MBAR hat nix gefunden, jedoch hat während MBAR lief mein Antivir 2 Viren gefunden, diese habe ich dann auch mit Antivir gelöscht.
Werde jetzt noch TDSSKiller laufen lasen.
Hier noch das logfile. Code:
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org
Database version:
main: v2015.12.01.03
rootkit: v2015.11.26.01
Windows 10 x64 NTFS
Internet Explorer 11.0.10240.16590
Marco :: HAL9000 [administrator]
01.12.2015 14:27:31
mbar-log-2015-12-01 (14-27-31).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 409009
Time elapsed: 21 minute(s), 43 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) OK, TDSSKiller hat auch nix gefunden.
Antivir hat folgendes gefungen: Code:
In der Datei 'C:\Users\Marco\AppData\Local\Temp\HYD32A4.tmp.1441823487\HTA\3rdparty\OCComSDK.dll'
wurde ein Virus oder unerwünschtes Programm 'PUA/OpenCandy.Gen' [riskware] gefunden.
Ausgeführte Aktion: Zugriff verweigern Code:
In der Datei 'C:\Users\Marco\AppData\Local\Temp\HYD32A4.tmp.1441823487\HTA\3rdparty\OCSetupHlp.dll'
wurde ein Virus oder unerwünschtes Programm 'PUA/OpenCandy.Gen' [riskware] gefunden.
Ausgeführte Aktion: Zugriff verweigern Code:
In der Datei 'C:\Users\Marco\AppData\Local\Temp\HYD8532.tmp.1441824032\HTA\3rdparty\OCComSDK.dll'
wurde ein Virus oder unerwünschtes Programm 'PUA/OpenCandy.Gen' [riskware] gefunden.
Ausgeführte Aktion: Zugriff verweigern Code:
Die Datei 'C:\Users\Marco\AppData\Local\Temp\HYD32A4.tmp.1441823487\HTA\3rdparty\OCSetupHlp.dll'
enthielt einen Virus oder unerwünschtes Programm 'PUA/OpenCandy.Gen' [riskware].
Durchgeführte Aktion(en):
Die Datei wurde gelöscht. Code:
Die Datei 'C:\Users\Marco\AppData\Local\Temp\HYD32A4.tmp.1441823487\HTA\3rdparty\OCComSDK.dll'
enthielt einen Virus oder unerwünschtes Programm 'PUA/OpenCandy.Gen' [riskware].
Durchgeführte Aktion(en):
Die Datei wurde gelöscht. Code:
Die Datei 'C:\Users\Marco\AppData\Local\Temp\HYD8532.tmp.1441824032\HTA\3rdparty\OCComSDK.dll'
enthielt einen Virus oder unerwünschtes Programm 'PUA/OpenCandy.Gen' [riskware].
Durchgeführte Aktion(en):
Die Datei wurde gelöscht. Hier noch das logfile vom TDSSKiller, diese musste ich in zwei teilen posten da sie zu lang waren. Code:
15:47:11.0414 0x27a0 TDSS rootkit removing tool 3.1.0.7 Nov 29 2015 22:37:04
15:47:15.0461 0x27a0 ============================================================
15:47:15.0461 0x27a0 Current date / time: 2015/12/01 15:47:15.0461
15:47:15.0461 0x27a0 SystemInfo:
15:47:15.0461 0x27a0
15:47:15.0461 0x27a0 OS Version: 10.0.10240 ServicePack: 0.0
15:47:15.0461 0x27a0 Product type: Workstation
15:47:15.0461 0x27a0 ComputerName: HAL9000
15:47:15.0461 0x27a0 UserName: Marco
15:47:15.0461 0x27a0 Windows directory: C:\WINDOWS
15:47:15.0461 0x27a0 System windows directory: C:\WINDOWS
15:47:15.0461 0x27a0 Running under WOW64
15:47:15.0461 0x27a0 Processor architecture: Intel x64
15:47:15.0461 0x27a0 Number of processors: 4
15:47:15.0461 0x27a0 Page size: 0x1000
15:47:15.0461 0x27a0 Boot type: Normal boot
15:47:15.0461 0x27a0 ============================================================
15:47:15.0742 0x27a0 KLMD registered as C:\WINDOWS\system32\drivers\76226146.sys
15:47:15.0992 0x27a0 System UUID: {4F37B5E6-E237-7FAA-1512-73AE1DDD04EB}
15:47:16.0454 0x27a0 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x700FC, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000040
15:47:16.0456 0x27a0 ============================================================
15:47:16.0456 0x27a0 \Device\Harddisk0\DR0:
15:47:16.0456 0x27a0 MBR partitions:
15:47:16.0456 0x27a0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
15:47:16.0456 0x27a0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A717800
15:47:16.0456 0x27a0 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3A74A000, BlocksNum 0x1481F800
15:47:16.0456 0x27a0 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x4EF6A000, BlocksNum 0x2579C000
15:47:16.0456 0x27a0 ============================================================
15:47:16.0481 0x27a0 C: <-> \Device\Harddisk0\DR0\Partition2
15:47:16.0516 0x27a0 D: <-> \Device\Harddisk0\DR0\Partition3
15:47:16.0552 0x27a0 E: <-> \Device\Harddisk0\DR0\Partition4
15:47:16.0552 0x27a0 ============================================================
15:47:16.0552 0x27a0 Initialize success
15:47:16.0552 0x27a0 ============================================================
15:47:20.0807 0x12b8 ============================================================
15:47:20.0807 0x12b8 Scan started
15:47:20.0807 0x12b8 Mode: Manual;
15:47:20.0807 0x12b8 ============================================================
15:47:20.0807 0x12b8 KSN ping started
15:47:23.0151 0x12b8 KSN ping finished: true
15:47:26.0667 0x12b8 ================ Scan system memory ========================
15:47:26.0667 0x12b8 System memory - ok
15:47:26.0667 0x12b8 ================ Scan services =============================
15:47:26.0839 0x12b8 [ 22CE801AD25C51E2553F41A076BB0CB2, 0520216417F1619FB642734EC937C59D5E79A24306C1E9B793C82FAE077851E6 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
15:47:26.0854 0x12b8 1394ohci - ok
15:47:26.0870 0x12b8 [ 2C49A2441EBB24C6ACFB524C1459115F, 0ABACB6F21C41C0297994E61F1BFABB3905AF6B569D0446FE8E174EB9225B8EF ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
15:47:26.0870 0x12b8 3ware - ok
15:47:26.0917 0x12b8 [ B87D3D07FE6F15328C6860D542F0E2BD, 46CF069EDD7DBFB4DB800BABA3081DAB363DD2CFD724AFF5916D3419F62A3574 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
15:47:26.0948 0x12b8 ACPI - ok
15:47:26.0964 0x12b8 [ 1E3C4EDBB7F3F668B7205E351010BB79, A3CA12F72836C4F77B671264828B370B9EBA9CD71110E2C0514994760B6B12FF ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
15:47:26.0964 0x12b8 acpiex - ok
15:47:26.0979 0x12b8 [ 13B1C26AEDCB40082CDD97506F968129, 883442206B4C60AA493E84CC3037B6C1568441E1F43D2B1FCBFD8D87D135D511 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
15:47:26.0979 0x12b8 acpipagr - ok
15:47:26.0995 0x12b8 [ B3D64FF927D611721DA73A61BF3A18B3, 96B51AFDC3078B5088AAF66F0CF3E07D2FCBBC84A19D309A25DF0A5C6CECB958 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
15:47:26.0995 0x12b8 AcpiPmi - ok
15:47:27.0010 0x12b8 [ 19F793B2203D94AC1F8AEDB08B494E2E, DC98CCF9935E1F1C32FA88575A9A678B74916EFF48E39A64CF1FF92232F64A52 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
15:47:27.0010 0x12b8 acpitime - ok
15:47:27.0073 0x12b8 [ 4C72FDD915D62EAEF149BD9C73AB9CF4, 8EA45A1B88DFD819F0ADA3AF36D464E1BF52574269592370E0CC8D0490680E1F ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:47:27.0073 0x12b8 AdobeARMservice - ok
15:47:27.0167 0x12b8 [ 368290D0A612D62DA6F3D798B1BB8FE7, D573BF8543F37BC51B88A2473EDFD28AFBCCC446E8CADD54A90FA48D8739D222 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:47:27.0182 0x12b8 AdobeFlashPlayerUpdateSvc - ok
15:47:27.0214 0x12b8 [ 2A24E10C1A1DE0E0035E353EED494A1C, CBBFA86578BE74CAADDCA923D65E3BFFC57BC17B887936ADE5C6952530546A22 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
15:47:27.0245 0x12b8 ADP80XX - ok
15:47:27.0276 0x12b8 [ A3D96563BF46FC8A0E5756B796127D14, BAD3C30714F6514D2AF725077A79FF671CC022E415786E1666C0B7C24CE3670A ] AFD C:\WINDOWS\system32\drivers\afd.sys
15:47:27.0292 0x12b8 AFD - ok
15:47:27.0307 0x12b8 [ EF09D07626820F7F89519514C17FE768, C3EC1DC163CD5946270ED876CD414889BBF2C586A8AF5DC7825FA5D77001E827 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
15:47:27.0307 0x12b8 agp440 - ok
15:47:27.0323 0x12b8 [ 8A289EF0721F95267BF2404BABEE146D, E263D258F03DF3BB405D49AE7230C37E7EB8F392FDEE48059C7C1E3709520D35 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
15:47:27.0323 0x12b8 ahcache - ok
15:47:27.0354 0x12b8 [ C301499987AF909258774AE9DC5778BB, 3ED539C999847116AE9DB9C8C5A34AB09703BAE3018E1EAF6DBC779BB6736F32 ] AJRouter C:\WINDOWS\System32\AJRouter.dll
15:47:27.0354 0x12b8 AJRouter - ok
15:47:27.0385 0x12b8 [ DD69535D379F9E40AD0D6002887AAA99, 579DD18CE2B264B4058C6069B8AEE6FD9FE6A882B7DA19E300DFE40B37A4E5BE ] ALG C:\WINDOWS\System32\alg.exe
15:47:27.0385 0x12b8 ALG - ok
15:47:27.0401 0x12b8 [ 6763084E8322A4876D1613854640F914, 89EEEB47517A9964FA799821E5E45BDD6009EBDC628D6DADE6A7F03DE7CDA6CD ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
15:47:27.0417 0x12b8 AmdK8 - ok
15:47:27.0432 0x12b8 [ BE258C17CFD09F4210602105432E784A, FD38B50785206D6E5EADE65396030E18C8B9D993D7225057B0C24F3256BCE2E3 ] amdkmafd C:\WINDOWS\system32\drivers\amdkmafd.sys
15:47:27.0432 0x12b8 amdkmafd - ok
15:47:27.0432 0x12b8 amdkmdag - ok
15:47:27.0479 0x12b8 [ 5BC406A4BBB2EF7FEFD990B4A48DE059, 5F9B33879B4FBCB3C7171330DD380D3354E0E7EC60376AEB30BD443297A9686E ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys
15:47:27.0495 0x12b8 amdkmdap - ok
15:47:27.0510 0x12b8 [ DE29D8AB57AD67D4940CAB4A48B3E230, 4E92AFCD9107573DAB8E65AC6318E4B8851DCCBE17E135DFF8CF5733210B52E6 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
15:47:27.0510 0x12b8 AmdPPM - ok
15:47:27.0526 0x12b8 [ 4C1F9BBAF5CCD76D4642F3B92B97B454, 514CCAA8B586B1019658BE101046386EB727AD48D7913AEF9A168763E91F0DE5 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
15:47:27.0526 0x12b8 amdsata - ok
15:47:27.0542 0x12b8 [ F8195C1A15955180DD663E7FF4C2F6DD, F3C0C6B38FB9478217EE25EBDBDF7A18F01B97655BC38373E70E71171705D5E9 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
15:47:27.0542 0x12b8 amdsbs - ok
15:47:27.0557 0x12b8 [ DD2F5BBCFAC4D8E48DB1A95A7EEBFF08, 619E3106072C6F785144D785C4AFB4C607CAF7ED29AAA4A1411BE262E62B7ADE ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
15:47:27.0557 0x12b8 amdxata - ok
15:47:27.0651 0x12b8 [ 6B31C215750CD41567E962D22839EE44, FF0B92807296B88DE37F9F2EB27FF7B73AA998B98074AA54A949A2B79690AFE5 ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
15:47:27.0667 0x12b8 AntiVirMailService - ok
15:47:27.0698 0x12b8 [ 18B0643B3B504E0FDCFCE0C8743B29C7, 1D4C004AD5066F52A4AA039F5364814F8F6B04EC1F704A5A3110172AD465661C ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
15:47:27.0698 0x12b8 AntiVirSchedulerService - ok
15:47:27.0729 0x12b8 [ 18B0643B3B504E0FDCFCE0C8743B29C7, 1D4C004AD5066F52A4AA039F5364814F8F6B04EC1F704A5A3110172AD465661C ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
15:47:27.0729 0x12b8 AntiVirService - ok
15:47:27.0760 0x12b8 [ D84E576299C73B0B1DC477D2B99958C4, D6703C2B63B9FA87C2DA009CC7B6DF76C3603C6A9874B152D685A1B92EE2DF28 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
15:47:27.0776 0x12b8 AntiVirWebService - ok
15:47:27.0823 0x12b8 [ E4AFE476D9F758514A8A571DF6A24372, A37055A2CDB577CC8B76D4B020924A6C68D94166C1C9A64F7C0E9E16692709FC ] AppHostSvc C:\WINDOWS\system32\inetsrv\apphostsvc.dll
15:47:27.0823 0x12b8 AppHostSvc - ok
15:47:27.0839 0x12b8 [ 46AAF119090573A80D603745582229ED, 8D7C4AED66DD32A104965DC23D17C0815CD1BE2E3D52375C1A63863664EE174F ] AppID C:\WINDOWS\system32\drivers\appid.sys
15:47:27.0839 0x12b8 AppID - ok
15:47:27.0870 0x12b8 [ 24315B385F515D6D5476757EAFD62633, CE645397BF43CC54B864A0E4FCB86F76C10B9C2D2482E85DBBE15EF7BF045F17 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
15:47:27.0885 0x12b8 AppIDSvc - ok
15:47:27.0885 0x12b8 [ 2CE396457D5C18F034D243EC7E159010, DDF588A568DF5EAE058DF315535BD746760363E2242EF8C705F8DCBA2D5DA4A7 ] Appinfo C:\WINDOWS\System32\appinfo.dll
15:47:27.0885 0x12b8 Appinfo - ok
15:47:27.0917 0x12b8 [ A8AC0B8ED134888731D1A1BCEF930FA1, 917D2C99CB28C5F20BA386148B6A93541AEF900A9A99D310D732B501322945E5 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
15:47:27.0932 0x12b8 AppReadiness - ok
15:47:27.0995 0x12b8 [ 43BE4036BC793A48BB0021B0FFF943CF, 233102A2B0D4B0527C6C2894EA5D14D556AD4C00BCFFC4E2B171F8B9DD200BAA ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
15:47:28.0042 0x12b8 AppXSvc - ok
15:47:28.0057 0x12b8 [ 0756EECAC010BE449D07502DF27E7701, 6A895CA80050D021DB5E130102F626027339A22673B7C15C51A375C0401F03D2 ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
15:47:28.0057 0x12b8 arcsas - ok
15:47:28.0120 0x12b8 [ BD63768F58666341BE007DAA21B3A063, 1D6112E97042E19E4D916AA22F8AEB7FCC2F36CA45F55049D77042DAF3B8847C ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
15:47:28.0120 0x12b8 aspnet_state - ok
15:47:28.0135 0x12b8 [ A5792F971EFE86B7F56EE7299ED1082B, 82DCD15E2C9D8A3EA663941C9CE73020FEEF2F91354D0BB51E8A142AA1E30217 ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys
15:47:28.0135 0x12b8 AsyncMac - ok
15:47:28.0151 0x12b8 [ 8921DF6060DB5C7700AA48CB12E9EA08, 8F18841B454CDE4926C50B23F818D00ECE0AE884DB198E396445CB44CB39B2C4 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
15:47:28.0151 0x12b8 atapi - ok
15:47:28.0167 0x12b8 [ FD9A5BCC3AFB02E87668B749546B6229, 4BE969A11CEE8033F40EDE7E06A5904B328D3FC1842855C0DB38D5EEF458219C ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
15:47:28.0182 0x12b8 AtiHDAudioService - ok
15:47:28.0214 0x12b8 [ 240FF83DD79546B26F187FAB20F83864, C4DC0159016B4A4630357131E614814C068D07BEA94AAF6393E882A78C9FCA1E ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
15:47:28.0229 0x12b8 AudioEndpointBuilder - ok
15:47:28.0276 0x12b8 [ 6300722E8527EC54D426FD00EE5196B2, 71376BE797E8F3E2E671167DA400239D5289DE7EE56CF29564C98715B9DB1D09 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
15:47:28.0292 0x12b8 Audiosrv - ok
15:47:28.0307 0x12b8 [ AC82CC4F2A41E098EB34C0A9F8125DDC, CC416DD5FC8E14A1F99F8DF52D795CA6E16EDBF8FD7C9624B10BA83D9D954BF2 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
15:47:28.0307 0x12b8 avgntflt - ok
15:47:28.0323 0x12b8 [ 45061BD6F11B80BF1C07A9253A659BF1, 9A1AFE963672E23F3C19FACE2CEB64766C964B165ECB26F36B6FB5730CEAFD2D ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
15:47:28.0323 0x12b8 avipbb - ok
15:47:28.0385 0x12b8 [ 6C4B9A2FF6924405E9ABFB558049D4DD, 9AB314B9ECF41832589726556A93CEAAE2AE774B1738A46A027E833B73A72118 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
15:47:28.0385 0x12b8 Avira.ServiceHost - ok
15:47:28.0401 0x12b8 [ 390184FAD8FCC1B6DA25AEBAE928C3B6, 537B0E0FAE080B55D70E990BBA0F7F22903CA340F6A42039BAD617A8ECF59119 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
15:47:28.0401 0x12b8 avkmgr - ok
15:47:28.0417 0x12b8 [ 74179E7C103F3A44B33D7D982E21E35D, 7F2384B065EA9959734D65426781D901CDB0DA8DFCAD13BF05044DDF33CA5688 ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys
15:47:28.0417 0x12b8 avnetflt - ok
15:47:28.0448 0x12b8 [ 2F7F80543129210CA75995D0DCA488E8, 353E598FF26FA363C02A2B44BA8D7D1ED97B8AC8C69F1B5C5D521BD0D5D5AB94 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
15:47:28.0448 0x12b8 AxInstSV - ok
15:47:28.0495 0x12b8 [ 00D64E82900E4EC9062805ED87C2D75A, 577110F9A7C6C2C4CF86FFF4F60E23F61623ED325FC950033900A5102754A677 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
15:47:28.0511 0x12b8 b06bdrv - ok
15:47:28.0526 0x12b8 [ 5164A66EC1565711A7B4CF2F143B4979, DA29F0FB63F3EB2BF92D51FEB4BB7D2B964553D2F634556325953927464CB3A5 ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
15:47:28.0526 0x12b8 BasicDisplay - ok
15:47:28.0542 0x12b8 [ F4C58BBF2972BD84C73F6A14CA35AC4E, B7A226EB861B63ACF4BF9B5A331ACA6FFC9B787DCCAA7697EEFC4F634508A6D5 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
15:47:28.0542 0x12b8 BasicRender - ok
15:47:28.0557 0x12b8 [ 25349D0B334E528667980948ED107D89, 70EF9D3B8DCAC6E9720C6F3EBC77392FADC182A6925F9024FE30A21321E0137F ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
15:47:28.0557 0x12b8 bcmfn2 - ok
15:47:28.0589 0x12b8 [ DF78B56EEE6004DEE8CE57763128075E, 5758CAF4B0182F3F2E2508B3BB58B0271F2689808D09675B2753FE373D1D77D2 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
15:47:28.0604 0x12b8 BDESVC - ok
15:47:28.0620 0x12b8 [ 1E8A9267F8886803AAE02982FC1B5BC4, 655DF84E037BD6E582A6BA89737A4388956219171AF7253D126E54A23F16BE59 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
15:47:28.0620 0x12b8 Beep - ok
15:47:28.0667 0x12b8 [ 7FAFFFC4C59F5010D6E7CEA152076B92, 945FD6C04E109D4E5A4164BAA9A8120EC85AB809555AAD83E61B9F179F976FD7 ] BFE C:\WINDOWS\System32\bfe.dll
15:47:28.0698 0x12b8 BFE - ok
15:47:28.0745 0x12b8 [ BD60F5633F6BD617D9ECCA3FFDC0D37E, 2F0DECAEB7096CD628387263381E123C883F483BD87F7F2BA6DEFBB5A184BAA3 ] BITS C:\WINDOWS\System32\qmgr.dll
15:47:28.0761 0x12b8 BITS - ok
15:47:28.0776 0x12b8 [ C9FD65687EF89715999C582D3E568812, 42BA59A78A47C510CB2AFDC6C6080B33F9F611F84FEE5262DFF16D7633C50EB1 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
15:47:28.0776 0x12b8 bowser - ok
15:47:28.0823 0x12b8 [ 3A4A543F135DE9A06ABA9DF982D79DD7, ABA165435C27BE15D7EBD3E7D023E295CB7AE2A099DF9E253C78EC45EADD75EA ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
15:47:28.0823 0x12b8 BrokerInfrastructure - ok
15:47:28.0854 0x12b8 [ 2AAD720B32904B97EDD8C3211344F79E, 41B1AEA5FAA48033B2581E18D68EFC986C3D65B383847E250C054CE3133A893C ] Browser C:\WINDOWS\System32\browser.dll
15:47:28.0854 0x12b8 Browser - ok
15:47:28.0854 0x12b8 [ F8DD3B0EAC1EF1D087AE47E5819540AC, 866C951B52E3202AC89552AEA72A45123367199335578F03815E2ED55DA2FDAE ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
15:47:28.0854 0x12b8 BthAvrcpTg - ok
15:47:28.0886 0x12b8 [ 647E2A425AD43637EAA01096A58B7089, 8F76D024FEBCBA1AC54363133DE1E0DD5B9D696E5E688EFEBC3B79F7F1B9C568 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
15:47:28.0886 0x12b8 BthHFEnum - ok
15:47:28.0886 0x12b8 [ B95040CAD3434D9EE003065363A0FAFF, D441E0676EA1AE1ABC305732024311CA59715E6763B3D7ADB728DEEFC403E182 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
15:47:28.0886 0x12b8 bthhfhid - ok
15:47:28.0917 0x12b8 [ F334BF7B0737CEB3B6822631EAD55A87, 4E5AEB1F8E109BA01A5D1CDE2E3C677FF07F2AFE8B195CB5F82AA28816D2060E ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll
15:47:28.0917 0x12b8 BthHFSrv - ok
15:47:28.0933 0x12b8 [ 29AEE352AED4FCD2191436D263D75347, 3D21262EA26BF423BFA4A9146E53F8B036B2A1157DBE91A11C5603AF7A670B6F ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
15:47:28.0948 0x12b8 BTHMODEM - ok
15:47:28.0964 0x12b8 [ 26DD0127A05B333E36316E6EA9A6AAE2, A2DC4483FF5639EE8DD315AB2989865CA6A6992C578FD7F7D31698A015355941 ] bthserv C:\WINDOWS\system32\bthserv.dll
15:47:28.0964 0x12b8 bthserv - ok
15:47:28.0979 0x12b8 [ 854AF190F55E6D70EC65A85798F896E2, 6D39F9131BE93F934502BA1DB109E7AD35D3987B636F7B32F9C34823DF25746B ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
15:47:28.0979 0x12b8 buttonconverter - ok
15:47:29.0089 0x12b8 [ 68BD23A0AD9E934F037A1D8A1929D1E2, 7104B04435930D085D01779065C8F293A265800D90C9DEFB19C998D9326E44E7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
15:47:29.0104 0x12b8 c2cautoupdatesvc - ok
15:47:29.0167 0x12b8 [ 13297729C696656F990A5DBA53023129, EB2B34B04B79756199DBBBDE99ACBB576D20C7C0AF3E4F3C0CF0040948216AAC ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
15:47:29.0183 0x12b8 c2cpnrsvc - ok
15:47:29.0198 0x12b8 [ A10A1E05A943B10ECE5D57D131B7404D, 71BB816B6841001A4305DF1814926B639265E91895CA5D06284B0970E40CE386 ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
15:47:29.0198 0x12b8 CapImg - ok
15:47:29.0214 0x12b8 [ F2829DC6D292DCAC5029893BB2E9FEE3, AF2A25722D3BE37BABD1F6668786AAF39E9D6CA18CE8E845E63266E218C64526 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
15:47:29.0214 0x12b8 cdfs - ok
15:47:29.0229 0x12b8 [ F3A9E38AE23AD4015764AF89E4AE3519, 57ED6AC834177E128720FEC5B5793F35C7C36474E2D787F182B6730933222CC9 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll
15:47:29.0229 0x12b8 CDPSvc - ok
15:47:29.0245 0x12b8 [ CA160E02F35A61C6F5C681FB4669C519, E6BC66156EE226F16804C4FDC8A60EB15CE6212EAFB9FB841FAC899979E140E2 ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
15:47:29.0245 0x12b8 cdrom - ok
15:47:29.0276 0x12b8 [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
15:47:29.0276 0x12b8 CertPropSvc - ok
15:47:29.0308 0x12b8 [ 60D7D304DF75DFF6A46CF633F583B592, 4141D8D1C6FE829C02053DA91AC6B0628BDEB3322CAAD4AD958190F9D173340E ] circlass C:\WINDOWS\System32\drivers\circlass.sys
15:47:29.0308 0x12b8 circlass - ok
15:47:29.0323 0x12b8 [ FF9D4BCE19E5D36CB3A845A3286DA6C3, A0E2C38D629359EEC6F8EEC6F92A3E571AEF018BAF259F395DC497ED4827460B ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
15:47:29.0323 0x12b8 CLFS - ok
15:47:29.0354 0x12b8 [ 5C4648673693724C8D4A1A92E1AA06E6, 5D548241715687BFA52E40B867EF73CB45D01B7F9A9B7F00B92BF2B4C97BE1D0 ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll
15:47:29.0370 0x12b8 ClipSVC - ok
15:47:29.0386 0x12b8 [ 8EBA63416EC166EBA6EF6D34A505D8C8, 5EB0236ABEA2277B71D9F009DA71934C618606B20BBEC07B8595195E40C12A2B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
15:47:29.0386 0x12b8 CmBatt - ok
15:47:29.0417 0x12b8 [ 3B64DA873CEA5BEC42570BFF1054A014, 3649B25855CB9BE5BA3B3FEE4221575381FB2D488B8B050B5DD0088386AA0F7B ] CNG C:\WINDOWS\system32\Drivers\cng.sys
15:47:29.0417 0x12b8 CNG - ok
15:47:29.0433 0x12b8 [ 5EEA0856000F81B3D709BC81B3AA1EF2, C04E4E31D3FC38102BA410D312F58AF848920EE37004A5C306D79229C9B6079A ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
15:47:29.0433 0x12b8 cnghwassist - ok
15:47:29.0495 0x12b8 [ 74CD3BF688E2B408227FE012A2F2D8ED, CC01AC79CEB9DC94FA5675D66F048928C9968B8944E34F5482A73C14B70EE8A8 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys
15:47:29.0495 0x12b8 CompositeBus - ok
15:47:29.0495 0x12b8 COMSysApp - ok
15:47:29.0511 0x12b8 [ D38774D1D383A2CDB9A4F64B7206913B, 6CDDC46D1D431342F00CA537FC327B23B8AA4D513CEEEE61F3E19C77975DF9C8 ] condrv C:\WINDOWS\system32\drivers\condrv.sys
15:47:29.0511 0x12b8 condrv - ok
15:47:29.0558 0x12b8 [ 8AFDD74F2DC5BAD9B2215FB19DB65240, A2BDDA4C77C63D3D8E9F1D397D7B41EC1BF093A6399C14D311D4D230B5F1E093 ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
15:47:29.0558 0x12b8 CoreMessagingRegistrar - ok
15:47:29.0589 0x12b8 [ 35DB06AACD8AD5999161DA71FF0E16F0, 22AD27811AAD14666ACEF4115447B0CFAA70D1E73923059FB2A9B4C3CBE500A6 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
15:47:29.0589 0x12b8 CryptSvc - ok
15:47:29.0636 0x12b8 [ F038EAF73AAB72A4A89185A5A7B9FD75, 8213A60B3BEAFC1C554C5D049DFE3C6E44CEFE639EDD6A335AC18A9DAEDA2D4B ] dam C:\WINDOWS\system32\drivers\dam.sys
15:47:29.0636 0x12b8 dam - ok
15:47:29.0667 0x12b8 [ 5E57B9FBB4E9C43EE5B69BEE01A1819F, A1F8D1E52AF446CEA2EB50064E3A24B713B19197D61C3EAECB81B3CCD80558E7 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
15:47:29.0683 0x12b8 DcomLaunch - ok
15:47:29.0714 0x12b8 [ 0605AB12BF1856DF21AB708F28EA91CF, 3A6A7F8F84044DC1EA490A007E6DBC52203BA237ECF1B845961D9BB95E9BF8C8 ] DcpSvc C:\WINDOWS\system32\dcpsvc.dll
15:47:29.0714 0x12b8 DcpSvc - ok
15:47:29.0745 0x12b8 [ BABB7BB5AD3CECFF466E6080F43CFC58, 1B8FF66557EC4C749156ED6DACC4D61D5DC4E25DD58F6DB3713C356214B80FDA ] defragsvc C:\WINDOWS\System32\defragsvc.dll
15:47:29.0745 0x12b8 defragsvc - ok
15:47:29.0776 0x12b8 [ 63C9464B165D31ACC46B6B089AB36B41, DE38DE4E6331D07630B63224F8014C27368C29791EDB58CC5DAE7CBACD37160A ] DeviceAssociationService C:\WINDOWS\system32\das.dll
15:47:29.0776 0x12b8 DeviceAssociationService - ok
15:47:29.0792 0x12b8 [ 7B3DA16FAA498838BB457E0B7E380EDF, B73DCFFA60886F10765E4B76A58CFF18C08CAFEE620700361FC8FEC7E80B5958 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
15:47:29.0792 0x12b8 DeviceInstall - ok
15:47:29.0808 0x12b8 [ CF3895DD260ADE05BC91D8FBE0A82907, D7D8A29E873BE5C3832C9264F0165F6CD50D42ED0E04B0FCF07F054793092334 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll
15:47:29.0808 0x12b8 DevQueryBroker - ok
15:47:29.0823 0x12b8 [ 25435407D97419627F4B10653433BF2B, 5429B0DB7C5302E9A6AF92C046637183D4147D4A206963ABEA3A611214D6AB04 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
15:47:29.0839 0x12b8 Dfsc - ok
15:47:29.0854 0x12b8 [ 30710AEFCE721CEEE0F35EB6A01C263C, FB062EC86474D38BBC38E11E2618A9505001C287430B495C482977BBE58017C8 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
15:47:29.0854 0x12b8 dg_ssudbus - ok
15:47:29.0886 0x12b8 [ E59C209F1F633C1AEAF151B2CA46BBAA, 6A4DA927418B56A228CC8D9DFA3351B2B53A9328F5C56C10F0C7B19974B2ED89 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
15:47:29.0886 0x12b8 Dhcp - ok
15:47:29.0917 0x12b8 [ 95AA7877FD4161BFBC8493F9279B1901, F6B7DF75D763A89901BD12454BEF92D161B392F721B8568505073929D9F419BD ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
15:47:29.0917 0x12b8 diagnosticshub.standardcollector.service - ok
15:47:29.0980 0x12b8 [ 58395E37ED838B93A56F1D089C2F53CF, 57D167B58DF5B33F7E2A98E1B8B33C8F076D34CA032D22F050AE6F83A48DC8E6 ] DiagTrack C:\WINDOWS\system32\diagtrack.dll
15:47:29.0995 0x12b8 DiagTrack - ok
15:47:30.0027 0x12b8 [ FDCD449AE9E75D7690593D16ADAF4DB4, 3366C4BDB031EB525F85850E903C46802A2AC762C0772C6F6E543DDA4AF1E9D5 ] disk C:\WINDOWS\system32\drivers\disk.sys
15:47:30.0027 0x12b8 disk - ok
15:47:30.0058 0x12b8 [ 43A1B8B43CA4E213E0FD920F2FD6BCBA, 839C6047FD6EA951538209C30C9D8AE68F9B47A58DA151D071C03408250B0ECD ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
15:47:30.0058 0x12b8 DmEnrollmentSvc - ok
15:47:30.0073 0x12b8 [ F10A8F6D036CEDD14A5471782C52F041, E0DA3C4F76DBBEAED549375E57819F8825B33A118F7674D417D294054863F648 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
15:47:30.0073 0x12b8 dmvsc - ok
15:47:30.0105 0x12b8 [ 7228733177F673B4D51BD1AA082D47C1, DBE155CDCFAA7C32407A207F637F252FA0CE30F1DE7E7DBEC42DB37FADB5BFA7 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
15:47:30.0105 0x12b8 dmwappushservice - ok
15:47:30.0120 0x12b8 [ 592E41B3C11CA12203D3708AD8FC3D37, 6C69D5D603FBF038C069EDDCE29F7C6A60CAAE58B985AB218E1497F2BA934D42 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
15:47:30.0136 0x12b8 Dnscache - ok
15:47:30.0167 0x12b8 [ 6184C7A2F12625C108AEFD3A43429967, 689153F319BB1013FF60F71317E8380A6945EEE8141EDBDD6B185A966E23BB93 ] dot3svc C:\WINDOWS\System32\dot3svc.dll
15:47:30.0167 0x12b8 dot3svc - ok
15:47:30.0183 0x12b8 [ A616D8297C1BEA690BBC796736A7A78D, 9365470F4609606410AD79D98E1E77D815DC7C5AA924FB639FCF713EE8EDEA76 ] DPS C:\WINDOWS\system32\dps.dll
15:47:30.0198 0x12b8 DPS - ok
15:47:30.0230 0x12b8 [ 45771610FF181434073B5A0A00F20F8D, 6A17DB09AA6D021F000F7315317235E1FCF41FD58EA7DF81A7C9F5A6DE999984 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
15:47:30.0230 0x12b8 drmkaud - ok
15:47:30.0245 0x12b8 [ 00D9A948FB7344C62CEBED88E50EE39A, EF33FE7FB34DE571F3956C1F7AC8EFAA25BFD9F3AFA3ECD25DD34C5890873245 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
15:47:30.0261 0x12b8 DsmSvc - ok
15:47:30.0277 0x12b8 [ D920A8B070A9BA5C9DEFC3BA7C3883B5, 8EA05CDE58930EB16B4B502561AF2DB5229658FDC1948A9A8F249A7402C21398 ] DsSvc C:\WINDOWS\System32\DsSvc.dll
15:47:30.0277 0x12b8 DsSvc - ok
15:47:30.0308 0x12b8 [ 33F90B202E9DD9B7D489EB59310FDC34, 6ECF6669433E090E9CF6B1875AF18D2C06F8CDB3901D58BF89C3E2202574ABBD ] dtsoftbus01 C:\WINDOWS\System32\drivers\dtsoftbus01.sys
15:47:30.0323 0x12b8 dtsoftbus01 - ok
15:47:30.0386 0x12b8 [ 89C9C3745F270EF93988DA57BC6AA62B, 947886F3121919427BDCB123C6FC28E29CA73D427E92025E1BEAA743D27306D3 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
15:47:30.0417 0x12b8 DXGKrnl - ok
15:47:30.0448 0x12b8 [ 6E36BDBB46DF7F865D0DD30663AE3891, 98967B01EA450AD4D5FE8085F710359C022D783B839A51BD4A266718156B01EB ] Eaphost C:\WINDOWS\System32\eapsvc.dll
15:47:30.0448 0x12b8 Eaphost - ok
15:47:30.0542 0x12b8 [ 3070013B01EDA42C7EB67D731340C396, C083CA05650750876E70CB6AB51D5C047C06098C2ED86B083A74C97830247BFC ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
15:47:30.0605 0x12b8 ebdrv - ok
15:47:30.0620 0x12b8 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] EFS C:\WINDOWS\System32\lsass.exe
15:47:30.0620 0x12b8 EFS - ok
15:47:30.0636 0x12b8 [ 59EE187E333EE9914DD9BEA5F4E0D85D, E34BB8075E38FC6AEC056323C6E3B5B4E7041EE6F4D51699B706DEEA18BDB911 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
15:47:30.0636 0x12b8 EhStorClass - ok
15:47:30.0636 0x12b8 [ 9297F1CC486F24BDFD2874156AC5430F, 1AF8689ADE4E658FC9418F7886B6C19F7D005EAB2AEF9B0E14FC81C61A74CECF ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
15:47:30.0652 0x12b8 EhStorTcgDrv - ok
15:47:30.0667 0x12b8 [ 9E8FF6B95FD420FA9E40BE548E5C8D92, 8825B81418335D03CFAADB792C1466023C459BE489ACACBD6686FFB544F22D30 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll
15:47:30.0667 0x12b8 embeddedmode - ok
15:47:30.0698 0x12b8 [ DC2F91EAE9A28FA8C6610A9B7701B70D, 480DB509BF944AAC3617594F1245B4603069DE39186BC1FA7EDB8E0536B05E79 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
15:47:30.0698 0x12b8 EntAppSvc - ok
15:47:30.0948 0x12b8 [ F7FCCA6300485EF60CEA6D991D6C8C78, 24080D80CF1FD678DF4C9CAE70F65F8D9232F5F6A6F2B73A77B5E3C91E6505F3 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
15:47:30.0948 0x12b8 ErrDev - ok
15:47:30.0980 0x12b8 [ 2093F65AA84478E28C8E9D05BC413845, 086D4E0D4B993F4041AA8A9DCBEEDB53BD05B88E2BEFB218837FB10FACDF4233 ] EventSystem C:\WINDOWS\system32\es.dll
15:47:30.0995 0x12b8 EventSystem - ok
15:47:31.0027 0x12b8 [ DCCDC3F35F0618692117DF90800A4284, B636B2A39AE89A9C2CDE17EC52DA669DA8AA9E2B04CA5CA19926DA8009655244 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
15:47:31.0027 0x12b8 exfat - ok
15:47:31.0058 0x12b8 [ 5A1C6AFFF6946C5C21A27AE05084C0D1, 558CB87E596E85182F6976F215EE0E35F57BF901409A2805E6A3C29D8984B048 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
15:47:31.0073 0x12b8 fastfat - ok
15:47:31.0120 0x12b8 [ 046FC9CF53A91E2FBA498CA7B0C3B028, BCFB06DF53065706DD6287E8C47BF5047F8A1E33981E1881E6ED7510337F5BC8 ] Fax C:\WINDOWS\system32\fxssvc.exe
15:47:31.0120 0x12b8 Fax - ok
15:47:31.0152 0x12b8 [ 4E4B7D935DBF522B2F23D3573596181D, 9D0EC9F65920EE0FFFB2D49C58E4D5151C8CEEB7AA82543D226E4B84EEE4B3F0 ] fcvsc C:\WINDOWS\System32\drivers\fcvsc.sys
15:47:31.0152 0x12b8 fcvsc - ok
15:47:31.0167 0x12b8 [ 583EB1C7690E361213BBD0472155128B, 5F5871490A6DAC4A824F4428941AC86FBFA9AA349B99B5D9544E5D62EB459FA8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
15:47:31.0167 0x12b8 fdc - ok
15:47:31.0167 0x27b8 Object required for P2P: [ 6300722E8527EC54D426FD00EE5196B2 ] Audiosrv
15:47:31.0183 0x12b8 [ 94B1A46EDD335F0C54C7BDAFC43348E6, 58073D58D0BE7389C2A4736AFE108835E5AE9C9950FF630644F585C99B964043 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
15:47:31.0183 0x12b8 fdPHost - ok
15:47:31.0198 0x12b8 [ BC855BB7DFE06F27F78E0EB2A8CCB70D, D16C3DAB99C16B077BA5DA5E9E0646B0B9237B00ABAE867D9F81A2D072D583B1 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
15:47:31.0198 0x12b8 FDResPub - ok
15:47:31.0214 0x12b8 [ F1125F20D56F28DDCD1A6F3E81EB4F5F, A6620ECCB15FAA70E4A43ADA4CE82CF97D708B6FA07F3FAED276359E7F92FD0F ] fhsvc C:\WINDOWS\system32\fhsvc.dll
15:47:31.0230 0x12b8 fhsvc - ok
15:47:31.0245 0x12b8 [ CDFD81CACE0E11596A3BB61EC4CF6467, 569FA86A215B054131AA9AFEECFEE7FD7143DCFFE275B84196004AEA538B2476 ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys
15:47:31.0245 0x12b8 FileCrypt - ok
15:47:31.0261 0x12b8 [ 3F02FEDAE894CBF4BAADDF8C8E1D53A8, DA32ABB1CDA867B8456C46F8581FA7F3A8D8B89D9F6E7422F51941D5FFA15B13 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
15:47:31.0261 0x12b8 FileInfo - ok
15:47:31.0261 0x12b8 [ 2824933386E30DE5BA089DF539CE19A3, 7B33E514576C68B444AE99CBA1360EBFAE8A46EEE5C01F4EE4CF471A712AB148 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
15:47:31.0277 0x12b8 Filetrace - ok
15:47:31.0277 0x12b8 [ 6A598249640F8BEDD79EC73917E1664F, A675238EA19E6632CDEB4EEFF7CF509EAAEF76AD8DFD247664E5607555D9CEE1 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
15:47:31.0277 0x12b8 flpydisk - ok
15:47:31.0308 0x12b8 [ 44B6A6832134DF651E887E941478CA35, FCF4EB726D00F5A17DD66C81CFDA49427281C94CF9CA2008397D591AEA61AE05 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
15:47:31.0308 0x12b8 FltMgr - ok
15:47:31.0370 0x12b8 [ C197284A9D565A38497733AF2BDFA111, C6615AF0D366C2DD6D431B073901EED02D49AA3F252230735DBB52A90BCFA833 ] FontCache C:\WINDOWS\system32\FntCache.dll
15:47:31.0386 0x12b8 FontCache - ok
15:47:31.0433 0x12b8 [ 109AACC7FB0170535F71491F673AFD38, 212B6761ABBAC29993DA0A47C3DDE8074EA9E5A8FFA8FF6EAB95AC69D8FDD5A0 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:47:31.0433 0x12b8 FontCache3.0.0.0 - ok
15:47:31.0449 0x12b8 [ 3F3B9E8CECD5604BC7746EF3A852EB67, 51AF62A9563379266C0C873E82F55427900032DFD7AC3EBDCDF77F8F8DE91A5D ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
15:47:31.0449 0x12b8 FsDepends - ok
15:47:31.0472 0x12b8 [ A60583221C7BB7CEC35C63285A297BE1, 3C842FBEAD1FA2BD8D37B2B0E8EDF77F4F50508C56FB25DFA81DE9679090D51D ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
15:47:31.0473 0x12b8 Fs_Rec - ok
15:47:31.0501 0x12b8 [ 58013A50225174EEF1410E37795D7908, F8E557CA4110ABB203192DEAF59D91A5FEF2A5EA394637276DAB7F4D2E7BFA39 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
15:47:31.0512 0x12b8 fvevol - ok
15:47:31.0529 0x12b8 [ 0DAAE3EFCE00133AB3E383A36C47CDAF, 9145665F4F0575F951803AAFAA1A7DC0FAA35430CAE7D90E902074D60D6F4C62 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
15:47:31.0531 0x12b8 gagp30kx - ok
15:47:31.0551 0x12b8 [ F59155B95D01C08F9ED774B626B504A1, EF0FCF35AD9CD5E5D695F0C064244D2B327E7FB10FD7CBB0586253EC75562918 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
15:47:31.0552 0x12b8 gencounter - ok
15:47:31.0566 0x12b8 [ AE24452F55C6F1784CBD7489D0CDDB02, 4E13C51CBF30A8662B1180AC74E968CFC428B6EA7931F09357E7D120063D4823 ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys
15:47:31.0567 0x12b8 genericusbfn - ok
15:47:31.0591 0x12b8 [ 96F0D3A583A91B634EE2AC2507356EDC, 43D2575F33D28F61C13D2DCF358BFA9DCEAE276C83152DBE7AE2020A66929CD9 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
15:47:31.0594 0x12b8 GPIOClx0101 - ok
15:47:31.0653 0x12b8 [ E50CE978F571B900D9A7E2F1C5BCC070, EA14873A5F1B700D7CDBE55B9D214DC457262866A90D80B3E8325A8EB7932CE7 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
15:47:31.0684 0x12b8 gpsvc - ok
15:47:31.0700 0x12b8 [ BA2455D93BD57989A04FE4094AA6F941, B579FB367C063EA30C034381148410D49D38E183A5A4D51D2334A81DAEE95CEC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys
15:47:31.0700 0x12b8 GpuEnergyDrv - ok
15:47:31.0746 0x12b8 [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:47:31.0746 0x12b8 gupdate - ok
15:47:31.0746 0x12b8 [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:47:31.0746 0x12b8 gupdatem - ok
15:47:31.0762 0x12b8 [ C277A49F8A8295840DEBC9240B75A282, 8B2BA0E6A8300323765D95ECD843105B0FC4B80B85EE2220E677C4E9A760C9D8 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
15:47:31.0762 0x12b8 HDAudBus - ok
15:47:31.0778 0x12b8 [ D5A57EF4822A0388352FFF9F5CD53495, 509F365386859157E9078821FAA56D2A3C0BA296CA129E0D42453428A14687A5 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
15:47:31.0778 0x12b8 HidBatt - ok
15:47:31.0809 0x12b8 [ 39575B53EB80C77FF2A3F1449D00B7F5, 37E66B38BACE00AFEF7093F990A234399D8451A9D2C2C8CBECAB69C664E63EA6 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
15:47:31.0809 0x12b8 HidBth - ok
15:47:31.0825 0x12b8 [ 35C3B602664116E737FF729F9A7156AD, 7A3C5CAD716E819CC53405971F3ACD135BCF023EC2228C1095E2116BCC384E62 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
15:47:31.0825 0x12b8 hidi2c - ok
15:47:31.0856 0x12b8 [ C4ABE526BBF2A18E8AF70177FBAD9C6E, 4DA06B563A08AC15D949F4599F73F172B3BFCB5D23B34240D1E2114438A11929 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys
15:47:31.0856 0x12b8 hidinterrupt - ok
15:47:31.0856 0x12b8 [ 348416C7D7EB05BC3099FE2F2B27985C, F30E8682E9DD731A1AD7328FB8A48A2BB7D6E52780AE1FDE839D26E84B4FA7B5 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
15:47:31.0856 0x12b8 HidIr - ok
15:47:31.0871 0x12b8 [ 5576DF399CF2D3B63608F7F282151249, 04939E79B8B8035547CE6FFE9001252CA810BAD46D8DB75FF5C13EB10EEB5C57 ] hidserv C:\WINDOWS\system32\hidserv.dll
15:47:31.0871 0x12b8 hidserv - ok
15:47:31.0887 0x12b8 [ 01F732724AF6EFE69886DA95A4E51820, E048A480F9396418BDE9659596E7EDA5FF97D3CE029D186048609B47575BEAE1 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
15:47:31.0887 0x12b8 HidUsb - ok
15:47:31.0918 0x12b8 [ 7433A8D28EE11A661C7A45AF28BA7987, 8A73DB423924E84CD3629BF6C7298CD093D2437B73B3F4520D39330923DDA2D6 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
15:47:31.0918 0x12b8 HomeGroupListener - ok
15:47:31.0965 0x12b8 [ 3FDBFBE5AE639996EB8D482C16BA7EA9, 7E48304818AABB4C5B0CB7FD32D96D6F90F4180AB0F668A2FE653A7097A40673 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
15:47:31.0965 0x12b8 HomeGroupProvider - ok
15:47:31.0981 0x12b8 [ 3844CE7DD23530CAD59D8CABA57CCB05, A44BB60686A0E98FF370D9DED5B32C3F34F0352ACFA3B3052BA4023922B53DB7 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
15:47:31.0981 0x12b8 HpSAMD - ok
15:47:32.0012 0x12b8 [ CA6EADBB8731CA27BDA4037BF290AC14, 31EC9397D55D4EEC416AD722134E2D6B5D14E46D2150CB94889C4BFDAACBF421 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
15:47:32.0028 0x12b8 HTTP - ok
15:47:32.0043 0x12b8 [ 8841D927EB1F7FFC8B1805BC0CF190ED, B063E686380EEF582CF736E33751812F0041C593C7F30EE97D13DEDC9B246AB5 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
15:47:32.0043 0x12b8 hwpolicy - ok
15:47:32.0059 0x12b8 [ 53436C3835E80F4421652A67F44D6313, 8731091945A839713348DF3060A4C96033874E2B3DC7E099BEEC8C65B07F98CF ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
15:47:32.0059 0x12b8 hyperkbd - ok
15:47:32.0075 0x12b8 [ B2DC6C2F313EBB967B556B4E73A75451, B1816A0AE15705F0325F167EA76166779607D6086EC36A4A960E3BA47B4EBC4B ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
15:47:32.0075 0x12b8 HyperVideo - ok
15:47:32.0090 0x12b8 [ D4CDEE4A62BDFFF6E8558A9552148EA7, 55306786CB45082AE374937EBA256FF9CD640BB2E8C19DC6C704489D4743F5CC ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
15:47:32.0106 0x12b8 i8042prt - ok
15:47:32.0106 0x12b8 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
15:47:32.0121 0x12b8 iaLPSSi_GPIO - ok
15:47:32.0137 0x12b8 [ F1DF87463AC308047B089E9F0456B4C8, DFFF3C63D3124C2B879B888104042406FE326D4E7C8C1881A269BD4287B9CD33 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
15:47:32.0137 0x12b8 iaLPSSi_I2C - ok
15:47:32.0168 0x12b8 [ 9FDD4763A115D04F565C38183DE4646F, A8B0653E7C5F5B3CB2A1B642F502269FB1BB1E35DBB1CBABDBDADF92C9815727 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
15:47:32.0168 0x12b8 iaStorAV - ok
15:47:32.0200 0x12b8 [ 4E69EE8F8E5DA036535D433C544AF9E2, 2ADE9B97CE1C19FF984D8BB99CF31415872C2D9628864BD78C0E44D21CC94EE3 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
15:47:32.0200 0x12b8 iaStorV - ok
15:47:32.0231 0x12b8 [ 15C59DF20F74A0C2C764B991FED7F4A5, 6E9804775E815F32A4D73C346E627D64A3096525E78FAE3B6E43CFECAE270428 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys
15:47:32.0231 0x12b8 ibbus - ok
15:47:32.0262 0x12b8 [ 88E6A429944544346EC3AE1FD7D24BCC, B6B8D51E5491C91D2FCDC77C1D82A5168B0C860252208E1B4612D8D5C19401AD ] icssvc C:\WINDOWS\System32\tetheringservice.dll
15:47:32.0262 0x12b8 icssvc - ok
15:47:32.0262 0x12b8 IEEtwCollectorService - ok
15:47:32.0293 0x12b8 [ 6F9C31435DD3E3D3BC247212EA144EBF, 05C4A0BD4BABD27783CEFEE6108C1A05911A212189233F09AF1A56BDC60F60F8 ] IKEEXT C:\WINDOWS\System32\ikeext.dll
15:47:32.0309 0x12b8 IKEEXT - ok
15:47:32.0418 0x12b8 [ C2F868881D48A568B525255F084EF063, EFB1704AE223CF886EDA5F1411C8178EDE4B5E1F7EE373E3DA89A6EA1A57D91D ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
15:47:32.0481 0x12b8 IntcAzAudAddService - ok
15:47:32.0543 0x12b8 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
15:47:32.0559 0x12b8 Intel(R) Capability Licensing Service Interface - ok
15:47:32.0575 0x12b8 [ 498759139F71142888CF7EFA1ABE18C8, 9CD0CD748B143F947B4DEDE39344A8C284717CC8AC97E25827EB73CF10831419 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
15:47:32.0575 0x12b8 intelide - ok
15:47:32.0590 0x12b8 [ DC270DDCDDC2EF65D484A65CC5166222, A88BEAD819ABEFE28B6F9A10586ADCB0EE2A5ED9273F176E9313750609C7892F ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
15:47:32.0590 0x12b8 intelpep - ok
15:47:32.0606 0x12b8 [ B4D9C777762B1F7356958B9C0AA93BEB, F11B07FE939A107AB4EED4857854DF269C2D86A80C8507C8B1E95F7805975EDB ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
15:47:32.0622 0x12b8 intelppm - ok
15:47:32.0637 0x12b8 [ 22BD83268B80A8C89AAC0BDF46E4EB5D, E7DC0C2E4104B51EA545BA8D0CFF11FD6A15BFD8EE16E546E8FC220853402CB3 ] IoQos C:\WINDOWS\system32\drivers\ioqos.sys
15:47:32.0637 0x12b8 IoQos - ok
15:47:32.0637 0x12b8 [ A49E47A6E1429123F46A7CA9C05AEFC1, FFD68CA46DFAA4954FD76145808E2C74BDC34FFD6979BB3FB6A3EE4DC33CDC78 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
15:47:32.0653 0x12b8 IpFilterDriver - ok
15:47:32.0700 0x12b8 [ 8FBA61B7CB44F136226BE3B346FC6D19, 2190A523AC948B18C2C7B6DC96ABB654DAB471AD5E5E13F79899416E91777AED ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
15:47:32.0715 0x12b8 iphlpsvc - ok
15:47:32.0731 0x12b8 [ E0C276985AF968CE295B8E09C121321F, 07B54165E80D4254C29A6CF00CC634E70F190EF0EB8EEF73EC14F38B841087A5 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
15:47:32.0731 0x12b8 IPMIDRV - ok
15:47:32.0747 0x12b8 [ 5D3744E6FDEC1A6FB3FA9B1DD4AF0694, 209BE9FC25C8BF8CE058B7E993B6A902B881380DADC69F5208733077DA7F4382 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
15:47:32.0747 0x12b8 IPNAT - ok
15:47:32.0778 0x12b8 [ B18202D72C0EF4B53CEC6F59E3E1B955, 6DA244E6485372C16CF0B38838DC90B48079A85F5D22B0F2F197C8DA37F0A293 ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
15:47:32.0778 0x12b8 IRENUM - ok
15:47:32.0778 0x12b8 [ CD04CBCCCB4C0E4BB06B98E0F45C888A, 106B3E823C188BD14328F2BEA28559D2F637C270064B2FD214522FAC4E616F4C ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
15:47:32.0778 0x12b8 isapnp - ok
15:47:32.0793 0x12b8 [ 5D90E942C94B20E0F321015C0ABF3EEA, 4110551B172D4A5524DD857D7CB65FAF2594310BE7883D5641BC0DF5EF49C82C ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
15:47:32.0809 0x12b8 iScsiPrt - ok
15:47:32.0856 0x12b8 [ 78ABBE558F57144047F10A0F50FE4B2F, 6BE608F7697D83FD6C7E6EA422AC5637933BDC96B1044C12DE9A419CE7D6F6CE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
15:47:32.0856 0x12b8 jhi_service - ok
15:47:32.0887 0x12b8 [ 4192DFE6CA143C0AD8AF42C51A82BECA, 31FB3A261D0D5241CC87EF7DFF8BFC1A1EACE8CEC42138918EC5958DAEE100CD ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
15:47:32.0887 0x12b8 kbdclass - ok
15:47:32.0903 0x12b8 [ B63C0DB341DCB46CF7AA259333A737DD, F1B43BA68707F3F99CD31AB2035F5E86CD967AE4E5393928C69861785E960872 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
15:47:32.0903 0x12b8 kbdhid - ok
15:47:32.0918 0x12b8 [ 53C79A7FABDAAFD11EAB31963FB2CED7, 357418645DDCEFA5546AE78EDCAE86D50928710CA7A3F65F01CF721AADA36623 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys
15:47:32.0918 0x12b8 kdnic - ok
15:47:32.0934 0x12b8 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] KeyIso C:\WINDOWS\system32\lsass.exe
15:47:32.0934 0x12b8 KeyIso - ok
15:47:32.0950 0x12b8 [ 1E99B26BDB9B9C9BC775ED4543558560, 890870A6737B4910735D1B23F714AA73FCCD1C131D135FACBA6909F06D31B3FF ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
15:47:32.0950 0x12b8 KSecDD - ok
15:47:32.0965 0x12b8 [ 6198A79011C67497B324798B3D4272CE, C587F7D86837550D07918F6AACF26BF65EBAF7FF57475DC9196B4D011E83AE47 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
15:47:32.0965 0x12b8 KSecPkg - ok
15:47:32.0981 0x12b8 [ 503597D9B72DBD9998F722F12A51ACFC, 9B3585282191163AA70243BAD921ED8725A98454E0D3879E0F671E0E4F56AB4F ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
15:47:32.0981 0x12b8 ksthunk - ok
15:47:33.0028 0x12b8 [ ED5AE20C27F27F293C6C61AEC9881054, 4D5BE394D129BD559B0A9D237F3F59CB3D24C15ABDD97AE2E64931D6B9D14FF1 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
15:47:33.0043 0x12b8 KtmRm - ok
15:47:33.0043 0x12b8 [ 50AECF8C21AB2A6428A6E1E10549D8E5, 6BC7C60CF5E8AFB9972619EE1C78357756E9C0A3EC783C3056CEB600DCBB1555 ] L1C C:\WINDOWS\System32\drivers\L1C63x64.sys
15:47:33.0043 0x12b8 L1C - ok
15:47:33.0075 0x12b8 [ C529DA0AD5A21878E318801B024AF8E7, A14E8ADCA33C37B1D256CB4926A19F56D2D19B94EDF314A4ED34A8B5AB62CA5A ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
15:47:33.0090 0x12b8 LanmanServer - ok
15:47:33.0122 0x12b8 [ D6D9F4CAFD3F1A7E30AD02E508552CD2, F0D225E5951CFE1D8349F634CC91BDD5B3F9DCF6233CCB965E99BFEAFE642265 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
15:47:33.0122 0x12b8 LanmanWorkstation - ok
15:47:33.0153 0x12b8 [ 24881F16D2829764681F5FAE7B86D7D3, 290348CFAF3165847E4B53965D22E9D417EE20FFD23293B5C1855C57E6328599 ] lfsvc C:\WINDOWS\System32\lfsvc.dll
15:47:33.0153 0x12b8 lfsvc - ok
15:47:33.0184 0x12b8 [ 6ED675774BDC3735AB6DA12D29F825CF, 4317C7CF491F4E806975E7A973CFF11CFEE9E94730DDABCC67C3D693691DDDE5 ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll
15:47:33.0184 0x12b8 LicenseManager - ok
15:47:33.0184 0x12b8 [ DB789F57CE94C827FBFF709CA5ABD29E, 4CA4DD079A63649C36F76A31C4081F11F5CF6574AC573B63EF930DB19B1D1C95 ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys
15:47:33.0184 0x12b8 lltdio - ok
15:47:33.0200 0x12b8 [ FECBC6C4981772E5D0F517B34A5496EE, 15DB097BFB221B91E580E5CD1DD6B34A9A2C78A1A6FCE4162A855BB4AFE673E9 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
15:47:33.0215 0x12b8 lltdsvc - ok
15:47:33.0231 0x12b8 [ 24C87BDC66AB192FEB273BEE5FD5AA38, BFAAE1F2450DEBD1A14877C046C6EBA91014DB0B5D0FB95EC14CB714B773B3C0 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
15:47:33.0231 0x12b8 lmhosts - ok
15:47:33.0247 0x12b8 [ 2C24DC448DBE8DB9BE1441B824C57E79, DA2257EEC964A47D03C2BB13317FD788E51D4685E2395B303ED7B2575FEF3B19 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
15:47:33.0247 0x12b8 LMS - ok
15:47:33.0278 0x12b8 [ 3BB39166E446D456C277C17DFEA3DAC6, 1A08E1D017BBCE91E508D876835FA7AD2DA0859A8CFE8F8F31B4F12B48E2573D ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
15:47:33.0278 0x12b8 LSI_SAS - ok
15:47:33.0309 0x12b8 [ 25CF625E46307A5D6674C8DFA1A289AA, 1D00EB70B6B0157013A7C15EF194F51B8596612066EF31B337D8134D6BD0BBBE ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys
15:47:33.0309 0x12b8 LSI_SAS2i - ok
15:47:33.0325 0x12b8 [ 722C52B12EA4C198D56994934C9DDAB6, 5F4AB818251C770821BAF41C19B1C483A31CCC28EB96F2084D4092E33EAF906B ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys
15:47:33.0325 0x12b8 LSI_SAS3i - ok
15:47:33.0325 0x12b8 [ 3371FF1D5D745C3306C6A2C4E99C25A9, DD6F0099001501BAEDDF8411FBCD930BD6472662D209199249203CB2FDAA23FB ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
15:47:33.0340 0x12b8 LSI_SSS - ok
15:47:33.0356 0x12b8 [ E2EEF074F5260378F9AAFBCD592319A3, DC56674A08FA03FA7AF7DD8B3CC55D8324D1CB51546092A990A935FF9AB48A3C ] LSM C:\WINDOWS\System32\lsm.dll
15:47:33.0372 0x12b8 LSM - ok
15:47:33.0387 0x12b8 [ C692B9C0352315417CF49FFA664957A3, C2D4F9A936B809889F7C51FE48214A1923175913A6C5D0B72D3BA469214B5174 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
15:47:33.0387 0x12b8 luafv - ok
15:47:33.0419 0x12b8 [ 6A4C75FD28F60062FEA3DF3B15D956C0, 4FC58F3320D33BDACCF759A50C623A3E58E4320749E6691B397DF0C8EAAA8A6F ] MapsBroker C:\WINDOWS\System32\moshost.dll
15:47:33.0419 0x12b8 MapsBroker - ok
15:47:33.0434 0x12b8 [ B2ED9A7A5587A128A0EFD0DBE7662E95, 63070AAFD44E3CD2A4B262DF27222B103455A4D8C2E45914502BFA03D84D32C9 ] megasas C:\WINDOWS\system32\drivers\megasas.sys
15:47:33.0434 0x12b8 megasas - ok
15:47:33.0465 0x12b8 [ 083F71488E6780A67290273180256EA5, 5F43CE66F5A48850BABB70F4D219FDD002F9BC2B2F0E58E66FE2C492AA335E50 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
15:47:33.0465 0x12b8 megasr - ok
15:47:33.0497 0x12b8 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
15:47:33.0497 0x12b8 MEIx64 - ok
15:47:33.0528 0x12b8 [ 5907A10D46747A2B6DBFD6A198254DC2, 6C283E9DC75C7ABFD270D6FABBF4F54628A1786E7CE2F603BF664CBB9E4FE583 ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys
15:47:33.0544 0x12b8 mlx4_bus - ok
15:47:33.0544 0x12b8 [ 91ED6F0EDF4158D63C52194F17D4F42E, ACF543978E253650C167C6C370699AEA7340EBCECF7CAB904CBDD334D1BD6928 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys
15:47:33.0544 0x12b8 MMCSS - ok
15:47:33.0575 0x12b8 [ 2C4CC9F6ADBED5A6D131FDB97A78FF68, 04DC76E3F0959C0A9B00DF2133B075194FB7DCBD76832B9D25B0E37223D300DC ] Modem C:\WINDOWS\system32\drivers\modem.sys
15:47:33.0575 0x12b8 Modem - ok
15:47:33.0590 0x12b8 [ D8DB13529C8AD6FBAF8E2F382024374F, 13025035C479E2EF76EDCB90D83BE65B4ADD9F7000AD31FEAD628D5DDFE69158 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
15:47:33.0590 0x12b8 monitor - ok
15:47:33.0606 0x12b8 [ 2DAAF1EE1C30F2FCF59851A64ADA0422, 08CD801E63E2862DE058CD732C3DB3D87B1A2898732365440E3F8919932E96FC ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
15:47:33.0606 0x12b8 mouclass - ok
15:47:33.0622 0x12b8 [ D30FE074503283829ED194BCAE6239C3, A3A127381ECC798417D01F6B8A1894EED7D71989047BC4D1D74D0E7C8394AD65 ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
15:47:33.0622 0x12b8 mouhid - ok
15:47:33.0622 0x27b8 Object send P2P result: true
15:47:33.0622 0x27b8 Object required for P2P: [ 6C4B9A2FF6924405E9ABFB558049D4DD ] Avira.ServiceHost
15:47:33.0637 0x12b8 [ D5EC9413527B286CFEEB0294C53ABB95, B094C611F5A7E33D2F8667B2A4D6260E1D57BD135867F984EE5B674C7EE72B95 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
15:47:33.0637 0x12b8 mountmgr - ok
15:47:33.0653 0x12b8 [ 989A1BBD9C49B107B4A47D06E6827A69, 62D90B22AE13AC84324DFD5FEBA595813AD07469B7FEC41380CE223D93020CCA ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
15:47:33.0653 0x12b8 mpsdrv - ok
15:47:33.0715 0x12b8 [ A0DBB9386BEA8DA1A159C2A2E07081A3, 9D3F26005A76A72F9512F040D45C16124D17F8C8DA45C51FFAF74F066357D0A4 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
15:47:33.0731 0x12b8 MpsSvc - ok
15:47:33.0747 0x12b8 [ 5B37FDC07159FE9F5F52399F7D78F60B, A0C20EB9A7918395A13A5E21917887DDC9897C475D33091B518354163CAE108A ] MQAC C:\WINDOWS\system32\drivers\mqac.sys
15:47:33.0762 0x12b8 MQAC - ok
15:47:33.0762 0x12b8 [ C1E74DD1D84861D8F12FF8BC0BA11975, 5912A0455C840F5C8AD6383823C9C7DE6FF8B5CAF1B72EA181864999891EAF30 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
15:47:33.0778 0x12b8 MRxDAV - ok
15:47:33.0794 0x12b8 [ 1DF2C5FD2710A13B07E663A12F0E0EEA, 8EBCA9269F52A5CF602F5DE2B0C2AB2BFD82F415465DBB74C73D43F321D9FD46 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
15:47:33.0809 0x12b8 mrxsmb - ok
15:47:33.0825 0x12b8 [ 185932B1149BD707F8A13174CDAB365B, BC26CB10DD6E81A94477564444E91F76D47E685E897BD77B9C1393F0D31AB718 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
15:47:33.0825 0x12b8 mrxsmb10 - ok
15:47:33.0840 0x12b8 [ 99E24D4DBACBC569833B9A67710D65E7, 93BC765E7B6E19E83AFF783DE8080A80A1D69A406B496F1E36C47AE6E86AFB76 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
15:47:33.0856 0x12b8 mrxsmb20 - ok
15:47:33.0856 0x12b8 [ 6F8BE4FB6262012E61BBADB5444628DC, E87489207AA48106C08E4BADDD8D66D14BC9DD6AD2A4CDD880BA655932CDDE60 ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys
15:47:33.0872 0x12b8 MsBridge - ok
15:47:33.0903 0x12b8 [ 283BDF3602F442336DAF242BDD07FB98, 185F046B6AA24FFD1567F00AA70357C82002FF627E329CEF9B926645A6DDB172 ] MSDTC C:\WINDOWS\System32\msdtc.exe
15:47:33.0903 0x12b8 MSDTC - ok
15:47:33.0919 0x12b8 [ 7C55F1751CAC199680D4489D1EE46544, 967EC8137D321F6139C3382D19A338FD97A3023EB654747AC57C2008BE4AF677 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
15:47:33.0919 0x12b8 Msfs - ok
15:47:33.0934 0x12b8 [ 988588C16A53C2581488C15FF18934BF, F021FD31163CB5C7012CF96EF642C5E551708C835039075268F4CBED002D441D ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
15:47:33.0934 0x12b8 msgpiowin32 - ok
15:47:33.0950 0x12b8 [ 09622DBC24D0178F15DB8461BB6970DF, C0B3F9B2219AAF87E417EE9FF54C64B8AD9944E101EA79B5DC81D99E8C2ECF30 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
15:47:33.0950 0x12b8 mshidkmdf - ok
15:47:33.0965 0x12b8 [ 34BB07495C0159BE4189841E16F3BC2F, 264B5735D9A68C85BEDE363D4C0AE1FCC381B39EA884B4BAEE185EB8A873184A ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
15:47:33.0965 0x12b8 mshidumdf - ok
15:47:33.0981 0x12b8 [ 7BF3F0DA362C053918F5F2EC43CE39E2, AA773FA3F83C0C572160D3D0286A697DC628FF4F3655EF21D01C6D1B7BE5DF1C ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
15:47:33.0981 0x12b8 msisadrv - ok
15:47:33.0997 0x12b8 [ 669DA2006C0B9D882D2014617E1E88F5, 090F558818806CAEF6C81D369F8BFFE4A8240295EF37CAA7102A18F4CD20D868 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
15:47:33.0997 0x12b8 MSiSCSI - ok
15:47:33.0997 0x12b8 msiserver - ok
15:47:34.0012 0x12b8 [ B2D0FD21FE67D6434769CC6F7A7883CA, B2368BD72952C6EE6DAF1AA006DF575A3019E4721BEFB108D3DF1B9E07B2BC5D ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
15:47:34.0012 0x12b8 MSKSSRV - ok
15:47:34.0028 0x12b8 [ FB3801F176376286A3F8F20FFB8CDC53, EEF89081665B9BBA93AE9F5912C40C1698E8BA8DBBCCC3BBE0BAB5A86B7E05D4 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys
15:47:34.0028 0x12b8 MsLldp - ok
15:47:34.0074 0x12b8 [ 85EBF0A28B8B132B67C84C6CE5EBAC29, D0012CF4822A3D16F7BF61C94C5650DC1ED310A0DD1A3333465D28C73D40ECDB ] MSMQ C:\WINDOWS\system32\mqsvc.exe
15:47:34.0076 0x12b8 MSMQ - ok
15:47:34.0092 0x12b8 [ 8CBDF0E7A6CD824352F37A682A33DF7E, 4567FF4C73648FF26EA68EAE2B524B767099789086C158875C97768C77B81359 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
15:47:34.0093 0x12b8 MSPCLOCK - ok
15:47:34.0103 0x12b8 [ 33E5B6261D69ACD4948A5C64B9D8F29F, 1D32340640312372E52E59AFB5DB872E6F9DFE3AC16B56F9D928AE230DA02B8A ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
15:47:34.0105 0x12b8 MSPQM - ok
15:47:34.0134 0x12b8 [ 557DF8C0DBBBF518AC395C6EB1B179AE, B294B5A7882C0C60D91FB853FC87505B6E7638D25E360FDAE002AEBB714ED471 ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
15:47:34.0145 0x12b8 MsRPC - ok
15:47:34.0166 0x12b8 [ 0A29AFA668F5DD50482A98ECE70C77A7, 4C1F23B062361D97B1C8D864AB227E5F398F774A99B5E60A1149A4F78D5BEC20 ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
15:47:34.0168 0x12b8 mssmbios - ok
15:47:34.0177 0x12b8 [ 30CE30877FD5BFADE74FA27D7829BF89, B5EA1F8C91E75722DB1E3E2172C8607FEDBF35BDC4141258A3E6D29D8B0E193B ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
15:47:34.0179 0x12b8 MSTEE - ok
15:47:34.0194 0x12b8 [ 13D88C0B8A2FA001CD72D454955A6974, 19DD5C8BBD07B64F355737436BF702FFC209D84A8855D2224D3377E233D4BB34 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
15:47:34.0195 0x12b8 MTConfig - ok
15:47:34.0210 0x12b8 [ 00C7F0F06A0A48B9CDB6B3AC3BE288F0, BF469A2DDF495ACB9FEE9063C6680C95BCC8686682C9EDAE6D1893D4058E8AA6 ] Mup C:\WINDOWS\system32\Drivers\mup.sys
15:47:34.0210 0x12b8 Mup - ok
15:47:34.0225 0x12b8 [ 8E237527CA260C71D39ED4081BDF3419, CA52DD174C756A404B1FAD3F2A70E50085C2820BF12369259F61DA649101A179 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
15:47:34.0225 0x12b8 mvumis - ok
15:47:34.0257 0x12b8 [ 48D0587A8302FD3302CFE6F59F7345B0, 26D48AF3F7FF4867E179347CD635055DEA9A751C6C61CE2C391A7F74FC0DC1DE ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
15:47:34.0272 0x12b8 NativeWifiP - ok
15:47:34.0350 0x12b8 [ B498A14133BD09AD0817590ACE4470AD, 14CCC922C6596C97A5CF580209C4AFB6138A8FFD3A0E60CD506810DFCBC43A1A ] NBService C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
15:47:34.0382 0x12b8 NBService - ok
15:47:34.0413 0x12b8 [ 11BE8117653C542D264788A700AC5BFE, 87EAAC2DF62BB26619DA72950F5EE41DCA1DBDF93F098647F9D200D588F14003 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
15:47:34.0413 0x12b8 NcaSvc - ok
15:47:34.0444 0x12b8 [ 286C6276B2BA86F29A0F687D05466277, AC8551536F37717A0ACE4A260F5696D1276F7AC62F669E8F12AA158DD86F71A5 ] NcbService C:\WINDOWS\System32\ncbservice.dll
15:47:34.0460 0x12b8 NcbService - ok
15:47:34.0475 0x12b8 [ C55DA734ED2A831E0BACAAFA01CEB7FF, 9D989B03D07BBAD287B317D238691664B0694331D6A69B7A1AA3D8AB7D1323FC ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
15:47:34.0475 0x12b8 NcdAutoSetup - ok
15:47:34.0491 0x12b8 [ CF8296427834CF8BBB3EE1444C17362D, 6EFBE1F015DFFA0704C66DF5C88089DD5771E1542018E4AE98389CFF3D0B2309 ] ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys
15:47:34.0491 0x12b8 ndfltr - ok
15:47:34.0538 0x12b8 [ 616F40B897DA651221F86A1741E9609B, 22D66029726313D92FC8E074BCC51C1E1560CB5FE36DCB735E7E063EA53E299A ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
15:47:34.0553 0x12b8 NDIS - ok
15:47:34.0569 0x12b8 [ A0719D1EBA971DFC5DF5F7CC010385F8, A982487D3A74E66F3C29AAA5B46CE9A0969F07F267DDEFE58C58573573AB0024 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys
15:47:34.0569 0x12b8 NdisCap - ok
15:47:34.0600 0x12b8 [ 0C557932CCCC65AEB37326DD36504527, C0AF3066DEE4BCC32DB30CCC16B7A91442A8383BB36C7C4E3CC0A5EFE0FAAA9B ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys
15:47:34.0600 0x12b8 NdisImPlatform - ok
15:47:34.0600 0x12b8 [ 56F9345D1945826135FBAB7589592B1F, 6BC2A5900076B917823C7392C582A2648D0C8000F2F65D309D5B48E36D4FB4D6 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
15:47:34.0600 0x12b8 NdisTapi - ok
15:47:34.0616 0x12b8 [ AADFC340939D99E5D756E713E1D452EB, EFEFDBB2188DE82C2C5E67929861B269FD4C127D34D1DE6D0596ABC33E2C2B51 ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys
15:47:34.0616 0x12b8 Ndisuio - ok
15:47:34.0616 0x12b8 [ 312DFD787D99D3BF1427B0388BC04F71, C082CA1F332AD57FF2100748518D3D7B3D0F1B042F69BD7401C44B77AFE97462 ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
15:47:34.0616 0x12b8 NdisVirtualBus - ok
15:47:34.0616 0x12b8 [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys
15:47:34.0632 0x12b8 NdisWan - ok
15:47:34.0632 0x12b8 [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
15:47:34.0632 0x12b8 ndiswanlegacy - ok
15:47:34.0663 0x12b8 [ 6E98F16983C4AE8703FF9F90AB4B31DD, BB8BD5DB4B5FB31F3A257747C27CBEFA4B7837EC5C0CF3D4F408E626E4003F4C ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys
15:47:34.0663 0x12b8 ndproxy - ok
15:47:34.0678 0x12b8 [ F1B7CC77F412C8D45B2DDCF76EDA4F9D, 25F2AA76E675D9BCC0B1FD47AFEC6DF2D0B47E7B1C8AF6FB27C1ED2FB902961A ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
15:47:34.0678 0x12b8 Ndu - ok
15:47:34.0710 0x12b8 [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
15:47:34.0710 0x12b8 Net Driver HPZ12 - ok
15:47:34.0710 0x12b8 [ 824FDC990A3F79069BE468A132EB6888, D09F7A9EC04E37DA504CE54EEC25C312B407B6A8B214CBB074BEB50DE420F52A ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys
15:47:34.0710 0x12b8 NetBIOS - ok
15:47:34.0741 0x12b8 [ F0D791348AD254360CC3C3E501CCB745, E4CAB4D3C2CD3169731283B00DEBFE26438BB66A3F0D78BDB68E876A14FC7070 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
15:47:34.0741 0x12b8 NetBT - ok
15:47:34.0757 0x12b8 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] Netlogon C:\WINDOWS\system32\lsass.exe
15:47:34.0757 0x12b8 Netlogon - ok
15:47:34.0790 0x12b8 [ 7C8A7380CBE45DFD3DF118D8601499A7, C137280B7696F8CF4258BDC8B241C66BB3AA5708C5410D85255E46C7E8284826 ] Netman C:\WINDOWS\System32\netman.dll
15:47:34.0795 0x12b8 Netman - ok
15:47:34.0846 0x12b8 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetMsmqActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:47:34.0874 0x12b8 NetMsmqActivator - ok
15:47:34.0878 0x12b8 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetPipeActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:47:34.0880 0x12b8 NetPipeActivator - ok
15:47:34.0916 0x12b8 [ BBE9D72EFC7BD66B28309C3607683DBA, FC372EFBC650CE0BDB117858D840A1FB361947B1C67D1DD16BABA95D0286856A ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
15:47:34.0925 0x12b8 netprofm - ok
15:47:34.0947 0x12b8 [ 5D046D71B18BEFB2E4D164C3DEEDD672, 536834D020889973854830919B23DF22CC1B27236AFAEDEBDF42D432CE48FCDE ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll
15:47:34.0951 0x12b8 NetSetupSvc - ok
15:47:34.0955 0x12b8 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:47:34.0957 0x12b8 NetTcpActivator - ok
15:47:34.0962 0x12b8 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:47:34.0964 0x12b8 NetTcpPortSharing - ok
15:47:34.0998 0x12b8 [ 46E862DA2CF8F351375EF537276B69B5, AC0FE0977E56380849DCE668AC0F5AF183AAB115ED84ADD964E390CC0BEDF6D3 ] netvsc C:\WINDOWS\System32\drivers\netvsc.sys
15:47:35.0000 0x12b8 netvsc - ok |