Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

PC slow, often hanging, and multiple (large) instances of Chrome


  • This topic is locked This topic is locked
88 replies to this topic

#76 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 10 November 2017 - 08:18 AM

Run this Malwarebytes Anti-Rootkit.

Follow the instructions in the thread below. Make sure to download the MBAR linked in it. Let me know if you're not able to launch it and run a scan.

https://forums.malwarebytes.com/topic/198907-requested-resource-is-in-use-error-unable-to-start-malwarebytes/

Before you run the program make sure you follow the instructions under Section 5.
5. Unselect sectors and system below. Hit the scan button.

If you manage to run a scan, delete everything it finds, and then copy/paste the content of the "mbar-log-TODAY'S-DATE.txt" log that is located in the MBAR folder here after.
<<<>>>

Let me know if the problem persists.

BC AdBot (Login to Remove)

 


#77 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 10 November 2017 - 08:14 PM

Program reported all was clean!  Just before I ran the program, I had to kill IE in the Task Manager because it had frozen again.

Attached Files



#78 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 11 November 2017 - 09:33 AM

I suggest your remov Internet Explorer 11.

How to.
https://www.wikihow.com/Uninstall-Internet-Explorer-11-for-Windows-7

Read or print the page before proceeding.

Step 6
Wait for the uninstallation to complete. Uninstalling Internet Explorer 11 may take a few minutes. Once the uninstallation is complete, click Restart Now to reboot your computer and complete the process.
Internet Explorer will be reverted to the previously-installed version. This could be Internet Explorer 10, 9, or 8.

Step 7
When the PC has restarted, you may wish to hide the Windows Update for Internet Explorer for Windows 7 for x86/x64-based Systems to prevent IE11 from being mistakenly reinstalled again. (see screenshot below)

How is the computer running now?

#79 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 15 November 2017 - 07:05 AM

I uninstalled IE11.  It rolled back to IE8, which most websites started complaining about!

 

I reinstalled Chrome, and all seems well.  The computer is running really nicely for a couple of hours, and before I would have had to kill processes in the Task Manager by now.  So fingers crossed...

 

Not sure how I disable Windows auto-updates though.



#80 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 15 November 2017 - 09:14 AM



Hi,

Not sure how I disable Windows auto-updates though.


http://ccm.net/faq/15286-how-to-disable-updates-in-windows-7

===

You may wish to install Internet Exlore version 10 which is available here.
https://www.microsoft.com/en-ca/download/details.aspx?id=39232

Look at the Install instructions section
You can download the installer and run it later.
I suggest you do that.

When the Download is complete closed all running applications and run the installer file.

When completed restart the computer normally. If all is well then install the Updates for that version using IE 10.

Refer to the Related Resources on the page above.

#81 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 15 November 2017 - 04:26 PM

Hmmm.  I have since had to kill large Chrome processes to get the PC running smoothly again - twice.

 

I have disabled Windows Updates.  I have not installed IE10.



#82 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 16 November 2017 - 08:04 AM



Is it possible that your chorme settings are being synced?

Go to this Chome site:

https://support.google.com/chrome/answer/165139?hl=en&visit_id=1-636464333003076961-2895244757&rd=1

Sigh oin to Chrome as requested on the first line.

Under the People section.

Click the Sync tab.

Slide the sync everything to the left to stop it.

Restart chrome.

How is it now?

#83 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 16 November 2017 - 12:51 PM

Done all that.

 

Still the same.  Every couple of hours, everything slows down / seizes up, I go to Task Manager and fine 8/9 Chrome processes, some seemingly very large, I kill them all, then things are OK again.

 

 

Attached Files



#84 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 16 November 2017 - 02:21 PM

Hi,

The CSRSS process could be problematic.

We will check your BIOS and Master boot record.

Read carefully and follow these steps.
TDSS
  • Download TDSSKiller and save it to your Desktop.
  • Doubleclick on TDSSKiller.exe to run the application.
  • Then click on Start Scan.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • Important: Do NOT change the default action on your own unless instructed by a malware Helper! Doing so may render your computer unbootable.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is required, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.
  • ===

    Download http://public.avast.com/~gmerek/aswMBR.exe (aswMBR.exe) to your desktop. Double click the aswMBR.exe to run it.
    • Click the "Scan" button to start scan.
    • Upon completion of the scan, click Save log, and save it to your desktop. (Note - do not select any Fix at this time) <- IMPORTANT
    • Please paste the contents of that log in your next reply.
    There shall also be a file on your desktop named MBR.dat. Right click that file and select Send To>Compressed (zipped) folder. Please attach that zipped file in your next reply.
    ===

    Wait for further instructions.


#85 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 20 November 2017 - 03:15 AM

07:50:56.0633 6092  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
07:50:58.0208 6092  ============================================================
07:50:58.0208 6092  Current date / time: 2017/11/20 07:50:58.0208
07:50:58.0208 6092  SystemInfo:
07:50:58.0208 6092  
07:50:58.0208 6092  OS Version: 6.1.7601 ServicePack: 1.0
07:50:58.0208 6092  Product type: Workstation
07:50:58.0208 6092  ComputerName: TOMREAD-PC
07:50:58.0208 6092  UserName: Tom Read
07:50:58.0208 6092  Windows directory: C:\Windows
07:50:58.0208 6092  System windows directory: C:\Windows
07:50:58.0208 6092  Running under WOW64
07:50:58.0208 6092  Processor architecture: Intel x64
07:50:58.0208 6092  Number of processors: 4
07:50:58.0208 6092  Page size: 0x1000
07:50:58.0208 6092  Boot type: Normal boot
07:50:58.0208 6092  ============================================================
07:50:59.0394 6092  Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
07:50:59.0425 6092  ============================================================
07:50:59.0425 6092  \Device\Harddisk0\DR0:
07:50:59.0425 6092  MBR partitions:
07:50:59.0425 6092  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
07:50:59.0425 6092  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xE8DD5800
07:50:59.0425 6092  ============================================================
07:50:59.0503 6092  C: <-> \Device\Harddisk0\DR0\Partition2
07:50:59.0534 6092  ============================================================
07:50:59.0534 6092  Initialize success
07:50:59.0534 6092  ============================================================
07:51:19.0975 0792  ============================================================
07:51:19.0975 0792  Scan started
07:51:19.0975 0792  Mode: Manual; 
07:51:19.0975 0792  ============================================================
07:51:22.0557 0792  ================ Scan system memory ========================
07:51:22.0557 0792  System memory - ok
07:51:22.0557 0792  ================ Scan services =============================
07:51:22.0744 0792  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
07:51:22.0760 0792  1394ohci - ok
07:51:22.0776 0792  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
07:51:22.0776 0792  ACPI - ok
07:51:22.0791 0792  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
07:51:22.0791 0792  AcpiPmi - ok
07:51:22.0869 0792  [ 38622FFE9369D3EC01C0097235BD9279 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
07:51:22.0869 0792  AdobeARMservice - ok
07:51:22.0963 0792  [ 0B2CE2A0528FB811D6D714ED44F3400E ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
07:51:22.0978 0792  AdobeFlashPlayerUpdateSvc - ok
07:51:22.0994 0792  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
07:51:23.0010 0792  adp94xx - ok
07:51:23.0025 0792  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\drivers\adpahci.sys
07:51:23.0025 0792  adpahci - ok
07:51:23.0041 0792  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
07:51:23.0041 0792  adpu320 - ok
07:51:23.0072 0792  [ 262D7C87D0AC20B96EF9877D3CA478A0 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
07:51:23.0088 0792  AeLookupSvc - ok
07:51:23.0181 0792  [ 0DC2A9882540DEA4A55B08785E09D8FC ] AFD             C:\Windows\system32\drivers\afd.sys
07:51:23.0181 0792  AFD - ok
07:51:23.0197 0792  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
07:51:23.0197 0792  agp440 - ok
07:51:23.0212 0792  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
07:51:23.0212 0792  ALG - ok
07:51:23.0228 0792  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
07:51:23.0228 0792  aliide - ok
07:51:23.0228 0792  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
07:51:23.0228 0792  amdide - ok
07:51:23.0244 0792  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
07:51:23.0244 0792  AmdK8 - ok
07:51:23.0244 0792  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
07:51:23.0244 0792  AmdPPM - ok
07:51:23.0275 0792  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
07:51:23.0275 0792  amdsata - ok
07:51:23.0275 0792  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
07:51:23.0290 0792  amdsbs - ok
07:51:23.0290 0792  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
07:51:23.0290 0792  amdxata - ok
07:51:23.0337 0792  [ C16B5B379A2A79702CC5FF923EAAE3FD ] AppID           C:\Windows\system32\drivers\appid.sys
07:51:23.0337 0792  AppID - ok
07:51:23.0384 0792  [ 5152D6B29C61EF59537DBDA92BFE2978 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
07:51:23.0384 0792  AppIDSvc - ok
07:51:23.0415 0792  [ DE23E052E557580674785CDF45B613F3 ] Appinfo         C:\Windows\System32\appinfo.dll
07:51:23.0415 0792  Appinfo - ok
07:51:23.0415 0792  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\drivers\arc.sys
07:51:23.0415 0792  arc - ok
07:51:23.0431 0792  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\drivers\arcsas.sys
07:51:23.0431 0792  arcsas - ok
07:51:23.0478 0792  [ BBF8F831C7720DD5135D8C4C8325187A ] asComSvc        C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
07:51:23.0478 0792  asComSvc - ok
07:51:23.0509 0792  [ 798DE15F187C1F013095BBBEB6FB6197 ] AsIO            C:\Windows\syswow64\drivers\AsIO.sys
07:51:23.0509 0792  AsIO - ok
07:51:23.0603 0792  [ 8637F3119057178364D200F2462E625C ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
07:51:23.0603 0792  aspnet_state - ok
07:51:23.0619 0792  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
07:51:23.0635 0792  AsyncMac - ok
07:51:23.0650 0792  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
07:51:23.0650 0792  atapi - ok
07:51:23.0697 0792  [ 67C717EC24FCAAE7B518D9E06AD036AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
07:51:23.0713 0792  AudioEndpointBuilder - ok
07:51:23.0728 0792  [ 67C717EC24FCAAE7B518D9E06AD036AB ] AudioSrv        C:\Windows\System32\Audiosrv.dll
07:51:23.0728 0792  AudioSrv - ok
07:51:23.0744 0792  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
07:51:23.0744 0792  AxInstSV - ok
07:51:23.0775 0792  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
07:51:23.0775 0792  b06bdrv - ok
07:51:23.0791 0792  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
07:51:23.0806 0792  b57nd60a - ok
07:51:23.0884 0792  [ E49110A58A32E9450356686A95DD7763 ] BCMH43XX        C:\Windows\system32\DRIVERS\bcmwlhigh664.sys
07:51:23.0900 0792  BCMH43XX - ok
07:51:23.0915 0792  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
07:51:23.0915 0792  BDESVC - ok
07:51:23.0931 0792  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
07:51:23.0931 0792  Beep - ok
07:51:23.0962 0792  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
07:51:23.0978 0792  BFE - ok
07:51:24.0009 0792  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
07:51:24.0103 0792  BITS - ok
07:51:24.0118 0792  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
07:51:24.0118 0792  blbdrive - ok
07:51:24.0149 0792  [ ABA3984C822E4D3F889699912D85D6C5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
07:51:24.0149 0792  bowser - ok
07:51:24.0165 0792  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
07:51:24.0165 0792  BrFiltLo - ok
07:51:24.0181 0792  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
07:51:24.0181 0792  BrFiltUp - ok
07:51:24.0196 0792  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
07:51:24.0196 0792  Browser - ok
07:51:24.0212 0792  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
07:51:24.0212 0792  Brserid - ok
07:51:24.0227 0792  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
07:51:24.0227 0792  BrSerWdm - ok
07:51:24.0243 0792  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
07:51:24.0243 0792  BrUsbMdm - ok
07:51:24.0243 0792  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
07:51:24.0243 0792  BrUsbSer - ok
07:51:24.0274 0792  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum         C:\Windows\system32\DRIVERS\BthEnum.sys
07:51:24.0274 0792  BthEnum - ok
07:51:24.0290 0792  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
07:51:24.0290 0792  BTHMODEM - ok
07:51:24.0321 0792  [ 5A8951D195AFEF979C4AB02A129EBC37 ] BthPan          C:\Windows\system32\drivers\bthpan.sys
07:51:24.0321 0792  BthPan - ok
07:51:24.0368 0792  [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT         C:\Windows\system32\Drivers\BTHport.sys
07:51:24.0383 0792  BTHPORT - ok
07:51:24.0415 0792  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
07:51:24.0415 0792  bthserv - ok
07:51:24.0430 0792  [ F188B7394D81010767B6DF3178519A37 ] BTHUSB          C:\Windows\system32\Drivers\BTHUSB.sys
07:51:24.0446 0792  BTHUSB - ok
07:51:24.0446 0792  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
07:51:24.0446 0792  cdfs - ok
07:51:24.0477 0792  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
07:51:24.0477 0792  cdrom - ok
07:51:24.0477 0792  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
07:51:24.0493 0792  CertPropSvc - ok
07:51:24.0493 0792  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\drivers\circlass.sys
07:51:24.0493 0792  circlass - ok
07:51:24.0539 0792  [ 3963FEC1892368DD500E6ED1F5C286CE ] CLFS            C:\Windows\system32\CLFS.sys
07:51:24.0555 0792  CLFS - ok
07:51:24.0602 0792  [ F13EC8A783E0CB0D6DC26A3CA848B7B8 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
07:51:24.0602 0792  clr_optimization_v2.0.50727_32 - ok
07:51:24.0617 0792  [ B4D73F04E9BC076F7CDAC4327DF636BB ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
07:51:24.0617 0792  clr_optimization_v2.0.50727_64 - ok
07:51:24.0680 0792  [ 2BA609641FA64BAB02ACD3C0095672F5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
07:51:24.0680 0792  clr_optimization_v4.0.30319_32 - ok
07:51:24.0695 0792  [ 7C7502CD2A2CFAB399D0D8DA95DB03E7 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
07:51:24.0695 0792  clr_optimization_v4.0.30319_64 - ok
07:51:24.0711 0792  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
07:51:24.0711 0792  CmBatt - ok
07:51:24.0727 0792  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
07:51:24.0727 0792  cmdide - ok
07:51:24.0789 0792  [ A98CED39AD91B445E2E442A9BD67E8B4 ] CNG             C:\Windows\system32\Drivers\cng.sys
07:51:24.0805 0792  CNG - ok
07:51:24.0805 0792  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
07:51:24.0805 0792  Compbatt - ok
07:51:24.0820 0792  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
07:51:24.0820 0792  CompositeBus - ok
07:51:24.0836 0792  COMSysApp - ok
07:51:24.0851 0792  [ 15FBADDC84ED202E59A4F1B201CC692C ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
07:51:24.0867 0792  cphs - ok
07:51:24.0883 0792  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
07:51:24.0883 0792  crcdisk - ok
07:51:24.0914 0792  [ 48FEDBE324F1EA9417BA1D62AE863011 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
07:51:24.0914 0792  CryptSvc - ok
07:51:24.0945 0792  [ D06E443457FADC6B1AFAF3AA4B6936F6 ] dc3d            C:\Windows\system32\DRIVERS\dc3d.sys
07:51:24.0945 0792  dc3d - ok
07:51:24.0992 0792  [ 3F1A199859B4F3F8357B2A0AF5666A54 ] DcomLaunch      C:\Windows\system32\rpcss.dll
07:51:25.0007 0792  DcomLaunch - ok
07:51:25.0023 0792  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
07:51:25.0023 0792  defragsvc - ok
07:51:25.0054 0792  [ 9B38580063D281A99E68EF5813022A5F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
07:51:25.0070 0792  DfsC - ok
07:51:25.0117 0792  [ 9593475FBC857A05D93BFF4FA7323C2B ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
07:51:25.0117 0792  dg_ssudbus - ok
07:51:25.0132 0792  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
07:51:25.0132 0792  Dhcp - ok
07:51:25.0210 0792  [ EE9954237F15BE4DD9304D12E4D305ED ] DiagTrack       C:\Windows\system32\diagtrack.dll
07:51:25.0226 0792  DiagTrack - ok
07:51:25.0226 0792  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
07:51:25.0226 0792  discache - ok
07:51:25.0273 0792  [ 616387BBD83372220B09DE95F4E67BBC ] Disk            C:\Windows\system32\drivers\disk.sys
07:51:25.0273 0792  Disk - ok
07:51:25.0288 0792  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
07:51:25.0288 0792  Dnscache - ok
07:51:25.0304 0792  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
07:51:25.0304 0792  dot3svc - ok
07:51:25.0319 0792  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
07:51:25.0319 0792  DPS - ok
07:51:25.0366 0792  [ 26FE888505E5A945B0536AF9A2A27A6F ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
07:51:25.0366 0792  drmkaud - ok
07:51:25.0413 0792  [ 5CEF80AE869336376F550ECAE91E424A ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
07:51:25.0429 0792  DXGKrnl - ok
07:51:25.0429 0792  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
07:51:25.0429 0792  EapHost - ok
07:51:25.0522 0792  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\drivers\evbda.sys
07:51:25.0586 0792  ebdrv - ok
07:51:25.0664 0792  [ 62056ADD38513A86C4866E912371B56B ] EFS             C:\Windows\System32\lsass.exe
07:51:25.0664 0792  EFS - ok
07:51:25.0710 0792  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
07:51:25.0710 0792  ehRecvr - ok
07:51:25.0726 0792  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
07:51:25.0726 0792  ehSched - ok
07:51:25.0742 0792  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
07:51:25.0742 0792  elxstor - ok
07:51:25.0788 0792  [ 859DF918E0B44E764D394E940C4717AD ] EpsonScanSvc    C:\Windows\system32\EscSvc64.exe
07:51:25.0788 0792  EpsonScanSvc - ok
07:51:25.0866 0792  [ 86032A47AD0105130FE7808C903E2086 ] EPSON_PM_RPCV4_06 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE
07:51:25.0866 0792  EPSON_PM_RPCV4_06 - ok
07:51:25.0898 0792  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
07:51:25.0898 0792  ErrDev - ok
07:51:25.0929 0792  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
07:51:25.0944 0792  EventSystem - ok
07:51:25.0976 0792  [ 7E45F8B117419ABA3BB26579F6E70324 ] exfat           C:\Windows\system32\drivers\exfat.sys
07:51:25.0976 0792  exfat - ok
07:51:26.0022 0792  [ 6EDFA237D25433C03F42FBFDB16BDD24 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
07:51:26.0022 0792  fastfat - ok
07:51:26.0054 0792  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
07:51:26.0054 0792  Fax - ok
07:51:26.0085 0792  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\drivers\fdc.sys
07:51:26.0085 0792  fdc - ok
07:51:26.0085 0792  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
07:51:26.0085 0792  fdPHost - ok
07:51:26.0100 0792  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
07:51:26.0100 0792  FDResPub - ok
07:51:26.0116 0792  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
07:51:26.0132 0792  FileInfo - ok
07:51:26.0132 0792  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
07:51:26.0132 0792  Filetrace - ok
07:51:26.0147 0792  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
07:51:26.0147 0792  flpydisk - ok
07:51:26.0163 0792  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
07:51:26.0163 0792  FltMgr - ok
07:51:26.0241 0792  [ 785F474FB5E67E448E1931C98E8D0ABC ] FontCache       C:\Windows\system32\FntCache.dll
07:51:26.0256 0792  FontCache - ok
07:51:26.0288 0792  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
07:51:26.0288 0792  FontCache3.0.0.0 - ok
07:51:26.0303 0792  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
07:51:26.0303 0792  FsDepends - ok
07:51:26.0319 0792  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
07:51:26.0319 0792  Fs_Rec - ok
07:51:26.0350 0792  [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
07:51:26.0350 0792  fvevol - ok
07:51:26.0350 0792  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
07:51:26.0350 0792  gagp30kx - ok
07:51:26.0397 0792  [ E4AE497857409127ED57562AF913A903 ] gpsvc           C:\Windows\System32\gpsvc.dll
07:51:26.0412 0792  gpsvc - ok
07:51:26.0444 0792  [ B40913FB482A92AB3E60F1586C78558A ] GridinSoftInetSecurityDriver C:\Windows\system32\DRIVERS\gsInetSecurity.sys
07:51:26.0459 0792  GridinSoftInetSecurityDriver - ok
07:51:26.0537 0792  [ 605CCC9CE1839BC5583017DF7CAE27A6 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
07:51:26.0537 0792  gupdate - ok
07:51:26.0553 0792  [ 605CCC9CE1839BC5583017DF7CAE27A6 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
07:51:26.0553 0792  gupdatem - ok
07:51:26.0568 0792  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
07:51:26.0568 0792  hcw85cir - ok
07:51:26.0584 0792  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
07:51:26.0584 0792  HdAudAddService - ok
07:51:26.0600 0792  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
07:51:26.0600 0792  HDAudBus - ok
07:51:26.0615 0792  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
07:51:26.0615 0792  HidBatt - ok
07:51:26.0631 0792  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
07:51:26.0631 0792  HidBth - ok
07:51:26.0662 0792  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\drivers\hidir.sys
07:51:26.0662 0792  HidIr - ok
07:51:26.0678 0792  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
07:51:26.0678 0792  hidserv - ok
07:51:26.0693 0792  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
07:51:26.0693 0792  HidUsb - ok
07:51:26.0724 0792  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
07:51:26.0724 0792  hkmsvc - ok
07:51:26.0740 0792  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
07:51:26.0740 0792  HomeGroupListener - ok
07:51:26.0756 0792  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
07:51:26.0756 0792  HomeGroupProvider - ok
07:51:26.0756 0792  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
07:51:26.0771 0792  HpSAMD - ok
07:51:26.0787 0792  [ 7C7C986776D00E575BFBDE5DCBDC615D ] HtcVCom32       C:\Windows\system32\DRIVERS\HtcVComV64.sys
07:51:26.0802 0792  HtcVCom32 - ok
07:51:26.0834 0792  [ CF5C9BD985120781200D35FD445D0BD5 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
07:51:26.0849 0792  HTTP - ok
07:51:26.0865 0792  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
07:51:26.0865 0792  hwpolicy - ok
07:51:26.0865 0792  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
07:51:26.0865 0792  i8042prt - ok
07:51:26.0912 0792  [ 57CD95DEB3529181BCC931DD2DFB2341 ] iaStorA         C:\Windows\system32\DRIVERS\iaStorA.sys
07:51:26.0912 0792  iaStorA - ok
07:51:26.0958 0792  [ 20E83F4632E15A5E9E716FF2E8AC7FAE ] IAStorDataMgrSvc C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
07:51:26.0958 0792  IAStorDataMgrSvc - ok
07:51:26.0974 0792  [ CE5CD8CBE940965867D507AB8EA2795A ] iaStorF         C:\Windows\system32\DRIVERS\iaStorF.sys
07:51:26.0974 0792  iaStorF - ok
07:51:27.0005 0792  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
07:51:27.0005 0792  iaStorV - ok
07:51:27.0114 0792  [ C98A5B9D932430AD8EEBD3EF73756EF7 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
07:51:27.0146 0792  idsvc - ok
07:51:27.0239 0792  [ C38AFE18A40ADF005647090DD3AC24F3 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
07:51:27.0302 0792  igfx - ok
07:51:27.0333 0792  [ 7A510A9AFC7955DEE63F8DC243E31292 ] igfxCUIService1.0.0.0 C:\Windows\system32\igfxCUIService.exe
07:51:27.0333 0792  igfxCUIService1.0.0.0 - ok
07:51:27.0348 0792  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
07:51:27.0348 0792  iirsp - ok
07:51:27.0364 0792  [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT          C:\Windows\System32\ikeext.dll
07:51:27.0380 0792  IKEEXT - ok
07:51:27.0442 0792  [ 8CAA2A543155675D09B0D5239E31EC99 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
07:51:27.0489 0792  IntcAzAudAddService - ok
07:51:27.0520 0792  [ EC80E6B9E27DC3E22ED5B2E0E75A39C0 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
07:51:27.0520 0792  IntcDAud - ok
07:51:27.0552 0792  [ DAE6C3099D291EED8922A65C29ABCF52 ] Intel® Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
07:51:27.0568 0792  Intel® Capability Licensing Service Interface - ok
07:51:27.0583 0792  [ D45226E3E7A25F1E7CE8DF8FD0A2A098 ] Intel® Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
07:51:27.0583 0792  Intel® Capability Licensing Service TCP IP Interface - ok
07:51:27.0599 0792  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
07:51:27.0599 0792  intelide - ok
07:51:27.0615 0792  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
07:51:27.0615 0792  intelppm - ok
07:51:27.0646 0792  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
07:51:27.0646 0792  IPBusEnum - ok
07:51:27.0661 0792  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
07:51:27.0693 0792  IpFilterDriver - ok
07:51:27.0739 0792  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
07:51:27.0739 0792  iphlpsvc - ok
07:51:27.0755 0792  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
07:51:27.0755 0792  IPMIDRV - ok
07:51:27.0755 0792  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
07:51:27.0771 0792  IPNAT - ok
07:51:27.0771 0792  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
07:51:27.0771 0792  IRENUM - ok
07:51:27.0786 0792  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
07:51:27.0786 0792  isapnp - ok
07:51:27.0802 0792  [ 96BB922A0981BC7432C8CF52B5410FE6 ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
07:51:27.0802 0792  iScsiPrt - ok
07:51:27.0817 0792  [ 78D369F8A81A341109FBA1DB64B4C512 ] iusb3hcs        C:\Windows\system32\DRIVERS\iusb3hcs.sys
07:51:27.0817 0792  iusb3hcs - ok
07:51:27.0833 0792  [ 5B632ABA038CE2E2D5D2D1115C6B26D1 ] iusb3hub        C:\Windows\system32\DRIVERS\iusb3hub.sys
07:51:27.0849 0792  iusb3hub - ok
07:51:27.0864 0792  [ EA841584EF59528D11F20355770E427E ] iusb3xhc        C:\Windows\system32\DRIVERS\iusb3xhc.sys
07:51:27.0864 0792  iusb3xhc - ok
07:51:27.0911 0792  [ 52069AEB42D3D0F97CBCA1085EBF55E6 ] jhi_service     C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
07:51:27.0927 0792  jhi_service - ok
07:51:27.0927 0792  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
07:51:27.0927 0792  kbdclass - ok
07:51:27.0942 0792  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
07:51:27.0942 0792  kbdhid - ok
07:51:27.0958 0792  [ 62056ADD38513A86C4866E912371B56B ] KeyIso          C:\Windows\system32\lsass.exe
07:51:27.0958 0792  KeyIso - ok
07:51:27.0989 0792  [ DFE85B031220F8E0271716BBB3C4C8FF ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
07:51:27.0989 0792  KSecDD - ok
07:51:28.0036 0792  [ 70D7302DD70B979637179BFD8295C924 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
07:51:28.0036 0792  KSecPkg - ok
07:51:28.0051 0792  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
07:51:28.0051 0792  ksthunk - ok
07:51:28.0083 0792  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
07:51:28.0098 0792  KtmRm - ok
07:51:28.0129 0792  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
07:51:28.0129 0792  LanmanServer - ok
07:51:28.0145 0792  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
07:51:28.0145 0792  LanmanWorkstation - ok
07:51:28.0161 0792  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
07:51:28.0161 0792  lltdio - ok
07:51:28.0192 0792  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
07:51:28.0192 0792  lltdsvc - ok
07:51:28.0207 0792  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
07:51:28.0207 0792  lmhosts - ok
07:51:28.0239 0792  [ 3DE66F47365AA8CEB18B1EE272F4FEBA ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
07:51:28.0254 0792  LMS - ok
07:51:28.0270 0792  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
07:51:28.0270 0792  LSI_FC - ok
07:51:28.0270 0792  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
07:51:28.0285 0792  LSI_SAS - ok
07:51:28.0285 0792  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
07:51:28.0301 0792  LSI_SAS2 - ok
07:51:28.0317 0792  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
07:51:28.0317 0792  LSI_SCSI - ok
07:51:28.0332 0792  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
07:51:28.0332 0792  luafv - ok
07:51:28.0348 0792  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
07:51:28.0363 0792  Mcx2Svc - ok
07:51:28.0410 0792  [ 11F714F85530A2BD134074DC30E99FCA ] MDM             C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
07:51:28.0426 0792  MDM - ok
07:51:28.0441 0792  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\drivers\megasas.sys
07:51:28.0441 0792  megasas - ok
07:51:28.0441 0792  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
07:51:28.0457 0792  MegaSR - ok
07:51:28.0473 0792  [ E0EF6C1399A9B1AAA0B28590411BED04 ] MEIx64          C:\Windows\system32\DRIVERS\TeeDriverx64.sys
07:51:28.0488 0792  MEIx64 - ok
07:51:28.0488 0792  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
07:51:28.0488 0792  MMCSS - ok
07:51:28.0504 0792  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
07:51:28.0504 0792  Modem - ok
07:51:28.0519 0792  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
07:51:28.0519 0792  monitor - ok
07:51:28.0535 0792  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
07:51:28.0535 0792  mouclass - ok
07:51:28.0551 0792  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
07:51:28.0551 0792  mouhid - ok
07:51:28.0582 0792  [ 072D8646E23ECF8A3F5F0157017B4DB6 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
07:51:28.0582 0792  mountmgr - ok
07:51:28.0597 0792  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
07:51:28.0597 0792  mpio - ok
07:51:28.0613 0792  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
07:51:28.0613 0792  mpsdrv - ok
07:51:28.0644 0792  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
07:51:28.0644 0792  MpsSvc - ok
07:51:28.0691 0792  [ 98DB1790F0A584E0A2528B92B052417F ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
07:51:28.0691 0792  MRxDAV - ok
07:51:28.0738 0792  [ 767C6DF04C5758B9F0790D400541B44F ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
07:51:28.0738 0792  mrxsmb - ok
07:51:28.0753 0792  [ BD55F604FFABC911F8E5500186AE70E5 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
07:51:28.0769 0792  mrxsmb10 - ok
07:51:28.0769 0792  [ 92EECFB046D4706A4B8D699A4069B6EC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
07:51:28.0769 0792  mrxsmb20 - ok
07:51:28.0785 0792  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
07:51:28.0800 0792  msahci - ok
07:51:28.0800 0792  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
07:51:28.0800 0792  msdsm - ok
07:51:28.0831 0792  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
07:51:28.0831 0792  MSDTC - ok
07:51:28.0847 0792  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
07:51:28.0863 0792  Msfs - ok
07:51:28.0863 0792  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
07:51:28.0863 0792  mshidkmdf - ok
07:51:28.0878 0792  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
07:51:28.0878 0792  msisadrv - ok
07:51:28.0909 0792  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
07:51:28.0909 0792  MSiSCSI - ok
07:51:28.0909 0792  msiserver - ok
07:51:28.0941 0792  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
07:51:28.0941 0792  MSKSSRV - ok
07:51:28.0956 0792  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
07:51:28.0956 0792  MSPCLOCK - ok
07:51:28.0972 0792  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
07:51:28.0972 0792  MSPQM - ok
07:51:28.0987 0792  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
07:51:28.0987 0792  MsRPC - ok
07:51:29.0003 0792  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
07:51:29.0003 0792  mssmbios - ok
07:51:29.0019 0792  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
07:51:29.0019 0792  MSTEE - ok
07:51:29.0019 0792  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
07:51:29.0019 0792  MTConfig - ok
07:51:29.0034 0792  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
07:51:29.0034 0792  Mup - ok
07:51:29.0190 0792  [ B7B4BF008EE836D24C245F6A71A42C82 ] MyEpson Portal Service C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe
07:51:29.0221 0792  MyEpson Portal Service - ok
07:51:29.0253 0792  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
07:51:29.0253 0792  napagent - ok
07:51:29.0299 0792  [ 9FB2A095B1166CB3C9A06651863B3452 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
07:51:29.0299 0792  NativeWifiP - ok
07:51:29.0377 0792  [ F7309F42555F8AAB7144A51A1F2585B0 ] NDIS            C:\Windows\system32\drivers\ndis.sys
07:51:29.0393 0792  NDIS - ok
07:51:29.0393 0792  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
07:51:29.0393 0792  NdisCap - ok
07:51:29.0409 0792  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
07:51:29.0424 0792  NdisTapi - ok
07:51:29.0424 0792  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
07:51:29.0424 0792  Ndisuio - ok
07:51:29.0440 0792  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
07:51:29.0440 0792  NdisWan - ok
07:51:29.0455 0792  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
07:51:29.0455 0792  NDProxy - ok
07:51:29.0455 0792  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
07:51:29.0455 0792  NetBIOS - ok
07:51:29.0502 0792  [ 734837208CAFD6E0959A7A0333C95C9D ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
07:51:29.0502 0792  NetBT - ok
07:51:29.0518 0792  [ 62056ADD38513A86C4866E912371B56B ] Netlogon        C:\Windows\system32\lsass.exe
07:51:29.0518 0792  Netlogon - ok
07:51:29.0533 0792  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
07:51:29.0549 0792  Netman - ok
07:51:29.0612 0792  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
07:51:29.0612 0792  NetMsmqActivator - ok
07:51:29.0612 0792  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
07:51:29.0612 0792  NetPipeActivator - ok
07:51:29.0659 0792  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
07:51:29.0659 0792  netprofm - ok
07:51:29.0675 0792  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
07:51:29.0675 0792  NetTcpActivator - ok
07:51:29.0675 0792  [ 10D5997E2F5F16FE3BC3BD1A4BF31EA8 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
07:51:29.0690 0792  NetTcpPortSharing - ok
07:51:29.0706 0792  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
07:51:29.0706 0792  nfrd960 - ok
07:51:29.0768 0792  [ 8B301D474B478E9A92823BAB50A7BC49 ] NlaSvc          C:\Windows\System32\nlasvc.dll
07:51:29.0784 0792  NlaSvc - ok
07:51:29.0831 0792  [ C31FA031335EFF434B2D94278E74BCCE ] NPF             C:\Windows\system32\DRIVERS\npf.sys
07:51:29.0831 0792  NPF - ok
07:51:29.0846 0792  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
07:51:29.0846 0792  Npfs - ok
07:51:29.0878 0792  [ 668B9EFF5CCA4542F435D2CD9CE3C778 ] nsi             C:\Windows\system32\nsisvc.dll
07:51:29.0893 0792  nsi - ok
07:51:29.0909 0792  [ BE313E566EEA2A4B7F9AAC9782A567D4 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
07:51:29.0924 0792  nsiproxy - ok
07:51:29.0987 0792  [ 96FEB18D7FFA4DC10F0C3CC4EF41500E ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
07:51:30.0018 0792  Ntfs - ok
07:51:30.0049 0792  [ D4012918D3A3847B44B888D56BC095D6 ] NuidFltr        C:\Windows\system32\DRIVERS\NuidFltr.sys
07:51:30.0049 0792  NuidFltr - ok
07:51:30.0065 0792  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
07:51:30.0065 0792  Null - ok
07:51:30.0080 0792  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
07:51:30.0096 0792  nvraid - ok
07:51:30.0112 0792  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
07:51:30.0112 0792  nvstor - ok
07:51:30.0127 0792  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
07:51:30.0127 0792  nv_agp - ok
07:51:30.0127 0792  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
07:51:30.0127 0792  ohci1394 - ok
07:51:30.0174 0792  [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
07:51:30.0174 0792  ose - ok
07:51:30.0221 0792  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
07:51:30.0221 0792  p2pimsvc - ok
07:51:30.0252 0792  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
07:51:30.0268 0792  p2psvc - ok
07:51:30.0283 0792  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\drivers\parport.sys
07:51:30.0283 0792  Parport - ok
07:51:30.0299 0792  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
07:51:30.0299 0792  partmgr - ok
07:51:30.0346 0792  [ 3CD83692C43D87088E85E3C916146FFB ] PcaSvc          C:\Windows\System32\pcasvc.dll
07:51:30.0346 0792  PcaSvc - ok
07:51:30.0361 0792  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
07:51:30.0361 0792  pci - ok
07:51:30.0361 0792  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
07:51:30.0377 0792  pciide - ok
07:51:30.0377 0792  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
07:51:30.0377 0792  pcmcia - ok
07:51:30.0392 0792  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
07:51:30.0392 0792  pcw - ok
07:51:30.0408 0792  [ EA4D67448BE493D543F1730D6CD04694 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
07:51:30.0424 0792  PEAUTH - ok
07:51:30.0474 0792  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
07:51:30.0500 0792  PerfHost - ok
07:51:30.0563 0792  [ BC5F8C5C7ACCD0B884FCB8B67616F537 ] pla             C:\Windows\system32\pla.dll
07:51:30.0578 0792  pla - ok
07:51:30.0625 0792  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
07:51:30.0625 0792  PlugPlay - ok
07:51:30.0641 0792  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
07:51:30.0641 0792  PNRPAutoReg - ok
07:51:30.0672 0792  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
07:51:30.0672 0792  PNRPsvc - ok
07:51:30.0719 0792  [ 80D6B0563ED2BF10656B1D4748331082 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
07:51:30.0734 0792  PolicyAgent - ok
07:51:30.0750 0792  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
07:51:30.0750 0792  Power - ok
07:51:30.0766 0792  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
07:51:30.0766 0792  PptpMiniport - ok
07:51:30.0781 0792  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\drivers\processr.sys
07:51:30.0781 0792  Processor - ok
07:51:30.0797 0792  [ B6A58491307B4CADA572583D863DC602 ] ProfSvc         C:\Windows\system32\profsvc.dll
07:51:30.0812 0792  ProfSvc - ok
07:51:30.0812 0792  [ 62056ADD38513A86C4866E912371B56B ] ProtectedStorage C:\Windows\system32\lsass.exe
07:51:30.0828 0792  ProtectedStorage - ok
07:51:30.0844 0792  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
07:51:30.0844 0792  Psched - ok
07:51:30.0875 0792  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
07:51:30.0890 0792  ql2300 - ok
07:51:30.0890 0792  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
07:51:30.0890 0792  ql40xx - ok
07:51:30.0906 0792  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
07:51:30.0906 0792  QWAVE - ok
07:51:30.0922 0792  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
07:51:30.0922 0792  QWAVEdrv - ok
07:51:30.0937 0792  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
07:51:30.0937 0792  RasAcd - ok
07:51:30.0953 0792  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
07:51:30.0953 0792  RasAgileVpn - ok
07:51:30.0968 0792  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
07:51:30.0968 0792  RasAuto - ok
07:51:30.0968 0792  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
07:51:30.0984 0792  Rasl2tp - ok
07:51:30.0984 0792  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
07:51:30.0984 0792  RasMan - ok
07:51:31.0000 0792  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
07:51:31.0000 0792  RasPppoe - ok
07:51:31.0015 0792  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
07:51:31.0015 0792  RasSstp - ok
07:51:31.0031 0792  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
07:51:31.0031 0792  rdbss - ok
07:51:31.0046 0792  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
07:51:31.0046 0792  rdpbus - ok
07:51:31.0062 0792  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
07:51:31.0062 0792  RDPCDD - ok
07:51:31.0062 0792  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
07:51:31.0062 0792  RDPENCDD - ok
07:51:31.0078 0792  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
07:51:31.0078 0792  RDPREFMP - ok
07:51:31.0124 0792  [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
07:51:31.0124 0792  RdpVideoMiniport - ok
07:51:31.0140 0792  [ FE571E088C2D83619D2D48D4E961BF41 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
07:51:31.0156 0792  RDPWD - ok
07:51:31.0171 0792  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
07:51:31.0171 0792  rdyboost - ok
07:51:31.0202 0792  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
07:51:31.0202 0792  RemoteAccess - ok
07:51:31.0234 0792  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
07:51:31.0234 0792  RemoteRegistry - ok
07:51:31.0265 0792  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
07:51:31.0265 0792  RFCOMM - ok
07:51:31.0280 0792  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
07:51:31.0280 0792  RpcEptMapper - ok
07:51:31.0280 0792  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
07:51:31.0296 0792  RpcLocator - ok
07:51:31.0327 0792  [ 3F1A199859B4F3F8357B2A0AF5666A54 ] RpcSs           C:\Windows\system32\rpcss.dll
07:51:31.0327 0792  RpcSs - ok
07:51:31.0358 0792  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
07:51:31.0358 0792  rspndr - ok
07:51:31.0390 0792  [ EF91E0806C01806C3CF62AF006901127 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
07:51:31.0405 0792  RTL8167 - ok
07:51:31.0405 0792  [ 62056ADD38513A86C4866E912371B56B ] SamSs           C:\Windows\system32\lsass.exe
07:51:31.0421 0792  SamSs - ok
07:51:31.0436 0792  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
07:51:31.0436 0792  sbp2port - ok
07:51:31.0452 0792  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
07:51:31.0452 0792  SCardSvr - ok
07:51:31.0468 0792  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
07:51:31.0468 0792  scfilter - ok
07:51:31.0514 0792  [ 40686B59C127F0C93B4234E4A1E3472A ] Schedule        C:\Windows\system32\schedsvc.dll
07:51:31.0530 0792  Schedule - ok
07:51:31.0568 0792  [ 6011CDF54BB6F4C69F38FACCDAD73D7E ] SCMNdisP        C:\Windows\system32\DRIVERS\scmndisp.sys
07:51:31.0568 0792  SCMNdisP - ok
07:51:31.0583 0792  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
07:51:31.0583 0792  SCPolicySvc - ok
07:51:31.0599 0792  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
07:51:31.0599 0792  SDRSVC - ok
07:51:31.0614 0792  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
07:51:31.0614 0792  secdrv - ok
07:51:31.0646 0792  [ A19623BDD61E66A12AB53992002B4F3A ] seclogon        C:\Windows\system32\seclogon.dll
07:51:31.0646 0792  seclogon - ok
07:51:31.0661 0792  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
07:51:31.0661 0792  SENS - ok
07:51:31.0677 0792  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
07:51:31.0677 0792  SensrSvc - ok
07:51:31.0724 0792  [ D666EBEC6374B2018CF61EE204C3CF50 ] Ser2pl          C:\Windows\system32\DRIVERS\ser2pl64.sys
07:51:31.0724 0792  Ser2pl - ok
07:51:31.0739 0792  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
07:51:31.0739 0792  Serenum - ok
07:51:31.0755 0792  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
07:51:31.0755 0792  Serial - ok
07:51:31.0770 0792  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
07:51:31.0770 0792  sermouse - ok
07:51:31.0786 0792  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
07:51:31.0786 0792  SessionEnv - ok
07:51:31.0786 0792  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
07:51:31.0802 0792  sffdisk - ok
07:51:31.0802 0792  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
07:51:31.0802 0792  sffp_mmc - ok
07:51:31.0802 0792  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
07:51:31.0802 0792  sffp_sd - ok
07:51:31.0802 0792  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
07:51:31.0802 0792  sfloppy - ok
07:51:31.0817 0792  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
07:51:31.0817 0792  SharedAccess - ok
07:51:31.0833 0792  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
07:51:31.0833 0792  ShellHWDetection - ok
07:51:31.0833 0792  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
07:51:31.0833 0792  SiSRaid2 - ok
07:51:31.0833 0792  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
07:51:31.0848 0792  SiSRaid4 - ok
07:51:31.0848 0792  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
07:51:31.0848 0792  Smb - ok
07:51:31.0864 0792  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
07:51:31.0864 0792  SNMPTRAP - ok
07:51:31.0880 0792  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
07:51:31.0880 0792  spldr - ok
07:51:31.0895 0792  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
07:51:31.0911 0792  Spooler - ok
07:51:31.0973 0792  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
07:51:32.0039 0792  sppsvc - ok
07:51:32.0045 0792  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
07:51:32.0047 0792  sppuinotify - ok
07:51:32.0066 0792  [ 72E6A150A8C8530B201832D1C801CDE6 ] srv             C:\Windows\system32\DRIVERS\srv.sys
07:51:32.0066 0792  srv - ok
07:51:32.0097 0792  [ C4F67ABCC5033D334613F28F9E782809 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
07:51:32.0113 0792  srv2 - ok
07:51:32.0144 0792  [ C53CB62B0E57488AAE41FDA0FF8A0AB9 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
07:51:32.0144 0792  srvnet - ok
07:51:32.0160 0792  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
07:51:32.0175 0792  SSDPSRV - ok
07:51:32.0175 0792  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
07:51:32.0191 0792  SstpSvc - ok
07:51:32.0238 0792  [ 592FF34A2FD6C6351B8A3AA76B2C0A9E ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
07:51:32.0253 0792  ssudmdm - ok
07:51:32.0347 0792  [ 9DA3B55B17B54789AFB8C657D4ACE4D7 ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
07:51:32.0363 0792  ss_conn_service - ok
07:51:32.0378 0792  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\drivers\stexstor.sys
07:51:32.0378 0792  stexstor - ok
07:51:32.0409 0792  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
07:51:32.0425 0792  stisvc - ok
07:51:32.0441 0792  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
07:51:32.0441 0792  swenum - ok
07:51:32.0456 0792  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
07:51:32.0472 0792  swprv - ok
07:51:32.0534 0792  [ 2E730941CC5BF6200A4F56D1E9C24AAD ] SysMain         C:\Windows\system32\sysmain.dll
07:51:32.0550 0792  SysMain - ok
07:51:32.0565 0792  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
07:51:32.0565 0792  TabletInputService - ok
07:51:32.0616 0792  [ 134B275751051C5D03F9ACCDC4F8CAAB ] tap0901         C:\Windows\system32\DRIVERS\tap0901.sys
07:51:32.0616 0792  tap0901 - ok
07:51:32.0632 0792  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
07:51:32.0632 0792  TapiSrv - ok
07:51:32.0741 0792  [ 7FB36A0A036ADDACE0A868E4A43C1C27 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
07:51:32.0772 0792  Tcpip - ok
07:51:32.0803 0792  [ 7FB36A0A036ADDACE0A868E4A43C1C27 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
07:51:32.0819 0792  TCPIP6 - ok
07:51:32.0850 0792  [ 7FE5586314EE7D6AA8483264A089E5AF ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
07:51:32.0850 0792  tcpipreg - ok
07:51:32.0866 0792  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
07:51:32.0866 0792  TDPIPE - ok
07:51:32.0881 0792  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
07:51:32.0881 0792  TDTCP - ok
07:51:32.0913 0792  [ 4DD986720F7CB7A8A5D1226793097B9A ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
07:51:32.0928 0792  tdx - ok
07:51:32.0944 0792  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
07:51:32.0944 0792  TermDD - ok
07:51:32.0975 0792  [ 008CD4EBFABCF78D0F19B3778492648C ] TermService     C:\Windows\System32\termsrv.dll
07:51:32.0991 0792  TermService - ok
07:51:33.0006 0792  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
07:51:33.0006 0792  Themes - ok
07:51:33.0037 0792  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
07:51:33.0037 0792  THREADORDER - ok
07:51:33.0053 0792  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
07:51:33.0069 0792  TrkWks - ok
07:51:33.0100 0792  [ 07841BAE8841971947E39EB2E0B7AB3C ] TrojanKillerDriver C:\Windows\system32\DRIVERS\gtkdrv.sys
07:51:33.0100 0792  TrojanKillerDriver - ok
07:51:33.0131 0792  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
07:51:33.0131 0792  TrustedInstaller - ok
07:51:33.0162 0792  [ 2CF58216424757ED29605B4F18EC443C ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
07:51:33.0162 0792  tssecsrv - ok
07:51:33.0193 0792  [ E9981ECE8D894CEF7038FD1D040EB426 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
07:51:33.0193 0792  TsUsbFlt - ok
07:51:33.0209 0792  [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
07:51:33.0209 0792  TsUsbGD - ok
07:51:33.0240 0792  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
07:51:33.0240 0792  tunnel - ok
07:51:33.0256 0792  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
07:51:33.0256 0792  uagp35 - ok
07:51:33.0256 0792  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
07:51:33.0271 0792  udfs - ok
07:51:33.0287 0792  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
07:51:33.0303 0792  UI0Detect - ok
07:51:33.0318 0792  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
07:51:33.0318 0792  uliagpkx - ok
07:51:33.0334 0792  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
07:51:33.0334 0792  umbus - ok
07:51:33.0334 0792  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\drivers\umpass.sys
07:51:33.0334 0792  UmPass - ok
07:51:33.0381 0792  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
07:51:33.0396 0792  upnphost - ok
07:51:33.0427 0792  [ B0435098C81D04CAFFF80DDB746CD3A2 ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
07:51:33.0427 0792  usbaudio - ok
07:51:33.0459 0792  [ 28B81917A195B67617AF7DCF4DFE5736 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
07:51:33.0459 0792  usbccgp - ok
07:51:33.0490 0792  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
07:51:33.0490 0792  usbcir - ok
07:51:33.0505 0792  [ B626F048318DAE65A3317F0592BE592C ] usbehci         C:\Windows\system32\drivers\usbehci.sys
07:51:33.0505 0792  usbehci - ok
07:51:33.0521 0792  [ 390109E8E05BA00375DCB1ED64DC60AF ] usbhub          C:\Windows\system32\drivers\usbhub.sys
07:51:33.0537 0792  usbhub - ok
07:51:33.0568 0792  [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F ] usbohci         C:\Windows\system32\drivers\usbohci.sys
07:51:33.0584 0792  usbohci - ok
07:51:33.0600 0792  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
07:51:33.0600 0792  usbprint - ok
07:51:33.0631 0792  [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
07:51:33.0631 0792  usbscan - ok
07:51:33.0678 0792  [ D029DD09E22EB24318A8FC3D8138BA43 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
07:51:33.0694 0792  USBSTOR - ok
07:51:33.0725 0792  [ CFEAAF96E666E3DCBD8F6DFF516784AE ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
07:51:33.0740 0792  usbuhci - ok
07:51:33.0756 0792  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
07:51:33.0756 0792  UxSms - ok
07:51:33.0772 0792  [ 62056ADD38513A86C4866E912371B56B ] VaultSvc        C:\Windows\system32\lsass.exe
07:51:33.0772 0792  VaultSvc - ok
07:51:33.0787 0792  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
07:51:33.0787 0792  vdrvroot - ok
07:51:33.0803 0792  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
07:51:33.0818 0792  vds - ok
07:51:33.0834 0792  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
07:51:33.0834 0792  vga - ok
07:51:33.0850 0792  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
07:51:33.0850 0792  VgaSave - ok
07:51:33.0865 0792  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
07:51:33.0865 0792  vhdmp - ok
07:51:33.0881 0792  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
07:51:33.0881 0792  viaide - ok
07:51:33.0896 0792  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
07:51:33.0912 0792  volmgr - ok
07:51:33.0912 0792  [ 85C5468BC395819AE2A0C747334BA14C ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
07:51:33.0928 0792  volmgrx - ok
07:51:33.0943 0792  [ DF8126BD41180351A093A3AD2FC8903B ] volsnap         C:\Windows\system32\drivers\volsnap.sys
07:51:33.0943 0792  volsnap - ok
07:51:33.0959 0792  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
07:51:33.0959 0792  vsmraid - ok
07:51:33.0990 0792  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
07:51:34.0006 0792  VSS - ok
07:51:34.0021 0792  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
07:51:34.0021 0792  vwifibus - ok
07:51:34.0037 0792  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
07:51:34.0037 0792  vwififlt - ok
07:51:34.0068 0792  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
07:51:34.0084 0792  vwifimp - ok
07:51:34.0099 0792  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
07:51:34.0115 0792  W32Time - ok
07:51:34.0115 0792  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
07:51:34.0130 0792  WacomPen - ok
07:51:34.0146 0792  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
07:51:34.0146 0792  WANARP - ok
07:51:34.0146 0792  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
07:51:34.0146 0792  Wanarpv6 - ok
07:51:34.0193 0792  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
07:51:34.0208 0792  WatAdminSvc - ok
07:51:34.0255 0792  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
07:51:34.0271 0792  wbengine - ok
07:51:34.0271 0792  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
07:51:34.0287 0792  WbioSrvc - ok
07:51:34.0302 0792  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
07:51:34.0302 0792  wcncsvc - ok
07:51:34.0333 0792  [ BC00873272B3771CCDA38336AF2B4D4B ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
07:51:34.0333 0792  WcsPlugInService - ok
07:51:34.0333 0792  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\drivers\wd.sys
07:51:34.0333 0792  Wd - ok
07:51:34.0365 0792  [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
07:51:34.0365 0792  Wdf01000 - ok
07:51:34.0411 0792  [ C6F7473B55510F0B93961DA03D8E3B38 ] WdiServiceHost  C:\Windows\system32\wdi.dll
07:51:34.0411 0792  WdiServiceHost - ok
07:51:34.0411 0792  [ C6F7473B55510F0B93961DA03D8E3B38 ] WdiSystemHost   C:\Windows\system32\wdi.dll
07:51:34.0411 0792  WdiSystemHost - ok
07:51:34.0458 0792  [ EE841B6D1F2B9508D3ABAE52AC05A94F ] WebClient       C:\Windows\System32\webclnt.dll
07:51:34.0458 0792  WebClient - ok
07:51:34.0474 0792  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
07:51:34.0489 0792  Wecsvc - ok
07:51:34.0505 0792  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
07:51:34.0505 0792  wercplsupport - ok
07:51:34.0521 0792  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
07:51:34.0521 0792  WerSvc - ok
07:51:34.0536 0792  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
07:51:34.0536 0792  WfpLwf - ok
07:51:34.0536 0792  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
07:51:34.0536 0792  WIMMount - ok
07:51:34.0567 0792  WinDefend - ok
07:51:34.0583 0792  WinHttpAutoProxySvc - ok
07:51:34.0614 0792  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
07:51:34.0630 0792  Winmgmt - ok
07:51:34.0661 0792  [ EBDA1B0F15CB9B2CBCC6C94824E4E054 ] WinRM           C:\Windows\system32\WsmSvc.dll
07:51:34.0677 0792  WinRM - ok
07:51:34.0755 0792  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
07:51:34.0755 0792  WinUsb - ok
07:51:34.0833 0792  [ 4B7912EB80820EAC543EE54806EFCAF0 ] Wlansvc         C:\Windows\System32\wlansvc.dll
07:51:34.0864 0792  Wlansvc - ok
07:51:34.0942 0792  [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
07:51:34.0973 0792  wlidsvc - ok
07:51:34.0989 0792  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
07:51:34.0989 0792  WmiAcpi - ok
07:51:35.0004 0792  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
07:51:35.0004 0792  wmiApSrv - ok
07:51:35.0035 0792  WMPNetworkSvc - ok
07:51:35.0051 0792  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
07:51:35.0051 0792  WPCSvc - ok
07:51:35.0067 0792  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
07:51:35.0067 0792  WPDBusEnum - ok
07:51:35.0082 0792  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
07:51:35.0082 0792  ws2ifsl - ok
07:51:35.0098 0792  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\system32\wscsvc.dll
07:51:35.0098 0792  wscsvc - ok
07:51:35.0098 0792  WSearch - ok
07:51:35.0145 0792  [ A2C4DC335656FB7A5A3AC076282534CB ] WSWNDA3100      C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe
07:51:35.0145 0792  WSWNDA3100 - ok
07:51:35.0223 0792  [ 88009DB9E1166B6B6713A858C176FECD ] wuauserv        C:\Windows\system32\wuaueng.dll
07:51:35.0238 0792  wuauserv - ok
07:51:35.0285 0792  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
07:51:35.0285 0792  WudfPf - ok
07:51:35.0301 0792  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
07:51:35.0301 0792  WUDFRd - ok
07:51:35.0316 0792  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
07:51:35.0316 0792  wudfsvc - ok
07:51:35.0332 0792  [ 04F82965C09CBDF646B487E145060301 ] WwanSvc         C:\Windows\System32\wwansvc.dll
07:51:35.0347 0792  WwanSvc - ok
07:51:35.0379 0792  [ 21E13F2CB269DEFEAE5E1D09887D47BB ] ZAM             C:\Windows\System32\drivers\zam64.sys
07:51:35.0379 0792  ZAM - ok
07:51:35.0425 0792  [ 21E13F2CB269DEFEAE5E1D09887D47BB ] ZAM_Guard       C:\Windows\System32\drivers\zamguard64.sys
07:51:35.0425 0792  ZAM_Guard - ok
07:51:35.0457 0792  ================ Scan global ===============================
07:51:35.0488 0792  [ 168EA9CD9BD6056BB6F60B57D5304BBE ] C:\Windows\system32\basesrv.dll
07:51:35.0519 0792  [ 66A8A9412337B08E1735204B8ADEE58C ] C:\Windows\system32\winsrv.dll
07:51:35.0535 0792  [ 66A8A9412337B08E1735204B8ADEE58C ] C:\Windows\system32\winsrv.dll
07:51:35.0550 0792  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
07:51:35.0629 0792  [ 71C85477DF9347FE8E7BC55768473FCA ] C:\Windows\system32\services.exe
07:51:35.0645 0792  [Global] - ok
07:51:35.0645 0792  ================ Scan MBR ==================================
07:51:35.0660 0792  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
07:51:35.0926 0792  \Device\Harddisk0\DR0 - ok
07:51:35.0926 0792  ================ Scan VBR ==================================
07:51:35.0926 0792  [ DE4650348D1C67E12B87E7D241C36A75 ] \Device\Harddisk0\DR0\Partition1
07:51:35.0926 0792  \Device\Harddisk0\DR0\Partition1 - ok
07:51:35.0941 0792  [ 092E46BB12DFC9150FA36C682CDEB957 ] \Device\Harddisk0\DR0\Partition2
07:51:35.0957 0792  \Device\Harddisk0\DR0\Partition2 - ok
07:51:35.0957 0792  ============================================================
07:51:35.0957 0792  Scan finished
07:51:35.0957 0792  ============================================================
07:51:35.0957 6112  Detected object count: 0
07:51:35.0957 6112  Actual detected object count: 0
 
 
aswMBR version 1.0.1.2252 Copyright© 2014 AVAST Software
Run date: 2017-11-20 07:54:07
-----------------------------
07:54:07.397    OS Version: Windows x64 6.1.7601 Service Pack 1
07:54:07.397    Number of processors: 4 586 0x3C03
07:54:07.397    ComputerName: TOMREAD-PC  UserName: Tom Read
07:54:09.059    Initialize success
07:54:09.174    VM: initialized successfully
07:54:09.174    VM: Intel CPU BiosDisabled 
07:55:41.947    AVAST engine defs: 17030301
07:55:58.387    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000066
07:55:58.387    Disk 0 Vendor: ST2000DM CC27 Size: 1907729MB BusType: 11
07:55:58.574    Disk 0 MBR read successfully
07:55:58.574    Disk 0 MBR scan
07:55:58.606    Disk 0 Windows 7 default MBR code
07:55:58.621    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
07:55:58.637    Disk 0 default boot code
07:55:58.637    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS      1907627 MB offset 206848
07:55:58.668    Disk 0 scanning C:\Windows\system32\drivers
07:56:09.537    Service scanning
07:56:27.642    Modules scanning
07:56:28.141    Disk 0 trace - called modules:
07:56:28.141    ntoskrnl.exe CLASSPNP.SYS disk.sys iaStorF.sys storport.sys hal.dll iaStorA.sys 
07:56:28.158    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004766060]
07:56:28.160    3 CLASSPNP.SYS[fffff88000c7643f] -> nt!IofCallDriver -> [0xfffffa80045fb910]
07:56:28.162    5 iaStorF.sys[fffff880019f2a84] -> nt!IofCallDriver -> \Device\00000066[0xfffffa800412a060]
07:56:29.978    AVAST engine scan C:\Windows
07:56:35.824    AVAST engine scan C:\Windows\system32
08:00:02.035    AVAST engine scan C:\Windows\system32\drivers
08:00:23.750    AVAST engine scan C:\Users\Tom Read
08:08:33.335    Disk 0 MBR has been saved successfully to "C:\Users\Tom Read\Desktop\MBR.dat"
08:08:33.441    The log file has been saved successfully to "C:\Users\Tom Read\Desktop\aswMBR.txt"

 

Attached Files

  • Attached File  MBR.zip   560bytes   0 downloads


#86 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 20 November 2017 - 07:55 AM

Hi,

Your Master Boot Record is clean.

Your reinstalled Chrome and it was working fine for awhile. Then the problems returns.
I suspect that this is caused by Syncing Chrome. Please read these instructions make sure you remove the Sync Data otherwise.

:step1: Remove Chrome from your Computer and reinstall a fresh copy later.

:step2: Before you remove Chrome Export your Bookmarks
Chrome will export your bookmarks as a HTML file, which you can then import into another browser.

How To: http://ccm.net/faq/31791-how-to-backup-your-google-chrome-bookmarks

:step3: If you sync you account you must remove it before you save your bookmarks etc...
Delete Your Google Chrome Browser Sync Data
https://www.howtogeek.com/103655/how-to-delete-your-google-chrome-browser-sync-data/


:step4: Clear your Chrome cache and cookies
https://support.google.com/chromebook/answer/183083?hl=en


:step5: Remove Chrome using the the instructions on this page.
https://support.google.com/chrome/answer/95319?hl=en

:step6: Re-install Chrome and the Bookmarks.
====

#87 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 20 November 2017 - 09:17 AM

OK thank you.  Sounds similar to something I've already done, but I'll work through the instructions and give it another go.

 

It was only a couple of hours the PC was OK for before the problems returned - but that may be all it takes I guess!  It was running mega-fast in safe mode!

 

I'm working solid for the next week, so it may be 7 days or so before I report back.

 

Many thanks.



#88 m1eyp

m1eyp
  • Topic Starter

  • Members
  • 66 posts
  • OFFLINE
  •  
  • Local time:09:58 PM

Posted 26 November 2017 - 10:34 AM

OK, I have followed exactly all the instructions in #86.  As I say, I have already done all that before, but I guess repeating it can't do any harm!

 

The problem remains.



#89 nasdaq

nasdaq

  • Malware Response Team
  • 39,512 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:58 PM

Posted 27 November 2017 - 09:14 AM



Hi,

Disable all your Chrome Extentions.
Close Chrome.
If the proglem persists leave the extension disabled.
===

Let check the Chrome Sync.

If you have an intelligent phone and Chrome is installed.
Disable the Chrome Sync.

For you computer, nagivate to this page.
https://forums.malwarebytes.com/topic/214325-chrome-secure-preferences-detection-always-comes-back/

Do just this.

Open your Chrome.
Go to Settings > People > Sync (or alternatively, enter the following in the addressbar: chrome://settings/syncSetup)
On the page, you'll see what synced data is enabled. Move all sliders to the left in order to disable all the syncing.

Then close Chrome.

Now open Chrome.
===

Do not reset any thing. Let me know if the problem persists.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users