manual Stopped OK Normal No No 
rasagilevpn WAN Miniport (IKEv2) c:\windows\system32\drivers\agilevpn.sys Kernel Driver No Manual Stopped OK Normal No No 
rasl2tp WAN Miniport (L2TP) c:\windows\system32\drivers\rasl2tp.sys Kernel Driver No Manual Stopped OK Normal No No 
raspppoe Remote Access PPPOE Driver c:\windows\system32\drivers\raspppoe.sys Kernel Driver No Manual Stopped OK Normal No No 
rassstp WAN Miniport (SSTP) c:\windows\system32\drivers\rassstp.sys Kernel Driver No Manual Stopped OK Normal No No 
rdbss Redirected Buffering Sub System c:\windows\system32\drivers\rdbss.sys File System Driver Yes System Running OK Normal No Yes 
rdpbus Remote Desktop Device Redirector Bus Driver c:\windows\system32\drivers\rdpbus.sys Kernel Driver Yes Manual Running OK Normal No Yes 
rdpdr Remote Desktop Device Redirector Driver c:\windows\system32\drivers\rdpdr.sys Kernel Driver No Manual Stopped OK Normal No No 
rdpvideominiport Remote Desktop Video Miniport Driver c:\windows\system32\drivers\rdpvideominiport.sys Kernel Driver No Manual Stopped OK Normal No No 
rdyboost ReadyBoost c:\windows\system32\drivers\rdyboost.sys Kernel Driver Yes Boot Running OK Critical No Yes 
refsv1 ReFSv1 c:\windows\system32\drivers\refsv1.sys File System Driver No Manual Stopped OK Normal No No 
rfcomm Bluetooth Device (RFCOMM Protocol TDI) c:\windows\system32\drivers\rfcomm.sys Kernel Driver Yes Manual Running OK Normal No Yes 
rspndr Link-Layer Topology Discovery Responder c:\windows\system32\drivers\rspndr.sys Kernel Driver Yes Auto Running OK Normal No Yes 
rzpmgrk rzpmgrk \??\c:\windows\system32\drivers\rzpmgrk.sys Kernel Driver Yes Auto Running OK Normal No Yes 
rzpnk rzpnk \??\c:\windows\system32\drivers\rzpnk.sys Kernel Driver Yes Auto Running OK Normal No Yes 
rzudd Razer Mouse Driver c:\windows\system32\drivers\rzudd.sys Kernel Driver Yes Manual Running OK Normal No Yes 
s3cap s3cap c:\windows\system32\drivers\vms3cap.sys Kernel Driver No Manual Stopped OK Normal No No 
sbapifs sbapifs c:\windows\system32\drivers\sbapifs.sys File System Driver Yes Auto Running OK Normal No Yes 
sbp2port SBP-2 Transport/Protocol Bus Driver c:\windows\system32\drivers\sbp2port.sys Kernel Driver No Manual Stopped OK Normal No No 
scfilter Smart card PnP Class Filter Driver c:\windows\system32\drivers\scfilter.sys Kernel Driver No Manual Stopped OK Normal No No 
sdbus sdbus c:\windows\system32\drivers\sdbus.sys Kernel Driver No Manual Stopped OK Normal No No 
sdstor SD Storage Port Driver c:\windows\system32\drivers\sdstor.sys Kernel Driver No Manual Stopped OK Normal No No 
sercx Serial UART Support Library c:\windows\system32\drivers\sercx.sys Kernel Driver No Manual Stopped OK Normal No No 
sercx2 Serial UART Support Library c:\windows\system32\drivers\sercx2.sys Kernel Driver No Manual Stopped OK Normal No No 
serenum Serenum Filter Driver c:\windows\system32\drivers\serenum.sys Kernel Driver No Manual Stopped OK Normal No No 
serial Serial port driver c:\windows\system32\drivers\serial.sys Kernel Driver No Manual Stopped OK Ignore No No 
sermouse Serial Mouse Driver c:\windows\system32\drivers\sermouse.sys Kernel Driver No Manual Stopped OK Normal No No 
sfloppy High-Capacity Floppy Disk Drive c:\windows\system32\drivers\sfloppy.sys Kernel Driver No Manual Stopped OK Normal No No 
sisraid2 SiSRaid2 c:\windows\system32\drivers\sisraid2.sys Kernel Driver No Manual Stopped OK Normal No No 
sisraid4 SiSRaid4 c:\windows\system32\drivers\sisraid4.sys Kernel Driver No Manual Stopped OK Normal No No 
spaceport Storage Spaces Driver c:\windows\system32\drivers\spaceport.sys Kernel Driver Yes Boot Running OK Critical No Yes 
spbcx Simple Peripheral Bus Support Library c:\windows\system32\drivers\spbcx.sys Kernel Driver No Manual Stopped OK Normal No No 
srv Server SMB 1.xxx Driver c:\windows\system32\drivers\srv.sys File System Driver Yes Auto Running OK Normal No Yes 
srv2 Server SMB 2.xxx Driver c:\windows\system32\drivers\srv2.sys File System Driver Yes Manual Running OK Normal No Yes 
srvnet srvnet c:\windows\system32\drivers\srvnet.sys File System Driver Yes Manual Running OK Normal No Yes 
stexstor stexstor c:\windows\system32\drivers\stexstor.sys Kernel Driver No Manual Stopped OK Normal No No 
sthda IDT High Definition Audio CODEC c:\windows\system32\drivers\stwrt64.sys Kernel Driver Yes Manual Running OK Normal No Yes 
storahci Microsoft Standard SATA AHCI Driver c:\windows\system32\drivers\storahci.sys Kernel Driver No Manual Stopped OK Critical No No 
storflt Microsoft Hyper-V Storage Accelerator c:\windows\system32\drivers\vmstorfl.sys Kernel Driver No Manual Stopped OK Normal No No 
stornvme Microsoft Standard NVM Express Driver c:\windows\system32\drivers\stornvme.sys Kernel Driver No Manual Stopped OK Critical No No 
storqosflt Storage QoS Filter Driver c:\windows\system32\drivers\storqosflt.sys File System Driver Yes Auto Running OK Normal No Yes 
storufs Microsoft Universal Flash Storage (UFS) Driver c:\windows\system32\drivers\storufs.sys Kernel Driver No Manual Stopped OK Normal No No 
storvsc storvsc c:\windows\system32\drivers\storvsc.sys Kernel Driver No Manual Stopped OK Normal No No 
swenum Software Bus Driver c:\windows\system32\driverstore\filerepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys Kernel Driver Yes Manual Running OK Normal No Yes 
synth3dvsc Synth3dVsc c:\windows\system32\drivers\synth3dvsc.sys Kernel Driver No Manual Stopped OK Normal No No 
tcpip TCP/IP Protocol Driver c:\windows\system32\drivers\tcpip.sys Kernel Driver Yes Boot Running OK Normal No Yes 
tcpip6 @todo.dll,-100;Microsoft IPv6 Protocol Driver c:\windows\system32\drivers\tcpip.sys Kernel Driver No Manual Stopped OK Normal No No 
tcpipreg TCP/IP Registry Compatibility c:\windows\system32\drivers\tcpipreg.sys Kernel Driver Yes Auto Running OK Normal No Yes 
tdx NetIO Legacy TDI Support Driver c:\windows\system32\drivers\tdx.sys Kernel Driver Yes System Running OK Normal No Yes 
terminpt Microsoft Remote Desktop Input Driver c:\windows\system32\drivers\terminpt.sys Kernel Driver No Manual Stopped OK Normal No No 
tpm TPM c:\windows\system32\drivers\tpm.sys Kernel Driver No Manual Stopped OK Normal No No 
tsusbflt Remote Desktop USB Hub Class Filter Driver c:\windows\system32\drivers\tsusbflt.sys Kernel Driver No Manual Stopped OK Normal No No 
tsusbgd Remote Desktop Generic USB Device c:\windows\system32\drivers\tsusbgd.sys Kernel Driver No Manual Stopped OK Normal No No 
tunnel Microsoft Tunnel Miniport Adapter Driver c:\windows\system32\drivers\tunnel.sys Kernel Driver Yes Manual Running OK Normal No Yes 
uagp35 Microsoft AGPv3.5 Filter c:\windows\system32\drivers\uagp35.sys Kernel Driver No Manual Stopped OK Normal No No 
uaspstor USB Attached SCSI (UAS) Driver c:\windows\system32\drivers\uaspstor.sys Kernel Driver No Manual Stopped OK Normal No No 
ucmcx0101 USB Connector Manager KMDF Class Extension c:\windows\system32\drivers\ucmcx.sys Kernel Driver No Manual Stopped OK Normal No No 
ucmucsi USB Connector Manager UCSI Client c:\windows\system32\drivers\ucmucsi.sys Kernel Driver No Manual Stopped OK Normal No No 
ucx01000 USB Host Support Library c:\windows\system32\drivers\ucx01000.sys Kernel Driver Yes Manual Running OK Normal No Yes 
udecx USB Device Emulation Support Library c:\windows\system32\drivers\udecx.sys Kernel Driver No Manual Stopped OK Normal No No 
udfs udfs c:\windows\system32\drivers\udfs.sys File System Driver No Disabled Stopped OK Normal No No 
uefi Microsoft UEFI Driver c:\windows\system32\drivers\uefi.sys Kernel Driver No Manual Stopped OK Normal No No 
ufx01000 USB Function Class Extension c:\windows\system32\drivers\ufx01000.sys Kernel Driver No Manual Stopped OK Normal No No 
ufxchipidea USB Chipidea Controller c:\windows\system32\drivers\ufxchipidea.sys Kernel Driver No Manual Stopped OK Normal No No 
ufxsynopsys USB Synopsys Controller c:\windows\system32\drivers\ufxsynopsys.sys Kernel Driver No Manual Stopped OK Normal No No 
uliagpkx Uli AGP Bus Filter c:\windows\system32\drivers\uliagpkx.sys Kernel Driver No Manual Stopped OK Normal No No 
umbus UMBus Enumerator Driver c:\windows\system32\drivers\umbus.sys Kernel Driver Yes Manual Running OK Normal No Yes 
umpass Microsoft UMPass Driver c:\windows\system32\drivers\umpass.sys Kernel Driver No Manual Stopped OK Normal No No 
urschipidea Chipidea USB Role-Switch Driver c:\windows\system32\drivers\urschipidea.sys Kernel Driver No Manual Stopped OK Normal No No 
urscx01000 USB Role-Switch Support Library c:\windows\system32\drivers\urscx01000.sys Kernel Driver No Manual Stopped OK Normal No No 
urssynopsys Synopsys USB Role-Switch Driver c:\windows\system32\drivers\urssynopsys.sys Kernel Driver No Manual Stopped OK Normal No No 
usbccgp Microsoft USB Generic Parent Driver c:\windows\system32\drivers\usbccgp.sys Kernel Driver Yes Manual Running OK Normal No Yes 
usbcir eHome Infrared Receiver (USBCIR) c:\windows\system32\drivers\usbcir.sys Kernel Driver No Manual Stopped OK Normal No No 
usbehci Microsoft USB 2.0 Enhanced Host Controller Miniport Driver c:\windows\system32\drivers\usbehci.sys Kernel Driver Yes Manual Running OK Normal No Yes 
usbhub Microsoft USB Standard Hub Driver c:\windows\system32\drivers\usbhub.sys Kernel Driver Yes Manual Running OK Normal No Yes 
usbhub3 SuperSpeed Hub c:\windows\system32\drivers\usbhub3.sys Kernel Driver Yes Manual Running OK Normal No Yes 
usbohci Microsoft USB Open Host Controller Miniport Driver c:\windows\system32\drivers\usbohci.sys Kernel Driver No Manual Stopped OK Normal No No 
usbprint Microsoft USB PRINTER Class c:\windows\system32\drivers\usbprint.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
usbscan USB Scanner Driver c:\windows\system32\drivers\usbscan.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
usbser Microsoft USB Serial Driver c:\windows\system32\drivers\usbser.sys Kernel Driver No Manual Stopped OK Normal No No 
usbstor USB Mass Storage Driver c:\windows\system32\drivers\usbstor.sys Kernel Driver Yes Manual Running OK Normal No Yes 
usbuhci Microsoft USB Universal Host Controller Miniport Driver c:\windows\system32\drivers\usbuhci.sys Kernel Driver No Manual Stopped OK Normal No No 
usbxhci USB xHCI Compliant Host Controller c:\windows\system32\drivers\usbxhci.sys Kernel Driver Yes Manual Running OK Normal No Yes 
vdrvroot Microsoft Virtual Drive Enumerator c:\windows\system32\drivers\vdrvroot.sys Kernel Driver Yes Boot Running OK Critical No Yes 
verifierext VerifierExt c:\windows\system32\drivers\verifierext.sys Kernel Driver No Manual Stopped OK Normal No No 
vhdmp vhdmp c:\windows\system32\drivers\vhdmp.sys Kernel Driver No Manual Stopped OK Normal No No 
vhf Virtual HID Framework (VHF) Driver c:\windows\system32\drivers\vhf.sys Kernel Driver No Manual Stopped OK Ignore No No 
vmbus Virtual Machine Bus c:\windows\system32\drivers\vmbus.sys Kernel Driver No Manual Stopped OK Normal No No 
vmbushid VMBusHID c:\windows\system32\drivers\vmbushid.sys Kernel Driver No Manual Stopped OK Ignore No No 
volmgr Volume Manager Driver c:\windows\system32\drivers\volmgr.sys Kernel Driver Yes Boot Running OK Critical No Yes 
volmgrx Dynamic Volume Manager c:\windows\system32\drivers\volmgrx.sys Kernel Driver Yes Boot Running OK Critical No Yes 
volsnap Storage volumes c:\windows\system32\drivers\volsnap.sys Kernel Driver Yes Boot Running OK Critical No Yes 
vpci Microsoft Hyper-V Virtual PCI Bus c:\windows\system32\drivers\vpci.sys Kernel Driver No Manual Stopped OK Normal No No 
vsmraid vsmraid c:\windows\system32\drivers\vsmraid.sys Kernel Driver No Manual Stopped OK Normal No No 
vstxraid VIA StorX Storage RAID Controller Windows Driver c:\windows\system32\drivers\vstxraid.sys Kernel Driver No Manual Stopped OK Normal No No 
vwifibus Virtual WiFi Bus Driver c:\windows\system32\drivers\vwifibus.sys Kernel Driver Yes Manual Running OK Normal No Yes 
vwififlt Virtual WiFi Filter Driver c:\windows\system32\drivers\vwififlt.sys Kernel Driver Yes System Running OK Normal No Yes 
wacompen Wacom Serial Pen HID Driver c:\windows\system32\drivers\wacompen.sys Kernel Driver No Manual Stopped OK Normal No No 
wanarp Remote Access IP ARP Driver c:\windows\system32\drivers\wanarp.sys Kernel Driver No Manual Stopped OK Normal No No 
wanarpv6 Remote Access IPv6 ARP Driver c:\windows\system32\drivers\wanarp.sys Kernel Driver No Manual Stopped OK Normal No No 
wdboot Windows Defender Boot Driver c:\windows\system32\drivers\wdboot.sys Kernel Driver No Manual Stopped OK Normal No No 
wdf01000 Kernel Mode Driver Frameworks service c:\windows\system32\drivers\wdf01000.sys Kernel Driver Yes Boot Running OK Normal No Yes 
wdfilter Windows Defender Mini-Filter Driver c:\windows\system32\drivers\wdfilter.sys File System Driver No Manual Stopped OK Normal No No 
wdiwifi WDI Driver Framework c:\windows\system32\drivers\wdiwifi.sys Kernel Driver No Manual Stopped OK Normal No No 
wdnisdrv Windows Defender Network Inspection System Driver c:\windows\system32\drivers\wdnisdrv.sys Kernel Driver No Manual Stopped OK Normal No No 
wfplwfs Microsoft Windows Filtering Platform c:\windows\system32\drivers\wfplwfs.sys Kernel Driver Yes Boot Running OK Normal No Yes 
wimmount WIMMount c:\windows\system32\drivers\wimmount.sys File System Driver No Manual Stopped OK Normal No No 
windowstrustedrt Windows Trusted Execution Environment Class Extension c:\windows\system32\drivers\windowstrustedrt.sys Kernel Driver Yes Boot Running OK Critical No Yes 
windowstrustedrtproxy Microsoft Windows Trusted Runtime Secure Service c:\windows\system32\drivers\windowstrustedrtproxy.sys Kernel Driver Yes Boot Running OK Normal No Yes 
winmad WinMad Service c:\windows\system32\drivers\winmad.sys Kernel Driver No Manual Stopped OK Normal No No 
winusb WinUsb Driver c:\windows\system32\drivers\winusb.sys Kernel Driver No Manual Stopped OK Normal No No 
winverbs WinVerbs Service c:\windows\system32\drivers\winverbs.sys Kernel Driver No Manual Stopped OK Normal No No 
wmiacpi Microsoft Windows Management Interface for ACPI c:\windows\system32\drivers\wmiacpi.sys Kernel Driver No Manual Stopped OK Normal No No 
wof Windows Overlay File System Filter Driver c:\windows\system32\drivers\wof.sys File System Driver Yes Boot Running OK Normal No Yes 
wpcfltr Family Safety Filter Driver c:\windows\system32\drivers\wpcfltr.sys Kernel Driver No Manual Stopped OK Normal No No 
wpdupfltr WPD Upper Class Filter Driver c:\windows\system32\drivers\wpdupfltr.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
ws2ifsl Winsock IFS Driver c:\windows\system32\drivers\ws2ifsl.sys Kernel Driver No Disabled Stopped OK Normal No No 
wudfpf User Mode Driver Frameworks Platform Driver c:\windows\system32\drivers\wudfpf.sys Kernel Driver Yes Manual Running OK Normal No Yes 
wudfrd Windows Driver Foundation - User-mode Driver Framework Reflector c:\windows\system32\drivers\wudfrd.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
wudfwpdfs WUDFWpdFs c:\windows\system32\drivers\wudfrd.sys Kernel Driver Yes Manual Running Degraded Normal No Yes 
xboxgip Xbox Game Input Protocol Driver c:\windows\system32\drivers\xboxgip.sys Kernel Driver No Manual Stopped OK Normal No No 
xinputhid XINPUT HID Filter Driver c:\windows\system32\drivers\xinputhid.sys Kernel Driver No Manual Stopped OK Normal No No 
xtuacpidriver Intel® Extreme Tuning Utility Service c:\windows\system32\drivers\xtuacpidriver.sys Kernel Driver Yes Manual Running OK Normal No Yes 
mbamswissarmy MBAMSwissArmy \??\c:\windows\system32\drivers\mbamswissarmy.sys File System Driver Yes Manual Running OK Normal No Yes 
 
[Environment Variables]
 
Variable Value User_Name 
ComSpec %SystemRoot%\system32\cmd.exe <SYSTEM> 
OS Windows_NT <SYSTEM> 
PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC <SYSTEM> 
PROCESSOR_ARCHITECTURE AMD64 <SYSTEM> 
PSModulePath %SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ <SYSTEM> 
TEMP %SystemRoot%\TEMP <SYSTEM> 
TMP %SystemRoot%\TEMP <SYSTEM> 
USERNAME SYSTEM <SYSTEM> 
windir %SystemRoot% <SYSTEM> 
NUMBER_OF_PROCESSORS 8 <SYSTEM> 
PROCESSOR_LEVEL 6 <SYSTEM> 
PROCESSOR_IDENTIFIER Intel64 Family 6 Model 58 Stepping 9, GenuineIntel <SYSTEM> 
PROCESSOR_REVISION 3a09 <SYSTEM> 
FP_NO_HOST_CHECK NO <SYSTEM> 
Path C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;c:\Program Files\WIDCOMM\Bluetooth Software\;c:\Program Files\WIDCOMM\Bluetooth Software\syswow64;C:\Program Files (x86)\Windows Live\Shared <SYSTEM> 
windows_tracing_logfile C:\BVTBin\Tests\installpackage\csilogfile.log <SYSTEM> 
windows_tracing_flags 3 <SYSTEM> 
FPPUILang en-US <SYSTEM> 
OnlineServices Online Services <SYSTEM> 
Platform HPD <SYSTEM> 
PCBRAND Pavilion <SYSTEM> 
OOBEUILang en-US <SYSTEM> 
TEMP %USERPROFILE%\AppData\Local\Temp NT AUTHORITY\SYSTEM 
TMP %USERPROFILE%\AppData\Local\Temp NT AUTHORITY\SYSTEM 
TEMP %USERPROFILE%\AppData\Local\Temp Pat-HP\Dogbone 
TMP %USERPROFILE%\AppData\Local\Temp Pat-HP\Dogbone 
 
[Print Jobs]
 
Document Size Owner Notify Status Time_Submitted Start_Time Until_Time Elapsed_Time Pages_Printed Job_ID Priority Parameters Driver Print_Processor Host_Print_Queue Data_Type Name 
                  
 
[Network Connections]
 
Local_Name Remote_Name Type Status User_Name 
     
 
[Running Tasks]
 
Name Path Process_ID Priority Min_Working_Set Max_Working_Set Start_Time Version Size File_Date 
system idle process Not Available 0 0 Not Available Not Available 8/21/2015 10:13 PM Not Available Not Available Not Available 
system Not Available 4 8 Not Available Not Available 8/21/2015 10:13 PM Not Available Not Available Not Available 
smss.exe Not Available 372 11 Not Available Not Available 8/21/2015 10:13 PM Not Available Not Available Not Available 
csrss.exe Not Available 524 13 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
wininit.exe Not Available 608 13 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
csrss.exe Not Available 616 13 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
winlogon.exe Not Available 692 13 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
services.exe Not Available 736 9 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
lsass.exe Not Available 756 9 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 840 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 896 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 1000 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 100 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 356 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
nvvsvc.exe Not Available 408 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
dwm.exe Not Available 1036 13 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 1136 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 1284 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
nvxdsync.exe Not Available 1324 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
nvvsvc.exe Not Available 1344 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
stacsv64.exe Not Available 1512 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 1584 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
spoolsv.exe Not Available 1836 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2084 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
wlanext.exe Not Available 2168 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
conhost.exe Not Available 2184 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2428 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2464 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
mqsvc.exe Not Available 2476 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
btwrsupportservice.exe Not Available 2496 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2516 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2544 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2552 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
pcpitstopscheduleservice.exe Not Available 2724 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
pdfsvc.exe Not Available 2732 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2788 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 2820 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 3000 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
smsvchost.exe Not Available 3432 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 3608 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
svchost.exe Not Available 3864 6 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
smsvchost.exe Not Available 3960 8 Not Available Not Available 8/21/2015 10:14 PM Not Available Not Available Not Available 
sihost.exe c:\windows\system32\sihost.exe 4880 8 200 1380 8/21/2015 10:15 PM 10.0.10240.16384 70.00 KB (71,680 bytes) 7/10/2015 7:00 AM 
taskhostw.exe c:\windows\system32\taskhostw.exe 4928 8 200 1380 8/21/2015 10:15 PM 10.0.10240.16384 86.82 KB (88,904 bytes) 7/10/2015 6:59 AM 
explorer.exe c:\windows\explorer.exe 4584 8 200 1380 8/21/2015 10:15 PM 10.0.10240.16431 4.32 MB (4,532,304 bytes) 8/20/2015 4:05 AM 
runtimebroker.exe c:\windows\system32\runtimebroker.exe 4628 8 200 1380 8/21/2015 10:15 PM 10.0.10240.16384 77.68 KB (79,544 bytes) 7/10/2015 6:59 AM 
searchindexer.exe Not Available 4468 8 Not Available Not Available 8/21/2015 10:15 PM Not Available Not Available Not Available 
shellexperiencehost.exe c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\shellexperiencehost.exe 5508 8 200 1380 8/21/2015 10:15 PM 10.0.10240.16425 1.82 MB (1,906,016 bytes) 8/20/2015 4:05 AM 
searchui.exe c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe 5516 8 200 1380 8/21/2015 10:15 PM 10.0.10240.16431 7.11 MB (7,455,072 bytes) 8/20/2015 4:05 AM 
nvtray.exe c:\program files\nvidia corporation\display\nvtray.exe 6036 8 200 1380 8/21/2015 10:15 PM 7.17.13.5330 2.33 MB (2,448,200 bytes) 8/20/2015 12:26 AM 
nvbackend.exe c:\program files (x86)\nvidia corporation\update core\nvbackend.exe 6056 8 200 1380 8/21/2015 10:15 PM 10.4.0.4 1.71 MB (1,793,736 bytes) 8/18/2015 4:48 PM 
hpsysdrv.exe c:\program files (x86)\hewlett-packard\hp odometer\hpsysdrv.exe 3452 8 200 1380 8/21/2015 10:15 PM 2.10.0.0 61.30 KB (62,768 bytes) 11/20/2008 12:47 PM 
sttray64.exe c:\program files\idt\wdm\sttray64.exe 5832 8 200 1380 8/21/2015 10:15 PM 1.0.6400.0 1.36 MB (1,425,408 bytes) 4/12/2013 6:04 PM 
beats64.exe c:\program files\idt\wdm\beats64.exe 1540 8 200 1380 8/21/2015 10:15 PM 1.0.4.0 37.00 KB (37,888 bytes) 4/12/2013 6:04 PM 
onedrive.exe c:\users\dogbone\appdata\local\microsoft\onedrive\onedrive.exe 5356 8 200 1380 8/21/2015 10:15 PM 17.3.5930.814 394.59 KB (404,064 bytes) 8/20/2015 1:03 AM 
hpqtra08.exe c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe 2836 8 200 1380 8/21/2015 10:15 PM 140.0.297.0 269.85 KB (276,328 bytes) 4/29/2011 7:08 PM 
rzsynapse.exe c:\program files (x86)\razer\synapse\rzsynapse.exe 3972 8 200 1380 8/21/2015 10:15 PM 1.18.21.27343 578.81 KB (592,704 bytes) 8/4/2015 10:12 AM 
iusb3mon.exe c:\program files (x86)\intel\intel® usb 3.0 extensible host controller driver\application\iusb3mon.exe 5564 8 200 1380 8/21/2015 10:15 PM 1.0.0.120 284.27 KB (291,096 bytes) 4/12/2013 6:09 PM 
infocenter.exe c:\program files (x86)\pcpitstop\info center\infocenter.exe 6628 8 200 1380 8/21/2015 10:15 PM 1.0.0.18 28.12 KB (28,792 bytes) 8/18/2015 5:34 PM 
pcmaticrt.exe c:\program files (x86)\pcpitstop\super shield\pcmaticrt.exe 7140 8 200 1380 8/21/2015 10:15 PM 1.0.0.55 2.04 MB (2,143,552 bytes) 8/18/2015 6:20 PM 
hpwuschd2.exe c:\program files (x86)\hp\hp software update\hpwuschd2.exe 7004 8 200 1380 8/21/2015 10:15 PM 80.1.1.0 93.80 KB (96,056 bytes) 5/30/2013 2:50 PM 
hpqste08.exe c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe 7116 8 200 1380 8/21/2015 10:15 PM 140.0.342.0 170.85 KB (174,952 bytes) 4/29/2011 11:34 AM 
hpqbam08.exe c:\program files (x86)\hp\digital imaging\bin\hpqbam08.exe 6844 8 200 1380 8/21/2015 10:15 PM 140.0.420.0 551.85 KB (565,096 bytes) 9/20/2011 9:31 AM 
hpqgpc01.exe c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe 6248 8 200 1380 8/21/2015 10:15 PM 130.0.14.16 359.35 KB (367,976 bytes) 4/29/2011 5:01 PM 
fontdrvhost.exe Not Available 7048 8 Not Available Not Available 8/21/2015 10:15 PM Not Available Not Available Not Available 
hpsupportsolutionsframeworkservice.exe Not Available 2696 8 Not Available Not Available 8/21/2015 10:16 PM Not Available Not Available Not Available 
lms.exe Not Available 4612 8 Not Available Not Available 8/21/2015 10:16 PM Not Available Not Available Not Available 
svchost.exe c:\windows\system32\svchost.exe 3540 8 200 1380 8/21/2015 10:16 PM 10.0.10240.16384 38.92 KB (39,856 bytes) 7/10/2015 6:59 AM 
applicationframehost.exe c:\windows\system32\applicationframehost.exe 2092 8 200 1380 8/21/2015 10:18 PM 10.0.10240.16384 42.40 KB (43,416 bytes) 7/10/2015 7:00 AM 
svchost.exe Not Available 7728 8 Not Available Not Available 8/21/2015 10:18 PM Not Available Not Available Not Available 
svchost.exe Not Available 7356 6 Not Available Not Available 8/21/2015 10:20 PM Not Available Not Available Not Available 
systemsettingsbroker.exe c:\windows\system32\systemsettingsbroker.exe 6408 8 200 1380 8/21/2015 10:20 PM 10.0.10240.16384 146.50 KB (150,016 bytes) 7/10/2015 7:00 AM 
winstore.mobile.exe c:\program files\windowsapps\microsoft.windowsstore_2015.8.12.0_x64__8wekyb3d8bbwe\winstore.mobile.exe 6024 8 200 1380 8/21/2015 10:43 PM 2015.8.12.1 7.00 KB (7,168 bytes) 8/20/2015 1:58 AM 
ohub.exe c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\ohub.exe 7496 8 200 1380 8/21/2015 10:45 PM 16.0.6106.2350 228.06 KB (233,536 bytes) 8/20/2015 1:56 AM 
mbam.exe Not Available 5124 8 Not Available Not Available 8/22/2015 12:39 AM Not Available Not Available Not Available 
mbamservice.exe Not Available 8804 8 Not Available Not Available 8/22/2015 12:39 AM Not Available Not Available Not Available 
mbamscheduler.exe Not Available 232 8 Not Available Not Available 8/22/2015 12:39 AM Not Available Not Available Not Available 
audiodg.exe Not Available 5152 8 Not Available Not Available 8/22/2015 12:48 AM Not Available Not Available Not Available 
searchprotocolhost.exe Not Available 6820 4 Not Available Not Available 8/22/2015 12:48 AM Not Available Not Available Not Available 
searchfilterhost.exe Not Available 5324 4 Not Available Not Available 8/22/2015 12:48 AM Not Available Not Available Not Available 
msinfo32.exe c:\windows\system32\msinfo32.exe 6424 8 200 1380 8/22/2015 12:50 AM 10.0.10240.16384 366.50 KB (375,296 bytes) 7/10/2015 6:59 AM 
wmiprvse.exe Not Available 1304 8 Not Available Not Available 8/22/2015 12:50 AM Not Available Not Available Not Available 
wmiprvse.exe Not Available 6680 8 Not Available Not Available 8/22/2015 12:50 AM Not Available Not Available Not Available 
 
[Loaded Modules]
 
Name Version Size File_Date Manufacturer Path 
sihost 10.0.10240.16384 70.00 KB (71,680 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\sihost.exe 
ntdll 10.0.10240.16430 1.74 MB (1,822,280 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\ntdll.dll 
kernel32 10.0.10240.16384 686.05 KB (702,512 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\kernel32.dll 
kernelbase 10.0.10240.16384 1.86 MB (1,951,360 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\kernelbase.dll 
msvcrt 7.0.10240.16384 618.91 KB (633,768 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msvcrt.dll 
combase 10.0.10240.16384 2.48 MB (2,601,160 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\combase.dll 
rpcrt4 10.0.10240.16412 1.14 MB (1,200,400 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\rpcrt4.dll 
sechost 10.0.10240.16384 356.66 KB (365,224 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\sechost.dll 
advapi32 10.0.10240.16384 651.70 KB (667,344 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\advapi32.dll 
coremessaging 10.0.10240.16397 789.90 KB (808,856 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\coremessaging.dll 
coreuicomponents Not Available 2.38 MB (2,498,808 bytes) 8/20/2015 4:05 AM Not Available c:\windows\system32\coreuicomponents.dll 
ntmarta 10.0.10240.16384 183.16 KB (187,560 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ntmarta.dll 
kernel.appcore 10.0.10240.16384 44.47 KB (45,536 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\kernel.appcore.dll 
user32 10.0.10240.16384 1.30 MB (1,366,168 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\user32.dll 
gdi32 10.0.10240.16390 1.52 MB (1,591,856 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\gdi32.dll 
shcore 10.0.10240.16384 707.20 KB (724,168 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\shcore.dll 
wintypes 10.0.10240.16384 1.19 MB (1,248,896 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wintypes.dll 
imm32 10.0.10240.16384 206.34 KB (211,288 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\imm32.dll 
msctf 10.0.10240.16384 1.35 MB (1,420,392 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msctf.dll 
bcryptprimitives 10.0.10240.16384 422.23 KB (432,360 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\bcryptprimitives.dll 
clbcatq 2001.12.10941.16384 639.60 KB (654,952 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\clbcatq.dll 
desktopshellext 10.0.10240.16384 72.00 KB (73,728 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\desktopshellext.dll 
windows.shell.servicehostbuilder 10.0.10240.16384 57.00 KB (58,368 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.shell.servicehostbuilder.dll 
cryptsp 10.0.10240.16384 78.77 KB (80,664 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cryptsp.dll 
bcrypt 10.0.10240.16384 153.87 KB (157,560 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\bcrypt.dll 
rsaenh 10.0.10240.16384 198.73 KB (203,504 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\rsaenh.dll 
cryptbase 10.0.10240.16384 30.35 KB (31,080 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cryptbase.dll 
actxprxy 10.0.10240.16390 4.40 MB (4,611,584 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\actxprxy.dll 
uxtheme 10.0.10240.16397 576.00 KB (589,824 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\uxtheme.dll 
clipboardserver 10.0.10240.16384 172.00 KB (176,128 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\clipboardserver.dll 
rmclient 10.0.10240.16384 155.84 KB (159,584 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\rmclient.dll 
windows.storage 10.0.10240.16405 6.19 MB (6,488,312 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.storage.dll 
shlwapi 10.0.10240.16384 320.79 KB (328,488 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\shlwapi.dll 
powrprof 10.0.10240.16384 285.54 KB (292,392 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\powrprof.dll 
profapi 10.0.10240.16384 65.11 KB (66,672 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\profapi.dll 
edputil 10.0.10240.16384 166.00 KB (169,984 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\edputil.dll 
oleaut32 10.0.10240.16384 753.59 KB (771,672 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\oleaut32.dll 
iertutil 11.0.10240.16431 3.45 MB (3,622,256 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\iertutil.dll 
policymanager 10.0.10240.16384 219.45 KB (224,712 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\policymanager.dll 
msvcp110_win 10.0.10240.16384 567.50 KB (581,120 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msvcp110_win.dll 
xmllite 10.0.10240.16384 211.84 KB (216,920 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\xmllite.dll 
activationmanager 10.0.10240.16384 352.50 KB (360,960 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\activationmanager.dll 
appointmentactivation 10.0.10240.16384 118.00 KB (120,832 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\appointmentactivation.dll 
userdatatypehelperutil 10.0.10240.16384 44.00 KB (45,056 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\userdatatypehelperutil.dll 
dsclient 10.0.10240.16384 40.86 KB (41,840 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\dsclient.dll 
ole32 10.0.10240.16384 1.25 MB (1,314,496 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\ole32.dll 
modernexecserver 10.0.10240.16412 839.00 KB (859,136 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\modernexecserver.dll 
wpportinglibrary 10.0.10240.16384 14.50 KB (14,848 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wpportinglibrary.dll 
twinapi.appcore 10.0.10240.16397 943.77 KB (966,424 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\twinapi.appcore.dll 
userenv 10.0.10240.16384 110.03 KB (112,672 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\userenv.dll 
usermgrcli 10.0.10240.16384 41.50 KB (42,496 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\usermgrcli.dll 
usermgrproxy 10.0.10240.16431 229.50 KB (235,008 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\usermgrproxy.dll 
sspicli 10.0.10240.16384 168.98 KB (173,040 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\sspicli.dll 
netutils 10.0.10240.16384 40.86 KB (41,840 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\netutils.dll 
execmodelclient 10.0.10240.16384 242.50 KB (248,320 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\execmodelclient.dll 
mmdevapi 10.0.10240.16384 438.88 KB (449,408 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\mmdevapi.dll 
devobj 10.0.10240.16384 143.31 KB (146,752 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\devobj.dll 
propsys 7.0.10240.16384 1.51 MB (1,587,248 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\propsys.dll 
cfgmgr32 10.0.10240.16384 260.83 KB (267,088 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\cfgmgr32.dll 
notificationplatformcomponent 10.0.10240.16384 35.00 KB (35,840 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\notificationplatformcomponent.dll 
appcontracts 10.0.10240.16387 663.50 KB (679,424 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\appcontracts.dll 
ondemandbrokerclient 10.0.10240.16384 47.50 KB (48,640 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ondemandbrokerclient.dll 
execmodelproxy 10.0.10240.16384 64.50 KB (66,048 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\execmodelproxy.dll 
sharehost 10.0.10240.16384 635.50 KB (650,752 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\sharehost.dll 
crypt32 10.0.10240.16384 1.74 MB (1,823,248 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\crypt32.dll 
msasn1 10.0.10240.16384 59.56 KB (60,992 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msasn1.dll 
dwmapi 10.0.10240.16392 105.00 KB (107,520 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\dwmapi.dll 
urlmon 11.0.10240.16391 1.53 MB (1,602,560 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\urlmon.dll 
faultrep 10.0.10240.16384 368.24 KB (377,080 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\faultrep.dll 
dbghelp 10.0.10240.16384 1.43 MB (1,495,552 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dbghelp.dll 
dbgcore 10.0.10240.16384 133.00 KB (136,192 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dbgcore.dll 
mrmcorer 10.0.10240.16385 1.05 MB (1,101,792 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mrmcorer.dll 
bcp47langs 10.0.10240.16384 399.49 KB (409,080 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\bcp47langs.dll 
windows.staterepository 10.0.10240.16384 2.55 MB (2,674,176 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.staterepository.dll 
staterepository.core 10.0.10240.16384 597.50 KB (611,840 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\staterepository.core.dll 
twinui.appcore 10.0.10240.16412 2.03 MB (2,125,312 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\twinui.appcore.dll 
licensemanagerapi Not Available 32.00 KB (32,768 bytes) 8/20/2015 4:05 AM Not Available c:\windows\system32\licensemanagerapi.dll 
taskhostw 10.0.10240.16384 86.82 KB (88,904 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\taskhostw.exe 
playsndsrv 10.0.10240.16384 88.50 KB (90,624 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\playsndsrv.dll 
msctfmonitor 10.0.10240.16384 27.50 KB (28,160 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msctfmonitor.dll 
winsta 10.0.10240.16384 333.43 KB (341,432 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\winsta.dll 
wtsapi32 10.0.10240.16384 63.61 KB (65,136 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wtsapi32.dll 
msutb 10.0.10240.16384 466.50 KB (477,696 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msutb.dll 
wininet 11.0.10240.16391 2.61 MB (2,741,760 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\wininet.dll 
winmm 10.0.10240.16384 119.13 KB (121,992 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\winmm.dll 
winmmbase 10.0.10240.16384 162.45 KB (166,352 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\winmmbase.dll 
esent 10.0.10240.16384 2.85 MB (2,987,520 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\esent.dll 
shell32 10.0.10240.16425 21.29 MB (22,322,624 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\shell32.dll 
profext 10.0.10240.16384 64.50 KB (66,048 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\profext.dll 
wdmaud 10.0.10240.16384 237.50 KB (243,200 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wdmaud.drv 
ksuser 10.0.10240.16384 21.22 KB (21,728 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ksuser.dll 
avrt 10.0.10240.16384 31.33 KB (32,080 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\avrt.dll 
audioses 10.0.10240.16412 515.58 KB (527,952 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\audioses.dll 
msacm32 10.0.10240.16384 27.00 KB (27,648 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msacm32.drv 
msacm32 10.0.10240.16384 102.92 KB (105,392 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msacm32.dll 
midimap 10.0.10240.16384 24.50 KB (25,088 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\midimap.dll 
explorer 10.0.10240.16431 4.32 MB (4,532,304 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\explorer.exe 
apphelp 10.0.10240.16384 465.50 KB (476,672 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\apphelp.dll 
twinapi 10.0.10240.16384 720.00 KB (737,280 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\twinapi.dll 
d3d11 10.0.10240.16384 2.62 MB (2,750,384 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\d3d11.dll 
dcomp 10.0.10240.16384 819.15 KB (838,808 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dcomp.dll 
slc 10.0.10240.16384 134.00 KB (137,216 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\slc.dll 
sppc 10.0.10240.16384 129.50 KB (132,608 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\sppc.dll 
dxgi 10.0.10240.16412 617.35 KB (632,168 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\dxgi.dll 
idstore 10.0.10240.16384 138.00 KB (141,312 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\idstore.dll 
samlib 10.0.10240.16384 93.00 KB (95,232 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\samlib.dll 
settingsyncpolicy 10.0.10240.16384 51.00 KB (52,224 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\settingsyncpolicy.dll 
settingsynccore 10.0.10240.16384 879.50 KB (900,608 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\settingsynccore.dll 
tokenbroker 10.0.10240.16384 777.50 KB (796,160 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\tokenbroker.dll 
comctl32 6.10.10240.16384 2.44 MB (2,556,256 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43\comctl32.dll 
sndvolsso 10.0.10240.16384 379.50 KB (388,608 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\sndvolsso.dll 
hid 10.0.10240.16384 34.00 KB (34,816 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\hid.dll 
oleacc 7.2.10240.16384 399.00 KB (408,576 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\oleacc.dll 
ninput 10.0.10240.16384 347.00 KB (355,328 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\ninput.dll 
dataexchange 10.0.10240.16384 262.50 KB (268,800 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dataexchange.dll 
d2d1 10.0.10240.16384 5.25 MB (5,510,144 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\d2d1.dll 
windowscodecs 10.0.10240.16384 1.70 MB (1,780,904 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windowscodecs.dll 
explorerframe 10.0.10240.16405 4.54 MB (4,760,576 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\explorerframe.dll 
coml2 10.0.10240.16384 425.00 KB (435,200 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\coml2.dll 
twinui 10.0.10240.16412 11.02 MB (11,557,888 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\twinui.dll 
windows.ui.immersive 10.0.10240.16397 1.69 MB (1,773,056 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.ui.immersive.dll 
windows.immersiveshell.serviceprovider 10.0.10240.16384 292.50 KB (299,520 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.immersiveshell.serviceprovider.dll 
HPSFTaskbar 8.0.0.2 699.30 KB (716,088 bytes) 9/9/2011 8:03 PM Hewlett-Packard Company c:\program files (x86)\hewlett-packard\hp support framework\resources\hpsfmessenger\hpsftaskbar.dll 
wldp 10.0.10240.16384 50.50 KB (51,712 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wldp.dll 
wintrust 10.0.10240.16385 327.39 KB (335,248 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\wintrust.dll 
applicationframe 10.0.10240.16384 1.08 MB (1,137,152 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\applicationframe.dll 
elscore 10.0.10240.16384 78.00 KB (79,872 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\elscore.dll 
photometadatahandler 10.0.10240.16384 410.00 KB (419,840 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\photometadatahandler.dll 
wpncore 10.0.10240.16412 826.50 KB (846,336 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\wpncore.dll 
winhttp 10.0.10240.16391 835.50 KB (855,552 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\winhttp.dll 
ntshrui 10.0.10240.16405 852.00 KB (872,448 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\ntshrui.dll 
notificationcontroller 10.0.10240.16412 506.00 KB (518,144 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\notificationcontroller.dll 
veeventdispatcher 10.0.10240.16425 275.50 KB (282,112 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\veeventdispatcher.dll 
srvcli 10.0.10240.16384 107.99 KB (110,584 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\srvcli.dll 
cscapi 10.0.10240.16384 53.00 KB (54,272 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\cscapi.dll 
windows.networking.connectivity 10.0.10240.16401 664.50 KB (680,448 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.networking.connectivity.dll 
npmproxy 10.0.10240.16384 38.00 KB (38,912 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\npmproxy.dll 
iphlpapi 10.0.10240.16384 213.41 KB (218,528 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\iphlpapi.dll 
nsi 10.0.10240.16384 23.74 KB (24,312 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\nsi.dll 
winnsi 10.0.10240.16384 32.33 KB (33,104 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\winnsi.dll 
abovelockapphost 10.0.10240.16384 158.00 KB (161,792 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\abovelockapphost.dll 
wlanapi 10.0.10240.16384 375.28 KB (384,288 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wlanapi.dll 
thumbcache 10.0.10240.16384 284.50 KB (291,328 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\thumbcache.dll 
wwapi 8.1.10240.16384 78.71 KB (80,600 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wwapi.dll 
iconcodecservice 10.0.10240.16384 14.50 KB (14,848 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\iconcodecservice.dll 
wcmapi 10.0.10240.16384 111.50 KB (114,176 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wcmapi.dll 
ws2_32 10.0.10240.16384 412.66 KB (422,560 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ws2_32.dll 
wlidprov 10.0.10240.16384 582.50 KB (596,480 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wlidprov.dll 
webio 10.0.10240.16384 481.50 KB (493,056 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\webio.dll 
mswsock 10.0.10240.16384 355.84 KB (364,384 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\mswsock.dll 
dnsapi 10.0.10240.16384 664.31 KB (680,256 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dnsapi.dll 
nvwgf2umx 10.18.13.5330 17.59 MB (18,448,696 bytes) 6/17/2015 9:22 AM NVIDIA Corporation c:\windows\system32\nvwgf2umx.dll 
version 10.0.10240.16384 30.29 KB (31,016 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\version.dll 
rasadhlp 10.0.10240.16384 17.00 KB (17,408 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\rasadhlp.dll 
dsreg 10.0.10240.16384 341.00 KB (349,184 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dsreg.dll 
wldap32 10.0.10240.16384 340.00 KB (348,160 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wldap32.dll 
ncrypt 10.0.10240.16384 139.77 KB (143,128 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ncrypt.dll 
samcli 10.0.10240.16384 74.50 KB (76,288 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\samcli.dll 
wkscli 10.0.10240.16384 76.21 KB (78,040 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wkscli.dll 
ntasn1 10.0.10240.16384 215.34 KB (220,504 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ntasn1.dll 
dpapi 10.0.10240.16384 15.00 KB (15,360 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dpapi.dll 
uianimation 10.0.10240.16384 279.50 KB (286,208 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\uianimation.dll 
schannel 10.0.10240.16384 444.50 KB (455,168 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\schannel.dll 
mskeyprotect 10.0.10240.16384 59.50 KB (60,928 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\mskeyprotect.dll 
ncryptsslp 10.0.10240.16384 109.99 KB (112,632 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ncryptsslp.dll 
gpapi 10.0.10240.16384 128.13 KB (131,208 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\gpapi.dll 
capauthz 10.0.10240.16384 79.21 KB (81,112 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\capauthz.dll 
gdiplus 10.0.10240.16384 1.64 MB (1,718,272 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10240.16384_none_89a94c179af51f83\gdiplus.dll 
notificationobjfactory 10.0.10240.16425 299.50 KB (306,688 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\notificationobjfactory.dll 
msxml6 6.30.10240.16384 2.45 MB (2,573,768 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msxml6.dll 
mfplat 12.0.10240.16431 1.04 MB (1,087,296 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mfplat.dll 
rtworkq 12.0.10240.16384 164.48 KB (168,432 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\rtworkq.dll 
stobject 10.0.10240.16405 348.00 KB (356,352 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\stobject.dll 
wmiclnt 10.0.10240.16384 44.50 KB (45,568 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wmiclnt.dll 
batmeter 10.0.10240.16384 1.97 MB (2,065,408 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\batmeter.dll 
notificationcontrollerps 10.0.10240.16412 28.00 KB (28,672 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\notificationcontrollerps.dll 
inputswitch 10.0.10240.16384 300.50 KB (307,712 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\inputswitch.dll 
sxs 10.0.10240.16384 603.78 KB (618,272 bytes) 7/10/2015 5:05 AM Microsoft Corporation c:\windows\system32\sxs.dll 
windows.gaming.input 10.0.10240.16384 238.00 KB (243,712 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.gaming.input.dll 
windows.ui.shell 10.0.10240.16425 1.23 MB (1,290,752 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.ui.shell.dll 
wincorlib 10.0.10240.16384 409.00 KB (418,816 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wincorlib.dll 
es 2001.12.10941.16384 461.50 KB (472,576 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\es.dll 
prnfldr 10.0.10240.16384 477.50 KB (488,960 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\prnfldr.dll 
winspool 10.0.10240.16384 505.50 KB (517,632 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\winspool.drv 
atlthunk 10.0.10240.16384 47.50 KB (48,640 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\atlthunk.dll 
dxp 10.0.10240.16384 467.00 KB (478,208 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\dxp.dll 
setupapi 10.0.10240.16384 1.77 MB (1,860,944 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\setupapi.dll 
shdocvw 10.0.10240.16384 239.50 KB (245,248 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\shdocvw.dll 
actioncenter 10.0.10240.16427 303.50 KB (310,784 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\actioncenter.dll 
wevtapi 10.0.10240.16384 392.99 KB (402,424 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wevtapi.dll 
syncreg 2007.94.10240.16384 77.50 KB (79,360 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\syncreg.dll 
wpdshserviceobj 10.0.10240.16384 67.50 KB (69,120 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\wpdshserviceobj.dll 
portabledevicetypes 10.0.10240.16384 185.00 KB (189,440 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\portabledevicetypes.dll 
authui 10.0.10240.16384 2.24 MB (2,350,080 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\authui.dll 
portabledeviceapi 10.0.10240.16384 625.00 KB (640,000 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\portabledeviceapi.dll 
settingmonitor 10.0.10240.16384 235.50 KB (241,152 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\settingmonitor.dll 
pnidui 10.0.10240.16384 1.73 MB (1,811,968 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\pnidui.dll 
linkinfo 10.0.10240.16384 30.00 KB (30,720 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\linkinfo.dll 
networkstatus 10.0.10240.16425 118.00 KB (120,832 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\networkstatus.dll 
cscui 10.0.10240.16384 767.00 KB (785,408 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cscui.dll 
cscdll 10.0.10240.16384 28.50 KB (29,184 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\cscdll.dll 
mssprxy 7.0.10240.16431 120.50 KB (123,392 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mssprxy.dll 
netsetupshim 10.0.10240.16384 379.00 KB (388,096 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\netsetupshim.dll 
netsetupapi 10.0.10240.16384 102.84 KB (105,312 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\netsetupapi.dll 
cscobj 10.0.10240.16384 297.00 KB (304,128 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cscobj.dll 
bthprops 10.0.10240.16384 216.00 KB (221,184 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\bthprops.cpl 
bluetoothapis 10.0.10240.16384 101.50 KB (103,936 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\bluetoothapis.dll 
srchadmin 7.0.10240.16384 357.00 KB (365,568 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\srchadmin.dll 
dhcpcsvc6 10.0.10240.16384 65.50 KB (67,072 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dhcpcsvc6.dll 
dhcpcsvc 10.0.10240.16384 84.00 KB (86,016 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dhcpcsvc.dll 
netprofm 10.0.10240.16384 236.50 KB (242,176 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\netprofm.dll 
synccenter 10.0.10240.16384 3.26 MB (3,415,040 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\synccenter.dll 
imapi2 10.0.10240.16384 505.00 KB (517,120 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\imapi2.dll 
hgcpl 10.0.10240.16384 622.50 KB (637,440 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\hgcpl.dll 
duser 10.0.10240.16384 589.00 KB (603,136 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\duser.dll 
provsvc 10.0.10240.16384 453.00 KB (463,872 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\provsvc.dll 
shacct 10.0.10240.16384 179.50 KB (183,808 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\shacct.dll 
apprepapi 10.0.10240.16384 243.50 KB (249,344 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\apprepapi.dll 
tbs 10.0.10240.16384 42.42 KB (43,440 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\tbs.dll 
windows.internal.shell.broker 10.0.10240.16425 580.54 KB (594,472 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.internal.shell.broker.dll 
ntoskrnl 10.0.10240.16431 7.65 MB (8,021,840 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\ntoskrnl.exe 
windows.web 10.0.10240.16384 767.00 KB (785,408 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\windows.web.dll 
LinkUpExt64 1.0.0.15 289.55 KB (296,504 bytes) 5/6/2011 10:42 AM Hewlett-Packard c:\program files (x86)\hewlett-packard\hp linkup\linkupext64.dll 
syncui 10.0.10240.16384 172.50 KB (176,640 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\syncui.dll 
synceng 10.0.10240.16384 95.50 KB (97,792 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\synceng.dll 
twext 10.0.10240.16384 155.50 KB (159,232 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\twext.dll 
workfoldersshell 10.0.10240.16384 209.00 KB (214,016 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\workfoldersshell.dll 
wzshls64 4.1.0.0 11.32 KB (11,592 bytes) 2/16/2012 6:00 PM WinZip Computing, S.L. c:\program files\winzip\wzshls64.dll 
FileSyncShell64 17.3.5930.814 1.56 MB (1,636,040 bytes) 8/20/2015 1:04 AM Microsoft Corporation c:\users\dogbone\appdata\local\microsoft\onedrive\17.3.5930.0814\amd64\filesyncshell64.dll 
msvcp120 12.0.21005.1 644.66 KB (660,128 bytes) 8/20/2015 1:04 AM Microsoft Corporation c:\users\dogbone\appdata\local\microsoft\onedrive\17.3.5930.0814\amd64\msvcp120.dll 
msvcr120 12.0.21005.1 940.66 KB (963,232 bytes) 8/20/2015 1:04 AM Microsoft Corporation c:\users\dogbone\appdata\local\microsoft\onedrive\17.3.5930.0814\amd64\msvcr120.dll 
structuredquery 7.0.10240.16384 714.50 KB (731,648 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\structuredquery.dll 
mswb7 10.0.10240.16384 252.00 KB (258,048 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\mswb7.dll 
windows.storage.search 10.0.10240.16384 793.50 KB (812,544 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.storage.search.dll 
dui70 10.0.10240.16384 1.66 MB (1,744,384 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dui70.dll 
uiribbonres 10.0.10240.16393 571.00 KB (584,704 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\uiribbonres.dll 
networkexplorer 10.0.10240.16384 1.62 MB (1,695,744 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\networkexplorer.dll 
ehstorshell 10.0.10240.16384 203.50 KB (208,384 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\ehstorshell.dll 
atl 3.5.2284.0 99.50 KB (101,888 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\atl.dll 
mpr 10.0.10240.16384 101.42 KB (103,856 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\mpr.dll 
wscinterop 10.0.10240.16384 164.50 KB (168,448 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\wscinterop.dll 
wscapi 10.0.10240.16384 196.73 KB (201,456 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\wscapi.dll 
wscui 10.0.10240.16384 1.11 MB (1,163,776 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\wscui.cpl 
reagent 10.0.10240.16431 969.83 KB (993,104 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\reagent.dll 
imagehlp 10.0.10240.16384 98.89 KB (101,264 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\imagehlp.dll 
dismapi 10.0.10240.16384 902.34 KB (924,000 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\dismapi.dll 
wdscore 10.0.10240.16384 248.84 KB (254,816 bytes) 7/10/2015 5:05 AM Microsoft Corporation c:\windows\system32\wdscore.dll 
werconcpl 10.0.10240.16384 1.23 MB (1,290,240 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\werconcpl.dll 
framedynos 10.0.10240.16384 289.00 KB (295,936 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\framedynos.dll 
wercplsupport 10.0.10240.16384 93.50 KB (95,744 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wercplsupport.dll 
wer 10.0.10240.16392 615.39 KB (630,160 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\wer.dll 
hcproviders 10.0.10240.16384 58.50 KB (59,904 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\hcproviders.dll 
ieproxy 11.0.10240.16386 654.50 KB (670,208 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\ieproxy.dll 
npsmdesktopprovider 10.0.10240.16384 216.00 KB (221,184 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\npsmdesktopprovider.dll 
secur32 10.0.10240.16384 27.50 KB (28,160 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\secur32.dll 
mlang 10.0.10240.16384 227.00 KB (232,448 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\mlang.dll 
ieframe 11.0.10240.16425 11.92 MB (12,503,552 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\ieframe.dll 
timedate 10.0.10240.16384 536.00 KB (548,864 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\timedate.cpl 
bitsproxy 7.8.10240.16384 55.50 KB (56,832 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\bitsproxy.dll 
uiautomationcore 7.2.10240.16431 1.27 MB (1,334,784 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\uiautomationcore.dll 
prnntfy 10.0.10240.16384 248.50 KB (254,464 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\prnntfy.dll 
puiapi 10.0.10240.16384 197.00 KB (201,728 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\puiapi.dll 
printui 10.0.10240.16384 1.16 MB (1,213,952 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\printui.dll 
puiobj 10.0.10240.16384 459.50 KB (470,528 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\puiobj.dll 
zipfldr 10.0.10240.16384 354.50 KB (363,008 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\zipfldr.dll 
chartv 10.0.10240.16384 131.50 KB (134,656 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\chartv.dll 
shutdownux 10.0.10240.16391 177.50 KB (181,760 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\shutdownux.dll 
winbrand 10.0.10240.16384 34.50 KB (35,328 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\winbrand.dll 
pcacli 10.0.10240.16384 43.50 KB (44,544 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\pcacli.dll 
sfc_os 10.0.10240.16384 47.00 KB (48,128 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\sfc_os.dll 
acppage 10.0.10240.16384 54.50 KB (55,808 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\acppage.dll 
msi 5.0.10240.16386 3.21 MB (3,362,816 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\msi.dll 
sfc 10.0.10240.16384 3.00 KB (3,072 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\sfc.dll 
devrtl 10.0.10240.16384 57.50 KB (58,880 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\devrtl.dll 
dlnashext 12.0.10240.16384 490.50 KB (502,272 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dlnashext.dll 
devdispitemprovider 10.0.10240.16384 101.00 KB (103,424 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\devdispitemprovider.dll 
webservices 10.0.10240.16384 1.48 MB (1,549,544 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\webservices.dll 
ondemandconnroutehelper 10.0.10240.16384 64.50 KB (66,048 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\ondemandconnroutehelper.dll 
fwpuclnt 10.0.10240.16384 393.00 KB (402,432 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\fwpuclnt.dll 
cryptnet 10.0.10240.16384 169.00 KB (173,056 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cryptnet.dll 
drprov 10.0.10240.16384 25.00 KB (25,600 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\drprov.dll 
ntlanman 10.0.10240.16384 69.50 KB (71,168 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\ntlanman.dll 
davclnt 10.0.10240.16384 101.00 KB (103,424 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\davclnt.dll 
davhlpr 10.0.10240.16384 26.00 KB (26,624 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\davhlpr.dll 
dfscli 10.0.10240.16384 60.50 KB (61,952 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\dfscli.dll 
browcli 10.0.10240.16384 56.50 KB (57,856 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\browcli.dll 
dwrite 10.0.10240.16430 2.30 MB (2,415,104 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\dwrite.dll 
storagecontexthandler 10.0.10240.16384 74.50 KB (76,288 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\storagecontexthandler.dll 
windows.ui 10.0.10240.16384 613.50 KB (628,224 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.ui.dll 
windows.system.launcher 10.0.10240.16384 254.50 KB (260,608 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.system.launcher.dll 
runtimebroker 10.0.10240.16384 77.68 KB (79,544 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\runtimebroker.exe 
windows.cortana.desktop 10.0.10240.16425 560.00 KB (573,440 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.cortana.desktop.dll 
windows.cortana.proxystub 10.0.10240.16390 66.50 KB (68,096 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.cortana.proxystub.dll 
systemsettings.datamodel 10.0.10240.16384 61.00 KB (62,464 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\systemsettings.datamodel.dll 
firewallapi 10.0.10240.16384 499.50 KB (511,488 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\firewallapi.dll 
fwbase 10.0.10240.16384 179.00 KB (183,296 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\fwbase.dll 
wpnapps 10.0.10240.16412 585.50 KB (599,552 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\wpnapps.dll 
appxdeploymentclient 10.0.10240.16445 404.50 KB (414,208 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\appxdeploymentclient.dll 
windows.applicationmodel 10.0.10240.16384 179.50 KB (183,808 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\windows.applicationmodel.dll 
appwiz 10.0.10240.16384 814.50 KB (834,048 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\appwiz.cpl 
osbaseln 10.0.10240.16384 25.50 KB (26,112 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\osbaseln.dll 
shellexperiencehost 10.0.10240.16425 1.82 MB (1,906,016 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\shellexperiencehost.exe 
windows.ui.xaml 10.0.10240.16431 15.93 MB (16,706,560 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.ui.xaml.dll 
startui 10.0.10240.16431 7.52 MB (7,885,824 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\startui.dll 
quickactions Not Available 419.00 KB (429,056 bytes) 7/10/2015 6:59 AM Not Available c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\quickactions.dll 
windows.ui.actioncenter 10.0.10240.16425 2.20 MB (2,309,120 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\windows.ui.actioncenter.dll 
quickactionsdatamodel 10.0.10240.16384 165.50 KB (169,472 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\quickactionsdatamodel.dll 
windows.globalization 10.0.10240.16384 1.50 MB (1,569,280 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\windows.globalization.dll 
windows.globalization.fontgroups 10.0.10240.16384 76.00 KB (77,824 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.globalization.fontgroups.dll 
fontgroupsoverride 10.0.10240.16384 19.00 KB (19,456 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\fontgroupsoverride.dll 
windows.storage.applicationdata 10.0.10240.16384 321.36 KB (329,072 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\windows.storage.applicationdata.dll 
windows.graphics 10.0.10240.16384 340.50 KB (348,672 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.graphics.dll 
threadpoolwinrt 10.0.10240.16384 69.00 KB (70,656 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\threadpoolwinrt.dll 
directmanipulation 10.0.10240.16431 541.74 KB (554,744 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\directmanipulation.dll 
rtmediaframe 10.0.10240.16384 445.50 KB (456,192 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\rtmediaframe.dll 
personax 10.0.10240.16384 157.00 KB (160,768 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\personax.dll 
jumpviewui 10.0.10240.16425 1.02 MB (1,067,008 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\jumpviewui.dll 
logoncli 10.0.10240.16384 235.09 KB (240,728 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\logoncli.dll 
globcollationhost 10.0.10240.16384 315.00 KB (322,560 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\globcollationhost.dll 
xamltilerendering Not Available 140.00 KB (143,360 bytes) 7/10/2015 6:59 AM Not Available c:\windows\systemapps\shellexperiencehost_cw5n1h2txyewy\xamltilerendering.dll 
searchui 10.0.10240.16431 7.11 MB (7,455,072 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\searchui.exe 
cortanaapi Not Available 6.27 MB (6,569,472 bytes) 8/20/2015 4:05 AM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortanaapi.dll 
bingconfigurationclient 10.0.10240.16384 118.00 KB (120,832 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\bingconfigurationclient.dll 
windows.cortana.pal.desktop 10.0.10240.16390 55.00 KB (56,320 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.cortana.pal.desktop.dll 
cortana.core Not Available 460.00 KB (471,040 bytes) 7/10/2015 7:00 AM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortana.core.dll 
aistokenmanager 10.0.10240.16384 91.50 KB (93,696 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\aistokenmanager.dll 
onlineservices 10.0.10240.16384 178.50 KB (182,784 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\onlineservices.dll 
bingidentitymanagerinternal 10.0.10240.16425 103.00 KB (105,472 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\bingidentitymanagerinternal.dll 
windows.web.http 10.0.10240.16384 1.29 MB (1,353,728 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\windows.web.http.dll 
windows.security.authentication.onlineid 10.0.10240.16384 685.50 KB (701,952 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.security.authentication.onlineid.dll 
cortana.backgroundtask Not Available 1.72 MB (1,808,384 bytes) 8/20/2015 4:05 AM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortana.backgroundtask.dll 
windows.media.speech 10.0.10240.16425 1.53 MB (1,601,536 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.media.speech.dll 
remotenaturallanguage 1.0.0.1 1.16 MB (1,212,416 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\remotenaturallanguage.dll 
commstypehelperutil_ca 10.0.10240.16384 15.50 KB (15,872 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\commstypehelperutil_ca.dll 
geolocatorhelper 10.0.10240.16384 48.50 KB (49,664 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\geolocatorhelper.dll 
biwinrt 10.0.10240.16384 184.00 KB (188,416 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\biwinrt.dll 
sapi_onecore 5.3.10240.16425 2.81 MB (2,949,120 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\speech_onecore\common\sapi_onecore.dll 
windows.applicationmodel.background.timebroker 10.0.10240.16384 30.00 KB (30,720 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.applicationmodel.background.timebroker.dll 
msftedit 10.0.10240.16386 3.10 MB (3,248,128 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\msftedit.dll 
globinputhost 10.0.10240.16384 165.50 KB (169,472 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\globinputhost.dll 
remindersui Not Available 2.17 MB (2,274,816 bytes) 8/20/2015 4:05 AM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\remindersui.dll 
edgehtml 11.0.10240.16431 20.86 MB (21,875,200 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\edgehtml.dll 
chakra 11.0.10240.16431 7.17 MB (7,523,328 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\chakra.dll 
msimtf 10.0.10240.16384 46.50 KB (47,616 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msimtf.dll 
ieapfltr 11.0.10240.16384 1.61 MB (1,686,528 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ieapfltr.dll 
rometadata 4.6.79.0 222.17 KB (227,504 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\rometadata.dll 
cortanaapi.proxystub Not Available 205.50 KB (210,432 bytes) 7/10/2015 7:00 AM Not Available c:\windows\systemapps\microsoft.windows.cortana_cw5n1h2txyewy\cortanaapi.proxystub.dll 
imgutil 11.0.10240.16384 52.00 KB (53,248 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\imgutil.dll 
nvtray 7.17.13.5330 2.33 MB (2,448,200 bytes) 8/20/2015 12:26 AM NVIDIA Corporation c:\program files\nvidia corporation\display\nvtray.exe 
comdlg32 10.0.10240.16405 830.50 KB (850,432 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\comdlg32.dll 
nvui 8.17.13.5330 4.81 MB (5,038,736 bytes) 8/20/2015 12:26 AM NVIDIA Corporation c:\program files\nvidia corporation\display\nvui.dll 
comctl32 5.82.10240.16384 663.84 KB (679,776 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10240.16384_none_0212ec7eba871e86\comctl32.dll 
msimg32 10.0.10240.16384 8.50 KB (8,704 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msimg32.dll 
NvBackendAPI64 10.4.0.4 1.05 MB (1,102,152 bytes) 8/18/2015 4:48 PM NVIDIA Corporation c:\program files\nvidia corporation\update core\nvbackendapi64.dll 
nlaapi 10.0.10240.16384 78.00 KB (79,872 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\windows\system32\nlaapi.dll 
napinsp 10.0.10240.16384 65.50 KB (67,072 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\napinsp.dll 
pnrpnsp 10.0.10240.16384 85.00 KB (87,040 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\pnrpnsp.dll 
winrnr 10.0.10240.16384 31.00 KB (31,744 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\winrnr.dll 
wshbth 10.0.10240.16384 61.50 KB (62,976 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wshbth.dll 
nvupdt 10.4.0.4 2.93 MB (3,069,640 bytes) 8/18/2015 4:48 PM NVIDIA Corporation c:\program files\nvidia corporation\update core\nvupdt.dll 
NvBackend 10.4.0.4 1.71 MB (1,793,736 bytes) 8/18/2015 4:48 PM NVIDIA Corporation c:\program files (x86)\nvidia corporation\update core\nvbackend.exe 
wow64 10.0.10240.16384 291.50 KB (298,496 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wow64.dll 
wow64win 10.0.10240.16384 447.50 KB (458,240 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\wow64win.dll 
wow64cpu 10.0.10240.16384 12.00 KB (12,288 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wow64cpu.dll 
hpsysdrv 2.10.0.0 61.30 KB (62,768 bytes) 11/20/2008 12:47 PM Hewlett-Packard c:\program files (x86)\hewlett-packard\hp odometer\hpsysdrv.exe 
sttray64 1.0.6400.0 1.36 MB (1,425,408 bytes) 4/12/2013 6:04 PM IDT, Inc. c:\program files\idt\wdm\sttray64.exe 
mfc42u 6.6.8063.0 1.42 MB (1,489,408 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\mfc42u.dll 
stlang64 1.0.6400.0 4.54 MB (4,762,112 bytes) 4/12/2013 6:04 PM IDT, Inc. c:\program files\idt\wdm\stlang64.dll 
odbc32 10.0.10240.16384 677.00 KB (693,248 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\odbc32.dll 
stapi64 1.0.6400.0 640.50 KB (655,872 bytes) 11/20/2013 9:43 AM IDT, Inc. c:\windows\system32\stapi64.dll 
beats64 1.0.4.0 37.00 KB (37,888 bytes) 4/12/2013 6:04 PM Hewlett-Packard c:\program files\idt\wdm\beats64.exe 
msvcp90 9.0.30729.9158 834.14 KB (854,160 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9158_none_08e47e47a83d53d6\msvcp90.dll 
msvcr90 9.0.30729.9158 627.14 KB (642,192 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9158_none_08e47e47a83d53d6\msvcr90.dll 
onedrive 17.3.5930.814 394.59 KB (404,064 bytes) 8/20/2015 1:03 AM Microsoft Corporation c:\users\dogbone\appdata\local\microsoft\onedrive\onedrive.exe 
hpqtra08 140.0.297.0 269.85 KB (276,328 bytes) 4/29/2011 7:08 PM Hewlett-Packard Co. c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe 
RzSynapse 1.18.21.27343 578.81 KB (592,704 bytes) 8/4/2015 10:12 AM Not Available c:\program files (x86)\razer\synapse\rzsynapse.exe 
iusb3mon 1.0.0.120 284.27 KB (291,096 bytes) 4/12/2013 6:09 PM Intel Corporation c:\program files (x86)\intel\intel® usb 3.0 extensible host controller driver\application\iusb3mon.exe 
InfoCenter 1.0.0.18 28.12 KB (28,792 bytes) 8/18/2015 5:34 PM Not Available c:\program files (x86)\pcpitstop\info center\infocenter.exe 
PCMaticRT 1.0.0.55 2.04 MB (2,143,552 bytes) 8/18/2015 6:20 PM PC Pitstop LLC c:\program files (x86)\pcpitstop\super shield\pcmaticrt.exe 
hpwuschd2 80.1.1.0 93.80 KB (96,056 bytes) 5/30/2013 2:50 PM Hewlett-Packard c:\program files (x86)\hp\hp software update\hpwuschd2.exe 
hpqste08 140.0.342.0 170.85 KB (174,952 bytes) 4/29/2011 11:34 AM Hewlett-Packard Co. c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe 
hpqbam08 140.0.420.0 551.85 KB (565,096 bytes) 9/20/2011 9:31 AM Hewlett-Packard Co. c:\program files (x86)\hp\digital imaging\bin\hpqbam08.exe 
hpqgpc01 130.0.14.16 359.35 KB (367,976 bytes) 4/29/2011 5:01 PM Hewlett-Packard c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe 
svchost 10.0.10240.16384 38.92 KB (39,856 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\svchost.exe 
aphostservice 10.0.10240.16384 290.00 KB (296,960 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\aphostservice.dll 
userdataplatformhelperutil 10.0.10240.16384 65.00 KB (66,560 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\userdataplatformhelperutil.dll 
networkhelper 10.0.10240.16384 74.50 KB (76,288 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\networkhelper.dll 
mccspal 10.0.10240.16384 22.50 KB (23,040 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\mccspal.dll 
syncutil 10.0.10240.16431 268.00 KB (274,432 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\syncutil.dll 
vaultcli 10.0.10240.16384 273.50 KB (280,064 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\vaultcli.dll 
pimstore 10.0.10240.16384 1.42 MB (1,489,408 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\pimstore.dll 
phoneutil 10.0.10240.16384 240.50 KB (246,272 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\phoneutil.dll 
inproclogger 10.0.10240.16384 30.50 KB (31,232 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\inproclogger.dll 
msv1_0 10.0.10240.16384 358.84 KB (367,456 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\msv1_0.dll 
ntlmshared 10.0.10240.16384 35.85 KB (36,712 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ntlmshared.dll 
cryptdll 10.0.10240.16384 66.13 KB (67,720 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cryptdll.dll 
synccontroller 10.0.10240.16384 413.00 KB (422,912 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\synccontroller.dll 
aphostclient 10.0.10240.16384 45.50 KB (46,592 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\aphostclient.dll 
cemapi 10.0.10240.16384 239.00 KB (244,736 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cemapi.dll 
accountaccessor 10.0.10240.16384 198.00 KB (202,752 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\accountaccessor.dll 
userdatalanguageutil 10.0.10240.16384 44.00 KB (45,056 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\userdatalanguageutil.dll 
userdatatimeutil 10.0.10240.16384 109.50 KB (112,128 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\userdatatimeutil.dll 
applicationframehost 10.0.10240.16384 42.40 KB (43,416 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\applicationframehost.exe 
systemsettingsbroker 10.0.10240.16384 146.50 KB (150,016 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\systemsettingsbroker.exe 
settingshandlers_nt 10.0.10240.16425 3.60 MB (3,780,096 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\settingshandlers_nt.dll 
datalayer 4.8.10240.16384 413.50 KB (423,424 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\program files\windows defender\datalayer.dll 
mpclient 4.8.10240.16384 849.50 KB (869,888 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\program files\windows defender\mpclient.dll 
settingshandlers_notifications 10.0.10240.16431 230.00 KB (235,520 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\settingshandlers_notifications.dll 
settingshandlers_geolocation 10.0.10240.16384 155.00 KB (158,720 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\settingshandlers_geolocation.dll 
WinStore.Mobile 2015.8.12.1 7.00 KB (7,168 bytes) 8/20/2015 1:58 AM Not Available c:\program files\windowsapps\microsoft.windowsstore_2015.8.12.0_x64__8wekyb3d8bbwe\winstore.mobile.exe 
WinStore.Mobile 2015.8.12.1 18.25 MB (19,138,048 bytes) 8/20/2015 1:58 AM Not Available c:\program files\windowsapps\microsoft.windowsstore_2015.8.12.0_x64__8wekyb3d8bbwe\winstore.mobile.dll 
mrt100_app 1.0.22929.0 310.16 KB (317,608 bytes) 7/10/2015 9:16 AM Microsoft Corporation c:\program files\windowsapps\microsoft.net.native.runtime.1.0_1.0.22929.0_x64__8wekyb3d8bbwe\mrt100_app.dll 
dmprocessxmlfiltered 10.0.10240.16384 22.00 KB (22,528 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\dmprocessxmlfiltered.dll 
vcruntime140_app 14.0.22929.0 86.88 KB (88,960 bytes) 8/20/2015 1:28 AM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.22929.0_x64__8wekyb3d8bbwe\vcruntime140_app.dll 
ucrtbase 10.0.10240.16384 961.38 KB (984,448 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\ucrtbase.dll 
dmcmnutils 10.0.10240.16384 80.75 KB (82,688 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\dmcmnutils.dll 
mrt100 1.0.22929.0 30.15 KB (30,872 bytes) 7/10/2015 9:16 AM Microsoft Corporation c:\program files\windowsapps\microsoft.net.native.runtime.1.0_1.0.22929.0_x64__8wekyb3d8bbwe\mrt100.dll 
wuapi 10.0.10240.16397 765.50 KB (783,872 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\wuapi.dll 
updatepolicy 10.0.10240.16384 93.50 KB (95,744 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\updatepolicy.dll 
cabinet 10.0.10240.16384 139.74 KB (143,096 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\cabinet.dll 
windows.system.profile.retailinfo 10.0.10240.16384 131.00 KB (134,144 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.system.profile.retailinfo.dll 
WinStore.Entertainment.Mobile Not Available 7.46 MB (7,824,896 bytes) 8/20/2015 1:58 AM Not Available c:\program files\windowsapps\microsoft.windowsstore_2015.8.12.0_x64__8wekyb3d8bbwe\winstore.entertainment.mobile.dll 
vccorlib140_app 14.0.22929.0 379.52 KB (388,632 bytes) 8/20/2015 1:28 AM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.22929.0_x64__8wekyb3d8bbwe\vccorlib140_app.dll 
concrt140_app 14.0.22929.0 309.96 KB (317,400 bytes) 8/20/2015 1:28 AM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.22929.0_x64__8wekyb3d8bbwe\concrt140_app.dll 
msvcp140_app 14.0.22929.0 609.30 KB (623,920 bytes) 8/20/2015 1:28 AM Microsoft Corporation c:\program files\windowsapps\microsoft.vclibs.140.00_14.0.22929.0_x64__8wekyb3d8bbwe\msvcp140_app.dll 
windows.security.authentication.web.core 10.0.10240.16384 673.00 KB (689,152 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.security.authentication.web.core.dll 
MS.Entertainment.Common.Mobile Not Available 1.97 MB (2,062,336 bytes) 8/20/2015 1:58 AM Not Available c:\program files\windowsapps\microsoft.windowsstore_2015.8.12.0_x64__8wekyb3d8bbwe\ms.entertainment.common.mobile.dll 
EntCommon 1.6.1206.0 7.31 MB (7,666,312 bytes) 8/20/2015 1:58 AM Microsoft Corporation c:\program files\windowsapps\microsoft.windowsstore_2015.8.12.0_x64__8wekyb3d8bbwe\entcommon.dll 
windows.ui.xaml.phone 10.0.10240.16384 1.44 MB (1,506,816 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.ui.xaml.phone.dll 
storeagent 10.0.10240.16412 483.00 KB (494,592 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\storeagent.dll 
windows.accountscontrol 10.0.10240.16384 741.50 KB (759,296 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.accountscontrol.dll 
certenroll 10.0.10240.16384 2.77 MB (2,902,528 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\certenroll.dll 
certca 10.0.10240.16384 743.50 KB (761,344 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\certca.dll 
windows.applicationmodel.background.systemeventsbroker 10.0.10240.16384 106.50 KB (109,056 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.applicationmodel.background.systemeventsbroker.dll 
systemeventsbrokerclient 10.0.10240.16384 24.50 KB (25,088 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\systemeventsbrokerclient.dll 
mbaeapipublic 10.0.10240.16431 872.50 KB (893,440 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mbaeapipublic.dll 
ohub 16.0.6106.2350 228.06 KB (233,536 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\ohub.exe 
Office.UI.Xaml.OHub 16.0.6106.2350 697.56 KB (714,304 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\office.ui.xaml.ohub.dll 
msoimm 16.0.6014.1000 16.36 MB (17,159,872 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\msoimm.dll 
mso20imm 16.0.6014.1000 2.98 MB (3,122,368 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\mso20imm.dll 
mso30imm 16.0.6014.1000 4.74 MB (4,969,664 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\mso30imm.dll 
Office.UI.Xaml.Core 16.0.6014.1000 12.70 MB (13,320,384 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\office.ui.xaml.core.dll 
windows.system.remotedesktop 10.0.10240.16384 23.00 KB (23,552 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.system.remotedesktop.dll 
adalrt 10.0.10011.0 537.23 KB (550,120 bytes) 8/20/2015 1:56 AM Microsoft Corporation c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\adalrt.dll 
windows.networking.hostname 10.0.10240.16384 200.00 KB (204,800 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\windows.networking.hostname.dll 
mfmediaengine 10.0.10240.16431 2.30 MB (2,416,640 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mfmediaengine.dll 
windows.media.mediacontrol 10.0.10240.16384 361.67 KB (370,352 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\windows.media.mediacontrol.dll 
mfcore 12.0.10240.16431 2.35 MB (2,462,648 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mfcore.dll 
mfmp4srcsnk 12.0.10240.16412 1,019.41 KB (1,043,872 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mfmp4srcsnk.dll 
mfsvr 10.0.10240.16427 764.76 KB (783,112 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\mfsvr.dll 
msvproc 12.0.10240.16384 468.05 KB (479,288 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\msvproc.dll 
msmpeg2vdec 12.0.10132.0 2.69 MB (2,823,736 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\msmpeg2vdec.dll 
mfperfhelper 12.0.10240.16384 1.18 MB (1,239,096 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\mfperfhelper.dll 
windows.media 10.0.10240.16401 3.10 MB (3,248,640 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\windows.media.dll 
cryptowinrt 10.0.10240.16384 365.00 KB (373,760 bytes) 7/10/2015 7:00 AM Microsoft Corporation c:\windows\system32\cryptowinrt.dll 
OfficeHub.Background Not Available 247.56 KB (253,504 bytes) 8/20/2015 1:56 AM Not Available c:\program files\windowsapps\microsoft.microsoftofficehub_17.6106.23501.0_x64__8wekyb3d8bbwe\officehub.background.dll 
msinfo32 10.0.10240.16384 366.50 KB (375,296 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\msinfo32.exe 
wbemprox 10.0.10240.16384 44.50 KB (45,568 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wbem\wbemprox.dll 
wbemcomn 10.0.10240.16384 457.50 KB (468,480 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wbemcomn.dll 
wbemsvc 10.0.10240.16384 61.50 KB (62,976 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wbem\wbemsvc.dll 
fastprox 10.0.10240.16384 972.00 KB (995,328 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wbem\fastprox.dll 
tiptsf 10.0.10240.16384 627.50 KB (642,560 bytes) 7/10/2015 7:01 AM Microsoft Corporation c:\program files\common files\microsoft shared\ink\tiptsf.dll 
networkitemfactory 10.0.10240.16384 56.00 KB (57,344 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\networkitemfactory.dll 
dtsh 10.0.10240.16384 37.00 KB (37,888 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\dtsh.dll 
fwpolicyiomgr 10.0.10240.16412 191.00 KB (195,584 bytes) 8/20/2015 4:05 AM Microsoft Corporation c:\windows\system32\fwpolicyiomgr.dll 
fundisc 10.0.10240.16384 150.00 KB (153,600 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\fundisc.dll 
fdproxy 10.0.10240.16384 66.50 KB (68,096 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\fdproxy.dll 
fdwcn 10.0.10240.16384 110.00 KB (112,640 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\fdwcn.dll 
wcnapi 10.0.10240.16384 137.00 KB (140,288 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\wcnapi.dll 
fdwnet 10.0.10240.16384 30.00 KB (30,720 bytes) 7/10/2015 6:59 AM Microsoft Corporation c:\windows\system32\fdwnet.dll 
 
[Services]
 
Display_Name Name State Start_Mode Service_Type Path Error_Control Start_Name Tag_ID 
Adobe Active File Monitor V10 AdobeActiveFileMonitor10.0 Stopped Manual Own Process c:\program files (x86)\adobe\elements 10 organizer\photoshopelementsfileagent.exe Ignore LocalSystem 0 
Adobe Flash Player Update Service AdobeFlashPlayerUpdateSvc Stopped Manual Own Process c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe Normal LocalSystem 0 
AllJoyn Router Service AJRouter Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Application Layer Gateway Service ALG Stopped Manual Own Process c:\windows\system32\alg.exe Normal NT AUTHORITY\LocalService 0 
Application Host Helper Service AppHostSvc Running Auto Share Process c:\windows\system32\svchost.exe -k apphost Normal localSystem 0 
Application Identity AppIDSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT Authority\LocalService 0 
Application Information Appinfo Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Application Management AppMgmt Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
App Readiness AppReadiness Stopped Manual Share Process c:\windows\system32\svchost.exe -k appreadiness Normal LocalSystem 0 
AppX Deployment Service (AppXSVC) AppXSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k wsappx Normal LocalSystem 0 
ASP.NET State Service aspnet_state Stopped Manual Own Process c:\windows\microsoft.net\framework64\v4.0.30319\aspnet_state.exe Normal NT AUTHORITY\NetworkService 0 
Windows Audio Endpoint Builder AudioEndpointBuilder Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Audio Audiosrv Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
ActiveX Installer (AxInstSV) AxInstSV Stopped Manual Share Process c:\windows\system32\svchost.exe -k axinstsvgroup Normal LocalSystem 0 
Bluetooth Driver Management Service BcmBtRSupport Running Auto Own Process c:\windows\system32\btwrsupportservice.exe Normal LocalSystem 0 
BitLocker Drive Encryption Service BDESVC Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Base Filtering Engine BFE Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT AUTHORITY\LocalService 0 
Background Intelligent Transfer Service BITS Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Background Tasks Infrastructure Service BrokerInfrastructure Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem 0 
Computer Browser Browser Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Bluetooth Handsfree Service BthHFSrv Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Bluetooth Support Service bthserv Running Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
CDPSvc CDPSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Certificate Propagation CertPropSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Client License Service (ClipSVC) ClipSVC Running Manual Share Process c:\windows\system32\svchost.exe -k wsappx Normal LocalSystem 0 
COM+ System Application COMSysApp Stopped Manual Own Process c:\windows\system32\dllhost.exe /processid:{02d4b3f1-fd88-11d1-960d-00805fc79235} Normal LocalSystem 0 
CoreMessaging CoreMessagingRegistrar Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT AUTHORITY\LocalService 0 
Cryptographic Services CryptSvc Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT Authority\NetworkService 0 
Offline Files CscService Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
DCOM Server Process Launcher DcomLaunch Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem 0 
DataCollectionPublishingService DcpSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Ignore LocalSystem 0 
Optimize drives defragsvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k defragsvc Normal localSystem 0 
Device Association Service DeviceAssociationService Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Device Install Service DeviceInstall Stopped Manual Share Process c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem 0 
DevQuery Background Discovery Broker DevQueryBroker Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
DHCP Client Dhcp Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT Authority\LocalService 0 
Microsoft ® Diagnostics Hub Standard Collector Service diagnosticshub.standardcollector.service Stopped Manual Own Process c:\windows\system32\diagsvcs\diagnosticshub.standardcollector.service.exe Normal LocalSystem 0 
Diagnostics Tracking Service DiagTrack Running Auto Own Process c:\windows\system32\svchost.exe -k utcsvc Normal LocalSystem 0 
Device Management Enrollment Service DmEnrollmentSvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
dmwappushsvc dmwappushservice Stopped Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
DNS Client Dnscache Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
Delivery Optimization DoSvc Stopped Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Wired AutoConfig dot3svc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal localSystem 0 
Diagnostic Policy Service DPS Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT AUTHORITY\LocalService 0 
Device Setup Manager DsmSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Data Sharing Service DsSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Ignore LocalSystem 0 
Extensible Authentication Protocol Eaphost Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Encrypting File System (EFS) EFS Stopped Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 
embeddedmode embeddedmode Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Enterprise App Management Service EntAppSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k appmodel Normal LocalSystem 0 
Windows Event Log EventLog Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
COM+ Event System EventSystem Running Auto Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Fax Fax Stopped Manual Own Process c:\windows\system32\fxssvc.exe Normal NT AUTHORITY\NetworkService 0 
Function Discovery Provider Host fdPHost Running Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Function Discovery Resource Publication FDResPub Running Auto Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
File History Service fhsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Font Cache Service FontCache Running Auto Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Windows Presentation Foundation Font Cache 3.0.0.0 FontCache3.0.0.0 Stopped Manual Own Process c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe Normal NT Authority\LocalService 0 
GamesAppService GamesAppService Stopped Disabled Own Process "c:\program files (x86)\wildtangent games\app\gamesappservice.exe" Normal LocalSystem 0 
Group Policy Client gpsvc Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Human Interface Device Service hidserv Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
HomeGroup Provider HomeGroupProvider Running Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
hpqcxs08 hpqcxs08 Running Manual Share Process c:\windows\system32\svchost.exe -k hpdevmgmt Normal LocalSystem 0 
HP CUE DeviceDiscovery Service hpqddsvc Running Auto Share Process c:\windows\system32\svchost.exe -k hpdevmgmt Normal LocalSystem 0 
HP Software Framework Service hpqwmiex Stopped Manual Own Process "c:\program files (x86)\hewlett-packard\shared\hpqwmiex.exe" Normal LocalSystem 0 
HP Network Devices Support HPSLPSVC Running Auto Share Process c:\windows\system32\svchost.exe -k hpservice Normal LocalSystem 0 
HP Support Solutions Framework Service HPSupportSolutionsFrameworkService Running Auto Own Process "c:\program files (x86)\hewlett-packard\hp support solutions\hpsupportsolutionsframeworkservice.exe" Normal LocalSystem 0 
Windows Mobile Hotspot Service icssvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT Authority\LocalService 0 
Internet Explorer ETW Collector Service IEEtwCollectorService Stopped Manual Own Process c:\windows\system32\ieetwcollector.exe /v Normal LocalSystem 0 
IKE and AuthIP IPsec Keying Modules IKEEXT Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
IP Helper iphlpsvc Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
CNG Key Isolation KeyIso Running Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 
KtmRm for Distributed Transaction Coordinator KtmRm Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkserviceandnoimpersonation Normal NT AUTHORITY\NetworkService 0 
Server LanmanServer Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Workstation LanmanWorkstation Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
Geolocation Service lfsvc Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Windows License Manager Service LicenseManager Running Manual Share Process c:\windows\system32\svchost.exe -k localservice Ignore NT Authority\LocalService 0 
Link-Layer Topology Discovery Mapper lltdsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
TCP/IP NetBIOS Helper lmhosts Running Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
Intel® Management and Security Application Local Management Service LMS Running Auto Own Process c:\program files (x86)\intel\intel® management engine components\lms\lms.exe Normal LocalSystem 0 
LSM LSM Running Boot Kernel Driver Not Available Unknown Not Available Not Available 
Downloaded Maps Manager MapsBroker Stopped Auto Own Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
MBAMScheduler MBAMScheduler Running Auto Own Process "c:\program files (x86)\malwarebytes anti-malware\mbamscheduler.exe" Normal LocalSystem 0 
MBAMService MBAMService Running Auto Own Process "c:\program files (x86)\malwarebytes anti-malware\mbamservice.exe" Normal LocalSystem 0 
Mozilla Maintenance Service MozillaMaintenance Stopped Manual Own Process "c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe" Normal LocalSystem 0 
Windows Firewall MpsSvc Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT Authority\LocalService 0 
Distributed Transaction Coordinator MSDTC Stopped Manual Own Process c:\windows\system32\msdtc.exe Normal NT AUTHORITY\NetworkService 0 
Microsoft iSCSI Initiator Service MSiSCSI Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Windows Installer msiserver Stopped Manual Own Process c:\windows\system32\msiexec.exe /v Normal LocalSystem 0 
Message Queuing MSMQ Running Auto Own Process c:\windows\system32\mqsvc.exe Normal NT Authority\NetworkService 0 
Network Connectivity Assistant NcaSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Network Connection Broker NcbService Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Network Connected Devices Auto-Setup NcdAutoSetup Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT AUTHORITY\LocalService 0 
Net Driver HPZ12 Net Driver HPZ12 Running Auto Own Process c:\windows\system32\svchost.exe -k hpz12 Normal NT AUTHORITY\LocalService 0 
Netlogon Netlogon Stopped Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 
Network Connections Netman Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Net.Msmq Listener Adapter NetMsmqActivator Running Auto Share Process "c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe" -netmsmqactivator Normal NT AUTHORITY\NetworkService 0 
Net.Pipe Listener Adapter NetPipeActivator Running Auto Share Process c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe Normal NT AUTHORITY\LocalService 0 
Network List Service netprofm Running Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
NetSetupSvc NetSetupSvc Stopped Boot Kernel Driver Not Available Unknown Not Available Not Available 
Net.Tcp Listener Adapter NetTcpActivator Stopped Auto Share Process c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe Normal NT AUTHORITY\LocalService 0 
Net.Tcp Port Sharing Service NetTcpPortSharing Stopped Disabled Share Process c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe Normal NT AUTHORITY\LocalService 0 
Microsoft Passport Container NgcCtnrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 


#12 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 01:48 AM

This is the Summary pasted in thirds because it would fit.  I did not see what to attach the zipped file I made.

Thank you for all you help.   I'll check back tomorrow periodically.

 

AUTHORITY\LocalService 0 
Microsoft Passport Container NgcCtnrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
Microsoft Passport NgcSvc Stopped Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 
Network Location Awareness NlaSvc Running Auto Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
Network Store Interface Service nsi Running Auto Share Process c:\windows\system32\svchost.exe -k localservice Normal NT Authority\LocalService 0 
NVIDIA Display Driver Service nvsvc Running Auto Own Process "c:\windows\system32\nvvsvc.exe" Ignore LocalSystem 0 
Peer Networking Identity Manager p2pimsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 
Peer Networking Grouping p2psvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 
Program Compatibility Assistant Service PcaSvc Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
PCPitstop Realtime PCPitstop Realtime Stopped Auto Own Process c:\program files (x86)\pcpitstop\super shield\pcpitstoprtservice.exe Normal LocalSystem 0 
PCPitstop Scheduling PCPitstop Scheduling Running Auto Own Process c:\program files (x86)\pcpitstop\pcpitstopscheduleservice.exe Normal LocalSystem 0 
PDF Document Manager pdfcDispatcher Running Auto Own Process c:\program files (x86)\pdf complete\pdfsvc.exe /startedbyscm:66b66708-40e2be4d-pdfcservice Normal LocalSystem 0 
BranchCache PeerDistSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k peerdist Normal NT AUTHORITY\NetworkService 0 
Performance Counter DLL Host PerfHost Stopped Manual Own Process c:\windows\syswow64\perfhost.exe Normal NT AUTHORITY\LocalService 0 
Performance Logs & Alerts pla Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT AUTHORITY\LocalService 0 
Plug and Play PlugPlay Running Manual Share Process c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem 0 
Pml Driver HPZ12 Pml Driver HPZ12 Running Auto Own Process c:\windows\system32\svchost.exe -k hpz12 Normal NT AUTHORITY\LocalService 0 
PNRP Machine Name Publication Service PNRPAutoReg Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 
Peer Name Resolution Protocol PNRPsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicepeernet Normal NT AUTHORITY\LocalService 0 
IPsec Policy Agent PolicyAgent Running Manual Share Process c:\windows\system32\svchost.exe -k networkservicenetworkrestricted Normal NT Authority\NetworkService 0 
Power Power Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem 0 
Printer Extensions and Notifications PrintNotify Stopped Manual Share Process c:\windows\system32\svchost.exe -k print Normal LocalSystem 0 
User Profile Service ProfSvc Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Quality Windows Audio Video Experience QWAVE Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Remote Access Auto Connection Manager RasAuto Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Remote Access Connection Manager RasMan Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Razer Game Scanner Razer Game Scanner Service Stopped Manual Own Process c:\program files (x86)\razer\razer services\gss\gamescannerservice.exe Normal LocalSystem 0 
Routing and Remote Access RemoteAccess Stopped Disabled Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Remote Registry RemoteRegistry Stopped Disabled Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Retail Demo Service RetailDemo Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
RPC Endpoint Mapper RpcEptMapper Running Auto Share Process c:\windows\system32\svchost.exe -k rpcss Normal NT AUTHORITY\NetworkService 0 
Remote Procedure Call (RPC) Locator RpcLocator Stopped Manual Own Process c:\windows\system32\locator.exe Normal NT AUTHORITY\NetworkService 0 
Remote Procedure Call (RPC) RpcSs Running Auto Share Process c:\windows\system32\svchost.exe -k rpcss Normal NT AUTHORITY\NetworkService 0 
Security Accounts Manager SamSs Running Auto Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 
Smart Card SCardSvr Stopped Disabled Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Smart Card Device Enumeration Service ScDeviceEnum Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Task Scheduler Schedule Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Smart Card Removal Policy SCPolicySvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Windows Backup SDRSVC Running Manual Own Process c:\windows\system32\svchost.exe -k sdrsvc Normal localSystem 0 
Secondary Logon seclogon Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
System Event Notification Service SENS Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Sensor Data Service SensorDataService Stopped Manual Own Process c:\windows\system32\sensordataservice.exe Normal LocalSystem 0 
Sensor Service SensorService Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Sensor Monitoring Service SensrSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Remote Desktop Configuration SessionEnv Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Internet Connection Sharing (ICS) SharedAccess Stopped Disabled Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Shell Hardware Detection ShellHWDetection Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Ignore LocalSystem 0 
Microsoft Storage Spaces SMP smphost Stopped Manual Own Process c:\windows\system32\svchost.exe -k smphost Normal NT AUTHORITY\NetworkService 0 
Microsoft Windows SMS Router Service. SmsRouter Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal localSystem 0 
SNMP Trap SNMPTRAP Stopped Manual Own Process c:\windows\system32\snmptrap.exe Normal NT AUTHORITY\LocalService 0 
Print Spooler Spooler Running Auto Own Process c:\windows\system32\spoolsv.exe Normal LocalSystem 0 
Software Protection sppsvc Stopped Auto Own Process c:\windows\system32\sppsvc.exe Normal NT AUTHORITY\NetworkService 0 
SSDP Discovery SSDPSRV Running Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Secure Socket Tunneling Protocol Service SstpSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT Authority\LocalService 0 
Audio Service STacSV Running Auto Own Process c:\program files\idt\wdm\stacsv64.exe Normal LocalSystem 0 
State Repository Service StateRepository Running Manual Share Process c:\windows\system32\svchost.exe -k appmodel Normal LocalSystem 0 
Windows Image Acquisition (WIA) stisvc Running Auto Own Process c:\windows\system32\svchost.exe -k imgsvc Normal NT Authority\LocalService 0 
Storage Service StorSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Spot Verifier svsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Microsoft Software Shadow Copy Provider swprv Stopped Manual Own Process c:\windows\system32\svchost.exe -k swprv Normal LocalSystem 0 
Superfetch SysMain Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Ignore LocalSystem 0 
System Events Broker SystemEventsBroker Running Auto Share Process c:\windows\system32\svchost.exe -k dcomlaunch Normal LocalSystem 0 
Touch Keyboard and Handwriting Panel Service TabletInputService Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Telephony TapiSrv Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
Remote Desktop Services TermService Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT Authority\NetworkService 0 
Themes Themes Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Tile Data model server tiledatamodelsvc Running Auto Share Process c:\windows\system32\svchost.exe -k appmodel Normal LocalSystem 0 
Time Broker TimeBroker Running Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Distributed Link Tracking Client TrkWks Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Modules Installer TrustedInstaller Stopped Manual Own Process c:\windows\servicing\trustedinstaller.exe Normal localSystem 0 
Interactive Services Detection UI0Detect Stopped Manual Own Process c:\windows\system32\ui0detect.exe Normal LocalSystem 0 
Remote Desktop Services UserMode Port Redirector UmRdpService Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal localSystem 0 
UPnP Device Host upnphost Stopped Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
User Manager UserManager Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Update Orchestrator Service UsoSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Credential Manager VaultSvc Running Manual Share Process c:\windows\system32\lsass.exe Normal LocalSystem 0 
Virtual Disk vds Stopped Manual Own Process c:\windows\system32\vds.exe Normal LocalSystem 0 
Hyper-V Guest Service Interface vmicguestinterface Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Hyper-V Heartbeat Service vmicheartbeat Stopped Manual Share Process c:\windows\system32\svchost.exe -k icservice Normal LocalSystem 0 
Hyper-V Data Exchange Service vmickvpexchange Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Hyper-V Remote Desktop Virtualization Service vmicrdv Stopped Manual Share Process c:\windows\system32\svchost.exe -k icservice Normal LocalSystem 0 
Hyper-V Guest Shutdown Service vmicshutdown Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Hyper-V Time Synchronization Service vmictimesync Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
Hyper-V VM Session Service vmicvmsession Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Hyper-V Volume Shadow Copy Requestor vmicvss Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Volume Shadow Copy VSS Stopped Manual Own Process c:\windows\system32\vssvc.exe Normal LocalSystem 0 
Windows Time W32Time Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
W3C Logging Service w3logsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k apphost Normal localSystem 0 
World Wide Web Publishing Service W3SVC Running Auto Share Process c:\windows\system32\svchost.exe -k iissvcs Normal localSystem 0 
WalletService WalletService Stopped Manual Share Process c:\windows\system32\svchost.exe -k appmodel Ignore LocalSystem 0 
Windows Process Activation Service WAS Running Manual Share Process c:\windows\system32\svchost.exe -k iissvcs Normal localSystem 0 
Block Level Backup Engine Service wbengine Stopped Manual Own Process "c:\windows\system32\wbengine.exe" Normal localSystem 0 
Windows Biometric Service WbioSrvc Stopped Auto Share Process c:\windows\system32\svchost.exe -k wbiosvcgroup Normal LocalSystem 0 
Windows Connection Manager Wcmsvc Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT Authority\LocalService 0 
Windows Connect Now - Config Registrar wcncsvc Running Manual Share Process c:\windows\system32\svchost.exe -k localserviceandnoimpersonation Normal NT AUTHORITY\LocalService 0 
Windows Color System WcsPlugInService Stopped Manual Share Process c:\windows\system32\svchost.exe -k wcssvc Normal NT AUTHORITY\LocalService 0 
Diagnostic Service Host WdiServiceHost Running Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Diagnostic System Host WdiSystemHost Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Defender Network Inspection Service WdNisSvc Stopped Manual Own Process "c:\program files\windows defender\nissrv.exe" Normal NT AUTHORITY\LocalService 0 
WebClient WebClient Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Windows Event Collector Wecsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
Windows Encryption Provider Host Service WEPHOSTSVC Stopped Manual Share Process c:\windows\system32\svchost.exe -k wephostsvcgroup Normal NT AUTHORITY\LocalService 0 
Problem Reports and Solutions Control Panel Support wercplsupport Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal localSystem 0 
Windows Error Reporting Service WerSvc Stopped Manual Own Process c:\windows\system32\svchost.exe -k wersvcgroup Ignore localSystem 0 
Still Image Acquisition Events WiaRpc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Defender Service WinDefend Stopped Manual Own Process "c:\program files\windows defender\msmpeng.exe" Normal LocalSystem 0 
WinHTTP Web Proxy Auto-Discovery Service WinHttpAutoProxySvc Running Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Windows Management Instrumentation Winmgmt Running Auto Share Process c:\windows\system32\svchost.exe -k netsvcs Ignore localSystem 0 
Windows Remote Management (WS-Management) WinRM Stopped Manual Share Process c:\windows\system32\svchost.exe -k networkservice Normal NT AUTHORITY\NetworkService 0 
WLAN AutoConfig WlanSvc Running Auto Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Live Mesh remote connections service wlcrasvc Stopped Disabled Own Process "c:\program files\windows live\mesh\wlcrasvc.exe" Normal LocalSystem 0 
Microsoft Account Sign-in Assistant wlidsvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
WMI Performance Adapter wmiApSrv Stopped Manual Own Process c:\windows\system32\wbem\wmiapsrv.exe Normal localSystem 0 
Windows Media Player Network Sharing Service WMPNetworkSvc Stopped Manual Own Process "c:\program files\windows media player\wmpnetwk.exe" Normal NT AUTHORITY\NetworkService 0 
Work Folders workfolderssvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservice Normal NT AUTHORITY\LocalService 0 
Portable Device Enumerator Service WPDBusEnum Stopped Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
Windows Push Notifications Service WpnService Stopped Manual Share Process c:\windows\system32\svchost.exe -k wswpnservice Normal LocalSystem 0 
Security Center wscsvc Running Auto Share Process c:\windows\system32\svchost.exe -k localservicenetworkrestricted Normal NT AUTHORITY\LocalService 0 
Windows Search WSearch Running Auto Own Process c:\windows\system32\searchindexer.exe /embedding Normal LocalSystem 0 
Windows Store Service (WSService) WSService Stopped Manual Share Process c:\windows\system32\svchost.exe -k wsappx Normal LocalSystem 0 
Windows Update wuauserv Running Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Windows Driver Foundation - User-mode Driver Framework wudfsvc Running Manual Share Process c:\windows\system32\svchost.exe -k localsystemnetworkrestricted Normal LocalSystem 0 
WWAN AutoConfig WwanSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k localservicenonetwork Normal NT Authority\LocalService 0 
Xbox Live Auth Manager XblAuthManager Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Xbox Live Game Save XblGameSave Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 
Xbox Live Networking Service XboxNetApiSvc Stopped Manual Share Process c:\windows\system32\svchost.exe -k netsvcs Normal LocalSystem 0 

 
[Program Groups]
 
Group_Name Name User_Name 
Start Menu Default:Start Menu Default 
Start Menu\Programs Default:Start Menu\Programs Default 
Start Menu\Programs\Accessibility Default:Start Menu\Programs\Accessibility Default 
Start Menu\Programs\Accessories Default:Start Menu\Programs\Accessories Default 
Start Menu\Programs\Accessories\Accessibility Default:Start Menu\Programs\Accessories\Accessibility Default 
Start Menu\Programs\Accessories\System Tools Default:Start Menu\Programs\Accessories\System Tools Default 
Start Menu\Programs\Maintenance Default:Start Menu\Programs\Maintenance Default 
Start Menu\Programs\System Tools Default:Start Menu\Programs\System Tools Default 
Start Menu\Programs\Windows PowerShell Default:Start Menu\Programs\Windows PowerShell Default 
Start Menu Public:Start Menu Public 
Start Menu\Programs Public:Start Menu\Programs Public 
Start Menu\Programs\Accessibility Public:Start Menu\Programs\Accessibility Public 
Start Menu\Programs\Accessories Public:Start Menu\Programs\Accessories Public 
Start Menu\Programs\Accessories\Accessibility Public:Start Menu\Programs\Accessories\Accessibility Public 
Start Menu\Programs\Accessories\System Tools Public:Start Menu\Programs\Accessories\System Tools Public 
Start Menu\Programs\Accessories\Tablet PC Public:Start Menu\Programs\Accessories\Tablet PC Public 
Start Menu\Programs\Accessories\Windows PowerShell Public:Start Menu\Programs\Accessories\Windows PowerShell Public 
Start Menu\Programs\Administrative Tools Public:Start Menu\Programs\Administrative Tools Public 
Start Menu\Programs\Battle.net Public:Start Menu\Programs\Battle.net Public 
Start Menu\Programs\Communication and Chat Public:Start Menu\Programs\Communication and Chat Public 
Start Menu\Programs\eReaders and Document Viewers Public:Start Menu\Programs\eReaders and Document Viewers Public 
Start Menu\Programs\Games Public:Start Menu\Programs\Games Public 
Start Menu\Programs\HP Public:Start Menu\Programs\HP Public 
Start Menu\Programs\HP\HP Photo Creations Public:Start Menu\Programs\HP\HP Photo Creations Public 
Start Menu\Programs\HP\Photosmart All-In-One 2600 series Public:Start Menu\Programs\HP\Photosmart All-In-One 2600 series Public 
Start Menu\Programs\HP Help and Support Public:Start Menu\Programs\HP Help and Support Public 
Start Menu\Programs\HP Help and Support\HP User Manuals Public:Start Menu\Programs\HP Help and Support\HP User Manuals Public 
Start Menu\Programs\HP TouchSmart Public:Start Menu\Programs\HP TouchSmart Public 
Start Menu\Programs\HP TouchSmart\More HP TouchSmart Apps Public:Start Menu\Programs\HP TouchSmart\More HP TouchSmart Apps Public 
Start Menu\Programs\Maintenance Public:Start Menu\Programs\Maintenance Public 
Start Menu\Programs\Malwarebytes Anti-Malware Public:Start Menu\Programs\Malwarebytes Anti-Malware Public 
Start Menu\Programs\Malwarebytes Anti-Malware\Tools Public:Start Menu\Programs\Malwarebytes Anti-Malware\Tools Public 
Start Menu\Programs\Microsoft Mathematics Public:Start Menu\Programs\Microsoft Mathematics Public 
Start Menu\Programs\Microsoft Silverlight Public:Start Menu\Programs\Microsoft Silverlight Public 
Start Menu\Programs\Music, Photos and Videos Public:Start Menu\Programs\Music, Photos and Videos Public 
Start Menu\Programs\PC Pitstop Public:Start Menu\Programs\PC Pitstop Public 
Start Menu\Programs\PC Pitstop\PC Matic Public:Start Menu\Programs\PC Pitstop\PC Matic Public 
Start Menu\Programs\Productivity and Tools Public:Start Menu\Programs\Productivity and Tools Public 
Start Menu\Programs\Productivity and Tools\HP LinkUp Public:Start Menu\Programs\Productivity and Tools\HP LinkUp Public 
Start Menu\Programs\Razer Public:Start Menu\Programs\Razer Public 
Start Menu\Programs\Razer\Razer Synapse Public:Start Menu\Programs\Razer\Razer Synapse Public 
Start Menu\Programs\Security and Protection Public:Start Menu\Programs\Security and Protection Public 
Start Menu\Programs\Security and Protection\Recovery Manager Public:Start Menu\Programs\Security and Protection\Recovery Manager Public 
Start Menu\Programs\Shopping and Services Public:Start Menu\Programs\Shopping and Services Public 
Start Menu\Programs\Skype Public:Start Menu\Programs\Skype Public 
Start Menu\Programs\SmartSound Public:Start Menu\Programs\SmartSound Public 
Start Menu\Programs\StartUp Public:Start Menu\Programs\StartUp Public 
Start Menu\Programs\System Tools Public:Start Menu\Programs\System Tools Public 
Start Menu\Programs\Tablet PC Public:Start Menu\Programs\Tablet PC Public 
Start Menu\Programs\Windows Live Public:Start Menu\Programs\Windows Live Public 
Start Menu\Programs\World of Warcraft Public:Start Menu\Programs\World of Warcraft Public 
Start Menu Pat-HP\Dogbone:Start Menu Pat-HP\Dogbone 
Start Menu\Programs Pat-HP\Dogbone:Start Menu\Programs Pat-HP\Dogbone 
Start Menu\Programs\Accessibility Pat-HP\Dogbone:Start Menu\Programs\Accessibility Pat-HP\Dogbone 
Start Menu\Programs\Accessories Pat-HP\Dogbone:Start Menu\Programs\Accessories Pat-HP\Dogbone 
Start Menu\Programs\Accessories\Accessibility Pat-HP\Dogbone:Start Menu\Programs\Accessories\Accessibility Pat-HP\Dogbone 
Start Menu\Programs\Accessories\System Tools Pat-HP\Dogbone:Start Menu\Programs\Accessories\System Tools Pat-HP\Dogbone 
Start Menu\Programs\Administrative Tools Pat-HP\Dogbone:Start Menu\Programs\Administrative Tools Pat-HP\Dogbone 
Start Menu\Programs\Maintenance Pat-HP\Dogbone:Start Menu\Programs\Maintenance Pat-HP\Dogbone 
Start Menu\Programs\Startup Pat-HP\Dogbone:Start Menu\Programs\Startup Pat-HP\Dogbone 
Start Menu\Programs\System Tools Pat-HP\Dogbone:Start Menu\Programs\System Tools Pat-HP\Dogbone 
Start Menu\Programs\Windows PowerShell Pat-HP\Dogbone:Start Menu\Programs\Windows PowerShell Pat-HP\Dogbone 
 
[Startup Programs]
 
Program Command User_Name Location 
OneDrive "c:\users\dogbone\appdata\local\microsoft\onedrive\onedrive.exe" /background Pat-HP\Dogbone Startup 
HP Digital Imaging Monitor c:\progra~2\hp\digita~1\bin\hpqtra08.exe Public Common Startup 
HPSYSDRV c:\program files (x86)\hewlett-packard\hp odometer\hpsysdrv.exe Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run 
SysTrayApp c:\program files\idt\wdm\sttray64.exe Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run 
BeatsOSDApp c:\program files\idt\wdm\beats64.exe Public HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run 
 
[OLE Registration]
 
Object Local_Server 
WordPad Document "%programfiles%\windows nt\accessories\wordpad.exe" 
Paintbrush Picture %systemroot%\system32\mspaint.exe 
Drawing Not Available 
Drawing Not Available 
Package Not Available 
Microsoft PenInputPanel Control Not Available 
 
[Windows Error Reporting]
 
Time Type Details 
8/22/2015 2:34 AM Application Error Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1&#x000d;&#x000a;Faulting module name: MSOIMM.dll, version: 16.0.6014.1000, time stamp: 0x55a578c7&#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x000000000041cb3c&#x000d;&#x000a;Faulting process id: 0xa3c&#x000d;&#x000a;Faulting application start time: 0x01d0dc812c7a374a&#x000d;&#x000a;Faulting application path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exe&#x000d;&#x000a;Faulting module path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\MSOIMM.dll&#x000d;&#x000a;Report Id: dd164a54-01b0-4b03-8849-10f7fac12b62&#x000d;&#x000a;Faulting package full name: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;Faulting package-relative application ID: Microsoft.MicrosoftOfficeHub 
8/21/2015 7:02 PM Application Error Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1&#x000d;&#x000a;Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000&#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x0000000000000000&#x000d;&#x000a;Faulting process id: 0x1f6c&#x000d;&#x000a;Faulting application start time: 0x01d0dc43f93d9d8f&#x000d;&#x000a;Faulting application path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exe&#x000d;&#x000a;Faulting module path: unknown&#x000d;&#x000a;Report Id: ea88955c-3bfa-4613-902a-397f36b9bdf5&#x000d;&#x000a;Faulting package full name: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;Faulting package-relative application ID: Microsoft.MicrosoftOfficeHub 
8/21/2015 5:59 PM Application Error Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1&#x000d;&#x000a;Faulting module name: Mso30Imm.dll, version: 16.0.6014.1000, time stamp: 0x55a5783f&#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x0000000000012b70&#x000d;&#x000a;Faulting process id: 0x2018&#x000d;&#x000a;Faulting application start time: 0x01d0dc3b26cadd4c&#x000d;&#x000a;Faulting application path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exe&#x000d;&#x000a;Faulting module path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\Mso30Imm.dll&#x000d;&#x000a;Report Id: 0978890c-73df-48c4-8d6c-4d6841c45515&#x000d;&#x000a;Faulting package full name: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;Faulting package-relative application ID: Microsoft.MicrosoftOfficeHub 
8/21/2015 4:18 PM Application Error Faulting application name: OHub.exe, version: 16.0.6106.2350, time stamp: 0x55c40ea1&#x000d;&#x000a;Faulting module name: Mso30Imm.dll, version: 16.0.6014.1000, time stamp: 0x55a5783f&#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x0000000000011a23&#x000d;&#x000a;Faulting process id: 0x43a0&#x000d;&#x000a;Faulting application start time: 0x01d0dc2d11ab4a69&#x000d;&#x000a;Faulting application path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exe&#x000d;&#x000a;Faulting module path: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\Mso30Imm.dll&#x000d;&#x000a;Report Id: 6fe44fd5-18d6-4875-9ac6-804ca9c3e8e2&#x000d;&#x000a;Faulting package full name: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;Faulting package-relative application ID: Microsoft.MicrosoftOfficeHub 
8/20/2015 4:25 AM Application Error Faulting application name: PortChanger.exe, version: 0.0.0.0, time stamp: 0x50123cc9&#x000d;&#x000a;Faulting module name: PortChanger.exe, version: 0.0.0.0, time stamp: 0x50123cc9&#x000d;&#x000a;Exception code: 0xc0000005&#x000d;&#x000a;Fault offset: 0x0000000000004be7&#x000d;&#x000a;Faulting process id: 0x8f4&#x000d;&#x000a;Faulting application start time: 0x01d0db002f0e1d45&#x000d;&#x000a;Faulting application path: C:\WINDOWS\system32\PortChanger.exe&#x000d;&#x000a;Faulting module path: C:\WINDOWS\system32\PortChanger.exe&#x000d;&#x000a;Report Id: cfbe5f7a-a822-40c1-8ddb-9451d419d54b&#x000d;&#x000a;Faulting package full name: &#x000d;&#x000a;Faulting package-relative application ID: 
8/22/2015 2:34 AM Windows Error Reporting Fault bucket 133177131548, type 5&#x000d;&#x000a;Event Name: MoAppCrash&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;P2: praid:Microsoft.MicrosoftOfficeHub&#x000d;&#x000a;P3: 16.0.6106.2350&#x000d;&#x000a;P4: 55c40ea1&#x000d;&#x000a;P5: MSOIMM.dll&#x000d;&#x000a;P6: 16.0.6014.1000&#x000d;&#x000a;P7: 55a578c7&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 000000000041cb3c&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\images\StartMenu_Win10.mp4&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Packages\Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe\TempState\{5206357D-F5F3-4F10-AF08-E25A58182492} - OProcSessId.dat&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER8B8F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Microsoft.Micros_33a9cdf0a9c7f2ab17e8fccdf9b41b04afb78df_8558729b_22e299b8&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: dd164a54-01b0-4b03-8849-10f7fac12b62&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: f4508194ea2ac975945d83c0247e6809 
8/22/2015 1:35 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: OffDiag12&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 1cab30be-796e-4330-84c6-3eb9285209266e179eb7-fefb-4506-a5af-dbf062e63d8e&#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\24534859.od&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\CrashHangs.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\DiskErrors.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\od.cvr&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\OfficeDiagnostics.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\OfficeSessions.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\SetupDiagnostics.xml&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\smart.xml&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\systemaudit.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\SystemRestore.wql&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\WindowsInstaller.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER6AE4.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_1cab30be-796e-43_2126473a8e2f8823e6def54be2e93fac1bbf3_00000000_368e7592&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1b9d5f9f-486e-11e5-9bc6-2cd05a04df29&#x000d;&#x000a;Report Status: 8192&#x000d;&#x000a;Hashed bucket: 
8/22/2015 1:35 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: OffDiag12&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 1cab30be-796e-4330-84c6-3eb9285209266e179eb7-fefb-4506-a5af-dbf062e63d8e&#x000d;&#x000a;P2: &#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\24534859.od&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\CrashHangs.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\DiskErrors.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\od.cvr&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\OfficeDiagnostics.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\OfficeSessions.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\SetupDiagnostics.xml&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\smart.xml&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\systemaudit.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\SystemRestore.wql&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\Office\OffDiag\WindowsInstaller.log&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER6AE4.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_1cab30be-796e-43_2126473a8e2f8823e6def54be2e93fac1bbf3_00000000_cab_31fa6af3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 1b9d5f9f-486e-11e5-9bc6-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/21/2015 11:32 PM Windows Error Reporting Fault bucket 133180740661, type 5&#x000d;&#x000a;Event Name: MoAppHang&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe&#x000d;&#x000a;P2: praid:MicrosoftEdge&#x000d;&#x000a;P3: 11.0.10240.16431&#x000d;&#x000a;P4: 55c9bd9e&#x000d;&#x000a;P5: 7620&#x000d;&#x000a;P6: 2097152&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERD878.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_Microsoft.Micros_63f8d46c953074ebeb7c42e12cae2c347247e8a0_fae04a53_2c6de5d6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: ee1c28d9-485c-11e5-9bc6-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: e178ca880fdcf18d70da5dfd04347767 
8/21/2015 7:03 PM Windows Error Reporting Fault bucket 128871121159, type 5&#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_64&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: MicrosoftEdgeCP.exe&#x000d;&#x000a;P2: 11.0.10240.16384&#x000d;&#x000a;P3: 10.0.10240.2.0.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\RDRCE67.tmp\empty.txt&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERCE88.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 3c4e31ba-4837-11e5-9bc6-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 207617e35e580a084a3e2e530d223e8f 
8/21/2015 7:02 PM Windows Error Reporting Fault bucket 133177223970, type 5&#x000d;&#x000a;Event Name: MoBEX&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;P2: praid:Microsoft.MicrosoftOfficeHub&#x000d;&#x000a;P3: 16.0.6106.2350&#x000d;&#x000a;P4: 55c40ea1&#x000d;&#x000a;P5: StackHash_ad1e&#x000d;&#x000a;P6: 0.0.0.0&#x000d;&#x000a;P7: 00000000&#x000d;&#x000a;P8: PCH_5A_FROM_ntdll+0x0000000000093AAA&#x000d;&#x000a;P9: c0000005&#x000d;&#x000a;P10: 0000000000000008&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERB189.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Microsoft.Micros_a6d174f37f635fe4c52af141976bfa85b9d4e0de_8558729b_12babf54&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: ea88955c-3bfa-4613-902a-397f36b9bdf5&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 9c04345783ec52b6bc04905ca914f2cb 
8/21/2015 5:59 PM Windows Error Reporting Fault bucket 133177206757, type 5&#x000d;&#x000a;Event Name: MoAppCrash&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;P2: praid:Microsoft.MicrosoftOfficeHub&#x000d;&#x000a;P3: 16.0.6106.2350&#x000d;&#x000a;P4: 55c40ea1&#x000d;&#x000a;P5: Mso30Imm.dll&#x000d;&#x000a;P6: 16.0.6014.1000&#x000d;&#x000a;P7: 55a5783f&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 0000000000012b70&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER8CAB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Microsoft.Micros_e7ccbdefb5786e1f8a7a2a953d67ca39740e5c6_8558729b_213e98c1&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0978890c-73df-48c4-8d6c-4d6841c45515&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 09949b071450235ccf8deea0e4f76e85 
8/21/2015 4:19 PM Windows Error Reporting Fault bucket 133177208628, type 5&#x000d;&#x000a;Event Name: MoAppCrash&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe&#x000d;&#x000a;P2: praid:Microsoft.MicrosoftOfficeHub&#x000d;&#x000a;P3: 16.0.6106.2350&#x000d;&#x000a;P4: 55c40ea1&#x000d;&#x000a;P5: Mso30Imm.dll&#x000d;&#x000a;P6: 16.0.6014.1000&#x000d;&#x000a;P7: 55a5783f&#x000d;&#x000a;P8: c0000005&#x000d;&#x000a;P9: 0000000000011a23&#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER1ED4.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_Microsoft.Micros_b42c5efde166cb6aa5fe40998be472731ba98_8558729b_4a64346f&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 6fe44fd5-18d6-4875-9ac6-804ca9c3e8e2&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: eff7bcd06ccdfb02d53bb0efa3bb9dca 
8/21/2015 4:01 PM Windows Error Reporting Fault bucket 124638279058, type 5&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16397&#x000d;&#x000a;P2: 80240438&#x000d;&#x000a;P3: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: UpdateOrchestrator&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\WER1BB5.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_10.0.10240.16397_772dfc46f3dc7feefe3dfa613cd4552d17ec3b_00000000_1d2c43ce&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: e086b1c6-481d-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: c8d0ab04bc59377fae189bdc3ced4be6 
8/21/2015 4:01 PM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16397&#x000d;&#x000a;P2: 80240438&#x000d;&#x000a;P3: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: UpdateOrchestrator&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\WER1BB5.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_10.0.10240.16397_772dfc46f3dc7feefe3dfa613cd4552d17ec3b_00000000_cab_23d81bc4&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: e086b1c6-481d-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/21/2015 4:01 PM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsUpdateFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16397&#x000d;&#x000a;P2: 80240438&#x000d;&#x000a;P3: 00000000-0000-0000-0000-000000000000&#x000d;&#x000a;P4: Scan&#x000d;&#x000a;P5: 0&#x000d;&#x000a;P6: 0&#x000d;&#x000a;P7: 0&#x000d;&#x000a;P8: UpdateOrchestrator&#x000d;&#x000a;P9: {9482F4B4-E343-43B6-B170-9A65BC822C77}&#x000d;&#x000a;P10: 0&#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: e086b1c6-481d-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 262144&#x000d;&#x000a;Hashed bucket: 
8/21/2015 2:52 AM Windows Error Reporting Fault bucket 128881344437, type 5&#x000d;&#x000a;Event Name: RADAR_PRE_LEAK_64&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Wow-64.exe&#x000d;&#x000a;P2: 6.2.0.20338&#x000d;&#x000a;P3: 10.0.10240.2.0.0&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\RDR440A.tmp\empty.txt&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER441A.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 94fcaa30-47af-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 5c561bf8faa13fcc6a253604d2927776 
8/20/2015 5:27 AM Windows Error Reporting Fault bucket 124592468096, type 5&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAS&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER4E82.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_unspecified_c03168842bf8c62216819dbd86bdb7366229_00000000_1c4563a0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 25128e74-46fc-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: e1697ada327579c1e84d1c37d7f4e7fa 
8/20/2015 5:27 AM Windows Error Reporting Fault bucket 124592468092, type 5&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAV&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER4E62.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_unspecified_2b6cd07896ea13c99f8a03242f2ff18969c29d0_00000000_1c455ebe&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 25128e73-46fc-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: b394cd11473fe6a0047af369007db0b3 
8/20/2015 5:27 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAS&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER4E82.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_unspecified_c03168842bf8c62216819dbd86bdb7366229_00000000_cab_0fb94eb0&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 25128e74-46fc-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:27 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAV&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER4E62.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_unspecified_2b6cd07896ea13c99f8a03242f2ff18969c29d0_00000000_cab_0fb94e72&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 25128e73-46fc-11e5-9bc4-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1610141772, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col01&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5573.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_909a66fede2c3218842bf7f9a55175d5ae6f9e_00000000_131006c3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc5c-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: a583d1a439f2522462534fde3f03fe6b 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 90835805978, type 5&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col02&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5552.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_1c3d3a96f4792e4c4bd3bca3dd41adcf0b09c_00000000_131002cb&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc5b-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: cfadb63c825365a33d9fcfcae91b3368 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1610141739, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col02&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5532.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_f8db29fde2ce5d99391c5f28e52f861c179d98f_00000000_1317fee3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc5a-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 93803cb0731e97d10f1420ca30fe98e6 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 90835806110, type 5&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col03&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5521.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_df0b630e88e19f455b22cac8883d48190f144_00000000_1317fb1a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc59-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 9f37110b96fc0c0223c47520f0b845ac 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1610141663, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col03&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5501.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_77aeb9c53aba9b1243da02a91bcc2864c57592_00000000_1317f723&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc58-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: fc0ee38c2301c4f8f7379aee4695f9bb 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 90835806003, type 5&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_01&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER54F1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_48ce71dee3d0dbde5117b8c93cc835c4c3f5344a_00000000_1317f33b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc57-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: a305cbca6694d6ace48b933d01b5cbb4 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1610141875, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_01&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER54D0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_ed3321d5ad8fc4be2690aee47f3de31ac52d1c_00000000_1317ef43&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc56-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: a86e0c5bc842c7d608a216949a065eaa 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 90775735070, type 5&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_00&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER54C0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_6fa8afc86d535766c7dcb383fd3fa7dc2acdde_00000000_1317eb7a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc55-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: f4831724e9f01a49e239d6edfcf8609c 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1610141938, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_00&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER549F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_7bee51cafdfe917263176dc50e0291e8eb1cb27_00000000_1317e792&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc54-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 219cff404d645bbe57a0a528c4b0410b 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1484337500, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_1532&PID_0036&REV_0200&MI_01&Col02&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERACA.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_72f6136d3dc5d7dbffa64f7cbddbd5968b9611_00000000_1317e3c9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef30-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 53f83f87bd48c851ccce73a2326438a6 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1484337498, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_1532&PID_0036&REV_0200&MI_00&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERABA.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_c65d1c519ed8dc628a296ac63f488f81526ac382_00000000_1317dfb3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2f-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: d05e4adf5d41adb502a739b27e590c14 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 90822037587, type 5&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_1532&PID_0036&REV_0200&MI_01&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERA99.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_a09afb3ddfa78691e107fd4813fb876d1ebdc2c_00000000_1317dbcb&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2e-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 1be9c7814a4997a49b9af4a4683b61a1 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1484337505, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_1532&PID_0036&REV_0200&MI_01&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_ff14b9db4a24b5faddf8bc61ef438e1fd86b8870_00000000_1317d7d3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2d-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 7551277c8eecb592ab5ca482cd0ac147 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 90822036884, type 5&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_1532&PID_0036&REV_0200&MI_01&Col03&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERA68.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_1ebfe77d8bafe3c3c4a65f248cdb32a8f9db4f0_00000000_1317d3bc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2c-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: a0305dbd4dfd4b11bdf3fafc01be9201 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -1484337504, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_1532&PID_0036&REV_0200&MI_01&Col03&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER9EA.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_bb7ab09fbd947998bfb388459b41d0e37aa768e3_00000000_1317cff3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2b-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 1d544b98413b08f26fbd17c77c86d425 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 92018423275, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: PCI\VEN_10DE&DEV_0E1B&SUBSYS_27501462&REV_A1&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER8525.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_61d02eff44aecf6d238d0ff3d7bd1496ad769_00000000_1317cc3a&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 5a793d5b-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 8076b1770e689db73d0bf01c5bcc92eb 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 91961145885, type 5&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: PCI\VEN_8086&DEV_1E20&SUBSYS_2AD5103C&REV_04&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER838E.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_6c2a269bcdcb0bf8ecf372fb8467a6dc93fa0_00000000_1317c823&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 5a793d5a-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 63f5252fdce53cba58a6081c70745b7d 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 124592468096, type 5&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAS&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER2EE5.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_unspecified_c03168842bf8c62216819dbd86bdb7366229_00000000_1317c42c&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: d8665f01-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: e1697ada327579c1e84d1c37d7f4e7fa 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 124592468092, type 5&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAV&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER2ED5.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_unspecified_2b6cd07896ea13c99f8a03242f2ff18969c29d0_00000000_1317c044&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: d8665f00-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: b394cd11473fe6a0047af369007db0b3 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 124672902628, type 5&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x251487b1&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;C:\Windows\Temp\WER4A8D.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_d72231c8fe35b515ec9958a96ae7f7d779c9372_00000000_cab_0a694a9d\memory.hdmp&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_d72231c8fe35b515ec9958a96ae7f7d779c9372_00000000_cab_0a694a9d\minidump.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_10.0.10240.16439_d72231c8fe35b515ec9958a96ae7f7d779c9372_00000000_1317bc7b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4492443a-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 57dafe9a75262c41e160d391dce37131 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 124693437308, type 5&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x11bb93d6&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_1317b893&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 2e6eca3f-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 9aca11323610dd4b2fdc3f3cef12afcf 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 124693437308, type 5&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x11bb93d6&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;C:\Windows\Temp\WERB9F6.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_cab_0314ba34\memory.hdmp&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_cab_0314ba34\minidump.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_1317b49b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 2e6eca3e-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 9aca11323610dd4b2fdc3f3cef12afcf 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -253556676, type 5&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_1317b0d3&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b7176c27-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: ea7885af599d8d495fbcb24dcc913569 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -253556676, type 5&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_1317acbc&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b7176c26-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: ea7885af599d8d495fbcb24dcc913569 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -253556676, type 5&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_1317a8a5&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: af2c3607-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: ea7885af599d8d495fbcb24dcc913569 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket -253556676, type 5&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\DMIBC18.tmp.log.xml&#x000d;&#x000a;C:\Windows\INF\oem217.inf&#x000d;&#x000a;C:\Windows\Temp\WERBC58.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_1317a421&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: af2c3606-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: ea7885af599d8d495fbcb24dcc913569 
8/20/2015 5:21 AM Windows Error Reporting Fault bucket 77552752, type 4&#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: PortChanger.exe&#x000d;&#x000a;P2: 0.0.0.0&#x000d;&#x000a;P3: 50123cc9&#x000d;&#x000a;P4: PortChanger.exe&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 50123cc9&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 0000000000004be7&#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\WER31D0.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER32BB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_PortChanger.exe_76cf5dd40abecc4ac8b36e96265a8d8d032f5d7_61327275_cab_0a8f32b9\memory.hdmp&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_PortChanger.exe_76cf5dd40abecc4ac8b36e96265a8d8d032f5d7_61327275_cab_0a8f32b9\triagedump.dmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_PortChanger.exe_76cf5dd40abecc4ac8b36e96265a8d8d032f5d7_61327275_13179f8d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cfbe5f7a-a822-40c1-8ddb-9451d419d54b&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: dd6be94881d82180dc4fadef4396a4ce 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col01&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5573.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_909a66fede2c3218842bf7f9a55175d5ae6f9e_00000000_cab_00ac556b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc5c-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col02&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5552.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_1c3d3a96f4792e4c4bd3bca3dd41adcf0b09c_00000000_cab_00ac555b&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc5b-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col02&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5532.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_f8db29fde2ce5d99391c5f28e52f861c179d98f_00000000_cab_00ac553c&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc5a-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col03&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5521.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_df0b630e88e19f455b22cac8883d48190f144_00000000_cab_00ac552c&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc59-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_0461&PID_4DD7&REV_0124&MI_01&Col03&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER5501.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_77aeb9c53aba9b1243da02a91bcc2864c57592_00000000_cab_00ac550d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc58-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_01&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER54F1.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_48ce71dee3d0dbde5117b8c93cc835c4c3f5344a_00000000_cab_00ac54ee&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc57-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_01&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER54D0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_ed3321d5ad8fc4be2690aee47f3de31ac52d1c_00000000_cab_00ac54de&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc56-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_00&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER54C0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_6fa8afc86d535766c7dcb383fd3fa7dc2acdde_00000000_cab_00ac54bf&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc55-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_0461&PID_4DD7&REV_0124&MI_00&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER549F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_7bee51cafdfe917263176dc50e0291e8eb1cb27_00000000_cab_00ac54af&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: c889cc54-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_1532&PID_0036&REV_0200&MI_01&Col02&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERACA.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_72f6136d3dc5d7dbffa64f7cbddbd5968b9611_00000000_cab_0e400ad5&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef30-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_1532&PID_0036&REV_0200&MI_00&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERABA.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_c65d1c519ed8dc628a296ac63f488f81526ac382_00000000_cab_0e400ab6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2f-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_1532&PID_0036&REV_0200&MI_01&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERA99.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_a09afb3ddfa78691e107fd4813fb876d1ebdc2c_00000000_cab_0e400aa6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2e-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: USB\VID_1532&PID_0036&REV_0200&MI_01&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERA89.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_ff14b9db4a24b5faddf8bc61ef438e1fd86b8870_00000000_cab_0e400a87&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2d-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPRequestAdditionalSoftware&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_1532&PID_0036&REV_0200&MI_01&Col03&#x000d;&#x000a;P3: 10.0.0.0&#x000d;&#x000a;P4: 0409&#x000d;&#x000a;P5: input.inf&#x000d;&#x000a;P6: *&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERA68.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_1ebfe77d8bafe3c3c4a65f248cdb32a8f9db4f0_00000000_cab_0e400a77&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2c-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:10 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: HID\VID_1532&PID_0036&REV_0200&MI_01&Col03&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER9EA.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_bb7ab09fbd947998bfb388459b41d0e37aa768e3_00000000_cab_0e400a58&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: bd23ef2b-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:07 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: PCI\VEN_10DE&DEV_0E1B&SUBSYS_27501462&REV_A1&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER8525.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_61d02eff44aecf6d238d0ff3d7bd1496ad769_00000000_cab_11898534&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 5a793d5b-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:07 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPGenericDriverFound&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: PCI\VEN_8086&DEV_1E20&SUBSYS_2AD5103C&REV_04&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER838E.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_6c2a269bcdcb0bf8ecf372fb8467a6dc93fa0_00000000_cab_11898514&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 5a793d5a-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:05 AM Windows Error Reporting Fault bucket 124705464850, type 5&#x000d;&#x000a;Event Name: SkyDriveClientError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: OneDrive.exe&#x000d;&#x000a;P2: 17.3.5930.0814&#x000d;&#x000a;P3: OneDrive.exe&#x000d;&#x000a;P4: 17.3.5930.0814&#x000d;&#x000a;P5: 0x80004005&#x000d;&#x000a;P6: WatsonFaultCategory::Instrumentation&#x000d;&#x000a;P7: instrumentation.cpp&#x000d;&#x000a;P8: 80&#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceArchive.5930.0814-1.etl&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceCurrent.5930.0814.etl&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\logs\Personal\TraceArchive.5892.0626-0.etl&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\logs\Personal\SyncEngine-2015-8-20.54.8436.1.odl&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WER8184.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\NonCritical_OneDrive.exe_73ce8b89ee676f529220a55339a72f1b25aba677_00000000_047391df&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0af95f0d-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 2c715972911327d0ae408a6720fa8eed 
8/20/2015 5:05 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: SkyDriveClientError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: OneDrive.exe&#x000d;&#x000a;P2: 17.3.5930.0814&#x000d;&#x000a;P3: OneDrive.exe&#x000d;&#x000a;P4: 17.3.5930.0814&#x000d;&#x000a;P5: 0x80004005&#x000d;&#x000a;P6: WatsonFaultCategory::Instrumentation&#x000d;&#x000a;P7: instrumentation.cpp&#x000d;&#x000a;P8: 80&#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 0af95f0d-46f9-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 262144&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:03 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAS&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER2EE5.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_unspecified_c03168842bf8c62216819dbd86bdb7366229_00000000_cab_0fae2ee4&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: d8665f01-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:03 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: MpTelemetry&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: unspecified&#x000d;&#x000a;P2: HardeningTelemetry&#x000d;&#x000a;P3: HardeningTelemetryDisableAV&#x000d;&#x000a;P4: 4.8.10240.16384&#x000d;&#x000a;P5: unspecified&#x000d;&#x000a;P6: unspecified&#x000d;&#x000a;P7: unspecified&#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt&#x000d;&#x000a;C:\Windows\Temp\WER2ED5.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_unspecified_2b6cd07896ea13c99f8a03242f2ff18969c29d0_00000000_cab_0fae2ed5&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: d8665f00-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:02 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: ApphelpHardBlock&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: {11111111-1111-1111-1111-111111111111}&#x000d;&#x000a;P2: {2310e983-1ba6-4f1c-a3f5-974a9191c24b}&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERE3FB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_e1217ca1172d1992eaaf78ca7b2771539140cd_00000000_18fce7be&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: a386e249-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 8192&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:02 AM Windows Error Reporting Fault bucket 91732932993, type 5&#x000d;&#x000a;Event Name: ApphelpHardBlockOSSpecific&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: {11111111-1111-1111-1111-111111111111}&#x000d;&#x000a;P2: {2310e983-1ba6-4f1c-a3f5-974a9191c24b}&#x000d;&#x000a;P3: windows threshold&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERE012.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_ffe8b8e647b59ff2945b562d23b1c33169_00000000_18fce3f6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: a386e248-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: eb5ad86e41d48537131a92288e2bacce 
8/20/2015 5:02 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: ApphelpHardBlock&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: {11111111-1111-1111-1111-111111111111}&#x000d;&#x000a;P2: {4b123f9f-8c5a-49a1-9912-a54c71751d49}&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERDC38.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_9f8ac1fa9b242e1db8a5188b689c7f1d4a09127_00000000_18fcdffe&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: a386e247-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 8192&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:02 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: ApphelpHardBlock&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: {11111111-1111-1111-1111-111111111111}&#x000d;&#x000a;P2: {b6794e3d-2106-4e40-b66b-bfdf46526f67}&#x000d;&#x000a;P3: &#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERD86F.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_22f5fe74c8a1a0513cc7ece5d0c65adaea45b13c_00000000_18fcdc35&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: a386e246-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 8192&#x000d;&#x000a;Hashed bucket: 
8/20/2015 5:02 AM Windows Error Reporting Fault bucket 91404395692, type 5&#x000d;&#x000a;Event Name: ApphelpHardBlockOSSpecific&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: {11111111-1111-1111-1111-111111111111}&#x000d;&#x000a;P2: {b6794e3d-2106-4e40-b66b-bfdf46526f67}&#x000d;&#x000a;P3: windows threshold&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERD447.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_9e268fe1fc82bceb4ee873598dd23e1df4a8ef3_00000000_18fcd86d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: a386e245-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: c517c6e2414f024632e403bd55116446 
8/20/2015 5:02 AM Windows Error Reporting Fault bucket 91523312214, type 5&#x000d;&#x000a;Event Name: ApphelpHardBlockOSSpecific&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: {11111111-1111-1111-1111-111111111111}&#x000d;&#x000a;P2: {4b123f9f-8c5a-49a1-9912-a54c71751d49}&#x000d;&#x000a;P3: windows threshold&#x000d;&#x000a;P4: &#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Users\Dogbone\AppData\Local\Temp\WERD1BB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_3ec96c42564d9d5ba703b9c1920f958b994a328_00000000_18fcd3e8&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 7c122103-46f8-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: ab3c4adc5c4945df9115b2d883d62f47 
8/20/2015 4:45 AM Windows Error Reporting Fault bucket 90721584420, type 5&#x000d;&#x000a;Event Name: WsearchHealth&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: Corruption&#x000d;&#x000a;P2: 0xc0041801&#x000d;&#x000a;P3: unknown&#x000d;&#x000a;P4: 0&#x000d;&#x000a;P5: &#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\WER4CF0.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 44ef410c-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 0&#x000d;&#x000a;Hashed bucket: 8e8a63a10380a528478f978ddd29ea10 
8/20/2015 4:45 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x251487b1&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4492443a-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 262144&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:45 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x251487b1&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;C:\Windows\Temp\WER4A8D.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_d72231c8fe35b515ec9958a96ae7f7d779c9372_00000000_cab_0a694a9d\memory.hdmp&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_d72231c8fe35b515ec9958a96ae7f7d779c9372_00000000_cab_0a694a9d\minidump.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_d72231c8fe35b515ec9958a96ae7f7d779c9372_00000000_cab_0a694a9d&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 4492443a-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:44 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x11bb93d6&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 2e6eca3f-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 262144&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:44 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x11bb93d6&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_01d0d9c2&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 2e6eca3f-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4100&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:44 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x11bb93d6&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 2e6eca3e-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 262144&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:44 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: WindowsWcpOtherFailure3&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: 10.0.10240.16439:1&#x000d;&#x000a;P2: sil\merged\ntu\ntsystem.cpp&#x000d;&#x000a;P3: Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysCreateFile&#x000d;&#x000a;P4: 3004&#x000d;&#x000a;P5: c000003a&#x000d;&#x000a;P6: 0x11bb93d6&#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\servicing\Sessions\Sessions.xml&#x000d;&#x000a;C:\Windows\WinSxS\poqexec.log&#x000d;&#x000a;C:\Windows\System32\LogFiles\Scm\SCM.EVM&#x000d;&#x000a;C:\Windows\Logs\CBS\FilterList.log&#x000d;&#x000a;C:\Windows\Temp\WERB9F6.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_cab_0314ba34\memory.hdmp&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_cab_0314ba34\minidump.mdmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Critical_10.0.10240.16439_4788f80db6c818d2470be18abcd4f6a595e4eae_00000000_cab_0314ba34&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: 2e6eca3e-46f6-11e5-9bc3-2cd05a04df29&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:27 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_0878f0a6&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b7176c27-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 4100&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:27 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_0878f038&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: b7176c26-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 4100&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:26 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_09ccbd32&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: af2c3607-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 4100&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:26 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: PnPDriverInstallError&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: x64&#x000d;&#x000a;P2: 0000001F&#x000d;&#x000a;P3: stwrt64.inf&#x000d;&#x000a;P4: ee2210571b8e9f426759cfdfe45ef63aeef9cf62&#x000d;&#x000a;P5: STHDA&#x000d;&#x000a;P6: &#x000d;&#x000a;P7: &#x000d;&#x000a;P8: &#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\DMIBC18.tmp.log.xml&#x000d;&#x000a;C:\Windows\INF\oem217.inf&#x000d;&#x000a;C:\Windows\Temp\WERBC58.tmp.WERInternalMetadata.xml&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_328245d2f31761e89aa666f07d6d508f3c6a4a3b_00000000_cab_09ccbc86&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: af2c3606-46f3-11e5-9bc2-7054d2bcc7cf&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/20/2015 4:25 AM Windows Error Reporting Fault bucket , type 0&#x000d;&#x000a;Event Name: APPCRASH&#x000d;&#x000a;Response: Not available&#x000d;&#x000a;Cab Id: 0&#x000d;&#x000a;&#x000d;&#x000a;Problem signature:&#x000d;&#x000a;P1: PortChanger.exe&#x000d;&#x000a;P2: 0.0.0.0&#x000d;&#x000a;P3: 50123cc9&#x000d;&#x000a;P4: PortChanger.exe&#x000d;&#x000a;P5: 0.0.0.0&#x000d;&#x000a;P6: 50123cc9&#x000d;&#x000a;P7: c0000005&#x000d;&#x000a;P8: 0000000000004be7&#x000d;&#x000a;P9: &#x000d;&#x000a;P10: &#x000d;&#x000a;&#x000d;&#x000a;Attached files:&#x000d;&#x000a;C:\Windows\Temp\WER31D0.tmp.appcompat.txt&#x000d;&#x000a;C:\Windows\Temp\WER32BB.tmp.WERInternalMetadata.xml&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_PortChanger.exe_76cf5dd40abecc4ac8b36e96265a8d8d032f5d7_61327275_cab_0a8f32b9\memory.hdmp&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_PortChanger.exe_76cf5dd40abecc4ac8b36e96265a8d8d032f5d7_61327275_cab_0a8f32b9\triagedump.dmp&#x000d;&#x000a;&#x000d;&#x000a;These files may be available here:&#x000d;&#x000a;C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_PortChanger.exe_76cf5dd40abecc4ac8b36e96265a8d8d032f5d7_61327275_cab_0a8f32b9&#x000d;&#x000a;&#x000d;&#x000a;Analysis symbol: &#x000d;&#x000a;Rechecking for solution: 0&#x000d;&#x000a;Report Id: cfbe5f7a-a822-40c1-8ddb-9451d419d54b&#x000d;&#x000a;Report Status: 4&#x000d;&#x000a;Hashed bucket: 
8/21/2015 11:32 PM Application Hang The program MicrosoftEdge.exe version 11.0.10240.16431 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.&#x000d;&#x000a; Process ID: 29d4&#x000d;&#x000a; Start Time: 01d0dc68d49d5d86&#x000d;&#x000a; Termination Time: 4294967295&#x000d;&#x000a; Application Path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe&#x000d;&#x000a; Report Id: ee1c28d9-485c-11e5-9bc6-2cd05a04df29&#x000d;&#x000a; Faulting package full name: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe&#x000d;&#x000a; Faulting package-relative application ID: MicrosoftEdge&#x000d;&#x000a; 

Again,  thank you for your help and patience.   Pat



#13 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,952 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:06:34 PM

Posted 22 August 2015 - 07:20 AM

Greetings,

Have you worked with your internet provider yet? This numbers are concerning:
 

Pinging google.com [216.58.217.46] with 32 bytes of data:
Reply from 216.58.217.46: bytes=32 time=663ms TTL=55
Reply from 216.58.217.46: bytes=32 time=682ms TTL=55

Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=686ms TTL=52
Reply from 206.190.36.45: bytes=32 time=673ms TTL=52


Please post the TDSSKiller log.

I need you to ATTACH the System Summary file:

===================================================

Farbar's Recovery Scan Tool - Run Fix in Normal or Safe Mode

--------------------
  • Press the Windows key Windows_Logo_key.gif + r on your keyboard at the same time. Type in notepad and press Enter
  • Please copy and paste the contents of the below code box into the open notepad and save it to your desktop (<<<Important) as fixlist.txt
Task: {028192E9-3B5D-4947-8913-D409CC2B0C3E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {1D758AFA-90A7-432F-A786-759C3120078A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1FEF3DB7-8992-414B-AF5A-71AB3B2A5341} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {2B17263B-EAA3-479E-AD4D-F0DA00531B15} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {2C3D6146-4F52-4F52-A2A9-A080950843EC} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5FA6C33C-2438-45DA-887F-767DF1E831DD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {89FD74C1-D7A7-41A1-AD33-31918D3659F8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {8F4C3A2F-D807-437E-BAA4-10DF9721ED47} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
Task: {B3054E1A-E050-4638-814F-BDB50040890A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {BC53CE63-FC2F-4008-A910-9B54FD476847} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {CD11F51A-DAEB-4311-A042-666076B3A5E6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {E96C9A72-6491-4BAE-9245-D05F932E9248} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
File: C:\Program Files (x86)\PCPitstop\Super Shield\PCPitstopRTService.exe
  • Launch FRST and press the Fix button just once and wait, the program will automatically launch fixlist.txt.
  • The tool will create a log on the desktop called Fixlog.txt. Please copy and paste the contents of the file in your reply.
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Internet Service Provider?
  • TDSSKiller log
  • Attached System Summary file

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#14 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 09:31 AM

10:02:01.0217 0x1fec  TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57
10:02:01.0217 0x1fec  UEFI system
10:02:19.0888 0x1fec  ============================================================
10:02:19.0889 0x1fec  Current date / time: 2015/08/22 10:02:19.0888
10:02:19.0889 0x1fec  SystemInfo:
10:02:19.0889 0x1fec 
10:02:19.0889 0x1fec  OS Version: 10.0.10240 ServicePack: 0.0
10:02:19.0889 0x1fec  Product type: Workstation
10:02:19.0889 0x1fec  ComputerName: PAT-HP
10:02:19.0889 0x1fec  UserName: Dogbone
10:02:19.0889 0x1fec  Windows directory: C:\WINDOWS
10:02:19.0889 0x1fec  System windows directory: C:\WINDOWS
10:02:19.0889 0x1fec  Running under WOW64
10:02:19.0889 0x1fec  Processor architecture: Intel x64
10:02:19.0889 0x1fec  Number of processors: 8
10:02:19.0889 0x1fec  Page size: 0x1000
10:02:19.0889 0x1fec  Boot type: Normal boot
10:02:19.0889 0x1fec  ============================================================
10:02:20.0037 0x1fec  KLMD registered as C:\WINDOWS\system32\drivers\25270778.sys
10:02:20.0301 0x1fec  System UUID: {47311146-92A4-E9A8-C231-E18E1C078328}
10:02:20.0497 0x1fec  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
10:02:20.0508 0x1fec  ============================================================
10:02:20.0508 0x1fec  \Device\Harddisk0\DR0:
10:02:20.0509 0x1fec  GPT partitions:
10:02:20.0531 0x1fec  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {DE8E4BD7-B990-4396-9CA4-C91E763997CF}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000
10:02:20.0531 0x1fec  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {4FE09BA6-9BF7-4592-98D2-ED03F50E09DF}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x40000
10:02:20.0531 0x1fec  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {5B9AF94D-118D-472D-8153-419B353EBF37}, Name: Basic data partition, StartLBA 0x72800, BlocksNum 0x71CB9800
10:02:20.0531 0x1fec  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {7B7CB350-21D5-4487-807B-964840118E7E}, Name: , StartLBA 0x71D2C000, BlocksNum 0xE1000
10:02:20.0531 0x1fec  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C908CEE8-8CED-4CED-9C7F-BAA1005EBD5C}, Name: Basic data partition, StartLBA 0x71E0D000, BlocksNum 0x28F9800
10:02:20.0531 0x1fec  MBR partitions:
10:02:20.0531 0x1fec  ============================================================
10:02:20.0554 0x1fec  C: <-> \Device\Harddisk0\DR0\Partition3
10:02:20.0588 0x1fec  D: <-> \Device\Harddisk0\DR0\Partition5
10:02:20.0588 0x1fec  ============================================================
10:02:20.0588 0x1fec  Initialize success
10:02:20.0588 0x1fec  ============================================================
10:02:26.0667 0x0dbc  ============================================================
10:02:26.0667 0x0dbc  Scan started
10:02:26.0667 0x0dbc  Mode: Manual;
10:02:26.0667 0x0dbc  ============================================================
10:02:26.0667 0x0dbc  KSN ping started
10:02:29.0686 0x0dbc  KSN ping finished: true
10:02:30.0964 0x0dbc  ================ Scan system memory ========================
10:02:30.0964 0x0dbc  System memory - ok
10:02:30.0964 0x0dbc  ================ Scan services =============================
10:02:31.0060 0x0dbc  [ 22CE801AD25C51E2553F41A076BB0CB2, 0520216417F1619FB642734EC937C59D5E79A24306C1E9B793C82FAE077851E6 ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
10:02:31.0063 0x0dbc  1394ohci - ok
10:02:31.0075 0x0dbc  [ 2C49A2441EBB24C6ACFB524C1459115F, 0ABACB6F21C41C0297994E61F1BFABB3905AF6B569D0446FE8E174EB9225B8EF ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
10:02:31.0077 0x0dbc  3ware - ok
10:02:31.0112 0x0dbc  [ B87D3D07FE6F15328C6860D542F0E2BD, 46CF069EDD7DBFB4DB800BABA3081DAB363DD2CFD724AFF5916D3419F62A3574 ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
10:02:31.0119 0x0dbc  ACPI - ok
10:02:31.0133 0x0dbc  [ 1E3C4EDBB7F3F668B7205E351010BB79, A3CA12F72836C4F77B671264828B370B9EBA9CD71110E2C0514994760B6B12FF ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
10:02:31.0135 0x0dbc  acpiex - ok
10:02:31.0158 0x0dbc  [ 13B1C26AEDCB40082CDD97506F968129, 883442206B4C60AA493E84CC3037B6C1568441E1F43D2B1FCBFD8D87D135D511 ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
10:02:31.0159 0x0dbc  acpipagr - ok
10:02:31.0192 0x0dbc  [ B3D64FF927D611721DA73A61BF3A18B3, 96B51AFDC3078B5088AAF66F0CF3E07D2FCBBC84A19D309A25DF0A5C6CECB958 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
10:02:31.0193 0x0dbc  AcpiPmi - ok
10:02:31.0195 0x0dbc  [ 19F793B2203D94AC1F8AEDB08B494E2E, DC98CCF9935E1F1C32FA88575A9A678B74916EFF48E39A64CF1FF92232F64A52 ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
10:02:31.0195 0x0dbc  acpitime - ok
10:02:31.0253 0x0dbc  [ 047BD1EB681453A7FE492A71802AC9F3, C7401A815D4604CA341EEEAE17C7256401A8D725D27E068E67E791CAD6461445 ] AdobeActiveFileMonitor10.0 c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
10:02:31.0256 0x0dbc  AdobeActiveFileMonitor10.0 - ok
10:02:31.0344 0x0dbc  [ 86D0D87CB86588818805CF29E0CA14DF, 0AE0B9EE85443D7D8439FE03C773A6F7DC0A0EECBA2803D64F8BFD3C0AD36E84 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
10:02:31.0347 0x0dbc  AdobeFlashPlayerUpdateSvc - ok
10:02:31.0388 0x0dbc  [ 2A24E10C1A1DE0E0035E353EED494A1C, CBBFA86578BE74CAADDCA923D65E3BFFC57BC17B887936ADE5C6952530546A22 ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
10:02:31.0413 0x0dbc  ADP80XX - ok
10:02:31.0425 0x0dbc  [ 6C12C7E01A4F64E0AA9C88AF66955CC9, 81A413702909341F8694823EC83FBA0089523D7EC927B80E55E0779BB83AD263 ] AFD             C:\WINDOWS\system32\drivers\afd.sys
10:02:31.0433 0x0dbc  AFD - ok
10:02:31.0444 0x0dbc  [ EF09D07626820F7F89519514C17FE768, C3EC1DC163CD5946270ED876CD414889BBF2C586A8AF5DC7825FA5D77001E827 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
10:02:31.0445 0x0dbc  agp440 - ok
10:02:31.0470 0x0dbc  [ 8A289EF0721F95267BF2404BABEE146D, E263D258F03DF3BB405D49AE7230C37E7EB8F392FDEE48059C7C1E3709520D35 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
10:02:31.0472 0x0dbc  ahcache - ok
10:02:31.0496 0x0dbc  [ C301499987AF909258774AE9DC5778BB, 3ED539C999847116AE9DB9C8C5A34AB09703BAE3018E1EAF6DBC779BB6736F32 ] AJRouter        C:\WINDOWS\System32\AJRouter.dll
10:02:31.0496 0x0dbc  AJRouter - ok
10:02:31.0519 0x0dbc  [ DD69535D379F9E40AD0D6002887AAA99, 579DD18CE2B264B4058C6069B8AEE6FD9FE6A882B7DA19E300DFE40B37A4E5BE ] ALG             C:\WINDOWS\System32\alg.exe
10:02:31.0521 0x0dbc  ALG - ok
10:02:31.0524 0x0dbc  [ 6763084E8322A4876D1613854640F914, 89EEEB47517A9964FA799821E5E45BDD6009EBDC628D6DADE6A7F03DE7CDA6CD ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
10:02:31.0527 0x0dbc  AmdK8 - ok
10:02:31.0531 0x0dbc  [ DE29D8AB57AD67D4940CAB4A48B3E230, 4E92AFCD9107573DAB8E65AC6318E4B8851DCCBE17E135DFF8CF5733210B52E6 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
10:02:31.0533 0x0dbc  AmdPPM - ok
10:02:31.0543 0x0dbc  [ 4C1F9BBAF5CCD76D4642F3B92B97B454, 514CCAA8B586B1019658BE101046386EB727AD48D7913AEF9A168763E91F0DE5 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
10:02:31.0546 0x0dbc  amdsata - ok
10:02:31.0551 0x0dbc  [ F8195C1A15955180DD663E7FF4C2F6DD, F3C0C6B38FB9478217EE25EBDBDF7A18F01B97655BC38373E70E71171705D5E9 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
10:02:31.0554 0x0dbc  amdsbs - ok
10:02:31.0571 0x0dbc  [ DD2F5BBCFAC4D8E48DB1A95A7EEBFF08, 619E3106072C6F785144D785C4AFB4C607CAF7ED29AAA4A1411BE262E62B7ADE ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
10:02:31.0572 0x0dbc  amdxata - ok
10:02:31.0627 0x0dbc  [ E4AFE476D9F758514A8A571DF6A24372, A37055A2CDB577CC8B76D4B020924A6C68D94166C1C9A64F7C0E9E16692709FC ] AppHostSvc      C:\WINDOWS\system32\inetsrv\apphostsvc.dll
10:02:31.0629 0x0dbc  AppHostSvc - ok
10:02:31.0653 0x0dbc  [ 46AAF119090573A80D603745582229ED, 8D7C4AED66DD32A104965DC23D17C0815CD1BE2E3D52375C1A63863664EE174F ] AppID           C:\WINDOWS\system32\drivers\appid.sys
10:02:31.0655 0x0dbc  AppID - ok
10:02:31.0678 0x0dbc  [ 24315B385F515D6D5476757EAFD62633, CE645397BF43CC54B864A0E4FCB86F76C10B9C2D2482E85DBBE15EF7BF045F17 ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
10:02:31.0679 0x0dbc  AppIDSvc - ok
10:02:31.0682 0x0dbc  [ 2CE396457D5C18F034D243EC7E159010, DDF588A568DF5EAE058DF315535BD746760363E2242EF8C705F8DCBA2D5DA4A7 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
10:02:31.0683 0x0dbc  Appinfo - ok
10:02:31.0688 0x0dbc  [ 68AF553066C4DAE7D8698322526BDA86, 806A5228D204B18B3B9F88AB87B5918046BE96D1B3AEFEC9331CA7A483547486 ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
10:02:31.0691 0x0dbc  AppMgmt - ok
10:02:31.0701 0x0dbc  [ A8AC0B8ED134888731D1A1BCEF930FA1, 917D2C99CB28C5F20BA386148B6A93541AEF900A9A99D310D732B501322945E5 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
10:02:31.0707 0x0dbc  AppReadiness - ok
10:02:31.0766 0x0dbc  [ 346437C06343AD9F49F37196494E0C8D, D3B5F225DB5E8886914B81FE01BEA09D82E3AD88D4CCF4CA905BE13CC1DB039D ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
10:02:31.0808 0x0dbc  AppXSvc - ok
10:02:31.0830 0x0dbc  [ 0756EECAC010BE449D07502DF27E7701, 6A895CA80050D021DB5E130102F626027339A22673B7C15C51A375C0401F03D2 ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
10:02:31.0832 0x0dbc  arcsas - ok
10:02:31.0880 0x0dbc  [ BD63768F58666341BE007DAA21B3A063, 1D6112E97042E19E4D916AA22F8AEB7FCC2F36CA45F55049D77042DAF3B8847C ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
10:02:31.0881 0x0dbc  aspnet_state - ok
10:02:31.0903 0x0dbc  [ A5792F971EFE86B7F56EE7299ED1082B, 82DCD15E2C9D8A3EA663941C9CE73020FEEF2F91354D0BB51E8A142AA1E30217 ] AsyncMac        C:\WINDOWS\System32\drivers\asyncmac.sys
10:02:31.0904 0x0dbc  AsyncMac - ok
10:02:31.0910 0x0dbc  [ 8921DF6060DB5C7700AA48CB12E9EA08, 8F18841B454CDE4926C50B23F818D00ECE0AE884DB198E396445CB44CB39B2C4 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
10:02:31.0911 0x0dbc  atapi - ok
10:02:31.0937 0x0dbc  [ 240FF83DD79546B26F187FAB20F83864, C4DC0159016B4A4630357131E614814C068D07BEA94AAF6393E882A78C9FCA1E ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
10:02:31.0940 0x0dbc  AudioEndpointBuilder - ok
10:02:31.0974 0x0dbc  [ 5D6D5DA39A402AE7B05047781699ABDE, E3E4A7BA6E92190F9D9D6AD9AE084E293D2E271089CA78503AD72D7F39492459 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
10:02:31.0999 0x0dbc  Audiosrv - ok
10:02:32.0021 0x0dbc  [ 2F7F80543129210CA75995D0DCA488E8, 353E598FF26FA363C02A2B44BA8D7D1ED97B8AC8C69F1B5C5D521BD0D5D5AB94 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
10:02:32.0023 0x0dbc  AxInstSV - ok
10:02:32.0055 0x0dbc  [ 00D64E82900E4EC9062805ED87C2D75A, 577110F9A7C6C2C4CF86FFF4F60E23F61623ED325FC950033900A5102754A677 ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
10:02:32.0062 0x0dbc  b06bdrv - ok
10:02:32.0065 0x0dbc  [ 5164A66EC1565711A7B4CF2F143B4979, DA29F0FB63F3EB2BF92D51FEB4BB7D2B964553D2F634556325953927464CB3A5 ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
10:02:32.0066 0x0dbc  BasicDisplay - ok
10:02:32.0069 0x0dbc  [ F4C58BBF2972BD84C73F6A14CA35AC4E, B7A226EB861B63ACF4BF9B5A331ACA6FFC9B787DCCAA7697EEFC4F634508A6D5 ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
10:02:32.0070 0x0dbc  BasicRender - ok
10:02:32.0106 0x0dbc  [ 6FED40EC0DB11DF1B2AD08621FBDDED6, 06258C9C9B7C231A6900E1E237001A4E5513F74CEA7B4DFAB56490D455AB0549 ] bcbtums         C:\WINDOWS\system32\drivers\bcbtums.sys
10:02:32.0109 0x0dbc  bcbtums - ok
10:02:32.0243 0x0dbc  [ 6A28AFEB1409E07DE96E805FA1C5723C, 58CB9EAFC414AC486338F9869926CCE51F36158246FFCE7F54BC22729839B38D ] BCM43XX         C:\WINDOWS\system32\DRIVERS\bcmwl664.sys
10:02:32.0378 0x0dbc  BCM43XX - ok
10:02:32.0424 0x0dbc  [ 43907773F7563AF4DF0999D47522E802, 2563666842008E202B6A64435F06169A259D6DC56D16AF7359114C20A4FA4400 ] BcmBtRSupport   C:\WINDOWS\system32\BtwRSupportService.exe
10:02:32.0452 0x0dbc  BcmBtRSupport - ok
10:02:32.0475 0x0dbc  [ 25349D0B334E528667980948ED107D89, 70EF9D3B8DCAC6E9720C6F3EBC77392FADC182A6925F9024FE30A21321E0137F ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
10:02:32.0475 0x0dbc  bcmfn2 - ok
10:02:32.0503 0x0dbc  [ DF78B56EEE6004DEE8CE57763128075E, 5758CAF4B0182F3F2E2508B3BB58B0271F2689808D09675B2753FE373D1D77D2 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
10:02:32.0508 0x0dbc  BDESVC - ok
10:02:32.0527 0x0dbc  [ 1E8A9267F8886803AAE02982FC1B5BC4, 655DF84E037BD6E582A6BA89737A4388956219171AF7253D126E54A23F16BE59 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
10:02:32.0528 0x0dbc  Beep - ok
10:02:32.0559 0x0dbc  [ 7FAFFFC4C59F5010D6E7CEA152076B92, 945FD6C04E109D4E5A4164BAA9A8120EC85AB809555AAD83E61B9F179F976FD7 ] BFE             C:\WINDOWS\System32\bfe.dll
10:02:32.0573 0x0dbc  BFE - ok
10:02:32.0629 0x0dbc  [ BD60F5633F6BD617D9ECCA3FFDC0D37E, 2F0DECAEB7096CD628387263381E123C883F483BD87F7F2BA6DEFBB5A184BAA3 ] BITS            C:\WINDOWS\System32\qmgr.dll
10:02:32.0654 0x0dbc  BITS - ok
10:02:32.0658 0x0dbc  [ C9FD65687EF89715999C582D3E568812, 42BA59A78A47C510CB2AFDC6C6080B33F9F611F84FEE5262DFF16D7633C50EB1 ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
10:02:32.0660 0x0dbc  bowser - ok
10:02:32.0677 0x0dbc  [ EB4F4B88DF20C7B134F33A64EFD56BED, 7C32485FDDEEA23760DF24FC9576FBA11330C5BBA9053869FDAA9AD8A16B1610 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
10:02:32.0683 0x0dbc  BrokerInfrastructure - ok
10:02:32.0693 0x0dbc  [ 2AAD720B32904B97EDD8C3211344F79E, 41B1AEA5FAA48033B2581E18D68EFC986C3D65B383847E250C054CE3133A893C ] Browser         C:\WINDOWS\System32\browser.dll
10:02:32.0696 0x0dbc  Browser - ok
10:02:32.0716 0x0dbc  [ F8DD3B0EAC1EF1D087AE47E5819540AC, 866C951B52E3202AC89552AEA72A45123367199335578F03815E2ED55DA2FDAE ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
10:02:32.0717 0x0dbc  BthAvrcpTg - ok
10:02:32.0736 0x0dbc  [ 74C9D52F3F594529465E18B2BFF80487, F1ECD8B730AD8B90673735FD6D2D9F6F0754F8BAB7135B16A41128145D5F9377 ] BthEnum         C:\WINDOWS\System32\drivers\BthEnum.sys
10:02:32.0737 0x0dbc  BthEnum - ok
10:02:32.0764 0x0dbc  [ 647E2A425AD43637EAA01096A58B7089, 8F76D024FEBCBA1AC54363133DE1E0DD5B9D696E5E688EFEBC3B79F7F1B9C568 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
10:02:32.0766 0x0dbc  BthHFEnum - ok
10:02:32.0768 0x0dbc  [ B95040CAD3434D9EE003065363A0FAFF, D441E0676EA1AE1ABC305732024311CA59715E6763B3D7ADB728DEEFC403E182 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
10:02:32.0769 0x0dbc  bthhfhid - ok
10:02:32.0775 0x0dbc  [ F334BF7B0737CEB3B6822631EAD55A87, 4E5AEB1F8E109BA01A5D1CDE2E3C677FF07F2AFE8B195CB5F82AA28816D2060E ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
10:02:32.0779 0x0dbc  BthHFSrv - ok
10:02:32.0784 0x0dbc  [ 986F756D10B5A2B3971A03BD6308B94F, BEDEFD7470155621365439858B35239D4474487873431E67B01A4B7D56E7CE76 ] BthLEEnum       C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys
10:02:32.0788 0x0dbc  BthLEEnum - ok
10:02:32.0796 0x0dbc  [ 29AEE352AED4FCD2191436D263D75347, 3D21262EA26BF423BFA4A9146E53F8B036B2A1157DBE91A11C5603AF7A670B6F ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
10:02:32.0797 0x0dbc  BTHMODEM - ok
10:02:32.0801 0x0dbc  [ 38C97371F058E889F730BF35530732F4, 7CD16DF9C51D40CF80392E6DF444D6F5546B0E8B6A6DAC6DFD70BB45E014FA27 ] BthPan          C:\WINDOWS\System32\drivers\bthpan.sys
10:02:32.0803 0x0dbc  BthPan - ok
10:02:32.0834 0x0dbc  [ 91DC04363515659BD7D5752664E0CEB1, F5A865E563969E2AD1FE69AA8FF5FD18489F2BE4C17EB2DA6FC3C1CE6945364B ] BTHPORT         C:\WINDOWS\System32\Drivers\BTHport.sys
10:02:32.0846 0x0dbc  BTHPORT - ok
10:02:32.0850 0x0dbc  [ 26DD0127A05B333E36316E6EA9A6AAE2, A2DC4483FF5639EE8DD315AB2989865CA6A6992C578FD7F7D31698A015355941 ] bthserv         C:\WINDOWS\system32\bthserv.dll
10:02:32.0852 0x0dbc  bthserv - ok
10:02:32.0855 0x0dbc  [ 5866AE46EEF644E6DE5C95942AE419D7, 0726C0845D2BA4247AB26ACF05006F6FA96015158CD49795801BB906DA80C007 ] BTHUSB          C:\WINDOWS\System32\Drivers\BTHUSB.sys
10:02:32.0856 0x0dbc  BTHUSB - ok
10:02:32.0875 0x0dbc  [ 8B8B304DF17084338326BC4ACC2716C5, 426D56742D0E3E8471EE28FC5E0158223826770DF5BED88D5863D265A070A45D ] btwampfl        C:\WINDOWS\system32\DRIVERS\btwampfl.sys
10:02:32.0879 0x0dbc  btwampfl - ok
10:02:32.0890 0x0dbc  [ F34AD5A9F944D91BD285D1C29EEECB2B, 2EDA8C481B7F7F49AC8399485AE7C2D182568EE2E62394DC78C9A821ADAEA5EC ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
10:02:32.0891 0x0dbc  buttonconverter - ok
10:02:32.0903 0x0dbc  [ A10A1E05A943B10ECE5D57D131B7404D, 71BB816B6841001A4305DF1814926B639265E91895CA5D06284B0970E40CE386 ] CapImg          C:\WINDOWS\System32\drivers\capimg.sys
10:02:32.0905 0x0dbc  CapImg - ok
10:02:32.0918 0x0dbc  [ F2829DC6D292DCAC5029893BB2E9FEE3, AF2A25722D3BE37BABD1F6668786AAF39E9D6CA18CE8E845E63266E218C64526 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
10:02:32.0919 0x0dbc  cdfs - ok
10:02:32.0923 0x0dbc  [ F3A9E38AE23AD4015764AF89E4AE3519, 57ED6AC834177E128720FEC5B5793F35C7C36474E2D787F182B6730933222CC9 ] CDPSvc          C:\WINDOWS\System32\CDPSvc.dll
10:02:32.0925 0x0dbc  CDPSvc - ok
10:02:32.0947 0x0dbc  [ CA160E02F35A61C6F5C681FB4669C519, E6BC66156EE226F16804C4FDC8A60EB15CE6212EAFB9FB841FAC899979E140E2 ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
10:02:32.0950 0x0dbc  cdrom - ok
10:02:32.0964 0x0dbc  [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
10:02:32.0967 0x0dbc  CertPropSvc - ok
10:02:32.0969 0x0dbc  [ 60D7D304DF75DFF6A46CF633F583B592, 4141D8D1C6FE829C02053DA91AC6B0628BDEB3322CAAD4AD958190F9D173340E ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
10:02:32.0970 0x0dbc  circlass - ok
10:02:32.0978 0x0dbc  [ FF9D4BCE19E5D36CB3A845A3286DA6C3, A0E2C38D629359EEC6F8EEC6F92A3E571AEF018BAF259F395DC497ED4827460B ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
10:02:32.0983 0x0dbc  CLFS - ok
10:02:33.0015 0x0dbc  [ 5C4648673693724C8D4A1A92E1AA06E6, 5D548241715687BFA52E40B867EF73CB45D01B7F9A9B7F00B92BF2B4C97BE1D0 ] ClipSVC         C:\WINDOWS\System32\ClipSVC.dll
10:02:33.0023 0x0dbc  ClipSVC - ok
10:02:33.0031 0x0dbc  [ 8EBA63416EC166EBA6EF6D34A505D8C8, 5EB0236ABEA2277B71D9F009DA71934C618606B20BBEC07B8595195E40C12A2B ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
10:02:33.0032 0x0dbc  CmBatt - ok
10:02:33.0063 0x0dbc  [ 3B64DA873CEA5BEC42570BFF1054A014, 3649B25855CB9BE5BA3B3FEE4221575381FB2D488B8B050B5DD0088386AA0F7B ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
10:02:33.0071 0x0dbc  CNG - ok
10:02:33.0074 0x0dbc  [ 5EEA0856000F81B3D709BC81B3AA1EF2, C04E4E31D3FC38102BA410D312F58AF848920EE37004A5C306D79229C9B6079A ] cnghwassist     C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
10:02:33.0075 0x0dbc  cnghwassist - ok
10:02:33.0112 0x0dbc  [ 74CD3BF688E2B408227FE012A2F2D8ED, CC01AC79CEB9DC94FA5675D66F048928C9968B8944E34F5482A73C14B70EE8A8 ] CompositeBus    C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys
10:02:33.0113 0x0dbc  CompositeBus - ok
10:02:33.0115 0x0dbc  COMSysApp - ok
10:02:33.0118 0x0dbc  [ D38774D1D383A2CDB9A4F64B7206913B, 6CDDC46D1D431342F00CA537FC327B23B8AA4D513CEEEE61F3E19C77975DF9C8 ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
10:02:33.0119 0x0dbc  condrv - ok
10:02:33.0141 0x0dbc  [ 5C2C63BC5CE4A753C16CED512F91A04D, 4ACFA702B4CD7E30525D9595533E6B8EACBFF7F38EE7A05E8AC087BB229AD9D4 ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
10:02:33.0150 0x0dbc  CoreMessagingRegistrar - ok
10:02:33.0162 0x0dbc  [ 35DB06AACD8AD5999161DA71FF0E16F0, 22AD27811AAD14666ACEF4115447B0CFAA70D1E73923059FB2A9B4C3CBE500A6 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
10:02:33.0164 0x0dbc  CryptSvc - ok
10:02:33.0173 0x0dbc  [ 838755238B2BAE5A4802B038443B8A22, 1A89E413C6E5C3E8C2B64F8A1D41271D3FA39BC67291331FEC8DCFD4F8CCE994 ] CSC             C:\WINDOWS\system32\drivers\csc.sys
10:02:33.0181 0x0dbc  CSC - ok
10:02:33.0201 0x0dbc  [ 7D64B14DAFEBBC19A87EC9D5B862F6AA, BE7510E618566FEA013E2E77CE4C7C160BADE105C493424595A15D0A7F1615CF ] CscService      C:\WINDOWS\System32\cscsvc.dll
10:02:33.0211 0x0dbc  CscService - ok
10:02:33.0236 0x0dbc  [ F038EAF73AAB72A4A89185A5A7B9FD75, 8213A60B3BEAFC1C554C5D049DFE3C6E44CEFE639EDD6A335AC18A9DAEDA2D4B ] dam             C:\WINDOWS\system32\drivers\dam.sys
10:02:33.0237 0x0dbc  dam - ok
10:02:33.0278 0x0dbc  [ 5E57B9FBB4E9C43EE5B69BEE01A1819F, A1F8D1E52AF446CEA2EB50064E3A24B713B19197D61C3EAECB81B3CCD80558E7 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
10:02:33.0288 0x0dbc  DcomLaunch - ok
10:02:33.0305 0x0dbc  [ 0605AB12BF1856DF21AB708F28EA91CF, 3A6A7F8F84044DC1EA490A007E6DBC52203BA237ECF1B845961D9BB95E9BF8C8 ] DcpSvc          C:\WINDOWS\system32\dcpsvc.dll
10:02:33.0308 0x0dbc  DcpSvc - ok
10:02:33.0321 0x0dbc  [ BABB7BB5AD3CECFF466E6080F43CFC58, 1B8FF66557EC4C749156ED6DACC4D61D5DC4E25DD58F6DB3713C356214B80FDA ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
10:02:33.0328 0x0dbc  defragsvc - ok
10:02:33.0347 0x0dbc  [ 63C9464B165D31ACC46B6B089AB36B41, DE38DE4E6331D07630B63224F8014C27368C29791EDB58CC5DAE7CBACD37160A ] DeviceAssociationService C:\WINDOWS\system32\das.dll
10:02:33.0353 0x0dbc  DeviceAssociationService - ok
10:02:33.0366 0x0dbc  [ 7B3DA16FAA498838BB457E0B7E380EDF, B73DCFFA60886F10765E4B76A58CFF18C08CAFEE620700361FC8FEC7E80B5958 ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
10:02:33.0369 0x0dbc  DeviceInstall - ok
10:02:33.0380 0x0dbc  [ CF3895DD260ADE05BC91D8FBE0A82907, D7D8A29E873BE5C3832C9264F0165F6CD50D42ED0E04B0FCF07F054793092334 ] DevQueryBroker  C:\WINDOWS\system32\DevQueryBroker.dll
10:02:33.0381 0x0dbc  DevQueryBroker - ok
10:02:33.0391 0x0dbc  [ 25435407D97419627F4B10653433BF2B, 5429B0DB7C5302E9A6AF92C046637183D4147D4A206963ABEA3A611214D6AB04 ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
10:02:33.0393 0x0dbc  Dfsc - ok
10:02:33.0400 0x0dbc  [ E59C209F1F633C1AEAF151B2CA46BBAA, 6A4DA927418B56A228CC8D9DFA3351B2B53A9328F5C56C10F0C7B19974B2ED89 ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
10:02:33.0405 0x0dbc  Dhcp - ok
10:02:33.0464 0x0dbc  [ 95AA7877FD4161BFBC8493F9279B1901, F6B7DF75D763A89901BD12454BEF92D161B392F721B8568505073929D9F419BD ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
10:02:33.0465 0x0dbc  diagnosticshub.standardcollector.service - ok
10:02:33.0509 0x0dbc  [ 58395E37ED838B93A56F1D089C2F53CF, 57D167B58DF5B33F7E2A98E1B8B33C8F076D34CA032D22F050AE6F83A48DC8E6 ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
10:02:33.0552 0x0dbc  DiagTrack - ok
10:02:33.0556 0x0dbc  [ FDCD449AE9E75D7690593D16ADAF4DB4, 3366C4BDB031EB525F85850E903C46802A2AC762C0772C6F6E543DDA4AF1E9D5 ] disk            C:\WINDOWS\system32\drivers\disk.sys
10:02:33.0558 0x0dbc  disk - ok
10:02:33.0576 0x0dbc  [ 8E481EDF066552D551613EC9FE7D179F, 96E955CA82B4CDEC00ED08003FDC8DD61E685F421912EDBF7B0DA740048416F9 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
10:02:33.0581 0x0dbc  DmEnrollmentSvc - ok
10:02:33.0601 0x0dbc  [ F10A8F6D036CEDD14A5471782C52F041, E0DA3C4F76DBBEAED549375E57819F8825B33A118F7674D417D294054863F648 ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
10:02:33.0602 0x0dbc  dmvsc - ok
10:02:33.0620 0x0dbc  [ 7228733177F673B4D51BD1AA082D47C1, DBE155CDCFAA7C32407A207F637F252FA0CE30F1DE7E7DBEC42DB37FADB5BFA7 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
10:02:33.0621 0x0dbc  dmwappushservice - ok
10:02:33.0635 0x0dbc  [ 592E41B3C11CA12203D3708AD8FC3D37, 6C69D5D603FBF038C069EDDCE29F7C6A60CAAE58B985AB218E1497F2BA934D42 ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
10:02:33.0638 0x0dbc  Dnscache - ok
10:02:33.0649 0x0dbc  [ 6184C7A2F12625C108AEFD3A43429967, 689153F319BB1013FF60F71317E8380A6945EEE8141EDBDD6B185A966E23BB93 ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
10:02:33.0653 0x0dbc  dot3svc - ok
10:02:33.0670 0x0dbc  [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4            C:\WINDOWS\system32\DRIVERS\Dot4.sys
10:02:33.0673 0x0dbc  dot4 - ok
10:02:33.0682 0x0dbc  [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print       C:\WINDOWS\System32\drivers\Dot4Prt.sys
10:02:33.0682 0x0dbc  Dot4Print - ok
10:02:33.0685 0x0dbc  [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb         C:\WINDOWS\system32\DRIVERS\dot4usb.sys
10:02:33.0686 0x0dbc  dot4usb - ok
10:02:33.0697 0x0dbc  [ A616D8297C1BEA690BBC796736A7A78D, 9365470F4609606410AD79D98E1E77D815DC7C5AA924FB639FCF713EE8EDEA76 ] DPS             C:\WINDOWS\system32\dps.dll
10:02:33.0699 0x0dbc  DPS - ok
10:02:33.0722 0x0dbc  [ 45771610FF181434073B5A0A00F20F8D, 6A17DB09AA6D021F000F7315317235E1FCF41FD58EA7DF81A7C9F5A6DE999984 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
10:02:33.0722 0x0dbc  drmkaud - ok
10:02:33.0727 0x0dbc  [ 00D9A948FB7344C62CEBED88E50EE39A, EF33FE7FB34DE571F3956C1F7AC8EFAA25BFD9F3AFA3ECD25DD34C5890873245 ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
10:02:33.0731 0x0dbc  DsmSvc - ok
10:02:33.0757 0x0dbc  [ F2328181D289CE83E9979733EAB6742A, 73B1CDA6ED8C42B36126909F1335B72126A5DDC6FC7CE8BA2CA274A2B92E82FD ] DsSvc           C:\WINDOWS\System32\DsSvc.dll
10:02:33.0760 0x0dbc  DsSvc - ok
10:02:33.0814 0x0dbc  [ 310334DAF2C455744703E2D582942DF3, C25C42B4C5BA3456DCB2C24546D7E38A9F5321992B81138A8BDCE021C4BE6D13 ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
10:02:33.0856 0x0dbc  DXGKrnl - ok
10:02:33.0879 0x0dbc  [ 6E36BDBB46DF7F865D0DD30663AE3891, 98967B01EA450AD4D5FE8085F710359C022D783B839A51BD4A266718156B01EB ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
10:02:33.0881 0x0dbc  Eaphost - ok
10:02:33.0956 0x0dbc  [ 3070013B01EDA42C7EB67D731340C396, C083CA05650750876E70CB6AB51D5C047C06098C2ED86B083A74C97830247BFC ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
10:02:34.0024 0x0dbc  ebdrv - ok
10:02:34.0049 0x0dbc  [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] EFS             C:\WINDOWS\System32\lsass.exe
10:02:34.0050 0x0dbc  EFS - ok
10:02:34.0053 0x0dbc  [ 59EE187E333EE9914DD9BEA5F4E0D85D, E34BB8075E38FC6AEC056323C6E3B5B4E7041EE6F4D51699B706DEEA18BDB911 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
10:02:34.0055 0x0dbc  EhStorClass - ok
10:02:34.0077 0x0dbc  [ 9297F1CC486F24BDFD2874156AC5430F, 1AF8689ADE4E658FC9418F7886B6C19F7D005EAB2AEF9B0E14FC81C61A74CECF ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
10:02:34.0079 0x0dbc  EhStorTcgDrv - ok
10:02:34.0099 0x0dbc  [ 9E8FF6B95FD420FA9E40BE548E5C8D92, 8825B81418335D03CFAADB792C1466023C459BE489ACACBD6686FFB544F22D30 ] embeddedmode    C:\WINDOWS\System32\embeddedmodesvc.dll
10:02:34.0100 0x0dbc  embeddedmode - ok
10:02:34.0106 0x0dbc  [ DC2F91EAE9A28FA8C6610A9B7701B70D, 480DB509BF944AAC3617594F1245B4603069DE39186BC1FA7EDB8E0536B05E79 ] EntAppSvc       C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
10:02:34.0111 0x0dbc  EntAppSvc - ok
10:02:34.0128 0x0dbc  [ F7FCCA6300485EF60CEA6D991D6C8C78, 24080D80CF1FD678DF4C9CAE70F65F8D9232F5F6A6F2B73A77B5E3C91E6505F3 ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
10:02:34.0129 0x0dbc  ErrDev - ok
10:02:34.0162 0x0dbc  [ 2093F65AA84478E28C8E9D05BC413845, 086D4E0D4B993F4041AA8A9DCBEEDB53BD05B88E2BEFB218837FB10FACDF4233 ] EventSystem     C:\WINDOWS\system32\es.dll
10:02:34.0168 0x0dbc  EventSystem - ok
10:02:34.0192 0x0dbc  [ DCCDC3F35F0618692117DF90800A4284, B636B2A39AE89A9C2CDE17EC52DA669DA8AA9E2B04CA5CA19926DA8009655244 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
10:02:34.0196 0x0dbc  exfat - ok
10:02:34.0202 0x0dbc  [ 435FC0D25ADFD1A2FBA8C98BD4D79E23, F89D02518923D5AAB4A63686F26EE6118584AA9641D2C0B5B1AE4A728D5C06A4 ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
10:02:34.0207 0x0dbc  fastfat - ok
10:02:34.0245 0x0dbc  [ 046FC9CF53A91E2FBA498CA7B0C3B028, BCFB06DF53065706DD6287E8C47BF5047F8A1E33981E1881E6ED7510337F5BC8 ] Fax             C:\WINDOWS\system32\fxssvc.exe
10:02:34.0254 0x0dbc  Fax - ok
10:02:34.0270 0x0dbc  [ 4E4B7D935DBF522B2F23D3573596181D, 9D0EC9F65920EE0FFFB2D49C58E4D5151C8CEEB7AA82543D226E4B84EEE4B3F0 ] fcvsc           C:\WINDOWS\System32\drivers\fcvsc.sys
10:02:34.0271 0x0dbc  fcvsc - ok
10:02:34.0283 0x0dbc  [ 583EB1C7690E361213BBD0472155128B, 5F5871490A6DAC4A824F4428941AC86FBFA9AA349B99B5D9544E5D62EB459FA8 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
10:02:34.0283 0x0dbc  fdc - ok
10:02:34.0307 0x0dbc  [ 94B1A46EDD335F0C54C7BDAFC43348E6, 58073D58D0BE7389C2A4736AFE108835E5AE9C9950FF630644F585C99B964043 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
10:02:34.0308 0x0dbc  fdPHost - ok
10:02:34.0319 0x0dbc  [ BC855BB7DFE06F27F78E0EB2A8CCB70D, D16C3DAB99C16B077BA5DA5E9E0646B0B9237B00ABAE867D9F81A2D072D583B1 ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
10:02:34.0320 0x0dbc  FDResPub - ok
10:02:34.0323 0x0dbc  [ F1125F20D56F28DDCD1A6F3E81EB4F5F, A6620ECCB15FAA70E4A43ADA4CE82CF97D708B6FA07F3FAED276359E7F92FD0F ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
10:02:34.0326 0x0dbc  fhsvc - ok
10:02:34.0344 0x0dbc  [ CDFD81CACE0E11596A3BB61EC4CF6467, 569FA86A215B054131AA9AFEECFEE7FD7143DCFFE275B84196004AEA538B2476 ] FileCrypt       C:\WINDOWS\system32\drivers\filecrypt.sys
10:02:34.0346 0x0dbc  FileCrypt - ok
10:02:34.0348 0x0dbc  [ 3F02FEDAE894CBF4BAADDF8C8E1D53A8, DA32ABB1CDA867B8456C46F8581FA7F3A8D8B89D9F6E7422F51941D5FFA15B13 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
10:02:34.0350 0x0dbc  FileInfo - ok
10:02:34.0352 0x0dbc  [ 2824933386E30DE5BA089DF539CE19A3, 7B33E514576C68B444AE99CBA1360EBFAE8A46EEE5C01F4EE4CF471A712AB148 ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
10:02:34.0353 0x0dbc  Filetrace - ok
10:02:34.0375 0x0dbc  [ 6A598249640F8BEDD79EC73917E1664F, A675238EA19E6632CDEB4EEFF7CF509EAAEF76AD8DFD247664E5607555D9CEE1 ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
10:02:34.0376 0x0dbc  flpydisk - ok
10:02:34.0382 0x0dbc  [ 44B6A6832134DF651E887E941478CA35, FCF4EB726D00F5A17DD66C81CFDA49427281C94CF9CA2008397D591AEA61AE05 ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
10:02:34.0387 0x0dbc  FltMgr - ok
10:02:34.0441 0x0dbc  [ C197284A9D565A38497733AF2BDFA111, C6615AF0D366C2DD6D431B073901EED02D49AA3F252230735DBB52A90BCFA833 ] FontCache       C:\WINDOWS\system32\FntCache.dll
10:02:34.0484 0x0dbc  FontCache - ok
10:02:34.0537 0x0dbc  [ 109AACC7FB0170535F71491F673AFD38, 212B6761ABBAC29993DA0A47C3DDE8074EA9E5A8FFA8FF6EAB95AC69D8FDD5A0 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
10:02:34.0538 0x0dbc  FontCache3.0.0.0 - ok
10:02:34.0540 0x0dbc  [ 3F3B9E8CECD5604BC7746EF3A852EB67, 51AF62A9563379266C0C873E82F55427900032DFD7AC3EBDCDF77F8F8DE91A5D ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
10:02:34.0542 0x0dbc  FsDepends - ok
10:02:34.0545 0x0dbc  [ A60583221C7BB7CEC35C63285A297BE1, 3C842FBEAD1FA2BD8D37B2B0E8EDF77F4F50508C56FB25DFA81DE9679090D51D ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:02:34.0545 0x0dbc  Fs_Rec - ok
10:02:34.0555 0x0dbc  [ 58013A50225174EEF1410E37795D7908, F8E557CA4110ABB203192DEAF59D91A5FEF2A5EA394637276DAB7F4D2E7BFA39 ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
10:02:34.0563 0x0dbc  fvevol - ok
10:02:34.0583 0x0dbc  [ 0DAAE3EFCE00133AB3E383A36C47CDAF, 9145665F4F0575F951803AAFAA1A7DC0FAA35430CAE7D90E902074D60D6F4C62 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
10:02:34.0583 0x0dbc  gagp30kx - ok
10:02:34.0633 0x0dbc  [ C403C5DB49A0F9AAF4F2128EDC0106D8, 3C6948B63278022D8182F773C5FA15784514F76C1546118DDBADBA322B962D12 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
10:02:34.0635 0x0dbc  GamesAppService - ok
10:02:34.0663 0x0dbc  [ F59155B95D01C08F9ED774B626B504A1, EF0FCF35AD9CD5E5D695F0C064244D2B327E7FB10FD7CBB0586253EC75562918 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
10:02:34.0664 0x0dbc  gencounter - ok
10:02:34.0676 0x0dbc  [ AE24452F55C6F1784CBD7489D0CDDB02, 4E13C51CBF30A8662B1180AC74E968CFC428B6EA7931F09357E7D120063D4823 ] genericusbfn    C:\WINDOWS\System32\drivers\genericusbfn.sys
10:02:34.0677 0x0dbc  genericusbfn - ok
10:02:34.0727 0x0dbc  [ 4EA5458FCA8518344686C543749365B1, 52D4D2392C80A4C57C74B09FE04E9DFF6CB01521F03132EB7523BE52B8BF7A50 ] gfiark          C:\WINDOWS\system32\drivers\gfiark.sys
10:02:34.0728 0x0dbc  gfiark - ok
10:02:34.0761 0x0dbc  [ 96F0D3A583A91B634EE2AC2507356EDC, 43D2575F33D28F61C13D2DCF358BFA9DCEAE276C83152DBE7AE2020A66929CD9 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
10:02:34.0763 0x0dbc  GPIOClx0101 - ok
10:02:34.0798 0x0dbc  [ E50CE978F571B900D9A7E2F1C5BCC070, EA14873A5F1B700D7CDBE55B9D214DC457262866A90D80B3E8325A8EB7932CE7 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
10:02:34.0824 0x0dbc  gpsvc - ok
10:02:34.0834 0x0dbc  [ BA2455D93BD57989A04FE4094AA6F941, B579FB367C063EA30C034381148410D49D38E183A5A4D51D2334A81DAEE95CEC ] GpuEnergyDrv    C:\WINDOWS\system32\drivers\gpuenergydrv.sys
10:02:34.0834 0x0dbc  GpuEnergyDrv - ok
10:02:34.0845 0x0dbc  [ C277A49F8A8295840DEBC9240B75A282, 8B2BA0E6A8300323765D95ECD843105B0FC4B80B85EE2220E677C4E9A760C9D8 ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
10:02:34.0846 0x0dbc  HDAudBus - ok
10:02:34.0868 0x0dbc  [ D5A57EF4822A0388352FFF9F5CD53495, 509F365386859157E9078821FAA56D2A3C0BA296CA129E0D42453428A14687A5 ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
10:02:34.0869 0x0dbc  HidBatt - ok
10:02:34.0875 0x0dbc  [ 39575B53EB80C77FF2A3F1449D00B7F5, 37E66B38BACE00AFEF7093F990A234399D8451A9D2C2C8CBECAB69C664E63EA6 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
10:02:34.0877 0x0dbc  HidBth - ok
10:02:34.0888 0x0dbc  [ 35C3B602664116E737FF729F9A7156AD, 7A3C5CAD716E819CC53405971F3ACD135BCF023EC2228C1095E2116BCC384E62 ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
10:02:34.0889 0x0dbc  hidi2c - ok
10:02:34.0898 0x0dbc  [ C4ABE526BBF2A18E8AF70177FBAD9C6E, 4DA06B563A08AC15D949F4599F73F172B3BFCB5D23B34240D1E2114438A11929 ] hidinterrupt    C:\WINDOWS\System32\drivers\hidinterrupt.sys
10:02:34.0900 0x0dbc  hidinterrupt - ok
10:02:34.0902 0x0dbc  [ 348416C7D7EB05BC3099FE2F2B27985C, F30E8682E9DD731A1AD7328FB8A48A2BB7D6E52780AE1FDE839D26E84B4FA7B5 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
10:02:34.0903 0x0dbc  HidIr - ok
10:02:34.0906 0x0dbc  [ 5576DF399CF2D3B63608F7F282151249, 04939E79B8B8035547CE6FFE9001252CA810BAD46D8DB75FF5C13EB10EEB5C57 ] hidserv         C:\WINDOWS\system32\hidserv.dll
10:02:34.0907 0x0dbc  hidserv - ok
10:02:34.0909 0x0dbc  [ 01F732724AF6EFE69886DA95A4E51820, E048A480F9396418BDE9659596E7EDA5FF97D3CE029D186048609B47575BEAE1 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
10:02:34.0910 0x0dbc  HidUsb - ok
10:02:34.0943 0x0dbc  [ 7433A8D28EE11A661C7A45AF28BA7987, 8A73DB423924E84CD3629BF6C7298CD093D2437B73B3F4520D39330923DDA2D6 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
10:02:34.0948 0x0dbc  HomeGroupListener - ok
10:02:34.0971 0x0dbc  [ 3FDBFBE5AE639996EB8D482C16BA7EA9, 7E48304818AABB4C5B0CB7FD32D96D6F90F4180AB0F668A2FE653A7097A40673 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
10:02:34.0978 0x0dbc  HomeGroupProvider - ok
10:02:35.0137 0x0dbc  [ 0D0213498683414DDE29B1686A4C08D5, E9B64406C04B6E55CBD17E7C47B023CEA11FEE07B791154129D6F4F29D15AB7F ] hpqcxs08        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
10:02:35.0140 0x0dbc  hpqcxs08 - ok
10:02:35.0171 0x0dbc  [ EE281DD6843F3F697C1AD7933EEB1E9B, 1ECE31C2150B92DDC1DCBBCECFE3E979F2C60B3F106280E3167BEC0269BF7A41 ] hpqddsvc        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
10:02:35.0173 0x0dbc  hpqddsvc - ok
10:02:35.0250 0x0dbc  [ 7B7DE6B3DC30F3246958F42C67A6F7BB, 4B66B90CFEC2231B905B21DECC4EC7C6500E546F080A452EF67E724EDF37ADD9 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
10:02:35.0275 0x0dbc  hpqwmiex - ok
10:02:35.0299 0x0dbc  [ 3844CE7DD23530CAD59D8CABA57CCB05, A44BB60686A0E98FF370D9DED5B32C3F34F0352ACFA3B3052BA4023922B53DB7 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
10:02:35.0300 0x0dbc  HpSAMD - ok
10:02:35.0337 0x0dbc  [ C995EA1C6915D897E06D41AF95B9312C, 65DE6599F1C735BBDCCE4728F7F98167BCA0BF1B8D4218BBF7546B025C9A38BD ] HPSLPSVC        C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
10:02:35.0348 0x0dbc  HPSLPSVC - ok
10:02:35.0385 0x0dbc  [ A0FFCF6391B5270B2A34E379DE446878, 8AFD522ED2488723D2B72B7BA214272E6ABFAC4F3AA589888FFB35A0A44660CE ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
10:02:35.0386 0x0dbc  HPSupportSolutionsFrameworkService - ok
10:02:35.0413 0x0dbc  [ CA6EADBB8731CA27BDA4037BF290AC14, 31EC9397D55D4EEC416AD722134E2D6B5D14E46D2150CB94889C4BFDAACBF421 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
10:02:35.0424 0x0dbc  HTTP - ok
10:02:35.0435 0x0dbc  [ 8841D927EB1F7FFC8B1805BC0CF190ED, B063E686380EEF582CF736E33751812F0041C593C7F30EE97D13DEDC9B246AB5 ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
10:02:35.0436 0x0dbc  hwpolicy - ok
10:02:35.0458 0x0dbc  [ 53436C3835E80F4421652A67F44D6313, 8731091945A839713348DF3060A4C96033874E2B3DC7E099BEEC8C65B07F98CF ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
10:02:35.0459 0x0dbc  hyperkbd - ok
10:02:35.0469 0x0dbc  [ B2DC6C2F313EBB967B556B4E73A75451, B1816A0AE15705F0325F167EA76166779607D6086EC36A4A960E3BA47B4EBC4B ] HyperVideo      C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
10:02:35.0470 0x0dbc  HyperVideo - ok
10:02:35.0485 0x0dbc  [ D4CDEE4A62BDFFF6E8558A9552148EA7, 55306786CB45082AE374937EBA256FF9CD640BB2E8C19DC6C704489D4743F5CC ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
10:02:35.0487 0x0dbc  i8042prt - ok
10:02:35.0503 0x0dbc  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
10:02:35.0504 0x0dbc  iaLPSSi_GPIO - ok
10:02:35.0508 0x0dbc  [ F1DF87463AC308047B089E9F0456B4C8, DFFF3C63D3124C2B879B888104042406FE326D4E7C8C1881A269BD4287B9CD33 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
10:02:35.0510 0x0dbc  iaLPSSi_I2C - ok
10:02:35.0541 0x0dbc  [ C224331A54571C8C9162F7714400BBBD, C2CA4881ACD46071E67435BE5E3DB133D0743B026FD20D6D6E26B2FE7A03FCAA ] iaStor          C:\WINDOWS\system32\drivers\iaStor.sys
10:02:35.0549 0x0dbc  iaStor - ok
10:02:35.0581 0x0dbc  [ 119464C67045DC19AC130615399A633A, 9836B7E46E7C68734FCE3D8DFE91ADE4A59C8044ADB13901A75F06A8AF37AE25 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
10:02:35.0589 0x0dbc  iaStorA - ok
10:02:35.0623 0x0dbc  [ 9FDD4763A115D04F565C38183DE4646F, A8B0653E7C5F5B3CB2A1B642F502269FB1BB1E35DBB1CBABDBDADF92C9815727 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
10:02:35.0632 0x0dbc  iaStorAV - ok
10:02:35.0652 0x0dbc  [ 4E69EE8F8E5DA036535D433C544AF9E2, 2ADE9B97CE1C19FF984D8BB99CF31415872C2D9628864BD78C0E44D21CC94EE3 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
10:02:35.0658 0x0dbc  iaStorV - ok
10:02:35.0678 0x0dbc  [ 15C59DF20F74A0C2C764B991FED7F4A5, 6E9804775E815F32A4D73C346E627D64A3096525E78FAE3B6E43CFECAE270428 ] ibbus           C:\WINDOWS\System32\drivers\ibbus.sys
10:02:35.0684 0x0dbc  ibbus - ok
10:02:35.0716 0x0dbc  [ 501AEED29B30B32BB50416C1E04380E6, 5488B34F3FE5D3DFEF321C1EC2F1DC38831A06EA5FC0618FEF24367975ACB862 ] icssvc          C:\WINDOWS\System32\tetheringservice.dll
10:02:35.0719 0x0dbc  icssvc - ok
10:02:35.0722 0x0dbc  IEEtwCollectorService - ok
10:02:35.0737 0x0dbc  [ 6F9C31435DD3E3D3BC247212EA144EBF, 05C4A0BD4BABD27783CEFEE6108C1A05911A212189233F09AF1A56BDC60F60F8 ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
10:02:35.0750 0x0dbc  IKEEXT - ok
10:02:35.0768 0x0dbc  [ 498759139F71142888CF7EFA1ABE18C8, 9CD0CD748B143F947B4DEDE39344A8C284717CC8AC97E25827EB73CF10831419 ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
10:02:35.0768 0x0dbc  intelide - ok
10:02:35.0774 0x0dbc  [ DC270DDCDDC2EF65D484A65CC5166222, A88BEAD819ABEFE28B6F9A10586ADCB0EE2A5ED9273F176E9313750609C7892F ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
10:02:35.0775 0x0dbc  intelpep - ok
10:02:35.0778 0x0dbc  [ B4D9C777762B1F7356958B9C0AA93BEB, F11B07FE939A107AB4EED4857854DF269C2D86A80C8507C8B1E95F7805975EDB ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
10:02:35.0780 0x0dbc  intelppm - ok
10:02:35.0783 0x0dbc  [ 22BD83268B80A8C89AAC0BDF46E4EB5D, E7DC0C2E4104B51EA545BA8D0CFF11FD6A15BFD8EE16E546E8FC220853402CB3 ] IoQos           C:\WINDOWS\system32\drivers\ioqos.sys
10:02:35.0783 0x0dbc  IoQos - ok
10:02:35.0786 0x0dbc  [ A49E47A6E1429123F46A7CA9C05AEFC1, FFD68CA46DFAA4954FD76145808E2C74BDC34FFD6979BB3FB6A3EE4DC33CDC78 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:02:35.0787 0x0dbc  IpFilterDriver - ok
10:02:35.0837 0x0dbc  [ 8FBA61B7CB44F136226BE3B346FC6D19, 2190A523AC948B18C2C7B6DC96ABB654DAB471AD5E5E13F79899416E91777AED ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
10:02:35.0862 0x0dbc  iphlpsvc - ok
10:02:35.0866 0x0dbc  [ E0C276985AF968CE295B8E09C121321F, 07B54165E80D4254C29A6CF00CC634E70F190EF0EB8EEF73EC14F38B841087A5 ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
10:02:35.0867 0x0dbc  IPMIDRV - ok
10:02:35.0871 0x0dbc  [ 5D3744E6FDEC1A6FB3FA9B1DD4AF0694, 209BE9FC25C8BF8CE058B7E993B6A902B881380DADC69F5208733077DA7F4382 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
10:02:35.0873 0x0dbc  IPNAT - ok
10:02:35.0876 0x0dbc  [ B18202D72C0EF4B53CEC6F59E3E1B955, 6DA244E6485372C16CF0B38838DC90B48079A85F5D22B0F2F197C8DA37F0A293 ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
10:02:35.0876 0x0dbc  IRENUM - ok
10:02:35.0885 0x0dbc  [ CD04CBCCCB4C0E4BB06B98E0F45C888A, 106B3E823C188BD14328F2BEA28559D2F637C270064B2FD214522FAC4E616F4C ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
10:02:35.0886 0x0dbc  isapnp - ok
10:02:35.0917 0x0dbc  [ 5D90E942C94B20E0F321015C0ABF3EEA, 4110551B172D4A5524DD857D7CB65FAF2594310BE7883D5641BC0DF5EF49C82C ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
10:02:35.0921 0x0dbc  iScsiPrt - ok
10:02:35.0951 0x0dbc  [ DC0DBA5164F657DE2AE94B9D1FF75DA4, 8A98283BB6DA44C55CC3936ACE45FD45B47641684A5C11CBEE007E8B97970279 ] iusb3hcs        C:\WINDOWS\system32\drivers\iusb3hcs.sys
10:02:35.0951 0x0dbc  iusb3hcs - ok
10:02:35.0954 0x0dbc  [ 4192DFE6CA143C0AD8AF42C51A82BECA, 31FB3A261D0D5241CC87EF7DFF8BFC1A1EACE8CEC42138918EC5958DAEE100CD ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
10:02:35.0955 0x0dbc  kbdclass - ok
10:02:35.0958 0x0dbc  [ B63C0DB341DCB46CF7AA259333A737DD, F1B43BA68707F3F99CD31AB2035F5E86CD967AE4E5393928C69861785E960872 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
10:02:35.0958 0x0dbc  kbdhid - ok
10:02:35.0972 0x0dbc  [ 53C79A7FABDAAFD11EAB31963FB2CED7, 357418645DDCEFA5546AE78EDCAE86D50928710CA7A3F65F01CF721AADA36623 ] kdnic           C:\WINDOWS\System32\drivers\kdnic.sys
10:02:35.0973 0x0dbc  kdnic - ok
10:02:35.0982 0x0dbc  [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] KeyIso          C:\WINDOWS\system32\lsass.exe
10:02:35.0983 0x0dbc  KeyIso - ok
10:02:35.0994 0x0dbc  [ 1E99B26BDB9B9C9BC775ED4543558560, 890870A6737B4910735D1B23F714AA73FCCD1C131D135FACBA6909F06D31B3FF ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
10:02:35.0996 0x0dbc  KSecDD - ok
10:02:36.0000 0x0dbc  [ 6198A79011C67497B324798B3D4272CE, C587F7D86837550D07918F6AACF26BF65EBAF7FF57475DC9196B4D011E83AE47 ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
10:02:36.0002 0x0dbc  KSecPkg - ok
10:02:36.0004 0x0dbc  [ 503597D9B72DBD9998F722F12A51ACFC, 9B3585282191163AA70243BAD921ED8725A98454E0D3879E0F671E0E4F56AB4F ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
10:02:36.0005 0x0dbc  ksthunk - ok
10:02:36.0034 0x0dbc  [ ED5AE20C27F27F293C6C61AEC9881054, 4D5BE394D129BD559B0A9D237F3F59CB3D24C15ABDD97AE2E64931D6B9D14FF1 ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
10:02:36.0039 0x0dbc  KtmRm - ok
10:02:36.0043 0x0dbc  [ 50AECF8C21AB2A6428A6E1E10549D8E5, 6BC7C60CF5E8AFB9972619EE1C78357756E9C0A3EC783C3056CEB600DCBB1555 ] L1C             C:\WINDOWS\System32\drivers\L1C63x64.sys
10:02:36.0045 0x0dbc  L1C - ok
10:02:36.0064 0x0dbc  [ C529DA0AD5A21878E318801B024AF8E7, A14E8ADCA33C37B1D256CB4926A19F56D2D19B94EDF314A4ED34A8B5AB62CA5A ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
10:02:36.0068 0x0dbc  LanmanServer - ok
10:02:36.0105 0x0dbc  [ D6D9F4CAFD3F1A7E30AD02E508552CD2, F0D225E5951CFE1D8349F634CC91BDD5B3F9DCF6233CCB965E99BFEAFE642265 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
10:02:36.0110 0x0dbc  LanmanWorkstation - ok
10:02:36.0120 0x0dbc  [ 24881F16D2829764681F5FAE7B86D7D3, 290348CFAF3165847E4B53965D22E9D417EE20FFD23293B5C1855C57E6328599 ] lfsvc           C:\WINDOWS\System32\lfsvc.dll
10:02:36.0121 0x0dbc  lfsvc - ok
10:02:36.0131 0x0dbc  [ 6ED675774BDC3735AB6DA12D29F825CF, 4317C7CF491F4E806975E7A973CFF11CFEE9E94730DDABCC67C3D693691DDDE5 ] LicenseManager  C:\WINDOWS\system32\LicenseManagerSvc.dll
10:02:36.0132 0x0dbc  LicenseManager - ok
10:02:36.0135 0x0dbc  [ DB789F57CE94C827FBFF709CA5ABD29E, 4CA4DD079A63649C36F76A31C4081F11F5CF6574AC573B63EF930DB19B1D1C95 ] lltdio          C:\WINDOWS\system32\drivers\lltdio.sys
10:02:36.0136 0x0dbc  lltdio - ok
10:02:36.0161 0x0dbc  [ FECBC6C4981772E5D0F517B34A5496EE, 15DB097BFB221B91E580E5CD1DD6B34A9A2C78A1A6FCE4162A855BB4AFE673E9 ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
10:02:36.0166 0x0dbc  lltdsvc - ok
10:02:36.0193 0x0dbc  [ 24C87BDC66AB192FEB273BEE5FD5AA38, BFAAE1F2450DEBD1A14877C046C6EBA91014DB0B5D0FB95EC14CB714B773B3C0 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
10:02:36.0194 0x0dbc  lmhosts - ok
10:02:36.0220 0x0dbc  [ BF22ACF4CF3734D61357E67F0521BC03, EDDFBDC4BE29BF26904B2DF7074F471711238469CDDBED1CA253A49B993F53DF ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
10:02:36.0224 0x0dbc  LMS - ok
10:02:36.0229 0x0dbc  [ 3BB39166E446D456C277C17DFEA3DAC6, 1A08E1D017BBCE91E508D876835FA7AD2DA0859A8CFE8F8F31B4F12B48E2573D ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
10:02:36.0231 0x0dbc  LSI_SAS - ok
10:02:36.0256 0x0dbc  [ 25CF625E46307A5D6674C8DFA1A289AA, 1D00EB70B6B0157013A7C15EF194F51B8596612066EF31B337D8134D6BD0BBBE ] LSI_SAS2i       C:\WINDOWS\system32\drivers\lsi_sas2i.sys
10:02:36.0258 0x0dbc  LSI_SAS2i - ok
10:02:36.0271 0x0dbc  [ 722C52B12EA4C198D56994934C9DDAB6, 5F4AB818251C770821BAF41C19B1C483A31CCC28EB96F2084D4092E33EAF906B ] LSI_SAS3i       C:\WINDOWS\system32\drivers\lsi_sas3i.sys
10:02:36.0272 0x0dbc  LSI_SAS3i - ok
10:02:36.0275 0x0dbc  [ 3371FF1D5D745C3306C6A2C4E99C25A9, DD6F0099001501BAEDDF8411FBCD930BD6472662D209199249203CB2FDAA23FB ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
10:02:36.0277 0x0dbc  LSI_SSS - ok
10:02:36.0307 0x0dbc  [ E2EEF074F5260378F9AAFBCD592319A3, DC56674A08FA03FA7AF7DD8B3CC55D8324D1CB51546092A990A935FF9AB48A3C ] LSM             C:\WINDOWS\System32\lsm.dll
10:02:36.0316 0x0dbc  LSM - ok
10:02:36.0320 0x0dbc  [ C692B9C0352315417CF49FFA664957A3, C2D4F9A936B809889F7C51FE48214A1923175913A6C5D0B72D3BA469214B5174 ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
10:02:36.0322 0x0dbc  luafv - ok
10:02:36.0334 0x0dbc  [ 6A4C75FD28F60062FEA3DF3B15D956C0, 4FC58F3320D33BDACCF759A50C623A3E58E4320749E6691B397DF0C8EAAA8A6F ] MapsBroker      C:\WINDOWS\System32\moshost.dll
10:02:36.0336 0x0dbc  MapsBroker - ok
10:02:36.0347 0x0dbc  [ A8D28D5B3E2A528D1EF0E338E44F2820, 40D1EFDD253BC0A0D984A5AD8A2721C3E83B15F14D538204714E6D5B00D92CEB ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
10:02:36.0347 0x0dbc  MBAMProtector - ok
10:02:36.0407 0x0dbc  [ 301E3FDFCF33640BB8763BA444BC5093, 362B069BB9A313A06B376CE27E6F7F8D569F6CA39A8ABC96D9DF231EE462C604 ] MBAMScheduler   C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
10:02:36.0449 0x0dbc  MBAMScheduler - ok
10:02:36.0488 0x0dbc  [ 83C982A395D00BAFF6515FB38424EA76, 0E1B66F84A483D47550347D4A9426B95A066DB5104C4284F606A16768A11DB0C ] MBAMService     C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
10:02:36.0511 0x0dbc  MBAMService - ok
10:02:36.0515 0x0dbc  [ AE757332EA130E94E646621CC695B52A, E688CF34A4206F32B5C7301119D8459C3456FC178FA1DAA6215CE15F2C824C43 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
10:02:36.0516 0x0dbc  MBAMWebAccessControl - ok
10:02:36.0524 0x0dbc  [ B2ED9A7A5587A128A0EFD0DBE7662E95, 63070AAFD44E3CD2A4B262DF27222B103455A4D8C2E45914502BFA03D84D32C9 ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
10:02:36.0525 0x0dbc  megasas - ok
10:02:36.0542 0x0dbc  [ 083F71488E6780A67290273180256EA5, 5F43CE66F5A48850BABB70F4D219FDD002F9BC2B2F0E58E66FE2C492AA335E50 ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
10:02:36.0550 0x0dbc  megasr - ok
10:02:36.0574 0x0dbc  [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64          C:\WINDOWS\System32\drivers\HECIx64.sys
10:02:36.0575 0x0dbc  MEIx64 - ok
10:02:36.0588 0x0dbc  [ 5907A10D46747A2B6DBFD6A198254DC2, 6C283E9DC75C7ABFD270D6FABBF4F54628A1786E7CE2F603BF664CBB9E4FE583 ] mlx4_bus        C:\WINDOWS\System32\drivers\mlx4_bus.sys
10:02:36.0597 0x0dbc  mlx4_bus - ok
10:02:36.0600 0x0dbc  [ 91ED6F0EDF4158D63C52194F17D4F42E, ACF543978E253650C167C6C370699AEA7340EBCECF7CAB904CBDD334D1BD6928 ] MMCSS           C:\WINDOWS\system32\drivers\mmcss.sys
10:02:36.0601 0x0dbc  MMCSS - ok
10:02:36.0603 0x0dbc  [ 2C4CC9F6ADBED5A6D131FDB97A78FF68, 04DC76E3F0959C0A9B00DF2133B075194FB7DCBD76832B9D25B0E37223D300DC ] Modem           C:\WINDOWS\system32\drivers\modem.sys
10:02:36.0604 0x0dbc  Modem - ok
10:02:36.0612 0x0dbc  [ D8DB13529C8AD6FBAF8E2F382024374F, 13025035C479E2EF76EDCB90D83BE65B4ADD9F7000AD31FEAD628D5DDFE69158 ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
10:02:36.0613 0x0dbc  monitor - ok
10:02:36.0616 0x0dbc  [ 2DAAF1EE1C30F2FCF59851A64ADA0422, 08CD801E63E2862DE058CD732C3DB3D87B1A2898732365440E3F8919932E96FC ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
10:02:36.0617 0x0dbc  mouclass - ok
10:02:36.0620 0x0dbc  [ D30FE074503283829ED194BCAE6239C3, A3A127381ECC798417D01F6B8A1894EED7D71989047BC4D1D74D0E7C8394AD65 ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
10:02:36.0620 0x0dbc  mouhid - ok
10:02:36.0643 0x0dbc  [ D5EC9413527B286CFEEB0294C53ABB95, B094C611F5A7E33D2F8667B2A4D6260E1D57BD135867F984EE5B674C7EE72B95 ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
10:02:36.0644 0x0dbc  mountmgr - ok
10:02:36.0670 0x0dbc  [ 2E1F005987F6C31ADE25B67C2D172DF6, 7DDEA05F80158FECCF37A31F056D04E8E76115B178557450056DEC516D3027C8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
10:02:36.0672 0x0dbc  MozillaMaintenance - ok
10:02:36.0674 0x0dbc  [ 989A1BBD9C49B107B4A47D06E6827A69, 62D90B22AE13AC84324DFD5FEBA595813AD07469B7FEC41380CE223D93020CCA ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
10:02:36.0676 0x0dbc  mpsdrv - ok
10:02:36.0696 0x0dbc  [ 51D4584BC245AF1B679CAF01669ACE23, AA0BE0D216A00113F5C07DD95CBC15C4448BF2CBD4954CF16D1E9689455447DB ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
10:02:36.0712 0x0dbc  MpsSvc - ok
10:02:36.0758 0x0dbc  [ 5B37FDC07159FE9F5F52399F7D78F60B, A0C20EB9A7918395A13A5E21917887DDC9897C475D33091B518354163CAE108A ] MQAC            C:\WINDOWS\system32\drivers\mqac.sys
10:02:36.0761 0x0dbc  MQAC - ok
10:02:36.0785 0x0dbc  [ C1E74DD1D84861D8F12FF8BC0BA11975, 5912A0455C840F5C8AD6383823C9C7DE6FF8B5CAF1B72EA181864999891EAF30 ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
10:02:36.0787 0x0dbc  MRxDAV - ok
10:02:36.0795 0x0dbc  [ 1DF2C5FD2710A13B07E663A12F0E0EEA, 8EBCA9269F52A5CF602F5DE2B0C2AB2BFD82F415465DBB74C73D43F321D9FD46 ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:02:36.0800 0x0dbc  mrxsmb - ok
10:02:36.0806 0x0dbc  [ 185932B1149BD707F8A13174CDAB365B, BC26CB10DD6E81A94477564444E91F76D47E685E897BD77B9C1393F0D31AB718 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
10:02:36.0810 0x0dbc  mrxsmb10 - ok
10:02:36.0816 0x0dbc  [ 99E24D4DBACBC569833B9A67710D65E7, 93BC765E7B6E19E83AFF783DE8080A80A1D69A406B496F1E36C47AE6E86AFB76 ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
10:02:36.0818 0x0dbc  mrxsmb20 - ok
10:02:36.0865 0x0dbc  [ 6F8BE4FB6262012E61BBADB5444628DC, E87489207AA48106C08E4BADDD8D66D14BC9DD6AD2A4CDD880BA655932CDDE60 ] MsBridge        C:\WINDOWS\system32\drivers\bridge.sys
10:02:36.0867 0x0dbc  MsBridge - ok
10:02:36.0892 0x0dbc  [ 283BDF3602F442336DAF242BDD07FB98, 185F046B6AA24FFD1567F00AA70357C82002FF627E329CEF9B926645A6DDB172 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
10:02:36.0894 0x0dbc  MSDTC - ok
10:02:36.0898 0x0dbc  [ 7C55F1751CAC199680D4489D1EE46544, 967EC8137D321F6139C3382D19A338FD97A3023EB654747AC57C2008BE4AF677 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
10:02:36.0899 0x0dbc  Msfs - ok
10:02:36.0921 0x0dbc  [ 988588C16A53C2581488C15FF18934BF, F021FD31163CB5C7012CF96EF642C5E551708C835039075268F4CBED002D441D ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
10:02:36.0922 0x0dbc  msgpiowin32 - ok
10:02:36.0944 0x0dbc  [ 09622DBC24D0178F15DB8461BB6970DF, C0B3F9B2219AAF87E417EE9FF54C64B8AD9944E101EA79B5DC81D99E8C2ECF30 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
10:02:36.0944 0x0dbc  mshidkmdf - ok
10:02:36.0963 0x0dbc  [ 34BB07495C0159BE4189841E16F3BC2F, 264B5735D9A68C85BEDE363D4C0AE1FCC381B39EA884B4BAEE185EB8A873184A ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
10:02:36.0964 0x0dbc  mshidumdf - ok
10:02:36.0966 0x0dbc  [ 7BF3F0DA362C053918F5F2EC43CE39E2, AA773FA3F83C0C572160D3D0286A697DC628FF4F3655EF21D01C6D1B7BE5DF1C ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
10:02:36.0966 0x0dbc  msisadrv - ok
10:02:36.0993 0x0dbc  [ 669DA2006C0B9D882D2014617E1E88F5, 090F558818806CAEF6C81D369F8BFFE4A8240295EF37CAA7102A18F4CD20D868 ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
10:02:36.0996 0x0dbc  MSiSCSI - ok
10:02:36.0998 0x0dbc  msiserver - ok
10:02:37.0007 0x0dbc  [ B2D0FD21FE67D6434769CC6F7A7883CA, B2368BD72952C6EE6DAF1AA006DF575A3019E4721BEFB108D3DF1B9E07B2BC5D ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:02:37.0008 0x0dbc  MSKSSRV - ok
10:02:37.0010 0x0dbc  [ FB3801F176376286A3F8F20FFB8CDC53, EEF89081665B9BBA93AE9F5912C40C1698E8BA8DBBCCC3BBE0BAB5A86B7E05D4 ] MsLldp          C:\WINDOWS\system32\drivers\mslldp.sys
10:02:37.0012 0x0dbc  MsLldp - ok
10:02:37.0042 0x0dbc  [ 85EBF0A28B8B132B67C84C6CE5EBAC29, D0012CF4822A3D16F7BF61C94C5650DC1ED310A0DD1A3333465D28C73D40ECDB ] MSMQ            C:\WINDOWS\system32\mqsvc.exe
10:02:37.0043 0x0dbc  MSMQ - ok
10:02:37.0070 0x0dbc  [ 8CBDF0E7A6CD824352F37A682A33DF7E, 4567FF4C73648FF26EA68EAE2B524B767099789086C158875C97768C77B81359 ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:02:37.0071 0x0dbc  MSPCLOCK - ok
10:02:37.0072 0x0dbc  [ 33E5B6261D69ACD4948A5C64B9D8F29F, 1D32340640312372E52E59AFB5DB872E6F9DFE3AC16B56F9D928AE230DA02B8A ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
10:02:37.0073 0x0dbc  MSPQM - ok
10:02:37.0080 0x0dbc  [ 557DF8C0DBBBF518AC395C6EB1B179AE, B294B5A7882C0C60D91FB853FC87505B6E7638D25E360FDAE002AEBB714ED471 ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
10:02:37.0084 0x0dbc  MsRPC - ok
10:02:37.0088 0x0dbc  [ 0A29AFA668F5DD50482A98ECE70C77A7, 4C1F23B062361D97B1C8D864AB227E5F398F774A99B5E60A1149A4F78D5BEC20 ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
10:02:37.0089 0x0dbc  mssmbios - ok
10:02:37.0098 0x0dbc  [ 30CE30877FD5BFADE74FA27D7829BF89, B5EA1F8C91E75722DB1E3E2172C8607FEDBF35BDC4141258A3E6D29D8B0E193B ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
10:02:37.0099 0x0dbc  MSTEE - ok
10:02:37.0101 0x0dbc  [ 13D88C0B8A2FA001CD72D454955A6974, 19DD5C8BBD07B64F355737436BF702FFC209D84A8855D2224D3377E233D4BB34 ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
10:02:37.0101 0x0dbc  MTConfig - ok
10:02:37.0105 0x0dbc  [ 00C7F0F06A0A48B9CDB6B3AC3BE288F0, BF469A2DDF495ACB9FEE9063C6680C95BCC8686682C9EDAE6D1893D4058E8AA6 ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
10:02:37.0107 0x0dbc  Mup - ok
10:02:37.0113 0x0dbc  [ 8E237527CA260C71D39ED4081BDF3419, CA52DD174C756A404B1FAD3F2A70E50085C2820BF12369259F61DA649101A179 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
10:02:37.0114 0x0dbc  mvumis - ok
10:02:37.0124 0x0dbc  [ 48D0587A8302FD3302CFE6F59F7345B0, 26D48AF3F7FF4867E179347CD635055DEA9A751C6C61CE2C391A7F74FC0DC1DE ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
10:02:37.0131 0x0dbc  NativeWifiP - ok
10:02:37.0162 0x0dbc  [ 11BE8117653C542D264788A700AC5BFE, 87EAAC2DF62BB26619DA72950F5EE41DCA1DBDF93F098647F9D200D588F14003 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
10:02:37.0165 0x0dbc  NcaSvc - ok
10:02:37.0171 0x0dbc  [ 286C6276B2BA86F29A0F687D05466277, AC8551536F37717A0ACE4A260F5696D1276F7AC62F669E8F12AA158DD86F71A5 ] NcbService      C:\WINDOWS\System32\ncbservice.dll
10:02:37.0177 0x0dbc  NcbService - ok
10:02:37.0181 0x0dbc  [ C55DA734ED2A831E0BACAAFA01CEB7FF, 9D989B03D07BBAD287B317D238691664B0694331D6A69B7A1AA3D8AB7D1323FC ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
10:02:37.0183 0x0dbc  NcdAutoSetup - ok
10:02:37.0201 0x0dbc  [ CF8296427834CF8BBB3EE1444C17362D, 6EFBE1F015DFFA0704C66DF5C88089DD5771E1542018E4AE98389CFF3D0B2309 ] ndfltr          C:\WINDOWS\System32\drivers\ndfltr.sys
10:02:37.0202 0x0dbc  ndfltr - ok
10:02:37.0253 0x0dbc  [ D43EAFF4887321A07D9F9A9DD7225E07, CF29073BBABE12D56744B041118F15C6C08CB89EF12413E359A6875C90FA383F ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
10:02:37.0279 0x0dbc  NDIS - ok
10:02:37.0282 0x0dbc  [ A0719D1EBA971DFC5DF5F7CC010385F8, A982487D3A74E66F3C29AAA5B46CE9A0969F07F267DDEFE58C58573573AB0024 ] NdisCap         C:\WINDOWS\system32\drivers\ndiscap.sys
10:02:37.0283 0x0dbc  NdisCap - ok
10:02:37.0286 0x0dbc  [ 0C557932CCCC65AEB37326DD36504527, C0AF3066DEE4BCC32DB30CCC16B7A91442A8383BB36C7C4E3CC0A5EFE0FAAA9B ] NdisImPlatform  C:\WINDOWS\system32\drivers\NdisImPlatform.sys
10:02:37.0288 0x0dbc  NdisImPlatform - ok
10:02:37.0290 0x0dbc  [ 56F9345D1945826135FBAB7589592B1F, 6BC2A5900076B917823C7392C582A2648D0C8000F2F65D309D5B48E36D4FB4D6 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:02:37.0291 0x0dbc  NdisTapi - ok
10:02:37.0294 0x0dbc  [ AADFC340939D99E5D756E713E1D452EB, EFEFDBB2188DE82C2C5E67929861B269FD4C127D34D1DE6D0596ABC33E2C2B51 ] Ndisuio         C:\WINDOWS\system32\drivers\ndisuio.sys
10:02:37.0295 0x0dbc  Ndisuio - ok
10:02:37.0297 0x0dbc  [ 312DFD787D99D3BF1427B0388BC04F71, C082CA1F332AD57FF2100748518D3D7B3D0F1B042F69BD7401C44B77AFE97462 ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
10:02:37.0298 0x0dbc  NdisVirtualBus - ok
10:02:37.0315 0x0dbc  [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] NdisWan         C:\WINDOWS\System32\drivers\ndiswan.sys
10:02:37.0318 0x0dbc  NdisWan - ok
10:02:37.0323 0x0dbc  [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] ndiswanlegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:02:37.0325 0x0dbc  ndiswanlegacy - ok
10:02:37.0341 0x0dbc  [ 6E98F16983C4AE8703FF9F90AB4B31DD, BB8BD5DB4B5FB31F3A257747C27CBEFA4B7837EC5C0CF3D4F408E626E4003F4C ] ndproxy         C:\WINDOWS\system32\DRIVERS\NDProxy.sys
10:02:37.0342 0x0dbc  ndproxy - ok
10:02:37.0346 0x0dbc  [ F1B7CC77F412C8D45B2DDCF76EDA4F9D, 25F2AA76E675D9BCC0B1FD47AFEC6DF2D0B47E7B1C8AF6FB27C1ED2FB902961A ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
10:02:37.0348 0x0dbc  Ndu - ok
10:02:37.0365 0x0dbc  [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
10:02:37.0367 0x0dbc  Net Driver HPZ12 - ok
10:02:37.0369 0x0dbc  [ 824FDC990A3F79069BE468A132EB6888, D09F7A9EC04E37DA504CE54EEC25C312B407B6A8B214CBB074BEB50DE420F52A ] NetBIOS         C:\WINDOWS\system32\drivers\netbios.sys
10:02:37.0370 0x0dbc  NetBIOS - ok
10:02:37.0382 0x0dbc  [ F0D791348AD254360CC3C3E501CCB745, E4CAB4D3C2CD3169731283B00DEBFE26438BB66A3F0D78BDB68E876A14FC7070 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
10:02:37.0386 0x0dbc  NetBT - ok
10:02:37.0398 0x0dbc  [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] Netlogon        C:\WINDOWS\system32\lsass.exe
10:02:37.0399 0x0dbc  Netlogon - ok
10:02:37.0426 0x0dbc  [ 7C8A7380CBE45DFD3DF118D8601499A7, C137280B7696F8CF4258BDC8B241C66BB3AA5708C5410D85255E46C7E8284826 ] Netman          C:\WINDOWS\System32\netman.dll
10:02:37.0431 0x0dbc  Netman - ok
10:02:37.0456 0x0dbc  [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetMsmqActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:02:37.0458 0x0dbc  NetMsmqActivator - ok
10:02:37.0461 0x0dbc  [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetPipeActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:02:37.0463 0x0dbc  NetPipeActivator - ok
10:02:37.0473 0x0dbc  [ BBE9D72EFC7BD66B28309C3607683DBA, FC372EFBC650CE0BDB117858D840A1FB361947B1C67D1DD16BABA95D0286856A ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
10:02:37.0481 0x0dbc  netprofm - ok
10:02:37.0491 0x0dbc  [ 24B38B871128BB08849701CEA722DA1B, 7E62AE8570E7DE83F79012B4D1492DD03496C0678F0BD98DC9C0EFF66D1B8D13 ] NetSetupSvc     C:\WINDOWS\System32\NetSetupSvc.dll
10:02:37.0496 0x0dbc  NetSetupSvc - ok
10:02:37.0506 0x0dbc  [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:02:37.0507 0x0dbc  NetTcpActivator - ok
10:02:37.0511 0x0dbc  [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:02:37.0512 0x0dbc  NetTcpPortSharing - ok
10:02:37.0531 0x0dbc  [ 46E862DA2CF8F351375EF537276B69B5, AC0FE0977E56380849DCE668AC0F5AF183AAB115ED84ADD964E390CC0BEDF6D3 ] netvsc          C:\WINDOWS\System32\drivers\netvsc.sys
10:02:37.0533 0x0dbc  netvsc - ok
10:02:37.0568 0x0dbc  [ 88CE4AC85F36B6347C1D820FA373B998, E10B5DF8883928A2062FC6180DE4CF0DE33C68622C2E3E4E1AFC56A0682F8E75 ] NgcCtnrSvc      C:\WINDOWS\System32\NgcCtnrSvc.dll
10:02:37.0573 0x0dbc  NgcCtnrSvc - ok
10:02:37.0575 0x0dbc  [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] NgcSvc          C:\WINDOWS\system32\lsass.exe
10:02:37.0577 0x0dbc  NgcSvc - ok
10:02:37.0584 0x0dbc  [ D5B50FCE0B749FC82BD8FD3A79FF623E, DB5E21011E020C08A5BE2B250BDEF9ACEA9891D6B7022BB9AAA5C6B92A4C87F8 ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
10:02:37.0589 0x0dbc  NlaSvc - ok
10:02:37.0592 0x0dbc  [ 41557BE174E9EC6AC703A8A4ADBC6650, 8CF6DF3FDC3C7C44B32851538A67BF86A54AB6444A424D7A20B7A9A94B4158D8 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
10:02:37.0593 0x0dbc  Npfs - ok
10:02:37.0596 0x0dbc  [ AC3F70FCFBCE97AA2F12BA43EE13B86E, D0AC50FB022C0F3031531CEE210D47FC3244C6FB55FAAD4AAB04081F0A21DAE4 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
10:02:37.0597 0x0dbc  npsvctrig - ok
10:02:37.0599 0x0dbc  [ 0AF4872D3D6FD3A030E836DAC2B3EF2D, 03EE7B6FAFC0BB5C26793BC5FF8BD1019AC96B3104688009C1E062C3F4F34D6D ] nsi             C:\WINDOWS\system32\nsisvc.dll
10:02:37.0600 0x0dbc  nsi - ok
10:02:37.0602 0x0dbc  [ 66A98C407085B8920DF1E6D722F1ADB8, 3FE307E4A9E41B08E0453507E50D6D0C67FA6F4245A863D90181463C749C83B5 ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
10:02:37.0603 0x0dbc  nsiproxy - ok
10:02:37.0639 0x0dbc  [ 466EC5659C02ED53DBD47DC1BC2B8086, 1F35DE75386F7D029C01D67B09D5E5157141C6892858885C11972CE73D6078AC ] NTFS            C:\WINDOWS\system32\drivers\NTFS.sys
10:02:37.0681 0x0dbc  NTFS - ok
10:02:37.0688 0x0dbc  [ 383E546EF4982262A0EF6CC2B6E9D525, 3C6C90B62E8EB094E6928C388E5081A3F73DF87B0F34F716B72EA7B6EF71FBB7 ] Null            C:\WINDOWS\system32\drivers\Null.sys
10:02:37.0689 0x0dbc  Null - ok
10:02:37.0714 0x0dbc  [ 624C1453F9109D98F7E2612DAD76BBB1, 4578623BF7EA1AF42038070AA3A1A9AC4A9582132ABBFAD9C3A99F46308DE8C3 ] NVHDA           C:\WINDOWS\system32\drivers\nvhda64v.sys
10:02:37.0717 0x0dbc  NVHDA - ok
10:02:37.0912 0x0dbc  [ 057196B29F8F0638BB6C15F31A18000B, 66A2EE3EA2DAAF6BBFA20A492FF41DA8D8F682E77D10DAE0EE771093D3F5A334 ] nvlddmkm        C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
10:02:38.0089 0x0dbc  nvlddmkm - ok
10:02:38.0100 0x0dbc  [ 466F875F1D4C6ABB46AF28007009237C, 26F5A5579737A7CF2267F79DDE5A551149C682D5FD24663B53FCEC5AA6B448CE ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
10:02:38.0102 0x0dbc  nvraid - ok
10:02:38.0127 0x0dbc  [ 76F19EAE7A52CBAF7B8EC428BE6E0DA0, CF1E55D92FA32744A20AB75D466A3E05E6FACF4694F9265C41F5C27C1E7243DC ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
10:02:38.0130 0x0dbc  nvstor - ok
10:02:38.0174 0x0dbc  [ B9E88BE0BFF802A74346077D95090CBF, EBE41F1E236465EA01448258ACF83643BF434DEC91A86813A3A1CBB789B3EF29 ] nvsvc           C:\WINDOWS\system32\nvvsvc.exe
10:02:38.0184 0x0dbc  nvsvc - ok
10:02:38.0188 0x0dbc  [ 0D0CB77D74B38E0EC62341C19E469D8D, A05D3CC67FEEB2FD219BFAA34BF98CB3F3718042124AF28F0E9FDFB9F132DD76 ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
10:02:38.0190 0x0dbc  nv_agp - ok
10:02:38.0232 0x0dbc  [ EA3FFE8617B9FCA1620AD9876E92F4F1, 68D5143CA71D10A2BB44E29B3C76580596669D0624076BCF6CCBA7AF3140538E ] OneSyncSvc      C:\WINDOWS\System32\APHostService.dll
10:02:38.0236 0x0dbc  OneSyncSvc - ok
10:02:38.0308 0x0dbc  [ CAFB5A95883158A0579DED2ED5CB0627, B23F7D19142DD3544F96ADB36F152F4EA7F6C524A1281EC26A2B95D7D044822C ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
10:02:38.0313 0x0dbc  p2pimsvc - ok
10:02:38.0344 0x0dbc  [ 3612CE3432E0A2BE0081E6B488ACF84C, F1A641735FD374CA293FB98FADA2C41E2033B17FECCA3B6D225D0E591AFFF413 ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
10:02:38.0350 0x0dbc  p2psvc - ok
10:02:38.0353 0x0dbc  [ 38F1AE32339731F6E5A7281AE8042545, 308954518C45D29FC199525F0CC7FE4EA805322EC0B871DDDCBEEC15355514C8 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
10:02:38.0356 0x0dbc  Parport - ok
10:02:38.0359 0x0dbc  [ 707889D2F95AAE8C9DD254D8767AD908, BE7BD94728D7629F8B7567523FFB42B8979941CEA2EA03E11BFCD51CF119FC27 ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
10:02:38.0361 0x0dbc  partmgr - ok
10:02:38.0371 0x0dbc  [ A09B0D8F9F0FC17EBCE6481AC9FD5CDF, 8E8D68992D98CF3DBC4B70C7902B3EC28A1E2DA8D4DB38F0AD9D52B1A5A1D40F ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
10:02:38.0378 0x0dbc  PcaSvc - ok
10:02:38.0401 0x0dbc  [ 2834089EA4E550FF3B96E61FB4AA34ED, D25DAB47F9778675E984E0738D2014024C2758D52D7E071167A12FF466B7898E ] pci             C:\WINDOWS\system32\drivers\pci.sys
10:02:38.0405 0x0dbc  pci - ok
10:02:38.0408 0x0dbc  [ 3D587E4295B11B8480F7ACB09A89D718, 8C3BD62B3451E1B2E7197EDAE381785406DF86C03BEEC486602C642FDD37DBC1 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
10:02:38.0408 0x0dbc  pciide - ok
10:02:38.0412 0x0dbc  [ B8F07002B5F1DA23CFF979C2806B09F3, AD5C589A02BB8185AA070420BF30E78BC8BE3C6F9B0F66319A8CA05B70A5ED32 ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
10:02:38.0414 0x0dbc  pcmcia - ok
10:02:38.0465 0x0dbc  [ AD4B93DCD6E9A4D224ACF397115DBFD3, D0B6CEE58B9281962E952F5109D329A193DB640EF5A741A5FC3B3D4BCDA21B5D ] PCPitstop Realtime C:\Program Files (x86)\PCPitstop\Super Shield\PCPitstopRTService.exe
10:02:38.0473 0x0dbc  PCPitstop Realtime - ok
10:02:38.0495 0x0dbc  [ 4A99A5DE0FEB7C7E56D751DE847BD2A5, 10862BE421F9F6DF0BC6043326933F23495695B6E532CA792013FCF490E5D504 ] PCPitstop Scheduling C:\Program Files (x86)\PCPitstop\PCPitstopScheduleService.exe
10:02:38.0497 0x0dbc  PCPitstop Scheduling - ok
10:02:38.0509 0x0dbc  [ FF588077D0C6AC2EA3FCBF1903CE08D0, 64BE1646FB6D8CC902B6F386255F7C0420E3C334E14DECD527DD541B43A1DCD6 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
10:02:38.0510 0x0dbc  pcw - ok
10:02:38.0513 0x0dbc  [ 5A4426450501534666F9E6157E258A0B, 2735EE7C5581D2FF5454662623BE94D08043C894580D540F0E5D3E21C7D7EC45 ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
10:02:38.0515 0x0dbc  pdc - ok
10:02:38.0522 0x0dbc  pdfcDispatcher - ok
10:02:38.0554 0x0dbc  [ 688F47C342E1BBC87A48AB71D316233E, CE99AB67C7E7A11AC69C2F4513AEBDACA385BA7F8CC49BE6313CE04ED404A0E7 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
10:02:38.0564 0x0dbc  PEAUTH - ok
10:02:38.0606 0x0dbc  [ 303D2C90139ABFC1D12E279F0F101710, CE02E335A72011004395DC635EB819B3ED8D00041B9C59024DE246366AF00559 ] PeerDistSvc     C:\WINDOWS\system32\peerdistsvc.dll
10:02:38.0648 0x0dbc  PeerDistSvc - ok
10:02:38.0660 0x0dbc  [ 189265498945593D5256CFF7FEBB9665, 9CB88CC3C726BFE6EDCE8D9E4544306AACD3FB9E969E3A438D9FD533F25C1281 ] percsas2i       C:\WINDOWS\system32\drivers\percsas2i.sys
10:02:38.0661 0x0dbc  percsas2i - ok
10:02:38.0673 0x0dbc  [ 9B86965114F6831A5130EFE6657B17D9, 4C5B657DB9A9F96BFD3EAFA756ED60D911EB58857C439F5FA6E495A473ED1145 ] percsas3i       C:\WINDOWS\system32\drivers\percsas3i.sys
10:02:38.0674 0x0dbc  percsas3i - ok
10:02:38.0723 0x0dbc  [ 8A5A52C855FB5BFEF019AE9938AEA8AE, 77CB8A09B209DB5895319BA9D073A67148926E22C47836343050DFC178AFAEEE ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
10:02:38.0724 0x0dbc  PerfHost - ok
10:02:38.0753 0x0dbc  [ 42172DDE99D9F2AB3B0739506699A566, 6B0FAD656A24787E9429EA89F7DC03CC535D8E5D093378F93164ECADCEE5CFDF ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
10:02:38.0758 0x0dbc  PimIndexMaintenanceSvc - ok
10:02:38.0799 0x0dbc  [ 82FDEC2A262728F62F2111A84CC04B16, A1FCE38D4F55F10BB9B3BFB7D9E3EF7C27D499D9C8882218C8A9A73487798188 ] pla             C:\WINDOWS\system32\pla.dll
10:02:38.0823 0x0dbc  pla - ok
10:02:38.0849 0x0dbc  [ 7B3DA16FAA498838BB457E0B7E380EDF, B73DCFFA60886F10765E4B76A58CFF18C08CAFEE620700361FC8FEC7E80B5958 ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
10:02:38.0851 0x0dbc  PlugPlay - ok
10:02:38.0871 0x0dbc  [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
10:02:38.0873 0x0dbc  Pml Driver HPZ12 - ok
10:02:38.0876 0x0dbc  [ F1E9C35A8DFD4D64382CFB9019A950F9, 24E0381C6909F9876D6DC4697DC6405FE18DF91531891B2CCA6DB0191B9C6DF4 ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
10:02:38.0878 0x0dbc  PNRPAutoReg - ok
10:02:38.0884 0x0dbc  [ CAFB5A95883158A0579DED2ED5CB0627, B23F7D19142DD3544F96ADB36F152F4EA7F6C524A1281EC26A2B95D7D044822C ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
10:02:38.0888 0x0dbc  PNRPsvc - ok
10:02:38.0915 0x0dbc  [ 62C0BD179961132EF2C5B952210C11F5, 2473FBB3619D0DDA229D4BEC30CEFE7497C27ED3844A5B7655F6F2D328FEAF61 ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
10:02:38.0921 0x0dbc  PolicyAgent - ok
10:02:38.0931 0x0dbc  [ 6390391EDFC43DD11CE9E6AADCAC20EA, C8BC222FFBB9E47489D16BB5248E0E2E594011C46CFF71F5DBCC4D5CC6788098 ] Power           C:\WINDOWS\system32\umpo.dll
10:02:38.0934 0x0dbc  Power - ok
10:02:38.0959 0x0dbc  [ 1433EB7908E5E1E20FFD50E4126C3484, 34D81680C8F2F2C5892FC0E0A6DFCBB241AFF493267A1FE182ED28AE9F712456 ] PptpMiniport    C:\WINDOWS\System32\drivers\raspptp.sys
10:02:38.0961 0x0dbc  PptpMiniport - ok
10:02:39.0064 0x0dbc  [ 12E2582F69ACA40A6BAE91DA578CBF34, 648C6394763906AA4163976DA2C3308F8B706486D9D8F16258CB1D61C2929930 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
10:02:39.0124 0x0dbc  PrintNotify - ok
10:02:39.0148 0x0dbc  [ 22DE54C3974E4FD98F61D095C22C59B7, 64E78D6DEC4A28ABB0A23F2CF078459D81796EC79235AE45976ABB4F72B1D1E6 ] Processor       C:\WINDOWS\System32\drivers\processr.sys
10:02:39.0150 0x0dbc  Processor - ok
10:02:39.0181 0x0dbc  [ 27D0B024BB356C6BEB1214B61E47DE02, 8CBDD62E243CC652F2197AE83DEDD21D91D2792558A6D7D1CC680B37607DEF4B ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
10:02:39.0186 0x0dbc  ProfSvc - ok
10:02:39.0190 0x0dbc  [ EDD52C352CBAAAD13FD7BD5DCEA309B3, EC7D294B23FD5C309E5C4C455896937B85DC615E1B36C9F8F3BDC90E75EBF9CF ] Psched          C:\WINDOWS\system32\drivers\pacer.sys
10:02:39.0192 0x0dbc  Psched - ok
10:02:39.0198 0x0dbc  [ 87B04878A6D59D6C79251DC960C674C1, 3EB8DB0624E646F0A65D0381408D35CF9FDC5ABFC30DF6431F4070A8EB68447C ] PxHlpa64        C:\WINDOWS\system32\Drivers\PxHlpa64.sys
10:02:39.0199 0x0dbc  PxHlpa64 - ok
10:02:39.0230 0x0dbc  [ DD3FF2053356D11C785999BBC633F3E0, E9A5B7C657F4523E5DEF7AEE7ECFCC94E911FC65F1D491BEF01239F357B8D8E0 ] QWAVE           C:\WINDOWS\system32\qwave.dll
10:02:39.0235 0x0dbc  QWAVE - ok
10:02:39.0237 0x0dbc  [ 51590F442C6E5D43244BA30DDB0CE79D, 9C7FD0A19753C13FD4A27EBFD60703A2414D5A2F6F451F0B32769C8D7C953980 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
10:02:39.0238 0x0dbc  QWAVEdrv - ok
10:02:39.0256 0x0dbc  [ E951E70019865B06126AF850BCCA2026, C590DE38C7603149AFA0271D57EEBAF956F18F50584FCF04BC2C8D8CEC5C5932 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:02:39.0256 0x0dbc  RasAcd - ok
10:02:39.0286 0x0dbc  [ 0BF8607133AE264BC3C41A5BAA5FFB7B, 9A4F6AC6013AB5C2A99BCFC2CCF161DD225DE8D85D61579655ADBF04A4383A61 ] RasAgileVpn     C:\WINDOWS\System32\drivers\AgileVpn.sys
10:02:39.0287 0x0dbc  RasAgileVpn - ok
10:02:39.0305 0x0dbc  [ FE0976379F9E7DB6F7945FCEB88C7E29, BA331CE55C02E86478714DA87FAC547B50D53BC7D02BCA5A64D484DED44BFAA5 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
10:02:39.0308 0x0dbc  RasAuto - ok
10:02:39.0311 0x0dbc  [ CA60F6C03611AF1710BC903ED9F566FB, B5C9E8BAC631738761E11168AB68EB1ECC5EC96BF9A8248B9127DCF744CA4691 ] Rasl2tp         C:\WINDOWS\System32\drivers\rasl2tp.sys
10:02:39.0313 0x0dbc  Rasl2tp - ok
10:02:39.0324 0x0dbc  [ 586A17C10D417D889F1FF7D8636E2F34, EEDA4EE8D2BC5C8C7756AB79F1F19AF8B1C4057996748FAE4E3F37844DB0EB33 ] RasMan          C:\WINDOWS\System32\rasmans.dll
10:02:39.0334 0x0dbc  RasMan - ok
10:02:39.0351 0x0dbc  [ E5FA41160F5A3D78D8F7765E5C5F6BB0, 31BA423FFFC3206717DC34B482149421EE28B27A4A3BA2DC78C3B3A9EE0C1365 ] RasPppoe        C:\WINDOWS\System32\drivers\raspppoe.sys
10:02:39.0352 0x0dbc  RasPppoe - ok
10:02:39.0355 0x0dbc  [ DF0834AE921E633E05D1FDC55C318957, 851A00961224DACBEF9DA427122F6B4B73BB99849D5ECB55DBBD311B2EA84C33 ] RasSstp         C:\WINDOWS\System32\drivers\rassstp.sys
10:02:39.0357 0x0dbc  RasSstp - ok
10:02:39.0412 0x0dbc  [ 170C5DE900F60768C380ECD8A812512F, BFD085C32CF25E8261EF4BCFA5903A496785BCDA08037F4EB580BBDEDF42B656 ] Razer Game Scanner Service C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
10:02:39.0415 0x0dbc  Razer Game Scanner Service - ok
10:02:39.0422 0x0dbc  [ FC9B7AC6E2B837EF7CD6C64F7068D41D, 9B0DD842033E82BC7EE80416A62B084BF5200923EB7A6C80415BB28004E9B5E3 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:02:39.0428 0x0dbc  rdbss - ok
10:02:39.0432 0x0dbc  [ FB7375657F8A5932C35EAA45E9B4B416, 99594708BFD6DC9F8CECBF092058D4D0D4F1BC3204E86F9FDAD5207ED5ECF194 ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
10:02:39.0433 0x0dbc  rdpbus - ok
10:02:39.0436 0x0dbc  [ A32AED8C644734B283A7C9D08D76064D, A12F67C57E43B6A2FE6449EA3822B1108FE70C66AF9911798777F85D760E384C ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
10:02:39.0439 0x0dbc  RDPDR - ok
10:02:39.0462 0x0dbc  [ 37CC7E41243EFBB4FBC0510E5CA32A02, 634E2F81D61F937F30E5ECE01FB581E090C6DA073EF7B1A3F6083ECAF363CB46 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
10:02:39.0463 0x0dbc  RdpVideoMiniport - ok
10:02:39.0488 0x0dbc  [ DAF957B25A35757E9D814611FAE8FE3B, 5244A427B2DEB5349B9F336A4A39A6834A6E8118A8EDA00738C6CE09F2452C24 ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
10:02:39.0492 0x0dbc  rdyboost - ok
10:02:39.0541 0x0dbc  [ 2C72E029C153D25325CA182A669E4ADE, 5CE0E04A6B53A1F11E8159DFD1E59F2AE6631E3B5BD27BAAEC4A35BC02A55722 ] ReFSv1          C:\WINDOWS\system32\drivers\ReFSv1.sys
10:02:39.0574 0x0dbc  ReFSv1 - ok
10:02:39.0613 0x0dbc  [ BABEE4A896D005BD0D205F1C932DA25E, 269FDF65BE3A226FA2A5CA25085366E32ADAD30A020484FE844962E8C61CB1D2 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
10:02:39.0621 0x0dbc  RemoteAccess - ok
10:02:39.0625 0x0dbc  [ 066062967A77867BDCF665960EFDAD32, 68143DBDFA7C68786C22F5CC4E80200255C663A844069C080E7816F423ABB1F4 ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
10:02:39.0628 0x0dbc  RemoteRegistry - ok
10:02:39.0652 0x0dbc  [ 16018214C82C4AA1F58A037FC4601A04, DD9FCC06894879EB11841645C3F0325B61D57A7546811743BAE331E25605201A ] RetailDemo      C:\WINDOWS\system32\RDXService.dll
10:02:39.0677 0x0dbc  RetailDemo - ok
10:02:39.0682 0x0dbc  [ 67E83C0C9A2B5ACEE9EF690E6B7E9189, 63D2A73B2031B52C66EF0455393BF05C55F9F7B0B9E48C54A39E547D46E090F6 ] RFCOMM          C:\WINDOWS\System32\drivers\rfcomm.sys
10:02:39.0684 0x0dbc  RFCOMM - ok
10:02:39.0695 0x0dbc  [ 6451FE42C35FDE3862D99579444F4A8F, BD56A1120AACF6143E6EB739E12BEE86DF142F1159865608BDF1BBE54B66AFCE ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
10:02:39.0698 0x0dbc  RpcEptMapper - ok
10:02:39.0714 0x0dbc  [ F24131EAD1D0B73463052BB042A37B6C, 43B5772310B200DF1914C8E4D10401A0BCE9082BDEAC34736AFB2920B39D7956 ] RpcLocator      C:\WINDOWS\system32\locator.exe
10:02:39.0715 0x0dbc  RpcLocator - ok
10:02:39.0744 0x0dbc  [ 5E57B9FBB4E9C43EE5B69BEE01A1819F, A1F8D1E52AF446CEA2EB50064E3A24B713B19197D61C3EAECB81B3CCD80558E7 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
10:02:39.0755 0x0dbc  RpcSs - ok
10:02:39.0758 0x0dbc  [ DC66C1D262D64E30A30B68E9F21AC74B, A5ED3D31BCD68DBC00A956787517ACA167C86F5FFDAF7C9A85505FA2B705C6CB ] rspndr          C:\WINDOWS\system32\drivers\rspndr.sys
10:02:39.0759 0x0dbc  rspndr - ok
10:02:39.0772 0x0dbc  [ 0C90E6CEA576095888E779E5BD9DD060, 8A13A92D5A8E577E2B919CC879FA8CFA1FAD0A6BFF0CF4FCC59B8E74AB22A673 ] rzpmgrk         C:\WINDOWS\system32\drivers\rzpmgrk.sys
10:02:39.0773 0x0dbc  rzpmgrk - ok
10:02:39.0796 0x0dbc  [ 288471F132C7249F598032D03575F083, 9E3430D5E0E93BC4A5DCCC985053912065E65722BFC2EAF431BC1DA91410434C ] rzpnk           C:\WINDOWS\system32\drivers\rzpnk.sys
10:02:39.0798 0x0dbc  rzpnk - ok
10:02:39.0814 0x0dbc  [ 2976EBD891001BC46466A7BD374E1F1C, F93F4D0B23D9A26FA053C686B57543A868C00116EDE2951D25572946ADCF77D7 ] rzudd           C:\WINDOWS\System32\drivers\rzudd.sys
10:02:39.0817 0x0dbc  rzudd - ok
10:02:39.0838 0x0dbc  [ 88F7703F2A4677C828124AE2110D3EBC, 529F6A5815806F2EA2235802BD28AF8D7A40E7799356BD3EC337C9E71B6B53E6 ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
10:02:39.0839 0x0dbc  s3cap - ok
10:02:39.0857 0x0dbc  [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] SamSs           C:\WINDOWS\system32\lsass.exe
10:02:39.0858 0x0dbc  SamSs - ok
10:02:39.0868 0x0dbc  [ 8F19D62B04081C0BFF1E8D6F26220A28, 40A6D50C5EBCF62A114168A9A93C9B39A00BD6C8359F365B7B697CBB24C33D36 ] sbapifs         C:\WINDOWS\system32\DRIVERS\sbapifs.sys
10:02:39.0869 0x0dbc  sbapifs - ok
10:02:39.0887 0x0dbc  [ B467E932FE4E16E201DC7E56870CB559, 6FCE9A2DFC5D222BBEA4AA271A17B830FCF8EAE44B07BEE5FF34AE50CABCBB6A ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
10:02:39.0889 0x0dbc  sbp2port - ok
10:02:39.0922 0x0dbc  [ 3E115C63649402D321D396F8D606C9B0, F4BA7FE0E89D563A57B6865E4CF1334998987D11A0D70FF7491726A507B40DF4 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
10:02:39.0927 0x0dbc  SCardSvr - ok
10:02:39.0931 0x0dbc  [ 67EFFD3D1BB6D2B67DF7F8FDCB1A51FC, DE41539FAC730F5CFF6C8754ECFF1253AFDC1C86743AE71B61D716B7A84E85FD ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
10:02:39.0939 0x0dbc  ScDeviceEnum - ok
10:02:39.0942 0x0dbc  [ 31DDA0716EC265CA57DAF9D2295FD76F, E6F39C1B3CF81918277DB8C6E3DF9A82812E1C9063DEB1FB85FE433DC9A16CBA ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
10:02:39.0943 0x0dbc  scfilter - ok
10:02:39.0982 0x0dbc  [ 2EA574C3DCFCD47502946B85B342AA0C, F6DA375BE13FBCF20755C766E19159CC44A0B16163CF297B8AE49DD0602AEE73 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
10:02:40.0008 0x0dbc  Schedule - ok
10:02:40.0031 0x0dbc  [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
10:02:40.0033 0x0dbc  SCPolicySvc - ok
10:02:40.0046 0x0dbc  [ CC41D16FB823F9BE167BE773F225CD1F, 97020D419CFC161A4EEF238F8580ADC2D026221217BF41728C54F52ACDBB9FCB ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
10:02:40.0050 0x0dbc  sdbus - ok
10:02:40.0054 0x0dbc  [ A906C527B838A4922611C63EBD250F91, 6BB0054A9C2408138BDF49D834FF99B5B9764E7747ABC15016F54FBA1D28394F ] SDRSVC          C:\WINDOWS\System32\SDRSVC.dll
10:02:40.0056 0x0dbc  SDRSVC - ok
10:02:40.0060 0x0dbc  [ F4BF50A7D16A97A887BFA0F193693C42, EEBF5AAC149C72F490BAC954B25BB6882B10FC38F93CA4F4829A06702B1ECEF9 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
10:02:40.0061 0x0dbc  sdstor - ok
10:02:40.0064 0x0dbc  [ 648A299839E8F48A946C41DE270D28F5, EEC9A5FCBE3FF78FB5E0452FF1932A8B0C7399688041E22555703CB1977A4428 ] seclogon        C:\WINDOWS\system32\seclogon.dll
10:02:40.0065 0x0dbc  seclogon - ok
10:02:40.0068 0x0dbc  [ 29452A9DA3E3482F0C2963312F979053, E1782D36C336C4B4C261AD665C1E9051905AA86020E08FC94069972AF4C4DB4B ] SENS            C:\WINDOWS\System32\sens.dll
10:02:40.0070 0x0dbc  SENS - ok
10:02:40.0091 0x0dbc  [ 919BA7E3054E4F1D61A3524ADCE6A970, 3C382673DF5AF2F38A5AE4A268F5856B0CC9E65D52213DE6D2C06E252753B73C ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
10:02:40.0116 0x0dbc  SensorDataService - ok
10:02:40.0140 0x0dbc  [ 01C2EEA7870FE26A4A6CCBA5421CC7E5, 9E643AB6BCBECE4F2A5FD4C96547A4E3F2BDFEFC5FE24B802467718EC69929F8 ] SensorService   C:\WINDOWS\system32\SensorService.dll
10:02:40.0144 0x0dbc  SensorService - ok
10:02:40.0148 0x0dbc  [ D2FEE824B4AA0BE377F1353E5F915BF4, 00D754C62F3482BBD0EA72C896139C39D15192B2D9FCC7B755D1FB9DF9FCFD9B ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
10:02:40.0152 0x0dbc  SensrSvc - ok
10:02:40.0174 0x0dbc  [ 9DB0BBE3ABE1F49651AE51EC5BCABE58, 0B46C1F231F41766AB73EE7E9834D3CDACA602D12E702D9277E28B47417D9CA4 ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
10:02:40.0175 0x0dbc  SerCx - ok
10:02:40.0190 0x0dbc  [ C4AF79C37334D995D95C22C14FDBF7FD, 4D4985921261909F2123467A22EDB102B490710F60AB935624435E5BB808A0E9 ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
10:02:40.0192 0x0dbc  SerCx2 - ok
10:02:40.0195 0x0dbc  [ FC541A272F47BE03E67A9FCB87FA8C3E, 730A3616FD67E9F2832442144B2655A8EF78B9AFCB204113E73E257256491354 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
10:02:40.0196 0x0dbc  Serenum - ok
10:02:40.0214 0x0dbc  [ 2A5F5F95FCA123DCBF53B5F603B64789, DE5C9E1D88B2C180B137DA7839F3EF6C936A171ABA49F89C10EE9C73A2226F3F ] Serial          C:\WINDOWS\System32\drivers\serial.sys
10:02:40.0216 0x0dbc  Serial - ok
10:02:40.0235 0x0dbc  [ C8738887228B7BFA3B1A906816A8BB12, 328283569201791891D5E9FB3028DB5B9FD93A7BEFC00C7DEBC2CC5731DE64D5 ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
10:02:40.0236 0x0dbc  sermouse - ok
10:02:40.0245 0x0dbc  [ B1CB58853153397DFFA2D13A81451D09, CC9B3B064711E9B5CB38DC1C84DC410033939848BD31BB0D12F990E8154F357E ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
10:02:40.0251 0x0dbc  SessionEnv - ok
10:02:40.0255 0x0dbc  [ 67832B68752CDF7FDE56949E4A2E70BF, A72320EA8575A751DF86A1EE7969AD9D548D6185F2520197262E11B79FF8222B ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
10:02:40.0256 0x0dbc  sfloppy - ok
10:02:40.0292 0x0dbc  [ F10E5536E1C753E01CF19FA4F466CE90, C9897F22B176D84CA233F864078895E3DAD4DAD090FACBB01BD6E59EE337B47C ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
10:02:40.0299 0x0dbc  SharedAccess - ok
10:02:40.0326 0x0dbc  [ 4AC12D495B3CB4275F74C68A7A017561, DC53EBD606ECCD8BCF6D618C0EB58B03F5C20F09E0F0AEDE9B8082D6B208B19A ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:02:40.0335 0x0dbc  ShellHWDetection - ok
10:02:40.0357 0x0dbc  [ ED058030296CF9B79C8D48BF43724323, 01DC7C2590DF48116CD1A126F207FE5DE439A53286BAE3736E22EE3D1CA80BE3 ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
10:02:40.0358 0x0dbc  SiSRaid2 - ok
10:02:40.0361 0x0dbc  [ 633D3D1581E9DCCD5A2D8F039104C9A5, C44B5097016C2AEC8B41F77425FE44413562F9DCF0C0C11CA69D8178970B4706 ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
10:02:40.0363 0x0dbc  SiSRaid4 - ok
10:02:40.0382 0x0dbc  [ 35B8FC714C2E7F07F7DC7C64452153F8, 6D45EB01B5F972ED0E5520E771F007FFEE892054FABDB3DD00D3E9915D3A0A31 ] smphost         C:\WINDOWS\System32\smphost.dll
10:02:40.0384 0x0dbc  smphost - ok
10:02:40.0393 0x0dbc  [ DE3A5C27EC842A113F68A2705FF63B00, B134EF63708A892B673B539F544F7980FF72838D822E8E4CCDDB359B22CB8805 ] SmsRouter       C:\WINDOWS\system32\SmsRouterSvc.dll
10:02:40.0403 0x0dbc  SmsRouter - ok
10:02:40.0430 0x0dbc  [ CD1056818A6FCEF4D32BD1D6E34070D5, F5BFB61ACB220A73B0DC4487B049F52E9F9FA2D4188C001E7A5838D47CEA6343 ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
10:02:40.0431 0x0dbc  SNMPTRAP - ok
10:02:40.0445 0x0dbc  [ 187B4AD4446C59F8FCC4A10F473EE3D1, 0AAD961B3D7B3484DC89CB86F3EC96CEBFABB7224A5BFB48083DE8F1805EA7B4 ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
10:02:40.0452 0x0dbc  spaceport - ok
10:02:40.0455 0x0dbc  [ 2799FCA215919FDC9A87C5FCAB530828, BDE968BF26693AA4D70AB669896BCA49C6F533EA226386B35B0EA589A55227B5 ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
10:02:40.0456 0x0dbc  SpbCx - ok
10:02:40.0469 0x0dbc  [ 58C17D92AD61EC7A98B05F4FAD0D205A, B881134A1BD9194145A9D18BDB34D57E2C167F06C2A9368459D0C33E6E0D6501 ] Spooler         C:\WINDOWS\System32\spoolsv.exe
10:02:40.0478 0x0dbc  Spooler - ok
10:02:40.0593 0x0dbc  [ 5C31E109943E67CFC801810C00AB63EE, 9A80D7CDA1135EBCE10E753986A59CFA3D8D49F9B0BE38FDF99880B1DD88C41D ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
10:02:40.0661 0x0dbc  sppsvc - ok
10:02:40.0674 0x0dbc  [ AA1F23501511EFE9CF9771F6B20E8D45, E786852D9877CCFD35444F8FC694467132F868D87A8C344FD1016FFDE74695A5 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
10:02:40.0679 0x0dbc  srv - ok
10:02:40.0695 0x0dbc  [ F5B169EDF9D5E3C7200D89D30E065D13, 12BAF3A3CB76F0900FA53681C9AD16F40308F493BA22C0F60E1E268D0D6AF825 ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
10:02:40.0704 0x0dbc  srv2 - ok
10:02:40.0710 0x0dbc  [ 2E142E027F0AA698BA4DCE49CBDB43CD, A21027BBBC75A55A8B302D028113A0683016E4C72790A8C561DDB1AE7FDB4289 ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
10:02:40.0713 0x0dbc  srvnet - ok
10:02:40.0741 0x0dbc  [ BF71B3FB5B7557CB740CDB09C5FB50D9, D6F9E65FDC9C4ADAFE82D94F71A1F5960DB3BEEBF4FE5B2D087515C4FAA5F287 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
10:02:40.0745 0x0dbc  SSDPSRV - ok
10:02:40.0757 0x0dbc  [ EF1BC04215C201ADA3F7F5A2F034EA21, E1A7A0FA2032B9E7D3951100E74C04D93CD848C88D23D57FBA0BFA2816B29C61 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
10:02:40.0760 0x0dbc  SstpSvc - ok
10:02:40.0801 0x0dbc  [ 605ECCCE95ACF7AF12CBCCDAB55B8DD0, 7B676B58C26D880320434066B93C7B8372421699C0006806D4E8E0E824124281 ] STacSV          C:\Program Files\IDT\WDM\STacSV64.exe
10:02:40.0806 0x0dbc  STacSV - ok
10:02:40.0868 0x0dbc  [ C26E2C89EFB4BB39CD135B5DED804B78, 99288C6023DC6AC6554521EA671AB387ACE2AE2BCDE145C7012202842FF40841 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
10:02:40.0911 0x0dbc  StateRepository - ok
10:02:40.0923 0x0dbc  [ DDE064A4298FD1FBF804D3ED691E7EDB, B0D117B1FC0DA2CB76F5F63699E2F108930B6C6721AC443111D48215ED624278 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
10:02:40.0924 0x0dbc  stexstor - ok
10:02:40.0954 0x0dbc  [ 71CB3BB20F08BB724769DAAAFD5AB26E, FC4B2BD03037EC07F4443BBE13A28859035F7229CA06D4E42AFB42ABF1A89F09 ] STHDA           C:\WINDOWS\system32\DRIVERS\stwrt64.sys
10:02:40.0962 0x0dbc  STHDA - ok
10:02:40.0994 0x0dbc  [ 60F04DF1AB55D6D4BDA02052DD20537E, 52996EDF2C06968DADC9BDF24E4039929B81643493C7193B8CC4A6BD1A3AE761 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
10:02:41.0004 0x0dbc  stisvc - ok
10:02:41.0015 0x0dbc  [ 32C95F44108C3E7DB58F773346E3C9D0, F852D8ECA06080EA6DE1A90509071965A750D9CFC9627F0D4DB8ECC57133B0B5 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
10:02:41.0017 0x0dbc  storahci - ok
10:02:41.0034 0x0dbc  [ 8883C8CE4942A99B84E1CC6EFA19738E, 60C1CDA4382F8EE70D810DBB1BCAF5F389433563FF23EEB84859612F396D8CE6 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
10:02:41.0035 0x0dbc  storflt - ok
10:02:41.0060 0x0dbc  [ AE7B7E1E95BFB9340B1956C98CA52C81, 3E0214A0C486C1CD05D9BC57E58A998A3CEADDC1D24AE2A75098F56B37069160 ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
10:02:41.0062 0x0dbc  stornvme - ok
10:02:41.0065 0x0dbc  [ 63513EF3121689B3A59BD217618A2E42, DE9B89732801DEC60BD116D58CFB427F7E37F093BE8A9F6E0CAC729B5346B314 ] storqosflt      C:\WINDOWS\system32\drivers\storqosflt.sys
10:02:41.0066 0x0dbc  storqosflt - ok
10:02:41.0073 0x0dbc  [ CC96FF061C772340F2ED89ABBA567ADC, 028CD44405B7FAFC7BF331DD729E44E0594A63386F48CF39D7725A58B3DE22D6 ] StorSvc         C:\WINDOWS\system32\storsvc.dll
10:02:41.0079 0x0dbc  StorSvc - ok
10:02:41.0100 0x0dbc  [ 000F5CFCEF0F06DC8FD1D2F568E48AE4, C1FE485E57A1B912CE79556E0EFF03CC11362E7966D250E3AA4962DCCB8F8EE6 ] storufs         C:\WINDOWS\system32\drivers\storufs.sys
10:02:41.0101 0x0dbc  storufs - ok
10:02:41.0103 0x0dbc  [ 7415087F9006D6818F85F3CBD79B1A50, C768EBB2263375D285D689FEEF546147D42D7376977424A4D6FD655CC78EA7CD ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
10:02:41.0104 0x0dbc  storvsc - ok
10:02:41.0105 0x0dbc  [ E49858EA5865A015EB78B7F7C1C07DE2, 1ADBBAC2D2E2E3C40AB0BDDE068001E76A8DAB79C54F06479F7A4567DAD7A7A8 ] svsvc           C:\WINDOWS\system32\svsvc.dll
10:02:41.0108 0x0dbc  svsvc - ok
10:02:41.0169 0x0dbc  [ 802278EE4ACCE9EA1F1481DF20EB1667, E78F0DA2CA0B2C2DF3B7E3B2A22C03380FE649813EE6EB31067C5FB6727DB7BD ] swenum          C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys
10:02:41.0170 0x0dbc  swenum - ok
10:02:41.0178 0x0dbc  [ 313D2C0DBA0B23A8302254FD317D2EC8, 20B98D6F33FEC7ACBCEED9757A3FEAD837FA7BA378BA25575A33EA45E076FC6B ] swprv           C:\WINDOWS\System32\swprv.dll
10:02:41.0184 0x0dbc  swprv - ok
10:02:41.0215 0x0dbc  [ 12D0CB1DCAE6725B6CA54CC2038C4C8C, 7D224298E440B8C5FDD99A52485A6245DE5109C9A02E65AD38F1EC6DBF4AEEF2 ] Synth3dVsc      C:\WINDOWS\System32\drivers\Synth3dVsc.sys
10:02:41.0216 0x0dbc  Synth3dVsc - ok
10:02:41.0266 0x0dbc  [ D5B31B2F14848015C211F1D674A82F3A, 58C18254C817693DB727090D1CC518032B3A67C5B3FC7F2F8CE4613A33790CFA ] SysMain         C:\WINDOWS\system32\sysmain.dll
10:02:41.0291 0x0dbc  SysMain - ok
10:02:41.0308 0x0dbc  [ 8863F06F520C1C76254B7DB45057BADA, EE8DA20185FBE37F64E8FE2A6FB477D602159AD6B63FFDD807981E6D28629888 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
10:02:41.0315 0x0dbc  SystemEventsBroker - ok
10:02:41.0326 0x0dbc  [ 95875059929EF91B55EA612D7967DD3D, 5F734209C8C9725376F7C146ED84999CC6D019C4C10B1795F53E72BE8853E2DD ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
10:02:41.0329 0x0dbc  TabletInputService - ok
10:02:41.0356 0x0dbc  [ FE33F417DFD9847CB571D3C7EE5FA7E3, B3C7BE7998B9B093DD969A2588EE8CEBD9771331A63D4B1D86A188317B5EE71C ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
10:02:41.0361 0x0dbc  TapiSrv - ok
10:02:41.0403 0x0dbc  [ BA8CDF0FC9469005A84453A128EEB6AE, 5E037452DAB8B9004BCB761FD2161477E1D22D6F398CE97665F95FD0D6DD26B5 ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
10:02:41.0446 0x0dbc  Tcpip - ok
10:02:41.0482 0x0dbc  [ BA8CDF0FC9469005A84453A128EEB6AE, 5E037452DAB8B9004BCB761FD2161477E1D22D6F398CE97665F95FD0D6DD26B5 ] Tcpip6          C:\WINDOWS\system32\drivers\tcpip.sys
10:02:41.0507 0x0dbc  Tcpip6 - ok
10:02:41.0517 0x0dbc  [ D378A1AF58AFA84BB6AC753F2C1BE9F4, 8BBA623193D51E6A8DD0627FA08C93B918EF1BA2EEBA46CDBB86FE6A1007FDEE ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
10:02:41.0518 0x0dbc  tcpipreg - ok
10:02:41.0522 0x0dbc  [ 28E1E63A1AC65E17B3194238FA2CF3BF, 9A52D6DD14BEBB7B407B2703A111D1B302F1B84AA40A14D21FCA554F395E935D ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
10:02:41.0524 0x0dbc  tdx - ok
10:02:41.0526 0x0dbc  [ CCDBD2817C10A4F631280CBB3AE44FFB, A022DEF4D3CF75F41FA26275347F4BA38A513AD32FF18385C2E756DECB61D404 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
10:02:41.0527 0x0dbc  terminpt - ok
10:02:41.0551 0x0dbc  [ A0608264209A836821D6AB8C67B108AB, 7912C75F72BCAB7426A2E00C597C8D94C185B5DD31BD6C4BE5D56FECD5B0D9EA ] TermService     C:\WINDOWS\System32\termsrv.dll
10:02:41.0576 0x0dbc  TermService - ok
10:02:41.0584 0x0dbc  [ 261830B1E3650E4471E1F98850B929B7, D281B8A93315E64C7AF5002E5BFBE6AFF8B35FD6AA747AE07D7AA96F4AFAA613 ] Themes          C:\WINDOWS\system32\themeservice.dll
10:02:41.0586 0x0dbc  Themes - ok
10:02:41.0614 0x0dbc  [ 79431E9EEAE85C3E579D28265D2E3F21, 4C4A5CCCA8754D15737EC6E838E9F8A2B0D044F1FEB435B332EC70BB0CFA7DE1 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
10:02:41.0621 0x0dbc  tiledatamodelsvc - ok
10:02:41.0636 0x0dbc  [ 354DAA630928CD4DA2BC84A0DA4ADA9D, AFAE4948EA4F899267DC52DF9A06450FC3E77083B563E541581DA90685C7E98C ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
10:02:41.0639 0x0dbc  TimeBroker - ok
10:02:41.0655 0x0dbc  [ F4AEDABC8F3A9D632F8206D0C7F8CA09, 6E76749CD4B857B4D930267E3CF448AF4D14FAC851873C5E71572E62CAD2FA36 ] TPM             C:\WINDOWS\system32\drivers\tpm.sys
10:02:41.0658 0x0dbc  TPM - ok
10:02:41.0661 0x0dbc  [ 2D0338A3009075FCCB119CB7F3280F82, F42F3B8DA0F8B2C99892E66CDEF471A1CD30A30CF437ADFF464A2C786A6B87A6 ] TrkWks          C:\WINDOWS\System32\trkwks.dll
10:02:41.0664 0x0dbc  TrkWks - ok
10:02:41.0705 0x0dbc  [ FD44FA80DA03EA144153A76DEBBB61B4, 0C46717F489A415A583470DAE8CF58E47BC307B9CB0F9DB6C4EDF33B7525475C ] TrueSight       C:\Windows\System32\drivers\TrueSight.sys
10:02:41.0705 0x0dbc  TrueSight - ok
10:02:41.0741 0x0dbc  [ 62D6A900C5DFF2ECF131384E5A5C85AB, 1AF1FB868C59DFF452E3351EE5070B2C746DE606B9E2F1834CE2256F41ABE7A9 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
10:02:41.0743 0x0dbc  TrustedInstaller - ok
10:02:41.0746 0x0dbc  [ 676C801CAA61AADD0C918CC536A74B78, DB5DEC9445272E46D32DC2A9A99A9AE45729E424E61C679ECFD973AA88457BE6 ] TsUsbFlt        C:\WINDOWS\system32\drivers\TsUsbFlt.sys
10:02:41.0748 0x0dbc  TsUsbFlt - ok
10:02:41.0750 0x0dbc  [ 2BB6CC0DD1CEE86330743B56FA9FE91F, EE71E3DEECA7599947AB09E8967FE8066348D82B4C17D8CBE800FCDE9CF4989D ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
10:02:41.0761 0x0dbc  TsUsbGD - ok
10:02:41.0774 0x0dbc  [ 14B46248612DF1B1A695040FFFBCFAFC, 8C373A3C416FC9AB3872A187E64AC7A6E69FF605BD8784E8F2B1C28C293A0495 ] tunnel          C:\WINDOWS\System32\drivers\tunnel.sys
10:02:41.0777 0x0dbc  tunnel - ok
10:02:41.0796 0x0dbc  [ D0BE5EA1652D55029C9A898FB8ACFCE0, 80C4BC30B967C79B3457F43EB9B530CA2571C6158958879AC55E5A81F71CFF15 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
10:02:41.0797 0x0dbc  uagp35 - ok
10:02:41.0800 0x0dbc  [ 13C15E4B238895FE4731DB1D612EEB5F, 211E4B05AA09F7FBE2487C3241A98D1F970FEE5B9B1BAED2788B57233BFC4104 ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
10:02:41.0801 0x0dbc  UASPStor - ok
10:02:41.0811 0x0dbc  [ BEBB8B55C5F99B69EEE39A9D7BADB21E, 08A094EA38AB58CC70108A3BDFDD3251897DC4B13FDDAD54C1B063137836EF34 ] UcmCx0101       C:\WINDOWS\system32\Drivers\UcmCx.sys
10:02:41.0812 0x0dbc  UcmCx0101 - ok
10:02:41.0838 0x0dbc  [ DE3EDAF609D00EA2E54986E6459796A6, 61A9AB51869F38300CC5CC5D302B962FB966F54CBB2E393954F36372B3A479FE ] UcmUcsi         C:\WINDOWS\System32\drivers\UcmUcsi.sys
10:02:41.0839 0x0dbc  UcmUcsi - ok
10:02:41.0843 0x0dbc  [ FB1C1D8B96A482F3581338D6752E1D6C, 0FFAEE3E088614B3483C459513BB9D78EB76B574696FD877A3CDF6A11378F46C ] Ucx01000        C:\WINDOWS\system32\drivers\ucx01000.sys
10:02:41.0847 0x0dbc  Ucx01000 - ok
10:02:41.0865 0x0dbc  [ 4E1543ACE2F6E2846713E5123D9D4159, 1A6AFC525A80D1F19B14CDAD38790DF7293911C4D0E8301161D92201B934C3D4 ] UdeCx           C:\WINDOWS\system32\drivers\udecx.sys
10:02:41.0866 0x0dbc  UdeCx - ok
10:02:41.0889 0x0dbc  [ CDCA9CC1D8293E75218D8FF85F2337A4, 173086C08DDC7625E026E425F1E2B5D6C795771BEAE9BFF6093E3592FBEBD323 ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
10:02:41.0894 0x0dbc  udfs - ok
10:02:41.0923 0x0dbc  [ BC683E19307C533C7161DB7A58051347, 5553BE3421986FDD9992EBFD883CDA151F7166C01BBFA3E9183A3C93E41D79B6 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
10:02:41.0924 0x0dbc  UEFI - ok
10:02:41.0929 0x0dbc  [ D14B42C26DE402F316D49667D15446F0, 61CC9FF03EF78631C800EFD8D587975CB94D53DB80E6F60BD13BA52EC5690D3D ] Ufx01000        C:\WINDOWS\system32\drivers\ufx01000.sys
10:02:41.0933 0x0dbc  Ufx01000 - ok
10:02:41.0936 0x0dbc  [ 192470BE4321791FBB25F379D0141D6F, AD120F8F98BD99014471CE60630B5FEE7555AB261C98B7D9819FE23C386655F7 ] UfxChipidea     C:\WINDOWS\System32\drivers\UfxChipidea.sys
10:02:41.0938 0x0dbc  UfxChipidea - ok
10:02:41.0941 0x0dbc  [ F7BD838E84E6B286DBCE068EFB8C0800, A55188C8F8BDC739A7ED7D29CDCB2A17468BBB158E13D804963B31ED73449520 ] ufxsynopsys     C:\WINDOWS\System32\drivers\ufxsynopsys.sys
10:02:41.0943 0x0dbc  ufxsynopsys - ok
10:02:41.0971 0x0dbc  [ C844E39B900FFA46CA8DD2BBA670A077, 0CB6232BCE47C59821DF25D6ED33E85C3E32DDAB101AA8A2C22B5401E73F5D5B ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
10:02:41.0973 0x0dbc  UI0Detect - ok
10:02:41.0975 0x0dbc  [ A25842AC180F0E8B02380ECB8ADA1AF5, AF22E7559C5EF8DC22A2B9E27FFFFF075B1D1B68A8307266BD9473E0FAF36BEF ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
10:02:41.0976 0x0dbc  uliagpkx - ok
10:02:41.0980 0x0dbc  [ 21088F43172525C7E02D335A3327F46C, B04AD471A7DFE83AB557DB4540616B7DF4A1904F8BDDCB920D449FCEE6F36FD5 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
10:02:41.0981 0x0dbc  umbus - ok
10:02:42.0004 0x0dbc  [ 294A291B5D48FE8F38DD94B7272442C5, 66C9139636760C92C1E04FCF440C432FF6C5A94E1577CAFE1D61FCF2D30472ED ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
10:02:42.0004 0x0dbc  UmPass - ok
10:02:42.0037 0x0dbc  [ 3427889AECC3B6912A0A01D095E32B98, 322AE14B74295ACFC124719BBEF8809201150A184E262EC55E26D2B45787BF9D ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
10:02:42.0042 0x0dbc  UmRdpService - ok
10:02:42.0091 0x0dbc  [ A4A5FF89F65D8D1AA3A769654AD8DBC0, 9C792595F7E90C6074BC0FF5A63C9A19449E2F2E2780087BBF12A72658437EE0 ] UnistoreSvc     C:\WINDOWS\System32\unistore.dll
10:02:42.0124 0x0dbc  UnistoreSvc - ok
10:02:42.0152 0x0dbc  [ BD693208673F40BA21AA70B69F1D439C, E324947C2DD34386A83B09E73668F1CCED127AC91194B8BF7EC4C8E36CF8203E ] upnphost        C:\WINDOWS\System32\upnphost.dll
10:02:42.0159 0x0dbc  upnphost - ok
10:02:42.0162 0x0dbc  [ A7A52EDDC3FAF183D6AC4774690ADF13, 630A0331F2EFA2DC7EFDACD08D8DF5C85BFDA30FF1525050FF54E069AFA45F6C ] UrsChipidea     C:\WINDOWS\System32\drivers\urschipidea.sys
10:02:42.0163 0x0dbc  UrsChipidea - ok
10:02:42.0166 0x0dbc  [ 2EEA0897DD9E30E958B508D557F0B5E4, BE051A3AA5DFF56310FAB67AD19AC0443A3580542886EF3554EBE18F1323596F ] UrsCx01000      C:\WINDOWS\system32\drivers\urscx01000.sys
10:02:42.0167 0x0dbc  UrsCx01000 - ok
10:02:42.0169 0x0dbc  [ DC54D775A3A61E4CDE871B4E38A1459A, CC996A9D293201BBD285E7B629B12EE88574702B8AC7BB4149439D6A25A07F7E ] UrsSynopsys     C:\WINDOWS\System32\drivers\urssynopsys.sys
10:02:42.0170 0x0dbc  UrsSynopsys - ok
10:02:42.0174 0x0dbc  [ 18B63A0980F4AA1E6D7879B253980E37, 05F96DBE0A3DE2A685DEEBA8B6838A47AEB7CE2EBE8EB6BAD67B36DCF7E73589 ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
10:02:42.0176 0x0dbc  usbccgp - ok
10:02:42.0199 0x0dbc  [ 1C60A1A3C8E1E819E16F12BAEB1C83F8, E255BD173DBF091C5EA07381862E23C1FD761489EC396E312974FBC124E1F33A ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
10:02:42.0201 0x0dbc  usbcir - ok
10:02:42.0204 0x0dbc  [ 9A3E39F85DC6E3B9F792F1095ACFF788, 66B8E137A5232E9F717907CFD49FE624AE101F4DE14E2960849DABF7A877E87A ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
10:02:42.0205 0x0dbc  usbehci - ok
10:02:42.0242 0x0dbc  [ 15FE07A404C8A0CD306661433027FFE4, 250C5B4624EF062C88F49DCFEA00BFF1771EFE8B095EC4F0B51C99BB3F80EC66 ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
10:02:42.0249 0x0dbc  usbhub - ok
10:02:42.0281 0x0dbc  [ 7E51F2AD1D729F5CDBB6BE21CB58FEB7, 4C9CBC7BE52EE80E3734ACF9AA6FC106FBAA9AE15FCDACB7E5100ED5CC041E80 ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
10:02:42.0288 0x0dbc  USBHUB3 - ok
10:02:42.0304 0x0dbc  [ 72EA850B59F40C25A4FEDDA5FE84EFEB, FB4801AA1FB72FC1C41024916368823E88D53E338640E3BEA865B0F0E7B8EE91 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
10:02:42.0305 0x0dbc  usbohci - ok
10:02:42.0308 0x0dbc  [ 47B2B2DE152E25546944049CA1170BB1, DDA0A806D3108B2475AB13F584EA8CE6F0932C5E394C2C3FA691DFAB8A2BCAC0 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
10:02:42.0308 0x0dbc  usbprint - ok
10:02:42.0339 0x0dbc  [ 923CA145CD0A9DFBA4CBBA60AB684C2C, EFAA1E730802490E9A53718D70484832A38345FE0A670937FC546FD245DF2CC9 ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:02:42.0340 0x0dbc  usbscan - ok
10:02:42.0353 0x0dbc  [ 1F72E1A7E1858B7B3FF81522FCEBDE95, 4FAD243DA73C45CD5CA5E50F824F30EF0DC777D83957FD21FF43D8C89EC15AAC ] usbser          C:\WINDOWS\System32\drivers\usbser.sys
10:02:42.0355 0x0dbc  usbser - ok
10:02:42.0358 0x0dbc  [ CD35467670DF1E6FBF36DA308F0C872B, E1F4F9B1EBD476394CBD0C934842AEE2502B030D97351B0A1E751FF23B011B57 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
10:02:42.0361 0x0dbc  USBSTOR - ok
10:02:42.0379 0x0dbc  [ DFA92EA105DD1073B43FB210EEB03DD4, D940432458F0A04F5013B48197CEA0412C8A909C50605AA21DD08271C90E2FE3 ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
10:02:42.0380 0x0dbc  usbuhci - ok
10:02:42.0386 0x0dbc  [ 0728504F9863774E56A54AE66C3F1E6B, 5BA3CC6D98A573AF10B56AF1748B39C83C92FC13E9D5CBF5B344C404A67D52DC ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
10:02:42.0391 0x0dbc  USBXHCI - ok
10:02:42.0413 0x0dbc  [ FD38DDBCC1699BAB0446B93C1245FE17, 0AADBE137FE4372C3FFF2E98CAB4522CBC16CA1CE9564FB3C53A896A1B4E6EC2 ] UserDataSvc     C:\WINDOWS\System32\userdataservice.dll
10:02:42.0431 0x0dbc  UserDataSvc - ok
10:02:42.0474 0x0dbc  [ E9E2B5FFBEFC2CDF14A6E55DD94CC823, A10C011835A65601B8FE3A30F361C224C60084A78085842ADCDA248047530CD1 ] UserManager     C:\WINDOWS\System32\usermgr.dll
10:02:42.0488 0x0dbc  UserManager - ok
10:02:42.0502 0x0dbc  [ 0CFEA30C0217EE74FF853B2B0CC0BE6D, 1F0856D2D94F46D7B24B7EE18ED868C9EFAE972039D35D1FAA9058A12CF40493 ] UsoSvc          C:\WINDOWS\system32\usocore.dll
10:02:42.0507 0x0dbc  UsoSvc - ok
10:02:42.0514 0x0dbc  [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
10:02:42.0515 0x0dbc  VaultSvc - ok
10:02:42.0518 0x0dbc  [ 26223003DDFB347B5CF3EC0B56DB066B, 78848BE1334C05F28FA431B08225EAE8345B2C66E7D677F9936892FC941EA961 ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
10:02:42.0519 0x0dbc  vdrvroot - ok
10:02:42.0530 0x0dbc  [ 0C3F4E7684C1D72E85A98689E65A98A1, F7928D3EFC1A83125887ADA5F8E008022B58F0DBA8A711B4D60975D8CE82B595 ] vds             C:\WINDOWS\System32\vds.exe
10:02:42.0539 0x0dbc  vds - ok
10:02:42.0544 0x0dbc  [ A417284BC6B5C2EEF63F2C5154473530, 55146660CDDD829630C216038E6500CFAC906E67C82881047B665BFEEB286D10 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
10:02:42.0548 0x0dbc  VerifierExt - ok
10:02:42.0582 0x0dbc  [ 4C39C05A72EB14C0567501C7E087E564, D3DC122B7E4A5BD345517FE3A9E9E58CD3C78887F9F327AB782BADCAD0F8F2EB ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
10:02:42.0591 0x0dbc  vhdmp - ok
10:02:42.0594 0x0dbc  [ C42206A15078596FDE8E89BB629DE342, B95F9EC2413ADE658A7CE4A9BB57A0E125C29205C24BBB120153DACAF4CF9482 ] vhf             C:\WINDOWS\System32\drivers\vhf.sys
10:02:42.0595 0x0dbc  vhf - ok
10:02:42.0609 0x0dbc  [ 248D9F911A5C94CF8477125DD0C3A291, 418C7285184BCC9DE4E56175960585867A5DB21FEF761C49FF6F1AF1C07D8088 ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
10:02:42.0611 0x0dbc  vmbus - ok
10:02:42.0621 0x0dbc  [ 3E98DD4E0CBD6B4F9CBD0E9E0EDF541E, 2B5CF364F4D1D3359FBEA8BB2E72A1FCE1277E8D893977B751D9AC10A27DF018 ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
10:02:42.0622 0x0dbc  VMBusHID - ok
10:02:42.0658 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
10:02:42.0666 0x0dbc  vmicguestinterface - ok
10:02:42.0674 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
10:02:42.0679 0x0dbc  vmicheartbeat - ok
10:02:42.0688 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
10:02:42.0693 0x0dbc  vmickvpexchange - ok
10:02:42.0702 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
10:02:42.0707 0x0dbc  vmicrdv - ok
10:02:42.0715 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
10:02:42.0721 0x0dbc  vmicshutdown - ok
10:02:42.0729 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
10:02:42.0735 0x0dbc  vmictimesync - ok
10:02:42.0744 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicvmsession   C:\WINDOWS\System32\ICSvc.dll
10:02:42.0750 0x0dbc  vmicvmsession - ok
10:02:42.0758 0x0dbc  [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
10:02:42.0764 0x0dbc  vmicvss - ok
10:02:42.0767 0x0dbc  [ 91F165C5D71D9DCB18D4661CF10D1084, 1D55C1FF0F5D860E6DB60EEFE303C0797C98BB0B053ECC255F9B316872288818 ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
10:02:42.0768 0x0dbc  volmgr - ok
10:02:42.0780 0x0dbc  [ 17042748AC05862A0283D32575220080, A85B480CB969CB7678545D2A9EE99CBD2ADFF210FA016A43E092D0711FBB633D ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
10:02:42.0785 0x0dbc  volmgrx - ok
10:02:42.0792 0x0dbc  [ 823A237D871CD652C6BFD47BECB6810A, 99310521451CB54C29A5DEA54C3A666F95E2A1FF0979D5F9792885A161E90C65 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
10:02:42.0798 0x0dbc  volsnap - ok
10:02:42.0800 0x0dbc  [ 78727FA284C2095EED660D71CD3C9AEF, 323F0BD5A624DF77973F28C7CF31EC6B3A525496EBF063666623A62B1DB0EA65 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
10:02:42.0802 0x0dbc  vpci - ok
10:02:42.0806 0x0dbc  [ 2415961D561E02F5E46B7C1C687A6788, 68A54B9595A0D15D410D5F1656B6EBE3B913A4BA5F71C658C9B99420E6ED327A ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
10:02:42.0809 0x0dbc  vsmraid - ok
10:02:42.0831 0x0dbc  [ 16419CBDB04DB9FF298169AA93413822, 743AD26F08AF5EFF5DD353E75C3D659B10C3FEC2FEDABB76387B87721B5B98F8 ] VSS             C:\WINDOWS\system32\vssvc.exe
10:02:42.0898 0x0dbc  VSS - ok
10:02:42.0927 0x0dbc  [ 6AE9A843AE979F2DCCA5A25C07C7A5F8, 3CEC26DE2EEC97929A0FBBD87FF75F8DC387C0988B2047074C8F069ACBEF2587 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
10:02:42.0932 0x0dbc  VSTXRAID - ok
10:02:42.0934 0x0dbc  [ BD232C761C59FA8D8EF626CA630E2D2E, E494EFDCE8F6343F49F33F1F03DCD5DEC9CB6F349B1AD302B4D3333B5F6BD8E5 ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
10:02:42.0935 0x0dbc  vwifibus - ok
10:02:42.0938 0x0dbc  [ 3039687AB65CEE26CF478C1F42FFCD7D, 40E140C6F94B6203767A1493DF8CAE6BA1FB67FBD0C13789444F72410D0E6FF1 ] vwififlt        C:\WINDOWS\system32\drivers\vwififlt.sys
10:02:42.0939 0x0dbc  vwififlt - ok
10:02:42.0977 0x0dbc  [ EC9B6544C569E8D7FAB91772BD7D23F2, 06CC5F21E9A9DD35099CB3E44C3E2BF2F944CE5B71284E6A85E1B681F12BD31B ] W32Time         C:\WINDOWS\system32\w32time.dll
10:02:42.0985 0x0dbc  W32Time - ok
10:02:43.0036 0x0dbc  [ 9776E4816D92B766F461957FBDA84360, 048F6ADC97767AFAB50582D0AE1E67A15B038A1C02F7982A6AD30B61AC5C7369 ] w3logsvc        C:\WINDOWS\system32\inetsrv\w3logsvc.dll
10:02:43.0038 0x0dbc  w3logsvc - ok
10:02:43.0071 0x0dbc  [ F61FA0EDBE913DFCA0CF012FDD9E99EE, DE8685230D49F940640F400D2EC4F10E677AF6D57B3FAB0342AA98BEA779D6AD ] W3SVC           C:\WINDOWS\system32\inetsrv\iisw3adm.dll
10:02:43.0080 0x0dbc  W3SVC - ok
10:02:43.0101 0x0dbc  [ FC40A7527D39F06D032A6553D22E4BF6, F572FCB5EB3DE16FD6222A5B6A43C81E3A1F838890667D9F0453F82FFCA772FF ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
10:02:43.0102 0x0dbc  WacomPen - ok
10:02:43.0125 0x0dbc  [ 2CFE8CBE358CC4D5715E010E3B13559F, 54E9BFCE202FA123EB261C226094054950429AAFA304AA714F461B003E070BD9 ] WalletService   C:\WINDOWS\system32\WalletService.dll
10:02:43.0133 0x0dbc  WalletService - ok
10:02:43.0136 0x0dbc  [ E9E22E116F810DAC98C5EC207F24C916, C518DC57CECA5174E7695F5632555FA08571D5F3A7D6B0C295BA4221AEA67C04 ] wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:02:43.0137 0x0dbc  wanarp - ok
10:02:43.0140 0x0dbc  [ E9E22E116F810DAC98C5EC207F24C916, C518DC57CECA5174E7695F5632555FA08571D5F3A7D6B0C295BA4221AEA67C04 ] wanarpv6        C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:02:43.0141 0x0dbc  wanarpv6 - ok
10:02:43.0150 0x0dbc  [ F61FA0EDBE913DFCA0CF012FDD9E99EE, DE8685230D49F940640F400D2EC4F10E677AF6D57B3FAB0342AA98BEA779D6AD ] WAS             C:\WINDOWS\system32\inetsrv\iisw3adm.dll
10:02:43.0157 0x0dbc  WAS - ok
10:02:43.0180 0x0dbc  [ CF9EF65FA66B0F4982FD1FACAB3009B6, 681C1CD5DCAF87EF436B907534E98B0AB4F66BD62E46B8977A7880B854766A27 ] wbengine        C:\WINDOWS\system32\wbengine.exe
10:02:43.0201 0x0dbc  wbengine - ok
10:02:43.0218 0x0dbc  [ 8F2B0ED6FCA72B34BEEA37E32D0EE106, A86C641A13FDF056B7BA13641551582199DDB08E9490003C74D999518B097C00 ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
10:02:43.0225 0x0dbc  WbioSrvc - ok
10:02:43.0239 0x0dbc  [ BB87BF4D17EBB3C05236FDAA048EBE07, 45D3B0C2561E28EDA4460C23768F660AE0F56527F7BDD191ED0DE4F414983AE1 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
10:02:43.0249 0x0dbc  Wcmsvc - ok
10:02:43.0257 0x0dbc  [ 8E7FD07D2C82ACBCA52C4100C20F6542, FB2CD88557ABB5EBE6555CD4E41BF4BDC6FE6BCF26288338F2FB034B966FCBD3 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
10:02:43.0263 0x0dbc  wcncsvc - ok
10:02:43.0266 0x0dbc  [ 9C776ED423CD03F8ABD54C2557E34416, 282C1208977070EC0280D5ABA0E03A847AEAEE31F35CDAA3C7A02D8477614EB1 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
10:02:43.0268 0x0dbc  WcsPlugInService - ok
10:02:43.0270 0x0dbc  [ C8BA574B3BA6AE88741AC86B1FE3C1DC, B2422CDE3A6A27B52D270D24298FF69D91D389C68456EC1805BA30AA59BAB839 ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
10:02:43.0271 0x0dbc  WdBoot - ok
10:02:43.0293 0x0dbc  [ 796D1C95894BC15B3FEF090C107CBA31, 97917C543CBC13288F2194CB09C3A2759012B74F0D72DDB0896EF42C87348C6D ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
10:02:43.0305 0x0dbc  Wdf01000 - ok
10:02:43.0311 0x0dbc  [ C5BB7C612B4C852836BEA39593BA5F46, 1E2B123F34500C2A8E983AAAF7F14E409B88DC396A655F19F3E7F15D0C51A762 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
10:02:43.0315 0x0dbc  WdFilter - ok
10:02:43.0319 0x0dbc  [ 9E0442D3880438D006D95C6F63C27274, DB1ED2BCF9986495EFA8A0B3B0156119F2E4F77AE9BDC6377ADF3A6B53C658F6 ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
10:02:43.0321 0x0dbc  WdiServiceHost - ok
10:02:43.0323 0x0dbc  [ 9E0442D3880438D006D95C6F63C27274, DB1ED2BCF9986495EFA8A0B3B0156119F2E4F77AE9BDC6377ADF3A6B53C658F6 ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
10:02:43.0325 0x0dbc  WdiSystemHost - ok
10:02:43.0351 0x0dbc  [ 9B2039C5673EEBF1D4E34ABC0AFB88C7, BBC85546BD86B9027426DAF148194CFE992B80FF89311B28BE0BD82C88630E8C ] wdiwifi         C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
10:02:43.0361 0x0dbc  wdiwifi - ok
10:02:43.0370 0x0dbc  [ BD193A7BD34B2E829FAF56306FEE3B09, ADD746D198E21242CEFA01840952B792074EFC473113CD3E7F1ABBA6A4E26AF6 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
10:02:43.0372 0x0dbc  WdNisDrv - ok
10:02:43.0398 0x0dbc  WdNisSvc - ok
10:02:43.0403 0x0dbc  [ 6A3B5013D5C7840E8CABD63DD021C112, 371CCEEAC7816CFE79ACA8A218CDA16469D9567CB63CC9D18C55FF047011EF25 ] WebClient       C:\WINDOWS\System32\webclnt.dll
10:02:43.0407 0x0dbc  WebClient - ok
10:02:43.0434 0x0dbc  [ EED4043BC3C2D00067411730EE118354, 5E268DA4DB78C06D8F181E9408B4769F8A12C38DA52C1E986EE0CEE1101E9485 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
10:02:43.0437 0x0dbc  Wecsvc - ok
10:02:43.0440 0x0dbc  [ 6ECD7A49AFC6533821BEEA1876CEB21D, 2E972245F56F589EF1AB9DABB9214B9DE6E290878735476323A3357D8CDFC71F ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
10:02:43.0441 0x0dbc  WEPHOSTSVC - ok
10:02:43.0445 0x0dbc  [ 09B434867028AF4895A87959EA668686, 26A7DB82E42DCBF3A77092D58AC6392754FD7C538B9EAAEFA88E9AF81DFE8E96 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
10:02:43.0448 0x0dbc  wercplsupport - ok
10:02:43.0451 0x0dbc  [ DE4E417B867841EE55114E588098B8D5, 878708C93FC1D919E2B9E1C5F94A0EAFC5F28BDAA58D3F29DEEDC8EC3F72D9ED ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
10:02:43.0454 0x0dbc  WerSvc - ok
10:02:43.0456 0x0dbc  wfpcapture - ok
10:02:43.0460 0x0dbc  [ DBF5255B759212E5217A2748567A0B5C, 5E81A9289EC39702179038B686A35FADF9974651E74222F3354B4CBE919887B0 ] WFPLWFS         C:\WINDOWS\system32\drivers\wfplwfs.sys
10:02:43.0463 0x0dbc  WFPLWFS - ok
10:02:43.0466 0x0dbc  [ 4CD8826BB8320741842A9E53E48AF2BC, 97B22D9DCD0FD31D3A801946173369B0E70B1850576682C8A8180874A61CAD1A ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
10:02:43.0468 0x0dbc  WiaRpc - ok
10:02:43.0485 0x0dbc  [ 4375BCBA419D19695CF566082CEF27D3, 6F86FA14B41A03F2BA51B8702F3D59B85FD488405601FA177495E4B7C576850D ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
10:02:43.0486 0x0dbc  WIMMount - ok
10:02:43.0487 0x0dbc  WinDefend - ok
10:02:43.0493 0x0dbc  [ 037BC6DE5F58D4A74A5BB0C12DCECDCA, 92921A2615A41C434BADEB33594DABC166FC9418FBD311A3B2022410B14BFDAC ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
10:02:43.0495 0x0dbc  WindowsTrustedRT - ok
10:02:43.0496 0x0dbc  [ 70BCD70BD53F2FE660ED94B025A043EB, B23B96DCAB30C62CB1651B3A2292155AEE8217CE3120574F5158D5E7DA09DE56 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
10:02:43.0497 0x0dbc  WindowsTrustedRTProxy - ok
10:02:43.0536 0x0dbc  [ 8921ECEC2C7D1B1333D77325C60D3AEA, 67C6B6A92B34D99165B5591D0730322C31E967E599BA44924249BF5AD505C132 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
10:02:43.0546 0x0dbc  WinHttpAutoProxySvc - ok
10:02:43.0573 0x0dbc  [ 7792AE5403BF8975B6460DFC3428D129, D88F77E973D58C2CA629CC9249877A34ABF31CA1DC2A570666921A8A0DC8DEC7 ] WinMad          C:\WINDOWS\System32\drivers\winmad.sys
10:02:43.0574 0x0dbc  WinMad - ok
10:02:43.0624 0x0dbc  [ 73B5230F03DC7002A70F11EA1B0BAA37, DFE8BBE52B58589686E402ACED51021E298A491F907EBA5689DF9DAFC3002BA5 ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
10:02:43.0627 0x0dbc  Winmgmt - ok
10:02:43.0694 0x0dbc  [ 2FE85D6AFF90F56A78743CC93B9CA684, B515765C4EE64E7EC16BD6AF037C084CCA6E81180AEF59E18F260406ABE6DF58 ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
10:02:43.0747 0x0dbc  WinRM - ok
10:02:43.0760 0x0dbc  [ 811F30EB6EE8318C4171CB95AE30B9BD, 765F6BEA3D35D523B5D7ED7356EC0C97A48066A5C4D77C1E6EDAC6F220153385 ] WINUSB          C:\WINDOWS\System32\drivers\WinUSB.SYS
10:02:43.0761 0x0dbc  WINUSB - ok
10:02:43.0779 0x0dbc  [ DF00381AB8665D48DE3FF794BC6760AB, 749AC7048601061A34BFF507B574AF028FC662C0A98692E7331E667D105EC09D ] WinVerbs        C:\WINDOWS\System32\drivers\winverbs.sys
10:02:43.0780 0x0dbc  WinVerbs - ok
10:02:43.0848 0x0dbc  [ 11F106F92BCE6521878066C8D374BE4E, 4D72D686B3D8EECCDA13F318CA84D8747337B1A3612E17B0A2D5F422AE7C05AA ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
10:02:43.0890 0x0dbc  WlanSvc - ok
10:02:43.0924 0x0dbc  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
10:02:43.0925 0x0dbc  wlcrasvc - ok
10:02:43.0975 0x0dbc  [ 802E5A0B96C1E9FCC0CBFD75F04CE7DF, C689E22141B5FA69438205D824DFCB408429DE9B8612A424E3425717017E9DB3 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
10:02:44.0018 0x0dbc  wlidsvc - ok
10:02:44.0043 0x0dbc  [ 623ED8E10DFEEAB7AE2CD11A0451DB79, 7DDE15F22FD24556D4765F6CFD0F8E2F27370A89A962919646DE2613B33D43D6 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
10:02:44.0043 0x0dbc  WmiAcpi - ok
10:02:44.0079 0x0dbc  [ B2BB87531C4127ED4120E9BF5566827F, 1DDC0F00F215D77D3698F81B56D4488F384E9D017267840EDFA4846742B99B6A ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
10:02:44.0082 0x0dbc  wmiApSrv - ok
10:02:44.0084 0x0dbc  WMPNetworkSvc - ok
10:02:44.0112 0x0dbc  [ 78CA1FF6FE37EEFAFF99DD1C956AF60A, 883C7890C83BAB3B846A0C969D7B67031BD2EF65FA58A0620DD0CD1655C5B2C5 ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
10:02:44.0116 0x0dbc  Wof - ok
10:02:44.0154 0x0dbc  [ B2D8EDBBC339D903BF4073FF7A8D251E, 989F3B94F084720A094C89FD5AF02B5D5BCE5FB127F323E1ADA2890B6AAB3535 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
10:02:44.0197 0x0dbc  workfolderssvc - ok
10:02:44.0261 0x0dbc  [ 388F2A3C771B8BEE76FD1AAF9614D08E, C064EC6136CC20C4EE19C86E91CA071974933BB52C9EF8521DF4AFD060FED4A2 ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
10:02:44.0262 0x0dbc  wpcfltr - ok
10:02:44.0267 0x0dbc  [ A6FCFE1F691B4A4D266F5D487FADB9FE, 2135D0C13C1295A2F76885E380CD72CB71CEB8E0D9F1C183A35935B27737D423 ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
10:02:44.0269 0x0dbc  WPDBusEnum - ok
10:02:44.0272 0x0dbc  [ 37DCE976B3935380F2F6E39ABB6BF40D, B14E875F6D6503DF0DB6D9D2363316073AEEF394D830EA2270A0DCDA56E1CEC4 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
10:02:44.0273 0x0dbc  WpdUpFltr - ok
10:02:44.0293 0x0dbc  [ 80F0154FD4293E562D54E97811E03499, EDE920F7F95EFBE542FE3CE066B6F7CDE3B9A37DDF3411DC86EACE9EEF294C1D ] WpnService      C:\WINDOWS\system32\WpnService.dll
10:02:44.0295 0x0dbc  WpnService - ok
10:02:44.0303 0x0dbc  [ 3CD22DD5A790CF7C24D65455E565EA83, 49DB06DF6F38940E7F8691C16586A78BB20E702FD48A34E50987C06B08BDF4DB ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
10:02:44.0303 0x0dbc  ws2ifsl - ok
10:02:44.0317 0x0dbc  [ EBA916109A176714E6A7BD152387F13C, 7B38B1708B83271ADA8D1CEC7F5F0A75C7F2572185C0961EFC749D5DF16A03F0 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
10:02:44.0321 0x0dbc  wscsvc - ok
10:02:44.0323 0x0dbc  WSearch - ok
10:02:44.0390 0x0dbc  [ 9EB85802AB625970E05879D15DE56335, B7DCE5E1924A5CEE76CC07FF3B8CEDBBD0DDBB4C4ED0A3BFB8D1ABCAD7C0AA23 ] WSService       C:\WINDOWS\System32\WSService.dll
10:02:44.0434 0x0dbc  WSService - ok
10:02:44.0482 0x0dbc  [ A2C3482A6535792F5DD22C144261B170, 6C47BFD03E81C7998CF14AFC8CB850C2951D60FAFD4DB244AFBAF938F6A3B7AA ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
10:02:44.0524 0x0dbc  wuauserv - ok
10:02:44.0529 0x0dbc  [ 835F60262E7E310080EA05F6752BF248, 3010B731DF3D52B56EA16FD29B66F5D3AB9412E49CA4C547BAAECA3225C5DC40 ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
10:02:44.0531 0x0dbc  WudfPf - ok
10:02:44.0535 0x0dbc  [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
10:02:44.0538 0x0dbc  WUDFRd - ok
10:02:44.0542 0x0dbc  [ 44CF3130AEC8914705487C4AEF756A19, 30B09E32DEC02141F9B99ED012E441056C1663A72E4130EF4221ECC0ED87BF4B ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
10:02:44.0548 0x0dbc  wudfsvc - ok
10:02:44.0552 0x0dbc  [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
10:02:44.0555 0x0dbc  WUDFWpdFs - ok
10:02:44.0590 0x0dbc  [ 989EC133AD360CE71F85974B03143D97, 590145B7BD17A25A0848BD5C41AB967ED6C8DADE2BF91C6F4CA6D29CC3D1C79B ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
10:02:44.0616 0x0dbc  WwanSvc - ok
10:02:44.0631 0x0dbc  [ 9BDC2AFCEF4CF1C630D728DE1DBD495A, 5CE19974380CCEC46C181315B349E9A7CE757E19118EC5978A2293D63268BA66 ] XblAuthManager  C:\WINDOWS\System32\XblAuthManager.dll
10:02:44.0657 0x0dbc  XblAuthManager - ok
10:02:44.0674 0x0dbc  [ 3EDB6162310EA223890C2DF44C68358B, 12053291809CA9C38A30EA4B2DE7115F535531F0925220C63B0312979F9CC707 ] XblGameSave     C:\WINDOWS\System32\XblGameSave.dll
10:02:44.0698 0x0dbc  XblGameSave - ok
10:02:44.0724 0x0dbc  [ 30021D1E0407B71E8D5D4F8DAE4E656A, EE2E366A1CC033C068176C7E9F876FFA0EF86A15A482B6964E170DE863CFF542 ] xboxgip         C:\WINDOWS\System32\drivers\xboxgip.sys
10:02:44.0727 0x0dbc  xboxgip - ok
10:02:44.0744 0x0dbc  [ 729B70C81F207541BC6A4ABAE3A8D594, 31F9BC41169D28B397C0D988C367C32FA9A95289E68AB8F38061DA478752A765 ] XboxNetApiSvc   C:\WINDOWS\system32\XboxNetApiSvc.dll
10:02:44.0786 0x0dbc  XboxNetApiSvc - ok
10:02:44.0789 0x0dbc  [ 6851673B90D8CB332439E0339F81A6B6, 4E95F1A63E6DD58BB5BD6FC1D9784837D5E6F5BCF870C7ECC92DCA1AF20B6A4C ] xinputhid       C:\WINDOWS\System32\drivers\xinputhid.sys
10:02:44.0790 0x0dbc  xinputhid - ok
10:02:44.0814 0x0dbc  [ DCF1C283860C3CAB0BF0A71528A0136C, DFC44E5337A8B37C54CA57D53F74E41BE2C0495AF2A566FE1E9A37C045BF4C84 ] XtuAcpiDriver   C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys
10:02:44.0815 0x0dbc  XtuAcpiDriver - ok
10:02:44.0816 0x0dbc  ================ Scan global ===============================
10:02:44.0843 0x0dbc  [ C6BC6E49A7F76AA2BBA58CD08196755F, D02B6B285899E966D19323566A4780D51303D00E66674D7FF4B61991430A69A6 ] C:\WINDOWS\system32\basesrv.dll
10:02:44.0867 0x0dbc  [ 70EC9717DC3A1CDF79C703A145E0E5B7, D5ABF42063DFF799FD4099D8A347256CC79B89582B987B3DEE240AFA5BA421BE ] C:\WINDOWS\system32\winsrv.dll
10:02:44.0895 0x0dbc  [ F435AFA375ACBAEE44324DD464EDCC11, 815DE470439AE5D96348BEBF971A14FBDCA1D36F31CA0D25F69E5F41817D43D5 ] C:\WINDOWS\system32\sxssrv.dll
10:02:44.0921 0x0dbc  [ BB3D8E1C108F7244613FF3993291A922, 1642AF23F200D46F54239C3BA743F1D5ADDC6A32D5F6481264D0C1D7F3E9D533 ] C:\WINDOWS\system32\services.exe
10:02:44.0926 0x0dbc  [ Global ] - ok
10:02:44.0928 0x0dbc  ================ Scan MBR ==================================
10:02:44.0954 0x0dbc  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
10:02:44.0968 0x0dbc  \Device\Harddisk0\DR0 - ok
10:02:44.0968 0x0dbc  ================ Scan VBR ==================================
10:02:44.0969 0x0dbc  [ 62D2DE9198619798549F0F3E613EFFF2 ] \Device\Harddisk0\DR0\Partition1
10:02:45.0023 0x0dbc  \Device\Harddisk0\DR0\Partition1 - ok
10:02:45.0037 0x0dbc  [ 14A495D68B5CAB7C3BA7A082580D8B2A ] \Device\Harddisk0\DR0\Partition2
10:02:45.0037 0x0dbc  \Device\Harddisk0\DR0\Partition2 - ok
10:02:45.0038 0x0dbc  [ F298086A71B754A8D171FF9C3FF4CA9B ] \Device\Harddisk0\DR0\Partition3
10:02:45.0083 0x0dbc  \Device\Harddisk0\DR0\Partition3 - ok
10:02:45.0091 0x0dbc  [ B9A846C221CCDE064A8B98098A3B155B ] \Device\Harddisk0\DR0\Partition4
10:02:45.0101 0x0dbc  \Device\Harddisk0\DR0\Partition4 - ok
10:02:45.0110 0x0dbc  [ CD74FF0252EA719DCE302659F46F072D ] \Device\Harddisk0\DR0\Partition5
10:02:45.0111 0x0dbc  \Device\Harddisk0\DR0\Partition5 - ok
10:02:45.0111 0x0dbc  ================ Scan generic autorun ======================
10:02:45.0161 0x0dbc  [ 554A50B5310E702029D3A675459108FF, 4757D5FFFAC7E73D4A3D931DB1399DDFDBD5811639BDA4517F886C21CC7F2574 ] C:\Program Files (x86)\Hewlett-Packard\HP Odometer\HPSYSDRV.EXE
10:02:45.0162 0x0dbc  HPSYSDRV - ok
10:02:45.0205 0x0dbc  [ AD6C376374C21EC68DF33884613D0A05, 65E0668A2A24B9EF2BDABDE044D240F110AEC8B1EF838AB28084B7F899D2A75E ] C:\Program Files\IDT\WDM\sttray64.exe
10:02:45.0220 0x0dbc  SysTrayApp - ok
10:02:45.0236 0x0dbc  [ 0D997D69A624B2A04EED0B64F2092642, 67B34F6EDF0BA7C2C2BD11D6F8423FAB7AE6D7672220AACE31B632081EA25E35 ] C:\Program Files\IDT\WDM\beats64.exe
10:02:45.0237 0x0dbc  BeatsOSDApp - ok
10:02:45.0310 0x0dbc  [ A97F062F0F42611197C23BBEC678E659, 9568733B250CB29D66637260A2E45DC2DD7623F2A09DCFB5D5D0E4FC8BB8D930 ] C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
10:02:45.0316 0x0dbc  Razer Synapse - ok
10:02:45.0373 0x0dbc  [ 7E4E3EE20FF5D10A60E6267A8EE67786, 43543E39AD57F43D1CA08C2A7AAB6B76102F8D4A4F57E659F39FCA5EAE0291B3 ] C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
10:02:45.0376 0x0dbc  USB3MON - ok
10:02:45.0427 0x0dbc  [ A2DAD4D9FA79BA76A7EBA2EBFBBB5647, 2EDC7C30880402041F7A8C58AA4DDA2E5F7E681713FBD963116CDF78AFD07745 ] C:\Program Files (x86)\PCPitstop\Info Center\InfoCenter.exe
10:02:45.0428 0x0dbc  Info Center - ok
10:02:45.0489 0x0dbc  [ 8E3C8122A64267B26992C6FFD095EC9D, 59D44088AA85487352D51652BFC78EDABA07BAFDA73383745C392546C1604F1E ] C:\Program Files (x86)\PCPitstop\Super Shield\PCMaticRT.exe
10:02:45.0512 0x0dbc  PC MaticRT - ok
10:02:45.0582 0x0dbc  [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
10:02:45.0583 0x0dbc  HP Software Update - ok
10:02:45.0766 0x0dbc  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
10:02:45.0890 0x0dbc  OneDriveSetup - ok
10:02:46.0019 0x0dbc  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
10:02:46.0098 0x0dbc  OneDriveSetup - ok
10:02:46.0228 0x0dbc  [ FC040252FB2AA74545D8B17FE9CD4D78, 5517B34263A25E5460E09635D5B593D0551EF35C3DC94BFBE3E5B4F12D9C20E6 ] C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\OneDrive.exe
10:02:46.0232 0x0dbc  OneDrive - ok
10:02:46.0247 0x0dbc  [ A6177D080759CF4A03EF837A38F62401, 79D1FFABDD7841D9043D4DDF1F93721BCD35D823614411FD4EAB5D2C16A86F35 ] C:\WINDOWS\system32\cmd.exe
10:02:46.0250 0x0dbc  Uninstall C:\Users\Dogbone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 - ok
10:02:46.0372 0x0dbc  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
10:02:46.0451 0x0dbc  OneDriveSetup - ok
10:02:46.0479 0x0dbc  [ 9615F77B42907587DEBD6CA487317830, 71CB9484D079BCAD70C69D50C188A8BC07A3ED6D7EB90BE2749859E506FE696D ] C:\Program Files (x86)\Windows Mail\wab.exe
10:02:46.0486 0x0dbc  WAB Migrate - ok
10:02:46.0487 0x0dbc  Waiting for KSN requests completion. In queue: 389
10:02:47.0488 0x0dbc  Waiting for KSN requests completion. In queue: 389
10:02:48.0488 0x0dbc  Waiting for KSN requests completion. In queue: 78
10:02:49.0488 0x0dbc  Waiting for KSN requests completion. In queue: 78
10:02:50.0511 0x0dbc  AV detected via SS2: PC Matic Super Shield,  (  ), 0x41000 ( enabled : updated )
10:02:50.0511 0x0dbc  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.10240.16384 ), 0x60100 ( disabled : updated )
10:02:50.0513 0x0dbc  Win FW state via NFP2: enabled ( trusted )
10:02:53.0404 0x0dbc  ============================================================
10:02:53.0404 0x0dbc  Scan finished
10:02:53.0404 0x0dbc  ============================================================
10:02:53.0410 0x26f8  Detected object count: 0
10:02:53.0410 0x26f8  Actual detected object count: 0

 

 

The internet provider said that the signal has to travel 60,000 miles to go and come back.  Those numbers you have are actually a little better than usual.  My latency usually runs between 750 (on a good day) and 900+.

If you think I can do better than that please let me know.   I'm not sure what the standard is.   Thank you for your help!   Pat

Attached Files


Edited by Zanadoon, 22 August 2015 - 09:32 AM.


#15 Zanadoon

Zanadoon
  • Topic Starter

  • Members
  • 46 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Midwest
  • Local time:10:34 PM

Posted 22 August 2015 - 09:44 AM

Fix result of Farbar Recovery Scan Tool (x64) Version:21-08-2015 03
Ran by Dogbone (2015-08-22 10:41:20) Run:2
Running from C:\Users\Dogbone\Desktop
Loaded Profiles: Dogbone (Available Profiles: Dogbone & Simone)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Task: {028192E9-3B5D-4947-8913-D409CC2B0C3E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {1D758AFA-90A7-432F-A786-759C3120078A} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1FEF3DB7-8992-414B-AF5A-71AB3B2A5341} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {2B17263B-EAA3-479E-AD4D-F0DA00531B15} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {2C3D6146-4F52-4F52-A2A9-A080950843EC} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5FA6C33C-2438-45DA-887F-767DF1E831DD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {89FD74C1-D7A7-41A1-AD33-31918D3659F8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {8F4C3A2F-D807-437E-BAA4-10DF9721ED47} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
Task: {B3054E1A-E050-4638-814F-BDB50040890A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {BC53CE63-FC2F-4008-A910-9B54FD476847} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {CD11F51A-DAEB-4311-A042-666076B3A5E6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {E96C9A72-6491-4BAE-9245-D05F932E9248} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
File: C:\Program Files (x86)\PCPitstop\Super Shield\PCPitstopRTService.exe
*****************
 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{028192E9-3B5D-4947-8913-D409CC2B0C3E} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D758AFA-90A7-432F-A786-759C3120078A} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FEF3DB7-8992-414B-AF5A-71AB3B2A5341} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2B17263B-EAA3-479E-AD4D-F0DA00531B15} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C3D6146-4F52-4F52-A2A9-A080950843EC} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FA6C33C-2438-45DA-887F-767DF1E831DD} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89FD74C1-D7A7-41A1-AD33-31918D3659F8} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F4C3A2F-D807-437E-BAA4-10DF9721ED47} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B3054E1A-E050-4638-814F-BDB50040890A} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BC53CE63-FC2F-4008-A910-9B54FD476847} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD11F51A-DAEB-4311-A042-666076B3A5E6} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E96C9A72-6491-4BAE-9245-D05F932E9248} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => key not found.
 
========================= File: C:\Program Files (x86)\PCPitstop\Super Shield\PCPitstopRTService.exe ========================
 
File is digitally signed
MD5: AD4B93DCD6E9A4D224ACF397115DBFD3
Creation and modification date: 2015-08-18 18:20 - 2015-06-24 18:29
Size: 0671040
Attributes: ----A
Company Name: PC Pitstop LLC
Internal Name: NTService
Original Name:
Product Name: PC Matic Super Shield
Description: PC Matic Super Shield Service
File Version: 1.0.0.55
Product Version: 1.0.0.55
Copyright: 2015 © PC Pitstop LLC.  All rights reserved.
 
====== End of File: ======
 

==== End of Fixlog 10:41:20 ====
 
 
 
Again,  Thank you very much for your time and effort Gary.
Pat

Edited by Zanadoon, 22 August 2015 - 09:46 AM.





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users