Carinschen | 30.03.2016 15:30 | Hallo Rafael,
danke für die ersten Erklärungen!
Haben versucht, den Text als CODE zu posten, allerdings ist selbst nur die FRST.txt-Version zu lang "Der Text, den Sie eingegeben haben, besteht aus 186800 Zeichen und ist damit zu lang. Bitte die Logs auf mehrere Beiträge aufspalten mit maximaler Länge von 120000 Zeichen."
Müssen wir diese nochmal in 3-4 Posts unterteilen?
VG,Carina Code:
16:19:55.0382 0x177c TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
16:19:55.0444 0x177c UEFI system
16:20:01.0472 0x177c ============================================================
16:20:01.0472 0x177c Current date / time: 2016/03/30 16:20:01.0472
16:20:01.0472 0x177c SystemInfo:
16:20:01.0472 0x177c
16:20:01.0472 0x177c OS Version: 6.3.9600 ServicePack: 0.0
16:20:01.0472 0x177c Product type: Workstation
16:20:01.0472 0x177c ComputerName: LENOVO-PC
16:20:01.0472 0x177c UserName: Milena
16:20:01.0472 0x177c Windows directory: C:\WINDOWS
16:20:01.0472 0x177c System windows directory: C:\WINDOWS
16:20:01.0472 0x177c Running under WOW64
16:20:01.0472 0x177c Processor architecture: Intel x64
16:20:01.0472 0x177c Number of processors: 2
16:20:01.0472 0x177c Page size: 0x1000
16:20:01.0472 0x177c Boot type: Normal boot
16:20:01.0472 0x177c ============================================================
16:20:02.0041 0x177c KLMD registered as C:\WINDOWS\system32\drivers\56590751.sys
16:20:02.0619 0x177c System UUID: {386C149F-0B56-C4CE-293B-1673047D3454}
16:20:03.0727 0x177c Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:20:03.0759 0x177c ============================================================
16:20:03.0759 0x177c \Device\Harddisk0\DR0:
16:20:03.0759 0x177c GPT partitions:
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {B2CE9F47-CECD-409E-83C6-3108F7D91327}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {FF920CF2-6A3A-47AF-9717-C222779F6C36}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {4C74EF78-AB17-426F-93B3-5A77A171EC49}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {C58130E3-B9E7-4FDE-9023-A647448C4485}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {5934467A-9C4A-4C31-A2E8-BD393F0A41BE}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x3515F000
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {97FBA309-3603-4696-9D77-8121C9426C98}, Name: Basic data partition, StartLBA 0x35609800, BlocksNum 0x3200000
16:20:03.0774 0x177c \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {333FFBAB-9AAA-42BF-8EFF-6630937A4C3E}, Name: Basic data partition, StartLBA 0x38809800, BlocksNum 0x1B7C800
16:20:03.0774 0x177c MBR partitions:
16:20:03.0774 0x177c ============================================================
16:20:03.0805 0x177c C: <-> \Device\Harddisk0\DR0\Partition5
16:20:03.0852 0x177c D: <-> \Device\Harddisk0\DR0\Partition6
16:20:03.0852 0x177c ============================================================
16:20:03.0852 0x177c Initialize success
16:20:03.0852 0x177c ============================================================
16:20:46.0879 0x0ba4 ============================================================
16:20:46.0879 0x0ba4 Scan started
16:20:46.0879 0x0ba4 Mode: Manual; SigCheck; TDLFS;
16:20:46.0879 0x0ba4 ============================================================
16:20:46.0879 0x0ba4 KSN ping started
16:20:49.0398 0x0ba4 KSN ping finished: true
16:20:53.0920 0x0ba4 ================ Scan system memory ========================
16:20:53.0920 0x0ba4 System memory - ok
16:20:53.0922 0x0ba4 ================ Scan services =============================
16:20:54.0516 0x0ba4 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
16:20:54.0756 0x0ba4 1394ohci - ok
16:20:54.0840 0x0ba4 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
16:20:54.0874 0x0ba4 3ware - ok
16:20:54.0937 0x0ba4 [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
16:20:55.0039 0x0ba4 ACPI - ok
16:20:55.0085 0x0ba4 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
16:20:55.0153 0x0ba4 acpiex - ok
16:20:55.0202 0x0ba4 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
16:20:55.0258 0x0ba4 acpipagr - ok
16:20:55.0334 0x0ba4 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
16:20:55.0475 0x0ba4 AcpiPmi - ok
16:20:55.0536 0x0ba4 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
16:20:55.0674 0x0ba4 acpitime - ok
16:20:55.0782 0x0ba4 [ 561E1023BEB555A77DBEAFB83E74BA14, EBB6C4878F6D7BEF8AD861AF5F262DACE96ECCA68308E30E319CE962FC5C5F35 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
16:20:55.0867 0x0ba4 ACPIVPC - ok
16:20:55.0968 0x0ba4 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
16:20:56.0105 0x0ba4 ADP80XX - ok
16:20:56.0212 0x0ba4 [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
16:20:56.0360 0x0ba4 AeLookupSvc - ok
16:20:56.0426 0x0ba4 [ A460C3AF3755A2A79A3C8EFE72E147B5, 62CEA85DA53D86D3E7B5D79F94095C6126FFF3DEE1427BBF3DEF5EA366B4513B ] AFD C:\WINDOWS\system32\drivers\afd.sys
16:20:56.0492 0x0ba4 AFD - ok
16:20:56.0529 0x0ba4 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
16:20:56.0553 0x0ba4 agp440 - ok
16:20:56.0590 0x0ba4 [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
16:20:56.0619 0x0ba4 ahcache - ok
16:20:56.0664 0x0ba4 [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG C:\WINDOWS\System32\alg.exe
16:20:56.0691 0x0ba4 ALG - ok
16:20:56.0707 0x0ba4 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
16:20:56.0754 0x0ba4 AmdK8 - ok
16:20:56.0789 0x0ba4 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
16:20:56.0818 0x0ba4 AmdPPM - ok
16:20:56.0829 0x0ba4 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
16:20:56.0857 0x0ba4 amdsata - ok
16:20:56.0875 0x0ba4 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
16:20:56.0912 0x0ba4 amdsbs - ok
16:20:56.0932 0x0ba4 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
16:20:56.0955 0x0ba4 amdxata - ok
16:20:57.0065 0x0ba4 [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID C:\WINDOWS\system32\drivers\appid.sys
16:20:57.0160 0x0ba4 AppID - ok
16:20:57.0208 0x0ba4 [ 88358135810B9DFD830A9D3A8C3D149A, DF914DA3828EE2310895D156342E3B3DF5E8C6F6F9B851C359E82A1F48180D4B ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
16:20:57.0239 0x0ba4 AppIDSvc - ok
16:20:57.0280 0x0ba4 [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo C:\WINDOWS\System32\appinfo.dll
16:20:57.0311 0x0ba4 Appinfo - ok
16:20:57.0362 0x0ba4 [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
16:20:57.0409 0x0ba4 AppReadiness - ok
16:20:57.0533 0x0ba4 [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
16:20:57.0605 0x0ba4 AppXSvc - ok
16:20:57.0652 0x0ba4 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
16:20:57.0687 0x0ba4 arcsas - ok
16:20:57.0735 0x0ba4 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
16:20:57.0799 0x0ba4 atapi - ok
16:20:57.0832 0x0ba4 [ 8302D313DCC5536FE6BFB85165D9BB1E, CD9101D9CFE34F0D6CF5A6AD5C997CC5D32CCF5135B78604D0C3CD7252117C2D ] AthBTPort C:\WINDOWS\system32\DRIVERS\btath_flt.sys
16:20:57.0856 0x0ba4 AthBTPort - ok
16:20:58.0001 0x0ba4 [ A8F6E223B0E460988004556A62233EC5, 59DF8AE71EAF7C0B8F890E8B597A573079D414914E56CCC07B4716A420F66D20 ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
16:20:58.0034 0x0ba4 AtherosSvc - detected UnsignedFile.Multi.Generic ( 1 )
16:21:00.0467 0x0ba4 Detect skipped due to KSN trusted
16:21:00.0468 0x0ba4 AtherosSvc - ok
16:21:00.0765 0x0ba4 [ FF3A0F772EB85E20E3F9865716B7AAA2, 5F13DE17A621326088D3DD964C1F9A6653B9E5F39C38CA8BADB6137AAD03B7A5 ] athr C:\WINDOWS\system32\DRIVERS\athwbx.sys
16:21:00.0937 0x0ba4 athr - ok
16:21:01.0026 0x0ba4 [ 431FE56F5A2F5937994CB2DA330B47DB, E5AED551529A21494114959251FDF566802DD6D9B9D86A937A0EECE53338CAC7 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
16:21:01.0079 0x0ba4 AudioEndpointBuilder - ok
16:21:01.0144 0x0ba4 [ 0F03CC00645D7F841879A048787D6AC7, 3ECD2486157469F2EDB63D4868338D1445F2909153DF0AFFE432083730EEE3F5 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
16:21:01.0202 0x0ba4 Audiosrv - ok
16:21:01.0243 0x0ba4 [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
16:21:01.0273 0x0ba4 AxInstSV - ok
16:21:01.0315 0x0ba4 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
16:21:01.0367 0x0ba4 b06bdrv - ok
16:21:01.0393 0x0ba4 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
16:21:01.0420 0x0ba4 BasicDisplay - ok
16:21:01.0443 0x0ba4 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
16:21:01.0469 0x0ba4 BasicRender - ok
16:21:01.0481 0x0ba4 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
16:21:01.0502 0x0ba4 bcmfn2 - ok
16:21:01.0542 0x0ba4 [ 4B6F61BD394DCEDA9B06D702836531C2, 83C739467BD9A00FE09BCE83BB9409EA2DA62FCDD2384F9EE98626226223E918 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
16:21:01.0615 0x0ba4 BDESVC - ok
16:21:01.0624 0x0ba4 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys
16:21:01.0656 0x0ba4 Beep - ok
16:21:01.0817 0x0ba4 [ 8F2AD111B47A190F325EE7495D3C1803, C61F1506E74A9EFBB61B8A06B30886B6E891C33211F755F30B924EBA202ECEC5 ] BFE C:\WINDOWS\System32\bfe.dll
16:21:01.0894 0x0ba4 BFE - ok
16:21:02.0024 0x0ba4 [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS C:\WINDOWS\System32\qmgr.dll
16:21:02.0089 0x0ba4 BITS - ok
16:21:02.0117 0x0ba4 [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
16:21:02.0155 0x0ba4 bowser - ok
16:21:02.0201 0x0ba4 [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
16:21:02.0236 0x0ba4 BrokerInfrastructure - ok
16:21:02.0284 0x0ba4 [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser C:\WINDOWS\System32\browser.dll
16:21:02.0313 0x0ba4 Browser - ok
16:21:02.0356 0x0ba4 [ 15BE0FCECAE5BC00FB3D339D3D1CF4E4, 7F77C73404044270AA0A4C9D6BD838564B5356ACA935982390A6EA11FA653AE0 ] BTATH_A2DP C:\WINDOWS\system32\drivers\btath_a2dp.sys
16:21:02.0385 0x0ba4 BTATH_A2DP - ok
16:21:02.0407 0x0ba4 [ 1FFA5E05F2DE32D9E65CFDA4B33D50FD, 9EC578F563A90C60F893817548195781893405AC8ED7F87C3B5F94F9842161A5 ] btath_avdt C:\WINDOWS\system32\drivers\btath_avdt.sys
16:21:02.0430 0x0ba4 btath_avdt - ok
16:21:02.0459 0x0ba4 [ C6978F7EBA6F37D626482AC6B9390630, B4BF939AB9962A61DE9518604C20347DC2A6FCDCEB3D8AEF295AF12E6F2CDCF3 ] BTATH_BUS C:\WINDOWS\System32\drivers\btath_bus.sys
16:21:02.0477 0x0ba4 BTATH_BUS - ok
16:21:02.0528 0x0ba4 [ 4AF7C20F94DAC343C01ED671C82DCB99, 2AABD85D9D76461DE883E0F13F61C391BA81E6198FF88268B319474E25A196C8 ] BTATH_HCRP C:\WINDOWS\System32\drivers\btath_hcrp.sys
16:21:02.0555 0x0ba4 BTATH_HCRP - ok
16:21:02.0578 0x0ba4 [ 785C38070043BEEE9E9D591DE4067244, 1C8D15B8A9E80A2799E7094C4AE111FEA9FBC6EAA4A61B13EFE59314C9794949 ] BTATH_LWFLT C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys
16:21:02.0598 0x0ba4 BTATH_LWFLT - ok
16:21:02.0611 0x0ba4 [ 859A116D748FBA603AF94C251DC5CF97, D64061721BE01F86386C4B0168B166C6AD076630B2229036E1D368D877389D46 ] BTATH_RCP C:\WINDOWS\System32\drivers\btath_rcp.sys
16:21:02.0633 0x0ba4 BTATH_RCP - ok
16:21:02.0683 0x0ba4 [ 58DBB1384F26562111048036E7787F04, 3804BE214113B1759301E359049C0BCE5EB268AB1E028AF5089DAB5116937EF7 ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
16:21:02.0721 0x0ba4 BtFilter - ok
16:21:02.0750 0x0ba4 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
16:21:02.0792 0x0ba4 BthAvrcpTg - ok
16:21:02.0821 0x0ba4 [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
16:21:02.0850 0x0ba4 BthEnum - ok
16:21:02.0880 0x0ba4 [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
16:21:02.0910 0x0ba4 BthHFEnum - ok
16:21:02.0933 0x0ba4 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
16:21:02.0961 0x0ba4 bthhfhid - ok
16:21:03.0021 0x0ba4 [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll
16:21:03.0064 0x0ba4 BthHFSrv - ok
16:21:03.0081 0x0ba4 [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys
16:21:03.0164 0x0ba4 BthLEEnum - ok
16:21:03.0226 0x0ba4 [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
16:21:03.0255 0x0ba4 BTHMODEM - ok
16:21:03.0300 0x0ba4 [ FEA8FC81431AD93F44D5FBFBBF096AA7, C0581DF6B2AD24836604B083F4866F93A3F4D9091D382029948A5E6221EDF788 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys
16:21:03.0329 0x0ba4 BthPan - ok
16:21:03.0458 0x0ba4 [ 0CC00ADC1B84C93FB46E1A0974E956E1, 64C759244651B916901F4D0C82C3D6034532A20714A72FD26FC9D050B99E230B ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys
16:21:03.0568 0x0ba4 BTHPORT - ok
16:21:03.0654 0x0ba4 [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv C:\WINDOWS\system32\bthserv.dll
16:21:03.0701 0x0ba4 bthserv - ok
16:21:03.0772 0x0ba4 [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys
16:21:03.0834 0x0ba4 BTHUSB - ok
16:21:03.0990 0x0ba4 [ CD8555D48A8067A8A31FF5D962C2471F, F339E9FE67370F1CC3366A18D716F3DF72E0263C7A80D43116A56854179DE85E ] CCSDK C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe
16:21:04.0037 0x0ba4 CCSDK - ok
16:21:04.0065 0x0ba4 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
16:21:04.0136 0x0ba4 cdfs - ok
16:21:04.0179 0x0ba4 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
16:21:04.0212 0x0ba4 cdrom - ok
16:21:04.0256 0x0ba4 [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
16:21:04.0291 0x0ba4 CertPropSvc - ok
16:21:04.0345 0x0ba4 [ 74DCBD4FC3ADEA87315281D8D17A62B2, 2FB47558C23929F44ABF34CAB5B07C882997447D8EA09661E3B4F023059E2C31 ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
16:21:04.0369 0x0ba4 cfwids - ok
16:21:04.0380 0x0ba4 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
16:21:04.0410 0x0ba4 circlass - ok
16:21:04.0496 0x0ba4 [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
16:21:04.0624 0x0ba4 CLFS - ok
16:21:04.0865 0x0ba4 [ FF75887DA46412EA86381CB6A75F6419, CE674FC408913DD30F2C35A53D00C9CF249BDFA501111B68B363E97BAD701AF1 ] CltMngSvc C:\PROGRA~2\LenovoBrowserGuard\Main\bin\CltMngSvc.exe
16:21:05.0004 0x0ba4 CltMngSvc - ok
16:21:05.0043 0x0ba4 [ 5C646CAC91E086F7FF53C7F2E857F263, 67AF6FBF88B7EE530A9BA53833EAFCC78BF8362E82BF81180858F1D17DFC73E6 ] CLVirtualDrive C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys
16:21:05.0064 0x0ba4 CLVirtualDrive - ok
16:21:05.0093 0x0ba4 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
16:21:05.0212 0x0ba4 CmBatt - ok
16:21:05.0315 0x0ba4 [ 0DE32A0BB1FE2A773666572F79584520, C417C12476B937265BEDC9A2C3C3F6C50FD19AEC096362337B0921627A2A92EA ] CNG C:\WINDOWS\system32\Drivers\cng.sys
16:21:05.0375 0x0ba4 CNG - ok
16:21:05.0393 0x0ba4 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
16:21:05.0424 0x0ba4 CompositeBus - ok
16:21:05.0431 0x0ba4 COMSysApp - ok
16:21:05.0444 0x0ba4 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys
16:21:05.0476 0x0ba4 condrv - ok
16:21:05.0718 0x0ba4 [ 2F1A3340EBA51E4E2571B0A0BE6E8508, 79750AFA291AF0EB2D657980071C01C42DFB63862AEE5F4366385855692045FB ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
16:21:05.0785 0x0ba4 cphs - ok
16:21:05.0863 0x0ba4 [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
16:21:05.0918 0x0ba4 CryptSvc - ok
16:21:05.0950 0x0ba4 [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys
16:21:05.0980 0x0ba4 dam - ok
16:21:06.0047 0x0ba4 [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
16:21:06.0109 0x0ba4 DcomLaunch - ok
16:21:06.0178 0x0ba4 [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc C:\WINDOWS\System32\defragsvc.dll
16:21:06.0239 0x0ba4 defragsvc - ok
16:21:06.0353 0x0ba4 [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
16:21:06.0438 0x0ba4 DeviceAssociationService - ok
16:21:06.0494 0x0ba4 [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
16:21:06.0531 0x0ba4 DeviceInstall - ok
16:21:06.0565 0x0ba4 [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
16:21:06.0610 0x0ba4 Dfsc - ok
16:21:06.0657 0x0ba4 [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
16:21:06.0700 0x0ba4 Dhcp - ok
16:21:06.0800 0x0ba4 [ 21EDAD8188372C912B7BB9B1C6CB0D38, 4A102745DE8A2A82D2C069B30503BF9FF2312A035A82854F84EF9C27E3533CEE ] DiagTrack C:\WINDOWS\system32\diagtrack.dll
16:21:06.0923 0x0ba4 DiagTrack - ok
16:21:06.0977 0x0ba4 [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys
16:21:07.0015 0x0ba4 disk - ok
16:21:07.0028 0x0ba4 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
16:21:07.0056 0x0ba4 dmvsc - ok
16:21:07.0101 0x0ba4 [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
16:21:07.0140 0x0ba4 Dnscache - ok
16:21:07.0215 0x0ba4 [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc C:\WINDOWS\System32\dot3svc.dll
16:21:07.0274 0x0ba4 dot3svc - ok
16:21:07.0335 0x0ba4 [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS C:\WINDOWS\system32\dps.dll
16:21:07.0376 0x0ba4 DPS - ok
16:21:07.0439 0x0ba4 [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
16:21:07.0471 0x0ba4 drmkaud - ok
16:21:07.0535 0x0ba4 [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
16:21:07.0578 0x0ba4 DsmSvc - ok
16:21:07.0727 0x0ba4 [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
16:21:07.0890 0x0ba4 DXGKrnl - ok
16:21:07.0966 0x0ba4 [ FA988D76745C917CDFE20031C06DE860, B01AA3611869854D3BCA8B6CD7A6F48CC3537145DD3EBE50F5BEF72239924BF7 ] e1iexpress C:\WINDOWS\system32\DRIVERS\e1i63x64.sys
16:21:08.0016 0x0ba4 e1iexpress - ok
16:21:08.0058 0x0ba4 [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost C:\WINDOWS\System32\eapsvc.dll
16:21:08.0089 0x0ba4 Eaphost - ok
16:21:08.0274 0x0ba4 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
16:21:08.0527 0x0ba4 ebdrv - ok
16:21:08.0587 0x0ba4 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS C:\WINDOWS\System32\lsass.exe
16:21:08.0618 0x0ba4 EFS - ok
16:21:08.0645 0x0ba4 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
16:21:08.0671 0x0ba4 EhStorClass - ok
16:21:08.0685 0x0ba4 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
16:21:08.0715 0x0ba4 EhStorTcgDrv - ok
16:21:08.0722 0x0ba4 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
16:21:08.0762 0x0ba4 ErrDev - ok
16:21:08.0830 0x0ba4 [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem C:\WINDOWS\system32\es.dll
16:21:08.0876 0x0ba4 EventSystem - ok
16:21:08.0900 0x0ba4 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
16:21:08.0945 0x0ba4 exfat - ok
16:21:08.0978 0x0ba4 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
16:21:09.0020 0x0ba4 fastfat - ok
16:21:09.0079 0x0ba4 [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax C:\WINDOWS\system32\fxssvc.exe
16:21:09.0133 0x0ba4 Fax - ok
16:21:09.0148 0x0ba4 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
16:21:09.0177 0x0ba4 fdc - ok
16:21:09.0211 0x0ba4 [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
16:21:09.0240 0x0ba4 fdPHost - ok
16:21:09.0275 0x0ba4 [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
16:21:09.0303 0x0ba4 FDResPub - ok
16:21:09.0335 0x0ba4 [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
16:21:09.0435 0x0ba4 fhsvc - ok
16:21:09.0479 0x0ba4 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
16:21:09.0515 0x0ba4 FileInfo - ok
16:21:09.0533 0x0ba4 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
16:21:09.0574 0x0ba4 Filetrace - ok
16:21:09.0586 0x0ba4 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
16:21:09.0618 0x0ba4 flpydisk - ok
16:21:09.0672 0x0ba4 [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
16:21:09.0718 0x0ba4 FltMgr - ok
16:21:09.0819 0x0ba4 [ 2F225BC85B84C04EA01BAB8D8DACFA83, 1F6E20C8F0FFD3FA60BDF556FB8392FE014E6519C3F314D1D22D394DB2A040CA ] FontCache C:\WINDOWS\system32\FntCache.dll
16:21:09.0936 0x0ba4 FontCache - ok
16:21:10.0011 0x0ba4 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:21:10.0037 0x0ba4 FontCache3.0.0.0 - ok
16:21:10.0064 0x0ba4 [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
16:21:10.0090 0x0ba4 FsDepends - ok
16:21:10.0111 0x0ba4 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
16:21:10.0137 0x0ba4 Fs_Rec - ok
16:21:10.0188 0x0ba4 [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
16:21:10.0262 0x0ba4 fvevol - ok
16:21:10.0305 0x0ba4 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
16:21:10.0332 0x0ba4 FxPPM - ok
16:21:10.0351 0x0ba4 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
16:21:10.0380 0x0ba4 gagp30kx - ok
16:21:10.0453 0x0ba4 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
16:21:10.0485 0x0ba4 gencounter - ok
16:21:10.0560 0x0ba4 [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
16:21:10.0590 0x0ba4 GPIOClx0101 - ok
16:21:10.0807 0x0ba4 [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
16:21:10.0923 0x0ba4 gpsvc - ok
16:21:10.0968 0x0ba4 [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\WINDOWS\system32\drivers\HdAudio.sys
16:21:11.0014 0x0ba4 HdAudAddService - ok
16:21:11.0050 0x0ba4 [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
16:21:11.0086 0x0ba4 HDAudBus - ok
16:21:11.0105 0x0ba4 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
16:21:11.0138 0x0ba4 HidBatt - ok
16:21:11.0197 0x0ba4 [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
16:21:11.0277 0x0ba4 HidBth - ok
16:21:11.0287 0x0ba4 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
16:21:11.0317 0x0ba4 hidi2c - ok
16:21:11.0332 0x0ba4 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
16:21:11.0362 0x0ba4 HidIr - ok
16:21:11.0393 0x0ba4 [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv C:\WINDOWS\system32\hidserv.dll
16:21:11.0435 0x0ba4 hidserv - ok
16:21:11.0503 0x0ba4 [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
16:21:11.0561 0x0ba4 HidUsb - ok
16:21:11.0602 0x0ba4 [ E7AF59F1E0352F5EBEC4ECD32103D405, 0E02E031799F407A1BCE926D46471E7EFB8820359CBDE73759219B86C1882EB8 ] HipShieldK C:\WINDOWS\system32\drivers\HipShieldK.sys
16:21:11.0634 0x0ba4 HipShieldK - ok
16:21:11.0677 0x0ba4 [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
16:21:11.0721 0x0ba4 hkmsvc - ok
16:21:11.0800 0x0ba4 [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
16:21:11.0849 0x0ba4 HomeGroupListener - ok
16:21:11.0918 0x0ba4 [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
16:21:11.0965 0x0ba4 HomeGroupProvider - ok
16:21:12.0075 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] HomeNetSvc C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
16:21:12.0107 0x0ba4 HomeNetSvc - ok
16:21:12.0152 0x0ba4 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
16:21:12.0179 0x0ba4 HpSAMD - ok
16:21:12.0245 0x0ba4 [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
16:21:12.0359 0x0ba4 HTTP - ok
16:21:12.0387 0x0ba4 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
16:21:12.0412 0x0ba4 hwpolicy - ok
16:21:12.0421 0x0ba4 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
16:21:12.0449 0x0ba4 hyperkbd - ok
16:21:12.0457 0x0ba4 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
16:21:12.0485 0x0ba4 HyperVideo - ok
16:21:12.0513 0x0ba4 [ 49EE0AE9E5B64FFBBD06D55C4984B598, 8866627F9241B24A59C81D8BCC67A4DCA87576F589599BA291D0E323F679EB4D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
16:21:12.0597 0x0ba4 i8042prt - ok
16:21:12.0621 0x0ba4 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
16:21:12.0641 0x0ba4 iaLPSSi_GPIO - ok
16:21:12.0655 0x0ba4 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
16:21:12.0678 0x0ba4 iaLPSSi_I2C - ok
16:21:12.0713 0x0ba4 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
16:21:12.0760 0x0ba4 iaStorAV - ok
16:21:12.0796 0x0ba4 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
16:21:12.0848 0x0ba4 iaStorV - ok
16:21:12.0963 0x0ba4 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
16:21:13.0024 0x0ba4 ICCS - ok
16:21:13.0038 0x0ba4 IEEtwCollectorService - ok
16:21:13.0246 0x0ba4 [ E786FA74AA145ECB7FA3467A362B1AF5, 4A84AA3595ADC586EB03526750735219B16629C9372B4A606F352424656AE6D3 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
16:21:13.0524 0x0ba4 igfx - ok
16:21:13.0631 0x0ba4 [ AF8A43C376F83A4A1E7DA16461EDE114, EBA10519B074888355A4FC11D52FF1E6A52F88F754B7F1F9863A8313638645CB ] IKEEXT C:\WINDOWS\System32\ikeext.dll
16:21:13.0708 0x0ba4 IKEEXT - ok
16:21:13.0755 0x0ba4 [ F0F581A2299CB2BAB1DF2597BCDDB80F, EE485AF3049C87666BC6D6BFFC8A0EB4B95831D9061EB81848ECEE29C4232BF4 ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
16:21:13.0775 0x0ba4 intaud_WaveExtensible - ok
16:21:13.0981 0x0ba4 [ 70735FDC3A5DE0B2B0F0CDB44188FC89, EAFCA4E0391EE7D268EEFC33A05F7843F1979CD63ADD36D719A2CC3916449706 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
16:21:14.0256 0x0ba4 IntcAzAudAddService - ok
16:21:14.0321 0x0ba4 [ EC80E6B9E27DC3E22ED5B2E0E75A39C0, 8EEC89F88AE79DA256BB651983397773F6B25139006C8A7C8F77960F47774CF5 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
16:21:14.0363 0x0ba4 IntcDAud - ok
16:21:14.0432 0x0ba4 [ 768DD5CB66952BC4A3BD474757AEE34F, 5A1F91FC8028D84FD83591D60CB7E3B24425C3B0FFF5A9BB0F7CE2E17AAB92D4 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
16:21:14.0472 0x0ba4 Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
16:21:16.0837 0x0ba4 Detect skipped due to KSN trusted
16:21:16.0837 0x0ba4 Intel(R) Capability Licensing Service Interface - ok
16:21:16.0897 0x0ba4 [ 7C9ED65324CF268ACBA8024257F782D8, 1DC43DBA3612E26454D7786DEB0538B44A736B67EC99642B4CC574D8A03E0DC7 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
16:21:16.0952 0x0ba4 Intel(R) Capability Licensing Service TCP IP Interface - ok
16:21:16.0978 0x0ba4 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
16:21:17.0012 0x0ba4 intelide - ok
16:21:17.0058 0x0ba4 [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
16:21:17.0171 0x0ba4 intelpep - ok
16:21:17.0256 0x0ba4 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
16:21:17.0303 0x0ba4 intelppm - ok
16:21:17.0325 0x0ba4 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:21:17.0359 0x0ba4 IpFilterDriver - ok
16:21:17.0444 0x0ba4 [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
16:21:17.0510 0x0ba4 iphlpsvc - ok
16:21:17.0523 0x0ba4 [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
16:21:17.0566 0x0ba4 IPMIDRV - ok
16:21:17.0583 0x0ba4 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
16:21:17.0620 0x0ba4 IPNAT - ok
16:21:17.0638 0x0ba4 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
16:21:17.0692 0x0ba4 IRENUM - ok
16:21:17.0744 0x0ba4 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
16:21:17.0797 0x0ba4 isapnp - ok
16:21:17.0820 0x0ba4 [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
16:21:17.0857 0x0ba4 iScsiPrt - ok
16:21:17.0867 0x0ba4 [ C2BC9AC9C6514230A481BDCA6A24BEFD, 84E41675D11EF2EEECED23C8469503C8D12810A2C6B6743D7AA322EB6DF7E68D ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
16:21:17.0886 0x0ba4 iwdbus - ok
16:21:17.0914 0x0ba4 [ 5917AFE4A3F695A54B99C1849C8207FE, DD57638966F2F0387DCF9DA4BBAEE3CDD8CC6F1A2D49581A0374D46A565BED4F ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
16:21:17.0941 0x0ba4 kbdclass - ok
16:21:17.0958 0x0ba4 [ 8CD840A062F6BDF41DDE3ACB96164B72, AEAE867F3557C1CE6B931E19D7144A3BD3CBABD81B1542667680D54FC24DEBE1 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
16:21:18.0047 0x0ba4 kbdhid - ok
16:21:18.0101 0x0ba4 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
16:21:18.0149 0x0ba4 kdnic - ok
16:21:18.0184 0x0ba4 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso C:\WINDOWS\system32\lsass.exe
16:21:18.0213 0x0ba4 KeyIso - ok
16:21:18.0326 0x0ba4 [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
16:21:18.0355 0x0ba4 KSecDD - ok
16:21:18.0387 0x0ba4 [ 35C19AF2116F67914712D7C4CBE47B8C, 5F976726880A6E51D7ABFA7E3EF7294C6FB7F383DC5710A2C2EC8DD26DAEC204 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
16:21:18.0418 0x0ba4 KSecPkg - ok
16:21:18.0457 0x0ba4 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
16:21:18.0493 0x0ba4 ksthunk - ok
16:21:18.0534 0x0ba4 [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
16:21:18.0578 0x0ba4 KtmRm - ok
16:21:18.0637 0x0ba4 [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
16:21:18.0692 0x0ba4 LanmanServer - ok
16:21:18.0744 0x0ba4 [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
16:21:18.0811 0x0ba4 LanmanWorkstation - ok
16:21:18.0964 0x0ba4 [ 7B3B37F064E88A51F0AAC9E00945B9EC, 862C525573149BF25374CFEE589DA5CA87351BCF4200723558B836F93C16BD5E ] Lenovo EasyPlus Hotspot C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe
16:21:19.0021 0x0ba4 Lenovo EasyPlus Hotspot - ok
16:21:19.0172 0x0ba4 [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe
16:21:19.0255 0x0ba4 Lenovo System Agent Service - ok
16:21:19.0305 0x0ba4 [ 031199B929009F268A478F0283E1CE32, B7BFB848A03535C16798085D489AB294935955F2982330B39190B2074BF9122B ] LenovoWiFiHotspotSvr C:\Windows\System32\LenovoWiFiHotspotSvr.exe
16:21:19.0330 0x0ba4 LenovoWiFiHotspotSvr - ok
16:21:19.0400 0x0ba4 [ 8B9F3796EC1762CF255BDB324E5529C8, F73D6BEF19BE20AEB18DA82CB63E9D8B50ACBBE4ED9B646EF0C9F598F6B81F94 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
16:21:19.0469 0x0ba4 lfsvc - ok
16:21:19.0513 0x0ba4 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
16:21:19.0548 0x0ba4 lltdio - ok
16:21:19.0630 0x0ba4 [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
16:21:19.0681 0x0ba4 lltdsvc - ok
16:21:19.0812 0x0ba4 [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
16:21:19.0842 0x0ba4 lmhosts - ok
16:21:19.0901 0x0ba4 [ 073BD65B67B001A722469BF7C7D4EEC4, 72102FDF2CD3182C20298418A0115ADB3E14093BF96B6297990F96CEEBEF8CAA ] LSCWinService C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
16:21:19.0928 0x0ba4 LSCWinService - ok
16:21:19.0962 0x0ba4 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
16:21:19.0989 0x0ba4 LSI_SAS - ok
16:21:20.0001 0x0ba4 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
16:21:20.0029 0x0ba4 LSI_SAS2 - ok
16:21:20.0071 0x0ba4 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
16:21:20.0118 0x0ba4 LSI_SAS3 - ok
16:21:20.0167 0x0ba4 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
16:21:20.0194 0x0ba4 LSI_SSS - ok
16:21:20.0248 0x0ba4 [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM C:\WINDOWS\System32\lsm.dll
16:21:20.0330 0x0ba4 LSM - ok
16:21:20.0371 0x0ba4 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
16:21:20.0428 0x0ba4 luafv - ok
16:21:20.0437 0x0ba4 [ 1C65F4C044E6E6C21C8B690FF23ECE30, 3FCBC11A312151ED45B0C09E459962693E42459E957864682C4AAB30F0F769AC ] LubFsFlt C:\WINDOWS\System32\Drivers\LubFsFlt.sys
16:21:20.0456 0x0ba4 LubFsFlt - ok
16:21:20.0481 0x0ba4 [ A04DF41D91AC4E2F803CA1613A7D7D62, A358C3456A0F566E74EEDFDC3012C60E9699C2E64FC336F31D371C745B40A280 ] LubSec C:\WINDOWS\system32\Drivers\LubSec.sys
16:21:20.0505 0x0ba4 LubSec - ok
16:21:20.0558 0x0ba4 [ 02CF33AD83CB69A7CF8598B1CDBC11B6, 9C9C7329F0EB3B94915676E4911BCC04F2FBDFDAF0C98F605B1B5C6606554A0D ] LUService C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe
16:21:20.0576 0x0ba4 LUService - ok
16:21:20.0708 0x0ba4 [ 64AD457FD745F86CA204050D594EE247, F37D307FCE7D1F54DA89E79A5896D12D271D953A551D79DA06105B8509AC2092 ] MaxthonUpdateSvc C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
16:21:20.0896 0x0ba4 MaxthonUpdateSvc - ok
16:21:21.0133 0x0ba4 [ BD07107E5E46AC111D094701EAB2555C, EB4F719E0DE4CCF8C13A825EB25CAF1358E020B6761174AD199A2079CA77B6B3 ] McAPExe C:\Program Files\McAfee\MSC\McAPExe.exe
16:21:21.0192 0x0ba4 McAPExe - ok
16:21:21.0248 0x0ba4 [ B808C49E8456D74AE807FE3E86020D32, 50183732249FCA977CD5AE2BACDA6B2801510B0DE51D08F1BB9896C23C082AC8 ] McAWFwk c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
16:21:21.0286 0x0ba4 McAWFwk - ok
16:21:21.0329 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] mcbootdelaystartsvc C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
16:21:21.0362 0x0ba4 mcbootdelaystartsvc - ok
16:21:21.0628 0x0ba4 [ 5660057DD2849F798434123891F612F2, 7F421A3A74BD6D1A32D8F4858D7DF456352AEF1EF7D17160BD8F4B49C0AFDCF4 ] mccspsvc C:\Program Files\Common Files\McAfee\CSP\1.8.267.0\McCSPServiceHost.exe
16:21:21.0713 0x0ba4 mccspsvc - ok
16:21:21.0762 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] McMPFSvc C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
16:21:21.0795 0x0ba4 McMPFSvc - ok
16:21:21.0833 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] McNaiAnn C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
16:21:21.0869 0x0ba4 McNaiAnn - ok
16:21:21.0963 0x0ba4 [ 57F95C311ED4BF5BC7FA19FD75AD9803, 65044E1E98F0CA7E4A3AD04E64D3A77F6B283A0ECF5D15B6435C822E34EC6F4E ] McODS C:\Program Files\mcafee\VirusScan\mcods.exe
16:21:22.0009 0x0ba4 McODS - ok
16:21:22.0035 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] McOobeSv2 C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
16:21:22.0069 0x0ba4 McOobeSv2 - ok
16:21:22.0092 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] mcpltsvc C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
16:21:22.0125 0x0ba4 mcpltsvc - ok
16:21:22.0147 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] McProxy C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
16:21:22.0187 0x0ba4 McProxy - ok
16:21:22.0243 0x0ba4 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys
16:21:22.0268 0x0ba4 megasas - ok
16:21:22.0301 0x0ba4 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
16:21:22.0359 0x0ba4 megasr - ok
16:21:22.0462 0x0ba4 [ 0AD2A3FFE438E5F7E9F0C16E6917B5BA, 57416AB3389D8E464DDB00230A0A2F1C12BC22F51FB0730DACE54ADFAA7AAAEE ] mfeaack C:\WINDOWS\system32\drivers\mfeaack.sys
16:21:22.0512 0x0ba4 mfeaack - ok
16:21:22.0604 0x0ba4 [ F280FF5882EC38F996AECE08045F3CC2, 2750B509C84FBE3F756310C331A84614F079D2BD67747694A1EFD611AFD6CCAC ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
16:21:22.0647 0x0ba4 mfeavfk - ok
16:21:22.0680 0x0ba4 [ 24AEBF843F88CF0A5B455F483F8F0100, 5E29549F6074997910271B838A77EDF2878D2D3B4B751813592F1C6EEA8112E7 ] mfeelamk C:\WINDOWS\system32\drivers\mfeelamk.sys
16:21:22.0712 0x0ba4 mfeelamk - ok
16:21:22.0790 0x0ba4 [ 376838F824FD863753D397BAE2937657, D8EC7323ECAC24EF51BEA57A8CE570BBC9FA5457F03582102404BE5EB7BCC677 ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
16:21:22.0818 0x0ba4 mfefire - ok
16:21:22.0865 0x0ba4 [ B9E87313F2AECFFCD6ABCB364A8DB44D, 7A630ADAC5637E2597336AC229FB5276CCCBAE25E5B5EE85B6CD9FCEF7155EA4 ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
16:21:22.0903 0x0ba4 mfefirek - ok
16:21:23.0014 0x0ba4 [ AC1394617F8537EBDEBF2F6B3BEAA547, 8A024E19934361A0C8B1EAA9994C312DD9AB4220037126BF6063F04BCB3A5DAE ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
16:21:23.0086 0x0ba4 mfehidk - ok
16:21:23.0112 0x0ba4 [ F47F31A8C537075A72A231D7E9B40173, 1DA2F0E801AA43099923A20D0C3F24D5EA71220FDBD87BC3BE7FD4609CC19EE1 ] mfemms C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
16:21:23.0143 0x0ba4 mfemms - ok
16:21:23.0205 0x0ba4 [ EF6CF3FF9402D7DA6212DC9BC710B2E0, A71A5AA41EA6C0AF1A6D5256493791C5568D8A4B74961F1A1CF77BBFCEFD4FE8 ] mfencbdc C:\WINDOWS\system32\DRIVERS\mfencbdc.sys
16:21:23.0247 0x0ba4 mfencbdc - ok
16:21:23.0274 0x0ba4 [ 367E9C097D1A1615159A084AE2BB2DA8, EE5B018C5229818CC3A516594F2F873D4E801FB155D68B26C258FB98BB323743 ] mfencrk C:\WINDOWS\system32\DRIVERS\mfencrk.sys
16:21:23.0298 0x0ba4 mfencrk - ok
16:21:23.0355 0x0ba4 [ CCBD7980E8617C364B9A1AE022FF4603, 81FE07F7459E90A90584702EC20FB472A8800F6FAFA886BAA5D9CBA6C2869460 ] mfevtp C:\WINDOWS\system32\mfevtps.exe
16:21:23.0393 0x0ba4 mfevtp - ok
16:21:23.0456 0x0ba4 [ F8B33D091747D746550BC05CC9DEF609, 21FF366AB4C56C71A36B243B72596B702AA4284BD7D860F4B2D39B1912184150 ] mfewfpk C:\WINDOWS\system32\drivers\mfewfpk.sys
16:21:23.0501 0x0ba4 mfewfpk - ok
16:21:23.0552 0x0ba4 [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS C:\WINDOWS\system32\mmcss.dll
16:21:23.0602 0x0ba4 MMCSS - ok
16:21:23.0644 0x0ba4 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys
16:21:23.0689 0x0ba4 Modem - ok
16:21:23.0708 0x0ba4 [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
16:21:23.0744 0x0ba4 monitor - ok
16:21:23.0791 0x0ba4 [ 08374E4E5B8914DE6067CBA99F61E930, CBB1390D6523FC968BEDF78FD13699488621ACB2CD1DF55D1606316090548661 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
16:21:23.0822 0x0ba4 mouclass - ok
16:21:23.0858 0x0ba4 [ 5FCBAB60598AE119E02B4C27DE6B99EA, 36F30094F700DE41C293047ACB49ED1961DD927BEDAD8DFDAB7023D4D24CB0DE ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
16:21:23.0927 0x0ba4 mouhid - ok
16:21:23.0975 0x0ba4 [ 9A788037D768809DFD677F4BA08A224A, E0686B3318F924E440ADA439D6671D44D3FF97C13D45C2E0A3A7B9E23DA38350 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
16:21:24.0003 0x0ba4 mountmgr - ok
16:21:24.0070 0x0ba4 [ A43F5F2D3D71A902502D61E71A18C265, 9685DABFF80EFFFD28B9B12696BF4821F30989C8441EA0AA3FF0F03ED799AD9D ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:21:24.0097 0x0ba4 MozillaMaintenance - ok
16:21:24.0122 0x0ba4 [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
16:21:24.0151 0x0ba4 mpsdrv - ok
16:21:24.0224 0x0ba4 [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
16:21:24.0287 0x0ba4 MpsSvc - ok
16:21:24.0341 0x0ba4 [ D2AC8F07995CE6CD18848C129435B481, 839B04116B49A757950E049150F6AADE41335914CC699ED73BE886BECAC39D36 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
16:21:24.0387 0x0ba4 MRxDAV - ok
16:21:24.0457 0x0ba4 [ 61000E7155E92342D0D5338CE05D102A, BCFA1A82B9727040C496A84F42D4613B96EC445018BDFBF2E180889B1B561559 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
16:21:24.0532 0x0ba4 mrxsmb - ok
16:21:24.0617 0x0ba4 [ BCBD64220AD85C26823453FF1DC3EFBD, 0245E3659E9135B9276F3CCFBEA0CEFFC4F4C0826F6D19B6329057620235F087 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
16:21:24.0665 0x0ba4 mrxsmb10 - ok
16:21:24.0712 0x0ba4 [ B0A106352DEF6D52332EA39E00462EA7, 274422C1E172B673130944F2FF2A2D9A9A364CFFC02FD04DD7D6D45B34C5022A ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
16:21:24.0782 0x0ba4 mrxsmb20 - ok
16:21:24.0812 0x0ba4 [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
16:21:24.0845 0x0ba4 MsBridge - ok
16:21:24.0883 0x0ba4 [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC C:\WINDOWS\System32\msdtc.exe
16:21:24.0917 0x0ba4 MSDTC - ok
16:21:24.0965 0x0ba4 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
16:21:25.0022 0x0ba4 Msfs - ok
16:21:25.0034 0x0ba4 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
16:21:25.0058 0x0ba4 msgpiowin32 - ok
16:21:25.0065 0x0ba4 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
16:21:25.0095 0x0ba4 mshidkmdf - ok
16:21:25.0166 0x0ba4 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
16:21:25.0198 0x0ba4 mshidumdf - ok
16:21:25.0206 0x0ba4 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
16:21:25.0231 0x0ba4 msisadrv - ok
16:21:25.0257 0x0ba4 [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
16:21:25.0314 0x0ba4 MSiSCSI - ok
16:21:25.0355 0x0ba4 msiserver - ok
16:21:25.0405 0x0ba4 [ 15E0B18784B5655D4E0666BEC840EEFF, 45D124F753CCB93845523324B07635715A2D8816826075FD2CC3789F5285CF2A ] MSK80Service C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
16:21:25.0438 0x0ba4 MSK80Service - ok
16:21:25.0447 0x0ba4 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
16:21:25.0480 0x0ba4 MSKSSRV - ok
16:21:25.0535 0x0ba4 [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
16:21:25.0634 0x0ba4 MsLldp - ok
16:21:25.0655 0x0ba4 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
16:21:25.0721 0x0ba4 MSPCLOCK - ok
16:21:25.0763 0x0ba4 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
16:21:25.0814 0x0ba4 MSPQM - ok
16:21:25.0872 0x0ba4 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
16:21:25.0914 0x0ba4 MsRPC - ok
16:21:25.0942 0x0ba4 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
16:21:25.0966 0x0ba4 mssmbios - ok
16:21:25.0974 0x0ba4 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
16:21:26.0012 0x0ba4 MSTEE - ok
16:21:26.0046 0x0ba4 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
16:21:26.0078 0x0ba4 MTConfig - ok
16:21:26.0098 0x0ba4 [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys
16:21:26.0126 0x0ba4 Mup - ok
16:21:26.0141 0x0ba4 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
16:21:26.0166 0x0ba4 mvumis - ok
16:21:26.0203 0x0ba4 [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent C:\WINDOWS\system32\qagentRT.dll
16:21:26.0255 0x0ba4 napagent - ok
16:21:26.0311 0x0ba4 [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
16:21:26.0355 0x0ba4 NativeWifiP - ok
16:21:26.0402 0x0ba4 [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
16:21:26.0459 0x0ba4 NcaSvc - ok
16:21:26.0509 0x0ba4 [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService C:\WINDOWS\System32\ncbservice.dll
16:21:26.0576 0x0ba4 NcbService - ok
16:21:26.0612 0x0ba4 [ 0813B71EAF097208DC76CE0605B48AF0, A93A2E6A8FB77B58AC4D580E6F8BF307A25BADC9493994F9BE235EBFB0E1DB22 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
16:21:26.0654 0x0ba4 NcdAutoSetup - ok
16:21:26.0877 0x0ba4 [ 97DC5967F65503213FD1F1B3E4A6F983, 3EC515856C7CE9B30032F963DC04190F66EE62402A819781DC45B7D088C84229 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
16:21:26.0954 0x0ba4 NDIS - ok
16:21:26.0996 0x0ba4 [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
16:21:27.0023 0x0ba4 NdisCap - ok
16:21:27.0070 0x0ba4 [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
16:21:27.0101 0x0ba4 NdisImPlatform - ok
16:21:27.0151 0x0ba4 [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
16:21:27.0177 0x0ba4 NdisTapi - ok
16:21:27.0242 0x0ba4 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
16:21:27.0281 0x0ba4 Ndisuio - ok
16:21:27.0300 0x0ba4 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
16:21:27.0333 0x0ba4 NdisVirtualBus - ok
16:21:27.0378 0x0ba4 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:21:27.0432 0x0ba4 NdisWan - ok
16:21:27.0446 0x0ba4 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:21:27.0486 0x0ba4 NdisWanLegacy - ok
16:21:27.0546 0x0ba4 [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
16:21:27.0583 0x0ba4 NDProxy - ok
16:21:27.0613 0x0ba4 [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
16:21:27.0681 0x0ba4 Ndu - ok
16:21:27.0759 0x0ba4 [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
16:21:27.0788 0x0ba4 NetBIOS - ok
16:21:27.0850 0x0ba4 [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
16:21:27.0889 0x0ba4 NetBT - ok
16:21:27.0937 0x0ba4 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon C:\WINDOWS\system32\lsass.exe
16:21:27.0962 0x0ba4 Netlogon - ok
16:21:27.0996 0x0ba4 [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman C:\WINDOWS\System32\netman.dll
16:21:28.0056 0x0ba4 Netman - ok
16:21:28.0108 0x0ba4 [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
16:21:28.0163 0x0ba4 netprofm - ok
16:21:28.0351 0x0ba4 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:21:28.0504 0x0ba4 NetTcpPortSharing - ok
16:21:28.0542 0x0ba4 [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc C:\WINDOWS\System32\drivers\netvsc63.sys
16:21:28.0572 0x0ba4 netvsc - ok
16:21:28.0855 0x0ba4 [ B636B4A8E59A73033B766EA7FD7C3B81, CAC8614DEE83623DE56C969C668A33366793779084B6A23F59ADC98392115F8C ] NETwNe64 C:\WINDOWS\system32\DRIVERS\NETwew02.sys
16:21:29.0111 0x0ba4 NETwNe64 - ok
16:21:29.0183 0x0ba4 [ 02E736F9861F1A6134736CF7473C513F, 7C574A50980885B213EFC0C394AFE613879B669246A4EA5EA6B5F791F7F6F32E ] NitroDriverReadSpool9 C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe
16:21:29.0212 0x0ba4 NitroDriverReadSpool9 - ok
16:21:29.0268 0x0ba4 [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
16:21:29.0326 0x0ba4 NlaSvc - ok
16:21:29.0532 0x0ba4 [ CD2C0C25ECFCF816306126D3C208614B, C0C8B59BDDB349A593DFF5107841EB76618631C867D7C8F234C9ECBD76713CB0 ] nlsX86cc C:\WINDOWS\SysWOW64\NLSSRV32.EXE
16:21:29.0604 0x0ba4 nlsX86cc - ok
16:21:29.0635 0x0ba4 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
16:21:29.0667 0x0ba4 Npfs - ok
16:21:29.0681 0x0ba4 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
16:21:29.0716 0x0ba4 npsvctrig - ok
16:21:29.0741 0x0ba4 [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi C:\WINDOWS\system32\nsisvc.dll
16:21:29.0792 0x0ba4 nsi - ok
16:21:29.0833 0x0ba4 [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
16:21:29.0862 0x0ba4 nsiproxy - ok
16:21:29.0991 0x0ba4 [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
16:21:30.0129 0x0ba4 Ntfs - ok
16:21:30.0172 0x0ba4 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys
16:21:30.0201 0x0ba4 Null - ok
16:21:30.0225 0x0ba4 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
16:21:30.0286 0x0ba4 nvraid - ok
16:21:30.0300 0x0ba4 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
16:21:30.0345 0x0ba4 nvstor - ok
16:21:30.0368 0x0ba4 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
16:21:30.0398 0x0ba4 nv_agp - ok
16:21:30.0448 0x0ba4 [ B9C125314A025127FE562C116D614AA3, 79C46C0BACEBBB5B8E1C162766B21587365A100BBAD01171C77B995C514BC7D6 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:21:30.0475 0x0ba4 ose64 - ok
16:21:30.0521 0x0ba4 [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
16:21:30.0567 0x0ba4 p2pimsvc - ok
16:21:30.0652 0x0ba4 [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc C:\WINDOWS\system32\p2psvc.dll
16:21:30.0733 0x0ba4 p2psvc - ok
16:21:30.0767 0x0ba4 [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys
16:21:30.0799 0x0ba4 Parport - ok
16:21:30.0847 0x0ba4 [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
16:21:30.0898 0x0ba4 partmgr - ok
16:21:30.0945 0x0ba4 [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
16:21:31.0013 0x0ba4 PcaSvc - ok
16:21:31.0033 0x0ba4 [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\WINDOWS\system32\drivers\pci.sys
16:21:31.0076 0x0ba4 pci - ok
16:21:31.0138 0x0ba4 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
16:21:31.0168 0x0ba4 pciide - ok
16:21:31.0237 0x0ba4 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
16:21:31.0282 0x0ba4 pcmcia - ok
16:21:31.0326 0x0ba4 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
16:21:31.0356 0x0ba4 pcw - ok
16:21:31.0400 0x0ba4 [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
16:21:31.0430 0x0ba4 pdc - ok
16:21:31.0504 0x0ba4 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
16:21:31.0572 0x0ba4 PEAUTH - ok
16:21:31.0733 0x0ba4 [ C034A645D8A75FEA04F0A4FF3EF1253D, 1005F060D7FABCC8B2BABB9236FC8826BB0CD284127911E0BF7B7AFA96E688AC ] PEFService C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
16:21:31.0791 0x0ba4 PEFService - ok
16:21:31.0837 0x0ba4 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
16:21:31.0870 0x0ba4 PerfHost - ok
16:21:32.0001 0x0ba4 [ 97DB32ACBE84B955C89C2DF41B549DFC, FB5F9690DB1ABFA4C7662D1518E45E72EBAEE0B01DC21B6FAB3B0545D76E1510 ] PhoneCompanionPusher C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
16:21:32.0083 0x0ba4 PhoneCompanionPusher - ok
16:21:32.0112 0x0ba4 [ F8C24E0E5B46338BDBDF8AB216B968E6, EBD11E8F0CC34C782D831BB250C927B8CDDA63DB79A3CD1D1C7C0CADC6F6FFCC ] PhoneCompanionVap C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe
16:21:32.0141 0x0ba4 PhoneCompanionVap - ok
16:21:32.0291 0x0ba4 [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla C:\WINDOWS\system32\pla.dll
16:21:32.0411 0x0ba4 pla - ok
16:21:32.0467 0x0ba4 [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
16:21:32.0527 0x0ba4 PlugPlay - ok
16:21:32.0569 0x0ba4 [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
16:21:32.0616 0x0ba4 PNRPAutoReg - ok
16:21:32.0681 0x0ba4 [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
16:21:32.0726 0x0ba4 PNRPsvc - ok
16:21:32.0790 0x0ba4 [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
16:21:32.0836 0x0ba4 PolicyAgent - ok
16:21:32.0879 0x0ba4 [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power C:\WINDOWS\system32\umpo.dll
16:21:32.0910 0x0ba4 Power - ok
16:21:33.0162 0x0ba4 [ 346F352E17EA5793C726D3F6582BA855, 5CD830CDCC73335EDC58D26D1BC8B8830DA885CA6D1E21BB7EE763354B5C35EA ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
16:21:33.0381 0x0ba4 PrintNotify - ok
16:21:33.0501 0x0ba4 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys
16:21:33.0536 0x0ba4 Processor - ok
16:21:33.0574 0x0ba4 [ 6E409D818C6B342544EAE741B1422B85, B4ADFB7809FC42C432C984C3AC13FAFD1B7AD53BCC7FB16E86371DE4C829DD1A ] ProfSvc C:\WINDOWS\system32\profsvc.dll
16:21:33.0624 0x0ba4 ProfSvc - ok
16:21:33.0664 0x0ba4 [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
16:21:33.0697 0x0ba4 Psched - ok
16:21:33.0748 0x0ba4 [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE C:\WINDOWS\system32\qwave.dll
16:21:33.0879 0x0ba4 QWAVE - ok
16:21:33.0925 0x0ba4 [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
16:21:33.0973 0x0ba4 QWAVEdrv - ok
16:21:34.0007 0x0ba4 [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
16:21:34.0068 0x0ba4 RasAcd - ok
16:21:34.0107 0x0ba4 [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto C:\WINDOWS\System32\rasauto.dll
16:21:34.0142 0x0ba4 RasAuto - ok
16:21:34.0205 0x0ba4 [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan C:\WINDOWS\System32\rasmans.dll
16:21:34.0258 0x0ba4 RasMan - ok
16:21:34.0291 0x0ba4 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
16:21:34.0338 0x0ba4 RasPppoe - ok
16:21:34.0418 0x0ba4 [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
16:21:34.0477 0x0ba4 rdbss - ok
16:21:34.0505 0x0ba4 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
16:21:34.0540 0x0ba4 rdpbus - ok
16:21:34.0577 0x0ba4 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
16:21:34.0622 0x0ba4 RDPDR - ok
16:21:34.0668 0x0ba4 [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
16:21:34.0692 0x0ba4 RdpVideoMiniport - ok
16:21:34.0709 0x0ba4 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
16:21:34.0745 0x0ba4 rdyboost - ok
16:21:34.0830 0x0ba4 [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
16:21:34.0899 0x0ba4 ReFS - ok
16:21:34.0950 0x0ba4 [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
16:21:34.0990 0x0ba4 RemoteAccess - ok
16:21:35.0036 0x0ba4 [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
16:21:35.0087 0x0ba4 RemoteRegistry - ok
16:21:35.0168 0x0ba4 [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
16:21:35.0246 0x0ba4 RFCOMM - ok
16:21:35.0380 0x0ba4 [ FBA61BB4C484A01A655AFB18FF86C417, D53B2110CB09D0A909C4E330C468351BFE076BB056CCDDCB8ADA2FB91E96352E ] RichVideo64 C:\Program Files\CyberLink\Shared files\RichVideo64.exe
16:21:35.0423 0x0ba4 RichVideo64 - ok
16:21:35.0514 0x0ba4 [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
16:21:35.0583 0x0ba4 RpcEptMapper - ok
16:21:35.0655 0x0ba4 [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator C:\WINDOWS\system32\locator.exe
16:21:35.0685 0x0ba4 RpcLocator - ok
16:21:35.0761 0x0ba4 [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs C:\WINDOWS\system32\rpcss.dll
16:21:35.0827 0x0ba4 RpcSs - ok
16:21:35.0886 0x0ba4 [ 835EB4A0F78610760DB6A802B65C4323, 93BEB9348D9A2DB28D6BB166A2011FF8D2F487C125E0D2391771612ABEA36E0B ] RSP2STOR C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys
16:21:35.0927 0x0ba4 RSP2STOR - ok
16:21:35.0964 0x0ba4 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
16:21:36.0012 0x0ba4 rspndr - ok
16:21:36.0075 0x0ba4 [ 7CC0D898D00675F14BA0C4BF056C1CF4, E9203DD2A201AEF206C1A4177FD564DDFC8E7468DC268BD99389626A2C6593D3 ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
16:21:36.0160 0x0ba4 RTL8168 - ok
16:21:36.0324 0x0ba4 [ 5F8851571BDD5A28C010AC7161CD7225, A6E87975FFE8CD8C474EEBA56BC82A263AFA398C50C4BABAFED6469960236EBD ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
16:21:36.0537 0x0ba4 rtsuvc - ok
16:21:36.0602 0x0ba4 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
16:21:36.0637 0x0ba4 s3cap - ok
16:21:36.0669 0x0ba4 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs C:\WINDOWS\system32\lsass.exe
16:21:36.0698 0x0ba4 SamSs - ok
16:21:36.0764 0x0ba4 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
16:21:36.0792 0x0ba4 sbp2port - ok
16:21:36.0834 0x0ba4 [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
16:21:36.0872 0x0ba4 SCardSvr - ok
16:21:36.0915 0x0ba4 [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
16:21:36.0951 0x0ba4 ScDeviceEnum - ok
16:21:36.0992 0x0ba4 [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
16:21:37.0021 0x0ba4 scfilter - ok
16:21:37.0090 0x0ba4 [ 3151A020E03DDE31AAC49F35C5EFB4DB, 5ABB1103009979F86C862357E28F37C2744979F2C99F7CF6ABB4EB1B8416B3F6 ] Schedule C:\WINDOWS\system32\schedsvc.dll
16:21:37.0197 0x0ba4 Schedule - ok
16:21:37.0256 0x0ba4 [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
16:21:37.0293 0x0ba4 SCPolicySvc - ok
16:21:37.0369 0x0ba4 [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
16:21:37.0429 0x0ba4 sdbus - ok
16:21:37.0456 0x0ba4 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
16:21:37.0483 0x0ba4 sdstor - ok
16:21:37.0495 0x0ba4 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
16:21:37.0524 0x0ba4 secdrv - ok
16:21:37.0580 0x0ba4 [ 6627154693B6C2B8A59727F5B38728E8, F08251EE3436400295F120D48F3763E6F11BBF4132D674AD3E8112B6B3538455 ] seclogon C:\WINDOWS\system32\seclogon.dll
16:21:37.0634 0x0ba4 seclogon - ok
16:21:37.0670 0x0ba4 [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS C:\WINDOWS\System32\sens.dll
16:21:37.0710 0x0ba4 SENS - ok
16:21:37.0751 0x0ba4 [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
16:21:37.0789 0x0ba4 SensrSvc - ok
16:21:37.0834 0x0ba4 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
16:21:37.0862 0x0ba4 SerCx - ok
16:21:37.0876 0x0ba4 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
16:21:37.0906 0x0ba4 SerCx2 - ok
16:21:37.0916 0x0ba4 [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
16:21:37.0946 0x0ba4 Serenum - ok
16:21:37.0967 0x0ba4 [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys
16:21:38.0000 0x0ba4 Serial - ok
16:21:38.0048 0x0ba4 [ 148195AE95D9BC7375A08846439FDAC1, 3A2F78FD18AA7A6D659921E19335E943894530874AC5AB5E7219CEF28FA54F7A ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
16:21:38.0095 0x0ba4 sermouse - ok
16:21:38.0193 0x0ba4 [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv C:\WINDOWS\system32\sessenv.dll
16:21:38.0240 0x0ba4 SessionEnv - ok
16:21:38.0255 0x0ba4 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
16:21:38.0283 0x0ba4 sfloppy - ok
16:21:38.0334 0x0ba4 [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
16:21:38.0381 0x0ba4 SharedAccess - ok
16:21:38.0429 0x0ba4 [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
16:21:38.0503 0x0ba4 ShellHWDetection - ok
16:21:38.0536 0x0ba4 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
16:21:38.0563 0x0ba4 SiSRaid2 - ok
16:21:38.0593 0x0ba4 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
16:21:38.0627 0x0ba4 SiSRaid4 - ok
16:21:38.0635 0x0ba4 [ 79A778AF1194488C4DB676F30612EFCE, A105A4ACEC7E0B392970375C856C78163F4F229D313681AB64AACC0ED78E9F19 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
16:21:38.0656 0x0ba4 SmbDrvI - ok
16:21:38.0704 0x0ba4 [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost C:\WINDOWS\System32\smphost.dll
16:21:38.0750 0x0ba4 smphost - ok
16:21:38.0811 0x0ba4 [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
16:21:38.0852 0x0ba4 SNMPTRAP - ok
16:21:38.0915 0x0ba4 [ B45AE0970B2D66CCE756DE6989E23EEC, 8393CF2DC4F65CD48D4D7B3C8C2D29E26728593B652D6CEAB65B50AEDA0884B7 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
16:21:38.0961 0x0ba4 spaceport - ok
16:21:38.0987 0x0ba4 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
16:21:39.0015 0x0ba4 SpbCx - ok
16:21:39.0075 0x0ba4 [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler C:\WINDOWS\System32\spoolsv.exe
16:21:39.0154 0x0ba4 Spooler - ok
16:21:39.0494 0x0ba4 [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe
16:21:39.0930 0x0ba4 sppsvc - ok
16:21:40.0032 0x0ba4 [ 8003E034E3EA0E29DA54215A770FC27C, 28AB1FDEA372D33540A26DAE413A10336409D33B91F51DC0AE144D451022A2A7 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
16:21:40.0091 0x0ba4 srv - ok
16:21:40.0168 0x1a38 Object required for P2P: [ CCBD7980E8617C364B9A1AE022FF4603 ] mfevtp
16:21:40.0176 0x0ba4 [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
16:21:40.0263 0x0ba4 srv2 - ok
16:21:40.0340 0x0ba4 [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
16:21:40.0390 0x0ba4 srvnet - ok
16:21:40.0450 0x0ba4 [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
16:21:40.0493 0x0ba4 SSDPSRV - ok
16:21:40.0558 0x0ba4 [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
16:21:40.0594 0x0ba4 SstpSvc - ok
16:21:40.0633 0x0ba4 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
16:21:40.0658 0x0ba4 stexstor - ok
16:21:40.0712 0x0ba4 [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc C:\WINDOWS\System32\wiaservc.dll
16:21:40.0786 0x0ba4 stisvc - ok
16:21:40.0800 0x0ba4 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
16:21:40.0834 0x0ba4 storahci - ok
16:21:40.0870 0x0ba4 [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys
16:21:40.0901 0x0ba4 storflt - ok
16:21:40.0931 0x0ba4 [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
16:21:40.0959 0x0ba4 stornvme - ok
16:21:40.0997 0x0ba4 [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc C:\WINDOWS\system32\storsvc.dll
16:21:41.0040 0x0ba4 StorSvc - ok
16:21:41.0052 0x0ba4 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
16:21:41.0078 0x0ba4 storvsc - ok
16:21:41.0110 0x0ba4 [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc C:\WINDOWS\system32\svsvc.dll
16:21:41.0158 0x0ba4 svsvc - ok
16:21:41.0197 0x0ba4 [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum C:\WINDOWS\System32\drivers\swenum.sys
16:21:41.0234 0x0ba4 swenum - ok
16:21:41.0311 0x0ba4 [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv C:\WINDOWS\System32\swprv.dll
16:21:41.0386 0x0ba4 swprv - ok
16:21:41.0447 0x0ba4 [ 4F51E33EF163D84AC10AD9D3185317B5, D04A18D2E7109F04BF20C2FBD212225B2E494F5DB484A2101C9E479BF41A0C80 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
16:21:41.0497 0x0ba4 SynTP - ok
16:21:41.0578 0x0ba4 [ 7E85DB0463AD2403AE84AD162B162279, 996C42ECAFC6E24C623068AFAFCC0A2612526333AF9315F7536C6D40C2570632 ] SysMain C:\WINDOWS\system32\sysmain.dll
16:21:41.0717 0x0ba4 SysMain - ok
16:21:41.0841 0x0ba4 [ D73DBBB96CEE90C2856164AAD8543425, D11ADB5D4C5DD355314CA656D375D0062CAE7462E866F94F1B26D5803F65DCB2 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
16:21:41.0893 0x0ba4 SystemEventsBroker - ok
16:21:41.0946 0x0ba4 [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
16:21:41.0994 0x0ba4 TabletInputService - ok
16:21:42.0045 0x0ba4 [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
16:21:42.0087 0x0ba4 TapiSrv - ok
16:21:42.0286 0x0ba4 [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
16:21:42.0416 0x0ba4 Tcpip - ok
16:21:42.0546 0x0ba4 [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
16:21:42.0642 0x1a38 Object send P2P result: true
16:21:42.0722 0x0ba4 TCPIP6 - ok
16:21:42.0754 0x0ba4 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
16:21:42.0795 0x0ba4 tcpipreg - ok
16:21:42.0838 0x0ba4 [ E0BD2D83875464FEEEB242CBA8B7E073, A3067165128F36035FA9F3CBA55CFED736E180C495497FA7332B3D97908C3D90 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
16:21:42.0869 0x0ba4 tdx - ok
16:21:42.0897 0x0ba4 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
16:21:42.0922 0x0ba4 terminpt - ok
16:21:43.0003 0x0ba4 [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService C:\WINDOWS\System32\termsrv.dll
16:21:43.0099 0x0ba4 TermService - ok
16:21:43.0162 0x0ba4 [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes C:\WINDOWS\system32\themeservice.dll
16:21:43.0240 0x0ba4 Themes - ok
16:21:43.0302 0x0ba4 [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER C:\WINDOWS\system32\mmcss.dll
16:21:43.0349 0x0ba4 THREADORDER - ok
16:21:43.0474 0x0ba4 [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
16:21:43.0521 0x0ba4 TimeBroker - ok
16:21:43.0568 0x0ba4 [ 80A2FC1A089A71F2DBE5D8394FFB009F, DEA30E751F6EA42E43E16869713FC7E37832B15DAFA0062B1798DFA476981385 ] TPM C:\WINDOWS\system32\drivers\tpm.sys
16:21:43.0599 0x0ba4 TPM - ok
16:21:43.0646 0x0ba4 [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks C:\WINDOWS\System32\trkwks.dll
16:21:43.0709 0x0ba4 TrkWks - ok
16:21:43.0755 0x0ba4 [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
16:21:43.0802 0x0ba4 TrustedInstaller - ok
16:21:43.0867 0x0ba4 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
16:21:43.0898 0x0ba4 TsUsbFlt - ok
16:21:43.0945 0x0ba4 [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
16:21:43.0976 0x0ba4 TsUsbGD - ok
16:21:44.0023 0x0ba4 [ E85916632CD3B9E9B546968DB950BF42, DECE3852C763CC6293C7D1B772296C43A0AE1E47BBCC4979C96B3B2AD70413F3 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
16:21:44.0070 0x0ba4 tunnel - ok
16:21:44.0101 0x0ba4 [ 72E24CD1662577B38779B5E768C48FEE, 66BFD18CEDEEF358B04B81C65BC12606632FB1B2DAD4EC8405962DE1054D08CA ] TXEIx64 C:\WINDOWS\System32\drivers\TXEIx64.sys
16:21:44.0132 0x0ba4 TXEIx64 - ok
16:21:44.0164 0x0ba4 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
16:21:44.0195 0x0ba4 uagp35 - ok
16:21:44.0211 0x0ba4 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
16:21:44.0242 0x0ba4 UASPStor - ok
16:21:44.0289 0x0ba4 [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
16:21:44.0320 0x0ba4 UCX01000 - ok
16:21:44.0351 0x0ba4 [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
16:21:44.0429 0x0ba4 udfs - ok
16:21:44.0445 0x0ba4 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
16:21:44.0476 0x0ba4 UEFI - ok
16:21:44.0507 0x0ba4 [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
16:21:44.0554 0x0ba4 UI0Detect - ok
16:21:44.0570 0x0ba4 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
16:21:44.0601 0x0ba4 uliagpkx - ok
16:21:44.0617 0x0ba4 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
16:21:44.0648 0x0ba4 umbus - ok
16:21:44.0695 0x0ba4 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
16:21:44.0726 0x0ba4 UmPass - ok
16:21:44.0789 0x0ba4 [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
16:21:44.0836 0x0ba4 UmRdpService - ok
16:21:44.0898 0x0ba4 [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost C:\WINDOWS\System32\upnphost.dll
16:21:44.0945 0x0ba4 upnphost - ok
16:21:45.0054 0x0ba4 [ 14D98C1B5EA6E3B51EDC6EC12F4B1F77, 7C645331467435E005F12A28796EB9F6A349AA7F7F54DA7785738E1CC368E3D3 ] USBBKSvc C:\Program Files (x86)\Lenovo\USB Blocker\USBBKSvc.exe
16:21:45.0117 0x0ba4 USBBKSvc - ok
16:21:45.0179 0x0ba4 [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
16:21:45.0211 0x0ba4 usbccgp - ok
16:21:45.0242 0x0ba4 [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
16:21:45.0273 0x0ba4 usbcir - ok
16:21:45.0320 0x0ba4 [ C996CBEF922B5653A01E3F50DDCE2F86, 231EB5A36E7EE242197E796D3B4AB12F945D2C8570587BC8D57D45530A0C59B4 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
16:21:45.0344 0x0ba4 usbehci - ok
16:21:45.0391 0x0ba4 [ CD81683F4553677B9BF5163A922153EB, 6B304B0D68B9BFF0245EC755CDAAF9DF59DF3A081727E32CB66672929F0DBC50 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
16:21:45.0437 0x0ba4 usbhub - ok
16:21:45.0469 0x0ba4 [ 5C90D5379B53590FBB24BBAD4FA682EE, DC036340510C1C0999AB1CB845F8E6EB8B7696BAC9BBE6E936454C0000D1E9D4 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
16:21:45.0531 0x0ba4 USBHUB3 - ok
16:21:45.0594 0x0ba4 [ A0F0484C97D6441ED6A75D7426ECCC9E, FF928ADE1C5464E581BF929F7383D5762D110EA6C7E31A6F0887EA7357ADBEFE ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
16:21:45.0656 0x0ba4 usbohci - ok
16:21:45.0719 0x0ba4 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
16:21:45.0750 0x0ba4 usbprint - ok
16:21:45.0828 0x0ba4 [ 9D168BFA334D47BE404367EB58D4E130, 23279CBE6ACBD074E7B268BA2EDA14E2255C41F8117173B2BBE653D8259ECFA2 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
16:21:45.0859 0x0ba4 USBSTOR - ok
16:21:45.0875 0x0ba4 [ FC974B03C8B87455F44F734C8F31A3C8, D69F6EE8030F7DF96FF151D9EAA6AE65417ACAC5A267C7DB96E9611D5BC42D2C ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
16:21:45.0906 0x0ba4 usbuhci - ok
16:21:45.0953 0x0ba4 [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys
16:21:46.0000 0x0ba4 usbvideo - ok
16:21:46.0047 0x0ba4 [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
16:21:46.0094 0x0ba4 USBXHCI - ok
16:21:46.0125 0x0ba4 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc C:\WINDOWS\system32\lsass.exe
16:21:46.0156 0x0ba4 VaultSvc - ok
16:21:46.0187 0x0ba4 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
16:21:46.0219 0x0ba4 vdrvroot - ok
16:21:46.0281 0x0ba4 [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds C:\WINDOWS\System32\vds.exe
16:21:46.0375 0x0ba4 vds - ok
16:21:46.0453 0x0ba4 [ 249C741D78E0EFC30F0527F895849176, CB0697BD59A8372325294628D90645BF3991CAB27AA2D7DD97D154DBC9B5C7A4 ] VeriFaceSrv C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe
16:21:46.0516 0x0ba4 VeriFaceSrv - ok
16:21:46.0531 0x0ba4 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
16:21:46.0578 0x0ba4 VerifierExt - ok
16:21:46.0625 0x0ba4 [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
16:21:46.0703 0x0ba4 vhdmp - ok
16:21:46.0781 0x0ba4 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
16:21:46.0812 0x0ba4 viaide - ok
16:21:46.0844 0x0ba4 [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
16:21:46.0875 0x0ba4 vmbus - ok
16:21:46.0902 0x0ba4 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
16:21:46.0933 0x0ba4 VMBusHID - ok
16:21:47.0089 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
16:21:47.0167 0x0ba4 vmicguestinterface - ok
16:21:47.0245 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
16:21:47.0292 0x0ba4 vmicheartbeat - ok
16:21:47.0324 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
16:21:47.0370 0x0ba4 vmickvpexchange - ok
16:21:47.0417 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
16:21:47.0480 0x0ba4 vmicrdv - ok
16:21:47.0527 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
16:21:47.0605 0x0ba4 vmicshutdown - ok
16:21:47.0652 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
16:21:47.0714 0x0ba4 vmictimesync - ok
16:21:47.0761 0x0ba4 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
16:21:47.0824 0x0ba4 vmicvss - ok
16:21:47.0855 0x0ba4 [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
16:21:47.0886 0x0ba4 volmgr - ok
16:21:47.0933 0x0ba4 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
16:21:48.0011 0x0ba4 volmgrx - ok
16:21:48.0058 0x0ba4 [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
16:21:48.0089 0x0ba4 volsnap - ok
16:21:48.0136 0x0ba4 [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
16:21:48.0167 0x0ba4 vpci - ok
16:21:48.0199 0x0ba4 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
16:21:48.0230 0x0ba4 vsmraid - ok
16:21:48.0339 0x0ba4 [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS C:\WINDOWS\system32\vssvc.exe
16:21:48.0525 0x0ba4 VSS - ok
16:21:48.0603 0x0ba4 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
16:21:48.0634 0x0ba4 VSTXRAID - ok
16:21:48.0665 0x0ba4 [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
16:21:48.0712 0x0ba4 vwifibus - ok
16:21:48.0728 0x0ba4 [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt C:\WINDOWS\system32\DRIVERS\vwififlt.sys
16:21:48.0775 0x0ba4 vwififlt - ok
16:21:48.0806 0x0ba4 [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp C:\WINDOWS\system32\DRIVERS\vwifimp.sys
16:21:48.0837 0x0ba4 vwifimp - ok
16:21:48.0884 0x0ba4 [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time C:\WINDOWS\system32\w32time.dll
16:21:48.0947 0x0ba4 W32Time - ok
16:21:48.0978 0x0ba4 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
16:21:49.0009 0x0ba4 WacomPen - ok
16:21:49.0150 0x0ba4 [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine C:\WINDOWS\system32\wbengine.exe
16:21:49.0322 0x0ba4 wbengine - ok
16:21:49.0400 0x0ba4 [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
16:21:49.0478 0x0ba4 WbioSrvc - ok
16:21:49.0525 0x0ba4 [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
16:21:49.0587 0x0ba4 Wcmsvc - ok
16:21:49.0665 0x0ba4 [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
16:21:49.0743 0x0ba4 wcncsvc - ok
16:21:49.0775 0x0ba4 [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
16:21:49.0822 0x0ba4 WcsPlugInService - ok
16:21:49.0900 0x0ba4 [ 81285DDC994F03379DB46419300B2DCB, 98D3622E11F375718AEA1DE3B5F0104DDAB4F96B6D4C19788C14F7B338A6F235 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
16:21:49.0947 0x0ba4 WdBoot - ok
16:21:49.0992 0x0ba4 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
16:21:50.0054 0x0ba4 Wdf01000 - ok
16:21:50.0101 0x0ba4 [ 26B8FED3F3B85F5F0C4BD03FD00B9941, 7F94FE7954498223B33C025258DB588A3AC9FF25C58EEAD204514FD20652FE40 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
16:21:50.0132 0x0ba4 WdFilter - ok
16:21:50.0164 0x0ba4 [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
16:21:50.0195 0x0ba4 WdiServiceHost - ok
16:21:50.0226 0x0ba4 [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
16:21:50.0257 0x0ba4 WdiSystemHost - ok
16:21:50.0289 0x0ba4 [ CE67080F00E0AF32755096CEA6430ABA, 0E5D626F9F76C0BC63B2D246AD66D9CBF7D92F34B56398417BCFD0C331DBD282 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
16:21:50.0320 0x0ba4 WdNisDrv - ok
16:21:50.0367 0x0ba4 WdNisSvc - ok
16:21:50.0398 0x0ba4 [ 40F83492DB9ABBA59773A45FB487C8B2, 0D0DE0B0C9B929FEFD2674CCF17F5F2FC4B16EAB8E1981BBCE51B0305FD7D75E ] WebClient C:\WINDOWS\System32\webclnt.dll
16:21:50.0461 0x0ba4 WebClient - ok
16:21:50.0492 0x0ba4 [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
16:21:50.0539 0x0ba4 Wecsvc - ok
16:21:50.0601 0x0ba4 [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
16:21:50.0648 0x0ba4 WEPHOSTSVC - ok
16:21:50.0711 0x0ba4 [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
16:21:50.0758 0x0ba4 wercplsupport - ok
16:21:50.0773 0x0ba4 [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc C:\WINDOWS\System32\WerSvc.dll
16:21:50.0820 0x0ba4 WerSvc - ok
16:21:50.0883 0x0ba4 [ 715ABA3DD164D06457A2A3C92F6EA9D5, E6F8269D2FFC4A548B65724C0A3F53756ED15E47229861FBD40B656EE40FE166 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
16:21:50.0945 0x0ba4 WFPLWFS - ok
16:21:50.0976 0x0ba4 [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
16:21:51.0008 0x0ba4 WiaRpc - ok
16:21:51.0054 0x0ba4 [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
16:21:51.0086 0x0ba4 WIMMount - ok
16:21:51.0117 0x0ba4 WinDefend - ok
16:21:51.0226 0x0ba4 [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
16:21:51.0351 0x0ba4 WinHttpAutoProxySvc - ok
16:21:51.0593 0x0ba4 [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
16:21:51.0655 0x0ba4 Winmgmt - ok
16:21:51.0780 0x0ba4 [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
16:21:52.0030 0x0ba4 WinRM - ok
16:21:52.0171 0x0ba4 [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
16:21:52.0249 0x0ba4 WlanSvc - ok
16:21:52.0405 0x0ba4 [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
16:21:52.0515 0x0ba4 wlidsvc - ok
16:21:52.0577 0x0ba4 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
16:21:52.0608 0x0ba4 WmiAcpi - ok
16:21:52.0655 0x0ba4 [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
16:21:52.0718 0x0ba4 wmiApSrv - ok
16:21:52.0765 0x0ba4 WMPNetworkSvc - ok
16:21:52.0780 0x0ba4 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys
16:21:52.0796 0x0ba4 Wof - ok
16:21:52.0890 0x0ba4 [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
16:21:53.0030 0x0ba4 workfolderssvc - ok
16:21:53.0084 0x0ba4 [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
16:21:53.0115 0x0ba4 wpcfltr - ok
16:21:53.0147 0x0ba4 [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
16:21:53.0209 0x0ba4 WPCSvc - ok
16:21:53.0240 0x0ba4 [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
16:21:53.0287 0x0ba4 WPDBusEnum - ok
16:21:53.0319 0x0ba4 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
16:21:53.0350 0x0ba4 WpdUpFltr - ok
16:21:53.0381 0x0ba4 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
16:21:53.0412 0x0ba4 ws2ifsl - ok
16:21:53.0459 0x0ba4 [ 501D5EFAB9711039479AE48401386D2B, C8C1184DE93E9D2C4E8A60E4E9980745C4E5470E5DA9B59165D18705330ADEFE ] wscsvc C:\WINDOWS\System32\wscsvc.dll
16:21:53.0506 0x0ba4 wscsvc - ok
16:21:53.0506 0x0ba4 WSearch - ok
16:21:53.0694 0x0ba4 [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService C:\WINDOWS\System32\WSService.dll
16:21:53.0959 0x0ba4 WSService - ok
16:21:54.0022 0x0ba4 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
16:21:54.0037 0x0ba4 wsvd - ok
16:21:54.0225 0x0ba4 [ 020F47C655ED1F63BBA834AA53575D5C, 7E36BB83B937CEA8B5D1EAF1DF63D32D64CA8045DA377DF5237D2F4DC16574CC ] wuauserv C:\WINDOWS\system32\wuaueng.dll
16:21:54.0475 0x0ba4 wuauserv - ok
16:21:54.0537 0x0ba4 [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
16:21:54.0584 0x0ba4 WudfPf - ok
16:21:54.0627 0x0ba4 [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
16:21:54.0658 0x0ba4 WUDFRd - ok
16:21:54.0690 0x0ba4 [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
16:21:54.0752 0x0ba4 wudfsvc - ok
16:21:54.0783 0x0ba4 [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs C:\WINDOWS\System32\drivers\WUDFRd.sys
16:21:54.0815 0x0ba4 WUDFWpdFs - ok
16:21:54.0893 0x0ba4 [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
16:21:54.0940 0x0ba4 WwanSvc - ok
16:21:55.0065 0x0ba4 [ 86B8B1F5C1189D68B07666784BE882FE, 0DD8C627F3DDBDB61B1910540C465C0D62C9F8D84C7CBB6C80782DB02D535AF0 ] ZAtheros Bt and Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
16:21:55.0080 0x0ba4 ZAtheros Bt and Wlan Coex Agent - detected UnsignedFile.Multi.Generic ( 1 )
16:21:57.0466 0x0ba4 Detect skipped due to KSN trusted
16:21:57.0466 0x0ba4 ZAtheros Bt and Wlan Coex Agent - ok
16:21:57.0529 0x0ba4 ================ Scan global ===============================
16:21:57.0591 0x0ba4 [ 05B08C20B8428ECE088CB5635696A48D, 471642A2D0E5C3BB235962FC8D86A49AC30D7DDE80B97E348425BBFCDE4DCDC3 ] C:\WINDOWS\system32\basesrv.dll
16:21:57.0638 0x0ba4 [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\WINDOWS\system32\winsrv.dll
16:21:57.0669 0x0ba4 [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\WINDOWS\system32\sxssrv.dll
16:21:57.0716 0x0ba4 [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\WINDOWS\system32\services.exe
16:21:57.0731 0x0ba4 [ Global ] - ok
16:21:57.0747 0x0ba4 ================ Scan MBR ==================================
16:21:57.0747 0x0ba4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
16:21:57.0841 0x0ba4 \Device\Harddisk0\DR0 - ok
16:21:57.0841 0x0ba4 ================ Scan VBR ==================================
16:21:57.0888 0x0ba4 [ 1F8D19603C4687649BDB370D239CEC5F ] \Device\Harddisk0\DR0\Partition1
16:21:57.0903 0x0ba4 \Device\Harddisk0\DR0\Partition1 - ok
16:21:57.0919 0x0ba4 [ D4530F15EDA2C24767012F8D86781B13 ] \Device\Harddisk0\DR0\Partition2
16:21:57.0935 0x0ba4 \Device\Harddisk0\DR0\Partition2 - ok
16:21:57.0950 0x0ba4 [ 40D23AD0F9DFCBFE936E523F3EE433F1 ] \Device\Harddisk0\DR0\Partition3
16:21:57.0966 0x0ba4 \Device\Harddisk0\DR0\Partition3 - ok
16:21:57.0981 0x0ba4 [ 61FC53D848B7D8DA82F25696F433C7B5 ] \Device\Harddisk0\DR0\Partition4
16:21:57.0997 0x0ba4 \Device\Harddisk0\DR0\Partition4 - ok
16:21:58.0013 0x0ba4 [ 7FCA673C6C80F12551EDE0AD987B30E3 ] \Device\Harddisk0\DR0\Partition5
16:21:58.0028 0x0ba4 \Device\Harddisk0\DR0\Partition5 - ok
16:21:58.0075 0x0ba4 [ 88FFDA7E3F17B168090FE6BB82BDED98 ] \Device\Harddisk0\DR0\Partition6
16:21:58.0091 0x0ba4 \Device\Harddisk0\DR0\Partition6 - ok
16:21:58.0122 0x0ba4 [ D145A97DAA60F7E54A69E5E0AEF05147 ] \Device\Harddisk0\DR0\Partition7
16:21:58.0138 0x0ba4 \Device\Harddisk0\DR0\Partition7 - ok
16:21:58.0138 0x0ba4 ================ Scan generic autorun ======================
16:21:58.0216 0x0ba4 [ 7E4924FF193DC4C106A7C47F0CCBB836, F63A956D67F40C7CCE56F3F9706F0F84F4AD8B6FC3C7D593B8B3B3EE07B53BB1 ] C:\WINDOWS\system32\igfxtray.exe
16:21:58.0247 0x0ba4 IgfxTray - ok
16:21:58.0310 0x0ba4 [ 2B4CA698FF04CFDDACD7E163381AB8AE, A738BD1580817C9AC49E02B135B820A678C84641C9056246E1F0111505252F83 ] C:\WINDOWS\system32\hkcmd.exe
16:21:58.0356 0x0ba4 HotKeysCmds - ok
16:21:58.0403 0x0ba4 [ A6DDF50996AD9E6DA1264623CD04FFDE, 432E15ABBDB5824C24F210AD105D3EA790FB5B5CBA46F75CCB88C8571B143986 ] C:\WINDOWS\system32\igfxpers.exe
16:21:58.0466 0x0ba4 Persistence - ok
16:21:59.0262 0x0ba4 [ 92894CE1B4DBBB9BB55EA0A1E6E7DF99, 06E575611BEF01D75789DD92AFE33A6CE9BA18831AD97E7C096BE6C2B0BFE64A ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
16:21:59.0887 0x0ba4 RtHDVCpl - ok
16:21:59.0997 0x0ba4 [ 01F0FC06366F80BF8964708042E0D9F5, 7DEA61576AC17C902B6041EE168BEF2AF2A43401829D2FF7E19747ED8D43B16D ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
16:22:00.0090 0x0ba4 RtHDVBg_Dolby - ok
16:22:00.0168 0x0ba4 [ 01F0FC06366F80BF8964708042E0D9F5, 7DEA61576AC17C902B6041EE168BEF2AF2A43401829D2FF7E19747ED8D43B16D ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
16:22:00.0247 0x0ba4 RtHDVBg_LENOVO_DOLBYDRAGON - ok
16:22:00.0418 0x0ba4 [ 01F0FC06366F80BF8964708042E0D9F5, 7DEA61576AC17C902B6041EE168BEF2AF2A43401829D2FF7E19747ED8D43B16D ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
16:22:00.0481 0x0ba4 RtHDVBg_LENOVO_MICPKEY - ok
16:22:00.0668 0x0ba4 [ F2A0BDCCC0A610F2F71FCF086A3A8BAE, 6B2589B3B40E35C30909783AD7B128533041C3C6F91BC861BC34B1A5829CDA1C ] C:\WINDOWS\RTFTrack.exe
16:22:00.0917 0x0ba4 RtsFT - ok
16:22:00.0933 0x0ba4 SynTPEnh - ok
16:22:00.0996 0x0ba4 [ 6627F2373B1AA6CF0EF9C5C9AD587C35, B7D05CE26D1B78579021833397B188DB2F44CBD152E1E02E11CB5E9EE81D9D84 ] C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe
16:22:01.0058 0x0ba4 PhoneCompanion - ok
16:22:01.0824 0x0ba4 [ 87627090DE5BB0ED8D0175F3B8AA1FEA, 8E8116569D5828104E3BA42FB0727103BA1D481B3213CB5542422DA047B19B68 ] C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
16:22:02.0672 0x0ba4 Energy Manager - ok
16:22:03.0298 0x0ba4 [ 4FA80F2B1EF53A50D16A27B65D6B72C7, 0665EA182C68F2B3FF130D65A1D15A13D0EDDBCCF283F9A62AD3BF6FA96EEA28 ] C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe
16:22:03.0860 0x0ba4 Lenovo Utility - ok
16:22:04.0025 0x0ba4 [ 22817081C475BA9506C34BBECC99279B, 91486ACCA8E3BEE5083D0746EADC3C257812CD8652C3F8F6F2E9EA21AB7915FF ] C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe
16:22:04.0057 0x0ba4 CLMLServer_For_P2G8 - ok
16:22:04.0088 0x0ba4 [ BAD02723C34372D4A6B1F37135A57E68, B403612784E676A7455881CEF9A42F1F3203356D2821175D346A9CD44C60EFB9 ] C:\Program Files (x86)\Lenovo\Power2Go\VirtualDrive.exe
16:22:04.0119 0x0ba4 CLVirtualDrive - ok
16:22:04.0135 0x0ba4 Waiting for KSN requests completion. In queue: 13
16:22:05.0150 0x0ba4 Waiting for KSN requests completion. In queue: 13
16:22:06.0166 0x0ba4 Waiting for KSN requests completion. In queue: 13
16:22:06.0557 0x0bf4 Object required for P2P: [ 87627090DE5BB0ED8D0175F3B8AA1FEA ] C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
16:22:07.0181 0x0ba4 Waiting for KSN requests completion. In queue: 4
16:22:08.0197 0x0ba4 Waiting for KSN requests completion. In queue: 4
16:22:09.0087 0x0bf4 Object send P2P result: true
16:22:09.0369 0x0ba4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.207.0 ), 0x60100 ( disabled : updated )
16:22:09.0369 0x0ba4 AV detected via SS2: McAfee Anti-Virus und Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 14.0.0.0 ), 0x51000 ( enabled : updated )
16:22:09.0369 0x0ba4 FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 14.0.0.0 ), 0x51010 ( enabled )
16:22:11.0883 0x0ba4 ============================================================
16:22:11.0883 0x0ba4 Scan finished
16:22:11.0883 0x0ba4 ============================================================
16:22:11.0899 0x1904 Detected object count: 0
16:22:11.0899 0x1904 Actual detected object count: 0 |