Vous êtes sur la page 1sur 30

09:44:56.0415 0x0ec0 TDSS rootkit removing tool 3.1.0.

11 Aug 5 2016 12:13:31


09:45:06.0617 0x0ec0 ==========================================================
==
09:45:06.0617 0x0ec0 Current date / time: 2016/09/15 09:45:06.0617
09:45:06.0617 0x0ec0 SystemInfo:
09:45:06.0617 0x0ec0
09:45:06.0617 0x0ec0 OS Version: 6.1.7600 ServicePack: 0.0
09:45:06.0617 0x0ec0 Product type: Workstation
09:45:06.0617 0x0ec0 ComputerName: AKFARKOM4
09:45:06.0618 0x0ec0 UserName: User
09:45:06.0618 0x0ec0 Windows directory: C:\Windows
09:45:06.0618 0x0ec0 System windows directory: C:\Windows
09:45:06.0618 0x0ec0 Processor architecture: Intel x86
09:45:06.0618 0x0ec0 Number of processors: 2
09:45:06.0618 0x0ec0 Page size: 0x1000
09:45:06.0618 0x0ec0 Boot type: Normal boot
09:45:06.0618 0x0ec0 CodeIntegrityOptions = 0x00000000
09:45:06.0618 0x0ec0 ==========================================================
==
09:45:07.0636 0x0ec0 KLMD registered as C:\Windows\system32\drivers\76357090.sy
s
09:45:07.0636 0x0ec0 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7
600.16385, osProperties = 0x0
09:45:07.0854 0x0ec0 System UUID: {0D6C2B8C-FE21-62C2-A4E5-EF21303A975E}
09:45:08.0252 0x0ec0 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76
Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCyli
nder: 0xFF, Type 'K0', Flags 0x00000050
09:45:08.0277 0x0ec0 ==========================================================
==
09:45:08.0277 0x0ec0 \Device\Harddisk0\DR0:
09:45:08.0283 0x0ec0 MBR partitions:
09:45:08.0283 0x0ec0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA
0x800, BlocksNum 0x32000
09:45:08.0283 0x0ec0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA
0x32800, BlocksNum 0xEA2E000
09:45:08.0283 0x0ec0 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA
0xEA60800, BlocksNum 0x2B925000
09:45:08.0283 0x0ec0 ==========================================================
==
09:45:08.0314 0x0ec0 C: <-> \Device\Harddisk0\DR0\Partition2
09:45:08.0369 0x0ec0 D: <-> \Device\Harddisk0\DR0\Partition3
09:45:08.0385 0x0ec0 ==========================================================
==
09:45:08.0385 0x0ec0 Initialize success
09:45:08.0385 0x0ec0 ==========================================================
==
09:45:10.0323 0x09e8 ==========================================================
==
09:45:10.0323 0x09e8 Scan started
09:45:10.0323 0x09e8 Mode: Manual;
09:45:10.0323 0x09e8 ==========================================================
==
09:45:10.0323 0x09e8 KSN ping started
09:45:13.0097 0x09e8 KSN ping finished: true
09:45:14.0385 0x09e8 ================ Scan system memory ======================
==
09:45:14.0385 0x09e8 System memory - ok
09:45:14.0385 0x09e8 ================ Scan services ===========================
==
09:45:14.0808 0x09e8 [ 6D2ACA41739BFE8CB86EE8E85F29697D, 74A4F53C8309A8E5E94CDE

4D440DD5308566185E6D8D98FD08E70A25BD728C91 ] 1394ohci
C:\Windows\system32
\DRIVERS\1394ohci.sys
09:45:14.0815 0x09e8 1394ohci - ok
09:45:14.0846 0x09e8 [ F0E07D144C8685B8774BC32FC8DA4DF0, 39816ED2623CA9ABE2B2ED
CDB2F8481634742F00FEEF7E324F34D2BAAD668A67 ] ACPI
C:\Windows\system32
\DRIVERS\ACPI.sys
09:45:14.0853 0x09e8 ACPI - ok
09:45:14.0859 0x09e8 [ 98D81CA942D19F7D9153B095162AC013, ACE5C073323176621F3312
AA9B1EE1A3382F8CDD590D90DC57B34035FD6BC281 ] AcpiPmi
C:\Windows\system32
\DRIVERS\acpipmi.sys
09:45:14.0861 0x09e8 AcpiPmi - ok
09:45:14.0937 0x09e8 [ A0CAC4F3F998173A8DC1E67E7E0345EF, D0C2F504A5059691EDBBA9
17D0C6260450A554A365C12E7747E48EE1668C51A5 ] AdobeARMservice C:\Program Files\Co
mmon Files\Adobe\ARM\1.0\armsvc.exe
09:45:14.0943 0x09e8 AdobeARMservice - ok
09:45:14.0970 0x09e8 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF4
8485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx
C:\Windows\system32
\DRIVERS\adp94xx.sys
09:45:14.0984 0x09e8 adp94xx - ok
09:45:14.0997 0x09e8 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB4
4C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci
C:\Windows\system32
\DRIVERS\adpahci.sys
09:45:15.0007 0x09e8 adpahci - ok
09:45:15.0034 0x09e8 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376D
A9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320
C:\Windows\system32
\DRIVERS\adpu320.sys
09:45:15.0039 0x09e8 adpu320 - ok
09:45:15.0057 0x09e8 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF
79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc
C:\Windows\System32
\aelupsvc.dll
09:45:15.0059 0x09e8 AeLookupSvc - ok
09:45:15.0101 0x09e8 [ DDC040FDB01EF1712A6B13E52AFB104C, BF17E91BBB85A04F1EEF58
0CD006101332CDE5B876A0D04C6932F30707BB184F ] AFD
C:\Windows\system32
\drivers\afd.sys
09:45:15.0108 0x09e8 AFD - ok
09:45:15.0120 0x09e8 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D1
0C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440
C:\Windows\system32
\DRIVERS\agp440.sys
09:45:15.0122 0x09e8 agp440 - ok
09:45:15.0142 0x09e8 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D
81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx
C:\Windows\system32
\DRIVERS\djsvs.sys
09:45:15.0144 0x09e8 aic78xx - ok
09:45:15.0200 0x09e8 [ 2870CE9BFD6BA66FB0FFC6D11C9E41A7, DBAD074E0F168F327B1F20
69EA8BDB77FD5EC909697A42468346D4C6399838C8 ] AIPS
C:\Program Files\ne
tcut\services\AIPS.exe
09:45:15.0208 0x09e8 AIPS - ok
09:45:15.0253 0x09e8 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C
4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG
C:\Windows\System32
\alg.exe
09:45:15.0256 0x09e8 ALG - ok
09:45:15.0265 0x09e8 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7
A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide
C:\Windows\system32
\DRIVERS\aliide.sys
09:45:15.0266 0x09e8 aliide - ok
09:45:15.0273 0x09e8 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A31
8BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp
C:\Windows\system32
\DRIVERS\amdagp.sys
09:45:15.0275 0x09e8 amdagp - ok
09:45:15.0280 0x09e8 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10D

A36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide
\DRIVERS\amdide.sys
09:45:15.0281 0x09e8 amdide - ok
09:45:15.0297 0x09e8 [ 00DDA200D71BAC534BF56A9DB5DFD666,
3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8
\DRIVERS\amdk8.sys
09:45:15.0299 0x09e8 AmdK8 - ok
09:45:15.0304 0x09e8 [ 3CBF30F5370FDA40DD3E87DF38EA53B6,
FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM
\DRIVERS\amdppm.sys
09:45:15.0306 0x09e8 AmdPPM - ok
09:45:15.0324 0x09e8 [ 2101A86C25C154F8314B24EF49D7FBC2,
BFDF361C4E98A07FB13E08BFD6DB50135489700998 ] amdsata
\DRIVERS\amdsata.sys
09:45:15.0327 0x09e8 amdsata - ok
09:45:15.0333 0x09e8 [ EA43AF0C423FF267355F74E7A53BDABA,
AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs
\DRIVERS\amdsbs.sys
09:45:15.0338 0x09e8 amdsbs - ok
09:45:15.0342 0x09e8 [ B81C2B5616F6420A9941EA093A92B150,
A6674BC9DFD5C3AAE1FC46F7A91B8E917DB913F42F ] amdxata
\DRIVERS\amdxata.sys
09:45:15.0343 0x09e8 amdxata - ok
09:45:15.0351 0x09e8 [ FEB834C02CE1E84B6A38F953CA067706,
44FB02449814EDB653B204E1720DAA780A6D64FD01 ] AppID
\drivers\appid.sys
09:45:15.0353 0x09e8 AppID - ok
09:45:15.0377 0x09e8 [ 62A9C86CB6085E20DB4823E4E97826F5,
002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc
\appidsvc.dll
09:45:15.0379 0x09e8 AppIDSvc - ok
09:45:15.0411 0x09e8 [ 7DEAD9E3F65DCB2794F2711003BBF650,
878B6E51DC728873695DD137148CE531FBACCDA21B ] Appinfo
\appinfo.dll
09:45:15.0413 0x09e8 Appinfo - ok
09:45:15.0486 0x09e8 [ A45D184DF6A8803DA13A0B329517A64A,
C3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt
\appmgmts.dll
09:45:15.0492 0x09e8 AppMgmt - ok
09:45:15.0498 0x09e8 [ 2932004F49677BD84DBC72EDB754FFB3,
499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc
\DRIVERS\arc.sys
09:45:15.0501 0x09e8 arc - ok
09:45:15.0507 0x09e8 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7,
921672858C291054220BADE291044343778216F6BA ] arcsas
\DRIVERS\arcsas.sys
09:45:15.0510 0x09e8 arcsas - ok
09:45:15.0576 0x09e8 [ 776ACEFA0CA9DF0FAA51A5FB2F435705,
B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state
t.NET\Framework\v4.0.30319\aspnet_state.exe
09:45:15.0581 0x09e8 aspnet_state - ok
09:45:15.0594 0x09e8 [ ADD2ADE1C2B285AB8378D2DAAF991481,
4E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac
\DRIVERS\asyncmac.sys
09:45:15.0596 0x09e8 AsyncMac - ok
09:45:15.0603 0x09e8 [ 338C86357871C167A96AB976519BF59E,
5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi
\DRIVERS\atapi.sys
09:45:15.0605 0x09e8 atapi - ok
09:45:15.0654 0x09e8 [ 510C873BFA135AA829F4180352772734,

C:\Windows\system32
CA316B1FFD85BA1CF8664B
C:\Windows\system32
7EACF1743367BE805357B6
C:\Windows\system32
E4C1326CF55850793B45B2
C:\Windows\system32
3F1335909AB0281A2FBDD7
C:\Windows\system32
DA2000C9E06533232F8716
C:\Windows\system32
E5A7F8B632ABFBD1283C3D
C:\Windows\system32
E0F840B49710022C4FB437
C:\Windows\System32
F541C30EEFD1BDB70F361B
C:\Windows\System32
C1D16B60A6D69689AE951D
C:\Windows\System32
73F84582244AC53994A2F4
C:\Windows\system32
F7C9C3B4F2C816F57A43B2
C:\Windows\system32
72DF7ED6B085BC468994F5
C:\Windows\Microsof
7965A705F37924C0EC7A93
C:\Windows\system32
F28CC534523D1701B0552F
C:\Windows\system32
BC528D840EB338B0C5D118

01C63D8EADD40AF8043DC77ACB4B42E8D20767538F ] AudioEndpointBuilder C:\Windows\Sys


tem32\Audiosrv.dll
09:45:15.0668 0x09e8 AudioEndpointBuilder - ok
09:45:15.0680 0x09e8 [ 510C873BFA135AA829F4180352772734, BC528D840EB338B0C5D118
01C63D8EADD40AF8043DC77ACB4B42E8D20767538F ] Audiosrv
C:\Windows\System32
\Audiosrv.dll
09:45:15.0686 0x09e8 Audiosrv - ok
09:45:15.0694 0x09e8 [ DD6A431B43E34B91A767D1CE33728175, 8BFF6474C9DFBEC96FA7B2
789EF9B17C7910B52DBCF70CDA1F0C698CFA5EFB6E ] AxInstSV
C:\Windows\System32
\AxInstSV.dll
09:45:15.0697 0x09e8 AxInstSV - ok
09:45:15.0723 0x09e8 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286E
A5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv
C:\Windows\system32
\DRIVERS\bxvbdx.sys
09:45:15.0732 0x09e8 b06bdrv - ok
09:45:15.0754 0x09e8 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD5
9B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x
C:\Windows\system32
\DRIVERS\b57nd60x.sys
09:45:15.0760 0x09e8 b57nd60x - ok
09:45:15.0787 0x09e8 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BE
D6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC
C:\Windows\System32
\bdesvc.dll
09:45:15.0790 0x09e8 BDESVC - ok
09:45:15.0806 0x09e8 [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF4226
1497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep
C:\Windows\system32
\drivers\Beep.sys
09:45:15.0807 0x09e8 Beep - ok
09:45:15.0876 0x09e8 [ 85AC71C045CEB054ED48A7841AAE0C11, BA0C0CC50E5C49838116AC
9A12A7CF1A683601FD08D3CF6EC06620C51C0806FF ] BFE
C:\Windows\System32
\bfe.dll
09:45:15.0892 0x09e8 BFE - ok
09:45:15.0923 0x09e8 [ 53F476476F55A27F580661BDE09C4EC4, 90DFBF97F011CFF41D2CFA
2E33978BC746A7E693AC75EED1436130C4F10B4E67 ] BITS
C:\Windows\System32
\qmgr.dll
09:45:15.0945 0x09e8 BITS - ok
09:45:15.0957 0x09e8 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE
4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive
C:\Windows\system32
\DRIVERS\blbdrive.sys
09:45:15.0959 0x09e8 blbdrive - ok
09:45:15.0970 0x09e8 [ FCAFAEF6798D7B51FF029F99A9898961, BFB37686B1386EB883B99D
B6AC342C20514939F8B7A5CEC5D63865B3DC2B4D4F ] bowser
C:\Windows\system32
\DRIVERS\bowser.sys
09:45:15.0972 0x09e8 bowser - ok
09:45:15.0979 0x09e8 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D
54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo
C:\Windows\system32
\DRIVERS\BrFiltLo.sys
09:45:15.0980 0x09e8 BrFiltLo - ok
09:45:15.0984 0x09e8 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171
C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp
C:\Windows\system32
\DRIVERS\BrFiltUp.sys
09:45:15.0985 0x09e8 BrFiltUp - ok
09:45:16.0000 0x09e8 [ 598E1280E7FF3744F4B8329366CC5635, 9B6392AEBE7EF26253487A
F8C7C114822ABB187BA32DA8DBF622DB1B8DA6F1C0 ] Browser
C:\Windows\System32
\browser.dll
09:45:16.0003 0x09e8 Browser - ok
09:45:16.0012 0x09e8 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A
5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid
C:\Windows\System32
\Drivers\Brserid.sys
09:45:16.0019 0x09e8 Brserid - ok
09:45:16.0024 0x09e8 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9

BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm
C:\Windows\System32
\Drivers\BrSerWdm.sys
09:45:16.0026 0x09e8 BrSerWdm - ok
09:45:16.0030 0x09e8 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF20
4BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm
C:\Windows\System32
\Drivers\BrUsbMdm.sys
09:45:16.0031 0x09e8 BrUsbMdm - ok
09:45:16.0035 0x09e8 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242
A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer
C:\Windows\System32
\Drivers\BrUsbSer.sys
09:45:16.0036 0x09e8 BrUsbSer - ok
09:45:16.0040 0x09e8 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C6
35CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM
C:\Windows\system32
\DRIVERS\bthmodem.sys
09:45:16.0041 0x09e8 BTHMODEM - ok
09:45:16.0061 0x09e8 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB
52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv
C:\Windows\system32
\bthserv.dll
09:45:16.0068 0x09e8 bthserv - ok
09:45:16.0083 0x09e8 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A0258
4E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs
C:\Windows\system32
\DRIVERS\cdfs.sys
09:45:16.0085 0x09e8 cdfs - ok
09:45:16.0094 0x09e8 [ BA6E70AA0E6091BC39DE29477D866A77, A17A68BDA46995F75FB1C2
C593A81CD3B2BFE290CEAA45FA2380DDF5537A23C9 ] cdrom
C:\Windows\system32
\DRIVERS\cdrom.sys
09:45:16.0097 0x09e8 cdrom - ok
09:45:16.0136 0x09e8 [ 628A9E30EC5E18DD5DE6BE4DBDC12198, DDA43DCCB195440D6BD575
2BD00D984F45BD6D23DBE2A656C33E3CD1E5D17AD7 ] CertPropSvc
C:\Windows\System32
\certprop.dll
09:45:16.0145 0x09e8 CertPropSvc - ok
09:45:16.0154 0x09e8 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0
B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass
C:\Windows\system32
\DRIVERS\circlass.sys
09:45:16.0155 0x09e8 circlass - ok
09:45:16.0184 0x09e8 [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF
3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS
C:\Windows\system32
\CLFS.sys
09:45:16.0190 0x09e8 CLFS - ok
09:45:16.0297 0x09e8 [ C807732B83A916B5F25D76AE3229AFCD, 499533024D5492857D71C7
F5DB5A1EC09EE283CF0DCB46466AE8F4E5431FC319 ] ClickToRunSvc C:\Program Files\Co
mmon Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
09:45:16.0346 0x09e8 ClickToRunSvc - ok
09:45:16.0402 0x09e8 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6
D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\W
indows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
09:45:16.0407 0x09e8 clr_optimization_v2.0.50727_32 - ok
09:45:16.0435 0x09e8 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B
10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\W
indows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
09:45:16.0454 0x09e8 clr_optimization_v4.0.30319_32 - ok
09:45:16.0471 0x09e8 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC
59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt
C:\Windows\system32
\DRIVERS\CmBatt.sys
09:45:16.0473 0x09e8 CmBatt - ok
09:45:16.0483 0x09e8 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956
E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide
C:\Windows\system32
\DRIVERS\cmdide.sys
09:45:16.0486 0x09e8 cmdide - ok
09:45:16.0512 0x09e8 [ 1B675691ED940766149C93E8F4488D68, A55C41B2B343B1CF53D737

ED1752D0510052094FFC60FDB833279A8A52398132 ] CNG
\Drivers\cng.sys
09:45:16.0526 0x09e8 CNG - ok
09:45:16.0531 0x09e8 [ A6023D3823C37043986713F118A89BEE,
4B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt
\DRIVERS\compbatt.sys
09:45:16.0533 0x09e8 Compbatt - ok
09:45:16.0540 0x09e8 [ F1724BA27E97D627F808FB0BA77A28A6,
6AEE282D4A5DFC1A40851ED65904AA9582C5DEA5AB ] CompositeBus
\DRIVERS\CompositeBus.sys
09:45:16.0542 0x09e8 CompositeBus - ok
09:45:16.0558 0x09e8 COMSysApp - ok
09:45:16.0594 0x09e8 [ 6B1438542713B0F9668B13DCE68B4373,
4E3F33BB52BC2F8D28B2538E37E48E51FD90C0AB1D ] cphs
\IntelCpHeciSvc.exe
09:45:16.0600 0x09e8 cphs - ok
09:45:16.0612 0x09e8 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1,
F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk
\DRIVERS\crcdisk.sys
09:45:16.0613 0x09e8 crcdisk - ok
09:45:16.0686 0x09e8 [ 9C231178CE4FB385F4B54B0A9080B8A4,
116ED4BDC63FEA651459C9AD363CBEEDB769806527 ] CryptSvc
\cryptsvc.dll
09:45:16.0691 0x09e8 CryptSvc - ok
09:45:16.0739 0x09e8 [ 27C9490BDD0AE48911AB8CF1932591ED,
2598BD6FD2E60D4FACC7836CC5BA3F68C38D27CCCA ] CSC
\drivers\csc.sys
09:45:16.0760 0x09e8 CSC - ok
09:45:16.0804 0x09e8 [ 56FB5F222EA30D3D3FC459879772CB73,
C73853E06D0BD18CC8A4C73C633071FF5FE04CA0F4 ] CscService
\cscsvc.dll
09:45:16.0817 0x09e8 CscService - ok
09:45:16.0852 0x09e8 [ B82CD39E336973359D7C9BF911E8E84F,
2F8A8CDB6B34C44950B038E24FB71DCDD9823DB22A ] DcomLaunch
\rpcss.dll
09:45:16.0861 0x09e8 DcomLaunch - ok
09:45:16.0877 0x09e8 [ 8D6E10A2D9A5EED59562D9B82CF804E1,
27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc
\defragsvc.dll
09:45:16.0883 0x09e8 defragsvc - ok
09:45:16.0922 0x09e8 [ 8E09E52EE2E3CEB199EF3DD99CF9E3FB,
D796F3AFA2F9598C918017C29670BED4E3A9962EF5 ] DfsC
\Drivers\dfsc.sys
09:45:16.0925 0x09e8 DfsC - ok
09:45:16.0952 0x09e8 [ C56495FBD770712367CAD35E5DE72DA6,
51EFCABA2A10919777C4287D7298A28F543D5BAC32 ] Dhcp
\dhcpcore.dll
09:45:16.0966 0x09e8 Dhcp - ok
09:45:16.0970 0x09e8 [ 1A050B0274BFB3890703D490F330C0DA,
D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache
\drivers\discache.sys
09:45:16.0971 0x09e8 discache - ok
09:45:17.0007 0x09e8 [ 565003F326F99802E68CA78F2A68E9FF,
09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk
\DRIVERS\disk.sys
09:45:17.0009 0x09e8 Disk - ok
09:45:17.0025 0x09e8 [ D0722E963D3C6145446874241401B209,
80343139959775E749996A97684A5D423833DDB196 ] Dnscache
\dnsrslvr.dll
09:45:17.0029 0x09e8 Dnscache - ok

C:\Windows\system32
FAC239A7FA6251C7EDFFA3
C:\Windows\system32
F7D69082EEFEC0FB8B309F
C:\Windows\system32

273E4B1808FB024C3F347C
C:\Windows\system32
6FC323217D82EF661BA0E3
C:\Windows\system32
08EFAEBFF68D5CCE432D75
C:\Windows\system32
751F576F797F8A7BA576C3
C:\Windows\system32
2C4646774575858E26DBA9
C:\Windows\System32
45DB8F1E88FC25A81D2F3C
C:\Windows\system32
888F9650F4E872BA8F4E0C
C:\Windows\System32
B03D0CF11C1D0DCBB76E74
C:\Windows\system32
9D5456A2E208F542F0B6C9
C:\Windows\system32
79D74F4679A2EE040FAAF4
C:\Windows\system32
ABC42B24DBA4FFC411120E
C:\Windows\system32
542B3E6EC7E0161AB47323
C:\Windows\System32

09:45:17.0037 0x09e8 [ 4408C85C21EEA48EB0CE486BAEEF0502,


0EC89616EA0698A7548073A9211E3F75937B4384BE ] dot3svc
\dot3svc.dll
09:45:17.0043 0x09e8 dot3svc - ok
09:45:17.0050 0x09e8 [ 7FA81C6E11CAA594ADB52084DA73A1E5,
A1E5B923B104EBDC5FC9D12154DE909C583E4D0CAE ] DPS
\dps.dll
09:45:17.0053 0x09e8 DPS - ok
09:45:17.0075 0x09e8 [ B918E7C5F9BF77202F89E1A9539F2EB4,
9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud
\drivers\drmkaud.sys
09:45:17.0076 0x09e8 drmkaud - ok
09:45:17.0097 0x09e8 [ 39806CFEDDCC55E686A49BCCD2972F23,
AB9C534737F32D2D6D3EACCA78940792C553881C64 ] DXGKrnl
\drivers\dxgkrnl.sys
09:45:17.0113 0x09e8 DXGKrnl - ok
09:45:17.0140 0x09e8 [ 8600142FA91C1B96367D3300AD0F3F3A,
C79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost
\eapsvc.dll
09:45:17.0143 0x09e8 EapHost - ok
09:45:17.0237 0x09e8 [ 024E1B5CAC09731E4D868E64DBFB4AB0,
861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv
\DRIVERS\evbdx.sys
09:45:17.0326 0x09e8 ebdrv - ok
09:45:17.0349 0x09e8 [ F42309C4191C506B71DB5D1126D26318,
95D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] EFS
\lsass.exe
09:45:17.0379 0x09e8 EFS - ok
09:45:17.0489 0x09e8 [ 3A74A6E33685662B125A3269B1F2114F,
3D926E17226FF70CFDE7328F7B0B3676B9A27E2569 ] ehRecvr
Recvr.exe
09:45:17.0529 0x09e8 ehRecvr - ok
09:45:17.0547 0x09e8 [ D389BFF34F80CAEDE417BF9D1507996A,
820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched
sched.exe
09:45:17.0552 0x09e8 ehSched - ok
09:45:17.0581 0x09e8 [ 0ED67910C8C326796FAA00B2BF6D9D3C,
5E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor
\DRIVERS\elxstor.sys
09:45:17.0593 0x09e8 elxstor - ok
09:45:17.0603 0x09e8 [ 8FC3208352DD3912C94367A206AB3F11,
74B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev
\DRIVERS\errdev.sys
09:45:17.0605 0x09e8 ErrDev - ok
09:45:17.0638 0x09e8 [ F6916EFC29D9953D5D0DF06882AE8E16,
9B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem
\es.dll
09:45:17.0644 0x09e8 EventSystem - ok
09:45:17.0661 0x09e8 [ 2DC9108D74081149CC8B651D3A26207F,
1CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat
\drivers\exfat.sys
09:45:17.0665 0x09e8 exfat - ok
09:45:17.0678 0x09e8 [ 7E0AB74553476622FB6AE36F73D97D35,
EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat
\drivers\fastfat.sys
09:45:17.0682 0x09e8 fastfat - ok
09:45:17.0707 0x09e8 [ F7EA23CC5E6BF2181F3F399D54F6EFC1,
BED7B56466A674876888519D6F524F7456EBD11263 ] Fax
\fxssvc.exe
09:45:17.0717 0x09e8 Fax - ok

67EA726F4053665D94D779
C:\Windows\System32
9ED1C585D9CA091E75E4A2
C:\Windows\system32
C589A37DE50BBEF22E2DAA
C:\Windows\system32
EFD5816D3E8E7F0F8D8E52
C:\Windows\System32
5713625E27DF11FAAFDA7A
C:\Windows\System32
AB0826A74BBEE5B7A1B035
C:\Windows\system32
29B0A8889857CEBFA6CBD7
C:\Windows\System32
183E180E4B35E549B5D736
C:\Windows\ehome\eh
12859B9925D7A4631DE61A
C:\Windows\ehome\eh
97FAA7627A162B0AEC1554
C:\Windows\system32
69B65C12BDADD4B7305086
C:\Windows\system32
ED41893960018D5EC2F782
C:\Windows\system32
75CB47923A867DDAC51270
C:\Windows\system32
41463A255FDA1D550B3385
C:\Windows\system32
4659A2EDC5D5171668FB20
C:\Windows\system32

09:45:17.0722 0x09e8 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48


D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc
C:\Windows\system32
\DRIVERS\fdc.sys
09:45:17.0723 0x09e8 fdc - ok
09:45:17.0734 0x09e8 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD
4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost
C:\Windows\system32
\fdPHost.dll
09:45:17.0736 0x09e8 fdPHost - ok
09:45:17.0745 0x09e8 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB
63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub
C:\Windows\system32
\fdrespub.dll
09:45:17.0747 0x09e8 FDResPub - ok
09:45:17.0757 0x09e8 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1
C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo
C:\Windows\system32
\drivers\fileinfo.sys
09:45:17.0759 0x09e8 FileInfo - ok
09:45:17.0763 0x09e8 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FE
AAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace
C:\Windows\system32
\drivers\filetrace.sys
09:45:17.0765 0x09e8 Filetrace - ok
09:45:17.0769 0x09e8 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA
431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk
C:\Windows\system32
\DRIVERS\flpydisk.sys
09:45:17.0770 0x09e8 flpydisk - ok
09:45:17.0780 0x09e8 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F8
9E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr
C:\Windows\system32
\drivers\fltmgr.sys
09:45:17.0784 0x09e8 FltMgr - ok
09:45:17.0814 0x09e8 [ B6512A85815FDC3D560C3705F5BDB93D, A04D60BF4649DD7582C0E2
6E9CED93841D8B2729FDF6E1551F48A94AFD5A6436 ] FontCache
C:\Windows\system32
\FntCache.dll
09:45:17.0830 0x09e8 FontCache - ok
09:45:17.0882 0x09e8 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9
CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microso
ft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
09:45:17.0884 0x09e8 FontCache3.0.0.0 - ok
09:45:17.0888 0x09e8 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141F
D70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends
C:\Windows\system32
\drivers\FsDepends.sys
09:45:17.0889 0x09e8 FsDepends - ok
09:45:17.0893 0x09e8 [ A574B4360E438977038AAE4BF60D79A2, 7255CCDDDAC4853FA72E64
87408C4B7390CBA37549CE952929B2A9CF3327C616 ] Fs_Rec
C:\Windows\system32
\drivers\Fs_Rec.sys
09:45:17.0894 0x09e8 Fs_Rec - ok
09:45:17.0903 0x09e8 [ 5592F5DBA26282D24D2B080EB438A4D7, 5376D6CFFE9A1406CFA0BF
4325EB65206F57A5C50034DA7EB4238BEB08D4D6DB ] fvevol
C:\Windows\system32
\DRIVERS\fvevol.sys
09:45:17.0908 0x09e8 fvevol - ok
09:45:17.0922 0x09e8 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC33
44D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx
C:\Windows\system32
\DRIVERS\gagp30kx.sys
09:45:17.0925 0x09e8 gagp30kx - ok
09:45:17.0951 0x09e8 [ 8BA3C04702BF8F927AB36AE8313CA4EE, 3B6460C8134AA9D6E4FB97
8201B35FE9B67DD5BBB6C8D9625F3097DDA30C2893 ] gpsvc
C:\Windows\System32
\gpsvc.dll
09:45:17.0963 0x09e8 gpsvc - ok
09:45:18.0014 0x09e8 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08
E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdate
C:\Program Files\Go
ogle\Update\GoogleUpdate.exe
09:45:18.0021 0x09e8 gupdate - ok

09:45:18.0038 0x09e8 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08


E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdatem
C:\Program Files\Go
ogle\Update\GoogleUpdate.exe
09:45:18.0042 0x09e8 gupdatem - ok
09:45:18.0057 0x09e8 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421
B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir
C:\Windows\system32
\drivers\hcw85cir.sys
09:45:18.0059 0x09e8 hcw85cir - ok
09:45:18.0093 0x09e8 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F, 6706B8AD211A4B89B6571A
CD227412026EAD87D71456B3EC6E7DD8FA15B997BE ] HdAudAddService C:\Windows\system32
\drivers\HdAudio.sys
09:45:18.0103 0x09e8 HdAudAddService - ok
09:45:18.0128 0x09e8 [ 717A2207FD6F13AD3E664C7D5A43C7BF, BF28A6F00B64FA0E801493
E3289CFFD5E313E724DF7B5AB521C9E37A20890DCF ] HDAudBus
C:\Windows\system32
\DRIVERS\HDAudBus.sys
09:45:18.0132 0x09e8 HDAudBus - ok
09:45:18.0142 0x09e8 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A609
2D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt
C:\Windows\system32
\DRIVERS\HidBatt.sys
09:45:18.0144 0x09e8 HidBatt - ok
09:45:18.0150 0x09e8 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420D
B0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth
C:\Windows\system32
\DRIVERS\hidbth.sys
09:45:18.0154 0x09e8 HidBth - ok
09:45:18.0169 0x09e8 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C
438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr
C:\Windows\system32
\DRIVERS\hidir.sys
09:45:18.0171 0x09e8 HidIr - ok
09:45:18.0190 0x09e8 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29A
A5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv
C:\Windows\system32
\hidserv.dll
09:45:18.0193 0x09e8 hidserv - ok
09:45:18.0200 0x09e8 [ 25072FB35AC90B25F9E4E3BACF774102, EBCE089947CC5A251A517C
B91E81FCB948B18405FBACA04C874D4A48AF88676D ] HidUsb
C:\Windows\system32
\DRIVERS\hidusb.sys
09:45:18.0202 0x09e8 HidUsb - ok
09:45:18.0217 0x09e8 [ 741C2A45CA8407E374AABA3E330B7872, FCF31C46297CFDF8240F0E
783A61C8463FEDB1EF7A676AB89DFF0EAE9F3534B4 ] hkmsvc
C:\Windows\system32
\kmsvc.dll
09:45:18.0220 0x09e8 hkmsvc - ok
09:45:18.0231 0x09e8 [ A768CA158BB06782A2835B907F4873C3, EFF736C6BA38FB8FC88072
86AB273E7274F505E8E59D952E8563DF77C412C5AE ] HomeGroupListener C:\Windows\system
32\ListSvc.dll
09:45:18.0235 0x09e8 HomeGroupListener - ok
09:45:18.0258 0x09e8 [ FB08DEC5EF43D0C66D83B8E9694E7549, 9C9ECE9E90F524791FC5DC
E797BAE39605F966592126FF058BA3FA0BEFD07BEB ] HomeGroupProvider C:\Windows\system
32\provsvc.dll
09:45:18.0262 0x09e8 HomeGroupProvider - ok
09:45:18.0267 0x09e8 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F
56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD
C:\Windows\system32
\DRIVERS\HpSAMD.sys
09:45:18.0269 0x09e8 HpSAMD - ok
09:45:18.0295 0x09e8 [ C531C7FD9E8B62021112787C4E2C5A5A, 09205E2A5BFB6C623B312B
8AC82F7F7CA8A922B1D9A0E3952BD3BA47BBE1F18C ] HTTP
C:\Windows\system32
\drivers\HTTP.sys
09:45:18.0312 0x09e8 HTTP - ok
09:45:18.0316 0x09e8 [ 8305F33CDE89AD6C7A0763ED0B5A8D42, A7CA4978DC1FF6105EA391
24DF854F0B1FD478476B871ED0E018AF3AE2165282 ] hwpolicy
C:\Windows\system32
\drivers\hwpolicy.sys
09:45:18.0317 0x09e8 hwpolicy - ok

09:45:18.0335 0x09e8 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C3777


3F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt
C:\Windows\system32
\DRIVERS\i8042prt.sys
09:45:18.0338 0x09e8 i8042prt - ok
09:45:18.0367 0x09e8 [ D777C292F5F69D9729C35AC8F0CE79E2, FABF2EF0BAAF3DEA7C4FE9
971EC93477486AA04C402EA0F897FAB0F0A3ABF8F5 ] iaStorA
C:\Windows\system32
\DRIVERS\iaStorA.sys
09:45:18.0374 0x09e8 iaStorA - ok
09:45:18.0384 0x09e8 [ D2F7030092366D8A860EED9A1D619698, C0706A2272139F3A20B2A2
4FEEA6C387FA863DCAA305445EA1DB41B74204D8C4 ] iaStorF
C:\Windows\system32
\DRIVERS\iaStorF.sys
09:45:18.0385 0x09e8 iaStorF - ok
09:45:18.0394 0x09e8 [ 934AF4D7C5F457B9F0743F4299B77B67, F232554352BB7CD716D617
3FC1AB2661E49480994BB22E9A6FE7A33B51F0A51B ] iaStorV
C:\Windows\system32
\DRIVERS\iaStorV.sys
09:45:18.0401 0x09e8 iaStorV - ok
09:45:18.0432 0x09e8 [ 219F41F40217DC75CB93C1BF1F3A5E2A, FC6E9C27D1994AFDBC6CFD
1193334821985402F70B13F73049790631726D1195 ] IDMWFP
C:\Windows\system32
\DRIVERS\idmwfp.sys
09:45:18.0436 0x09e8 IDMWFP - ok
09:45:18.0482 0x09e8 [ 5AF815EB5BC9802E5A064E2BA62BFC0C, DC8CED05F623D30C57E8A7
A382A219B4266C9C766ABF8A8D71783EACB8607B82 ] idsvc
C:\Windows\Microsof
t.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
09:45:18.0504 0x09e8 idsvc - ok
09:45:18.0603 0x09e8 [ 097F96ED1668A1161C60A6BEC0C63FDA, 1DD4E19A0643AB7342D370
79726F7602757E2766DB46F3E12E4D67E40429B9C4 ] igfx
C:\Windows\system32
\DRIVERS\igdkmd32.sys
09:45:18.0673 0x09e8 igfx - ok
09:45:18.0703 0x09e8 [ D7A919B6032F23E715171330049F5E10, DB98AD56600841B5DC553C
922E0B5480BE94FE065BA850D14AAD896BD62C3796 ] igfxCUIService1.0.0.0 C:\Windows\sy
stem32\igfxCUIService.exe
09:45:18.0708 0x09e8 igfxCUIService1.0.0.0 - ok
09:45:18.0727 0x09e8 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE34
2FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp
C:\Windows\system32
\DRIVERS\iirsp.sys
09:45:18.0728 0x09e8 iirsp - ok
09:45:18.0778 0x09e8 [ FAC0EE6562B121B1399D6E855583F7A5, 034C9EE9232EB2CE64297E
C4BCBEB5DA443ED9176C436CC754EF84FFB4AD4B08 ] IKEEXT
C:\Windows\System32
\ikeext.dll
09:45:18.0792 0x09e8 IKEEXT - ok
09:45:18.0832 0x09e8 [ B0F7FF5DF8253161DF4C567A2E6D18B7, A36A0002459834C07C91B4
C9FB0AAF7D09C5927F071CC42A32F2E2599AEAE497 ] int0800
C:\Windows\system32
\DRIVERS\flashud.sys
09:45:18.0834 0x09e8 int0800 - ok
09:45:19.0000 0x09e8 [ 4083E8101EB69807B5C45507F07448EE, F959D6ADC50D75353BAC92
83F11E7F4DAE3AE0304D481117FF6BC70CCE35B66E ] IntcAzAudAddService C:\Windows\syst
em32\drivers\RTKVHDA.sys
09:45:19.0128 0x09e8 IntcAzAudAddService - ok
09:45:19.0154 0x09e8 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655
CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide
C:\Windows\system32
\DRIVERS\intelide.sys
09:45:19.0155 0x09e8 intelide - ok
09:45:19.0162 0x09e8 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28
AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm
C:\Windows\system32
\DRIVERS\intelppm.sys
09:45:19.0163 0x09e8 intelppm - ok
09:45:19.0182 0x09e8 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B
8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum
C:\Windows\system32
\ipbusenum.dll
09:45:19.0185 0x09e8 IPBusEnum - ok

09:45:19.0208 0x09e8 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555


B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32
\DRIVERS\ipfltdrv.sys
09:45:19.0211 0x09e8 IpFilterDriver - ok
09:45:19.0242 0x09e8 [ 477397B432A256A50EE7E4339EB9EA14, 3722938E69D16962F773F3
9669E9B90279DC9527BBC63564B33C89DAFD283497 ] iphlpsvc
C:\Windows\System32
\iphlpsvc.dll
09:45:19.0252 0x09e8 iphlpsvc - ok
09:45:19.0257 0x09e8 [ E4454B6C37D7FFD5649611F6496308A7, 5B2AA8C06076C9A1FF944E
5EA07C29BA7FABEBB38E6BFB388ED46933EAC465FB ] IPMIDRV
C:\Windows\system32
\DRIVERS\IPMIDrv.sys
09:45:19.0260 0x09e8 IPMIDRV - ok
09:45:19.0277 0x09e8 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE
1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT
C:\Windows\system32
\drivers\ipnat.sys
09:45:19.0280 0x09e8 IPNAT - ok
09:45:19.0291 0x09e8 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E48
22E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM
C:\Windows\system32
\drivers\irenum.sys
09:45:19.0292 0x09e8 IRENUM - ok
09:45:19.0295 0x09e8 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B
4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp
C:\Windows\system32
\DRIVERS\isapnp.sys
09:45:19.0297 0x09e8 isapnp - ok
09:45:19.0316 0x09e8 [ ED46C223AE46C6866AB77CDC41C404B7, 1B2A4A3FF0E5F8F02717F2
0983D57612D62DFF809064A7E524700E7254BB7DB3 ] iScsiPrt
C:\Windows\system32
\DRIVERS\msiscsi.sys
09:45:19.0322 0x09e8 iScsiPrt - ok
09:45:19.0344 0x09e8 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD
3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass
C:\Windows\system32
\DRIVERS\kbdclass.sys
09:45:19.0346 0x09e8 kbdclass - ok
09:45:19.0350 0x09e8 [ 3D9F0EBF350EDCFD6498057301455964, B3CB5F0C045B06C86E683F
3C67DC0D4E37AF16E20B189B05C926A5A7011438FB ] kbdhid
C:\Windows\system32
\DRIVERS\kbdhid.sys
09:45:19.0351 0x09e8 kbdhid - ok
09:45:19.0363 0x09e8 [ F42309C4191C506B71DB5D1126D26318, 29B0A8889857CEBFA6CBD7
95D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] KeyIso
C:\Windows\system32
\lsass.exe
09:45:19.0365 0x09e8 KeyIso - ok
09:45:19.0380 0x09e8 [ E36A061EC11B373826905B21BE10948F, CB9F8B76E0A99307A841B6
6CBD96C7087CC0B068699CBEF01040E37C6EA60E6A ] KSecDD
C:\Windows\system32
\Drivers\ksecdd.sys
09:45:19.0383 0x09e8 KSecDD - ok
09:45:19.0389 0x09e8 [ 26C046977E85B95036453D7B88BA1820, 375B284AFB407CAE417D20
90B112A0ED1CCD516ABFDDBFCD5D6AADE859F14ACD ] KSecPkg
C:\Windows\system32
\Drivers\ksecpkg.sys
09:45:19.0393 0x09e8 KSecPkg - ok
09:45:19.0415 0x09e8 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955
E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm
C:\Windows\system32
\msdtckrm.dll
09:45:19.0423 0x09e8 KtmRm - ok
09:45:19.0448 0x09e8 [ BCA92CB047A4326925ECEF759DBAA233, C2A188F5526882A2E3AC4C
C0190452DA37CBD93043DFE5571A20E8EFE9D56DA3 ] LanmanServer
C:\Windows\system32
\srvsvc.dll
09:45:19.0454 0x09e8 LanmanServer - ok
09:45:19.0470 0x09e8 [ B9891F885DCF1F0513A51CB58493CB1F, C883D243E1E7B7AEA031FB
90FE4FCEED631F835DC95F9D9D60BC554E6EC358C2 ] LanmanWorkstation C:\Windows\System
32\wkssvc.dll
09:45:19.0474 0x09e8 LanmanWorkstation - ok

09:45:19.0490 0x09e8 [ F7611EC07349979DA9B0AE1F18CCC7A6,


39C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio
\DRIVERS\lltdio.sys
09:45:19.0491 0x09e8 lltdio - ok
09:45:19.0510 0x09e8 [ 5700673E13A2117FA3B9020C852C01E2,
E47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc
\lltdsvc.dll
09:45:19.0515 0x09e8 lltdsvc - ok
09:45:19.0527 0x09e8 [ 55CA01BA19D0006C8F2639B6C045E08B,
8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts
\lmhsvc.dll
09:45:19.0529 0x09e8 lmhosts - ok
09:45:19.0557 0x09e8 [ EB119A53CCF2ACC000AC71B065B78FEF,
F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC
\DRIVERS\lsi_fc.sys
09:45:19.0560 0x09e8 LSI_FC - ok
09:45:19.0564 0x09e8 [ 8ADE1C877256A22E49B75D1CC9161F9C,
A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS
\DRIVERS\lsi_sas.sys
09:45:19.0567 0x09e8 LSI_SAS - ok
09:45:19.0571 0x09e8 [ DC9DC3D3DAA0E276FD2EC262E38B11E9,
17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2
\DRIVERS\lsi_sas2.sys
09:45:19.0573 0x09e8 LSI_SAS2 - ok
09:45:19.0578 0x09e8 [ 0A036C7D7CAB643A7F07135AC47E0524,
DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI
\DRIVERS\lsi_scsi.sys
09:45:19.0580 0x09e8 LSI_SCSI - ok
09:45:19.0592 0x09e8 [ 6703E366CC18D3B6E534F5CF7DF39CEE,
06A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv
\drivers\luafv.sys
09:45:19.0595 0x09e8 luafv - ok
09:45:19.0613 0x09e8 [ E2B0887816ED336685954E3D8FDAA51D,
5734B283B567888EF72249F6BBA73A63D1BD462466 ] Mcx2Svc
\Mcx2Svc.dll
09:45:19.0617 0x09e8 Mcx2Svc - ok
09:45:19.0620 0x09e8 [ 0FFF5B045293002AB38EB1FD1FC2FB74,
D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas
\DRIVERS\megasas.sys
09:45:19.0622 0x09e8 megasas - ok
09:45:19.0641 0x09e8 [ DCBAB2920C75F390CAF1D29F675D03D6,
61B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR
\DRIVERS\MegaSR.sys
09:45:19.0647 0x09e8 MegaSR - ok
09:45:19.0682 0x09e8 [ 75A87521762B09B75ED3A2096CC9F6D8,
B7AEDCE75D90AD672C630E89917AD080DDB51BF033 ] MEI
\DRIVERS\TeeDriver.sys
09:45:19.0686 0x09e8 MEI - ok
09:45:19.0700 0x09e8 [ 146B6F43A673379A3C670E86D89BE5EA,
9413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS
\mmcss.dll
09:45:19.0703 0x09e8 MMCSS - ok
09:45:19.0712 0x09e8 [ F001861E5700EE84E2D4E52C712F4964,
0862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem
\drivers\modem.sys
09:45:19.0714 0x09e8 Modem - ok
09:45:19.0723 0x09e8 [ 79D10964DE86B292320E9DFE02282A23,
4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor
\DRIVERS\monitor.sys
09:45:19.0724 0x09e8 monitor - ok

879AA7A391966F00761CA0
C:\Windows\system32
6684A2905EE8C438F2A64B
C:\Windows\System32
4DBBDC820C514DB18CC13F
C:\Windows\System32
1FD60735C4945AE565C223
C:\Windows\system32
3D64F233DC866537E50549
C:\Windows\system32
A264990857CBC74036799E
C:\Windows\system32
2F662D07FCB74B8D493156
C:\Windows\system32
7396B9AF938284D99EC512
C:\Windows\system32
4DCB08ADC6A89DCA68D128
C:\Windows\system32
49071B565FD5B2DE43EC00
C:\Windows\system32
85C3A7A010BEA5E3C61791
C:\Windows\system32
AA89004D47620B880AA2CC
C:\Windows\system32
C4412DCF80DE6B55466F39
C:\Windows\system32
F4DC5AEED6F34D76CCEF36
C:\Windows\system32
52714827B7EEDACA55326A
C:\Windows\system32

09:45:19.0736 0x09e8 [ FB18CC1D4C2E716B6B903B0AC0CC0609,


6B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass
\DRIVERS\mouclass.sys
09:45:19.0737 0x09e8 mouclass - ok
09:45:19.0755 0x09e8 [ 2C388D2CD01C9042596CF3C8F3C7B24D,
57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid
\DRIVERS\mouhid.sys
09:45:19.0757 0x09e8 mouhid - ok
09:45:19.0766 0x09e8 [ 921C18727C5920D6C0300736646931C2,
6102EAEE96675C9CA237E410DB36C389D6B4078301 ] mountmgr
\drivers\mountmgr.sys
09:45:19.0768 0x09e8 mountmgr - ok
09:45:19.0773 0x09e8 [ 2AF5997438C55FB79D33D015C30E1974,
FC1659921E73B59549E3F7D2A13929901B87A1901F ] mpio
\DRIVERS\mpio.sys
09:45:19.0777 0x09e8 mpio - ok
09:45:19.0781 0x09e8 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0,
19176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv
\drivers\mpsdrv.sys
09:45:19.0783 0x09e8 mpsdrv - ok
09:45:19.0808 0x09e8 [ 5CD996CECF45CBC3E8D109C86B82D69E,
28BF82E775D90DCB9E31409DC95FABF2F016B17700 ] MpsSvc
\mpssvc.dll
09:45:19.0819 0x09e8 MpsSvc - ok
09:45:19.0829 0x09e8 [ B1BE47008D20E43DA3ADC37C24CDB89D,
5EA5ABADF2CD3AC247B37CB9E9304FF67064EBE59B ] MRxDAV
\drivers\mrxdav.sys
09:45:19.0833 0x09e8 MRxDAV - ok
09:45:19.0842 0x09e8 [ F4A054BE78AF7F410129C4B64B07DC9B,
12F11B2E150AEC00AC692EE92A5CE6C982CF1190F5 ] mrxsmb
\DRIVERS\mrxsmb.sys
09:45:19.0844 0x09e8 mrxsmb - ok
09:45:19.0852 0x09e8 [ DEFFA295BD1895C6ED8E3078412AC60B,
C5B48B939ECDC6DB7CAAAAC3C2823AC12842BC1630 ] mrxsmb10
\DRIVERS\mrxsmb10.sys
09:45:19.0857 0x09e8 mrxsmb10 - ok
09:45:19.0862 0x09e8 [ 24D76ABE5DCAD22F19D105F76FDF0CE1,
2A7A890FDE20AC7CE87C660817EB92FE10E2DAD343 ] mrxsmb20
\DRIVERS\mrxsmb20.sys
09:45:19.0865 0x09e8 mrxsmb20 - ok
09:45:19.0869 0x09e8 [ 4326D168944123F38DD3B2D9C37A0B12,
86431EC3F4B23CADC3B968B92978A08A7C0D0D8902 ] msahci
\DRIVERS\msahci.sys
09:45:19.0870 0x09e8 msahci - ok
09:45:19.0875 0x09e8 [ 455029C7174A2DBB03DBA8A0D8BDDD9A,
A74F74ABD5FAA1C36A2E859AF288398EAE7CD76DF2 ] msdsm
\DRIVERS\msdsm.sys
09:45:19.0878 0x09e8 msdsm - ok
09:45:19.0894 0x09e8 [ E1BCE74A3BD9902B72599C0192A07E27,
A2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC
\msdtc.exe
09:45:19.0898 0x09e8 MSDTC - ok
09:45:19.0912 0x09e8 [ DAEFB28E3AF5A76ABCC2C3078C07327F,
7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs
\drivers\Msfs.sys
09:45:19.0913 0x09e8 Msfs - ok
09:45:19.0943 0x09e8 [ 3E1E5767043C5AF9367F0056295E9F84,
9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf
\drivers\mshidkmdf.sys
09:45:19.0945 0x09e8 mshidkmdf - ok

F10CCA63493782B16DE6B9
C:\Windows\system32
B2FB72272BB01AEDA4047B
C:\Windows\system32
19ACE502982E9C5B013467
C:\Windows\system32
E8F048A02FEB400C133D0B
C:\Windows\system32
1D6DCFA0E56C3E55B6AED8
C:\Windows\system32
ABE40DA4DA555D3D5054BE
C:\Windows\system32
6E8555E84B42E5098227B3
C:\Windows\system32
65E14D38CCAB4FBB0C0D4A
C:\Windows\system32
3F13CD67659EC2C8ABADC2
C:\Windows\system32
D0A7E033B4DF4AA5A9600A
C:\Windows\system32
322AE93418BE3BA6B3E11C
C:\Windows\system32
614D71978B024109ADD9A7
C:\Windows\system32
5162EB623FE64E9DFEAC6C
C:\Windows\System32
6EB558532400B489763BAE
C:\Windows\system32
B2EDFECD3C14E4FE1BA87D
C:\Windows\System32

09:45:19.0948 0x09e8 [ 0A4E5757AE09FA9622E3158CC1AEF114,


526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv
\DRIVERS\msisadrv.sys
09:45:19.0949 0x09e8 msisadrv - ok
09:45:19.0969 0x09e8 [ 90F7D9E6B6F27E1A707D4A297F077828,
8842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI
\iscsiexe.dll
09:45:19.0973 0x09e8 MSiSCSI - ok
09:45:19.0976 0x09e8 msiserver - ok
09:45:19.0992 0x09e8 [ 8C0860D6366AAFFB6C5BB9DF9448E631,
17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV
\drivers\MSKSSRV.sys
09:45:19.0994 0x09e8 MSKSSRV - ok
09:45:20.0011 0x09e8 [ 3EA8B949F963562CEDBB549EAC0C11CE,
548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK
\drivers\MSPCLOCK.sys
09:45:20.0012 0x09e8 MSPCLOCK - ok
09:45:20.0021 0x09e8 [ F456E973590D663B1073E9C463B40932,
4772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM
\drivers\MSPQM.sys
09:45:20.0023 0x09e8 MSPQM - ok
09:45:20.0029 0x09e8 [ 0E008FC4819D238C51D7C93E7B41E560,
5A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC
\drivers\MsRPC.sys
09:45:20.0033 0x09e8 MsRPC - ok
09:45:20.0039 0x09e8 [ FC6B9FF600CC585EA38B12589BD4E246,
51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios
\DRIVERS\mssmbios.sys
09:45:20.0040 0x09e8 mssmbios - ok
09:45:20.0047 0x09e8 [ B42C6B921F61A6E55159B8BE6CD54A36,
1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE
\drivers\MSTEE.sys
09:45:20.0048 0x09e8 MSTEE - ok
09:45:20.0058 0x09e8 [ 33599130F44E1F34631CEA241DE8AC84,
4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig
\DRIVERS\MTConfig.sys
09:45:20.0060 0x09e8 MTConfig - ok
09:45:20.0063 0x09e8 [ 159FAD02F64E6381758C990F753BCC80,
9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup
\Drivers\mup.sys
09:45:20.0065 0x09e8 Mup - ok
09:45:20.0085 0x09e8 [ 80284F1985C70C86F0B5F86DA2DFE1DF,
9E423B8C409754CD1BA3DFC9E174BF22D8BCE1BE63 ] napagent
\qagentRT.dll
09:45:20.0093 0x09e8 napagent - ok
09:45:20.0120 0x09e8 [ 26384429FCD85D83746F63E798AB1480,
8B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP
\DRIVERS\nwifi.sys
09:45:20.0126 0x09e8 NativeWifiP - ok
09:45:20.0144 0x09e8 [ 23759D175A0A9BAAF04D05047BC135A8,
F16BCEDD5A3C6D74A17E6E75A3E740E06B1D636348 ] NDIS
\drivers\ndis.sys
09:45:20.0178 0x09e8 NDIS - ok
09:45:20.0195 0x09e8 [ 0E1787AA6C9191D3D319E8BAFE86F80C,
DA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap
\DRIVERS\ndiscap.sys
09:45:20.0197 0x09e8 NdisCap - ok
09:45:20.0209 0x09e8 [ E4A8AEC125A2E43A9E32AFEEA7C9C888,
1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi
\DRIVERS\ndistapi.sys

ED574E420E57374E328C7C
C:\Windows\system32
BEFC220EAA730784960074
C:\Windows\system32

949C5A14E57F2D7385543C
C:\Windows\system32
1B0B2F16A1790282504F3C
C:\Windows\system32
48BA6D5580EE7B6A4C06E0
C:\Windows\system32
141FCEBDD05874407EAEC3
C:\Windows\system32
F05DB01AE1955D2468CE6B
C:\Windows\system32
6BB0A7BE005B8F281E551D
C:\Windows\system32
E15B31D1AFDC8DC6D2B21D
C:\Windows\system32
E55AB01DCFA95ECAB24A2A
C:\Windows\system32
424A5BBC28C72DA0DBABEB
C:\Windows\system32
957C115C263A4B4DC85455
C:\Windows\system32
2C8C553B4E1ED3A644F619
C:\Windows\system32
F535022747355B2C66424B
C:\Windows\system32
6EA181117126FC70B3C1DD
C:\Windows\system32

09:45:20.0211 0x09e8 NdisTapi - ok


09:45:20.0214 0x09e8 [ B30AE7F2B6D7E343B0DF32E6C08FCE75, 39BBBF7AF886732CB9ED3E
6C06DA4318554089F3BEA74C74328FE1C6EF68E70B ] Ndisuio
C:\Windows\system32
\DRIVERS\ndisuio.sys
09:45:20.0216 0x09e8 Ndisuio - ok
09:45:20.0221 0x09e8 [ 267C415EADCBE53C9CA873DEE39CF3A4, BAA8626BDA7B68176B19A9
9FBBD40FB2A774C8F44B56F9FFB99A1F5C16A1C555 ] NdisWan
C:\Windows\system32
\DRIVERS\ndiswan.sys
09:45:20.0224 0x09e8 NdisWan - ok
09:45:20.0229 0x09e8 [ AF7E7C63DCEF3F8772726F86039D6EB4, 1CFDED48E8844138864786
DBF9D5519162A6DB28F885A781934E8AFBD52EAC50 ] NDProxy
C:\Windows\system32
\drivers\NDProxy.sys
09:45:20.0231 0x09e8 NDProxy - ok
09:45:20.0235 0x09e8 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A
298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS
C:\Windows\system32
\DRIVERS\netbios.sys
09:45:20.0237 0x09e8 NetBIOS - ok
09:45:20.0243 0x09e8 [ DD52A733BF4CA5AF84562A5E2F963B91, 5CEB9664CED3D120F5408A
12035748728710D41090A289CF66023CED4C838A1F ] NetBT
C:\Windows\system32
\DRIVERS\netbt.sys
09:45:20.0248 0x09e8 NetBT - ok
09:45:20.0262 0x09e8 [ F42309C4191C506B71DB5D1126D26318, 29B0A8889857CEBFA6CBD7
95D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] Netlogon
C:\Windows\system32
\lsass.exe
09:45:20.0263 0x09e8 Netlogon - ok
09:45:20.0302 0x09e8 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D
303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman
C:\Windows\System32
\netman.dll
09:45:20.0308 0x09e8 Netman - ok
09:45:20.0336 0x09e8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B
7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\Windows\Microso
ft.NET\Framework\v4.0.30319\SMSvcHost.exe
09:45:20.0361 0x09e8 NetMsmqActivator - ok
09:45:20.0365 0x09e8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B
7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\Windows\Microso
ft.NET\Framework\v4.0.30319\SMSvcHost.exe
09:45:20.0368 0x09e8 NetPipeActivator - ok
09:45:20.0377 0x09e8 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7
409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm
C:\Windows\System32
\netprofm.dll
09:45:20.0386 0x09e8 netprofm - ok
09:45:20.0392 0x09e8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B
7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpActivator C:\Windows\Microsof
t.NET\Framework\v4.0.30319\SMSvcHost.exe
09:45:20.0394 0x09e8 NetTcpActivator - ok
09:45:20.0398 0x09e8 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B
7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\Windows\Micros
oft.NET\Framework\v4.0.30319\SMSvcHost.exe
09:45:20.0400 0x09e8 NetTcpPortSharing - ok
09:45:20.0420 0x09e8 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC
543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960
C:\Windows\system32
\DRIVERS\nfrd960.sys
09:45:20.0422 0x09e8 nfrd960 - ok
09:45:20.0436 0x09e8 [ 2226496E34BD40734946A054B1CD657F, 98392D98C9213822268971
432BB55047ABD8B4EBD42483FA69BF50FB8FAD64A2 ] NlaSvc
C:\Windows\System32
\nlasvc.dll
09:45:20.0442 0x09e8 NlaSvc - ok
09:45:20.0466 0x09e8 [ B48DC6ABCD3AEFF8618350CCBDC6B09A, 824D8B03E061DDD0D33EF9
F03C669B13E7B6E339684009BD44D69178C45E2DE1 ] NPF
C:\Windows\system32
\drivers\npf.sys

09:45:20.0469 0x09e8 NPF - ok


09:45:20.0472 0x09e8 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9
C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs
C:\Windows\system32
\drivers\Npfs.sys
09:45:20.0474 0x09e8 Npfs - ok
09:45:20.0483 0x09e8 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C
154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi
C:\Windows\system32
\nsisvc.dll
09:45:20.0486 0x09e8 nsi - ok
09:45:20.0489 0x09e8 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E
1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy
C:\Windows\system32
\drivers\nsiproxy.sys
09:45:20.0491 0x09e8 nsiproxy - ok
09:45:20.0534 0x09e8 [ 3795DCD21F740EE799FB7223234215AF, B03DBFD33B201134473D23
038E0BD86CFE64556754BF4EBA42C10B67AEECAEA6 ] Ntfs
C:\Windows\system32
\drivers\Ntfs.sys
09:45:20.0568 0x09e8 Ntfs - ok
09:45:20.0582 0x09e8 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013
AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null
C:\Windows\system32
\drivers\Null.sys
09:45:20.0584 0x09e8 Null - ok
09:45:20.0593 0x09e8 [ 3F3D04B1D08D43C16EA7963954EC768D, BA82C1D3D9F4AA5F1C9729
D61D4E06DB961FDF2B1E9B483D29DB308204DF0754 ] nvraid
C:\Windows\system32
\DRIVERS\nvraid.sys
09:45:20.0596 0x09e8 nvraid - ok
09:45:20.0602 0x09e8 [ C99F251A5DE63C6F129CF71933ACED0F, 24D48A5F5D699AB0DD4D44
35F8F7C6B73A924AEF8F9D1170FD644E26499546A2 ] nvstor
C:\Windows\system32
\DRIVERS\nvstor.sys
09:45:20.0606 0x09e8 nvstor - ok
09:45:20.0622 0x09e8 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FE
FCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp
C:\Windows\system32
\DRIVERS\nv_agp.sys
09:45:20.0625 0x09e8 nv_agp - ok
09:45:20.0634 0x09e8 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E
95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394
C:\Windows\system32
\DRIVERS\ohci1394.sys
09:45:20.0636 0x09e8 ohci1394 - ok
09:45:20.0659 0x09e8 [ D21292345D9791CAFF94B960E574E206, 78961043FC24810D45E824
320A682F037CC26D7FF7178F7ECB03C9A574BDD318 ] ose
C:\Program Files\Co
mmon Files\Microsoft Shared\Source Engine\OSE.EXE
09:45:20.0665 0x09e8 ose - ok
09:45:20.0820 0x09e8 [ EE5756BDA5BE5891270E0CC6CEC44096, EA18073EEE0F461B14C539
D49A7DD91D33AB0C503236F67F70A000835FAAC890 ] osppsvc
C:\Program Files\Co
mmon Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
09:45:20.0945 0x09e8 osppsvc - ok
09:45:21.0031 0x09e8 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D73
6B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc
C:\Windows\system32
\pnrpsvc.dll
09:45:21.0042 0x09e8 p2pimsvc - ok
09:45:21.0089 0x09e8 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644
AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc
C:\Windows\system32
\p2psvc.dll
09:45:21.0100 0x09e8 p2psvc - ok
09:45:21.0121 0x09e8 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97
DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport
C:\Windows\system32
\DRIVERS\parport.sys
09:45:21.0125 0x09e8 Parport - ok
09:45:21.0130 0x09e8 [ FF4218952B51DE44FE910953A3E686B9, 871E4F8300AFE2AE770B8F
00C12911A08D8BBD8E07C37A11AFF67CA92607A602 ] partmgr
C:\Windows\system32
\drivers\partmgr.sys

09:45:21.0133 0x09e8 partmgr - ok


09:45:21.0144 0x09e8 [ EB0A59F29C19B86479D36B35983DAADC,
3BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm
\DRIVERS\parvdm.sys
09:45:21.0146 0x09e8 Parvdm - ok
09:45:21.0164 0x09e8 [ 358AB7956D3160000726574083DFC8A6,
018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc
\pcasvc.dll
09:45:21.0170 0x09e8 PcaSvc - ok
09:45:21.0179 0x09e8 [ C858CB77C577780ECC456A892E7E7D0F,
CF227516BA6D02B1AAAECD8CC516CCF9F1FD710BCF ] pci
\DRIVERS\pci.sys
09:45:21.0185 0x09e8 pci - ok
09:45:21.0189 0x09e8 [ AFE86F419014DB4E5593F69FFE26CE0A,
5FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide
\DRIVERS\pciide.sys
09:45:21.0191 0x09e8 pciide - ok
09:45:21.0228 0x09e8 [ F396431B31693E71E8A80687EF523506,
E3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia
\DRIVERS\pcmcia.sys
09:45:21.0233 0x09e8 pcmcia - ok
09:45:21.0249 0x09e8 [ 250F6B43D2B613172035C6747AEEB19F,
0E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw
\drivers\pcw.sys
09:45:21.0252 0x09e8 pcw - ok
09:45:21.0277 0x09e8 [ 9E0104BA49F4E6973749A02BF41344ED,
DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH
\drivers\peauth.sys
09:45:21.0294 0x09e8 PEAUTH - ok
09:45:21.0336 0x09e8 [ AF4D64D2A57B9772CF3801950B8058A6,
F75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc
\peerdistsvc.dll
09:45:21.0356 0x09e8 PeerDistSvc - ok
09:45:21.0413 0x09e8 [ 9C1BFF7910C89A1D12E57343475840CB,
803C31F2818C54DB143C49470FAD07731E04BD2DE3 ] pla
\pla.dll
09:45:21.0455 0x09e8 pla - ok
09:45:21.0479 0x09e8 [ 2CC2008F1296968FBA162ED9F9AFE328,
35DFA20E390936762A22B2BB413BF9C7AF418150D6 ] PlugPlay
\umpnpmgr.dll
09:45:21.0486 0x09e8 PlugPlay - ok
09:45:21.0497 0x09e8 [ 63FF8572611249931EB16BB8EED6AFC8,
2B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg
\pnrpauto.dll
09:45:21.0499 0x09e8 PNRPAutoReg - ok
09:45:21.0536 0x09e8 [ 82A8521DDC60710C3D3D3E7325209BEC,
6B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc
\pnrpsvc.dll
09:45:21.0541 0x09e8 PNRPsvc - ok
09:45:21.0560 0x09e8 [ 48E1B75C6DC0232FD92BAAE4BD344721,
ABF87F51160BA57E318A0C4378410217911A393CE7 ] PolicyAgent
\ipsecsvc.dll
09:45:21.0568 0x09e8 PolicyAgent - ok
09:45:21.0579 0x09e8 [ DBFF83F709A91049621C1D35DD45C92C,
5F25EB6975C2111B605564FF9FB59751067E7CD3A7 ] Power
\umpo.dll
09:45:21.0583 0x09e8 Power - ok
09:45:21.0613 0x09e8 [ 631E3E205AD6D86F2AED6A4A8E69F2DB,
920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport
\DRIVERS\raspptp.sys

AC09AFE7F13BE4079D0138
C:\Windows\system32
6CAFD4D1B8AB8C1D167ADC
C:\Windows\System32
21AE545B736739DE5A7B02
C:\Windows\system32
CAF36E61BE7B511D3A03A6
C:\Windows\system32
BC614FC21E029E2497F1CC
C:\Windows\system32
A91F15B133F2619912CF75
C:\Windows\system32
B32F39F38DB48D77FBA884
C:\Windows\system32
C9C493A3775E6E1660CE5D
C:\Windows\system32
62E00E1278BD263B2AC8CB
C:\Windows\system32
670E2BE4EB8210C9D6AEA6
C:\Windows\system32
9732CCBCB93A7A4BEC8881
C:\Windows\system32
C4E34571EDD57C7FBB3D73
C:\Windows\system32
5BA4EB5A60725836D8085E
C:\Windows\System32
0A722A44F431CAB5EA77FF
C:\Windows\system32
1D3BF0CFC37D91A3A56246
C:\Windows\system32

09:45:21.0616 0x09e8 PptpMiniport - ok


09:45:21.0631 0x09e8 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB0
4007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor
C:\Windows\system32
\DRIVERS\processr.sys
09:45:21.0633 0x09e8 Processor - ok
09:45:21.0657 0x09e8 [ 630CF26F0227498B7D5A92B12548960F, 7B6E2A3C398DF2E8F63C03
ED5B59BB8DA47D5C1ACA9F37438F71F35633ACD6CD ] ProfSvc
C:\Windows\system32
\profsvc.dll
09:45:21.0661 0x09e8 ProfSvc - ok
09:45:21.0669 0x09e8 [ F42309C4191C506B71DB5D1126D26318, 29B0A8889857CEBFA6CBD7
95D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] ProtectedStorage C:\Windows\system3
2\lsass.exe
09:45:21.0671 0x09e8 ProtectedStorage - ok
09:45:21.0686 0x09e8 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC
6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched
C:\Windows\system32
\DRIVERS\pacer.sys
09:45:21.0689 0x09e8 Psched - ok
09:45:21.0711 0x09e8 [ 543A4EF0923BF70D126625B034EF25AF, 9CC82C5221F11850419A79
6D48D5452B3DEE0C8E8E85A818F4AAA869673F9740 ] PSI_SVC_2
c:\Program Files\Co
mmon Files\Protexis\License Service\PsiService_2.exe
09:45:21.0716 0x09e8 PSI_SVC_2 - ok
09:45:21.0761 0x09e8 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B
930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300
C:\Windows\system32
\DRIVERS\ql2300.sys
09:45:21.0795 0x09e8 ql2300 - ok
09:45:21.0812 0x09e8 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F996
8222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx
C:\Windows\system32
\DRIVERS\ql40xx.sys
09:45:21.0815 0x09e8 ql40xx - ok
09:45:21.0829 0x09e8 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7
676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE
C:\Windows\system32
\qwave.dll
09:45:21.0834 0x09e8 QWAVE - ok
09:45:21.0845 0x09e8 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9
DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv
C:\Windows\system32
\drivers\qwavedrv.sys
09:45:21.0847 0x09e8 QWAVEdrv - ok
09:45:21.0851 0x09e8 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB168
9B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd
C:\Windows\system32
\DRIVERS\rasacd.sys
09:45:21.0852 0x09e8 RasAcd - ok
09:45:21.0870 0x09e8 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE
631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn
C:\Windows\system32
\DRIVERS\AgileVpn.sys
09:45:21.0872 0x09e8 RasAgileVpn - ok
09:45:21.0884 0x09e8 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635
F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto
C:\Windows\System32
\rasauto.dll
09:45:21.0888 0x09e8 RasAuto - ok
09:45:21.0892 0x09e8 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7
DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp
C:\Windows\system32
\DRIVERS\rasl2tp.sys
09:45:21.0894 0x09e8 Rasl2tp - ok
09:45:21.0916 0x09e8 [ 0CE66EC736B7FC526D78F7624C7D2A94, D70B45AA413691CF84B24E
966EBA1689955E54BDDA206380CAB7CD50F56D5CEB ] RasMan
C:\Windows\System32
\rasmans.dll
09:45:21.0923 0x09e8 RasMan - ok
09:45:21.0927 0x09e8 [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E
78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe
C:\Windows\system32
\DRIVERS\raspppoe.sys

09:45:21.0930 0x09e8 RasPppoe - ok


09:45:21.0941 0x09e8 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB
795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp
C:\Windows\system32
\DRIVERS\rassstp.sys
09:45:21.0943 0x09e8 RasSstp - ok
09:45:21.0960 0x09e8 [ 835D7E81BF517A3B72384BDCC85E1CE6, DC855AF17150C1B2792629
3115C01B5E1FD00FABCE18AFAEAB3DC68BDE4C908B ] rdbss
C:\Windows\system32
\DRIVERS\rdbss.sys
09:45:21.0966 0x09e8 rdbss - ok
09:45:21.0970 0x09e8 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F9
1F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus
C:\Windows\system32
\DRIVERS\rdpbus.sys
09:45:21.0974 0x09e8 rdpbus - ok
09:45:21.0984 0x09e8 [ 1E016846895B15A99F9A176A05029075, 78AE674B6E7D3A69099B24
AC07E06563A4C867F9DCD8548E4DAAE6FC5ACA4E29 ] RDPCDD
C:\Windows\system32
\DRIVERS\RDPCDD.sys
09:45:21.0985 0x09e8 RDPCDD - ok
09:45:22.0004 0x09e8 [ C5FF95883FFEF704D50C40D21CFB3AB5, 26CC53DDE126A6BD99F606
695F063BB7FDC4BBABB9F75F7AD7A84B58C837EEAA ] RDPDR
C:\Windows\system32
\drivers\rdpdr.sys
09:45:22.0009 0x09e8 RDPDR - ok
09:45:22.0032 0x09e8 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BD
E4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD
C:\Windows\system32
\drivers\rdpencdd.sys
09:45:22.0034 0x09e8 RDPENCDD - ok
09:45:22.0038 0x09e8 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C
920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP
C:\Windows\system32
\drivers\rdprefmp.sys
09:45:22.0039 0x09e8 RDPREFMP - ok
09:45:22.0057 0x09e8 [ 801371BA9782282892D00AADB08EE367, 884DDC24B8400E76F65F54
C249053333AD29543224F9EC156C64A6BDF584DDCD ] RDPWD
C:\Windows\system32
\drivers\RDPWD.sys
09:45:22.0061 0x09e8 RDPWD - ok
09:45:22.0067 0x09e8 [ 4EA225BF1CF05E158853F30A99CA29A7, F211480F13E2FE36C31110
AE67ABE74E9D572D3A36BEEDE29E14ECBD8C246878 ] rdyboost
C:\Windows\system32
\drivers\rdyboost.sys
09:45:22.0071 0x09e8 rdyboost - ok
09:45:22.0090 0x09e8 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DA
E53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess
C:\Windows\System32
\mprdim.dll
09:45:22.0093 0x09e8 RemoteAccess - ok
09:45:22.0110 0x09e8 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40B
FA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32
\regsvc.dll
09:45:22.0115 0x09e8 RemoteRegistry - ok
09:45:22.0136 0x09e8 [ B60F58F175DE20A6739194E85B035178, 6E66D6041AF0B69896E455
6F9FF3A3AA70CF4B09FFBE68E14E60313C5E3FFDDB ] rpcapd
C:\Program Files\Wi
nPcap\rpcapd.exe
09:45:22.0139 0x09e8 rpcapd - ok
09:45:22.0162 0x09e8 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83
DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper
C:\Windows\System32
\RpcEpMap.dll
09:45:22.0165 0x09e8 RpcEptMapper - ok
09:45:22.0178 0x09e8 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0
154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator
C:\Windows\system32
\locator.exe
09:45:22.0180 0x09e8 RpcLocator - ok
09:45:22.0203 0x09e8 [ B82CD39E336973359D7C9BF911E8E84F, 45DB8F1E88FC25A81D2F3C
2F8A8CDB6B34C44950B038E24FB71DCDD9823DB22A ] RpcSs
C:\Windows\system32
\rpcss.dll

09:45:22.0210 0x09e8 RpcSs - ok


09:45:22.0234 0x09e8 [ 032B0D36AD92B582D869879F5AF5B928,
9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr
\DRIVERS\rspndr.sys
09:45:22.0237 0x09e8 rspndr - ok
09:45:22.0270 0x09e8 [ E683EF4287B000706A5C2EE331D89DEA,
7FB512E5FBDDD78AB2F8544F4757208EF8404D070B ] RTL8167
\DRIVERS\Rt86win7.sys
09:45:22.0284 0x09e8 RTL8167 - ok
09:45:22.0303 0x09e8 [ 5423D8437051E89DD34749F242C98648,
3C3069B72206E2938DB2240BAA9BDB56687C748A2B ] s3cap
\DRIVERS\vms3cap.sys
09:45:22.0305 0x09e8 s3cap - ok
09:45:22.0318 0x09e8 [ F42309C4191C506B71DB5D1126D26318,
95D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] SamSs
\lsass.exe
09:45:22.0319 0x09e8 SamSs - ok
09:45:22.0334 0x09e8 [ 34EE0C44B724E3E4CE2EFF29126DE5B5,
00E19CDBF9A6AA7D69DE4B34F317ED4AFD38E8CAFB ] sbp2port
\DRIVERS\sbp2port.sys
09:45:22.0337 0x09e8 sbp2port - ok
09:45:22.0352 0x09e8 [ 8FC518FFE9519C2631D37515A68009C4,
7F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr
\SCardSvr.dll
09:45:22.0356 0x09e8 SCardSvr - ok
09:45:22.0367 0x09e8 [ A95C54B2AC3CC9C73FCDF9E51A1D6B51,
422C52B2D3E4858B2F2658DB6CA7996B5F368D2503 ] scfilter
\DRIVERS\scfilter.sys
09:45:22.0369 0x09e8 scfilter - ok
09:45:22.0396 0x09e8 [ 3E8B0C453E25613A1F59762A5C42AA75,
031E52AD2518D61CCB945A857A18F0714351A8158C ] Schedule
\schedsvc.dll
09:45:22.0412 0x09e8 Schedule - ok
09:45:22.0429 0x09e8 [ 628A9E30EC5E18DD5DE6BE4DBDC12198,
2BD00D984F45BD6D23DBE2A656C33E3CD1E5D17AD7 ] SCPolicySvc
\certprop.dll
09:45:22.0430 0x09e8 SCPolicySvc - ok
09:45:22.0440 0x09e8 [ 5FD90ABDBFAEE85986802622CBB03446,
4737E9EBF6EFB92BB2B9E5F37F10BFDF47CBF7DEDB ] SDRSVC
\SDRSVC.dll
09:45:22.0445 0x09e8 SDRSVC - ok
09:45:22.0457 0x09e8 [ 90A3935D05B494A5A39D37E71F09A677,
632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv
\drivers\secdrv.sys
09:45:22.0458 0x09e8 secdrv - ok
09:45:22.0468 0x09e8 [ A59B3A4442C52060CC7A85293AA3546F,
F39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon
\seclogon.dll
09:45:22.0471 0x09e8 seclogon - ok
09:45:22.0488 0x09e8 [ DCB7FCDCC97F87360F75D77425B81737,
E613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS
\sens.dll
09:45:22.0491 0x09e8 SENS - ok
09:45:22.0512 0x09e8 [ 50087FE1EE447009C9CC2997B90DE53F,
198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc
\sensrsvc.dll
09:45:22.0515 0x09e8 SensrSvc - ok
09:45:22.0528 0x09e8 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1,
6065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum
\DRIVERS\serenum.sys

0F8F18A6A0A689957B886D
C:\Windows\system32
59098A9508471C3BC6ECE4
C:\Windows\system32
28FD190E13676B0FD452A7
C:\Windows\system32
29B0A8889857CEBFA6CBD7
C:\Windows\system32
D27AAF77CB8830893558A6
C:\Windows\system32
21E10585470CF9FC3BD197
C:\Windows\System32
8C0189A6AF9AEC46CBA4DA
C:\Windows\system32
86801C49664441A08F7E95
C:\Windows\system32
DDA43DCCB195440D6BD575
C:\Windows\System32
0A8D9DC09C2ACA9EAABED0
C:\Windows\System32
F72733A69BC6E1A2BB91D7
C:\Windows\system32
1776D6DEE51991149265AA
C:\Windows\system32
F8289AF2C458C167038EEF
C:\Windows\System32
B5E6CF1D991F87C29C5E28
C:\Windows\system32
E2F019BCD1446236D078D4
C:\Windows\system32

09:45:22.0530 0x09e8 Serenum - ok


09:45:22.0539 0x09e8 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA9
49DB97595CC32332D9321DF68283BFC102E66D766F ] Serial
C:\Windows\system32
\DRIVERS\serial.sys
09:45:22.0542 0x09e8 Serial - ok
09:45:22.0552 0x09e8 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A
9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse
C:\Windows\system32
\DRIVERS\sermouse.sys
09:45:22.0554 0x09e8 sermouse - ok
09:45:22.0569 0x09e8 [ 8F55CE568C543D5ADF45C409D16718FC, 64D45854A91B656C1AF36E
B272FDC54E9B5FB0200CB93E20F7D997DDA109EF7F ] SessionEnv
C:\Windows\system32
\sessenv.dll
09:45:22.0573 0x09e8 SessionEnv - ok
09:45:22.0577 0x09e8 [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206E
E7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk
C:\Windows\system32
\DRIVERS\sffdisk.sys
09:45:22.0578 0x09e8 sffdisk - ok
09:45:22.0581 0x09e8 [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF
7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc
C:\Windows\system32
\DRIVERS\sffp_mmc.sys
09:45:22.0583 0x09e8 sffp_mmc - ok
09:45:22.0586 0x09e8 [ 4F1E5B0FE7C8050668DBFADE8999AEFB, E36DAACC3D11F004808A3F
44C471BBFDC2F33411D9F5C18B55B0DB2A6DA6E74C ] sffp_sd
C:\Windows\system32
\DRIVERS\sffp_sd.sys
09:45:22.0587 0x09e8 sffp_sd - ok
09:45:22.0590 0x09e8 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC
6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy
C:\Windows\system32
\DRIVERS\sfloppy.sys
09:45:22.0592 0x09e8 sfloppy - ok
09:45:22.0605 0x09e8 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C
6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess
C:\Windows\System32
\ipnathlp.dll
09:45:22.0611 0x09e8 SharedAccess - ok
09:45:22.0624 0x09e8 [ CD2E48FA5B29EE2B3B5858056D246EF2, B743F92D0121CF3D827753
C85F1F5A14C2DAA1CAFD42C7810C3BECB853DB6175 ] ShellHWDetection C:\Windows\System3
2\shsvcs.dll
09:45:22.0632 0x09e8 ShellHWDetection - ok
09:45:22.0637 0x09e8 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F
12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp
C:\Windows\system32
\DRIVERS\sisagp.sys
09:45:22.0639 0x09e8 sisagp - ok
09:45:22.0650 0x09e8 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCB
FFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2
C:\Windows\system32
\DRIVERS\SiSRaid2.sys
09:45:22.0651 0x09e8 SiSRaid2 - ok
09:45:22.0661 0x09e8 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3
B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4
C:\Windows\system32
\DRIVERS\sisraid4.sys
09:45:22.0664 0x09e8 SiSRaid4 - ok
09:45:22.0676 0x09e8 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A
49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb
C:\Windows\system32
\DRIVERS\smb.sys
09:45:22.0679 0x09e8 Smb - ok
09:45:22.0694 0x09e8 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D8
92B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP
C:\Windows\System32
\snmptrap.exe
09:45:22.0696 0x09e8 SNMPTRAP - ok
09:45:22.0700 0x09e8 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE8261
9C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr
C:\Windows\system32
\drivers\spldr.sys

09:45:22.0702 0x09e8 spldr - ok


09:45:22.0724 0x09e8 [ 49B6DD6AB3715B7A67965F17194E98A9,
1A2E7465351D04416343A595C62B94BADFFCD02B3A ] Spooler
\spoolsv.exe
09:45:22.0732 0x09e8 Spooler - ok
09:45:22.0810 0x09e8 [ 4C287F9069FEDBD791178876EE9DE536,
7BE4E3238D91332E077524D1DD402E0C9ADA22E852 ] sppsvc
\sppsvc.exe
09:45:22.0899 0x09e8 sppsvc - ok
09:45:22.0916 0x09e8 [ D8E3E19EEBDAB49DD4A8D3062EAD4EC7,
E0A385ACA9069F3A5E6AC664AD0C383EF44DCF81B3 ] sppuinotify
\sppuinotify.dll
09:45:22.0919 0x09e8 sppuinotify - ok
09:45:22.0931 0x09e8 [ 2BA4EBC7DFBA845A1EDBE1F75913BE33,
963508C8B36BDB360A0A5B870332B79A39200DB3AC ] srv
\DRIVERS\srv.sys
09:45:22.0938 0x09e8 srv - ok
09:45:22.0953 0x09e8 [ DCE7E10FEAABD4CAE95948B3DE5340BB,
D83CE95D0A98008AD790041785C6C8B87564A491D7 ] srv2
\DRIVERS\srv2.sys
09:45:22.0959 0x09e8 srv2 - ok
09:45:22.0964 0x09e8 [ B5665BAA2120B8A54E22E9CD07C05106,
82ED52B49DD679D75843E1E9D6A6425E750594692C ] srvnet
\DRIVERS\srvnet.sys
09:45:22.0967 0x09e8 srvnet - ok
09:45:22.0979 0x09e8 [ D887C9FD02AC9FA880F6E5027A43E118,
090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV
\ssdpsrv.dll
09:45:22.0984 0x09e8 SSDPSRV - ok
09:45:22.0989 0x09e8 [ D318F23BE45D5E3A107469EB64815B50,
9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc
\sstpsvc.dll
09:45:22.0992 0x09e8 SstpSvc - ok
09:45:23.0002 0x09e8 [ DB32D325C192B801DF274BFD12A7E72B,
6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor
\DRIVERS\stexstor.sys
09:45:23.0004 0x09e8 stexstor - ok
09:45:23.0034 0x09e8 [ A22825E7BB7018E8AF3E229A5AF17221,
AE41AAC22C3D845F76C3E930337A4C07B2381086D7 ] StiSvc
\wiaservc.dll
09:45:23.0044 0x09e8 StiSvc - ok
09:45:23.0064 0x09e8 [ 957E346CA948668F2496A6CCF6FF82CC,
C60BC3B075AFD2257FEB4B8186FC1FE253E0C218AF ] storflt
\DRIVERS\vmstorfl.sys
09:45:23.0066 0x09e8 storflt - ok
09:45:23.0082 0x09e8 [ D5751969DC3E4B88BF482AC8EC9FE019,
E94744C6E2E1E85C8D00F1E8A5593F3EC780BDD7D9 ] storvsc
\DRIVERS\storvsc.sys
09:45:23.0084 0x09e8 storvsc - ok
09:45:23.0097 0x09e8 [ E58C78A848ADD9610A4DB6D214AF5224,
DA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum
\DRIVERS\swenum.sys
09:45:23.0099 0x09e8 swenum - ok
09:45:23.0136 0x09e8 [ F577910A133A592234EBAAD3F3AFA258,
FA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard
mmon Files\Adobe\SwitchBoard\SwitchBoard.exe
09:45:23.0153 0x09e8 SwitchBoard - ok
09:45:23.0170 0x09e8 [ A28BD92DF340E57B024BA433165D34D7,
473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv
\swprv.dll

331D69F3630BA978AC1347
C:\Windows\System32
6099E76FF6FBA002EBA2BA
C:\Windows\system32
E7A8A5774C62DC12B56DC3
C:\Windows\system32
58D0B957469D55026A53C3
C:\Windows\system32
B1E9CD14DC24BB161EFC83
C:\Windows\system32
86E50853D412ACDC752AD1
C:\Windows\system32
F38BAD90EC791368C37C21
C:\Windows\System32
D74355E6FF215AA8CE53BC
C:\Windows\system32
F089DBA719E22BC269720A
C:\Windows\system32
5C97557F8BC6ABBB5BE624
C:\Windows\System32
5C0E0F0E0F2D36E3213885
C:\Windows\system32
DAEB50C0045364C75965B0
C:\Windows\system32
1575A90EB22A4FB066459B
C:\Windows\system32
36F514740EE2D2B2F7ABFF
C:\Program Files\Co
889CC7FF143C3549982128
C:\Windows\System32

09:45:23.0178 0x09e8 swprv - ok


09:45:23.0211 0x09e8 [ 04105C8DA62353589C29BDAEB8D88BD8, CC7A3A779A143E09FE5C0A
A6795A7B13496C4E121347949CB23F7946EE5E2DED ] SysMain
C:\Windows\system32
\sysmain.dll
09:45:23.0254 0x09e8 SysMain - ok
09:45:23.0262 0x09e8 [ FCFB6C552FBC0DA299799CBD50AD9FD4, A2A90829087B1A7F9B57D6
F184EB4AE38D10B2986B0DC8D2ACA5EE9412CA3976 ] TabletInputService C:\Windows\Syste
m32\TabSvc.dll
09:45:23.0265 0x09e8 TabletInputService - ok
09:45:23.0298 0x09e8 [ 2F46B0C70A4ADC8C90CF825DA3B4FEAF, FF66CBA014F3F8B721088F
5AB3D004C1711E7F587CC8D4AC3DCFB45CDB746800 ] TapiSrv
C:\Windows\System32
\tapisrv.dll
09:45:23.0305 0x09e8 TapiSrv - ok
09:45:23.0309 0x09e8 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E49
2A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS
C:\Windows\System32
\tbssvc.dll
09:45:23.0312 0x09e8 TBS - ok
09:45:23.0350 0x09e8 [ 2CC3D75488ABD3EC628BBB9A4FC84EFC, 62917CDBC6529D1CC3D7F6
E211C717DC44033955749333DCBD052F9BF6639767 ] Tcpip
C:\Windows\system32
\drivers\tcpip.sys
09:45:23.0384 0x09e8 Tcpip - ok
09:45:23.0425 0x09e8 [ 2CC3D75488ABD3EC628BBB9A4FC84EFC, 62917CDBC6529D1CC3D7F6
E211C717DC44033955749333DCBD052F9BF6639767 ] TCPIP6
C:\Windows\system32
\DRIVERS\tcpip.sys
09:45:23.0457 0x09e8 TCPIP6 - ok
09:45:23.0471 0x09e8 [ E64444523ADD154F86567C469BC0B17F, FBE8A1DC28C10206818375
4F6BF0D03F5D18FD24BEB7E4B57D1CFCEBB13B381F ] tcpipreg
C:\Windows\system32
\drivers\tcpipreg.sys
09:45:23.0473 0x09e8 tcpipreg - ok
09:45:23.0485 0x09e8 [ 1875C1490D99E70E449E3AFAE9FCBADF, FFDF03826DAB748D51B53B
648B632E79B3CD6238F684FDEA749B4D0F93BE5A77 ] TDPIPE
C:\Windows\system32
\drivers\tdpipe.sys
09:45:23.0487 0x09e8 TDPIPE - ok
09:45:23.0490 0x09e8 [ 7551E91EA999EE9A8E9C331D5A9C31F3, C98C97DFD6C7276CD99954
5A7BC67B56E1BDDFB2886412E9198012322F95A10D ] TDTCP
C:\Windows\system32
\drivers\tdtcp.sys
09:45:23.0492 0x09e8 TDTCP - ok
09:45:23.0500 0x09e8 [ CB39E896A2A83702D1737BFD402B3542, FA77D98EA3606CA2FCEF0E
0949FDE2C32A080B47CAFDE46CE903CA3CBFC5DF35 ] tdx
C:\Windows\system32
\DRIVERS\tdx.sys
09:45:23.0503 0x09e8 tdx - ok
09:45:23.0507 0x09e8 [ C36F41EE20E6999DBF4B0425963268A5, 9DB789A17DF2C283D6E803
EEA15F2BDFC56EE3BE342A5606DD5C179C3550ECA6 ] TermDD
C:\Windows\system32
\DRIVERS\termdd.sys
09:45:23.0509 0x09e8 TermDD - ok
09:45:23.0531 0x09e8 [ A01E50A04D7B1960B33E92B9080E6A94, 0512BF11F2FD62BDBD2B1A
A34D509BE82AC374C37B925C8C0ED119C6331930FD ] TermService
C:\Windows\System32
\termsrv.dll
09:45:23.0543 0x09e8 TermService - ok
09:45:23.0549 0x09e8 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED4
90B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes
C:\Windows\system32
\themeservice.dll
09:45:23.0551 0x09e8 Themes - ok
09:45:23.0596 0x09e8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F39
9413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER
C:\Windows\system32
\mmcss.dll
09:45:23.0600 0x09e8 THREADORDER - ok
09:45:23.0619 0x09e8 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001
DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks
C:\Windows\System32
\trkwks.dll

09:45:23.0626 0x09e8 TrkWks - ok


09:45:23.0678 0x09e8 [ 41A4C781D2286208D397D72099304133, 447CAAD5589AA499EEE49F
BA2CB53210359DB76AFF1DF2F0BD4D92A397037C1D ] TrustedInstaller C:\Windows\servici
ng\TrustedInstaller.exe
09:45:23.0695 0x09e8 TrustedInstaller - ok
09:45:23.0712 0x09e8 [ 98AE6FA07D12CB4EC5CF4A9BFA5F4242, 9606DACB8CBDAF520282BE
8C8F064535767405F138D9E9A215D2C59183E93CC1 ] tssecsrv
C:\Windows\system32
\DRIVERS\tssecsrv.sys
09:45:23.0715 0x09e8 tssecsrv - ok
09:45:23.0744 0x09e8 [ 3E461D890A97F9D4C168F5FDA36E1D00, 82A8778F404F7AC5102802
CF46F279F1E58AC74244665D06FD0C68A8BD887536 ] tunnel
C:\Windows\system32
\DRIVERS\tunnel.sys
09:45:23.0749 0x09e8 tunnel - ok
09:45:23.0765 0x09e8 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34
336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35
C:\Windows\system32
\DRIVERS\uagp35.sys
09:45:23.0768 0x09e8 uagp35 - ok
09:45:23.0777 0x09e8 [ 09CC3E16F8E5EE7168E01CF8FCBE061A, 81EEAC72A7C4D72666C743
DEFF8096FDB465AA1FA8076C60D19CC192846F01CA ] udfs
C:\Windows\system32
\DRIVERS\udfs.sys
09:45:23.0783 0x09e8 udfs - ok
09:45:23.0794 0x09e8 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59
BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect
C:\Windows\system32
\UI0Detect.exe
09:45:23.0797 0x09e8 UI0Detect - ok
09:45:23.0802 0x09e8 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92C
A9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx
C:\Windows\system32
\DRIVERS\uliagpkx.sys
09:45:23.0803 0x09e8 uliagpkx - ok
09:45:23.0817 0x09e8 [ 049B3A50B3D646BAEEEE9EEC9B0668DC, 5774438BBD0976424C2055
9E14BA2AC158D9FF5D4E1FDC1C9C9F4D7A5CE8C377 ] umbus
C:\Windows\system32
\DRIVERS\umbus.sys
09:45:23.0820 0x09e8 umbus - ok
09:45:23.0833 0x09e8 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF
6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass
C:\Windows\system32
\DRIVERS\umpass.sys
09:45:23.0834 0x09e8 UmPass - ok
09:45:23.0865 0x09e8 [ 8ECACA5454844F66386F7BE4AE0D7CD1, F3B02A9F598C6A9EFA019F
5833959DD1A86FDFDB9FDDF99A8687BBB6211AAD00 ] UmRdpService
C:\Windows\System32
\umrdp.dll
09:45:23.0870 0x09e8 UmRdpService - ok
09:45:23.0885 0x09e8 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C2
29771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost
C:\Windows\System32
\upnphost.dll
09:45:23.0892 0x09e8 upnphost - ok
09:45:23.0898 0x09e8 [ 8455C4ED038EFD09E99327F9D2D48FFA, D166F98EA3D85F7DD6B525
8949C186714A17EF89B6FDC9804165F7B4FA811C30 ] usbccgp
C:\Windows\system32
\DRIVERS\usbccgp.sys
09:45:23.0900 0x09e8 usbccgp - ok
09:45:23.0905 0x09e8 [ 04EC7CEC62EC3B6D9354EEE93327FC82, 6CB41D8644618A5F701F6C
A91FB65BB94AA83EA48992133B5262DC539B334B2E ] usbcir
C:\Windows\system32
\DRIVERS\usbcir.sys
09:45:23.0907 0x09e8 usbcir - ok
09:45:23.0911 0x09e8 [ 1C333BFD60F2FED2C7AD5DAF533CB742, 97AE9CA39482B886FCD063
E80B8AB153E1FC1459452657393D8B1745EF69E1C3 ] usbehci
C:\Windows\system32
\DRIVERS\usbehci.sys
09:45:23.0913 0x09e8 usbehci - ok
09:45:23.0947 0x09e8 [ EE6EF93CCFA94FAE8C6AB298273D8AE2, CBEE16CEAD02E994F0C2AD
77DD8C01CB9964C6B42DE49FF7A787849CD25767B4 ] usbhub
C:\Windows\system32
\DRIVERS\usbhub.sys

09:45:23.0953 0x09e8 usbhub - ok


09:45:23.0962 0x09e8 [ A6FB7957EA7AFB1165991E54CE934B74,
7700A17D58A37A2A77FD72DA69EE0C756B88DB3689 ] usbohci
\DRIVERS\usbohci.sys
09:45:23.0963 0x09e8 usbohci - ok
09:45:23.0972 0x09e8 [ 797D862FE0875E75C7CC4C1AD7B30252,
032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint
\DRIVERS\usbprint.sys
09:45:23.0973 0x09e8 usbprint - ok
09:45:23.0991 0x09e8 [ 576096CCBC07E7C4EA4F5E6686D6888F,
9C4DB36A1EE872CCF19C86FAE3752A4989173E28ED ] usbscan
\DRIVERS\usbscan.sys
09:45:23.0992 0x09e8 usbscan - ok
09:45:23.0996 0x09e8 [ D8889D56E0D27E57ED4591837FE71D27,
7C1181D9D01FF65870EAEC4A1BA08AF43C35075647 ] USBSTOR
\DRIVERS\USBSTOR.SYS
09:45:23.0999 0x09e8 USBSTOR - ok
09:45:24.0009 0x09e8 [ 78780C3EBCE17405B1CCD07A3A8A7D72,
1F89AAE985135BFF48EEFD130C09B49CCF8A9946B9 ] usbuhci
\DRIVERS\usbuhci.sys
09:45:24.0010 0x09e8 usbuhci - ok
09:45:24.0029 0x09e8 [ 081E6E1C91AEC36758902A9F727CD23C,
76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms
\uxsms.dll
09:45:24.0031 0x09e8 UxSms - ok
09:45:24.0041 0x09e8 [ F42309C4191C506B71DB5D1126D26318,
95D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] VaultSvc
\lsass.exe
09:45:24.0043 0x09e8 VaultSvc - ok
09:45:24.0057 0x09e8 [ A059C4C3EDB09E07D21A8E5C0AABD3CB,
F9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot
\DRIVERS\vdrvroot.sys
09:45:24.0058 0x09e8 vdrvroot - ok
09:45:24.0080 0x09e8 [ 8C4E7C49D3641BC9E299E466A7F8867D,
BCDFDCB525FE484B74700A226D7894F9633F957AFA ] vds
\vds.exe
09:45:24.0093 0x09e8 vds - ok
09:45:24.0099 0x09e8 [ 17C408214EA61696CEC9C66E388B14F3,
641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga
\DRIVERS\vgapnp.sys
09:45:24.0101 0x09e8 vga - ok
09:45:24.0104 0x09e8 [ 8E38096AD5C8570A6F1570A61E251561,
006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave
\drivers\vga.sys
09:45:24.0106 0x09e8 VgaSave - ok
09:45:24.0115 0x09e8 [ 3BE6E1F3A4F1AFEC8CEE0D7883F93583,
10D69FAF17A5412C055943F14DDC9923531FADB82D ] vhdmp
\DRIVERS\vhdmp.sys
09:45:24.0119 0x09e8 vhdmp - ok
09:45:24.0127 0x09e8 [ C829317A37B4BEA8F39735D4B076E923,
7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp
\DRIVERS\viaagp.sys
09:45:24.0129 0x09e8 viaagp - ok
09:45:24.0133 0x09e8 [ E02F079A6AA107F06B16549C6E5C7B74,
F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7
\DRIVERS\viac7.sys
09:45:24.0135 0x09e8 ViaC7 - ok
09:45:24.0138 0x09e8 [ E43574F6A56A0EE11809B48C09E4FD3C,
D70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide
\DRIVERS\viaide.sys

1CE83D9E3276AE380F720C
C:\Windows\system32
1BBE745E4C85F8911076F6
C:\Windows\system32
8C643F43BD001797954838
C:\Windows\system32
DB1B65EEBFB036086EC334
C:\Windows\system32
FBFF3111E22EE0B4BCAFA8
C:\Windows\system32
9FDAA17A3B99067E035E5D
C:\Windows\System32
29B0A8889857CEBFA6CBD7
C:\Windows\system32
BDD3729B49DF2E2FC72FFE
C:\Windows\system32
4F2E742EFE2DE47EE187B3
C:\Windows\System32
829C0416672E2B2DFABCFE
C:\Windows\system32
4DBA3C1397A2203548F45F
C:\Windows\System32
33DF8F7C9A3176175113CA
C:\Windows\system32
55D1796AE750071E1E05BD
C:\Windows\system32
B530DCE3EE4F285B3D5F69
C:\Windows\system32
3687BF638E21C00E62ABFE
C:\Windows\system32

09:45:24.0140 0x09e8 viaide - ok


09:45:24.0158 0x09e8 [ 379B349F65F453D2A6E75EA6B7448E49,
A7B1EBE59533C17E73678D355D1466B5EF3338BF16 ] vmbus
\DRIVERS\vmbus.sys
09:45:24.0163 0x09e8 vmbus - ok
09:45:24.0173 0x09e8 [ EC2BBAB4B84D0738C6C83D2234DC36FE,
97AE5F46E6424FB53C827553E0BB148E31825D6676 ] VMBusHID
\DRIVERS\VMBusHID.sys
09:45:24.0174 0x09e8 VMBusHID - ok
09:45:24.0178 0x09e8 [ 384E5A2AA49934295171E499F86BA6F3,
075144F45436F9979FE1E002B57F9426F3DA96CEF0 ] volmgr
\DRIVERS\volmgr.sys
09:45:24.0180 0x09e8 volmgr - ok
09:45:24.0190 0x09e8 [ B5BB72067DDDDBBFB04B2F89FF8C3C87,
6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx
\drivers\volmgrx.sys
09:45:24.0196 0x09e8 volmgrx - ok
09:45:24.0217 0x09e8 [ 58DF9D2481A56EDDE167E51B334D44FD,
C5A519E794FD2E8C1E6DAD6F5C92B5EB5694CEB8EA ] volsnap
\DRIVERS\volsnap.sys
09:45:24.0223 0x09e8 volsnap - ok
09:45:24.0228 0x09e8 [ 9DFA0CC2F8855A04816729651175B631,
5FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid
\DRIVERS\vsmraid.sys
09:45:24.0232 0x09e8 vsmraid - ok
09:45:24.0273 0x09e8 [ 7EA2BCD94D9CFAF4C556F5CC94532A6C,
D79751DCA8AEC9224B83301821DAA29C9F42B7A9E3 ] VSS
\vssvc.exe
09:45:24.0293 0x09e8 VSS - ok
09:45:24.0319 0x09e8 [ 90567B1E658001E79D7C8BBD3DDE5AA6,
23DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus
\drivers\vwifibus.sys
09:45:24.0321 0x09e8 vwifibus - ok
09:45:24.0329 0x09e8 [ 55187FD710E27D5095D10A472C8BAF1C,
C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time
\w32time.dll
09:45:24.0337 0x09e8 W32Time - ok
09:45:24.0341 0x09e8 [ DE3721E89C653AA281428C8A69745D90,
412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen
\DRIVERS\wacompen.sys
09:45:24.0343 0x09e8 WacomPen - ok
09:45:24.0352 0x09e8 [ 692A712062146E96D28BA0B7D75DE31B,
F09212F48F1EFED42E6BD3F29A5780D0B691D55B34 ] WANARP
\DRIVERS\wanarp.sys
09:45:24.0354 0x09e8 WANARP - ok
09:45:24.0357 0x09e8 [ 692A712062146E96D28BA0B7D75DE31B,
F09212F48F1EFED42E6BD3F29A5780D0B691D55B34 ] Wanarpv6
\DRIVERS\wanarp.sys
09:45:24.0359 0x09e8 Wanarpv6 - ok
09:45:24.0401 0x09e8 [ 7790B77FE1E5EE47DCC66247095BB4C9,
1217C2F46CDDF68121E2846B638EAB620ACA940B05 ] wbengine
\wbengine.exe
09:45:24.0435 0x09e8 wbengine - ok
09:45:24.0452 0x09e8 [ 9614B5D29DC76AC3C29F6D2D3AA70E67,
2DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc
\wbiosrvc.dll
09:45:24.0457 0x09e8 WbioSrvc - ok
09:45:24.0472 0x09e8 [ D0F88AA11EE1A62BCC6D6A8A7783CA11,
A2A0CDC83C1A90E37B5E385209E4D9A0C81922F447 ] wcncsvc
\wcncsvc.dll

F52B1B3AE9F5D38B45C889
C:\Windows\system32
8BA2FA187DAC6994D5A298
C:\Windows\system32
C79271F98506392422325C
C:\Windows\system32
65B9AD55F43940A5FDD88B
C:\Windows\system32
C77D7BE83CF1C0DEC80429
C:\Windows\system32
37FD9E43A2A3F125E94A31
C:\Windows\system32
7CD6637BE0A08E3B0F9991
C:\Windows\system32
EFC23BEEA7F54A2DC56CB5
C:\Windows\System32
AE298E2D3BA366BCBDC092
C:\Windows\system32
501C78056ED4295625D8A5
C:\Windows\system32
B6D260272330E0C8EBFAD8
C:\Windows\system32
B6D260272330E0C8EBFAD8
C:\Windows\system32
FFB541F83CDE32E65007D4
C:\Windows\system32
A2FFB92F0030B4CD771E86
C:\Windows\System32
3DBC1806E6F8CD58A9E93E
C:\Windows\System32

09:45:24.0479 0x09e8 wcncsvc - ok


09:45:24.0498 0x09e8 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710D
A81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System3
2\WcsPlugInService.dll
09:45:24.0501 0x09e8 WcsPlugInService - ok
09:45:24.0505 0x09e8 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E69
45FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd
C:\Windows\system32
\DRIVERS\wd.sys
09:45:24.0506 0x09e8 Wd - ok
09:45:24.0532 0x09e8 [ A840213F1ACDCC175B4D1D5AAEAC0D7A, B20F7CAEEA790290072BC1
70EBEEADB4C19E1C40DB0B3FE0D4A640D0D82300D6 ] Wdf01000
C:\Windows\system32
\drivers\Wdf01000.sys
09:45:24.0544 0x09e8 Wdf01000 - ok
09:45:24.0554 0x09e8 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF
6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost C:\Windows\system32
\wdi.dll
09:45:24.0557 0x09e8 WdiServiceHost - ok
09:45:24.0561 0x09e8 [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF
6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost C:\Windows\system32
\wdi.dll
09:45:24.0563 0x09e8 WdiSystemHost - ok
09:45:24.0587 0x09e8 [ D87C7D2C517F82A5AB7A73E203063D9E, 8861AB4ECEDAE801008BE0
406FCB19418AA2864E89D0776B94E25773E6DB5E88 ] WebClient
C:\Windows\System32
\webclnt.dll
09:45:24.0593 0x09e8 WebClient - ok
09:45:24.0613 0x09e8 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F1
6B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc
C:\Windows\system32
\wecsvc.dll
09:45:24.0618 0x09e8 Wecsvc - ok
09:45:24.0631 0x09e8 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0
DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32
\wercplsupport.dll
09:45:24.0634 0x09e8 wercplsupport - ok
09:45:24.0693 0x09e8 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76D
A6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc
C:\Windows\System32
\WerSvc.dll
09:45:24.0699 0x09e8 WerSvc - ok
09:45:24.0718 0x09e8 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377
A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf
C:\Windows\system32
\DRIVERS\wfplwf.sys
09:45:24.0720 0x09e8 WfpLwf - ok
09:45:24.0735 0x09e8 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810
D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount
C:\Windows\system32
\drivers\wimmount.sys
09:45:24.0737 0x09e8 WIMMount - ok
09:45:24.0797 0x09e8 [ 3FAE8F94296001C32EAB62CD7D82E0FD, 180FAECC426CF8F46700C8
55022E5865D528B1A20686F96D11080AB2FE2E0430 ] WinDefend
C:\Program Files\Wi
ndows Defender\mpsvc.dll
09:45:24.0816 0x09e8 WinDefend - ok
09:45:24.0822 0x09e8 WinHttpAutoProxySvc - ok
09:45:24.0859 0x09e8 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320C
FBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt
C:\Windows\system32
\wbem\WMIsvc.dll
09:45:24.0863 0x09e8 Winmgmt - ok
09:45:24.0940 0x09e8 [ C4F5D3901D1B41D602DDC196E0B95B51, 20FF2A9DEE3ECBFB163DFA
62A407E30ED49F609EF46936F286C2A08A24EA3E7C ] WinRM
C:\Windows\system32
\WsmSvc.dll
09:45:24.0981 0x09e8 WinRM - ok
09:45:25.0014 0x09e8 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0
E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc
C:\Windows\System32

\wlansvc.dll
09:45:25.0031 0x09e8 Wlansvc - ok
09:45:25.0054 0x09e8 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD
0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi
C:\Windows\system32
\DRIVERS\wmiacpi.sys
09:45:25.0056 0x09e8 WmiAcpi - ok
09:45:25.0071 0x09e8 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062AD
BB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv
C:\Windows\system32
\wbem\WmiApSrv.exe
09:45:25.0074 0x09e8 wmiApSrv - ok
09:45:25.0132 0x09e8 [ 77FBD400984CF72BA0FC4B3489D65F74, 9AA404F17177FEB43A9EA1
A86061B452E7C4A93C873E61B68269047519CD433E ] WMPNetworkSvc C:\Program Files\Wi
ndows Media Player\wmpnetwk.exe
09:45:25.0158 0x09e8 WMPNetworkSvc - ok
09:45:25.0173 0x09e8 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC44
9D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc
C:\Windows\System32
\wpcsvc.dll
09:45:25.0176 0x09e8 WPCSvc - ok
09:45:25.0190 0x09e8 [ B7F658A2EBC07129538AD9AB35212637, 86774A760189E4B126C972
A778F890C00C1C30EDD28044DD43B40644A8778B4D ] WPDBusEnum
C:\Windows\system32
\wpdbusenum.dll
09:45:25.0194 0x09e8 WPDBusEnum - ok
09:45:25.0201 0x09e8 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BC
EF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl
C:\Windows\system32
\drivers\ws2ifsl.sys
09:45:25.0203 0x09e8 ws2ifsl - ok
09:45:25.0221 0x09e8 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8
863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc
C:\Windows\System32
\wscsvc.dll
09:45:25.0225 0x09e8 wscsvc - ok
09:45:25.0228 0x09e8 WSearch - ok
09:45:25.0288 0x09e8 [ A33408CC036F9C08142B11BE5E93F0A1, A6CE3681EE4DE3C9A8B8B5
DA4E8E46DB4443A32D1339F7D0893F1F2153635D86 ] wuauserv
C:\Windows\system32
\wuaueng.dll
09:45:25.0339 0x09e8 wuauserv - ok
09:45:25.0360 0x09e8 [ 6F9B6C0C93232CFF47D0F72D6DB1D21E, C685A458951820ED0F09E6
197251CE6FC55AAB75D4FBEFF2992805309239A47A ] WudfPf
C:\Windows\system32
\drivers\WudfPf.sys
09:45:25.0362 0x09e8 WudfPf - ok
09:45:25.0371 0x09e8 [ F91FF1E51FCA30B3C3981DB7D5924252, D7052B58F22638CA8B59C6
FD7408D6D6DD1C33910912CACC05C133472CE0DDCE ] WUDFRd
C:\Windows\system32
\DRIVERS\WUDFRd.sys
09:45:25.0374 0x09e8 WUDFRd - ok
09:45:25.0385 0x09e8 [ DDEE3682FE97037C45F4D7AB467CB8B6, D5A8F07AF4EDD9D7E17FEC
6222D187E2981C177A479511E407756E0E5CB8D387 ] wudfsvc
C:\Windows\System32
\WUDFSvc.dll
09:45:25.0389 0x09e8 wudfsvc - ok
09:45:25.0413 0x09e8 [ FF2D745B560F7C71B31F30F4D49F73D2, B2FBF7E5F58E34AC64FE6C
F65800F1F07939279203BDE89375FAC92B884A4F37 ] WwanSvc
C:\Windows\System32
\wwansvc.dll
09:45:25.0418 0x09e8 WwanSvc - ok
09:45:25.0426 0x09e8 ================ Scan global =============================
==
09:45:25.0468 0x09e8 [ 9A595DF601070DA78C40481120DD2C06, 4C2D6216F212DE9346339E
D29152962A39E4435E70F18DD655156727E70818F6 ] C:\Windows\system32\basesrv.dll
09:45:25.0488 0x09e8 [ 827E4F75901CA3F990B1487D3301841E, A0B17C83D52DB95EDBA81C
6ABD78E5E4E3BB65CB57F977B07172A96D4C2B743B ] C:\Windows\system32\winsrv.dll
09:45:25.0498 0x09e8 [ 827E4F75901CA3F990B1487D3301841E, A0B17C83D52DB95EDBA81C
6ABD78E5E4E3BB65CB57F977B07172A96D4C2B743B ] C:\Windows\system32\winsrv.dll
09:45:25.0518 0x09e8 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF2

7E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
09:45:25.0543 0x09e8 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328
FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
09:45:25.0550 0x09e8 [ Global ] - ok
09:45:25.0550 0x09e8 ================ Scan MBR ================================
==
09:45:25.0559 0x09e8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
09:45:25.0725 0x09e8 \Device\Harddisk0\DR0 - ok
09:45:25.0726 0x09e8 ================ Scan VBR ================================
==
09:45:25.0728 0x09e8 [ 6ECFAB09D0730FD21675510A7724B774 ] \Device\Harddisk0\DR0
\Partition1
09:45:25.0730 0x09e8 \Device\Harddisk0\DR0\Partition1 - ok
09:45:25.0741 0x09e8 [ 2E10CC32FFC4ED9D7981E679C5E6B90D ] \Device\Harddisk0\DR0
\Partition2
09:45:25.0744 0x09e8 \Device\Harddisk0\DR0\Partition2 - ok
09:45:25.0747 0x09e8 [ 303D6B0D6E8079D2BF95728964C94B2E ] \Device\Harddisk0\DR0
\Partition3
09:45:25.0750 0x09e8 \Device\Harddisk0\DR0\Partition3 - ok
09:45:25.0750 0x09e8 ================ Scan generic autorun ====================
==
09:45:25.0985 0x09e8 [ F762317D7DE87AC97FFE62C9996AE088, C5FFFEC2A46A0C191EDE8E
6EC339C6C756EB68CDE97728BAE4043776D9BC5A7D ] C:\Program Files\Realtek\Audio\HDA\
RtkNGUI.exe
09:45:26.0218 0x09e8 RTHDVCPL - ok
09:45:26.0314 0x09e8 [ 17E6EFB233B3F0C9348B0B65137CF88E, DFF64E115F07E8E84345C6
340AB915F374E87973BAE4CC7779C881AA6AF218B6 ] C:\Program Files\Smadav\SMRTP.exe
09:45:26.0360 0x09e8 SMRT-Protection - ok
09:45:26.0439 0x09e8 [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73
DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files\Windows Sidebar\Si
debar.exe
09:45:26.0468 0x09e8 Sidebar - ok
09:45:26.0485 0x09e8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69
C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
09:45:26.0488 0x09e8 mctadmin - ok
09:45:26.0526 0x09e8 [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73
DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files\Windows Sidebar\Si
debar.exe
09:45:26.0559 0x09e8 Sidebar - ok
09:45:26.0564 0x09e8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69
C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
09:45:26.0567 0x09e8 mctadmin - ok
09:45:26.0715 0x09e8 [ 5A6BD2A6FA1323AC96E860DFA6CBC9B6, 9FC091ADF9EF2BDC6E6188
1675A3E0E9E2C7E580776489977CFE6BD3CBC64F10 ] C:\Users\User\AppData\Roaming\uTorr
ent\uTorrent.exe
09:45:26.0782 0x09e8 uTorrent - ok
09:45:27.0080 0x09e8 [ 55F7FB7F84DD9CD45BD506884415D526, 39074CD9CBBE0828D256C3
812DDAC7474A5D190316D0EFCB109315E7B7BE53CB ] C:\Program Files\Internet Download
Manager\IDMan.exe
09:45:27.0170 0x09e8 IDMan - ok
09:45:27.0176 0x09e8 Waiting for KSN requests completion. In queue: 293
09:45:28.0176 0x09e8 Waiting for KSN requests completion. In queue: 293
09:45:29.0176 0x09e8 Waiting for KSN requests completion. In queue: 293
09:45:30.0176 0x09e8 Waiting for KSN requests completion. In queue: 293
09:45:31.0486 0x09e8 Win FW state via NFP2: enabled ( trusted )
09:45:34.0559 0x09e8 ==========================================================
==
09:45:34.0559 0x09e8 Scan finished
09:45:34.0559 0x09e8 ==========================================================
==

09:45:34.0567 0x00b4 Detected object count: 0


09:45:34.0567 0x00b4 Actual detected object count: 0
09:45:39.0152 0x0664 Deinitialize success