TDSSKiller
TDSSKiller
TDSSKiller
\rpcss.dll
23:33:45.0177 0x16ec DcomLaunch - ok
23:33:45.0212 0x16ec [ 8D6E10A2D9A5EED59562D9B82CF804E1,
27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc
\defragsvc.dll
23:33:45.0229 0x16ec defragsvc - ok
23:33:45.0250 0x16ec [ F024449C97EC1E464AAFFDA18593DB88,
14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC
\Drivers\dfsc.sys
23:33:45.0254 0x16ec DfsC - ok
23:33:45.0298 0x16ec [ E9E01EB683C132F7FA27CD607B8A2B63,
3A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp
\dhcpcore.dll
23:33:45.0314 0x16ec Dhcp - ok
23:33:45.0326 0x16ec [ 1A050B0274BFB3890703D490F330C0DA,
D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache
\drivers\discache.sys
23:33:45.0329 0x16ec discache - ok
23:33:45.0351 0x16ec [ 565003F326F99802E68CA78F2A68E9FF,
09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk
\drivers\disk.sys
23:33:45.0353 0x16ec Disk - ok
23:33:45.0367 0x16ec [ 2A958EF85DB1B61FFCA65044FA4BCE9E,
B5BE96C375A521601F66024BDC3EE044C0B6E85D69 ] dmvsc
\drivers\dmvsc.sys
23:33:45.0371 0x16ec dmvsc - ok
23:33:45.0394 0x16ec [ 33EF4861F19A0736B11314AAD9AE28D0,
8F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache
\dnsrslvr.dll
23:33:45.0402 0x16ec Dnscache - ok
23:33:45.0422 0x16ec [ 366BA8FB4B7BB7435E3B9EACB3843F67,
AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc
\dot3svc.dll
23:33:45.0438 0x16ec dot3svc - ok
23:33:45.0474 0x16ec [ 8EC04CA86F1D68DA9E11952EB85973D6,
EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS
\dps.dll
23:33:45.0489 0x16ec DPS - ok
23:33:45.0512 0x16ec [ B918E7C5F9BF77202F89E1A9539F2EB4,
9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud
\drivers\drmkaud.sys
23:33:45.0515 0x16ec drmkaud - ok
23:33:45.0557 0x16ec [ 16498EBC04AE9DD07049A8884B205C05,
6C25B28DBADF02215AA2ED298FA124556FC4992084 ] DXGKrnl
\drivers\dxgkrnl.sys
23:33:45.0578 0x16ec DXGKrnl - ok
23:33:45.0613 0x16ec [ 3EA531906572FFD549B72A10F828E58C,
F80D56C8DE5CDE0C309BC65E0508D98C3E6A00BBEB ] e1kexpress
\DRIVERS\e1k6032.sys
23:33:45.0621 0x16ec e1kexpress - ok
23:33:45.0647 0x16ec [ 8600142FA91C1B96367D3300AD0F3F3A,
C79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost
\eapsvc.dll
23:33:45.0652 0x16ec EapHost - ok
23:33:45.0796 0x16ec [ 024E1B5CAC09731E4D868E64DBFB4AB0,
861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv
\drivers\evbdx.sys
23:33:45.0930 0x16ec ebdrv - ok
23:33:45.0973 0x16ec [ 81951F51E318AECC2D68559E47485CC4,
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] EFS
888F9650F4E872BA8F4E0C
C:\windows\System32
7EF1E241892E098A472BCA
C:\windows\system32
4D9037B458C52287461914
C:\windows\system32
79D74F4679A2EE040FAAF4
C:\windows\system32
ABC42B24DBA4FFC411120E
C:\windows\system32
C83511685EE1CE85A5ADF9
C:\windows\system32
4C4B84365D85758E3263B8
C:\windows\System32
65B7C61ACF34F1F0149045
C:\windows\System32
2E3FBC2D683D1274E8BC45
C:\windows\system32
C589A37DE50BBEF22E2DAA
C:\windows\system32
134EA1C7A2DB984B8EBADF
C:\windows\System32
179D40413E5CB1E46F9486
C:\windows\system32
5713625E27DF11FAAFDA7A
C:\windows\System32
AB0826A74BBEE5B7A1B035
C:\windows\system32
ACF76395EF4A2ED03AB919
C:\windows\System32
\lsass.exe
23:33:45.0977 0x16ec EFS - ok
23:33:46.0027 0x16ec [ A8C362018EFC87BEB013EE28F29C0863,
2618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr
Recvr.exe
23:33:46.0056 0x16ec ehRecvr - ok
23:33:46.0073 0x16ec [ D389BFF34F80CAEDE417BF9D1507996A,
820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched
sched.exe
23:33:46.0078 0x16ec ehSched - ok
23:33:46.0107 0x16ec [ 0ED67910C8C326796FAA00B2BF6D9D3C,
5E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor
\drivers\elxstor.sys
23:33:46.0130 0x16ec elxstor - ok
23:33:46.0144 0x16ec [ 8FC3208352DD3912C94367A206AB3F11,
74B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev
\drivers\errdev.sys
23:33:46.0147 0x16ec ErrDev - ok
23:33:46.0193 0x16ec [ F6916EFC29D9953D5D0DF06882AE8E16,
9B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem
\es.dll
23:33:46.0207 0x16ec EventSystem - ok
23:33:46.0237 0x16ec ew_hwusbdev - ok
23:33:46.0242 0x16ec ew_usbenumfilter - ok
23:33:46.0272 0x16ec [ 2DC9108D74081149CC8B651D3A26207F,
1CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat
\drivers\exfat.sys
23:33:46.0287 0x16ec exfat - ok
23:33:46.0306 0x16ec [ 7E0AB74553476622FB6AE36F73D97D35,
EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat
\drivers\fastfat.sys
23:33:46.0312 0x16ec fastfat - ok
23:33:46.0345 0x16ec [ 967EA5B213E9984CBE270205DF37755B,
D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax
\fxssvc.exe
23:33:46.0370 0x16ec Fax - ok
23:33:46.0386 0x16ec [ E817A017F82DF2A1F8CFDBDA29388B29,
D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc
\drivers\fdc.sys
23:33:46.0389 0x16ec fdc - ok
23:33:46.0404 0x16ec [ F3222C893BD2F5821A0179E5C71E88FB,
4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost
\fdPHost.dll
23:33:46.0407 0x16ec fdPHost - ok
23:33:46.0422 0x16ec [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B,
63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub
\fdrespub.dll
23:33:46.0425 0x16ec FDResPub - ok
23:33:46.0472 0x16ec [ 2BA5E7CFD3308C3BD981C7B1D3B09EA9,
67D35DD4B8A5F17E5462E7CFA2A9FC5FADF309E9AE ] FfeCore
\DRIVERS\FfeCore.sys
23:33:46.0639 0x16ec FfeCore - ok
23:33:46.0696 0x16ec [ 813FD1106CD96F4BD9ACFD5CEEF49E54,
9D999DC22DE61D8B2203E96C49921CBD6561139129 ] FfeDisk
\DRIVERS\FfeDisk.sys
23:33:46.0737 0x16ec FfeDisk - ok
23:33:46.0764 0x16ec [ B67EAF8F94FC3AC519664AE434DFF0A4,
E8BE9C7153F9472752F218848505566FE567A0AB21 ] FfeDsManager
\DRIVERS\FfeDsManager.sys
23:33:46.0841 0x16ec FfeDsManager - ok
07971C681FBD391C0BA017
C:\windows\ehome\eh
12859B9925D7A4631DE61A
C:\windows\ehome\eh
97FAA7627A162B0AEC1554
C:\windows\system32
69B65C12BDADD4B7305086
C:\windows\system32
ED41893960018D5EC2F782
C:\windows\system32
75CB47923A867DDAC51270
C:\windows\system32
41463A255FDA1D550B3385
C:\windows\system32
43153E23210B03FAE16897
C:\windows\system32
4CC9320A21E6FEA2D16C48
C:\windows\system32
A85B947249DBB986358CCD
C:\windows\system32
0E76C29D2A974A3F2FBFCB
C:\windows\system32
1DDF3338776D0BFB8AB347
C:\windows\system32
3FB620D679FAFFAD59E6FE
C:\windows\system32
40CC83E8C5A1FE0FCE43D2
C:\windows\system32
EDB828D596E43372F97DAE
C:\windows\system32
688176DAB91BE569280E48
C:\windows\system32
C008AC42E6478075C690BF
C:\windows\system32
86522358680FBB1CEBC56B
C:\windows\system32
464BFF3F5EEE985BE075E2
C:\windows\system32
60DD2F9915CCA412A8AB2F
C:\windows\system32
4929E5496FD51C73FE7A28
C:\windows\system32
E1DC2C6A5556FCF488D288
C:\windows\system32
2C0D25426F87A34E792AA1
C:\windows\system32
A3AE1E96B04AC81665ABBD
C:\windows\system32
90CF59F20E14E4A5A79326
C:\windows\system32
ACF76395EF4A2ED03AB919
C:\windows\system32
BAC3BAD22207C8826125FD
C:\windows\system32
10BDE041C95D0CCD3591ED
C:\windows\system32
4583CAEEE0D50C0C7CE955
C:\windows\system32
\drivers\mrxdav.sys
23:33:51.0375 0x16ec MRxDAV - ok
23:33:51.0389 0x16ec [ 5D16C921E3671636C0EBA3BBAAC5FD25,
F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb
\DRIVERS\mrxsmb.sys
23:33:51.0394 0x16ec mrxsmb - ok
23:33:51.0414 0x16ec [ 6D17A4791ACA19328C685D256349FEFC,
D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10
\DRIVERS\mrxsmb10.sys
23:33:51.0422 0x16ec mrxsmb10 - ok
23:33:51.0437 0x16ec [ B81F204D146000BE76651A50670A5E9E,
B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20
\DRIVERS\mrxsmb20.sys
23:33:51.0442 0x16ec mrxsmb20 - ok
23:33:51.0455 0x16ec [ 012C5F4E9349E711E11E0F19A8589F0A,
BBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci
\drivers\msahci.sys
23:33:51.0457 0x16ec msahci - ok
23:33:51.0483 0x16ec [ 55055F8AD8BE27A64C831322A780A228,
D0835E8234405BB80084065ED05363B77868397304 ] msdsm
\drivers\msdsm.sys
23:33:51.0488 0x16ec msdsm - ok
23:33:51.0502 0x16ec [ E1BCE74A3BD9902B72599C0192A07E27,
A2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC
\msdtc.exe
23:33:51.0518 0x16ec MSDTC - ok
23:33:51.0538 0x16ec [ DAEFB28E3AF5A76ABCC2C3078C07327F,
7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs
\drivers\Msfs.sys
23:33:51.0540 0x16ec Msfs - ok
23:33:51.0548 0x16ec [ 3E1E5767043C5AF9367F0056295E9F84,
9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf
\drivers\mshidkmdf.sys
23:33:51.0550 0x16ec mshidkmdf - ok
23:33:51.0564 0x16ec [ 0A4E5757AE09FA9622E3158CC1AEF114,
526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv
\drivers\msisadrv.sys
23:33:51.0565 0x16ec msisadrv - ok
23:33:51.0587 0x16ec [ 90F7D9E6B6F27E1A707D4A297F077828,
8842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI
\iscsiexe.dll
23:33:51.0593 0x16ec MSiSCSI - ok
23:33:51.0596 0x16ec msiserver - ok
23:33:51.0616 0x16ec [ 8C0860D6366AAFFB6C5BB9DF9448E631,
17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV
\drivers\MSKSSRV.sys
23:33:51.0619 0x16ec MSKSSRV - ok
23:33:51.0690 0x16ec [ C1F19D2BACBEE9AB64D9AE69E9859AC0,
4C8BF8A521089F62D7207D40F7F3C6E8B6E04090A1 ] MsMpSvc
crosoft Security Client\MsMpEng.exe
23:33:51.0692 0x16ec MsMpSvc - ok
23:33:51.0708 0x16ec [ 3EA8B949F963562CEDBB549EAC0C11CE,
548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK
\drivers\MSPCLOCK.sys
23:33:51.0711 0x16ec MSPCLOCK - ok
23:33:51.0728 0x16ec [ F456E973590D663B1073E9C463B40932,
4772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM
\drivers\MSPQM.sys
23:33:51.0731 0x16ec MSPQM - ok
23:33:51.0757 0x16ec [ 0E008FC4819D238C51D7C93E7B41E560,
5BC107B95CAFC88F51FBB9
C:\windows\system32
012AA3D84EEAAF53780D06
C:\windows\system32
78193D0F967BE9829E53F9
C:\windows\system32
208B92DFCF7AD43202660F
C:\windows\system32
C2C9FD1F61302997117B1C
C:\windows\system32
5162EB623FE64E9DFEAC6C
C:\windows\System32
6EB558532400B489763BAE
C:\windows\system32
B2EDFECD3C14E4FE1BA87D
C:\windows\System32
ED574E420E57374E328C7C
C:\windows\system32
BEFC220EAA730784960074
C:\windows\system32
949C5A14E57F2D7385543C
C:\windows\system32
11F55350EF5219B132A1E0
c:\Program Files\Mi
1B0B2F16A1790282504F3C
C:\windows\system32
48BA6D5580EE7B6A4C06E0
C:\windows\system32
141FCEBDD05874407EAEC3
5A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC
C:\windows\system32
\drivers\MsRPC.sys
23:33:51.0775 0x16ec MsRPC - ok
23:33:51.0791 0x16ec [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B
51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios
C:\windows\system32
\drivers\mssmbios.sys
23:33:51.0793 0x16ec mssmbios - ok
23:33:51.0799 0x16ec [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D
1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE
C:\windows\system32
\drivers\MSTEE.sys
23:33:51.0801 0x16ec MSTEE - ok
23:33:51.0813 0x16ec [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D
4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig
C:\windows\system32
\drivers\MTConfig.sys
23:33:51.0817 0x16ec MTConfig - ok
23:33:51.0835 0x16ec [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A
9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup
C:\windows\system32
\Drivers\mup.sys
23:33:51.0839 0x16ec Mup - ok
23:33:51.0872 0x16ec [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA
693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent
C:\windows\system32
\qagentRT.dll
23:33:51.0895 0x16ec napagent - ok
23:33:51.0947 0x16ec [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC85455
8B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP
C:\windows\system32
\DRIVERS\nwifi.sys
23:33:51.0978 0x16ec NativeWifiP - ok
23:33:52.0038 0x16ec [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F
2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS
C:\windows\system32
\drivers\ndis.sys
23:33:52.0089 0x16ec NDIS - ok
23:33:52.0124 0x16ec [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424B
DA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap
C:\windows\system32
\DRIVERS\ndiscap.sys
23:33:52.0128 0x16ec NdisCap - ok
23:33:52.0147 0x16ec [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD
1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi
C:\windows\system32
\DRIVERS\ndistapi.sys
23:33:52.0150 0x16ec NdisTapi - ok
23:33:52.0173 0x16ec [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813
DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio
C:\windows\system32
\DRIVERS\ndisuio.sys
23:33:52.0178 0x16ec Ndisuio - ok
23:33:52.0191 0x16ec [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB
30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan
C:\windows\system32
\DRIVERS\ndiswan.sys
23:33:52.0198 0x16ec NdisWan - ok
23:33:52.0210 0x16ec [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B69587
15BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy
C:\windows\system32
\drivers\NDProxy.sys
23:33:52.0213 0x16ec NDProxy - ok
23:33:52.0245 0x16ec [ 80B7A96F908DA13617E7E6832C5C6A64, 08B81AFE120B8064B6E001
BDF424168305D55F38AE2071300F57C8EA32BEAE56 ] Net Driver HPZ12 C:\windows\system3
2\HPZinw12.dll
23:33:52.0262 0x16ec Net Driver HPZ12 - ok
23:33:52.0275 0x16ec [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A
298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS
C:\windows\system32
\DRIVERS\netbios.sys
23:33:52.0278 0x16ec NetBIOS - ok
23:33:52.0294 0x16ec [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1
D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT
C:\windows\system32
\DRIVERS\netbt.sys
23:33:52.0310 0x16ec NetBT - ok
23:33:52.0324 0x16ec [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] Netlogon
C:\windows\system32
\lsass.exe
23:33:52.0326 0x16ec Netlogon - ok
23:33:52.0355 0x16ec [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D
303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman
C:\windows\System32
\netman.dll
23:33:52.0372 0x16ec Netman - ok
23:33:52.0411 0x16ec [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7
409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm
C:\windows\System32
\netprofm.dll
23:33:52.0433 0x16ec netprofm - ok
23:33:52.0457 0x16ec [ F476EC40033CDB91EFBE73EB99B8362D, B17535037BC070F9AE1F6B
381C2DBEE27658A8FDE15FB0E061F485EA7C7CBE59 ] NetTcpPortSharing C:\windows\Micros
oft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
23:33:52.0462 0x16ec NetTcpPortSharing - ok
23:33:52.0484 0x16ec [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC
543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960
C:\windows\system32
\drivers\nfrd960.sys
23:33:52.0487 0x16ec nfrd960 - ok
23:33:52.0531 0x16ec [ 832E098BCA8235436FE2D8AE50AC3718, 516147B97266A2985B396C
9637E017CBF7F0E36081BA8812CF535D836F944006 ] NisDrv
C:\windows\system32
\DRIVERS\NisDrvWFP.sys
23:33:52.0539 0x16ec NisDrv - ok
23:33:52.0570 0x16ec [ E570ECA850F30EB740C2E9699DF3D2BD, 56C204800D41A3A950F404
57FA18F6CF8DB80B0A1FAAE0209EBCE83B74549071 ] NisSrv
c:\Program Files\Mi
crosoft Security Client\NisSrv.exe
23:33:52.0594 0x16ec NisSrv - ok
23:33:52.0614 0x16ec [ 912084381D30D8B89EC4E293053F4710, 99B8CD043DF531D4B9725E
D167F63CED220608B2FED3EE8250C217D15762DFD7 ] NlaSvc
C:\windows\System32
\nlasvc.dll
23:33:52.0637 0x16ec NlaSvc - ok
23:33:52.0663 0x16ec [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9
C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs
C:\windows\system32
\drivers\Npfs.sys
23:33:52.0666 0x16ec Npfs - ok
23:33:52.0689 0x16ec [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C
154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi
C:\windows\system32
\nsisvc.dll
23:33:52.0693 0x16ec nsi - ok
23:33:52.0707 0x16ec [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E
1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy
C:\windows\system32
\drivers\nsiproxy.sys
23:33:52.0709 0x16ec nsiproxy - ok
23:33:52.0769 0x16ec [ 5E43D2B0EE64123D4880DFA6626DEFDE, 164413A22DE58B19EA2B41
20034B46D6BE1F424B80C3421E10BE5C81153D049F ] Ntfs
C:\windows\system32
\drivers\Ntfs.sys
23:33:52.0824 0x16ec Ntfs - ok
23:33:52.0845 0x16ec [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013
AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null
C:\windows\system32
\drivers\Null.sys
23:33:52.0847 0x16ec Null - ok
23:33:52.0864 0x16ec [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396
DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid
C:\windows\system32
\drivers\nvraid.sys
23:33:52.0869 0x16ec nvraid - ok
23:33:52.0890 0x16ec [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970D
D29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor
C:\windows\system32
\drivers\nvstor.sys
23:33:52.0897 0x16ec nvstor - ok
23:33:52.0912 0x16ec [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FE
FCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp
C:\windows\system32
\drivers\nv_agp.sys
23:33:52.0917 0x16ec nv_agp - ok
23:33:52.0951 0x16ec [ 4F15919E01025797007393982E777C52, 4820F07C74FA0997DCDE56
A3ABD8D0DB90364C10C55BE571CFB1F59D15BB6CCC ] O2FLASH
C:\windows\system32
\o2flash.exe
23:33:52.0968 0x16ec O2FLASH - ok
23:33:52.0996 0x16ec [ 5F63917FCC257ED11E828230BE594194, 25CE216077DF06F00FB3EE
996A4833868670EC4ACC66DFF1BDAF5830D83F7218 ] O2MDFRDR
C:\windows\system32
\drivers\O2MDFw7.sys
23:33:53.0000 0x16ec O2MDFRDR - ok
23:33:53.0013 0x16ec [ FDC901900D9B1B671B3388C3023BD2EA, 890AA5F358615E198DFE09
3E9C867E35999F9F4428B1A18DA8C5E753CFCC6C30 ] O2MDRRDR
C:\windows\system32
\drivers\O2MDRw7.sys
23:33:53.0017 0x16ec O2MDRRDR - ok
23:33:53.0044 0x16ec [ 4635935FC972C582632BF45C26BFCB0E, ABD4AFD71B3C2BD3F741BB
E3CEC52C4FA63AC78D353101D2E7DC4DE2725D1CA1 ] O2SDIOAssist
C:\windows\system32
\srvany.exe
23:33:53.0047 0x16ec O2SDIOAssist - ok
23:33:53.0058 0x16ec [ 9ED78D24AAB2B1723D4EEBA7030195C5, 178C73B2D497D10AAA2379
4F9E312F77F2CE6586C8C3051AC3C59013C03427CC ] O2SDJRDR
C:\windows\system32
\drivers\o2sdjw7.sys
23:33:53.0058 0x16ec O2SDJRDR - ok
23:33:53.0073 0x16ec [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E
95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394
C:\windows\system32
\drivers\ohci1394.sys
23:33:53.0073 0x16ec ohci1394 - ok
23:33:53.0136 0x16ec [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E1
5FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose
C:\Program Files\Co
mmon Files\Microsoft Shared\Source Engine\OSE.EXE
23:33:53.0151 0x16ec ose - ok
23:33:53.0359 0x16ec [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93
F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc
C:\Program Files\Co
mmon Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:33:53.0551 0x16ec osppsvc - ok
23:33:53.0587 0x16ec [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D73
6B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc
C:\windows\system32
\pnrpsvc.dll
23:33:53.0604 0x16ec p2pimsvc - ok
23:33:53.0635 0x16ec [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644
AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc
C:\windows\system32
\p2psvc.dll
23:33:53.0652 0x16ec p2psvc - ok
23:33:53.0667 0x16ec [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97
DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport
C:\windows\system32
\drivers\parport.sys
23:33:53.0671 0x16ec Parport - ok
23:33:53.0682 0x16ec [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0E
EBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr
C:\windows\system32
\drivers\partmgr.sys
23:33:53.0685 0x16ec partmgr - ok
23:33:53.0690 0x16ec [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D0138
3BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm
C:\windows\system32
\drivers\parvdm.sys
23:33:53.0691 0x16ec Parvdm - ok
23:33:53.0702 0x16ec [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC
018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc
C:\windows\System32
\pcasvc.dll
23:33:53.0709 0x16ec PcaSvc - ok
23:33:53.0725 0x16ec [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD56941
6C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci
C:\windows\system32
\drivers\pci.sys
23:33:53.0731 0x16ec pci - ok
23:33:53.0747 0x16ec [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A6
5FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide
C:\windows\system32
\drivers\pciide.sys
23:33:53.0749 0x16ec pciide - ok
23:33:53.0781 0x16ec [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CC
E3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia
C:\windows\system32
\drivers\pcmcia.sys
23:33:53.0788 0x16ec pcmcia - ok
23:33:53.0812 0x16ec [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF75
0E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw
C:\windows\system32
\drivers\pcw.sys
23:33:53.0816 0x16ec pcw - ok
23:33:53.0859 0x16ec [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884
DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH
C:\windows\system32
\drivers\peauth.sys
23:33:53.0884 0x16ec PEAUTH - ok
23:33:53.0933 0x16ec [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5D
F75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc
C:\windows\system32
\peerdistsvc.dll
23:33:53.0984 0x16ec PeerDistSvc - ok
23:33:54.0033 0x16ec [ 9AC2E22FA79520BA75D0316B5FAF37D1, 2C4950A74580C088747CD9
C69C64EB4D49D79DFB3B6A5431F9EB679022ABC803 ] PinFile
C:\windows\system32
\DRIVERS\PinFile.sys
23:33:54.0056 0x16ec PinFile - ok
23:33:54.0112 0x16ec [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA40204482
4DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla
C:\windows\system32
\pla.dll
23:33:54.0167 0x16ec pla - ok
23:33:54.0208 0x16ec [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D
558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay
C:\windows\system32
\umpnpmgr.dll
23:33:54.0225 0x16ec PlugPlay - ok
23:33:54.0255 0x16ec [ 0C155C5D8942B3CBCF9506A9D376B9AD, 37F4878548DD7063CA31FB
21D6955A45C25F648C332A736DA84DEA5AAE7486AF ] Pml Driver HPZ12 C:\windows\system3
2\HPZipm12.dll
23:33:54.0272 0x16ec Pml Driver HPZ12 - ok
23:33:54.0287 0x16ec [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC8881
2B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg
C:\windows\system32
\pnrpauto.dll
23:33:54.0290 0x16ec PNRPAutoReg - ok
23:33:54.0308 0x16ec [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D73
6B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc
C:\windows\system32
\pnrpsvc.dll
23:33:54.0315 0x16ec PNRPsvc - ok
23:33:54.0352 0x16ec [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342
C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent
C:\windows\System32
\ipsecsvc.dll
23:33:54.0374 0x16ec PolicyAgent - ok
23:33:54.0396 0x16ec [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908F
A5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power
C:\windows\system32
\umpo.dll
23:33:54.0402 0x16ec Power - ok
23:33:54.0431 0x16ec [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246
920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport
C:\windows\system32
\DRIVERS\raspptp.sys
23:33:54.0435 0x16ec PptpMiniport - ok
23:33:54.0467 0x16ec [ 71A9BE69C08F5C87A758FD233CEC5C60, 709CA16879080A00686822
B76A55919197645CC9FBCF8CB8DAB3FB9E18ADDBF7 ] prepdrvr
C:\windows\system32
\DRIVERS\prepdrv.sys
23:33:54.0471 0x16ec prepdrvr - ok
23:33:54.0492 0x16ec [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB0
4007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor
C:\windows\system32
\drivers\processr.sys
23:33:54.0496 0x16ec Processor - ok
23:33:54.0522 0x16ec [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3C
E27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc
C:\windows\system32
\profsvc.dll
23:33:54.0530 0x16ec ProfSvc - ok
23:33:54.0542 0x16ec [ 81951F51E318AECC2D68559E47485CC4, ACF76395EF4A2ED03AB919
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] ProtectedStorage C:\windows\system3
2\lsass.exe
23:33:54.0544 0x16ec ProtectedStorage - ok
23:33:54.0595 0x16ec [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC
6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched
C:\windows\system32
\DRIVERS\pacer.sys
23:33:54.0599 0x16ec Psched - ok
23:33:54.0659 0x16ec [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B
930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300
C:\windows\system32
\drivers\ql2300.sys
23:33:54.0745 0x16ec ql2300 - ok
23:33:54.0776 0x16ec [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F996
8222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx
C:\windows\system32
\drivers\ql40xx.sys
23:33:54.0781 0x16ec ql40xx - ok
23:33:54.0803 0x16ec [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7
676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE
C:\windows\system32
\qwave.dll
23:33:54.0819 0x16ec QWAVE - ok
23:33:54.0831 0x16ec [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9
DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv
C:\windows\system32
\drivers\qwavedrv.sys
23:33:54.0834 0x16ec QWAVEdrv - ok
23:33:54.0849 0x16ec [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB168
9B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd
C:\windows\system32
\DRIVERS\rasacd.sys
23:33:54.0852 0x16ec RasAcd - ok
23:33:54.0887 0x16ec [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE
631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn
C:\windows\system32
\DRIVERS\AgileVpn.sys
23:33:54.0890 0x16ec RasAgileVpn - ok
23:33:54.0909 0x16ec [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635
F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto
C:\windows\System32
\rasauto.dll
23:33:54.0915 0x16ec RasAuto - ok
23:33:54.0928 0x16ec [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7
DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp
C:\windows\system32
\DRIVERS\rasl2tp.sys
23:33:54.0932 0x16ec Rasl2tp - ok
23:33:54.0956 0x16ec [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2B
AF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan
C:\windows\System32
\rasmans.dll
23:33:54.0973 0x16ec RasMan - ok
23:33:54.0985 0x16ec [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E
78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe
C:\windows\system32
\DRIVERS\raspppoe.sys
23:33:54.0989 0x16ec RasPppoe - ok
23:33:55.0016 0x16ec [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB
795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp
C:\windows\system32
\DRIVERS\rassstp.sys
23:33:55.0019 0x16ec RasSstp - ok
23:33:55.0035 0x16ec [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F
97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss
C:\windows\system32
\DRIVERS\rdbss.sys
23:33:55.0050 0x16ec rdbss - ok
23:33:55.0059 0x16ec [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F9
1F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus
C:\windows\system32
\drivers\rdpbus.sys
23:33:55.0062 0x16ec rdpbus - ok
23:33:55.0072 0x16ec [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3
508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD
C:\windows\system32
\DRIVERS\RDPCDD.sys
23:33:55.0075 0x16ec RDPCDD - ok
23:33:55.0090 0x16ec [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA11
34CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR
C:\windows\system32
\drivers\rdpdr.sys
23:33:55.0096 0x16ec RDPDR - ok
23:33:55.0117 0x16ec [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BD
E4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD
C:\windows\system32
\drivers\rdpencdd.sys
23:33:55.0119 0x16ec RDPENCDD - ok
23:33:55.0129 0x16ec [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C
920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP
C:\windows\system32
\drivers\rdprefmp.sys
23:33:55.0131 0x16ec RDPREFMP - ok
23:33:55.0149 0x16ec [ 68A0387F58E226DEEE23D9715955572A, F95BB1D2BB3E79AF47B1C7
15BB5E3003EEF888AAA963F46F4A2FE8AFBD4F37A4 ] RdpVideoMiniport C:\windows\system3
2\drivers\rdpvideominiport.sys
23:33:55.0151 0x16ec RdpVideoMiniport - ok
23:33:55.0183 0x16ec [ F031683E6D1FEA157ABB2FF260B51E61, 83B552819A5964152882C5
27E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD
C:\windows\system32
\drivers\RDPWD.sys
23:33:55.0199 0x16ec RDPWD - ok
23:33:55.0216 0x16ec [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259E
A362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost
C:\windows\system32
\drivers\rdyboost.sys
23:33:55.0231 0x16ec rdyboost - ok
23:33:55.0257 0x16ec [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DA
E53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess
C:\windows\System32
\mprdim.dll
23:33:55.0262 0x16ec RemoteAccess - ok
23:33:55.0287 0x16ec [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40B
FA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\windows\system32
\regsvc.dll
23:33:55.0293 0x16ec RemoteRegistry - ok
23:33:55.0327 0x16ec [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83
DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper
C:\windows\System32
\RpcEpMap.dll
23:33:55.0332 0x16ec RpcEptMapper - ok
23:33:55.0360 0x16ec [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0
154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator
C:\windows\system32
\locator.exe
23:33:55.0366 0x16ec RpcLocator - ok
23:33:55.0391 0x16ec [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331
F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs
\rpcss.dll
23:33:55.0403 0x16ec RpcSs - ok
23:33:55.0432 0x16ec [ 032B0D36AD92B582D869879F5AF5B928,
9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr
\DRIVERS\rspndr.sys
23:33:55.0435 0x16ec rspndr - ok
23:33:55.0448 0x16ec [ 7FA7F2E249A5DCBB7970630E15E1F482,
DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap
\drivers\vms3cap.sys
23:33:55.0450 0x16ec s3cap - ok
23:33:55.0461 0x16ec [ 81951F51E318AECC2D68559E47485CC4,
A9DA04D3A4C03B4D0EDC60BE123B3BE1AFE78BC71B ] SamSs
\lsass.exe
23:33:55.0463 0x16ec SamSs - ok
23:33:55.0484 0x16ec [ 05D860DA1040F111503AC416CCEF2BCA,
E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port
\drivers\sbp2port.sys
23:33:55.0488 0x16ec sbp2port - ok
23:33:55.0503 0x16ec [ 8FC518FFE9519C2631D37515A68009C4,
7F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr
\SCardSvr.dll
23:33:55.0511 0x16ec SCardSvr - ok
23:33:55.0526 0x16ec [ 0693B5EC673E34DC147E195779A4DCF6,
A67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter
\DRIVERS\scfilter.sys
23:33:55.0529 0x16ec scfilter - ok
23:33:55.0582 0x16ec [ A04BB13F8A72F8B6E8B4071723E4E336,
7C455324C8437F9CF398153E269543588B65389502 ] Schedule
\schedsvc.dll
23:33:55.0633 0x16ec Schedule - ok
23:33:55.0649 0x16ec [ 319C6B309773D063541D01DF8AC6F55F,
A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc
\certprop.dll
23:33:55.0664 0x16ec SCPolicySvc - ok
23:33:55.0680 0x16ec [ F844A4F3568E4E4486E9F4195670D706,
5B0F91A441DC9B2580BC89A2CBFFCD3EE3A40C176E ] SDDisk2K
\DRIVERS\SDDisk2K.sys
23:33:55.0695 0x16ec SDDisk2K - ok
23:33:55.0711 0x16ec [ D3BB46AA6A1A8686DF85557751D9BFA6,
4A6FAA0941F9A8CDBFA3824460BA34AA7840B18363 ] SDDToki
\DRIVERS\SDDToki.sys
23:33:55.0727 0x16ec SDDToki - ok
23:33:55.0727 0x16ec [ 73462C8830AEE3DDE7A91E00D7902E29,
83CC0C4E33A77EA8845907FC3997471E3583844FE0 ] SDDVD
\DRIVERS\SDDVD.sys
23:33:55.0727 0x16ec SDDVD - ok
23:33:55.0758 0x16ec [ 08236C4BCE5EDD0A0318A438AF28E0F7,
AD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC
\SDRSVC.dll
23:33:55.0758 0x16ec SDRSVC - ok
23:33:55.0773 0x16ec [ 1A7DA2DEC8F6DED4328F5205343345D8,
412E96731BA19AA49D5421F01309578AC979AE1D2F ] SDUPC
\DRIVERS\SDUPC.sys
23:33:55.0773 0x16ec SDUPC - ok
23:33:55.0789 0x16ec [ 4AA7B229F6EFCF3ABB299636D4CA662A,
DF165978DB29FC7675971215DBE7282DA1E26942B1 ] SDVCE
\DRIVERS\SDVCE.sys
23:33:55.0836 0x16ec SDVCE - ok
23:33:55.0929 0x16ec [ 90A3935D05B494A5A39D37E71F09A677,
C:\windows\system32
0F8F18A6A0A689957B886D
C:\windows\system32
9633B193F3FDA67BC551C6
C:\windows\system32
ACF76395EF4A2ED03AB919
C:\windows\system32
DAE2F37D09A5A42F945BC8
C:\windows\system32
21E10585470CF9FC3BD197
C:\windows\System32
AF1B56FBF3ADABF94CD9DB
C:\windows\system32
E63287FF71C39CBF64C334
C:\windows\system32
182F392FE839499D159A30
C:\windows\System32
12EF0ADB19E8B1ACDBBDA2
C:\windows\system32
6E5435030B488CFAA30A11
C:\windows\system32
2F434F3DAD9276359C8B47
C:\windows\system32
77727F963F63C4CEC11E7A
C:\windows\System32
B0C60C491EDD4E24F93F00
C:\windows\system32
5E67516B983EAE168939F1
C:\windows\system32
F72733A69BC6E1A2BB91D7
632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv
C:\windows\system32
\drivers\secdrv.sys
23:33:55.0929 0x16ec secdrv - ok
23:33:55.0945 0x16ec [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AA
F39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon
C:\windows\system32
\seclogon.dll
23:33:55.0945 0x16ec seclogon - ok
23:33:55.0961 0x16ec [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEF
E613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS
C:\windows\System32
\sens.dll
23:33:55.0961 0x16ec SENS - ok
23:33:55.0976 0x16ec [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28
198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc
C:\windows\system32
\sensrsvc.dll
23:33:55.0992 0x16ec SensrSvc - ok
23:33:56.0007 0x16ec [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D4
6065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum
C:\windows\system32
\drivers\serenum.sys
23:33:56.0007 0x16ec Serenum - ok
23:33:56.0023 0x16ec [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA9
49DB97595CC32332D9321DF68283BFC102E66D766F ] Serial
C:\windows\system32
\drivers\serial.sys
23:33:56.0039 0x16ec Serial - ok
23:33:56.0039 0x16ec [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A
9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse
C:\windows\system32
\drivers\sermouse.sys
23:33:56.0039 0x16ec sermouse - ok
23:33:56.0076 0x16ec [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF30
57867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv
C:\windows\system32
\sessenv.dll
23:33:56.0084 0x16ec SessionEnv - ok
23:33:56.0098 0x16ec [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206E
E7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk
C:\windows\system32
\drivers\sffdisk.sys
23:33:56.0101 0x16ec sffdisk - ok
23:33:56.0110 0x16ec [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF
7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc
C:\windows\system32
\drivers\sffp_mmc.sys
23:33:56.0113 0x16ec sffp_mmc - ok
23:33:56.0124 0x16ec [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC083
8457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd
C:\windows\system32
\drivers\sffp_sd.sys
23:33:56.0127 0x16ec sffp_sd - ok
23:33:56.0140 0x16ec [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC
6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy
C:\windows\system32
\drivers\sfloppy.sys
23:33:56.0142 0x16ec sfloppy - ok
23:33:56.0182 0x16ec [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C
6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess
C:\windows\System32
\ipnathlp.dll
23:33:56.0204 0x16ec SharedAccess - ok
23:33:56.0231 0x16ec [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506
A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\windows\System3
2\shsvcs.dll
23:33:56.0256 0x16ec ShellHWDetection - ok
23:33:56.0274 0x16ec [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F
12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp
C:\windows\system32
\drivers\sisagp.sys
23:33:56.0277 0x16ec sisagp - ok
23:33:56.0294 0x16ec [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCB
FFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2
\drivers\SiSRaid2.sys
23:33:56.0297 0x16ec SiSRaid2 - ok
23:33:56.0309 0x16ec [ 3727097B55738E2F554972C3BE5BC1AA,
B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4
\drivers\sisraid4.sys
23:33:56.0314 0x16ec SiSRaid4 - ok
23:33:56.0368 0x16ec [ 3E587DBBDFF938DDE5D4CE4047BE9041,
AEC4B25120CF09F8C35702F645922D618FE57B5E05 ] SkypeUpdate
ype\Updater\Updater.exe
23:33:56.0389 0x16ec SkypeUpdate - ok
23:33:56.0418 0x16ec [ 3E21C083B8A01CB70BA1F09303010FCE,
49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb
\DRIVERS\smb.sys
23:33:56.0423 0x16ec Smb - ok
23:33:56.0453 0x16ec smstsmgr - ok
23:33:56.0491 0x16ec [ 6A984831644ECA1A33FFEAE4126F4F37,
92B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP
\snmptrap.exe
23:33:56.0496 0x16ec SNMPTRAP - ok
23:33:56.0520 0x16ec [ 95CF1AE7527FB70F7816563CBC09D942,
9C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr
\drivers\spldr.sys
23:33:56.0524 0x16ec spldr - ok
23:33:56.0561 0x16ec [ 9AEA093B8F9C37CF45538382CABA2475,
DB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler
\spoolsv.exe
23:33:56.0585 0x16ec Spooler - ok
23:33:56.0692 0x16ec [ CF87A1DE791347E75B98885214CED2B8,
28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc
\sppsvc.exe
23:33:56.0835 0x16ec sppsvc - ok
23:33:56.0859 0x16ec [ B0180B20B065D89232A78A40FE56EAA6,
0119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify
\sppuinotify.dll
23:33:56.0863 0x16ec sppuinotify - ok
23:33:56.0884 0x16ec [ E4C2764065D66EA1D2D3EBC28FE99C46,
55C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv
\DRIVERS\srv.sys
23:33:56.0901 0x16ec srv - ok
23:33:56.0919 0x16ec [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB,
C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2
\DRIVERS\srv2.sys
23:33:56.0935 0x16ec srv2 - ok
23:33:56.0954 0x16ec [ BE6BD660CAA6F291AE06A718A4FA8ABC,
9194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet
\DRIVERS\srvnet.sys
23:33:56.0959 0x16ec srvnet - ok
23:33:56.0980 0x16ec [ D887C9FD02AC9FA880F6E5027A43E118,
090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV
\ssdpsrv.dll
23:33:56.0997 0x16ec SSDPSRV - ok
23:33:57.0024 0x16ec [ D318F23BE45D5E3A107469EB64815B50,
9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc
\sstpsvc.dll
23:33:57.0030 0x16ec SstpSvc - ok
23:33:57.0085 0x16ec [ 7CEA197BC33AD398B27CFDAE4455F2DF,
40E3B148E7D5F532C430EE0D55804E6A1C8E14BAEA ] STacSV
T\WDM\STacSV.exe
23:33:57.0101 0x16ec STacSV - ok
C:\windows\system32
75D52A596A298C33EC79A3
C:\windows\system32
CA13B2C50FB09365362077
C:\Program Files\Sk
803F8F91299C387110F34A
C:\windows\system32
753E23D2B33D47C52C05D8
C:\windows\System32
CE8BACB91A5A86CBCE8261
C:\windows\system32
CC63239C412067AA72318A
C:\windows\System32
7AF4E03D751C951A4E5FBA
C:\windows\system32
4D045B23AD58A8822BE9F2
C:\windows\system32
043AEF06A23069DD176759
C:\windows\system32
4DF31206DF8F33C2975E23
C:\windows\system32
CD38939CFBA80B882D3809
C:\windows\system32
F38BAD90EC791368C37C21
C:\windows\System32
D74355E6FF215AA8CE53BC
C:\windows\system32
2238956165E45D7EB1C1A3
C:\Program Files\ID
51F975AF029AD015576FFF
C:\windows\system32
C1CDDF7DABAE531C53290C
C:\windows\system32
0146931B733CAB1CD87F94
C:\windows\system32
E1A95C59148FE463539C34
C:\windows\system32
BAD6FC3BEE45E644D5A6A0
C:\windows\system32
1B54EFA60A221E2B9FFE59
C:\windows\system32
5D96D90FDF68AE470CC92C
C:\windows\system32
D4130DB4AE76EE6DC0B8E7
C:\windows\system32
24C001E422C3B3B920CDCF
C:\windows\system32
FFC57B647147DE2957A7DE
C:\windows\System32
15F2F637470859672FE93E
C:\Program Files\Co
C0C3067A305993CBF056C2
C:\windows\System32
1DBAFF733DE5C1A6A2374B
C:\windows\system32
6CB41D8644618A5F701F6C
C:\windows\system32
B3FDEE4A8F1C7EC12405D9
C:\windows\system32
3ACB621D57BC8691DBBCDE
C:\windows\system32
EF69D0253CC8F1D29929FD
C:\windows\system32
1BBE745E4C85F8911076F6
C:\windows\system32
AD8E7A16B23B244B7F8346
C:\windows\system32
142781FE2FF93B269D8FA1
C:\windows\system32
9FDAA17A3B99067E035E5D
C:\windows\System32
ACF76395EF4A2ED03AB919
C:\windows\system32
BDD3729B49DF2E2FC72FFE
C:\windows\system32
582E4706C1D6A151020D14
C:\windows\System32
829C0416672E2B2DFABCFE
C:\windows\system32
4DBA3C1397A2203548F45F
C:\windows\System32
2721D0659AA890172FCAD4
C:\windows\system32
55D1796AE750071E1E05BD
C:\windows\system32
B530DCE3EE4F285B3D5F69
C:\windows\system32
3687BF638E21C00E62ABFE
C:\windows\system32
FE499F189B5016FCE0018A
C:\windows\system32
2018B2A84C73E0834200A5
C:\windows\system32
9796BD4B9CFEEEAF57C5E3
C:\windows\system32
65B9AD55F43940A5FDD88B
C:\windows\system32
DAE544ED99D2CF570DA313
C:\windows\system32
37FD9E43A2A3F125E94A31
C:\windows\system32
1A431F6409F8E0531F600F
C:\windows\system32
EFC23BEEA7F54A2DC56CB5
C:\windows\system32
3A130B28F2BFA7DCEC8596
C:\windows\system32
32AFE18B07FECA30BC9583
C:\windows\system32
AE298E2D3BA366BCBDC092
C:\windows\system32
501C78056ED4295625D8A5
C:\windows\system32
35284174A42039C3C1FF8A
C:\windows\system32
35284174A42039C3C1FF8A
C:\windows\system32
FFAE53B6B53AEFC9E8A10B
C:\windows\system32
47482A64F7CB2F5EF69AFA8FA07D563CA2B0A37561 ] WUDFRd
C:\windows\system32
\DRIVERS\WUDFRd.sys
23:34:01.0503 0x16ec WUDFRd - ok
23:34:01.0510 0x16ec [ 8D1E1E529A2C9E9B6A85B55A345F7629, 64B637CFE2AF58A4F7CE6D
8C3D603F8EFD527500F7137E0A37840313C712CA93 ] wudfsvc
C:\windows\System32
\WUDFSvc.dll
23:34:01.0514 0x16ec wudfsvc - ok
23:34:01.0539 0x16ec [ 3C5E51C05BE9B56EAFF4E388C3AB25E4, 10D9FDEDAB1FB2E76D5466
1AFA5C1A6B1B0980525F38F5D061537077841C6AEE ] WwanSvc
C:\windows\System32
\wwansvc.dll
23:34:01.0555 0x16ec WwanSvc - ok
23:34:01.0584 0x16ec ================ Scan global =============================
==
23:34:01.0618 0x16ec [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D
0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\windows\system32\basesrv.dll
23:34:01.0646 0x16ec [ 1F5F07091D50244F17DD8D5147A628CC, 2F2B84BD1C052F44662960
953C0EC91F9233D4D8DD06512E3E3BE43CE216BCB6 ] C:\windows\system32\winsrv.dll
23:34:01.0680 0x16ec [ 1F5F07091D50244F17DD8D5147A628CC, 2F2B84BD1C052F44662960
953C0EC91F9233D4D8DD06512E3E3BE43CE216BCB6 ] C:\windows\system32\winsrv.dll
23:34:01.0693 0x16ec [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF2
7E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\windows\system32\sxssrv.dll
23:34:01.0718 0x16ec [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328
FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\windows\system32\services.exe
23:34:01.0726 0x16ec [ Global ] - ok
23:34:01.0726 0x16ec ================ Scan MBR ================================
==
23:34:01.0734 0x16ec [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
23:34:01.0981 0x16ec \Device\Harddisk0\DR0 - ok
23:34:01.0982 0x16ec ================ Scan VBR ================================
==
23:34:01.0987 0x16ec [ 5C22EE28CF175251EF58CA2E691196DB ] \Device\Harddisk0\DR0
\Partition1
23:34:01.0991 0x16ec \Device\Harddisk0\DR0\Partition1 - ok
23:34:01.0997 0x16ec [ AA1E88587DF57CE47DD24CE79A4E4B08 ] \Device\Harddisk0\DR0
\Partition2
23:34:02.0001 0x16ec \Device\Harddisk0\DR0\Partition2 - ok
23:34:02.0002 0x16ec Waiting for KSN requests completion. In queue: 169
23:34:03.0008 0x16ec Waiting for KSN requests completion. In queue: 169
23:34:04.0010 0x16ec Waiting for KSN requests completion. In queue: 169
23:34:05.0040 0x16ec AV detected via SS2: System Center 2012 Endpoint Protectio
n, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.2.223.0 ), 0x61000
( enabled : updated )
23:34:05.0055 0x16ec Win FW state via NFP2: enabled
23:34:07.0573 0x16ec ==========================================================
==
23:34:07.0573 0x16ec Scan finished
23:34:07.0573 0x16ec ==========================================================
==
23:34:07.0589 0x16f0 Detected object count: 0
23:34:07.0589 0x16f0 Actual detected object count: 0
23:34:21.0752 0x1654 Deinitialize success