00:14:00.0718 0x2dac TDSS rootkit removing tool 3.0.0.26 Mar 24 2014 07:28:43 00:14:12.0535 0x2dac ============================================================ 00:14:12.0535 0x2dac Current date / time: 2014/03/25 00:14:12.0535 00:14:12.0535 0x2dac SystemInfo: 00:14:12.0535 0x2dac 00:14:12.0535 0x2dac OS Version: 5.1.2600 ServicePack: 3.0 00:14:12.0535 0x2dac Product type: Workstation 00:14:12.0535 0x2dac ComputerName: PORTABLE-B486C8 00:14:12.0535 0x2dac UserName: thierry enos 00:14:12.0535 0x2dac Windows directory: C:\WINDOWS 00:14:12.0535 0x2dac System windows directory: C:\WINDOWS 00:14:12.0535 0x2dac Processor architecture: Intel x86 00:14:12.0535 0x2dac Number of processors: 1 00:14:12.0535 0x2dac Page size: 0x1000 00:14:12.0535 0x2dac Boot type: Normal boot 00:14:12.0535 0x2dac ============================================================ 00:14:17.0362 0x2dac KLMD registered as C:\WINDOWS\system32\drivers\35230753.sys 00:14:18.0604 0x2dac System UUID: {0EFF6623-1FA7-CB5E-03EE-E1E1C65A788E} 00:14:22.0479 0x2dac Drive \Device\Harddisk0\DR0 - Size: 0x4A8530000 (18.63 Gb), SectorSize: 0x200, Cylinders: 0x980, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 00:14:22.0569 0x2dac ============================================================ 00:14:22.0569 0x2dac \Device\Harddisk0\DR0: 00:14:22.0569 0x2dac MBR partitions: 00:14:22.0569 0x2dac \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2542941 00:14:22.0569 0x2dac ============================================================ 00:14:22.0670 0x2dac C: <-> \Device\Harddisk0\DR0\Partition1 00:14:22.0670 0x2dac ============================================================ 00:14:22.0670 0x2dac Initialize success 00:14:22.0670 0x2dac ============================================================ 00:14:35.0868 0x2f80 ============================================================ 00:14:35.0868 0x2f80 Scan started 00:14:35.0868 0x2f80 Mode: Manual; 00:14:35.0868 0x2f80 ============================================================ 00:14:35.0868 0x2f80 KSN ping started 00:14:51.0701 0x2f80 KSN ping finished: true 00:14:54.0585 0x2f80 ================ Scan system memory ======================== 00:14:54.0726 0x2f80 System memory - ok 00:14:54.0746 0x2f80 ================ Scan services ============================= 00:14:55.0156 0x2f80 Abiosdsk - ok 00:14:55.0186 0x2f80 abp480n5 - ok 00:14:55.0276 0x2f80 [ 0F2D66D5F08EBE2F77BB904288DCF6F0, 5969A64B6995DCAF16F9A76BD1235472F76D71DFE629B956221D2C3D73EDF98A ] ac97intc C:\WINDOWS\system32\drivers\ac97intc.sys 00:14:55.0306 0x2f80 ac97intc - ok 00:14:55.0937 0x2f80 [ E5E6DBFC41EA8AAD005CB9A57A96B43B, A02A0EDC9F646406CA136ACE5A21E9FC7B70D21EC1440BDA4F98A95804EFCBD4 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 00:14:56.0068 0x2f80 ACPI - ok 00:14:56.0248 0x2f80 [ E4ABC1212B70BB03D35E60681C447210, 8EB16B67A6D44DA7A4C2090195F1A24A58CA97DA66F66958F5CD6C5695648F2F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 00:14:56.0248 0x2f80 ACPIEC - ok 00:14:56.0288 0x2f80 adpu160m - ok 00:14:56.0408 0x2f80 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys 00:14:56.0458 0x2f80 aec - ok 00:14:56.0558 0x2f80 [ 023867B6606FBABCDD52E089C4A507DA, 30BE26F63B7EC6C9607AB46A97ACE83DD8140191D28BAB9E6292DA835A922289 ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys 00:14:56.0568 0x2f80 AegisP - ok 00:14:56.0688 0x2f80 [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD C:\WINDOWS\System32\drivers\afd.sys 00:14:56.0728 0x2f80 AFD - ok 00:14:56.0909 0x2f80 [ 08FD04AA961BDC77FB983F328334E3D7, A784EC8A9EDB579262366B5A9AB177DB7BEC0A421BDE85431D0AD4959D5AF5E7 ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys 00:14:56.0919 0x2f80 agp440 - ok 00:14:56.0949 0x2f80 Aha154x - ok 00:14:56.0979 0x2f80 aic78u2 - ok 00:14:57.0019 0x2f80 aic78xx - ok 00:14:57.0089 0x2f80 [ 758FDC60D41716EF889D849989B4B1CD, 87D1D86D10ADADEB70F8F1AED738D31EFD30BF78886C4A33A9FA571B469A9F0F ] Alerter C:\WINDOWS\system32\alrsvc.dll 00:14:57.0089 0x2f80 Alerter - ok 00:14:57.0159 0x2f80 [ 5E9A6658A2A69AE7EB195113B7A2E7A9, AE32F1EB1BCA48D69FCD8C8739A8FAB2B9433B0765510D2A0AFDFB7E9D911A68 ] ALG C:\WINDOWS\System32\alg.exe 00:14:57.0179 0x2f80 ALG - ok 00:14:57.0209 0x2f80 AliIde - ok 00:14:57.0239 0x2f80 amsint - ok 00:14:57.0279 0x2f80 AppMgmt - ok 00:14:57.0309 0x2f80 asc - ok 00:14:57.0339 0x2f80 asc3350p - ok 00:14:57.0379 0x2f80 asc3550 - ok 00:14:57.0680 0x2f80 [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 00:14:57.0750 0x2f80 aspnet_state - ok 00:14:57.0800 0x2f80 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 00:14:57.0810 0x2f80 AsyncMac - ok 00:14:58.0000 0x2f80 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 00:14:58.0020 0x2f80 atapi - ok 00:14:58.0080 0x2f80 Atdisk - ok 00:14:58.0391 0x2f80 [ 417352592432F5368A8296F7FB73BECF, AE8C9D3AD945A500CB3449EFE63789B506D7A4AD5CF15EE8C83D2C83CDD424D5 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys 00:14:58.0621 0x2f80 ati2mtag - ok 00:14:58.0721 0x2f80 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 00:14:58.0741 0x2f80 Atmarpc - ok 00:14:58.0832 0x2f80 [ B4005AEF7873144634765B570DAC466E, 57D16C46EF3E94718E4789EDE3F7AE6477B8D1960C044C9A893D4C2F544BFE4B ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 00:14:58.0942 0x2f80 AudioSrv - ok 00:14:59.0012 0x2f80 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 00:14:59.0012 0x2f80 audstub - ok 00:14:59.0092 0x2f80 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys 00:14:59.0092 0x2f80 Beep - ok 00:14:59.0282 0x2f80 [ BAA0B6E647C1AD593E9BAE5CC31BCFFB, B88506D2FE38238DCC2159996D167DABE3FF9B14192193E1DA72DA8E3872F4A4 ] BITS C:\WINDOWS\system32\qmgr.dll 00:14:59.0583 0x2f80 BITS - ok 00:14:59.0693 0x2f80 [ 952322AE7F95A21F3EEDA99C36C68663, 8369556005847E2DCDE313962FF4B229FB582F3CCADA2C8A656B751F68266B40 ] Browser C:\WINDOWS\System32\browser.dll 00:14:59.0713 0x2f80 Browser - ok 00:14:59.0783 0x2f80 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 00:14:59.0793 0x2f80 cbidf2k - ok 00:14:59.0823 0x2f80 cd20xrnt - ok 00:15:00.0013 0x2f80 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 00:15:00.0023 0x2f80 Cdaudio - ok 00:15:00.0103 0x2f80 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 00:15:00.0123 0x2f80 Cdfs - ok 00:15:00.0214 0x2f80 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 00:15:00.0234 0x2f80 Cdrom - ok 00:15:00.0254 0x2f80 Changer - ok 00:15:00.0304 0x2f80 [ 793EF38A5FD086C3C8E48A8A861562ED, D30E90FAEB2D583B92B17E3A8AE14B1ACD8BA876F1FB9331D019AD36EFC8B12F ] CiSvc C:\WINDOWS\system32\cisvc.exe 00:15:00.0314 0x2f80 CiSvc - ok 00:15:00.0364 0x2f80 [ 8B30CBB0C07D49B2658FB190946B0E7E, 23D4B368FA215DEF31E927D087260FC81DAB1AB7BBB995892990FE4A5CB5CDC0 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 00:15:00.0384 0x2f80 ClipSrv - ok 00:15:00.0524 0x2f80 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 00:15:00.0734 0x2f80 clr_optimization_v2.0.50727_32 - ok 00:15:00.0794 0x2f80 [ 0F6C187D38D98F8DF904589A5F94D411, DB987093446216CEE913AC27503BF7E23E5A62DF169B355730285DAB64F6ED28 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys 00:15:00.0804 0x2f80 CmBatt - ok 00:15:00.0834 0x2f80 CmdIde - ok 00:15:00.0985 0x2f80 [ 6E4C9F21F0FAE8940661144F41B13203, 731202A0DD021FCF9287FEA631212603AAAC23F9E7F76B2882F913B18A971F1C ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys 00:15:00.0985 0x2f80 Compbatt - ok 00:15:01.0025 0x2f80 COMSysApp - ok 00:15:01.0095 0x2f80 Cpqarray - ok 00:15:01.0185 0x2f80 [ 7A6D0B71035E123FDDA2156A25578AD3, 4893ADB1983E6C8E3BD94A1E29136C4BB60EE49017DF062FFD3701397413197C ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 00:15:01.0205 0x2f80 CryptSvc - ok 00:15:01.0245 0x2f80 dac2w2k - ok 00:15:01.0275 0x2f80 dac960nt - ok 00:15:01.0495 0x2f80 [ 0203B1AAD358F206CB0A3C1F93CCE17A, 1FA6D7713CA597F751CD84BD6694914273F297D5664AF9BE70875C3321C6C740 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 00:15:01.0616 0x2f80 DcomLaunch - ok 00:15:01.0716 0x2f80 [ 318F535DC05551D96DEEB90B6D6904DE, 77856DFB059C1BD6D6B91120A66F0BDE960D78B135EB9DA2D704B73229A9779A ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 00:15:01.0756 0x2f80 Dhcp - ok 00:15:01.0856 0x2f80 [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 00:15:01.0866 0x2f80 Disk - ok 00:15:01.0996 0x2f80 dmadmin - ok 00:15:02.0347 0x2f80 [ F5DEADD42335FB33EDCA74ECB2F36CBA, CCCCC041EFE49AEDE02A4EF05282EC3D2417D4B95511F8C5FB455A10AB9E9D78 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 00:15:02.0617 0x2f80 dmboot - ok 00:15:02.0747 0x2f80 [ 5A7C47C9B3F9FB92A66410A7509F0C71, 484612038BF8CF868D6EEBDA4EB0AB56EE317E78A33C9C1C0E8EA19D97F206E4 ] dmio C:\WINDOWS\system32\drivers\dmio.sys 00:15:02.0797 0x2f80 dmio - ok 00:15:02.0867 0x2f80 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys 00:15:02.0867 0x2f80 dmload - ok 00:15:03.0048 0x2f80 [ 6797C23D6B79935482D7F0E8CA5E5B67, 3DBFD7A5261D2838453E85D20CBD1C599E9EB1AD5889AF9DBD51CC9E59230F2F ] dmserver C:\WINDOWS\System32\dmserver.dll 00:15:03.0048 0x2f80 dmserver - ok 00:15:03.0128 0x2f80 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 00:15:03.0148 0x2f80 DMusic - ok 00:15:03.0218 0x2f80 [ 1A1E59377FB6CACD711CC5073C4A7D79, B586A60EB61D10E7503B8C02E4C19B8061AE731B281983D5455A8D4310DB1838 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 00:15:03.0228 0x2f80 Dnscache - ok 00:15:03.0348 0x2f80 [ 3FCF86F03D0302443C21CE6E5BBF7A25, C5F714B05BEF187804DD72910096870C613E6513CD876FAABA60F1E13F1A42A6 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 00:15:03.0388 0x2f80 Dot3svc - ok 00:15:03.0428 0x2f80 dpti2o - ok 00:15:03.0468 0x2f80 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 00:15:03.0488 0x2f80 drmkaud - ok 00:15:03.0568 0x2f80 [ 8B5FC9087D2CAB110BC2ED5CC5E7B8AC, 7C1A295C283D98D25309CB78817A53ADC5509DCA75A3F390F286CA35F2F74A4F ] EapHost C:\WINDOWS\System32\eapsvc.dll 00:15:03.0588 0x2f80 EapHost - ok 00:15:03.0658 0x2f80 [ 6E883BF518296A40959131C2304AF714, FCBDAB6C9220742821D1A1711D39688889B578E0992F8B41945027DB23E92777 ] EL90XBC C:\WINDOWS\system32\DRIVERS\el90xbc5.sys 00:15:03.0678 0x2f80 EL90XBC - ok 00:15:03.0729 0x2f80 [ 94F948CB12C4D35483F1E815DEB16C7B, 87FC37F604FC27B8370B4383394559E249D9CFCF723D04533A78DC014C0361FB ] ERSvc C:\WINDOWS\System32\ersvc.dll 00:15:03.0739 0x2f80 ERSvc - ok 00:15:03.0849 0x2f80 [ C3FB1D70CB88722267949694BA51759E, 8CD60F76A91502A718E5371D4E94BF21ECA59F50307C783C27E316891504172D ] Eventlog C:\WINDOWS\system32\services.exe 00:15:03.0889 0x2f80 Eventlog - ok 00:15:04.0199 0x2f80 [ EC16AE9B37EACF871629227A3F3913FD, 522EB80A04ED2B42BC74509D796CC81B9279C862075B3FB9E6FC6A9BA9B2DF4A ] EventSystem C:\WINDOWS\system32\es.dll 00:15:04.0279 0x2f80 EventSystem - ok 00:15:04.0550 0x2f80 [ EACD4CDFFE66F4923EBB9685C21B55E5, 5B5A5930F2550630B5786FC2C93686554CAD4AF378E1364D509C73AF630006CF ] EverestDriver C:\Documents and Settings\thierry enos.PORTABLE-B486C8\Mes documents\EVEREST Ultimate Edition\kerneld.wnt 00:15:04.0560 0x2f80 EverestDriver - ok 00:15:04.0700 0x2f80 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 00:15:04.0740 0x2f80 Fastfat - ok 00:15:04.0870 0x2f80 [ 1B8542F338CDD86929A084A455837158, 91259E37DA2F8B0170E48D7880CF1B67B42B1486609417806E9D503899E1DEFA ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 00:15:05.0030 0x2f80 FastUserSwitchingCompatibility - ok 00:15:05.0111 0x2f80 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys 00:15:05.0121 0x2f80 Fdc - ok 00:15:05.0201 0x2f80 [ 31F923EB2170FC172C81ABDA0045D18C, 6201C05443ABCF4F16F1AA76B0C10C4A796C839DAA7BFEA903E2FBECD43ABD3D ] Fips C:\WINDOWS\system32\drivers\Fips.sys 00:15:05.0211 0x2f80 Fips - ok 00:15:05.0271 0x2f80 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 00:15:05.0281 0x2f80 Flpydisk - ok 00:15:05.0361 0x2f80 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 00:15:05.0411 0x2f80 FltMgr - ok 00:15:05.0671 0x2f80 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 00:15:05.0721 0x2f80 FontCache3.0.0.0 - ok 00:15:05.0782 0x2f80 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 00:15:05.0782 0x2f80 Fs_Rec - ok 00:15:05.0872 0x2f80 [ A86859B77B908C18C2657F284AA29FE3, EB571928AC961B143A5A8D2DC95BFCFDC1DF35A9098401944F299DB98209E543 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 00:15:05.0912 0x2f80 Ftdisk - ok 00:15:05.0982 0x2f80 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 00:15:06.0002 0x2f80 Gpc - ok 00:15:06.0362 0x2f80 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 00:15:06.0392 0x2f80 gupdate - ok 00:15:06.0473 0x2f80 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 00:15:06.0483 0x2f80 gupdatem - ok 00:15:06.0593 0x2f80 [ 1247F83B705AF0E796330442F7967CF8, 3BD60DCD92AE83947BD8E2EE6A6B1AF9B5B32BFAAE25BB7C6529ECA11B0E99CF ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 00:15:06.0603 0x2f80 helpsvc - ok 00:15:06.0673 0x2f80 HidServ - ok 00:15:06.0773 0x2f80 [ 17B3C3D40CDBA40C2E331D28BE4DE27F, 5B42F04392EDF09F03BACE8A254D8AC20E24C0327615E92E5A2027E2809AC19F ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 00:15:06.0793 0x2f80 hkmsvc - ok 00:15:06.0833 0x2f80 hpn - ok 00:15:07.0003 0x2f80 [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 00:15:07.0194 0x2f80 HTTP - ok 00:15:07.0294 0x2f80 [ BD31CFACE38D1800ABDB43F4260AF0D5, 244C853FCB6701CF1DB1496DDE8674C997FC8BE45EA0732332B3109F9886E0D0 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 00:15:07.0324 0x2f80 HTTPFilter - ok 00:15:07.0354 0x2f80 i2omgmt - ok 00:15:07.0384 0x2f80 i2omp - ok 00:15:07.0464 0x2f80 [ A09BDC4ED10E3B2E0EC27BB94AF32516, E6542BCAE854B23F76A476F529D12CCCA3B4681C56CFAE35D22736C257BF85FE ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 00:15:07.0484 0x2f80 i8042prt - ok 00:15:07.0844 0x2f80 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 00:15:08.0035 0x2f80 idsvc - ok 00:15:08.0235 0x2f80 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 00:15:08.0255 0x2f80 Imapi - ok 00:15:08.0365 0x2f80 [ C4221678BBAA55239C23632875759961, 1229CF35731FDBB67974BCE9BDD09B9FC1B79D2A35DCE9CEF8AB3B17D714D97D ] ImapiService C:\WINDOWS\system32\imapi.exe 00:15:08.0415 0x2f80 ImapiService - ok 00:15:08.0485 0x2f80 ini910u - ok 00:15:08.0556 0x2f80 [ 4B6DA2F0A4095857A9E3F3697399D575, 5368EA05C44022554AB4191D0BAC949733BAC7E949D24C8C16A34C7B1B1EBD2B ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys 00:15:08.0566 0x2f80 IntelIde - ok 00:15:08.0626 0x2f80 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 00:15:08.0646 0x2f80 Ip6Fw - ok 00:15:08.0736 0x2f80 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 00:15:08.0746 0x2f80 IpFilterDriver - ok 00:15:08.0796 0x2f80 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 00:15:08.0806 0x2f80 IpInIp - ok 00:15:08.0896 0x2f80 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 00:15:08.0966 0x2f80 IpNat - ok 00:15:09.0036 0x2f80 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 00:15:09.0056 0x2f80 IPSec - ok 00:15:09.0146 0x2f80 [ ACA5E7B54409F9CB5EED97ED0C81120E, 1E22F442EA77596F58D133F1A5887CDC4F3325DD0836D24A665E1D31287ABFF7 ] irda C:\WINDOWS\system32\DRIVERS\irda.sys 00:15:09.0176 0x2f80 irda - ok 00:15:09.0257 0x2f80 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 00:15:09.0267 0x2f80 IRENUM - ok 00:15:09.0307 0x2f80 [ F9CB3A98B395A5E5CC36C65B3C41AD9C, 3DAEA9C006A3CC2538B20C6F7CECCE8258202A82A3916041F81C0F7E7073FBDB ] Irmon C:\WINDOWS\System32\irmon.dll 00:15:09.0317 0x2f80 Irmon - ok 00:15:09.0387 0x2f80 [ 355836975A67B6554BCA60328CD6CB74, 3B9A6E9F40A025D393B7F7226716909087D495B4B0E8472BB857F14D489D479D ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 00:15:09.0407 0x2f80 isapnp - ok 00:15:09.0467 0x2f80 [ 16813155807C6881F4BFBF6657424659, 5C0A3630E29B7FB9C1A8E9F06AD91A152CB189B0A4CBB2BA2557D937CA4B0AD6 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 00:15:09.0477 0x2f80 Kbdclass - ok 00:15:09.0597 0x2f80 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 00:15:09.0657 0x2f80 kmixer - ok 00:15:09.0767 0x2f80 [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 00:15:09.0797 0x2f80 KSecDD - ok 00:15:09.0907 0x2f80 [ 1DB8078A32E03AC8F5EB5E6DCAC2AA34, F795899595D4217322E9945ACCC99CA0DD2D6009354A4198092D706627EA2A1D ] LanmanServer C:\WINDOWS\System32\srvsvc.dll 00:15:09.0937 0x2f80 LanmanServer - ok 00:15:10.0048 0x2f80 [ AD54EAD46D92F413BE189AABC1C59490, B73605718E40D5EA9323AD1DDEF4EC5827D3C71105FF8EA07E725DB1BD30678F ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 00:15:10.0128 0x2f80 lanmanworkstation - ok 00:15:10.0158 0x2f80 lbrtfdc - ok 00:15:10.0248 0x2f80 [ 0F357C079AC529A844AB5B18E4EEF881, D1CF1AB2ABEA672AC1607608390A57C177EC0B9586115CA6A0CD919C7BC86E65 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 00:15:10.0258 0x2f80 LmHosts - ok 00:15:10.0368 0x2f80 [ 6F0D0617310A677360B7EB6D2D59086E, 399358CFCE99EBCAE9874FDD44F634ED434CCE3C8821357EDC324046F7FEC68F ] mbamchameleon C:\WINDOWS\system32\drivers\mbamchameleon.sys 00:15:10.0388 0x2f80 mbamchameleon - ok 00:15:10.0548 0x2f80 [ E67A66A3781C1A483F0F8992664CBE0D, 9C90AB5CCB677E7E81C42A03526547F2ED29B009E0832E87EAC10E814F55FAB6 ] Messenger C:\WINDOWS\System32\msgsvc.dll 00:15:10.0568 0x2f80 Messenger - ok 00:15:10.0618 0x2f80 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 00:15:10.0628 0x2f80 mnmdd - ok 00:15:10.0699 0x2f80 [ D3A2870CD96CDA7BCFF3DC54F64087AD, FF649A85E4EB9651D3B08C6B5B3EDD40569F22FD322A891E86345157DB053D3F ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 00:15:10.0709 0x2f80 mnmsrvc - ok 00:15:10.0769 0x2f80 [ 510ADE9327FE84C10254E1902697E25F, 2CDCE41F52BF4FC73C7689C371C401C2306FF128E8881C1B5CAAB3F8019F839A ] Modem C:\WINDOWS\system32\drivers\Modem.sys 00:15:10.0779 0x2f80 Modem - ok 00:15:10.0829 0x2f80 [ 027C01BD7EF3349AAEBC883D8A799EFB, 33EF2BF037B650C6EFC271EABAB241AF76B6826DA30B5FA158CC1B8E12DD52DE ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 00:15:10.0839 0x2f80 Mouclass - ok 00:15:10.0929 0x2f80 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 00:15:10.0949 0x2f80 MountMgr - ok 00:15:10.0989 0x2f80 mraid35x - ok 00:15:11.0089 0x2f80 [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 00:15:11.0159 0x2f80 MRxDAV - ok 00:15:11.0410 0x2f80 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 00:15:11.0580 0x2f80 MRxSmb - ok 00:15:11.0640 0x2f80 [ 8648D670AE0D95C95E7BBB5B80661796, 9CECF01E6D4A223E19676DC6C63A6396076FAFAC3502DB236096B04D8E38F0E5 ] MSDTC C:\WINDOWS\system32\msdtc.exe 00:15:11.0640 0x2f80 MSDTC - ok 00:15:11.0750 0x2f80 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 00:15:11.0760 0x2f80 Msfs - ok 00:15:11.0790 0x2f80 MSIServer - ok 00:15:11.0830 0x2f80 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 00:15:11.0830 0x2f80 MSKSSRV - ok 00:15:11.0880 0x2f80 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 00:15:11.0880 0x2f80 MSPCLOCK - ok 00:15:11.0910 0x2f80 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 00:15:11.0920 0x2f80 MSPQM - ok 00:15:11.0980 0x2f80 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 00:15:12.0000 0x2f80 mssmbios - ok 00:15:12.0121 0x2f80 [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 00:15:12.0151 0x2f80 Mup - ok 00:15:12.0321 0x2f80 [ 69E4FBBABAEEE1BFF422E091DA3171DA, DEA178FF8245C41B603C20069846D928381825DF7F29FE12899C0B68FBBE1A2C ] napagent C:\WINDOWS\System32\qagentrt.dll 00:15:12.0411 0x2f80 napagent - ok 00:15:12.0691 0x2f80 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 00:15:12.0752 0x2f80 NDIS - ok 00:15:12.0842 0x2f80 [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 00:15:12.0852 0x2f80 NdisTapi - ok 00:15:12.0922 0x2f80 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 00:15:12.0932 0x2f80 Ndisuio - ok 00:15:13.0022 0x2f80 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 00:15:13.0052 0x2f80 NdisWan - ok 00:15:13.0162 0x2f80 [ 2F597BB467E05B1FE3830EABD821B8E0, 141497F5A49D47CCE3C9289644F4BD838DCB238F6D8E847FC006652E21FE02AC ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 00:15:13.0182 0x2f80 NDProxy - ok 00:15:13.0262 0x2f80 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 00:15:13.0282 0x2f80 NetBIOS - ok 00:15:13.0412 0x2f80 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 00:15:13.0483 0x2f80 NetBT - ok 00:15:13.0573 0x2f80 [ 5C9B1D83755B36237B70F95DF3D46A52, D69F971102C6FBCC0BA2A043D31BBEAD6ADFC606A3E402436EF1A24240D0543A ] NetDDE C:\WINDOWS\system32\netdde.exe 00:15:13.0613 0x2f80 NetDDE - ok 00:15:13.0683 0x2f80 [ 5C9B1D83755B36237B70F95DF3D46A52, D69F971102C6FBCC0BA2A043D31BBEAD6ADFC606A3E402436EF1A24240D0543A ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 00:15:13.0693 0x2f80 NetDDEdsdm - ok 00:15:13.0753 0x2f80 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] Netlogon C:\WINDOWS\system32\lsass.exe 00:15:13.0763 0x2f80 Netlogon - ok 00:15:13.0883 0x2f80 [ BE0CB143FA427D93440DED18DB8C918B, 9522756F22E37A2AAF443F486F7BB34C05A0788D213092C09A49EE44C47D79CA ] Netman C:\WINDOWS\System32\netman.dll 00:15:13.0953 0x2f80 Netman - ok 00:15:14.0033 0x2f80 [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 00:15:14.0063 0x2f80 NetTcpPortSharing - ok 00:15:14.0204 0x2f80 [ 6F5F546A92C7B6AE45DB1D6910781EB0, DB7BB1E58DCE13F23DD6DA4A56FC55306389A8CE30D68C57B6C92796601CF337 ] Nla C:\WINDOWS\System32\mswsock.dll 00:15:14.0294 0x2f80 Nla - ok 00:15:14.0364 0x2f80 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 00:15:14.0384 0x2f80 Npfs - ok 00:15:15.0145 0x2f80 [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 00:15:15.0315 0x2f80 Ntfs - ok 00:15:15.0375 0x2f80 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] NtLmSsp C:\WINDOWS\system32\lsass.exe 00:15:15.0375 0x2f80 NtLmSsp - ok 00:15:15.0636 0x2f80 [ 037D92B3A7853A183FCAB77FB1D13D6C, 941CAD5CFB1EFFBD997A5694E281E8D63D007FC39907A1840FA966BDF77975A9 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 00:15:15.0796 0x2f80 NtmsSvc - ok 00:15:15.0856 0x2f80 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys 00:15:15.0856 0x2f80 Null - ok 00:15:15.0926 0x2f80 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 00:15:15.0926 0x2f80 NwlnkFlt - ok 00:15:15.0966 0x2f80 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 00:15:15.0986 0x2f80 NwlnkFwd - ok 00:15:16.0046 0x2f80 [ CECB679633523AC5EB7EB85F92DCD806, 64E5CDEDA89A881555D761ACF13B8580E2F8F6E22F26D165591D522988D9A376 ] P3 C:\WINDOWS\system32\DRIVERS\p3.sys 00:15:16.0066 0x2f80 P3 - ok 00:15:16.0136 0x2f80 [ 8FD0BDBEA875D06CCF6C945CA9ABAF75, 54964CD4C15B7EC4A037AA5E1200BD5C0B23B44EF12BABDA53D491AA23BA1FE6 ] Parport C:\WINDOWS\system32\drivers\Parport.sys 00:15:16.0166 0x2f80 Parport - ok 00:15:16.0217 0x2f80 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 00:15:16.0227 0x2f80 PartMgr - ok 00:15:16.0297 0x2f80 [ 9575C5630DB8FB804649A6959737154C, B73094C0043CC5CB97D7DF1243D30DF3E41C453F0721C7265F20B735AEF8E723 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 00:15:16.0297 0x2f80 ParVdm - ok 00:15:16.0357 0x2f80 [ 043410877BDA580C528F45165F7125BC, 80B6997166866529F562135D333BA4787EBE466173C82958B28FAF9AD654090C ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 00:15:16.0377 0x2f80 PCI - ok 00:15:16.0417 0x2f80 PCIDump - ok 00:15:16.0457 0x2f80 PCIIde - ok 00:15:16.0557 0x2f80 [ F0406CBC60BDB0394A0E17FFB04CDD3D, 8167B46B5DD39E6CB1D49C64D9E88AD2A9C46D6C57B3A3A3F41B3BE18A4706CE ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys 00:15:16.0597 0x2f80 Pcmcia - ok 00:15:16.0627 0x2f80 PDCOMP - ok 00:15:16.0657 0x2f80 PDFRAME - ok 00:15:16.0687 0x2f80 PDRELI - ok 00:15:16.0717 0x2f80 PDRFRAME - ok 00:15:16.0747 0x2f80 perc2 - ok 00:15:16.0777 0x2f80 perc2hib - ok 00:15:16.0978 0x2f80 [ C3FB1D70CB88722267949694BA51759E, 8CD60F76A91502A718E5371D4E94BF21ECA59F50307C783C27E316891504172D ] PlugPlay C:\WINDOWS\system32\services.exe 00:15:16.0988 0x2f80 PlugPlay - ok 00:15:17.0018 0x2f80 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] PolicyAgent C:\WINDOWS\system32\lsass.exe 00:15:17.0028 0x2f80 PolicyAgent - ok 00:15:17.0098 0x2f80 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 00:15:17.0108 0x2f80 PptpMiniport - ok 00:15:17.0138 0x2f80 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 00:15:17.0138 0x2f80 ProtectedStorage - ok 00:15:17.0198 0x2f80 [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 00:15:17.0218 0x2f80 PSched - ok 00:15:17.0288 0x2f80 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 00:15:17.0298 0x2f80 Ptilink - ok 00:15:17.0328 0x2f80 ql1080 - ok 00:15:17.0368 0x2f80 Ql10wnt - ok 00:15:17.0398 0x2f80 ql12160 - ok 00:15:17.0428 0x2f80 ql1240 - ok 00:15:17.0458 0x2f80 ql1280 - ok 00:15:17.0568 0x2f80 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 00:15:17.0568 0x2f80 RasAcd - ok 00:15:17.0639 0x2f80 [ 78DA9CCDAC683EF5AA87D1C919F6D221, C564185A684BAB97FBA7320273764DB8961B18D5AD5F1D6B741A6C385FC8717B ] RasAuto C:\WINDOWS\System32\rasauto.dll 00:15:17.0679 0x2f80 RasAuto - ok 00:15:17.0749 0x2f80 [ 0207D26DDF796A193CCD9F83047BB5FC, 13613036BCB869FBD7229A0FE25D324710308385D8C35E5D990A40E52BE040DF ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys 00:15:17.0759 0x2f80 Rasirda - ok 00:15:17.0819 0x2f80 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 00:15:17.0829 0x2f80 Rasl2tp - ok 00:15:17.0929 0x2f80 [ 0A48DF90B4784F9B90A2671AF992C914, CA3696C6688F97D55E5302E5D3040899081FF48E41DF2138B48F405DDDE8AEA0 ] RasMan C:\WINDOWS\System32\rasmans.dll 00:15:17.0999 0x2f80 RasMan - ok 00:15:18.0059 0x2f80 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 00:15:18.0069 0x2f80 RasPppoe - ok 00:15:18.0169 0x2f80 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 00:15:18.0169 0x2f80 Raspti - ok 00:15:18.0300 0x2f80 [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 00:15:18.0360 0x2f80 Rdbss - ok 00:15:18.0400 0x2f80 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 00:15:18.0400 0x2f80 RDPCDD - ok 00:15:18.0570 0x2f80 [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 00:15:18.0620 0x2f80 RDPWD - ok 00:15:18.0750 0x2f80 [ 9F63D9C5B238ED1C375D417EFF3D5BE7, 168BEA4CDE9A1C6A10998B4217626525C3C3F248956B946F1A2D51E807B0FEE4 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 00:15:18.0790 0x2f80 RDSessMgr - ok 00:15:18.0860 0x2f80 [ D8EB2A7904DB6C916EB5361878DDCBAE, 3C6B04E18D5CE52777E349EFC213B8A570281F3192C491CCB6FA0593CC33B2A4 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 00:15:18.0880 0x2f80 redbook - ok 00:15:18.0960 0x2f80 [ 7DA370C31673C99497BD07068EE6E354, 159B25D0C4AF6C55658364B8DF74ADAE4DECA1B19D1F27D878C607AE29E47CB1 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 00:15:18.0980 0x2f80 RemoteAccess - ok 00:15:19.0061 0x2f80 [ 499C59A2584F6D4EA41E944DA571D993, 45291CBDCCA2B6217C442B788BDEB2202A11C9A51D08AA867F44008471A9C759 ] RpcLocator C:\WINDOWS\system32\locator.exe 00:15:19.0091 0x2f80 RpcLocator - ok 00:15:19.0301 0x2f80 [ 0203B1AAD358F206CB0A3C1F93CCE17A, 1FA6D7713CA597F751CD84BD6694914273F297D5664AF9BE70875C3321C6C740 ] RpcSs C:\WINDOWS\system32\rpcss.dll 00:15:19.0351 0x2f80 RpcSs - ok 00:15:19.0471 0x2f80 [ 414964844F4793ACB868D057E8ED997E, 843E0C7761AC001BF1169251167B08DA24E227F041F80586F2A54197A166FD13 ] RSVP C:\WINDOWS\system32\rsvp.exe 00:15:19.0511 0x2f80 RSVP - ok 00:15:19.0561 0x2f80 [ 91E6024D6D4DCDECDB36C43ECF9BBECB, D288C5CD69B8E4612B689FB33B9CCD5594634D14C14D53A842DB742264A64D6B ] SamSs C:\WINDOWS\system32\lsass.exe 00:15:19.0571 0x2f80 SamSs - ok 00:15:19.0702 0x2f80 [ 67949CC8A865296C1333C96A4E1A2D66, 89BD385E3D6634557AE76D427A791A0D9DC4E3DD7DBE923A0A031F124BBC0ED6 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 00:15:19.0732 0x2f80 SCardSvr - ok 00:15:19.0862 0x2f80 [ 55F5C5C1BE1A78E285033E432BA01597, 6844EE76BF36FD88C61F7B312BB53C4C8F5BF328985E9D629CFF4D526C404DD3 ] Schedule C:\WINDOWS\system32\schedsvc.dll 00:15:19.0932 0x2f80 Schedule - ok 00:15:19.0972 0x2f80 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 00:15:20.0012 0x2f80 Secdrv - ok 00:15:20.0072 0x2f80 [ 5AC311C0AF2AF5EC221670BB8DC479D3, C064CDDE7EAD4D387A7A78BF8AF6B47F1D028D5E57D1BAE3E74D4826B4C38F56 ] seclogon C:\WINDOWS\System32\seclogon.dll 00:15:20.0082 0x2f80 seclogon - ok 00:15:20.0132 0x2f80 [ 3531366F38F453D08FE72E7B32DFE786, F040CE3C2D3E8A67D72DBD7A1BB0AB10576944CBAD930B24A5DA00225365EEFB ] SENS C:\WINDOWS\system32\sens.dll 00:15:20.0142 0x2f80 SENS - ok 00:15:20.0202 0x2f80 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 00:15:20.0212 0x2f80 serenum - ok 00:15:20.0302 0x2f80 [ 93D313C31F7AD9EA2B75F26075413C7C, 7CBC2C8852D671100AE2EB6F09C416D30C2E65F5FF5D777E4AC133E4F7ACBA7B ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 00:15:20.0322 0x2f80 Serial - ok 00:15:20.0433 0x2f80 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 00:15:20.0443 0x2f80 Sfloppy - ok 00:15:20.0633 0x2f80 [ F4CE708A7D17A625DE6C0FD746D50E88, 9531A52B5049C9993930704BAAE2A15376274CAC4E98EBF6EA4C8AE3663957CD ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 00:15:20.0733 0x2f80 SharedAccess - ok 00:15:20.0823 0x2f80 [ 1B8542F338CDD86929A084A455837158, 91259E37DA2F8B0170E48D7880CF1B67B42B1486609417806E9D503899E1DEFA ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 00:15:20.0843 0x2f80 ShellHWDetection - ok 00:15:20.0873 0x2f80 Simbad - ok 00:15:20.0923 0x2f80 [ 039F7B892AD78FD836CD56F0551DAB33, 9FC3FA59E5AFA0312B80A4F7453F1B3C83DF7EFFC1942CC761AD294463132589 ] SMCIRDA C:\WINDOWS\system32\DRIVERS\smcirda.sys 00:15:20.0943 0x2f80 SMCIRDA - ok 00:15:20.0983 0x2f80 Sparrow - ok 00:15:21.0023 0x2f80 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys 00:15:21.0033 0x2f80 splitter - ok 00:15:21.0124 0x2f80 [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler C:\WINDOWS\system32\spoolsv.exe 00:15:21.0144 0x2f80 Spooler - ok 00:15:21.0244 0x2f80 [ 39626E6DC1FB39434EC40C42722B660A, 4FB99976F0BFA14A176C25B47E55DA448773530018DA4C25DC237C4121DC0EFA ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 00:15:21.0264 0x2f80 sr - ok 00:15:21.0344 0x2f80 [ 6ED29124A1C83BD0CF6B26BD01CA6F6F, B88211872F43A0781EB5F12E19DEA319FEAC8C7F635774C6B59D73C16BF25B5D ] srservice C:\WINDOWS\system32\srsvc.dll 00:15:21.0394 0x2f80 srservice - ok 00:15:21.0654 0x2f80 [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 00:15:21.0775 0x2f80 Srv - ok 00:15:21.0875 0x2f80 [ EA9E0DB8684CEF2FD3BADD671DF5A112, D822BE0278A8FF7DDD14428F6AA557EC581C2D33121777451D86920245FFC6F5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 00:15:21.0895 0x2f80 SSDPSRV - ok 00:15:22.0085 0x2f80 [ D76B0E8A4ECAD1ADCC75FD14A7ACC54C, 9203AD97A96794DD93F7EEF8273CC9C421CDF7941937C6DDA82C1E14F697A7E0 ] stisvc C:\WINDOWS\system32\wiaservc.dll 00:15:22.0185 0x2f80 stisvc - ok 00:15:22.0245 0x2f80 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 00:15:22.0245 0x2f80 swenum - ok 00:15:22.0325 0x2f80 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 00:15:22.0345 0x2f80 swmidi - ok 00:15:22.0375 0x2f80 SwPrv - ok 00:15:22.0405 0x2f80 symc810 - ok 00:15:22.0435 0x2f80 symc8xx - ok 00:15:22.0476 0x2f80 sym_hi - ok 00:15:22.0506 0x2f80 sym_u3 - ok 00:15:22.0566 0x2f80 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 00:15:22.0586 0x2f80 sysaudio - ok 00:15:22.0686 0x2f80 [ 0899061318A6B1D9596AABFC77F45E44, A331BD7AC6A7542DEE6478928D756E2E5BA6F957A369F830979A76ACB5E8D612 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 00:15:22.0716 0x2f80 SysmonLog - ok 00:15:22.0876 0x2f80 [ 8E5231171AD6595FF002E848CC54FCD7, C13AF616046C31BCC514B72160A366B0FFA376851C6F76445F03A86B81769670 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 00:15:22.0956 0x2f80 TapiSrv - ok 00:15:23.0156 0x2f80 [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 00:15:23.0277 0x2f80 Tcpip - ok 00:15:23.0337 0x2f80 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 00:15:23.0337 0x2f80 TDPIPE - ok 00:15:23.0427 0x2f80 [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 00:15:23.0437 0x2f80 TDTCP - ok 00:15:23.0507 0x2f80 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 00:15:23.0517 0x2f80 TermDD - ok 00:15:23.0717 0x2f80 [ 710BC85A8C22626EE094439E3EA0D38C, B48ED980DBFADDA941170F54D62D6C4B1787435CC97E45D3B2DED9B73FE8F887 ] TermService C:\WINDOWS\System32\termsrv.dll 00:15:23.0817 0x2f80 TermService - ok 00:15:23.0908 0x2f80 [ 1B8542F338CDD86929A084A455837158, 91259E37DA2F8B0170E48D7880CF1B67B42B1486609417806E9D503899E1DEFA ] Themes C:\WINDOWS\System32\shsvcs.dll 00:15:23.0918 0x2f80 Themes - ok 00:15:23.0958 0x2f80 TosIde - ok 00:15:24.0028 0x2f80 [ E1A84A5067627407A53C2C4F8D8A1D2E, 23A082FEBB83F9211D63727A94499652CF03A3EE16B782EDFF3947978BC7685A ] TrkWks C:\WINDOWS\system32\trkwks.dll 00:15:24.0058 0x2f80 TrkWks - ok 00:15:24.0168 0x2f80 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 00:15:24.0188 0x2f80 Udfs - ok 00:15:24.0218 0x2f80 ultra - ok 00:15:24.0428 0x2f80 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 00:15:24.0559 0x2f80 Update - ok 00:15:24.0669 0x2f80 [ BD8166A495B02308F364B36249475F22, 62D71C84858CF8EC57A1A1899ABA0FC261880BA6D17B3685DD47BF560E14D11C ] upnphost C:\WINDOWS\System32\upnphost.dll 00:15:24.0729 0x2f80 upnphost - ok 00:15:24.0789 0x2f80 [ 1EDC93D7BD731B5CA6248AE245099B60, 1E2BEA04488C89BA45D54AC80DC44F7096946D325590B2BF774D86DE2CE2382C ] UPS C:\WINDOWS\System32\ups.exe 00:15:24.0799 0x2f80 UPS - ok 00:15:24.0879 0x2f80 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 00:15:24.0899 0x2f80 usbhub - ok 00:15:24.0989 0x2f80 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 00:15:24.0999 0x2f80 USBSTOR - ok 00:15:25.0049 0x2f80 [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 00:15:25.0049 0x2f80 usbuhci - ok 00:15:25.0089 0x2f80 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 00:15:25.0099 0x2f80 VgaSave - ok 00:15:25.0129 0x2f80 ViaIde - ok 00:15:25.0290 0x2f80 [ 46DE1126684369BACE4849E4FC8C43CA, 7D7B9B9C38D5E07D941B06DCDA8DC1CFFB80D2DD7717209E27A6AF7A9ACC51D4 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 00:15:25.0300 0x2f80 VolSnap - ok 00:15:25.0450 0x2f80 [ 5A4DA252B2C0550AB83D129C02CF6C19, FADE9EB68A47539F647BB5733836ABE73B69C8C43EA5AE4933A43343E459DD5D ] VSS C:\WINDOWS\System32\vssvc.exe 00:15:25.0560 0x2f80 VSS - ok 00:15:25.0700 0x2f80 [ C1F726EE0B043B074A68992BC4AEF8FD, 17C1AA49903E081CEF9DC240A8F897D6C97DAE1DE2CF1FD43D05DC6D46EAAA60 ] W32Time C:\WINDOWS\system32\w32time.dll 00:15:25.0760 0x2f80 W32Time - ok 00:15:25.0830 0x2f80 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 00:15:25.0850 0x2f80 Wanarp - ok 00:15:25.0870 0x2f80 WDICA - ok 00:15:25.0951 0x2f80 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 00:15:25.0981 0x2f80 wdmaud - ok 00:15:26.0041 0x2f80 [ 714670E64FBE6D28D99871ED9A52A334, BDC9681A6BCF786C0AD9D999FE0AC16299D8F2486B2DF03962396942964CCCCB ] WebClient C:\WINDOWS\System32\webclnt.dll 00:15:26.0071 0x2f80 WebClient - ok 00:15:26.0261 0x2f80 [ 5E9DEAE9980FF34BCD6DDE2E9E2BF911, 1F6EACA551F4BB222A56CB450A529C001188F1DA46C9E59D9C2F12FA40B6B1E6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 00:15:26.0311 0x2f80 winmgmt - ok 00:15:26.0431 0x2f80 [ AA370F0D5B900E13D40E9CB834B5DA10, 1255BFD2548392E8140C97A68AB16A0390B3B8A008AFAA49258E8CCBF91DFE33 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll 00:15:26.0451 0x2f80 WmdmPmSN - ok 00:15:26.0631 0x2f80 [ 4E8E8A58F56B25D0795F484E5EB7F898, 32F8EC10A5992185C13304AAA532C638ECB709EF9D9D883F88032BB30E3AE098 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 00:15:26.0692 0x2f80 WmiApSrv - ok 00:15:27.0192 0x2f80 [ 1A8371F4E56FDCAD28BB9D92EC901408, C42148F5CA7D1B0715F365DC556FD33D7FCE87B94E3F76092F1BA76D09CD0542 ] WNA3100M C:\WINDOWS\system32\DRIVERS\WNA3100M.sys 00:15:27.0873 0x2f80 WNA3100M - ok 00:15:28.0044 0x2f80 [ C1FD85DB4A80A98D60ECB7A828E77FE0, CFDADDD4C5355C9052431BFA579B8697A3F46A211E22EA03FDDD44C0D3F0A0CB ] wscsvc C:\WINDOWS\system32\wscsvc.dll 00:15:28.0074 0x2f80 wscsvc - ok 00:15:28.0364 0x2f80 [ 871E331FB10EACF06F03FA01EBF8918B, 7E587F361388A78B6EA52072AB7BF5BE681B53719FF4AB0C4D06B0E4BD7DD7F1 ] WSWNA3100M C:\Program Files\NETGEAR\WNA3100M\WifiSvc.exe 00:15:28.0454 0x2f80 WSWNA3100M - ok 00:15:28.0564 0x2f80 [ 75D6C5C3D2C93B1F9931E5DFB693AE2A, 793A4417D919EAC190428C3F29D387E67A62E120829463AE9FAF57D1ABCA75A7 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 00:15:28.0574 0x2f80 wuauserv - ok 00:15:28.0815 0x2f80 [ C336E54EE0C291A02F004667DB1E66CB, 4D5486D2CA53A331E84624351474D61E9BD4744A2BDC5034B86B0AE57E59D8E4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 00:15:28.0965 0x2f80 WZCSVC - ok 00:15:29.0115 0x2f80 [ F92A87FDDA0C11C8604FBC2B864FA726, 84FCD77D690D1D0591C1A0D452F7C8630382C02A8A0187E0A1E68AD6A6E3D575 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 00:15:29.0155 0x2f80 xmlprov - ok 00:15:29.0195 0x2f80 ================ Scan global =============================== 00:15:29.0415 0x2f80 [ 61013AB2E38550619637AA6CC02383D4, BE246809E56C134901A3A4DF1EF2240ABDBFD6876A2B7094DCACB16D1B4929F8 ] C:\WINDOWS\system32\basesrv.dll 00:15:29.0606 0x2f80 [ C95F48F2A057F886077D4C6668EDD193, 857C7E92055A86620B2566014FF2F7B15CEE43A16A0D87628552295F98FE56E3 ] C:\WINDOWS\system32\winsrv.dll 00:15:29.0816 0x2f80 [ C95F48F2A057F886077D4C6668EDD193, 857C7E92055A86620B2566014FF2F7B15CEE43A16A0D87628552295F98FE56E3 ] C:\WINDOWS\system32\winsrv.dll 00:15:29.0906 0x2f80 [ C3FB1D70CB88722267949694BA51759E, 8CD60F76A91502A718E5371D4E94BF21ECA59F50307C783C27E316891504172D ] C:\WINDOWS\system32\services.exe 00:15:29.0916 0x2f80 [ Global ] - ok 00:15:29.0926 0x2f80 ================ Scan MBR ================================== 00:15:29.0956 0x2f80 [ C99C3199CFAA4CBDCD91493F6D113A50 ] \Device\Harddisk0\DR0 00:15:30.0387 0x2f80 \Device\Harddisk0\DR0 - ok 00:15:30.0397 0x2f80 ================ Scan VBR ================================== 00:15:30.0417 0x2f80 [ 14959D50744F122D0A768A8DEC2B0F4C ] \Device\Harddisk0\DR0\Partition1 00:15:30.0447 0x2f80 \Device\Harddisk0\DR0\Partition1 - ok 00:15:30.0467 0x2f80 Waiting for KSN requests completion. In queue: 174 00:15:31.0468 0x2f80 Waiting for KSN requests completion. In queue: 174 00:15:32.0480 0x2f80 Waiting for KSN requests completion. In queue: 174 00:15:38.0859 0x2f80 Win FW state via NFM: enabled 00:15:41.0283 0x2f80 ============================================================ 00:15:41.0283 0x2f80 Scan finished 00:15:41.0283 0x2f80 ============================================================ 00:15:41.0333 0x2ea4 Detected object count: 0 00:15:41.0333 0x2ea4 Actual detected object count: 0 00:19:20.0408 0x2be4 Deinitialize success