Vous êtes sur la page 1sur 33

15:34:39.0315 0x1064 TDSS rootkit removing tool 3.0.0.

39 Jun 5 2014 20:35:54


15:34:41.0827 0x1064 ==========================================================
==
15:34:41.0827 0x1064 Current date / time: 2014/06/18 15:34:41.0827
15:34:41.0827 0x1064 SystemInfo:
15:34:41.0827 0x1064
15:34:41.0827 0x1064 OS Version: 6.1.7601 ServicePack: 1.0
15:34:41.0827 0x1064 Product type: Workstation
15:34:41.0827 0x1064 ComputerName: HP-PC
15:34:41.0827 0x1064 UserName: hp
15:34:41.0827 0x1064 Windows directory: C:\Windows
15:34:41.0827 0x1064 System windows directory: C:\Windows
15:34:41.0827 0x1064 Processor architecture: Intel x86
15:34:41.0827 0x1064 Number of processors: 4
15:34:41.0827 0x1064 Page size: 0x1000
15:34:41.0827 0x1064 Boot type: Normal boot
15:34:41.0827 0x1064 ==========================================================
==
15:34:42.0224 0x1064 KLMD registered as C:\Windows\system32\drivers\90691560.sy
s
15:34:42.0482 0x1064 System UUID: {0FB118D6-3EF6-90A3-DB88-599EE02EE3CE}
15:34:42.0793 0x1064 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76
Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCyli
nder: 0xFF, Type 'K0', Flags 0x00000050
15:34:42.0842 0x1064 ==========================================================
==
15:34:42.0842 0x1064 \Device\Harddisk0\DR0:
15:34:42.0842 0x1064 MBR partitions:
15:34:42.0843 0x1064 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA
0x800, BlocksNum 0x32000
15:34:42.0843 0x1064 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA
0x32800, BlocksNum 0xC31E000
15:34:42.0843 0x1064 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA
0xC350800, BlocksNum 0xF109601
15:34:42.0858 0x1064 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA
0x1B459E40, BlocksNum 0x1EF2AE01
15:34:42.0858 0x1064 ==========================================================
==
15:34:42.0892 0x1064 C: <-> \Device\Harddisk0\DR0\Partition2
15:34:42.0921 0x1064 D: <-> \Device\Harddisk0\DR0\Partition3
15:34:42.0942 0x1064 Z: <-> \Device\Harddisk0\DR0\Partition4
15:34:42.0943 0x1064 ==========================================================
==
15:34:42.0943 0x1064 Initialize success
15:34:42.0943 0x1064 ==========================================================
==
15:34:49.0994 0x0f48 ==========================================================
==
15:34:49.0994 0x0f48 Scan started
15:34:49.0994 0x0f48 Mode: Manual; SigCheck; TDLFS;
15:34:49.0994 0x0f48 ==========================================================
==
15:34:49.0994 0x0f48 KSN ping started
15:34:52.0811 0x0f48 KSN ping finished: true
15:34:53.0268 0x0f48 ================ Scan system memory ======================
==
15:34:53.0268 0x0f48 System memory - ok
15:34:53.0269 0x0f48 ================ Scan services ===========================
==
15:34:53.0460 0x0f48 [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23

A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci
C:\Windows\system32
\drivers\1394ohci.sys
15:34:53.0544 0x0f48 1394ohci - ok
15:34:53.0584 0x0f48 [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C
23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI
C:\Windows\system32
\drivers\ACPI.sys
15:34:53.0597 0x0f48 ACPI - ok
15:34:53.0633 0x0f48 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF
4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi
C:\Windows\system32
\drivers\acpipmi.sys
15:34:53.0676 0x0f48 AcpiPmi - ok
15:34:53.0774 0x0f48 [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8
DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Window
s\system32\Macromed\Flash\FlashPlayerUpdateService.exe
15:34:53.0793 0x0f48 AdobeFlashPlayerUpdateSvc - ok
15:34:53.0845 0x0f48 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF4
8485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx
C:\Windows\system32
\DRIVERS\adp94xx.sys
15:34:53.0869 0x0f48 adp94xx - ok
15:34:53.0887 0x0f48 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB4
4C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci
C:\Windows\system32
\DRIVERS\adpahci.sys
15:34:53.0899 0x0f48 adpahci - ok
15:34:53.0904 0x0f48 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376D
A9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320
C:\Windows\system32
\DRIVERS\adpu320.sys
15:34:53.0913 0x0f48 adpu320 - ok
15:34:53.0933 0x0f48 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF
79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc
C:\Windows\System32
\aelupsvc.dll
15:34:53.0982 0x0f48 AeLookupSvc - ok
15:34:54.0023 0x0f48 [ 9EBBBA55060F786F0FCAA3893BFA2806, 2E5A0FA2995989E9391771
024839F5AD040A041CEE56787286D8FC421E26FE90 ] AFD
C:\Windows\system32
\drivers\afd.sys
15:34:54.0074 0x0f48 AFD - ok
15:34:54.0111 0x0f48 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D1
0C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440
C:\Windows\system32
\drivers\agp440.sys
15:34:54.0126 0x0f48 agp440 - ok
15:34:54.0151 0x0f48 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D
81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx
C:\Windows\system32
\DRIVERS\djsvs.sys
15:34:54.0160 0x0f48 aic78xx - ok
15:34:54.0178 0x0f48 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C
4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG
C:\Windows\System32
\alg.exe
15:34:54.0211 0x0f48 ALG - ok
15:34:54.0221 0x0f48 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7
A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide
C:\Windows\system32
\drivers\aliide.sys
15:34:54.0228 0x0f48 aliide - ok
15:34:54.0259 0x0f48 [ EBCCBCBF1DF132E4775E5D6E6DEA3ED0, 142A8C4D21BC4772C4B9E1
6A1EC8C82EB08CD3E8199D167D4F5F42A2BC415DE2 ] AMD External Events Utility C:\Wind
ows\system32\atiesrxx.exe
15:34:54.0302 0x0f48 AMD External Events Utility - ok
15:34:54.0314 0x0f48 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A31
8BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp
C:\Windows\system32
\drivers\amdagp.sys
15:34:54.0322 0x0f48 amdagp - ok
15:34:54.0337 0x0f48 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10D

A36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide
\drivers\amdide.sys
15:34:54.0345 0x0f48 amdide - ok
15:34:54.0370 0x0f48 [ 00DDA200D71BAC534BF56A9DB5DFD666,
3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8
\DRIVERS\amdk8.sys
15:34:54.0410 0x0f48 AmdK8 - ok
15:34:54.0628 0x0f48 [ F89643A2CA001B1162061E306F8BF267,
CA285205B3A224CF8C94C2D8D11BF0AABA9300DC69 ] amdkmdag
\DRIVERS\atikmdag.sys
15:34:54.0806 0x0f48 amdkmdag - ok
15:34:54.0829 0x0f48 [ FB68E1B9CEC598F0F69503F3AEBB45DD,
BF67E9DE889457BB2BFF586DB638AD419FF4DD14B2 ] amdkmdap
\DRIVERS\atikmpag.sys
15:34:54.0844 0x0f48 amdkmdap - ok
15:34:54.0858 0x0f48 [ 3CBF30F5370FDA40DD3E87DF38EA53B6,
FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM
\DRIVERS\amdppm.sys
15:34:54.0893 0x0f48 AmdPPM - ok
15:34:54.0921 0x0f48 [ D320BF87125326F996D4904FE24300FC,
29F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata
\drivers\amdsata.sys
15:34:54.0936 0x0f48 amdsata - ok
15:34:54.0976 0x0f48 [ EA43AF0C423FF267355F74E7A53BDABA,
AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs
\DRIVERS\amdsbs.sys
15:34:54.0994 0x0f48 amdsbs - ok
15:34:55.0000 0x0f48 [ 46387FB17B086D16DEA267D5BE23A2F2,
DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata
\drivers\amdxata.sys
15:34:55.0013 0x0f48 amdxata - ok
15:34:55.0047 0x0f48 [ B9D08320CB4B5C3193BEF086FEF92552,
1EFB1BF89D1BD2A946E0A2BE7B4C702495B117C56E ] andnetadb
\Drivers\lgandnetadb.sys
15:34:55.0101 0x0f48 andnetadb - ok
15:34:55.0124 0x0f48 [ 39E58CE46F87D039994F20B4295887CC,
BB00FC2B7F683779094D555989F885023579B220C9 ] AndNetDiag
\DRIVERS\lgandnetdiag.sys
15:34:55.0168 0x0f48 AndNetDiag - ok
15:34:55.0182 0x0f48 [ 2D9231585B67DC7432D135F1EA305655,
AC2EDBDB11B8288E112C47BCCD05006671DBADB88E ] ANDNetModem
\DRIVERS\lgandnetmodem.sys
15:34:55.0224 0x0f48 ANDNetModem - ok
15:34:55.0257 0x0f48 [ DD8D9C597AF7CD2F6B70A3D6A4A1ACEA,
89DDF06195CFE4C0F9249223C5A9004643F41BA6E4 ] androidusb
\Drivers\ssadadb.sys
15:34:55.0300 0x0f48 androidusb - ok
15:34:55.0326 0x0f48 [ AEA177F783E20150ACE5383EE368DA19,
A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID
\drivers\appid.sys
15:34:55.0409 0x0f48 AppID - ok
15:34:55.0453 0x0f48 [ 62A9C86CB6085E20DB4823E4E97826F5,
002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc
\appidsvc.dll
15:34:55.0502 0x0f48 AppIDSvc - ok
15:34:55.0529 0x0f48 [ FB1959012294D6AD43E5304DF65E3C26,
54B056C6F5A303DDC511F0E4E1E75808F1D5326495 ] Appinfo
\appinfo.dll
15:34:55.0585 0x0f48 Appinfo - ok
15:34:55.0612 0x0f48 [ A45D184DF6A8803DA13A0B329517A64A,

C:\Windows\system32
CA316B1FFD85BA1CF8664B
C:\Windows\system32
6D74863007609F8A5396BA
C:\Windows\system32
BCA3A89A7A570DAABB279A
C:\Windows\system32
7EACF1743367BE805357B6
C:\Windows\system32
F767D8C5C58D57202905D8
C:\Windows\system32
3F1335909AB0281A2FBDD7
C:\Windows\system32
8B8AC61B91F154B4EB5CC6
C:\Windows\system32
3F21BBE77FC20D7C0C4212
C:\Windows\system32
16ADE9EDC02D2ABFCB3723
C:\Windows\system32
5AEC06459C7C1460E41B66
C:\Windows\system32
834B397F365D930DA01D51
C:\Windows\system32
8FA9EE27AA1F22E8B8FE33
C:\Windows\system32
E0F840B49710022C4FB437
C:\Windows\System32
CFE906B07FF71A178CF9C2
C:\Windows\System32
C1D16B60A6D69689AE951D

C3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt
C:\Windows\System32
\appmgmts.dll
15:34:55.0641 0x0f48 AppMgmt - ok
15:34:55.0661 0x0f48 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4
499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc
C:\Windows\system32
\DRIVERS\arc.sys
15:34:55.0670 0x0f48 arc - ok
15:34:55.0676 0x0f48 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2
921672858C291054220BADE291044343778216F6BA ] arcsas
C:\Windows\system32
\DRIVERS\arcsas.sys
15:34:55.0685 0x0f48 arcsas - ok
15:34:55.0698 0x0f48 [ 1C2E6BB4FE8621B1B863855B02BC33EB, A4F245AB138A76A4C80F02
7EECDFE795920E6FEEE5FFF20C1E880A6899C3956A ] aswFsBlk
C:\Windows\system32
\drivers\aswFsBlk.sys
15:34:55.0706 0x0f48 aswFsBlk - ok
15:34:55.0738 0x0f48 [ B0F137F664F10829CD2380B0E20E7C29, 6AE2A7D59E51335DE7E074
4652FC61449E230EE804BA52C6CB75B13DC9CF5CD2 ] aswMonFlt
C:\Windows\system32
\drivers\aswMonFlt.sys
15:34:55.0746 0x0f48 aswMonFlt - ok
15:34:55.0756 0x0f48 [ B6A9373619D851BE80FB5F1B5EED0D4E, 7EDF92792352EEEF176B11
4D700208686DA8B92FC88C4C4F216DD1B08D130E71 ] aswRdr
C:\Windows\system32
\drivers\aswRdr.sys
15:34:55.0763 0x0f48 aswRdr - ok
15:34:55.0802 0x0f48 [ 9BE41C1AE8BC481EB662D85C98D979C2, C8B124F82524068A426AD0
9B9C979B55965D6FF8CD752A6676B54F3D4172FC4F ] aswSnx
C:\Windows\system32
\drivers\aswSnx.sys
15:34:55.0825 0x0f48 aswSnx - ok
15:34:55.0847 0x0f48 [ 4B1A54BA2BC5873A774DF6B70AB8B0B3, 096AAB0AAF2385E06A00B6
0BC2D89771EC627D17D9C522B355FE49E58470D123 ] aswSP
C:\Windows\system32
\drivers\aswSP.sys
15:34:55.0858 0x0f48 aswSP - ok
15:34:55.0875 0x0f48 [ C7F1CEA32766184911293F4E1EE653F5, 1332F797967E6E4C4F2A12
4207541DA1FDC1D018FFED9A12082E178444437F1E ] aswTdi
C:\Windows\system32
\drivers\aswTdi.sys
15:34:55.0883 0x0f48 aswTdi - ok
15:34:55.0891 0x0f48 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A93
4E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac
C:\Windows\system32
\DRIVERS\asyncmac.sys
15:34:55.0971 0x0f48 AsyncMac - ok
15:34:56.0019 0x0f48 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F
5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi
C:\Windows\system32
\drivers\atapi.sys
15:34:56.0032 0x0f48 atapi - ok
15:34:56.0092 0x0f48 [ 95B1E9804CA10D096C0383F7C6684950, 22891AE96904B94D61465E
011C655FD75F3AA71CAB871716E8341168D852DEA9 ] AtiHDAudioService C:\Windows\system
32\drivers\AtihdW73.sys
15:34:56.0106 0x0f48 AtiHDAudioService - ok
15:34:56.0166 0x0f48 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E781
0D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] AudioEndpointBuilder C:\Windows\Sys
tem32\Audiosrv.dll
15:34:56.0211 0x0f48 AudioEndpointBuilder - ok
15:34:56.0221 0x0f48 [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E781
0D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] Audiosrv
C:\Windows\System32
\Audiosrv.dll
15:34:56.0247 0x0f48 Audiosrv - ok
15:34:56.0306 0x0f48 [ 2695E3E9497BF72ABB44B5010EC5DA16, 87F9E181828AE1E9A222E5
7026AC3616E75749CA6C00877024DEADC6877C5275 ] avast! Antivirus C:\Program Files\A
VAST Software\Avast\AvastSvc.exe
15:34:56.0320 0x0f48 avast! Antivirus - ok
15:34:56.0361 0x0f48 [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C8

55A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV
\AxInstSV.dll
15:34:56.0415 0x0f48 AxInstSV - ok
15:34:56.0438 0x0f48 [ 1A231ABEC60FD316EC54C66715543CEC,
A5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv
\DRIVERS\bxvbdx.sys
15:34:56.0472 0x0f48 b06bdrv - ok
15:34:56.0503 0x0f48 [ BD8869EB9CDE6BBE4508D869929869EE,
9B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x
\DRIVERS\b57nd60x.sys
15:34:56.0531 0x0f48 b57nd60x - ok
15:34:56.0566 0x0f48 [ EE1E9C3BB8228AE423DD38DB69128E71,
D6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC
\bdesvc.dll
15:34:56.0599 0x0f48 BDESVC - ok
15:34:56.0616 0x0f48 [ 505506526A9D467307B3C393DEDAF858,
1497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep
\drivers\Beep.sys
15:34:56.0662 0x0f48 Beep - ok
15:34:56.0691 0x0f48 [ 1E2BAC209D184BB851E1A187D8A29136,
918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE
\bfe.dll
15:34:56.0728 0x0f48 BFE - ok
15:34:56.0776 0x0f48 [ E585445D5021971FAE10393F0F1C3961,
B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS
\qmgr.dll
15:34:56.0807 0x0f48 BITS - ok
15:34:56.0830 0x0f48 [ 2287078ED48FCFC477B05B20CF38F36F,
4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive
\DRIVERS\blbdrive.sys
15:34:56.0847 0x0f48 blbdrive - ok
15:34:56.0866 0x0f48 [ 8F2DA3028D5FCBD1A060A3DE64CD6506,
E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser
\DRIVERS\bowser.sys
15:34:56.0887 0x0f48 bowser - ok
15:34:56.0904 0x0f48 [ 9F9ACC7F7CCDE8A15C282D3F88B43309,
54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo
\DRIVERS\BrFiltLo.sys
15:34:56.0933 0x0f48 BrFiltLo - ok
15:34:56.0943 0x0f48 [ 56801AD62213A41F6497F96DEE83755A,
C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp
\DRIVERS\BrFiltUp.sys
15:34:56.0959 0x0f48 BrFiltUp - ok
15:34:56.0982 0x0f48 [ 3DAA727B5B0A45039B0E1C9A211B8400,
20F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser
\browser.dll
15:34:57.0008 0x0f48 Browser - ok
15:34:57.0016 0x0f48 [ 845B8CE732E67F3B4133164868C666EA,
5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid
\Drivers\Brserid.sys
15:34:57.0031 0x0f48 Brserid - ok
15:34:57.0044 0x0f48 [ 203F0B1E73ADADBBB7B7B1FABD901F6B,
BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm
\Drivers\BrSerWdm.sys
15:34:57.0066 0x0f48 BrSerWdm - ok
15:34:57.0081 0x0f48 [ BD456606156BA17E60A04E18016AE54B,
4BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm
\Drivers\BrUsbMdm.sys
15:34:57.0095 0x0f48 BrUsbMdm - ok
15:34:57.0106 0x0f48 [ AF72ED54503F717A43268B3CC5FAEC2E,

C:\Windows\System32
09E2897BA80737997A286E
C:\Windows\system32
F4363A12EBFDBB89C69FD5
C:\Windows\system32
ED54FD9795F3A4D32F02BE
C:\Windows\System32
8AD6F1492E357F57CF4226
C:\Windows\system32
53933C938DA5126986FFF2
C:\Windows\System32
178C008A9A0A6BFDA65EB0
C:\Windows\System32
55BCA6174E6034A8D61CBE
C:\Windows\system32
E234672E9CFE1A95AD2E78
C:\Windows\system32
A9131334BD9CF8FD60BA9D
C:\Windows\system32
0DEB8318FB47DF6473C171
C:\Windows\system32
903B51E75F0C503A0E2551
C:\Windows\System32
9309B094CD9B5EBC46295A
C:\Windows\System32
782FA7B26940FE479C49C9
C:\Windows\System32
DFBDC9DA6A3EA40BACFF20
C:\Windows\System32
4A638669B0C30B1BDED242

A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer
C:\Windows\System32
\Drivers\BrUsbSer.sys
15:34:57.0118 0x0f48 BrUsbSer - ok
15:34:57.0182 0x0f48 [ 3B6429C5B11408EF11EFEEE8C0F0682A, 2FC87B91122DC265B4CC2C
FE58261DA604C89600F2683AB5294004C721127098 ] BstHdAndroidSvc C:\Program Files\Bl
ueStacks\HD-Service.exe
15:34:57.0206 0x0f48 BstHdAndroidSvc - ok
15:34:57.0262 0x0f48 [ 5598D366E7E4E4FA0CA61568C46EB431, 96FE47CA81AF4D2778C390
1C99A53D48F2DD6AA8D6FCF20990F632692559C544 ] BstHdDrv
C:\Program Files\Bl
ueStacks\HD-Hypervisor-x86.sys
15:34:57.0278 0x0f48 BstHdDrv - ok
15:34:57.0311 0x0f48 [ 1DC18C9E1B4984389783E4F9DFC61AB1, 0F32EE280F5B9E0065A7AA
CED3D64373EC3BFC366906606A644AD0D4AD08E61C ] BstHdLogRotatorSvc C:\Program Files
\BlueStacks\HD-LogRotatorService.exe
15:34:57.0330 0x0f48 BstHdLogRotatorSvc - ok
15:34:57.0344 0x0f48 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C6
35CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM
C:\Windows\system32
\DRIVERS\bthmodem.sys
15:34:57.0361 0x0f48 BTHMODEM - ok
15:34:57.0396 0x0f48 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB
52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv
C:\Windows\system32
\bthserv.dll
15:34:57.0431 0x0f48 bthserv - ok
15:34:57.0452 0x0f48 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A0258
4E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs
C:\Windows\system32
\DRIVERS\cdfs.sys
15:34:57.0490 0x0f48 cdfs - ok
15:34:57.0528 0x0f48 [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5
B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom
C:\Windows\system32
\DRIVERS\cdrom.sys
15:34:57.0540 0x0f48 cdrom - ok
15:34:57.0605 0x0f48 [ 2F66EF86280DF191327B2407FC85F6D2, 2EFD837A9CCA444E300F08
D6E93AC536B6CB4052D7D9C2B7F2C2CE7EBE2B491F ] CDROM_Detect
C:\Program Files\Ai
rFlash\C+WEject.exe
15:34:57.0634 0x0f48 CDROM_Detect - detected UnsignedFile.Multi.Generic ( 1 )
15:35:00.0786 0x0f48 Detect skipped due to KSN trusted
15:35:00.0787 0x0f48 CDROM_Detect - ok
15:35:00.0828 0x0f48 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30
A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc
C:\Windows\System32
\certprop.dll
15:35:00.0862 0x0f48 CertPropSvc - ok
15:35:00.0884 0x0f48 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0
B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass
C:\Windows\system32
\DRIVERS\circlass.sys
15:35:00.0894 0x0f48 circlass - ok
15:35:00.0918 0x0f48 [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF
3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS
C:\Windows\system32
\CLFS.sys
15:35:00.0929 0x0f48 CLFS - ok
15:35:00.0989 0x0f48 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6
D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\W
indows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:35:01.0002 0x0f48 clr_optimization_v2.0.50727_32 - ok
15:35:01.0074 0x0f48 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B
10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\W
indows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:35:01.0090 0x0f48 clr_optimization_v4.0.30319_32 - ok
15:35:01.0101 0x0f48 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC
59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt
C:\Windows\system32
\DRIVERS\CmBatt.sys

15:35:01.0120 0x0f48 CmBatt - ok


15:35:01.0127 0x0f48 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956
E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide
C:\Windows\system32
\drivers\cmdide.sys
15:35:01.0134 0x0f48 cmdide - ok
15:35:01.0177 0x0f48 [ 247B4CE2DAB1160CD422D532D5241E1F, CFE04DBE48B23B084C3F4C
3D0F483B26F322E4693176D8739A412BE5D8BE597E ] CNG
C:\Windows\system32
\Drivers\cng.sys
15:35:01.0208 0x0f48 CNG - ok
15:35:01.0225 0x0f48 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA3
4B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt
C:\Windows\system32
\DRIVERS\compbatt.sys
15:35:01.0232 0x0f48 Compbatt - ok
15:35:01.0277 0x0f48 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC
1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus
C:\Windows\system32
\drivers\CompositeBus.sys
15:35:01.0312 0x0f48 CompositeBus - ok
15:35:01.0327 0x0f48 COMSysApp - ok
15:35:01.0341 0x0f48 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3
F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk
C:\Windows\system32
\DRIVERS\crcdisk.sys
15:35:01.0351 0x0f48 crcdisk - ok
15:35:01.0384 0x0f48 [ 96C0E38905CFD788313BE8E11DAE3F2F, C6497C68942D8DC542A9C7
D003ED14BDFBD74C33CD8240628CEF74E81D122D2B ] CryptSvc
C:\Windows\system32
\cryptsvc.dll
15:35:01.0418 0x0f48 CryptSvc - ok
15:35:01.0456 0x0f48 [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D0
2E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC
C:\Windows\system32
\drivers\csc.sys
15:35:01.0498 0x0f48 CSC - ok
15:35:01.0522 0x0f48 [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A
6596F6A64ADD9C36B09F062295699131232712B558 ] CscService
C:\Windows\System32
\cscsvc.dll
15:35:01.0542 0x0f48 CscService - ok
15:35:01.0579 0x0f48 [ 59FF3371F02E5AE0545A625D37C1B676, E14C0FCF42E5F0C0387273
7EF0D1A8B1DA7F028CF966FB5B20C64BD8809B5813 ] CT_QUALCOMM_U_drv C:\Windows\system
32\DRIVERS\CT_QUALCOMM_U_drv.sys
15:35:01.0602 0x0f48 CT_QUALCOMM_U_drv - ok
15:35:01.0629 0x0f48 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331
F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch
C:\Windows\system32
\rpcss.dll
15:35:01.0662 0x0f48 DcomLaunch - ok
15:35:01.0686 0x0f48 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C
27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc
C:\Windows\System32
\defragsvc.dll
15:35:01.0716 0x0f48 defragsvc - ok
15:35:01.0753 0x0f48 [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA
14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC
C:\Windows\system32
\Drivers\dfsc.sys
15:35:01.0783 0x0f48 DfsC - ok
15:35:01.0814 0x0f48 [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C52287461914
3A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp
C:\Windows\system32
\dhcpcore.dll
15:35:01.0848 0x0f48 Dhcp - ok
15:35:01.0863 0x0f48 [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4
D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache
C:\Windows\system32
\drivers\discache.sys
15:35:01.0892 0x0f48 discache - ok
15:35:01.0916 0x0f48 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E
09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk
C:\Windows\system32

\DRIVERS\disk.sys
15:35:01.0926 0x0f48 Disk - ok
15:35:01.0954 0x0f48 [ 33EF4861F19A0736B11314AAD9AE28D0,
8F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache
\dnsrslvr.dll
15:35:01.0997 0x0f48 Dnscache - ok
15:35:02.0024 0x0f48 [ 366BA8FB4B7BB7435E3B9EACB3843F67,
AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc
\dot3svc.dll
15:35:02.0068 0x0f48 dot3svc - ok
15:35:02.0103 0x0f48 [ 8EC04CA86F1D68DA9E11952EB85973D6,
EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS
\dps.dll
15:35:02.0143 0x0f48 DPS - ok
15:35:02.0168 0x0f48 [ B918E7C5F9BF77202F89E1A9539F2EB4,
9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud
\drivers\drmkaud.sys
15:35:02.0192 0x0f48 drmkaud - ok
15:35:02.0237 0x0f48 [ 23F5D28378A160352BA8F817BD8C71CB,
AF89B493CBB89B394D2A091708EDA15DA5C342FF19 ] DXGKrnl
\drivers\dxgkrnl.sys
15:35:02.0261 0x0f48 DXGKrnl - ok
15:35:02.0296 0x0f48 [ 54E93B487B415CAD5DB43CB7416FF3AC,
5141E1E97C192370B9DE929BFF94E2548126C761F0 ] e1cexpress
\DRIVERS\e1c6232.sys
15:35:02.0307 0x0f48 e1cexpress - ok
15:35:02.0330 0x0f48 [ 8600142FA91C1B96367D3300AD0F3F3A,
C79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost
\eapsvc.dll
15:35:02.0360 0x0f48 EapHost - ok
15:35:02.0471 0x0f48 [ 024E1B5CAC09731E4D868E64DBFB4AB0,
861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv
\DRIVERS\evbdx.sys
15:35:02.0553 0x0f48 ebdrv - ok
15:35:02.0586 0x0f48 [ 81951F51E318AECC2D68559E47485CC4,
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] EFS
\lsass.exe
15:35:02.0612 0x0f48 EFS - ok
15:35:02.0670 0x0f48 [ A8C362018EFC87BEB013EE28F29C0863,
2618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr
Recvr.exe
15:35:02.0707 0x0f48 ehRecvr - ok
15:35:02.0731 0x0f48 [ D389BFF34F80CAEDE417BF9D1507996A,
820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched
sched.exe
15:35:02.0764 0x0f48 ehSched - ok
15:35:02.0800 0x0f48 [ 0ED67910C8C326796FAA00B2BF6D9D3C,
5E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor
\DRIVERS\elxstor.sys
15:35:02.0815 0x0f48 elxstor - ok
15:35:02.0835 0x0f48 [ 8FC3208352DD3912C94367A206AB3F11,
74B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev
\drivers\errdev.sys
15:35:02.0853 0x0f48 ErrDev - ok
15:35:02.0882 0x0f48 [ F6916EFC29D9953D5D0DF06882AE8E16,
9B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem
\es.dll
15:35:02.0918 0x0f48 EventSystem - ok
15:35:02.0932 0x0f48 [ 2DC9108D74081149CC8B651D3A26207F,
1CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat

4C4B84365D85758E3263B8
C:\Windows\System32
65B7C61ACF34F1F0149045
C:\Windows\System32
2E3FBC2D683D1274E8BC45
C:\Windows\system32
C589A37DE50BBEF22E2DAA
C:\Windows\system32
11BF7B7E6276C28EFF74B8
C:\Windows\System32
E21E8983CC0F9DDA3BB407
C:\Windows\system32
5713625E27DF11FAAFDA7A
C:\Windows\System32
AB0826A74BBEE5B7A1B035
C:\Windows\system32
ACF76395EF4A2ED03AB919
C:\Windows\System32
07971C681FBD391C0BA017
C:\Windows\ehome\eh
12859B9925D7A4631DE61A
C:\Windows\ehome\eh
97FAA7627A162B0AEC1554
C:\Windows\system32
69B65C12BDADD4B7305086
C:\Windows\system32
ED41893960018D5EC2F782
C:\Windows\system32
75CB47923A867DDAC51270
C:\Windows\system32

\drivers\exfat.sys
15:35:02.0952 0x0f48 exfat - ok
15:35:02.0965 0x0f48 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385
EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat
C:\Windows\system32
\drivers\fastfat.sys
15:35:02.0986 0x0f48 fastfat - ok
15:35:03.0039 0x0f48 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897
D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax
C:\Windows\system32
\fxssvc.exe
15:35:03.0083 0x0f48 Fax - ok
15:35:03.0089 0x0f48 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48
D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc
C:\Windows\system32
\DRIVERS\fdc.sys
15:35:03.0098 0x0f48 fdc - ok
15:35:03.0121 0x0f48 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD
4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost
C:\Windows\system32
\fdPHost.dll
15:35:03.0170 0x0f48 fdPHost - ok
15:35:03.0189 0x0f48 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB
63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub
C:\Windows\system32
\fdrespub.dll
15:35:03.0209 0x0f48 FDResPub - ok
15:35:03.0229 0x0f48 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1
C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo
C:\Windows\system32
\drivers\fileinfo.sys
15:35:03.0238 0x0f48 FileInfo - ok
15:35:03.0245 0x0f48 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FE
AAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace
C:\Windows\system32
\drivers\filetrace.sys
15:35:03.0266 0x0f48 Filetrace - ok
15:35:03.0272 0x0f48 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA
431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk
C:\Windows\system32
\DRIVERS\flpydisk.sys
15:35:03.0284 0x0f48 flpydisk - ok
15:35:03.0306 0x0f48 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F8
9E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr
C:\Windows\system32
\drivers\fltmgr.sys
15:35:03.0316 0x0f48 FltMgr - ok
15:35:03.0357 0x0f48 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074, BD0DB5D6B6DB46AD330283
04D8A75C4C400637C7827D8BBA5A1534CAA8A45690 ] FontCache
C:\Windows\system32
\FntCache.dll
15:35:03.0393 0x0f48 FontCache - ok
15:35:03.0433 0x0f48 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9
CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microso
ft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
15:35:03.0439 0x0f48 FontCache3.0.0.0 - ok
15:35:03.0456 0x0f48 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141F
D70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends
C:\Windows\system32
\drivers\FsDepends.sys
15:35:03.0463 0x0f48 FsDepends - ok
15:35:03.0486 0x0f48 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A4458
3520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec
C:\Windows\system32
\drivers\Fs_Rec.sys
15:35:03.0493 0x0f48 Fs_Rec - ok
15:35:03.0529 0x0f48 [ 8A73E79089B282100B9393B644CB853B, 844DC5AADFABBD050B9679
04B796BA06BFD64C9112616EA26229D084F8B3AD41 ] fvevol
C:\Windows\system32
\DRIVERS\fvevol.sys
15:35:03.0541 0x0f48 fvevol - ok
15:35:03.0567 0x0f48 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC33
44D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx
C:\Windows\system32

\DRIVERS\gagp30kx.sys
15:35:03.0575 0x0f48 gagp30kx - ok
15:35:03.0598 0x0f48 [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B
62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc
C:\Windows\System32
\gpsvc.dll
15:35:03.0643 0x0f48 gpsvc - ok
15:35:03.0725 0x0f48 [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912
E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate
C:\Program Files\Go
ogle\Update\GoogleUpdate.exe
15:35:03.0740 0x0f48 gupdate - ok
15:35:03.0752 0x0f48 [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912
E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem
C:\Program Files\Go
ogle\Update\GoogleUpdate.exe
15:35:03.0766 0x0f48 gupdatem - ok
15:35:03.0783 0x0f48 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B
9C3299BED40146BA45C972367154D20DB502472551 ] gusvc
C:\Program Files\Go
ogle\Common\Google Updater\GoogleUpdaterService.exe
15:35:03.0792 0x0f48 gusvc - ok
15:35:03.0801 0x0f48 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421
B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir
C:\Windows\system32
\drivers\hcw85cir.sys
15:35:03.0821 0x0f48 hcw85cir - ok
15:35:03.0864 0x0f48 [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A1
9438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32
\drivers\HdAudio.sys
15:35:03.0901 0x0f48 HdAudAddService - ok
15:35:03.0922 0x0f48 [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755
B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus
C:\Windows\system32
\drivers\HDAudBus.sys
15:35:03.0953 0x0f48 HDAudBus - ok
15:35:03.0977 0x0f48 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A609
2D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt
C:\Windows\system32
\DRIVERS\HidBatt.sys
15:35:03.0999 0x0f48 HidBatt - ok
15:35:04.0003 0x0f48 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420D
B0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth
C:\Windows\system32
\DRIVERS\hidbth.sys
15:35:04.0026 0x0f48 HidBth - ok
15:35:04.0049 0x0f48 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C
438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr
C:\Windows\system32
\DRIVERS\hidir.sys
15:35:04.0073 0x0f48 HidIr - ok
15:35:04.0090 0x0f48 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29A
A5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv
C:\Windows\system32
\hidserv.dll
15:35:04.0113 0x0f48 hidserv - ok
15:35:04.0127 0x0f48 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F521
6CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb
C:\Windows\system32
\DRIVERS\hidusb.sys
15:35:04.0149 0x0f48 HidUsb - ok
15:35:04.0170 0x0f48 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987
EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc
C:\Windows\system32
\kmsvc.dll
15:35:04.0217 0x0f48 hkmsvc - ok
15:35:04.0245 0x0f48 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09
B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system
32\ListSvc.dll
15:35:04.0276 0x0f48 HomeGroupListener - ok
15:35:04.0315 0x0f48 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C10247
5876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system

32\provsvc.dll
15:35:04.0356 0x0f48 HomeGroupProvider - ok
15:35:04.0392 0x0f48 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F
56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD
C:\Windows\system32
\drivers\HpSAMD.sys
15:35:04.0402 0x0f48 HpSAMD - ok
15:35:04.0457 0x0f48 [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F748
64967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP
C:\Windows\system32
\drivers\HTTP.sys
15:35:04.0501 0x0f48 HTTP - ok
15:35:04.0537 0x0f48 [ 19E6885A061011D8DABE8F64498423FA, 62B5680D7E7F26BEE7DDDA
8F51434CC3219C840779E37072BA37E55B2EE82E3B ] hwdatacard
C:\Windows\system32
\DRIVERS\ewusbmdm.sys
15:35:04.0563 0x0f48 hwdatacard - ok
15:35:04.0583 0x0f48 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E5
08CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy
C:\Windows\system32
\drivers\hwpolicy.sys
15:35:04.0590 0x0f48 hwpolicy - ok
15:35:04.0635 0x0f48 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C3777
3F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt
C:\Windows\system32
\drivers\i8042prt.sys
15:35:04.0661 0x0f48 i8042prt - ok
15:35:04.0690 0x0f48 [ 9615DAF540B2C04DC871D10D7AE59F38, 1F4E8BF86AE636463E643E
3F119F6A4D7652AF1520337C872E88CB85B1814AB0 ] iaStor
C:\Windows\system32
\DRIVERS\iaStor.sys
15:35:04.0705 0x0f48 iaStor - ok
15:35:04.0732 0x0f48 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE010502
5B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV
C:\Windows\system32
\drivers\iaStorV.sys
15:35:04.0745 0x0f48 iaStorV - ok
15:35:04.0773 0x0f48 [ 20C6DD571E0FFFA94D01AE93D432B7D8, F4BD71476FE3A2CB9DC764
742D8749548F3115287046C62E35AF8180F86FACF9 ] IDMWFP
C:\Windows\system32
\DRIVERS\idmwfp.sys
15:35:04.0781 0x0f48 IDMWFP - ok
15:35:04.0854 0x0f48 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91
A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT
C:\Program Files\Co
mmon Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
15:35:04.0872 0x0f48 IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
15:35:07.0580 0x0f48 Detect skipped due to KSN trusted
15:35:07.0580 0x0f48 IDriverT - ok
15:35:07.0652 0x0f48 [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5
AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc
C:\Windows\Microsof
t.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:35:07.0684 0x0f48 idsvc - ok
15:35:07.0714 0x0f48 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE34
2FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp
C:\Windows\system32
\DRIVERS\iirsp.sys
15:35:07.0722 0x0f48 iirsp - ok
15:35:07.0753 0x0f48 [ F95622F161474511B8D80D6B093AA610, F2320E25EB9B4AA9A8366B
D3AA23EABEBE111A5610D3A62EBA47D90427D5BC26 ] IKEEXT
C:\Windows\System32
\ikeext.dll
15:35:07.0799 0x0f48 IKEEXT - ok
15:35:07.0916 0x0f48 [ BFCD7EDC663F513E7C4A0B9400E58C70, 41B2C4EDA0F8804FDFF68E
B5F59D1E5296543D9630915F91202763070D05F759 ] IntcAzAudAddService C:\Windows\syst
em32\drivers\RTKVHDA.sys
15:35:07.0985 0x0f48 IntcAzAudAddService - ok
15:35:08.0013 0x0f48 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655
CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide
C:\Windows\system32
\drivers\intelide.sys
15:35:08.0020 0x0f48 intelide - ok

15:35:08.0053 0x0f48 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28


AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm
C:\Windows\system32
\DRIVERS\intelppm.sys
15:35:08.0075 0x0f48 intelppm - ok
15:35:08.0098 0x0f48 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B
8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum
C:\Windows\system32
\ipbusenum.dll
15:35:08.0152 0x0f48 IPBusEnum - ok
15:35:08.0182 0x0f48 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555
B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32
\DRIVERS\ipfltdrv.sys
15:35:08.0228 0x0f48 IpFilterDriver - ok
15:35:08.0293 0x0f48 [ 4D65A07B795D6674312F879D09AA7663, 8D72FE0B51A6FF71F85D26
02DB3AE91C8749F70869B6789552F047BA81411EDA ] iphlpsvc
C:\Windows\System32
\iphlpsvc.dll
15:35:08.0339 0x0f48 iphlpsvc - ok
15:35:08.0365 0x0f48 [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F
4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV
C:\Windows\system32
\drivers\IPMIDrv.sys
15:35:08.0381 0x0f48 IPMIDRV - ok
15:35:08.0392 0x0f48 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE
1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT
C:\Windows\system32
\drivers\ipnat.sys
15:35:08.0412 0x0f48 IPNAT - ok
15:35:08.0425 0x0f48 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E48
22E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM
C:\Windows\system32
\drivers\irenum.sys
15:35:08.0464 0x0f48 IRENUM - ok
15:35:08.0489 0x0f48 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B
4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp
C:\Windows\system32
\drivers\isapnp.sys
15:35:08.0504 0x0f48 isapnp - ok
15:35:08.0522 0x0f48 [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E2
3E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt
C:\Windows\system32
\drivers\msiscsi.sys
15:35:08.0535 0x0f48 iScsiPrt - ok
15:35:08.0557 0x0f48 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD
3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass
C:\Windows\system32
\DRIVERS\kbdclass.sys
15:35:08.0566 0x0f48 kbdclass - ok
15:35:08.0585 0x0f48 [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A79326
6805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid
C:\Windows\system32
\DRIVERS\kbdhid.sys
15:35:08.0604 0x0f48 kbdhid - ok
15:35:08.0613 0x0f48 [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] KeyIso
C:\Windows\system32
\lsass.exe
15:35:08.0623 0x0f48 KeyIso - ok
15:35:08.0645 0x0f48 [ B7895B4182C0D16F6EFADEB8081E8D36, BAC3BAD22207C8826125FD
7721C96F2C7A238960FD9398A3D4573E14648E9DB9 ] KSecDD
C:\Windows\system32
\Drivers\ksecdd.sys
15:35:08.0653 0x0f48 KSecDD - ok
15:35:08.0661 0x0f48 [ D30159AC9237519FBC62C6EC247D2D46, 10BDE041C95D0CCD3591ED
497002043FEC3A5F732D7AE311FBA457E0FE16CE4B ] KSecPkg
C:\Windows\system32
\Drivers\ksecpkg.sys
15:35:08.0671 0x0f48 KSecPkg - ok
15:35:08.0697 0x0f48 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955
E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm
C:\Windows\system32
\msdtckrm.dll
15:35:08.0732 0x0f48 KtmRm - ok

15:35:08.0744 0x0f48 [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB


5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer
C:\Windows\system32
\srvsvc.dll
15:35:08.0777 0x0f48 LanmanServer - ok
15:35:08.0794 0x0f48 [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D43
91E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System
32\wkssvc.dll
15:35:08.0826 0x0f48 LanmanWorkstation - ok
15:35:08.0854 0x0f48 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA0
39C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio
C:\Windows\system32
\DRIVERS\lltdio.sys
15:35:08.0884 0x0f48 lltdio - ok
15:35:08.0913 0x0f48 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64B
E47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc
C:\Windows\System32
\lltdsvc.dll
15:35:08.0951 0x0f48 lltdsvc - ok
15:35:08.0970 0x0f48 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F
8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts
C:\Windows\System32
\lmhsvc.dll
15:35:08.0987 0x0f48 lmhosts - ok
15:35:09.0005 0x0f48 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223
F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC
C:\Windows\system32
\DRIVERS\lsi_fc.sys
15:35:09.0013 0x0f48 LSI_FC - ok
15:35:09.0027 0x0f48 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549
A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS
C:\Windows\system32
\DRIVERS\lsi_sas.sys
15:35:09.0035 0x0f48 LSI_SAS - ok
15:35:09.0041 0x0f48 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E
17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2
C:\Windows\system32
\DRIVERS\lsi_sas2.sys
15:35:09.0048 0x0f48 LSI_SAS2 - ok
15:35:09.0055 0x0f48 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156
DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI
C:\Windows\system32
\DRIVERS\lsi_scsi.sys
15:35:09.0063 0x0f48 LSI_SCSI - ok
15:35:09.0083 0x0f48 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC512
06A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv
C:\Windows\system32
\drivers\luafv.sys
15:35:09.0113 0x0f48 luafv - ok
15:35:09.0139 0x0f48 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432F
D2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc
C:\Windows\system32
\Mcx2Svc.dll
15:35:09.0150 0x0f48 Mcx2Svc - ok
15:35:09.0162 0x0f48 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00
D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas
C:\Windows\system32
\DRIVERS\megasas.sys
15:35:09.0170 0x0f48 megasas - ok
15:35:09.0182 0x0f48 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C61791
61B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR
C:\Windows\system32
\DRIVERS\MegaSR.sys
15:35:09.0193 0x0f48 MegaSR - ok
15:35:09.0212 0x0f48 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F39
9413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS
C:\Windows\system32
\mmcss.dll
15:35:09.0243 0x0f48 MMCSS - ok
15:35:09.0259 0x0f48 [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF36
0862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem
C:\Windows\system32
\drivers\modem.sys
15:35:09.0293 0x0f48 Modem - ok

15:35:09.0313 0x0f48 [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A


4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor
C:\Windows\system32
\DRIVERS\monitor.sys
15:35:09.0340 0x0f48 monitor - ok
15:35:09.0357 0x0f48 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B9
6B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass
C:\Windows\system32
\DRIVERS\mouclass.sys
15:35:09.0364 0x0f48 mouclass - ok
15:35:09.0376 0x0f48 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B
57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid
C:\Windows\system32
\DRIVERS\mouhid.sys
15:35:09.0391 0x0f48 mouhid - ok
15:35:09.0438 0x0f48 [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE
74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr
C:\Windows\system32
\drivers\mountmgr.sys
15:35:09.0452 0x0f48 mountmgr - ok
15:35:09.0497 0x0f48 [ 26EA1DAD601EE3ACAC301D66F07BA219, C9594BB15D53D4AC2156CC
CD2DB65B2C20620F1F60DA85F48D1586FC10028096 ] MozillaMaintenance C:\Program Files
\Mozilla Maintenance Service\maintenanceservice.exe
15:35:09.0514 0x0f48 MozillaMaintenance - ok
15:35:09.0537 0x0f48 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9
B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio
C:\Windows\system32
\drivers\mpio.sys
15:35:09.0555 0x0f48 mpio - ok
15:35:09.0582 0x0f48 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED8
19176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv
C:\Windows\system32
\drivers\mpsdrv.sys
15:35:09.0603 0x0f48 mpsdrv - ok
15:35:09.0641 0x0f48 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B8
45319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc
C:\Windows\system32
\mpssvc.dll
15:35:09.0685 0x0f48 MpsSvc - ok
15:35:09.0714 0x0f48 [ CEB46AB7C01C9F825F8CC6BABC18166A, AA98898204FC58878502C1
70FE6ED8BA681396DDD8BF3689D0C3642DEA87BEF8 ] MRxDAV
C:\Windows\system32
\drivers\mrxdav.sys
15:35:09.0740 0x0f48 MRxDAV - ok
15:35:09.0759 0x0f48 [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9
F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb
C:\Windows\system32
\DRIVERS\mrxsmb.sys
15:35:09.0791 0x0f48 mrxsmb - ok
15:35:09.0806 0x0f48 [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06
D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10
C:\Windows\system32
\DRIVERS\mrxsmb10.sys
15:35:09.0819 0x0f48 mrxsmb10 - ok
15:35:09.0844 0x0f48 [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9
B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20
C:\Windows\system32
\DRIVERS\mrxsmb20.sys
15:35:09.0866 0x0f48 mrxsmb20 - ok
15:35:09.0885 0x0f48 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660F
BBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci
C:\Windows\system32
\drivers\msahci.sys
15:35:09.0892 0x0f48 msahci - ok
15:35:09.0926 0x0f48 [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1C
D0835E8234405BB80084065ED05363B77868397304 ] msdsm
C:\Windows\system32
\drivers\msdsm.sys
15:35:09.0942 0x0f48 msdsm - ok
15:35:09.0954 0x0f48 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6C
A2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC
C:\Windows\System32
\msdtc.exe
15:35:09.0978 0x0f48 MSDTC - ok

15:35:10.0009 0x0f48 [ DAEFB28E3AF5A76ABCC2C3078C07327F,


7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs
\drivers\Msfs.sys
15:35:10.0027 0x0f48 Msfs - ok
15:35:10.0037 0x0f48 [ 3E1E5767043C5AF9367F0056295E9F84,
9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf
\drivers\mshidkmdf.sys
15:35:10.0055 0x0f48 mshidkmdf - ok
15:35:10.0064 0x0f48 [ 0A4E5757AE09FA9622E3158CC1AEF114,
526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv
\drivers\msisadrv.sys
15:35:10.0071 0x0f48 msisadrv - ok
15:35:10.0099 0x0f48 [ 90F7D9E6B6F27E1A707D4A297F077828,
8842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI
\iscsiexe.dll
15:35:10.0145 0x0f48 MSiSCSI - ok
15:35:10.0148 0x0f48 msiserver - ok
15:35:10.0169 0x0f48 [ 8C0860D6366AAFFB6C5BB9DF9448E631,
17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV
\drivers\MSKSSRV.sys
15:35:10.0203 0x0f48 MSKSSRV - ok
15:35:10.0217 0x0f48 [ 3EA8B949F963562CEDBB549EAC0C11CE,
548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK
\drivers\MSPCLOCK.sys
15:35:10.0241 0x0f48 MSPCLOCK - ok
15:35:10.0244 0x0f48 [ F456E973590D663B1073E9C463B40932,
4772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM
\drivers\MSPQM.sys
15:35:10.0273 0x0f48 MSPQM - ok
15:35:10.0283 0x0f48 [ 0E008FC4819D238C51D7C93E7B41E560,
5A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC
\drivers\MsRPC.sys
15:35:10.0292 0x0f48 MsRPC - ok
15:35:10.0318 0x0f48 [ FC6B9FF600CC585EA38B12589BD4E246,
51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios
\drivers\mssmbios.sys
15:35:10.0326 0x0f48 mssmbios - ok
15:35:10.0337 0x0f48 [ B42C6B921F61A6E55159B8BE6CD54A36,
1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE
\drivers\MSTEE.sys
15:35:10.0355 0x0f48 MSTEE - ok
15:35:10.0357 0x0f48 [ 33599130F44E1F34631CEA241DE8AC84,
4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig
\DRIVERS\MTConfig.sys
15:35:10.0369 0x0f48 MTConfig - ok
15:35:10.0382 0x0f48 [ 159FAD02F64E6381758C990F753BCC80,
9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup
\Drivers\mup.sys
15:35:10.0389 0x0f48 Mup - ok
15:35:10.0425 0x0f48 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E,
693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent
\qagentRT.dll
15:35:10.0459 0x0f48 napagent - ok
15:35:10.0487 0x0f48 [ 26384429FCD85D83746F63E798AB1480,
8B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP
\DRIVERS\nwifi.sys
15:35:10.0502 0x0f48 NativeWifiP - ok
15:35:10.0572 0x0f48 [ E4534BCCDD1EA7A7A256BB9D6688A5FC,
9D7F020C1D82ABE91C40C7E6419DF87FAFDA700A0E ] NAUpdate
ro\Update\NASvc.exe

6EB558532400B489763BAE
C:\Windows\system32
B2EDFECD3C14E4FE1BA87D
C:\Windows\System32
ED574E420E57374E328C7C
C:\Windows\system32
BEFC220EAA730784960074
C:\Windows\system32

949C5A14E57F2D7385543C
C:\Windows\system32
1B0B2F16A1790282504F3C
C:\Windows\system32
48BA6D5580EE7B6A4C06E0
C:\Windows\system32
141FCEBDD05874407EAEC3
C:\Windows\system32
F05DB01AE1955D2468CE6B
C:\Windows\system32
6BB0A7BE005B8F281E551D
C:\Windows\system32
E15B31D1AFDC8DC6D2B21D
C:\Windows\system32
E55AB01DCFA95ECAB24A2A
C:\Windows\system32
D252248532142E9E2332DA
C:\Windows\system32
957C115C263A4B4DC85455
C:\Windows\system32
68AFEDC17BF449DF7FC9CC
C:\Program Files\Ne

15:35:10.0590 0x0f48 NAUpdate - ok


15:35:10.0611 0x0f48 [ E7C54812A2AAF43316EB6930C1FFA108, C8A6FC1957FA29A3B37213
2FEA9145538BC767044A11D77316D3D1A3EAA60630 ] NDIS
C:\Windows\system32
\drivers\ndis.sys
15:35:10.0631 0x0f48 NDIS - ok
15:35:10.0639 0x0f48 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424B
DA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap
C:\Windows\system32
\DRIVERS\ndiscap.sys
15:35:10.0670 0x0f48 NdisCap - ok
15:35:10.0690 0x0f48 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD
1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi
C:\Windows\system32
\DRIVERS\ndistapi.sys
15:35:10.0708 0x0f48 NdisTapi - ok
15:35:10.0735 0x0f48 [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813
DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio
C:\Windows\system32
\DRIVERS\ndisuio.sys
15:35:10.0755 0x0f48 Ndisuio - ok
15:35:10.0782 0x0f48 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB
30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan
C:\Windows\system32
\DRIVERS\ndiswan.sys
15:35:10.0815 0x0f48 NdisWan - ok
15:35:10.0828 0x0f48 [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B69587
15BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy
C:\Windows\system32
\drivers\NDProxy.sys
15:35:10.0845 0x0f48 NDProxy - ok
15:35:10.0890 0x0f48 [ CC53B47CEF1A81B04EA0AA503CEC2D35, E0EC2153454B9A0FE94DA1
998B800F62E19FF85AF2AC3F169CF6863AC8818FD3 ] Net Driver HPZ12 C:\Windows\system3
2\HPZinw12.dll
15:35:10.0910 0x0f48 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1
)
15:35:13.0622 0x0f48 Detect skipped due to KSN trusted
15:35:13.0622 0x0f48 Net Driver HPZ12 - ok
15:35:13.0652 0x0f48 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A
298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS
C:\Windows\system32
\DRIVERS\netbios.sys
15:35:13.0702 0x0f48 NetBIOS - ok
15:35:13.0732 0x0f48 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1
D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT
C:\Windows\system32
\DRIVERS\netbt.sys
15:35:13.0762 0x0f48 NetBT - ok
15:35:13.0772 0x0f48 [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] Netlogon
C:\Windows\system32
\lsass.exe
15:35:13.0782 0x0f48 Netlogon - ok
15:35:13.0802 0x0f48 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D
303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman
C:\Windows\System32
\netman.dll
15:35:13.0832 0x0f48 Netman - ok
15:35:13.0842 0x0f48 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7
409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm
C:\Windows\System32
\netprofm.dll
15:35:13.0872 0x0f48 netprofm - ok
15:35:13.0902 0x0f48 [ F476EC40033CDB91EFBE73EB99B8362D, B17535037BC070F9AE1F6B
381C2DBEE27658A8FDE15FB0E061F485EA7C7CBE59 ] NetTcpPortSharing C:\Windows\Micros
oft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:35:13.0912 0x0f48 NetTcpPortSharing - ok
15:35:13.0942 0x0f48 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC
543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960
C:\Windows\system32
\DRIVERS\nfrd960.sys
15:35:13.0952 0x0f48 nfrd960 - ok

15:35:14.0022 0x0f48 [ 6A1134FB484AF1AA9E952196B20996FC, 6C459D2C47D14CFE0A9389


602433F0B10C420BC8DF6212CB229FC4128993F3F4 ] NitroDriverReadSpool2 C:\Program Fi
les\Nitro PDF\Professional 7\NitroPDFDriverService2.exe
15:35:14.0032 0x0f48 NitroDriverReadSpool2 - ok
15:35:14.0052 0x0f48 [ 912084381D30D8B89EC4E293053F4710, 99B8CD043DF531D4B9725E
D167F63CED220608B2FED3EE8250C217D15762DFD7 ] NlaSvc
C:\Windows\System32
\nlasvc.dll
15:35:14.0082 0x0f48 NlaSvc - ok
15:35:14.0112 0x0f48 [ FAC20F9060FF9C74AF0C8A002BB04AE7, 6E9CD66FE84EB69C74F678
663BD218777F75A332A503A9545F1DAA41157655EF ] nlsX86cc
C:\Windows\system32
\NLSSRV32.EXE
15:35:14.0122 0x0f48 nlsX86cc - ok
15:35:14.0132 0x0f48 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9
C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs
C:\Windows\system32
\drivers\Npfs.sys
15:35:14.0162 0x0f48 Npfs - ok
15:35:14.0172 0x0f48 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C
154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi
C:\Windows\system32
\nsisvc.dll
15:35:14.0202 0x0f48 nsi - ok
15:35:14.0202 0x0f48 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E
1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy
C:\Windows\system32
\drivers\nsiproxy.sys
15:35:14.0232 0x0f48 nsiproxy - ok
15:35:14.0302 0x0f48 [ 0D87503986BB3DFED58E343FE39DDE13, D7AECC693F418904C663C9
48854E0AB9B379D152EEC1FC565E095CCB6A4B6692 ] Ntfs
C:\Windows\system32
\drivers\Ntfs.sys
15:35:14.0342 0x0f48 Ntfs - ok
15:35:14.0352 0x0f48 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013
AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null
C:\Windows\system32
\drivers\Null.sys
15:35:14.0372 0x0f48 Null - ok
15:35:14.0402 0x0f48 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396
DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid
C:\Windows\system32
\drivers\nvraid.sys
15:35:14.0412 0x0f48 nvraid - ok
15:35:14.0432 0x0f48 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970D
D29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor
C:\Windows\system32
\drivers\nvstor.sys
15:35:14.0442 0x0f48 nvstor - ok
15:35:14.0452 0x0f48 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FE
FCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp
C:\Windows\system32
\drivers\nv_agp.sys
15:35:14.0462 0x0f48 nv_agp - ok
15:35:14.0552 0x0f48 [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23
D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv
C:\Program Files\Co
mmon Files\Microsoft Shared\OFFICE12\ODSERV.EXE
15:35:14.0572 0x0f48 odserv - ok
15:35:14.0602 0x0f48 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E
95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394
C:\Windows\system32
\drivers\ohci1394.sys
15:35:14.0622 0x0f48 ohci1394 - ok
15:35:14.0642 0x0f48 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E1
5FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose
C:\Program Files\Co
mmon Files\Microsoft Shared\Source Engine\OSE.EXE
15:35:14.0652 0x0f48 ose - ok
15:35:14.0822 0x0f48 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93
F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc
C:\Program Files\Co
mmon Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:35:14.0902 0x0f48 osppsvc - ok

15:35:14.0932 0x0f48 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D73


6B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc
C:\Windows\system32
\pnrpsvc.dll
15:35:14.0972 0x0f48 p2pimsvc - ok
15:35:15.0002 0x0f48 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644
AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc
C:\Windows\system32
\p2psvc.dll
15:35:15.0022 0x0f48 p2psvc - ok
15:35:15.0052 0x0f48 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97
DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport
C:\Windows\system32
\DRIVERS\parport.sys
15:35:15.0062 0x0f48 Parport - ok
15:35:15.0082 0x0f48 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0E
EBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr
C:\Windows\system32
\drivers\partmgr.sys
15:35:15.0102 0x0f48 partmgr - ok
15:35:15.0102 0x0f48 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D0138
3BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm
C:\Windows\system32
\DRIVERS\parvdm.sys
15:35:15.0122 0x0f48 Parvdm - ok
15:35:15.0142 0x0f48 [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC
018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc
C:\Windows\System32
\pcasvc.dll
15:35:15.0152 0x0f48 PcaSvc - ok
15:35:15.0182 0x0f48 [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD56941
6C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci
C:\Windows\system32
\drivers\pci.sys
15:35:15.0192 0x0f48 pci - ok
15:35:15.0222 0x0f48 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A6
5FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide
C:\Windows\system32
\drivers\pciide.sys
15:35:15.0222 0x0f48 pciide - ok
15:35:15.0242 0x0f48 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CC
E3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia
C:\Windows\system32
\DRIVERS\pcmcia.sys
15:35:15.0252 0x0f48 pcmcia - ok
15:35:15.0262 0x0f48 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF75
0E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw
C:\Windows\system32
\drivers\pcw.sys
15:35:15.0262 0x0f48 pcw - ok
15:35:15.0282 0x0f48 [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884
DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH
C:\Windows\system32
\drivers\peauth.sys
15:35:15.0312 0x0f48 PEAUTH - ok
15:35:15.0352 0x0f48 [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5D
F75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc
C:\Windows\system32
\peerdistsvc.dll
15:35:15.0402 0x0f48 PeerDistSvc - ok
15:35:15.0462 0x0f48 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA40204482
4DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla
C:\Windows\system32
\pla.dll
15:35:15.0522 0x0f48 pla - ok
15:35:15.0592 0x0f48 [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D
558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay
C:\Windows\system32
\umpnpmgr.dll
15:35:15.0632 0x0f48 PlugPlay - ok
15:35:15.0652 0x0f48 [ 0C1A70B460E706D986609496BCCD9660, AE493F214D913D31B4509D
606A07A0295A05A158F264DAF99DDCEBBC27481404 ] Pml Driver HPZ12 C:\Windows\system3
2\HPZipm12.dll
15:35:15.0682 0x0f48 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1

)
15:35:18.0712 0x0f48 Detect skipped due to KSN trusted
15:35:18.0712 0x0f48 Pml Driver HPZ12 - ok
15:35:18.0742 0x0f48 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC8881
2B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg
C:\Windows\system32
\pnrpauto.dll
15:35:18.0762 0x0f48 PNRPAutoReg - ok
15:35:18.0792 0x0f48 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D73
6B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc
C:\Windows\system32
\pnrpsvc.dll
15:35:18.0822 0x0f48 PNRPsvc - ok
15:35:18.0872 0x0f48 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342
C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent
C:\Windows\System32
\ipsecsvc.dll
15:35:18.0922 0x0f48 PolicyAgent - ok
15:35:18.0952 0x0f48 [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908F
A5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power
C:\Windows\system32
\umpo.dll
15:35:18.0992 0x0f48 Power - ok
15:35:19.0022 0x0f48 [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246
920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport
C:\Windows\system32
\DRIVERS\raspptp.sys
15:35:19.0072 0x0f48 PptpMiniport - ok
15:35:19.0082 0x0f48 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB0
4007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor
C:\Windows\system32
\DRIVERS\processr.sys
15:35:19.0102 0x0f48 Processor - ok
15:35:19.0142 0x0f48 [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3C
E27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc
C:\Windows\system32
\profsvc.dll
15:35:19.0182 0x0f48 ProfSvc - ok
15:35:19.0192 0x0f48 [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] ProtectedStorage C:\Windows\system3
2\lsass.exe
15:35:19.0212 0x0f48 ProtectedStorage - ok
15:35:19.0232 0x0f48 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC
6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched
C:\Windows\system32
\DRIVERS\pacer.sys
15:35:19.0252 0x0f48 Psched - ok
15:35:19.0282 0x0f48 [ 4787576D096C2A572CFEFA14B68CA81F, AE2AC67FCE2895C59C5BB1
A92815B9B6313264A97E6567ADC173142463C40A77 ] pwdrvio
C:\Windows\system32
\pwdrvio.sys
15:35:19.0292 0x0f48 pwdrvio - ok
15:35:19.0332 0x0f48 [ 40EE472401EF882794BE53093CCB070F, 87DAD824601D85D0B51571
BD12CA59744BA1E90321EC0FD19A51AB0C1D3C7E45 ] pwdspio
C:\Windows\system32
\pwdspio.sys
15:35:19.0352 0x0f48 pwdspio - ok
15:35:19.0422 0x0f48 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B
930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300
C:\Windows\system32
\DRIVERS\ql2300.sys
15:35:19.0452 0x0f48 ql2300 - ok
15:35:19.0472 0x0f48 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F996
8222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx
C:\Windows\system32
\DRIVERS\ql40xx.sys
15:35:19.0482 0x0f48 ql40xx - ok
15:35:19.0502 0x0f48 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7
676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE
C:\Windows\system32
\qwave.dll
15:35:19.0512 0x0f48 QWAVE - ok
15:35:19.0522 0x0f48 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9

DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv
\drivers\qwavedrv.sys
15:35:19.0532 0x0f48 QWAVEdrv - ok
15:35:19.0542 0x0f48 [ 30A81B53C766D0133BB86D234E5556AB,
9B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd
\DRIVERS\rasacd.sys
15:35:19.0562 0x0f48 RasAcd - ok
15:35:19.0592 0x0f48 [ 57EC4AEF73660166074D8F7F31C0D4FD,
631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn
\DRIVERS\AgileVpn.sys
15:35:19.0632 0x0f48 RasAgileVpn - ok
15:35:19.0652 0x0f48 [ A60F1839849C0C00739787FD5EC03F13,
F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto
\rasauto.dll
15:35:19.0682 0x0f48 RasAuto - ok
15:35:19.0682 0x0f48 [ D9F91EAFEC2815365CBE6D167E4E332A,
DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp
\DRIVERS\rasl2tp.sys
15:35:19.0722 0x0f48 Rasl2tp - ok
15:35:19.0752 0x0f48 [ CB9E04DC05EACF5B9A36CA276D475006,
AF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan
\rasmans.dll
15:35:19.0782 0x0f48 RasMan - ok
15:35:19.0802 0x0f48 [ 0FE8B15916307A6AC12BFB6A63E45507,
78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe
\DRIVERS\raspppoe.sys
15:35:19.0822 0x0f48 RasPppoe - ok
15:35:19.0842 0x0f48 [ 44101F495A83EA6401D886E7FD70096B,
795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp
\DRIVERS\rassstp.sys
15:35:19.0872 0x0f48 RasSstp - ok
15:35:19.0882 0x0f48 [ D528BC58A489409BA40334EBF96A311B,
97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss
\DRIVERS\rdbss.sys
15:35:19.0912 0x0f48 rdbss - ok
15:35:19.0922 0x0f48 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF,
1F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus
\DRIVERS\rdpbus.sys
15:35:19.0932 0x0f48 rdpbus - ok
15:35:19.0962 0x0f48 [ 23DAE03F29D253AE74C44F99E515F9A1,
508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD
\DRIVERS\RDPCDD.sys
15:35:20.0002 0x0f48 RDPCDD - ok
15:35:20.0022 0x0f48 [ B973FCFC50DC1434E1970A146F7E3885,
34CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR
\drivers\rdpdr.sys
15:35:20.0042 0x0f48 RDPDR - ok
15:35:20.0072 0x0f48 [ 5A53CA1598DD4156D44196D200C94B8A,
E4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD
\drivers\rdpencdd.sys
15:35:20.0092 0x0f48 RDPENCDD - ok
15:35:20.0102 0x0f48 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F,
920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP
\drivers\rdprefmp.sys
15:35:20.0132 0x0f48 RDPREFMP - ok
15:35:20.0152 0x0f48 [ F031683E6D1FEA157ABB2FF260B51E61,
27E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD
\drivers\RDPWD.sys
15:35:20.0182 0x0f48 RDPWD - ok
15:35:20.0222 0x0f48 [ 518395321DC96FE2C9F0E96AC743B656,

C:\Windows\system32
726C6B83B5ACAA84CAB168
C:\Windows\system32
C66B425EC4DB5E7FD289AE
C:\Windows\system32
B210DFA5A843CF1DA73635
C:\Windows\System32
8350457A39D141C13807E7
C:\Windows\system32
4D8C0AEF1D4F84F375AD2B
C:\Windows\System32
64119474DE7499E6E8B82E
C:\Windows\system32
56A0CE5C89870752B9B2AB
C:\Windows\system32
C71E9A4B101DB6C3183B9F
C:\Windows\system32
2AFCBE3237D27AFBF095F9
C:\Windows\system32
8FED93D10B2062F0526FE3
C:\Windows\system32
BE797E5F5AE34D37F8DA11
C:\Windows\system32
8112FE14FEC94C67B1C5BD
C:\Windows\system32
CDA80B08E67AD034081C0C
C:\Windows\system32
83B552819A5964152882C5
C:\Windows\system32
5F6A0880B4F3EE7196259E

A362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost
C:\Windows\system32
\drivers\rdyboost.sys
15:35:20.0232 0x0f48 rdyboost - ok
15:35:20.0252 0x0f48 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DA
E53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess
C:\Windows\System32
\mprdim.dll
15:35:20.0282 0x0f48 RemoteAccess - ok
15:35:20.0312 0x0f48 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40B
FA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32
\regsvc.dll
15:35:20.0342 0x0f48 RemoteRegistry - ok
15:35:20.0382 0x0f48 [ 4F4A4C09CC5BE58A76CAC1C337E004E6, 5DFFB1C60709A80DAC46BC
BB9BA76408332A681EFA6ABB330CD74236109F4296 ] RimUsb
C:\Windows\system32
\Drivers\RimUsb.sys
15:35:20.0412 0x0f48 RimUsb - ok
15:35:20.0442 0x0f48 [ C4F4FCD5AE48BDD31648981DDF8EF993, B2C8586D5F09AB2FBCE8BB
ACC9B1C74D6E1A25A8264A4218E80354C4470C750F ] RimVSerPort
C:\Windows\system32
\DRIVERS\RimSerial.sys
15:35:20.0472 0x0f48 RimVSerPort - ok
15:35:20.0492 0x0f48 [ 564297827D213F52C7A3A2FF749568CA, B09A78D3B3F0BF47818BBE
EDEF73BD6ACB9C5E367592BB90C85FD262BE521876 ] ROOTMODEM
C:\Windows\system32
\Drivers\RootMdm.sys
15:35:20.0542 0x0f48 ROOTMODEM - ok
15:35:20.0552 0x0f48 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83
DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper
C:\Windows\System32
\RpcEpMap.dll
15:35:20.0592 0x0f48 RpcEptMapper - ok
15:35:20.0612 0x0f48 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0
154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator
C:\Windows\system32
\locator.exe
15:35:20.0632 0x0f48 RpcLocator - ok
15:35:20.0652 0x0f48 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331
F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs
C:\Windows\system32
\rpcss.dll
15:35:20.0672 0x0f48 RpcSs - ok
15:35:20.0692 0x0f48 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D
9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr
C:\Windows\system32
\DRIVERS\rspndr.sys
15:35:20.0722 0x0f48 rspndr - ok
15:35:20.0742 0x0f48 [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6
DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap
C:\Windows\system32
\drivers\vms3cap.sys
15:35:20.0762 0x0f48 s3cap - ok
15:35:20.0772 0x0f48 [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] SamSs
C:\Windows\system32
\lsass.exe
15:35:20.0782 0x0f48 SamSs - ok
15:35:20.0792 0x0f48 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8
E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port
C:\Windows\system32
\drivers\sbp2port.sys
15:35:20.0802 0x0f48 sbp2port - ok
15:35:20.0832 0x0f48 [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD197
7F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr
C:\Windows\System32
\SCardSvr.dll
15:35:20.0862 0x0f48 SCardSvr - ok
15:35:20.0932 0x0f48 [ 23AA53256CE05B975398B78A33474265, F7F0E99D08D486AD229374
1997F731D2431D5B874F6201E1952A024B1F848033 ] SCDEmu
C:\Windows\system32
\drivers\SCDEmu.sys
15:35:20.0952 0x0f48 SCDEmu - detected UnsignedFile.Multi.Generic ( 1 )
15:35:23.0972 0x0f48 Detect skipped due to KSN trusted

15:35:23.0972 0x0f48 SCDEmu - ok


15:35:23.0992 0x0f48 [ 0693B5EC673E34DC147E195779A4DCF6,
A67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter
\DRIVERS\scfilter.sys
15:35:24.0022 0x0f48 scfilter - ok
15:35:24.0102 0x0f48 [ A04BB13F8A72F8B6E8B4071723E4E336,
7C455324C8437F9CF398153E269543588B65389502 ] Schedule
\schedsvc.dll
15:35:24.0152 0x0f48 Schedule - ok
15:35:24.0162 0x0f48 [ 319C6B309773D063541D01DF8AC6F55F,
A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc
\certprop.dll
15:35:24.0182 0x0f48 SCPolicySvc - ok
15:35:24.0212 0x0f48 [ 08236C4BCE5EDD0A0318A438AF28E0F7,
AD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC
\SDRSVC.dll
15:35:24.0242 0x0f48 SDRSVC - ok
15:35:24.0262 0x0f48 [ 90A3935D05B494A5A39D37E71F09A677,
632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv
\drivers\secdrv.sys
15:35:24.0282 0x0f48 secdrv - ok
15:35:24.0292 0x0f48 [ A59B3A4442C52060CC7A85293AA3546F,
F39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon
\seclogon.dll
15:35:24.0312 0x0f48 seclogon - ok
15:35:24.0322 0x0f48 [ DCB7FCDCC97F87360F75D77425B81737,
E613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS
\sens.dll
15:35:24.0352 0x0f48 SENS - ok
15:35:24.0372 0x0f48 [ 50087FE1EE447009C9CC2997B90DE53F,
198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc
\sensrsvc.dll
15:35:24.0392 0x0f48 SensrSvc - ok
15:35:24.0412 0x0f48 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1,
6065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum
\DRIVERS\serenum.sys
15:35:24.0432 0x0f48 Serenum - ok
15:35:24.0452 0x0f48 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2,
49DB97595CC32332D9321DF68283BFC102E66D766F ] Serial
\DRIVERS\serial.sys
15:35:24.0462 0x0f48 Serial - ok
15:35:24.0482 0x0f48 [ 79BFFB520327FF916A582DFEA17AA813,
9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse
\DRIVERS\sermouse.sys
15:35:24.0502 0x0f48 sermouse - ok
15:35:24.0522 0x0f48 [ 4AE380F39A0032EAB7DD953030B26D28,
57867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv
\sessenv.dll
15:35:24.0562 0x0f48 SessionEnv - ok
15:35:24.0582 0x0f48 [ 9F976E1EB233DF46FCE808D9DEA3EB9C,
E7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk
\drivers\sffdisk.sys
15:35:24.0592 0x0f48 sffdisk - ok
15:35:24.0602 0x0f48 [ 932A68EE27833CFD57C1639D375F2731,
7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc
\drivers\sffp_mmc.sys
15:35:24.0622 0x0f48 sffp_mmc - ok
15:35:24.0632 0x0f48 [ 6D4CCAEDC018F1CF52866BBBAA235982,
8457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd
\drivers\sffp_sd.sys

AF1B56FBF3ADABF94CD9DB
C:\Windows\system32
E63287FF71C39CBF64C334
C:\Windows\system32
182F392FE839499D159A30
C:\Windows\System32
77727F963F63C4CEC11E7A
C:\Windows\System32
F72733A69BC6E1A2BB91D7
C:\Windows\system32
1776D6DEE51991149265AA
C:\Windows\system32
F8289AF2C458C167038EEF
C:\Windows\System32
B5E6CF1D991F87C29C5E28
C:\Windows\system32
E2F019BCD1446236D078D4
C:\Windows\system32
A26DB2EB9F3E2509B4EBA9
C:\Windows\system32
7A2A9D69BE02228591186A
C:\Windows\system32
C8F5F2DD59574E966FDF30
C:\Windows\system32
6A5C53F27F8BCA85CE206E
C:\Windows\system32
11D6B98FBEEE2B9C7B06EF
C:\Windows\system32
AAC41F5C97B3FE5A3DC083
C:\Windows\system32

15:35:24.0662 0x0f48 sffp_sd - ok


15:35:24.0672 0x0f48 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC
6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy
C:\Windows\system32
\DRIVERS\sfloppy.sys
15:35:24.0692 0x0f48 sfloppy - ok
15:35:24.0732 0x0f48 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C
6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess
C:\Windows\System32
\ipnathlp.dll
15:35:24.0782 0x0f48 SharedAccess - ok
15:35:24.0802 0x0f48 [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506
A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System3
2\shsvcs.dll
15:35:24.0832 0x0f48 ShellHWDetection - ok
15:35:24.0872 0x0f48 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F
12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp
C:\Windows\system32
\drivers\sisagp.sys
15:35:24.0872 0x0f48 sisagp - ok
15:35:24.0892 0x0f48 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCB
FFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2
C:\Windows\system32
\DRIVERS\SiSRaid2.sys
15:35:24.0902 0x0f48 SiSRaid2 - ok
15:35:24.0902 0x0f48 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3
B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4
C:\Windows\system32
\DRIVERS\sisraid4.sys
15:35:24.0912 0x0f48 SiSRaid4 - ok
15:35:24.0932 0x0f48 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A
49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb
C:\Windows\system32
\DRIVERS\smb.sys
15:35:24.0952 0x0f48 Smb - ok
15:35:24.0972 0x0f48 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D8
92B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP
C:\Windows\System32
\snmptrap.exe
15:35:24.0982 0x0f48 SNMPTRAP - ok
15:35:24.0992 0x0f48 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE8261
9C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr
C:\Windows\system32
\drivers\spldr.sys
15:35:25.0002 0x0f48 spldr - ok
15:35:25.0032 0x0f48 [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318A
DB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler
C:\Windows\System32
\spoolsv.exe
15:35:25.0072 0x0f48 Spooler - ok
15:35:25.0182 0x0f48 [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA
28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc
C:\Windows\system32
\sppsvc.exe
15:35:25.0282 0x0f48 sppsvc - ok
15:35:25.0312 0x0f48 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F2
0119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify
C:\Windows\system32
\sppuinotify.dll
15:35:25.0342 0x0f48 sppuinotify - ok
15:35:25.0372 0x0f48 [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD176759
55C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv
C:\Windows\system32
\DRIVERS\srv.sys
15:35:25.0402 0x0f48 srv - ok
15:35:25.0422 0x0f48 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23
C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2
C:\Windows\system32
\DRIVERS\srv2.sys
15:35:25.0452 0x0f48 srv2 - ok
15:35:25.0462 0x0f48 [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D3809
9194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet
C:\Windows\system32
\DRIVERS\srvnet.sys

15:35:25.0482 0x0f48 srvnet - ok


15:35:25.0522 0x0f48 [ 64E44ACD8C238FCBBB78F0BA4BDC4B05,
063AE76FAFA9497F04225D256DF5A37EB1461F15D4 ] ssadbus
\DRIVERS\ssadbus.sys
15:35:25.0562 0x0f48 ssadbus - ok
15:35:25.0582 0x0f48 [ BB2C84A15C765DA89FD832B0E73F26CE,
CA18869DFEA304A03B0A0429B4C3D186B1149E9A9A ] ssadmdfl
\DRIVERS\ssadmdfl.sys
15:35:25.0612 0x0f48 ssadmdfl - ok
15:35:25.0622 0x0f48 [ 6D0D132DDC6F43EDA00DCED6D8B1CA31,
92048DFCFAE6FB38510D21AB41C9C73744743E7646 ] ssadmdm
\DRIVERS\ssadmdm.sys
15:35:25.0652 0x0f48 ssadmdm - ok
15:35:25.0662 0x0f48 [ 1A5A397BC459F346AB56492B61EF79F6,
72EE7ECB844DA6EB0282FBC3BE92A1CC5AD80FA6C4 ] ssadserd
\DRIVERS\ssadserd.sys
15:35:25.0692 0x0f48 ssadserd - ok
15:35:25.0712 0x0f48 [ D887C9FD02AC9FA880F6E5027A43E118,
090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV
\ssdpsrv.dll
15:35:25.0742 0x0f48 SSDPSRV - ok
15:35:25.0752 0x0f48 [ D318F23BE45D5E3A107469EB64815B50,
9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc
\sstpsvc.dll
15:35:25.0772 0x0f48 SstpSvc - ok
15:35:25.0812 0x0f48 [ 54946449A0EB74915A4BB34F7EE51A5A,
66B0FCFDC9FCC5050DC26518810E57ECF3B90EF248 ] ss_bus
\DRIVERS\ss_bus.sys
15:35:25.0822 0x0f48 ss_bus - ok
15:35:25.0832 0x0f48 [ 4450BC0B2E9D7D9B90E3C3DE4EA00A78,
1329EDD3D5BAD9ED5D24ECC49FBC263B4DFE6760AB ] ss_mdfl
\DRIVERS\ss_mdfl.sys
15:35:25.0842 0x0f48 ss_mdfl - ok
15:35:25.0852 0x0f48 [ 30B8D0DD01EAD1243F329CAF7D7D1517,
03ED396C1718BF5EB996CB050989051532D0D79C71 ] ss_mdm
\DRIVERS\ss_mdm.sys
15:35:25.0862 0x0f48 ss_mdm - ok
15:35:25.0872 0x0f48 [ DB32D325C192B801DF274BFD12A7E72B,
6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor
\DRIVERS\stexstor.sys
15:35:25.0882 0x0f48 stexstor - ok
15:35:25.0912 0x0f48 [ E1FB3706030FB4578A0D72C2FC3689E4,
3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc
\wiaservc.dll
15:35:25.0942 0x0f48 StiSvc - ok
15:35:25.0972 0x0f48 [ 472AF0311073DCECEAA8FA18BA2BDF89,
1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt
\drivers\vmstorfl.sys
15:35:25.0982 0x0f48 storflt - ok
15:35:25.0992 0x0f48 [ 0BF669F0A910BEDA4A32258D363AF2A5,
AA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc
\storsvc.dll
15:35:26.0012 0x0f48 StorSvc - ok
15:35:26.0032 0x0f48 [ DCAFFD62259E0BDB433DD67B5BB37619,
22B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc
\drivers\storvsc.sys
15:35:26.0032 0x0f48 storvsc - ok
15:35:26.0042 0x0f48 [ E58C78A848ADD9610A4DB6D214AF5224,
DA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum
\drivers\swenum.sys

59D015DD86EA35AC8F667C
C:\Windows\system32
BAE3E7726F075340B8CC7B
C:\Windows\system32
0A37081D95A56861C3E485
C:\Windows\system32
9CB7BE4E4A7B145D97BA0C
C:\Windows\system32
F38BAD90EC791368C37C21
C:\Windows\System32
D74355E6FF215AA8CE53BC
C:\Windows\system32
4C9EFC564520FD5E082A80
C:\Windows\system32
4AE89D25F4D3B061D8CBD3
C:\Windows\system32
A4BC52064E3C6140175BF4
C:\Windows\system32
F089DBA719E22BC269720A
C:\Windows\system32
A62EC9AA4514CAF2A10C0A
C:\Windows\System32
089414057EB2047E42C96C
C:\Windows\system32
83EEBACDE4F69A2866B69C
C:\Windows\system32
CBD12FF9BBF33D18B0F3D3
C:\Windows\system32
1575A90EB22A4FB066459B
C:\Windows\system32

15:35:26.0052 0x0f48 swenum - ok


15:35:26.0072 0x0f48 [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128
473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv
C:\Windows\System32
\swprv.dll
15:35:26.0112 0x0f48 swprv - ok
15:35:26.0152 0x0f48 [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B35
04E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain
C:\Windows\system32
\sysmain.dll
15:35:26.0192 0x0f48 SysMain - ok
15:35:26.0222 0x0f48 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F41
21C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\Syste
m32\TabSvc.dll
15:35:26.0252 0x0f48 TabletInputService - ok
15:35:26.0282 0x0f48 [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452
627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv
C:\Windows\System32
\tapisrv.dll
15:35:26.0302 0x0f48 TapiSrv - ok
15:35:26.0322 0x0f48 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E49
2A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS
C:\Windows\System32
\tbssvc.dll
15:35:26.0342 0x0f48 TBS - ok
15:35:26.0402 0x0f48 [ 7FA2E0F8B072BD04B77B421480B6CC22, ACBFDE907D4AC54A82622F
F5C68598F5C425E63241F938BC5A5C2E4C77F17643 ] Tcpip
C:\Windows\system32
\drivers\tcpip.sys
15:35:26.0432 0x0f48 Tcpip - ok
15:35:26.0472 0x0f48 [ 7FA2E0F8B072BD04B77B421480B6CC22, ACBFDE907D4AC54A82622F
F5C68598F5C425E63241F938BC5A5C2E4C77F17643 ] TCPIP6
C:\Windows\system32
\DRIVERS\tcpip.sys
15:35:26.0502 0x0f48 TCPIP6 - ok
15:35:26.0532 0x0f48 [ CCA24162E055C3714CE5A88B100C64ED, 9B7712E793B9478BA7A1EF
71EA9CC03CCB9C4004C54EAA911F158958519EDCD9 ] tcpipreg
C:\Windows\system32
\drivers\tcpipreg.sys
15:35:26.0572 0x0f48 tcpipreg - ok
15:35:26.0592 0x0f48 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A
7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE
C:\Windows\system32
\drivers\tdpipe.sys
15:35:26.0622 0x0f48 TDPIPE - ok
15:35:26.0622 0x0f48 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C
3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP
C:\Windows\system32
\drivers\tdtcp.sys
15:35:26.0642 0x0f48 TDTCP - ok
15:35:26.0672 0x0f48 [ B459575348C20E8121D6039DA063C704, 1B4328A9EA39FF5A57F258
E02254D04B73455F1DF7C997C13702A8B2F12D0347 ] tdx
C:\Windows\system32
\DRIVERS\tdx.sys
15:35:26.0692 0x0f48 tdx - ok
15:35:26.0802 0x0f48 [ 5E53CF8AD0FD33B35000C113656AB37B, D274DABC4DB03AC5B915F5
111FF1218F4F2F9EC93B4A64E426BB7AD27A16C7A1 ] TeamViewer7
C:\Program Files\Te
amViewer\Version7\TeamViewer_Service.exe
15:35:26.0852 0x0f48 TeamViewer7 - ok
15:35:26.0892 0x0f48 [ 9101FFFCFCCD1A30E870A5B8A9091B10, 58AAB0F6FF78FD0ECDD8D9
DA1B6852E9E57E3DAA39489ABDDBA106ECE0B3BCA7 ] teamviewervpn C:\Windows\system32
\DRIVERS\teamviewervpn.sys
15:35:26.0912 0x0f48 teamviewervpn - ok
15:35:26.0922 0x0f48 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5
024D738191F858FC734ED040697872D906351EF663 ] TermDD
C:\Windows\system32
\drivers\termdd.sys
15:35:26.0932 0x0f48 TermDD - ok
15:35:26.0982 0x0f48 [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0
069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService
C:\Windows\System32
\termsrv.dll

15:35:27.0042 0x0f48 TermService - ok


15:35:27.0062 0x0f48 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED4
90B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes
C:\Windows\system32
\themeservice.dll
15:35:27.0092 0x0f48 Themes - ok
15:35:27.0112 0x0f48 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F39
9413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER
C:\Windows\system32
\mmcss.dll
15:35:27.0132 0x0f48 THREADORDER - ok
15:35:27.0152 0x0f48 [ 5AD05191DC8B444A7BA4D79B76C42A30, 6166E939A5A240388EBA5A
F7FF335DC413F2BBCF74C2E1D310F4BE2A5454A610 ] TPM
C:\Windows\system32
\drivers\tpm.sys
15:35:27.0182 0x0f48 TPM - ok
15:35:27.0202 0x0f48 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001
DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks
C:\Windows\System32
\trkwks.dll
15:35:27.0232 0x0f48 TrkWks - ok
15:35:27.0292 0x0f48 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1
D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servici
ng\TrustedInstaller.exe
15:35:27.0342 0x0f48 TrustedInstaller - ok
15:35:27.0362 0x0f48 [ 254BB140EEE3C59D6114C1A86B636877, EE09D62E90407A40278F21
36F640DAB16A4E2BF57D4FB6E05F92CA9CC9CF57C0 ] tssecsrv
C:\Windows\system32
\DRIVERS\tssecsrv.sys
15:35:27.0392 0x0f48 tssecsrv - ok
15:35:27.0422 0x0f48 [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348
D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt
C:\Windows\system32
\drivers\tsusbflt.sys
15:35:27.0452 0x0f48 TsUsbFlt - ok
15:35:27.0502 0x0f48 [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94
C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel
C:\Windows\system32
\DRIVERS\tunnel.sys
15:35:27.0552 0x0f48 tunnel - ok
15:35:27.0572 0x0f48 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34
336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35
C:\Windows\system32
\DRIVERS\uagp35.sys
15:35:27.0582 0x0f48 uagp35 - ok
15:35:27.0592 0x0f48 [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0
A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs
C:\Windows\system32
\DRIVERS\udfs.sys
15:35:27.0622 0x0f48 udfs - ok
15:35:27.0722 0x0f48 [ 41D9F5AD3BAAF7FA3F10F609BCBD7343, 94286105911C2D859B68E5
FBA992E27712A60C190647B269A9C7178BC5006AE4 ] UDisk Monitor C:\Program Files\Sm
artfren Connex AC682 UI\bin\MonServiceUDisk.exe
15:35:27.0742 0x0f48 UDisk Monitor - detected UnsignedFile.Multi.Generic ( 1 )
15:35:30.0862 0x0f48 Detect skipped due to KSN trusted
15:35:30.0862 0x0f48 UDisk Monitor - ok
15:35:30.0882 0x0f48 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59
BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect
C:\Windows\system32
\UI0Detect.exe
15:35:30.0912 0x0f48 UI0Detect - ok
15:35:30.0932 0x0f48 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92C
A9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx
C:\Windows\system32
\drivers\uliagpkx.sys
15:35:30.0952 0x0f48 uliagpkx - ok
15:35:30.0972 0x0f48 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7
A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus
C:\Windows\system32
\drivers\umbus.sys
15:35:30.0992 0x0f48 umbus - ok
15:35:31.0012 0x0f48 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF

6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass
C:\Windows\system32
\DRIVERS\umpass.sys
15:35:31.0042 0x0f48 UmPass - ok
15:35:31.0072 0x0f48 [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE
4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService
C:\Windows\System32
\umrdp.dll
15:35:31.0112 0x0f48 UmRdpService - ok
15:35:31.0132 0x0f48 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C2
29771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost
C:\Windows\System32
\upnphost.dll
15:35:31.0182 0x0f48 upnphost - ok
15:35:31.0212 0x0f48 [ AF9388E736AF0C325067F05EDC350010, 7B0250F2DE3E7F86BDD9C7
26DB80A89305F0F592D423548AE6A42E39124E647E ] usbbus
C:\Windows\system32
\DRIVERS\lgusbbus.sys
15:35:31.0232 0x0f48 usbbus - ok
15:35:31.0252 0x0f48 [ BD9C55D7023C5DE374507ACC7A14E2AC, 1DBAFF733DE5C1A6A2374B
15BD94512A22D9C0F4DF91F997801340828333AF3C ] usbccgp
C:\Windows\system32
\DRIVERS\usbccgp.sys
15:35:31.0282 0x0f48 usbccgp - ok
15:35:31.0302 0x0f48 [ 04EC7CEC62EC3B6D9354EEE93327FC82, 6CB41D8644618A5F701F6C
A91FB65BB94AA83EA48992133B5262DC539B334B2E ] usbcir
C:\Windows\system32
\drivers\usbcir.sys
15:35:31.0322 0x0f48 usbcir - ok
15:35:31.0332 0x0f48 [ AE30EA96E60E823C7B525DA356283AE8, 76AE31EB21ECEAB8162A8E
55DB8A41A1599D257753890123E2E4294152682A43 ] UsbDiag
C:\Windows\system32
\DRIVERS\lgusbdiag.sys
15:35:31.0352 0x0f48 UsbDiag - ok
15:35:31.0372 0x0f48 [ F92DE757E4B7CE9C07C5E65423F3AE3B, B3FDEE4A8F1C7EC12405D9
9ACABC3E633FA4ED08D2A2AA871526ED7927A35A91 ] usbehci
C:\Windows\system32
\drivers\usbehci.sys
15:35:31.0392 0x0f48 usbehci - ok
15:35:31.0422 0x0f48 [ 8DC94AEC6A7E644A06135AE7506DC2E9, 3ACB621D57BC8691DBBCDE
F27563AA6390370362F21AFA6E7BA35BC429E14590 ] usbhub
C:\Windows\system32
\DRIVERS\usbhub.sys
15:35:31.0452 0x0f48 usbhub - ok
15:35:31.0472 0x0f48 [ 46AC66DF3D6EFE81F69BEA823A53AAB5, 41EA067F1BA5F5041CC5D6
64867DA439115B1B244DC822981BACE4AD9CBBF3C8 ] USBModem
C:\Windows\system32
\DRIVERS\lgusbmodem.sys
15:35:31.0492 0x0f48 USBModem - ok
15:35:31.0522 0x0f48 [ 7D05B21E15F3278B2AA9AC58409764AC, 38153A0D9567CF0922C73B
F6B3F8FBECECAE1359B4B8272A33BEB6779A8D400B ] UsbModemDriver C:\Windows\system32
\DRIVERS\USB_MODEM_T.sys
15:35:31.0562 0x0f48 UsbModemDriver - ok
15:35:31.0582 0x0f48 [ E185D44FAC515A18D9DEDDC23C2CDF44, EF69D0253CC8F1D29929FD
5E74F18737ECF5D238874B6E1505E2EAEE66D9D987 ] usbohci
C:\Windows\system32
\drivers\usbohci.sys
15:35:31.0612 0x0f48 usbohci - ok
15:35:31.0622 0x0f48 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6
032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint
C:\Windows\system32
\DRIVERS\usbprint.sys
15:35:31.0642 0x0f48 usbprint - ok
15:35:31.0662 0x0f48 [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F8346
22D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR
C:\Windows\system32
\DRIVERS\USBSTOR.SYS
15:35:31.0702 0x0f48 USBSTOR - ok
15:35:31.0722 0x0f48 [ 68DF884CF41CDADA664BEB01DAF67E3D, 142781FE2FF93B269D8FA1
1D4C3F60967552A867E94533D94EF1C2D777A67872 ] usbuhci
C:\Windows\system32
\drivers\usbuhci.sys
15:35:31.0732 0x0f48 usbuhci - ok
15:35:31.0782 0x0f48 [ 6A8E8DFF9309F02F9C6EE4293262F3C3, 524591443A08D8923990BD

D6840635BDA15B7F69267CD1A93C0D47A58F06633D ] USB_BusEnum_T C:\Windows\system32


\DRIVERS\USB_BusEnum_T.sys
15:35:31.0812 0x0f48 USB_BusEnum_T - ok
15:35:31.0852 0x0f48 [ B3E1ADDF9EBACDF37F398FADB0378BE6, 809FF76F38E0BDE03C89F7
7EEEE42FF681B7C41DD2B1FD75F3B2E45117158B2E ] USB_ETS_T
C:\Windows\system32
\DRIVERS\USB_ETS_T.sys
15:35:31.0902 0x0f48 USB_ETS_T - ok
15:35:31.0922 0x0f48 [ 305CF68E9E4EC875B73879F85557F667, F462C3C303F36041D1378F
5296B90CBB11DAEE08CE6CAD610EE0D7F1876BEB26 ] USB_WinMux_T
C:\Windows\system32
\DRIVERS\USB_WinMux_T.sys
15:35:31.0962 0x0f48 USB_WinMux_T - ok
15:35:31.0992 0x0f48 [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D
76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms
C:\Windows\System32
\uxsms.dll
15:35:32.0032 0x0f48 UxSms - ok
15:35:32.0032 0x0f48 [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] VaultSvc
C:\Windows\system32
\lsass.exe
15:35:32.0042 0x0f48 VaultSvc - ok
15:35:32.0082 0x0f48 [ 1BB1E3F1BA9384FE72AF7E3CB663E419, 0BB7B73DD5E77B8669C7EA
A927C7B4E63CE11EF12FBBDEE92B680F5C092D1EF7 ] VBoxDrv
C:\Windows\system32
\DRIVERS\VBoxDrv.sys
15:35:32.0092 0x0f48 VBoxDrv - ok
15:35:32.0112 0x0f48 [ 696A6F7146BC1E45945B3EE2E3BA72D3, 8109B6789330208A585464
E51FB321F59A4BAD3A751E519E5A053B77DD99DAA0 ] VBoxNetAdp
C:\Windows\system32
\DRIVERS\VBoxNetAdp.sys
15:35:32.0122 0x0f48 VBoxNetAdp - ok
15:35:32.0152 0x0f48 [ BB0D1AE9A0EF2441FDC4E6378DA558E8, 587063FAF6A74856B71E9D
7C6591490A3D228AA420394E18EE503A4ED34B90E9 ] VBoxNetFlt
C:\Windows\system32
\DRIVERS\VBoxNetFlt.sys
15:35:32.0162 0x0f48 VBoxNetFlt - ok
15:35:32.0192 0x0f48 [ CB9C840A7BE244F421E9B0438E9CD78E, 52DED9963E5F5AABC47367
86FAB5D8C676ED0D01530A4E3E425C4188B2965ECA ] VBoxUSBMon
C:\Windows\system32
\DRIVERS\VBoxUSBMon.sys
15:35:32.0192 0x0f48 VBoxUSBMon - ok
15:35:32.0222 0x0f48 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFE
F9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot
C:\Windows\system32
\drivers\vdrvroot.sys
15:35:32.0222 0x0f48 vdrvroot - ok
15:35:32.0252 0x0f48 [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14
B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds
C:\Windows\System32
\vds.exe
15:35:32.0292 0x0f48 vds - ok
15:35:32.0312 0x0f48 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE
641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga
C:\Windows\system32
\DRIVERS\vgapnp.sys
15:35:32.0332 0x0f48 vga - ok
15:35:32.0342 0x0f48 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F
006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave
C:\Windows\System32
\drivers\vga.sys
15:35:32.0362 0x0f48 VgaSave - ok
15:35:32.0392 0x0f48 [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4
EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp
C:\Windows\system32
\drivers\vhdmp.sys
15:35:32.0412 0x0f48 vhdmp - ok
15:35:32.0432 0x0f48 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD
7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp
C:\Windows\system32
\drivers\viaagp.sys
15:35:32.0442 0x0f48 viaagp - ok
15:35:32.0452 0x0f48 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69

F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7
C:\Windows\system32
\DRIVERS\viac7.sys
15:35:32.0462 0x0f48 ViaC7 - ok
15:35:32.0482 0x0f48 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFE
D70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide
C:\Windows\system32
\drivers\viaide.sys
15:35:32.0492 0x0f48 viaide - ok
15:35:32.0622 0x0f48 [ B5BA71EADEED0773D2E0978F962E1BF3, 5A0A4A44281EEC31EF01A0
1CC962CEDCE15569452C64BA71B020A6417CF8F6CA ] Visual Studio Analyzer RPC bridge C
:\Program Files\Microsoft Visual Studio\Common\Tools\VS-Ent98\Vanalyzr\varpc.exe
15:35:32.0652 0x0f48 Visual Studio Analyzer RPC bridge - detected UnsignedFile.
Multi.Generic ( 1 )
15:35:35.0812 0x0f48 Detect skipped due to KSN trusted
15:35:35.0812 0x0f48 Visual Studio Analyzer RPC bridge - ok
15:35:35.0842 0x0f48 [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018A
A3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus
C:\Windows\system32
\drivers\vmbus.sys
15:35:35.0862 0x0f48 vmbus - ok
15:35:35.0882 0x0f48 [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A5
94C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID
C:\Windows\system32
\drivers\VMBusHID.sys
15:35:35.0892 0x0f48 VMBusHID - ok
15:35:35.0902 0x0f48 [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E3
32A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr
C:\Windows\system32
\drivers\volmgr.sys
15:35:35.0912 0x0f48 volmgr - ok
15:35:35.0942 0x0f48 [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B
6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx
C:\Windows\system32
\drivers\volmgrx.sys
15:35:35.0962 0x0f48 volmgrx - ok
15:35:35.0982 0x0f48 [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA313
43BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap
C:\Windows\system32
\drivers\volsnap.sys
15:35:35.0992 0x0f48 volsnap - ok
15:35:36.0022 0x0f48 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A31
5FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid
C:\Windows\system32
\DRIVERS\vsmraid.sys
15:35:36.0032 0x0f48 vsmraid - ok
15:35:36.0082 0x0f48 [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F
8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS
C:\Windows\system32
\vssvc.exe
15:35:36.0132 0x0f48 VSS - ok
15:35:36.0142 0x0f48 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB5
23DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus
C:\Windows\System32
\drivers\vwifibus.sys
15:35:36.0162 0x0f48 vwifibus - ok
15:35:36.0192 0x0f48 [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092
C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time
C:\Windows\system32
\w32time.dll
15:35:36.0222 0x0f48 W32Time - ok
15:35:36.0232 0x0f48 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5
412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen
C:\Windows\system32
\DRIVERS\wacompen.sys
15:35:36.0252 0x0f48 WacomPen - ok
15:35:36.0292 0x0f48 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A
3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP
C:\Windows\system32
\DRIVERS\wanarp.sys
15:35:36.0322 0x0f48 WANARP - ok
15:35:36.0332 0x0f48 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A
3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6
C:\Windows\system32

\DRIVERS\wanarp.sys
15:35:36.0362 0x0f48 Wanarpv6 - ok
15:35:36.0422 0x0f48 [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10B
F27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc
C:\Windows\system32
\Wat\WatAdminSvc.exe
15:35:36.0452 0x0f48 WatAdminSvc - ok
15:35:36.0512 0x0f48 [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA2
21F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine
C:\Windows\system32
\wbengine.exe
15:35:36.0572 0x0f48 wbengine - ok
15:35:36.0592 0x0f48 [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E86
2DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc
C:\Windows\System32
\wbiosrvc.dll
15:35:36.0612 0x0f48 WbioSrvc - ok
15:35:36.0632 0x0f48 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F8
6C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc
C:\Windows\System32
\wcncsvc.dll
15:35:36.0652 0x0f48 wcncsvc - ok
15:35:36.0662 0x0f48 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710D
A81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System3
2\WcsPlugInService.dll
15:35:36.0682 0x0f48 WcsPlugInService - ok
15:35:36.0702 0x0f48 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E69
45FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd
C:\Windows\system32
\DRIVERS\wd.sys
15:35:36.0712 0x0f48 Wd - ok
15:35:36.0722 0x0f48 [ 9950E3D0F08141C7E89E64456AE7DC73, DE4B96812B305A63F5874B
BF2DC40354FB45B3D96C1D33436E677099760BA448 ] Wdf01000
C:\Windows\system32
\drivers\Wdf01000.sys
15:35:36.0732 0x0f48 Wdf01000 - ok
15:35:36.0742 0x0f48 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF
6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost C:\Windows\system32
\wdi.dll
15:35:36.0772 0x0f48 WdiServiceHost - ok
15:35:36.0772 0x0f48 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF
6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost C:\Windows\system32
\wdi.dll
15:35:36.0792 0x0f48 WdiSystemHost - ok
15:35:36.0812 0x0f48 [ A9D880F97530D5B8FEE278923349929D, 6A293E2DB9B7C434EA8B4C
D4861E11905D46BD60E014AE27B74DC8C4B2DDF834 ] WebClient
C:\Windows\System32
\webclnt.dll
15:35:36.0842 0x0f48 WebClient - ok
15:35:36.0862 0x0f48 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F1
6B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc
C:\Windows\system32
\wecsvc.dll
15:35:36.0882 0x0f48 Wecsvc - ok
15:35:36.0892 0x0f48 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0
DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32
\wercplsupport.dll
15:35:36.0932 0x0f48 wercplsupport - ok
15:35:36.0952 0x0f48 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76D
A6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc
C:\Windows\System32
\WerSvc.dll
15:35:36.0982 0x0f48 WerSvc - ok
15:35:36.0992 0x0f48 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377
A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf
C:\Windows\system32
\DRIVERS\wfplwf.sys
15:35:37.0012 0x0f48 WfpLwf - ok
15:35:37.0032 0x0f48 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810
D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount
C:\Windows\system32

\drivers\wimmount.sys
15:35:37.0032 0x0f48 WIMMount - ok
15:35:37.0092 0x0f48 [ 3FAE8F94296001C32EAB62CD7D82E0FD, 180FAECC426CF8F46700C8
55022E5865D528B1A20686F96D11080AB2FE2E0430 ] WinDefend
C:\Program Files\Wi
ndows Defender\mpsvc.dll
15:35:37.0132 0x0f48 WinDefend - ok
15:35:37.0142 0x0f48 WinHttpAutoProxySvc - ok
15:35:37.0182 0x0f48 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320C
FBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt
C:\Windows\system32
\wbem\WMIsvc.dll
15:35:37.0212 0x0f48 Winmgmt - ok
15:35:37.0282 0x0f48 [ 1B91CD34EA3A90AB6A4EF0550174F4CC, 5B6618615EBFBA594C945A
D35F5C68DA8C6053892B6D12D626BB6120910D80DC ] WinRM
C:\Windows\system32
\WsmSvc.dll
15:35:37.0322 0x0f48 WinRM - ok
15:35:37.0362 0x0f48 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C4
3ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUSB
C:\Windows\system32
\DRIVERS\WinUSB.sys
15:35:37.0382 0x0f48 WinUSB - ok
15:35:37.0412 0x0f48 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0
E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc
C:\Windows\System32
\wlansvc.dll
15:35:37.0442 0x0f48 Wlansvc - ok
15:35:37.0472 0x0f48 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD
0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi
C:\Windows\system32
\drivers\wmiacpi.sys
15:35:37.0492 0x0f48 WmiAcpi - ok
15:35:37.0522 0x0f48 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062AD
BB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv
C:\Windows\system32
\wbem\WmiApSrv.exe
15:35:37.0552 0x0f48 wmiApSrv - ok
15:35:37.0652 0x0f48 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF
5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Wi
ndows Media Player\wmpnetwk.exe
15:35:37.0702 0x0f48 WMPNetworkSvc - ok
15:35:37.0712 0x0f48 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC44
9D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc
C:\Windows\System32
\wpcsvc.dll
15:35:37.0742 0x0f48 WPCSvc - ok
15:35:37.0772 0x0f48 [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C189
1750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum
C:\Windows\system32
\wpdbusenum.dll
15:35:37.0812 0x0f48 WPDBusEnum - ok
15:35:37.0832 0x0f48 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BC
EF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl
C:\Windows\system32
\drivers\ws2ifsl.sys
15:35:37.0852 0x0f48 ws2ifsl - ok
15:35:37.0862 0x0f48 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8
863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc
C:\Windows\System32
\wscsvc.dll
15:35:37.0892 0x0f48 wscsvc - ok
15:35:37.0892 0x0f48 WSearch - ok
15:35:37.0982 0x0f48 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D14
8979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv
C:\Windows\system32
\wuaueng.dll
15:35:38.0022 0x0f48 wuauserv - ok
15:35:38.0042 0x0f48 [ E714A1C0354636837E20CCBF00888EE7, 0E31F0DB0AA318E3B0DACD
26C0D3B11519B42F2A996AE580BE67FA8B3C42C436 ] WudfPf
C:\Windows\system32
\drivers\WudfPf.sys
15:35:38.0072 0x0f48 WudfPf - ok

15:35:38.0112 0x0f48 [ 1023EE888C9B47178C5293ED5336AB69, 62221C80C3F719A5852662


47482A64F7CB2F5EF69AFA8FA07D563CA2B0A37561 ] WUDFRd
C:\Windows\system32
\DRIVERS\WUDFRd.sys
15:35:38.0152 0x0f48 WUDFRd - ok
15:35:38.0182 0x0f48 [ 8D1E1E529A2C9E9B6A85B55A345F7629, 64B637CFE2AF58A4F7CE6D
8C3D603F8EFD527500F7137E0A37840313C712CA93 ] wudfsvc
C:\Windows\System32
\WUDFSvc.dll
15:35:38.0232 0x0f48 wudfsvc - ok
15:35:38.0252 0x0f48 [ FF2D745B560F7C71B31F30F4D49F73D2, B2FBF7E5F58E34AC64FE6C
F65800F1F07939279203BDE89375FAC92B884A4F37 ] WwanSvc
C:\Windows\System32
\wwansvc.dll
15:35:38.0272 0x0f48 WwanSvc - ok
15:35:38.0292 0x0f48 ================ Scan global =============================
==
15:35:38.0302 0x0f48 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D
0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
15:35:38.0342 0x0f48 [ 48CB4FDBCAAEAC7BCE2F5941545FF071, B10D33F21A8DD82FF908AA
6EB4134663C3A846F0EF990CA878AEE1C4B186811A ] C:\Windows\system32\winsrv.dll
15:35:38.0362 0x0f48 [ 48CB4FDBCAAEAC7BCE2F5941545FF071, B10D33F21A8DD82FF908AA
6EB4134663C3A846F0EF990CA878AEE1C4B186811A ] C:\Windows\system32\winsrv.dll
15:35:38.0392 0x0f48 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF2
7E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
15:35:38.0412 0x0f48 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328
FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
15:35:38.0422 0x0f48 [ Global ] - ok
15:35:38.0422 0x0f48 ================ Scan MBR ================================
==
15:35:38.0432 0x0f48 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
15:35:38.0662 0x0f48 \Device\Harddisk0\DR0 - ok
15:35:38.0662 0x0f48 ================ Scan VBR ================================
==
15:35:38.0672 0x0f48 [ 2A4E5B50FF9A065F02C952840E043680 ] \Device\Harddisk0\DR0
\Partition1
15:35:38.0672 0x0f48 \Device\Harddisk0\DR0\Partition1 - ok
15:35:38.0672 0x0f48 [ 84431D001DF9ECCAB9EBD64C647682A0 ] \Device\Harddisk0\DR0
\Partition2
15:35:38.0672 0x0f48 \Device\Harddisk0\DR0\Partition2 - ok
15:35:38.0682 0x0f48 [ 6B06D5A799BE2D9C42FAC56B08105D07 ] \Device\Harddisk0\DR0
\Partition3
15:35:38.0682 0x0f48 \Device\Harddisk0\DR0\Partition3 - ok
15:35:38.0682 0x0f48 [ 7DB05312170B770B36012688354FCC84 ] \Device\Harddisk0\DR0
\Partition4
15:35:38.0722 0x0f48 \Device\Harddisk0\DR0\Partition4 - ok
15:35:38.0722 0x0f48 ================ Scan generic autorun ====================
==
15:35:39.0002 0x0f48 [ 3C958582E48340E84EF268E7661BA30E, 05B82DA8C20529EA3E0968
666B2B7D8422E56213B5B287446095443E266F8440 ] C:\Program Files\Realtek\Audio\HDA\
RtHDVCpl.exe
15:35:39.0172 0x0f48 RtHDVCpl - ok
15:35:39.0332 0x0f48 [ 2E9A1A6555C20424FC6DCC3AF21F4D68, 4179D8E60540FFE7567E74
74F237EBA72887CD66D78A693A3E0CFB9B0E5388A6 ] C:\Program Files\AVAST Software\Ava
st\avastUI.exe
15:35:39.0402 0x0f48 avast - ok
15:35:39.0462 0x0f48 [ CDB517386A26AE420CB24BDB3CD88779, BAF1EEA0B69A969E0641AA
F371BAF51A130D2BAB91C6388F7F60C8904C463EE6 ] C:\Program Files\Common Files\Resea
rch In Motion\USB Drivers\RIMBBLaunchAgent.exe
15:35:39.0472 0x0f48 RIMBBLaunchAgent.exe - ok
15:35:39.0562 0x0f48 [ 7C4AE21DB35F7AF697370EC068C4943E, AA5CB7EF571687B2553B06
0D0CD71D256C73047F698E033864EB456DB9572197 ] C:\Program Files\Nero\Nero 10\Nero
BackItUp\NBAgent.exe

15:35:39.0592 0x0f48 NBAgent - ok


15:35:39.0652 0x0f48 [ A2E9FE64D1EC22F2B0BF6DB122739802, E2B6B9F60A6A7F3DBE4F2C
45E33CB3AFE1F4016AC244A39B2DEB49A6D52C176B ] C:\Program Files\BlueStacks\HD-Agen
t.exe
15:35:39.0672 0x0f48 BlueStacks Agent - ok
15:35:39.0712 0x0f48 [ 5B6E8E09BE6401A7E022F52FDFCB2FF8, 471C556CF9405BBB380A8C
EFE945C126B954B7C94F79CC72441B51F80141FC5E ] C:\Program Files\Common Files\Java\
Java Update\jusched.exe
15:35:39.0722 0x0f48 SunJavaUpdateSched - ok
15:35:39.0802 0x0f48 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1
A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Si
debar.exe
15:35:39.0852 0x0f48 Sidebar - ok
15:35:39.0872 0x0f48 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69
C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
15:35:39.0892 0x0f48 mctadmin - ok
15:35:39.0932 0x0f48 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1
A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Si
debar.exe
15:35:39.0962 0x0f48 Sidebar - ok
15:35:39.0962 0x0f48 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69
C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
15:35:39.0982 0x0f48 mctadmin - ok
15:35:40.0122 0x0f48 [ 72ABE749D8E413D0FDA442F24785BA71, DB1DC3432A06EB91433BAE
5018673A46F27B836B54D13F299F80E41195D4D74F ] C:\Program Files\Internet Download
Manager\IDMan.exe
15:35:40.0222 0x0f48 IDMan - detected UnsignedFile.Multi.Generic ( 1 )
15:35:42.0902 0x0f48 Detect skipped due to KSN trusted
15:35:42.0902 0x0f48 IDMan - ok
15:35:42.0992 0x0f48 [ A91F22603C71D37310B828969C6FCD66, 675B0AB51ACF36E4B8E750
2E2F756780F7862038005FF61B657A8FDF3EA0E3E6 ] C:\Windows\system32\Macromed\Flash\
FlashUtil32_13_0_0_214_Plugin.exe
15:35:43.0022 0x0f48 FlashPlayerUpdate - ok
15:35:43.0022 0x0f48 Waiting for KSN requests completion. In queue: 55
15:35:44.0022 0x0f48 Waiting for KSN requests completion. In queue: 55
15:35:45.0022 0x0f48 Waiting for KSN requests completion. In queue: 55
15:35:46.0042 0x0f48 AV detected via SS2: avast! Antivirus, C:\Program Files\AV
AST Software\Avast\VisthAux.exe ( 5.0.121.0 ), 0x41000 ( enabled : updated )
15:35:46.0042 0x0f48 Win FW state via NFP2: disabled
15:35:48.0892 0x0f48 ==========================================================
==
15:35:48.0892 0x0f48 Scan finished
15:35:48.0892 0x0f48 ==========================================================
==
15:35:48.0892 0x080c Detected object count: 0
15:35:48.0892 0x080c Actual detected object count: 0
15:35:53.0572 0x1044 Deinitialize success

Vous aimerez peut-être aussi