ts_spatzl | 23.06.2018 15:22 | Code:
16:20:44.0753 0x2e14 TDSS rootkit removing tool 3.1.0.17 Apr 20 2018 12:12:17
16:20:44.0753 0x2e14 UEFI system
16:20:47.0715 0x2e14 ============================================================
16:20:47.0715 0x2e14 Current date / time: 2018/06/23 16:20:47.0715
16:20:47.0715 0x2e14 SystemInfo:
16:20:47.0715 0x2e14
16:20:47.0715 0x2e14 OS Version: 10.0.17134 ServicePack: 0.0
16:20:47.0715 0x2e14 Product type: Workstation
16:20:47.0715 0x2e14 ComputerName: SIGI01
16:20:47.0715 0x2e14 UserName: Sigi
16:20:47.0715 0x2e14 Windows directory: C:\WINDOWS
16:20:47.0715 0x2e14 System windows directory: C:\WINDOWS
16:20:47.0715 0x2e14 Running under WOW64
16:20:47.0715 0x2e14 Processor architecture: Intel x64
16:20:47.0715 0x2e14 Number of processors: 4
16:20:47.0715 0x2e14 Page size: 0x1000
16:20:47.0715 0x2e14 Boot type: Normal boot
16:20:47.0715 0x2e14 CodeIntegrityOptions = 0x00000001
16:20:47.0715 0x2e14 ============================================================
16:20:48.0199 0x2e14 KLMD registered as C:\WINDOWS\system32\drivers\14740914.sys
16:20:48.0199 0x2e14 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 17134.1, osProperties = 0x19
16:20:48.0277 0x2e14 System UUID: {43969B40-EF26-AC36-ED29-8EE69C6D0E18}
16:20:48.0512 0x2e14 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:20:48.0527 0x2e14 ============================================================
16:20:48.0527 0x2e14 \Device\Harddisk0\DR0:
16:20:48.0527 0x2e14 GPT partitions:
16:20:48.0559 0x2e14 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {6A21F463-927F-4DFF-B283-AC37B65FF8B4}, Name: , StartLBA 0x800, BlocksNum 0x1F4000
16:20:48.0559 0x2e14 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {582835E8-30F8-4AFA-A112-75E7FB7364CA}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
16:20:48.0559 0x2e14 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {327A7345-DFA1-4FF9-82A2-2CF2A129D14D}, Name: , StartLBA 0x276800, BlocksNum 0xFA000
16:20:48.0559 0x2e14 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {69D6BC03-7DA7-4CCC-9EB5-7F3809DDA261}, Name: Microsoft reserved partition, StartLBA 0x370800, BlocksNum 0x40000
16:20:48.0559 0x2e14 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {A59EF05F-F387-4ECC-8188-00C19DECA540}, Name: Basic data partition, StartLBA 0x3B0800, BlocksNum 0x71282000
16:20:48.0559 0x2e14 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {FD94CD24-CA85-424B-8BE2-7EB9748946C0}, Name: , StartLBA 0x71632800, BlocksNum 0x30D4000
16:20:48.0559 0x2e14 MBR partitions:
16:20:48.0559 0x2e14 ============================================================
16:20:48.0574 0x2e14 C: <-> \Device\Harddisk0\DR0\Partition5
16:20:48.0574 0x2e14 ============================================================
16:20:48.0574 0x2e14 Initialize success
16:20:48.0574 0x2e14 ============================================================
16:20:54.0220 0x288c ============================================================
16:20:54.0220 0x288c Scan started
16:20:54.0220 0x288c Mode: Manual; SigCheck; TDLFS;
16:20:54.0220 0x288c ============================================================
16:20:54.0220 0x288c KSN ping started
16:20:54.0236 0x288c KSN ping finished: true
16:20:55.0424 0x288c ================ Scan system memory ========================
16:20:55.0424 0x288c System memory - ok
16:20:55.0424 0x288c ================ Scan services =============================
16:20:55.0628 0x288c 1394ohci - ok
16:20:55.0643 0x288c 3ware - ok
16:20:55.0643 0x288c ACPI - ok
16:20:55.0659 0x288c AcpiDev - ok
16:20:55.0674 0x288c acpiex - ok
16:20:55.0674 0x288c acpipagr - ok
16:20:55.0721 0x288c [ 6AFFD57803BBB6FBCB483F983900A5C4, A3A87984E70C8B47F919D2633E6378F3AACCBF3E74DB3B35BB2E15D036DB36E2 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
16:20:55.0753 0x288c AcpiPmi - ok
16:20:55.0768 0x288c acpitime - ok
16:20:55.0784 0x288c ADP80XX - ok
16:20:55.0784 0x288c AFD - ok
16:20:55.0831 0x288c [ F267095A11A461BEF39FB180750BE801, CF90798C46892FF5225155D2C7BCC469A4A631E22919CBEDA2F4FEEF4F05E301 ] afunix C:\WINDOWS\system32\drivers\afunix.sys
16:20:55.0846 0x288c afunix - ok
16:20:55.0893 0x288c [ 0CD0F0C62414217DE9EA7EC8D425277E, FD211157B85B841D0C94B36776572FADC7425F1B0B49EACC910D3E175208A7EC ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
16:20:55.0925 0x288c ahcache - ok
16:20:55.0971 0x288c [ 2BF4DA8EC5F1A0D88D2DDE1E6821076B, B9F4D499DB4CB91576ACE4847B96F2FC770B9BCC223B5E2261B2DEC22D7651E7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll
16:20:55.0987 0x288c AJRouter - ok
16:20:56.0034 0x288c [ 9E9D78D1C179EB2E3E2282A1DC409D93, EA7486B4425A87FDDD60542AAF0812A8DB868F569886B894883702B362A05D2C ] ALG C:\WINDOWS\System32\alg.exe
16:20:56.0049 0x288c ALG - ok
16:20:56.0112 0x288c [ 4F71E68642D55BF30EB8B1382BEC5F02, 6B925F1047E3AA68FA87F5551C35B860360D5636F77AE8B06155450EB113E063 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
16:20:56.0143 0x288c AMD External Events Utility - ok
16:20:56.0143 0x288c AmdK8 - ok
16:20:56.0245 0x288c amdkmdag - ok
16:20:56.0292 0x288c [ D888CD6CF06C0E577371ED737D67E6AE, 1161D4D493861F0CEE8EAAB2A4DB8B3E134C3479022AFCC8C2802CF0F3EE08D3 ] amdkmdap C:\WINDOWS\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmpag.sys
16:20:56.0323 0x288c amdkmdap - ok
16:20:56.0370 0x288c [ C447E302174CD65D2CEFAB221BEA0E8D, 2DA7DAC35FD02D5F13B75E8D9BE994FBC17C26B8EA68E7880B4D553A148130BF ] amdkmpfd C:\WINDOWS\system32\drivers\amdkmpfd.sys
16:20:56.0386 0x288c amdkmpfd - ok
16:20:56.0386 0x288c AmdPPM - ok
16:20:56.0386 0x288c amdsata - ok
16:20:56.0401 0x288c amdsbs - ok
16:20:56.0401 0x288c amdxata - ok
16:20:56.0449 0x288c [ 9F10670B87E493CB7E91FC28A3CBFB39, 80AB4212AA655240E9B699467BB1A40C57E4016E3B898128B773782824E0A26E ] amd_sata C:\WINDOWS\system32\drivers\amd_sata.sys
16:20:56.0465 0x288c amd_sata - ok
16:20:56.0480 0x288c [ CB456201A3893830162F9894A5868952, 569510E46B188B24C16D7132B0ECCAA4CE60A5DAE733ECBB3D8A1595A5962AA3 ] amd_xata C:\WINDOWS\system32\drivers\amd_xata.sys
16:20:56.0496 0x288c amd_xata - ok
16:20:56.0605 0x288c [ C3D487827E48CC5EC17994FEC5BDFF87, 5FCEA3EEA583755D0C9F6005ED3032E9DFECB57F504DC67701AE7D2D2631C30E ] AODDriver4.2 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
16:20:56.0621 0x288c AODDriver4.2 - ok
16:20:56.0683 0x288c [ E4A18157BF5D8D714C05169A8A8D604C, 45D8CB25A9967D634F8331070BDFB3DF4ACB6295CF1520F9AAE8753D3BF4018A ] AppID C:\WINDOWS\system32\drivers\appid.sys
16:20:56.0715 0x288c AppID - ok
16:20:56.0762 0x288c [ F1A04835C7FA75C8215961C1095D5EBF, 45D153404E601C0CE247058B78F328DD9F7F4F6A9480132F7CE6D9A7092F63CF ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
16:20:56.0777 0x288c AppIDSvc - ok
16:20:56.0824 0x288c [ 48EA4B4CCC920D130529A1EF85388B6A, 31F69543682E70DF0A6B2A70FC7553ECEE643C554E7F8FF18A2DD09359360F8E ] Appinfo C:\WINDOWS\System32\appinfo.dll
16:20:56.0840 0x288c Appinfo - ok
16:20:56.0887 0x288c [ 769316CA5884FBBD02D45C28FE105922, 117168BFB2D8DBF1258EBA53DCE09E74000B35B7B7460251B4C46BDB9CEA709A ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys
16:20:56.0902 0x288c applockerfltr - ok
16:20:56.0933 0x288c AppReadiness - ok
16:20:56.0933 0x288c AppXSvc - ok
16:20:56.0933 0x288c arcsas - ok
16:20:56.0949 0x288c AsyncMac - ok
16:20:56.0949 0x288c atapi - ok
16:20:56.0965 0x288c [ 0966FD5BAB1F9BE200875E9EED0A0A13, F4BE70C0581B51ED6DAE6412A5FF74AE310BF88DE89C5A5E5880BEED543B01D7 ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
16:20:56.0980 0x288c AtiHDAudioService - ok
16:20:56.0996 0x288c AudioEndpointBuilder - ok
16:20:56.0996 0x288c Audiosrv - ok
16:20:57.0059 0x288c avast - ok
16:20:57.0059 0x288c avastm - ok
16:20:57.0112 0x288c [ D7BFD86F7A9ABE39351199869D093110, 90BB2C0A8185D3982FEFAC7C1E18783AF949EBECA3B9E44DCF89E2FD5FD6AA0C ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
16:20:57.0127 0x288c AxInstSV - ok
16:20:57.0143 0x288c b06bdrv - ok
16:20:57.0190 0x288c [ 982FAA5686F67BFEF3E6094705C2621F, 02456312B0FD0ABE7B7EEC0FB385268AF34DDB5F13AF934F96FCA7C32EA51447 ] bam C:\WINDOWS\system32\drivers\bam.sys
16:20:57.0206 0x288c bam - ok
16:20:57.0221 0x288c BasicDisplay - ok
16:20:57.0221 0x288c BasicRender - ok
16:20:57.0237 0x288c BcastDVRUserService - ok
16:20:57.0252 0x288c bcmfn2 - ok
16:20:57.0315 0x288c [ 255D1EA1F4EDA1B7B28A88581F12A1CE, 5B2D7F2EFA7BB539719890CF2E45568C544DD0EECEC44BBA56CCECB792E8BC44 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
16:20:57.0362 0x288c BDESVC - ok
16:20:57.0393 0x288c [ 9B068DF7B7B3DDF768D06DFD69B49FD0, DC2CD3A70506AEB1BCEB207A9B06657806E72C5432FA605FF9C6F11516F38132 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
16:20:57.0424 0x288c Beep - ok
16:20:57.0440 0x288c BFE - ok
16:20:57.0502 0x288c [ BC1E5F20251E0AFDB955E7D91093B619, 5642E6B6CA6DBC8585834790A70CFF54252A631A9EA06D28F28EF7430FA42BE5 ] bindflt C:\WINDOWS\system32\drivers\bindflt.sys
16:20:57.0518 0x288c bindflt - ok
16:20:57.0612 0x288c [ 97F4C0B9741E06BAC6AD2D93ABCEAED8, 25FD58F4BA2F8EC99241A580352D1EC49924829C61D89353B30CCEEE2CEBADE7 ] BITS C:\WINDOWS\System32\qmgr.dll
16:20:57.0674 0x288c BITS - ok
16:20:57.0752 0x288c [ 30D75769E23CCFBE13DB41FC54243BB1, 4ED018F1DB103D3F354D8EF7DFE797028DBDF22294D355F6D38DF9C6AF61B69E ] BluetoothUserService C:\WINDOWS\System32\Microsoft.Bluetooth.UserService.dll
16:20:57.0784 0x288c BluetoothUserService - ok
16:20:57.0815 0x288c bowser - ok
16:20:57.0831 0x288c BrokerInfrastructure - ok
16:20:57.0893 0x288c [ 3E4BF0145201239E0BBD0A937431C14C, 1DDC27C89B16ADD9346EB30AA9E17330FE0181BE96DC6F06C455493FBDCB1113 ] Browser C:\WINDOWS\System32\browser.dll
16:20:57.0909 0x288c Browser - ok
16:20:57.0987 0x288c [ 85F5808D19879E1803E46405090F29C8, E22E73BCE3B76BFBAC712DF1E5D7D38E189B80D1CE6E9A9AB3C94733CF18F04B ] BTAGService C:\WINDOWS\System32\BTAGService.dll
16:20:58.0034 0x288c BTAGService - ok
16:20:58.0096 0x288c [ 063E91CD2CB1C372459FD6FBC02509E7, 29319290F73D8D87323584D938FBC86400AB37455E7E058A543A77F9BBF4579D ] BthAvctpSvc C:\WINDOWS\System32\BthAvctpSvc.dll
16:20:58.0112 0x288c BthAvctpSvc - ok
16:20:58.0174 0x288c [ 02FEC31842DD153D966AC227B6DDF8BB, 90EEEA049212E5FE8EFA2ACED45DFB6ABAFEA6D40FB4E1E2681F65A417237163 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
16:20:58.0190 0x288c BthHFEnum - ok
16:20:58.0252 0x288c [ A0EC1D5C937995A2C5F1179538A8A6B4, CBFBDF2D8305BD72FFF64AAAB31EB5D5B8ADE537C35AC63DC3F6ADCBF96B3659 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
16:20:58.0268 0x288c BTHMODEM - ok
16:20:58.0284 0x288c [ 1EB49C9E2716D4924460B2FAA295E313, B96D39479BFD2ABCD3A3BB8897EAD7C5A03DFFD7266E82A1FBA0E7FEAF73E4B8 ] bthserv C:\WINDOWS\system32\bthserv.dll
16:20:58.0299 0x288c bthserv - ok
16:20:58.0331 0x288c bttflt - ok
16:20:58.0331 0x288c buttonconverter - ok
16:20:58.0377 0x288c [ 9983FF8D9834F2E67787F4BDC42A8E36, 85260F4A657D657ACD394339DFDDE814AD6BCA65712EAD943833BE7AB0937C8D ] CAD C:\WINDOWS\System32\drivers\CAD.sys
16:20:58.0393 0x288c CAD - ok
16:20:58.0409 0x288c camsvc - ok
16:20:58.0424 0x288c CapImg - ok
16:20:58.0424 0x288c cdfs - ok
16:20:58.0493 0x288c [ 0942C87ED45B1E227032AD154105F79B, A0A40589B9C399061C1C46247609CA514DCD21DDF1E7FCEE19F0CE75D0FC7996 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll
16:20:58.0540 0x288c CDPSvc - ok
16:20:58.0603 0x288c [ 9FBF5849A6F51E3B3F8AF2A4171648DA, 7422BC5C87075F5008E6364C8AFAA794AB17CA2DC238DC00F377B942B6FCDC11 ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll
16:20:58.0649 0x288c CDPUserSvc - ok
16:20:58.0665 0x288c cdrom - ok
16:20:58.0681 0x288c [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
16:20:58.0696 0x288c CertPropSvc - ok
16:20:58.0712 0x288c cht4iscsi - ok
16:20:58.0712 0x288c cht4vbd - ok
16:20:58.0759 0x288c [ 3AA86DA04A561E8162C2DBBF92D12074, 9CB67299BEC25F2B357DDAA5A36B3464193B8BDAB4DCFAE0CD4315911027E409 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
16:20:58.0790 0x288c circlass - ok
16:20:58.0853 0x288c [ 5619FC2A3AE4F43D4B20D95472ED948E, A5D530FB6AC493FC01489A1D32C311F7D28F0D7B49C950E71F4ADF4FBA302689 ] CldFlt C:\WINDOWS\system32\drivers\cldflt.sys
16:20:58.0884 0x288c CldFlt - ok
16:20:58.0915 0x288c CLFS - ok
16:20:59.0087 0x288c [ DC8A9E151BDDFF220B420F757D20DC28, E92AE93DFF3BEEE849218504514DF1AEDF7DAB32980546ABE5EAFFE25750AF6C ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
16:20:59.0181 0x288c ClickToRunSvc - ok
16:20:59.0259 0x288c [ 5BD85187D6A6A37D2A4563F33D7A76E4, 6FF434BE93259229E0EA64EC1B6E09B1B814C2A467FC2859B94C79549E2F114C ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll
16:20:59.0306 0x288c ClipSVC - ok
16:20:59.0321 0x288c CmBatt - ok
16:20:59.0321 0x288c CNG - ok
16:20:59.0341 0x288c [ 037DCC7A71938729CB12E8174E03031C, 1BA2F74F639BF8D5BB38AA658A6D847BAE8D85CF72C4AD5F13BBA1D53145789F ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
16:20:59.0341 0x288c cnghwassist - ok
16:20:59.0402 0x288c [ E40C99A3E0FFF49687F2187BF3E3050D, 30723EC5767C3F6FAA3CF299440B71B5973F890FB54B9737B96FA0359E7D90FA ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys
16:20:59.0402 0x288c CompositeBus - ok
16:20:59.0417 0x288c COMSysApp - ok
16:20:59.0417 0x288c condrv - ok
16:20:59.0417 0x288c CoreMessagingRegistrar - ok
16:20:59.0464 0x288c CryptSvc - ok
16:20:59.0486 0x288c [ 8711386E9B04357F8F58166760759F3A, 8912CFD220645002C9D3F9E49717D8B0B98704380B45F53D45D5674537B496FF ] dam C:\WINDOWS\system32\drivers\dam.sys
16:20:59.0517 0x288c dam - ok
16:20:59.0533 0x288c DcomLaunch - ok
16:20:59.0571 0x288c defragsvc - ok
16:20:59.0617 0x288c [ 8DF502E8116C625387DD789936D7A0C2, D42661E068F401199FAEA012C200EEF02C1409A09DACD30E6B08E3FBE4149BFA ] DeviceAssociationService C:\WINDOWS\system32\das.dll
16:20:59.0649 0x288c DeviceAssociationService - ok
16:20:59.0680 0x288c DeviceInstall - ok
16:20:59.0711 0x288c [ 38D6ED38A46F815C24C5656E8A5AB083, 730DD6D85771A60E5C089BF5D810E3AEA335BF7DD14FD72924A1A4FCF021A59D ] DevicePickerUserSvc C:\WINDOWS\System32\Windows.Devices.Picker.dll
16:20:59.0758 0x288c DevicePickerUserSvc - ok
16:20:59.0836 0x288c [ 372BD821867225F32DE87A6B3FEC8A2E, 20389A1861B5A451EE3383F68FC59B3C9A75D3123B2DF1669CBB5CC37A0128B0 ] DevicesFlowUserSvc C:\WINDOWS\System32\DevicesFlowBroker.dll
16:20:59.0868 0x288c DevicesFlowUserSvc - ok
16:20:59.0930 0x288c [ C48C4D6B8D9C53F0399DEDA402A6FAE5, 25FBE2A51DCF7DB95AD2707502F8A9661B94FC61DFC405DA5BF23BED1BA123D2 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll
16:20:59.0946 0x288c DevQueryBroker - ok
16:20:59.0961 0x288c Dfsc - ok
16:20:59.0977 0x288c [ 5F78930AAB3900102EA8ACDD38F97324, 49CAE29CC7B1B846BDE603B1A411833162ACC1A9D1608BFDF67C2EA3A0EE0F85 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
16:20:59.0992 0x288c dg_ssudbus - ok
16:21:00.0008 0x288c Dhcp - ok
16:21:00.0102 0x288c diagnosticshub.standardcollector.service - ok
16:21:00.0149 0x288c [ 6EC6BB6EF31C85FD72D14BE4A1BD1B03, E027124AD492ED22F0D604030CB0E2C3778331879FC73A614644FA8C8606ADD3 ] diagsvc C:\WINDOWS\system32\DiagSvc.dll
16:21:00.0180 0x288c diagsvc - ok
16:21:00.0196 0x288c DiagTrack - ok
16:21:00.0211 0x288c Disk - ok
16:21:00.0258 0x288c [ 89FC056F9CEFB85FC7159AA063904AFF, 6B6F86F87C48EE92F616D4EEE624C9711D0606FD651F3B1D4DD5EF3767B76750 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
16:21:00.0321 0x288c DmEnrollmentSvc - ok
16:21:00.0321 0x288c dmvsc - ok
16:21:00.0383 0x288c [ 8B3601E34BD1D693598F968D70361C37, 897C5AEB5ED6AC9DAB2E8E638A42FF588AF3A94EE4C731E97DFAB89BD3B658BC ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
16:21:00.0414 0x288c dmwappushservice - ok
16:21:00.0414 0x288c Dnscache - ok
16:21:00.0477 0x288c [ C79E79CD4DE45EC0EC0ECB5C76D6CB11, C1AFCA79A104EDF5C59C3E6A113467C7F73E84AACEDE97A22BCBA5B25563E163 ] dot3svc C:\WINDOWS\System32\dot3svc.dll
16:21:00.0493 0x288c dot3svc - ok
16:21:00.0555 0x288c [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
16:21:00.0571 0x288c dot4 - ok
16:21:00.0586 0x288c [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
16:21:00.0602 0x288c Dot4Print - ok
16:21:00.0602 0x288c [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
16:21:00.0602 0x288c dot4usb - ok
16:21:00.0664 0x288c [ 5B1EF28DE7302A6BD5DF8459E2C598EF, F2292B8ED8FBFFA681942D5566BF1932D1E9B4F44C2D13329B60E5A8B9386CC9 ] DPS C:\WINDOWS\system32\dps.dll
16:21:00.0711 0x288c DPS - ok
16:21:00.0711 0x288c drmkaud - ok
16:21:00.0774 0x288c [ 5242DC5849014BCFBB3147B76A899783, 759542B42D9DCC224D9CBD19A0C6B8939417F2F08B547BE07FFA3356918C1ED7 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
16:21:00.0805 0x288c DsmSvc - ok
16:21:00.0821 0x288c DsSvc - ok
16:21:00.0868 0x288c [ 974BC06C0EC847EA4DC8D9002D394FEB, 4952FEADD7A3EF541FD537EBBCD56ED573D712755798C42428E78267E50BAB34 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll
16:21:00.0899 0x288c DusmSvc - ok
16:21:00.0899 0x288c DXGKrnl - ok
16:21:00.0899 0x288c Eaphost - ok
16:21:00.0914 0x288c ebdrv - ok
16:21:00.0914 0x288c EFS - ok
16:21:00.0914 0x288c EhStorClass - ok
16:21:00.0930 0x288c EhStorTcgDrv - ok
16:21:00.0946 0x288c [ 80D5BD4804C587B21A121566549A63FB, 9BDC1DEB8805E06851F2E2A8B8762265FDC6B12B873D391BFCB8300BDF425B36 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll
16:21:00.0961 0x288c embeddedmode - ok
16:21:01.0024 0x288c [ 8BDB4EB138A93B9C4242D5ADC068899A, 528C0D16CE5D9A69EA75C43DC53D14F7BD2D8BB0B0B0F32BB1F36AC6659C6A27 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
16:21:01.0055 0x288c EntAppSvc - ok
16:21:01.0055 0x288c ErrDev - ok
16:21:01.0086 0x288c [ 9B538A1E44E1D61FA80E80EA75A085FA, 6431BBC533895BD466879C407B9BE7EB50345D666FEE69CAB0813283F07DBE82 ] EventSystem C:\WINDOWS\system32\es.dll
16:21:01.0117 0x288c EventSystem - ok
16:21:01.0133 0x288c exfat - ok
16:21:01.0133 0x288c fastfat - ok
16:21:01.0211 0x288c [ BBD6407DA3DA4FC718710587E253C7BF, 8C9995A86EF9FC1FB47ADA1367A67A9829E0E3CE191D11E0AFB0F85E325D48DC ] Fax C:\WINDOWS\system32\fxssvc.exe
16:21:01.0243 0x288c Fax - ok
16:21:01.0243 0x288c fdc - ok
16:21:01.0298 0x288c [ A2037943CCC079307A383C5543607CEF, 2FAC5F76526A8E4D7D7FAE80F9A0AF31D37DD12FF597769C87912B973C339BF4 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
16:21:01.0313 0x288c fdPHost - ok
16:21:01.0360 0x288c [ C11A1A9CF331B7AA2F04974EE262EC07, AA1C79FCCDEC3C7236B7BE73E6888D7DD5642EB16E13B4633C98EE34CB72A644 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
16:21:01.0376 0x288c FDResPub - ok
16:21:01.0391 0x288c [ 71CECDA2DCF81E0AD8C30440C77966E2, E26313CD895579A9F3380A648E6FC271EFED0E82C0FCFB287049C5C2D0CC35A9 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
16:21:01.0407 0x288c fhsvc - ok
16:21:01.0454 0x288c [ 9BC7FE262AF52B341048234809AA7D91, DF95BBEB59821357C69797AC659380C9F27C11B8A60A599C9A2C5623B7CBB6DB ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys
16:21:01.0485 0x288c FileCrypt - ok
16:21:01.0501 0x288c FileInfo - ok
16:21:01.0501 0x288c Filetrace - ok
16:21:01.0516 0x288c flpydisk - ok
16:21:01.0516 0x288c FltMgr - ok
16:21:01.0532 0x288c FontCache - ok
16:21:01.0673 0x288c FontCache3.0.0.0 - ok
16:21:01.0704 0x288c FrameServer - ok
16:21:01.0719 0x288c FsDepends - ok
16:21:01.0719 0x288c Fs_Rec - ok
16:21:01.0735 0x288c fvevol - ok
16:21:01.0782 0x288c [ 71DBED7FB264DB60341BC796EC2E8135, DBD29794A45AEFB16A5765D03962B311CB061D1EB8A281C5F34DABF39C66A3B2 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
16:21:01.0813 0x288c gencounter - ok
16:21:01.0813 0x288c genericusbfn - ok
16:21:01.0829 0x288c [ 5F74024531FC45F6A4E799D9C41220DE, CE9666140CAA329EEDD2750089089C71605B66250C694D910BBA83CF72B9E840 ] GeneStor C:\WINDOWS\System32\drivers\GeneStor.sys
16:21:01.0844 0x288c GeneStor - ok
16:21:01.0844 0x288c GPIOClx0101 - ok
16:21:01.0860 0x288c gpsvc - ok
16:21:01.0860 0x288c [ 508614CAC7BF8AEE4FB9002A413919B1, F60DE0236B0453FC99473A09A7FAC1140831E581C08F3F5C440F5EFCD30943AB ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys
16:21:01.0876 0x288c GpuEnergyDrv - ok
16:21:01.0923 0x288c [ 248739BB0F3A1156A2C0AF51F39A9EA2, A94C43658BCCC88C2D229F40F5C03CA5839A2EAFD57CA088E3E85EB9264CCA3E ] GraphicsPerfSvc C:\WINDOWS\System32\GraphicsPerfSvc.dll
16:21:01.0938 0x288c GraphicsPerfSvc - ok
16:21:02.0032 0x288c [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
16:21:02.0048 0x288c gusvc - ok
16:21:02.0063 0x288c HDAudBus - ok
16:21:02.0063 0x288c HidBatt - ok
16:21:02.0126 0x288c [ 33346BD26BB0AE4361DF1ED00D2876CF, 1777169606573646F7E7D54E01E421F62479DF57FAE86005B1EEFDC06F4898B7 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
16:21:02.0141 0x288c HidBth - ok
16:21:02.0157 0x288c hidi2c - ok
16:21:02.0157 0x288c hidinterrupt - ok
16:21:02.0204 0x288c [ 1553DF41F4EE4F60B4BEEEC62264BE71, 46AE8357E8038D35ADB82A51ED421293D7AB18C926C713F19149B97400D4C65E ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
16:21:02.0235 0x288c HidIr - ok
16:21:02.0235 0x288c hidserv - ok
16:21:02.0251 0x288c HidUsb - ok
16:21:02.0370 0x288c [ 0D0213498683414DDE29B1686A4C08D5, E9B64406C04B6E55CBD17E7C47B023CEA11FEE07B791154129D6F4F29D15AB7F ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
16:21:02.0402 0x288c hpqcxs08 - ok
16:21:02.0449 0x288c [ EE281DD6843F3F697C1AD7933EEB1E9B, 1ECE31C2150B92DDC1DCBBCECFE3E979F2C60B3F106280E3167BEC0269BF7A41 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
16:21:02.0464 0x288c hpqddsvc - ok
16:21:02.0480 0x288c HpSAMD - ok
16:21:02.0495 0x288c HTTP - ok
16:21:02.0527 0x288c [ 9E1F3BA540DB9F4942A3F50A92E5754F, 3FF53B60DC52886D6F2EC7F9D8C12009A4BECE5A046D827BC8C941E7401ED000 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys
16:21:02.0542 0x288c hvcrash - ok
16:21:02.0589 0x288c [ 64A94654E5703D2E8830AA2500D8F0A4, A1E3C910DFF1485E412F01076A11B9441161224C0F08A9067082A9FD8A5D8E5B ] HvHost C:\WINDOWS\System32\hvhostsvc.dll
16:21:02.0605 0x288c HvHost - ok
16:21:02.0667 0x288c [ 621042C19113527CF8FA89F3454576BF, AB072C44B9BA8CD3AFE0DA33E42A69210AE87F4314FA3A0DF984DDF12516F063 ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys
16:21:02.0683 0x288c hvservice - ok
16:21:02.0698 0x288c [ B149905CD7451160B6BFA2191A3F6182, A706E4F12963A20F9767D8730973282B5830D97A087ADA8CA9B7D219513C127F ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys
16:21:02.0714 0x288c HwNClx0101 - ok
16:21:02.0730 0x288c hwpolicy - ok
16:21:02.0730 0x288c hyperkbd - ok
16:21:02.0730 0x288c HyperVideo - ok
16:21:02.0745 0x288c i8042prt - ok
16:21:02.0745 0x288c iagpio - ok
16:21:02.0745 0x288c iai2c - ok
16:21:02.0761 0x288c iaLPSS2i_GPIO2 - ok
16:21:02.0761 0x288c iaLPSS2i_GPIO2_BXT_P - ok
16:21:02.0777 0x288c iaLPSS2i_I2C - ok
16:21:02.0777 0x288c iaLPSS2i_I2C_BXT_P - ok
16:21:02.0777 0x288c iaLPSSi_GPIO - ok
16:21:02.0792 0x288c iaLPSSi_I2C - ok
16:21:02.0792 0x288c iaStorAVC - ok
16:21:02.0792 0x288c iaStorV - ok
16:21:02.0808 0x288c ibbus - ok
16:21:02.0870 0x288c [ F8CFDD8FED56E1261367A81A731BC1C0, 408187B2E7B403B47AF0D4BF089439D9BA3B3090A430983F77A55DEF2AB381DB ] icssvc C:\WINDOWS\System32\tetheringservice.dll
16:21:02.0902 0x288c icssvc - ok
16:21:02.0917 0x288c IKEEXT - ok
16:21:02.0980 0x288c [ AA38C19A3D65E8228D822EB18037E19D, 54943929E398C67A5A9C72EA65F0FD7A06BB43F03A2291CAEA29443CD10C5169 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys
16:21:03.0011 0x288c IndirectKmd - ok
16:21:03.0027 0x288c InstallService - ok
16:21:03.0167 0x288c [ 7696A7DD814ECEDE5DF5A2243C6B2457, DB9173F3A8FF627D81FE923A3F6DD0FC7F944552C2DFC0D51B8FF8EDAC47076A ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
16:21:03.0261 0x288c IntcAzAudAddService - ok
16:21:03.0277 0x288c intelide - ok
16:21:03.0324 0x288c [ E6CC7C1E7CEDC81D6B15BF2CF4C99109, 1B181F55CD2E500468FE07C9BA6F20B207FA4B601C4971D1551B80A480D42EBD ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
16:21:03.0339 0x288c intelpep - ok
16:21:03.0355 0x288c intelppm - ok
16:21:03.0402 0x288c [ 917931A6116F03DB3CA56CFCE8634667, 27B661B6143F4AE94BF28DE1133001F95A451C18804F6DFED1D7D1F36B5E5350 ] iorate C:\WINDOWS\system32\drivers\iorate.sys
16:21:03.0417 0x288c iorate - ok
16:21:03.0464 0x288c [ FB72A49FAD5C343C8C38948F92D87BBF, 3947D9393D6F4F104D2D07D5FBA61041A8D6006BE2497F2A6337462F8B04A124 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:21:03.0480 0x288c IpFilterDriver - ok
16:21:03.0511 0x288c [ 9064A49C03F1CED42EAC2B4636C87192, CF388E05EA782BC0645FD0B42A41C9334C074BE6D7C193FA4F9819905CBCEA9C ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
16:21:03.0558 0x288c iphlpsvc - ok
16:21:03.0558 0x288c IPMIDRV - ok
16:21:03.0605 0x288c [ 7408B83959A4B8271EF67FD06A6B366B, C22DDB76AC3351A50B889AD7D2756EF8612450AC8EE72C88A1044691A0071BE5 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
16:21:03.0636 0x288c IPNAT - ok
16:21:03.0683 0x288c [ 7BEA2228C81FB6E1EADDD54D615B4C7E, 8640865C98F951B1B8D99E841D9A3FDC6E0251AFAC6B02F815DC409627A50112 ] IPT C:\WINDOWS\System32\drivers\ipt.sys
16:21:03.0699 0x288c IPT - ok
16:21:03.0761 0x288c [ AD0574F12AA812340BD39071FD30AD1E, 765F1EDFEDEA1F2728108D7A1187A468F529A883886006F74DB9EAD0BFE7B1B6 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll
16:21:03.0792 0x288c IpxlatCfgSvc - ok
16:21:03.0839 0x288c [ 030AE3773151CFA728C67E38416FAD8D, 167E698035F2F07E822B430B31F02FABF3997BAC93039786747053344CE6E6D3 ] irda C:\WINDOWS\system32\drivers\irda.sys
16:21:03.0855 0x288c irda - ok
16:21:03.0870 0x288c [ 79D02DC54AB4F85D2C13A728A0E36193, 3B6BA678ED269195D506D29EBD9E070603F02AC0FAA92364E7C553B8856C3EDB ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
16:21:03.0870 0x288c IRENUM - ok
16:21:03.0933 0x288c [ 6ADE9DCAF71DCD888320CA47DB8B05EF, 6FA1EBB3D025546AAD14D968DF7CABD3002598F2F561CCC1D4F07A9B0322DE02 ] irmon C:\WINDOWS\System32\irmon.dll
16:21:03.0964 0x288c irmon - ok
16:21:03.0964 0x288c isapnp - ok
16:21:03.0995 0x288c iScsiPrt - ok
16:21:03.0995 0x288c ItSas35i - ok
16:21:04.0042 0x288c [ E2CFDA7E9606FD5ECAB93E4817414661, F60A1EFFD7EB9D69620E971AB30D3FF4138D233A6EDE51CFD1BE8CCB5776E321 ] JME Keyboard C:\Windows\jmesoft\Service.exe
16:21:04.0058 0x288c JME Keyboard - detected UnsignedFile.Multi.Generic ( 1 )
16:21:04.0105 0x288c Detect skipped due to KSN trusted
16:21:04.0105 0x288c JME Keyboard - ok
16:21:04.0136 0x288c kbdclass - ok
16:21:04.0183 0x288c kbdhid - ok
16:21:04.0183 0x288c kdnic - ok
16:21:04.0198 0x288c KeyIso - ok
16:21:04.0198 0x288c KSecDD - ok
16:21:04.0214 0x288c KSecPkg - ok
16:21:04.0230 0x288c ksthunk - ok
16:21:04.0292 0x288c [ C4151271434A490707B4FD4E6AAE9EED, DDB809D002039645CDED08322B9CDCA04C483A119380098FF9EBA998A1A3811D ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
16:21:04.0339 0x288c KtmRm - ok
16:21:04.0370 0x288c LanmanServer - ok
16:21:04.0370 0x288c LanmanWorkstation - ok
16:21:04.0480 0x288c [ 4DC782F7AE5774BA202DB1193D44D09F, 117F4155323F4B6562A4B662BF119D4E216FF12874C4B55EDE2A49CD125B9B58 ] Lenovo System Agent Service C:\Program Files\Lenovo\iMController\SystemAgentService.exe
16:21:04.0511 0x288c Lenovo System Agent Service - ok
16:21:04.0574 0x288c [ C2A49E8EEE7C3D06ECA80847A42F65D5, E1559EF96E6F2146E4AC0BE46CBFF5FA29829812A64A6F09803C00E3E0AAB1F0 ] lfsvc C:\WINDOWS\System32\lfsvc.dll
16:21:04.0605 0x288c lfsvc - ok
16:21:04.0652 0x288c [ DB8F10ED986BFE0A5B663A1D067F2CCC, 88EE540F545C8838E9F855094A2A4AAC096BD24F77103E06464CCD77C3FCFFFD ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll
16:21:04.0667 0x288c LicenseManager - ok
16:21:04.0714 0x288c [ 3CF979AFF0196DF3DF5E54DFC049EB1F, FEA82EF2AA4222171E80548EB00A4F0FBD27363B84AA9E6B8F82147C568BADEE ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys
16:21:04.0745 0x288c lltdio - ok
16:21:04.0777 0x288c [ D6DD748EAC3BC540CFE65C73FE20C099, 8A79E1F1834D949D027B4D3471297ADFB539B9282DE5DF5FDBE60AE171F3CFFC ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
16:21:04.0808 0x288c lltdsvc - ok
16:21:04.0855 0x288c lmhosts - ok
16:21:04.0855 0x288c LSI_SAS - ok
16:21:04.0870 0x288c LSI_SAS2i - ok
16:21:04.0870 0x288c LSI_SAS3i - ok
16:21:04.0886 0x288c LSI_SSS - ok
16:21:04.0886 0x288c LSM - ok
16:21:04.0949 0x288c [ E86400D7B6E095E89CF63667D94D3F50, 4E30374B82FB1D8904B9803109C4557C565023FA94C7AE61BB2ADAAACAE0E179 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
16:21:04.0980 0x288c luafv - ok
16:21:05.0011 0x288c [ A0A527569856B9814E8920F52EBB67F5, 4347277C84B47E4CC048850BDEFB258CFB3B476AA99FD503FD71FBB70FFF5ACF ] lvrs64 C:\WINDOWS\system32\DRIVERS\lvrs64.sys
16:21:05.0042 0x288c lvrs64 - ok
16:21:05.0167 0x288c [ 415E344294D1C0D04627B29146F68481, B4A1A05BDF07E8F226A98E51F62BE18BE2C046A084C495BD8A95CABC79FD0614 ] LVUVC64 C:\WINDOWS\system32\DRIVERS\lvuvc64.sys
16:21:05.0277 0x288c LVUVC64 - ok
16:21:05.0308 0x288c [ 07514F5635999D7DDB5F3A62B5C5AEB3, D3717437D14C36873E2D0C1AA65F29EB9A5DB1DE60A7EE86A093FD126B7EBC05 ] LxpSvc C:\WINDOWS\System32\LanguageOverlayServer.dll
16:21:05.0339 0x288c LxpSvc - ok
16:21:05.0402 0x288c [ F82AA3376E0B6A256D43C7E342370EDB, C348B52FD76949EBFDD408DFDD87399C0CF1883E9C8B1D92911C82953AC6E2B1 ] MagentaCLOUDMaintenanceService C:\Program Files (x86)\Telekom\MagentaCloud\Updater\MaintenanceService.exe
16:21:05.0433 0x288c MagentaCLOUDMaintenanceService - ok
16:21:05.0495 0x288c [ 1C1FF36E51F73989FB4DD2DBAFAE11EC, B5C0B169BFEF5FD769745F924B3F30C960A555F8B0C0C7315B273435D9F246D5 ] MapsBroker C:\WINDOWS\System32\moshost.dll
16:21:05.0511 0x288c MapsBroker - ok
16:21:05.0527 0x288c mausbhost - ok
16:21:05.0527 0x288c mausbip - ok
16:21:05.0527 0x288c megasas - ok
16:21:05.0542 0x288c megasas2i - ok
16:21:05.0542 0x288c megasas35i - ok
16:21:05.0542 0x288c megasr - ok
16:21:05.0589 0x288c [ 69259AFDF347B5F4AF06E900C4A1F62E, 167FF155F3E1B362A5D5FDB010A5F539F5E13CAD7E64E6F105CC770DA3639EEB ] MessagingService C:\WINDOWS\System32\MessagingService.dll
16:21:05.0620 0x288c MessagingService - ok
16:21:05.0620 0x288c mlx4_bus - ok
16:21:05.0636 0x288c MMCSS - ok
16:21:05.0683 0x288c [ CA25F2D78FDD0D36E3F3071B4B317BD4, 21B5902EF802FAFA7DC6FD737CE9888C74526983FDCE31CDFAB11630E1476FD1 ] Modem C:\WINDOWS\system32\drivers\modem.sys
16:21:05.0714 0x288c Modem - ok
16:21:05.0761 0x288c [ 13142B3B30F633F407D5256B2FFCCEF0, 0A8DD229FD752E8B7E1D11E1A066BCF8B3E2023068AD731FF23ACBF4D182D23D ] monitor C:\WINDOWS\System32\drivers\monitor.sys
16:21:05.0777 0x288c monitor - ok
16:21:05.0777 0x288c mouclass - ok
16:21:05.0777 0x288c mouhid - ok
16:21:05.0792 0x288c mountmgr - ok
16:21:05.0824 0x288c [ 84F6B333A2AD8B81955F4F846BA89A39, 0457F2110D584BBEE926189126F7BDC54BD2663A7B0BA2EC89DEEC0CCDA9F2DC ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:21:05.0839 0x288c MozillaMaintenance - ok
16:21:05.0855 0x288c mpsdrv - ok
16:21:05.0855 0x288c mpssvc - ok
16:21:05.0870 0x288c MRxDAV - ok
16:21:05.0870 0x288c mrxsmb - ok
16:21:05.0870 0x288c mrxsmb10 - ok
16:21:05.0886 0x288c mrxsmb20 - ok
16:21:05.0933 0x288c [ F14DE177087F9E990EDE95ACE1F94662, E0B8C7DAF8C13CAD08B974D681981038E33ED8871717C550477EDCFD05A3B96D ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys
16:21:05.0964 0x288c MsBridge - ok
16:21:06.0027 0x288c [ 9A94F32C1DC90A7E5A35D0F820A8FB1D, 4CAFCE804D9135BE9CBF80307D570F24E4A102890DAB504E3DEFF3B335C9B80E ] MSDTC C:\WINDOWS\System32\msdtc.exe
16:21:06.0042 0x288c MSDTC - ok
16:21:06.0058 0x288c Msfs - ok
16:21:06.0120 0x288c [ 5A5ABA987943317300A4E55A5C5EB8C4, 9AC863F537BBB2D776C3F240B510DEE94BD84A7675C695D1270770609E77F65B ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
16:21:06.0136 0x288c msgpiowin32 - ok
16:21:06.0176 0x288c mshidkmdf - ok
16:21:06.0199 0x288c [ E12A703CE10B068727499276340D5296, 67F513A83D896DBF014D7446D66F1A1F9F0D03ADB23B57FD1A3CCC880ED50299 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
16:21:06.0215 0x288c mshidumdf - ok
16:21:06.0215 0x288c msisadrv - ok
16:21:06.0246 0x288c MSiSCSI - ok
16:21:06.0246 0x288c msiserver - ok
16:21:06.0246 0x288c MSKSSRV - ok
16:21:06.0277 0x288c [ AECFFBE104D428E8A74BCABF5B3B9912, EA94A7FA1F9BE357311E411293F4D3CC8F80ED1523BFE362DA56A3C2AC65DF58 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys
16:21:06.0293 0x288c MsLldp - ok
16:21:06.0324 0x288c MSPCLOCK - ok
16:21:06.0324 0x288c MSPQM - ok
16:21:06.0324 0x288c MsRPC - ok
16:21:06.0340 0x288c mssmbios - ok
16:21:06.0371 0x288c MSTEE - ok
16:21:06.0387 0x288c MTConfig - ok
16:21:06.0387 0x288c Mup - ok
16:21:06.0387 0x288c mvumis - ok
16:21:06.0418 0x288c NativeWifiP - ok
16:21:06.0481 0x288c [ B281FAC1C60FE21ED3F635ECF673A981, 6641CCBD38AEF3FA5D9EDD24F01AAB6509AD6D3927371CD7938C04B3BBC92FD1 ] NaturalAuthentication C:\WINDOWS\System32\NaturalAuth.dll
16:21:06.0543 0x288c NaturalAuthentication - ok
16:21:06.0590 0x288c [ 6FEC83EDC4A3D1E99039CA1D96AD720D, F6DB011FBED10EAF8CCDC9EDDCB47F728B6B17A6A3CA5D6DB5DE50EEFE7DDD4D ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
16:21:06.0621 0x288c NcaSvc - ok
16:21:06.0684 0x288c [ C3D3E2DFBD52C48EA787604F49060A5C, 0F5E3C9E63F6421398154EF942182FE67CCCCE6DE25B1EE2A30A8E6E3C17145A ] NcbService C:\WINDOWS\System32\ncbservice.dll
16:21:06.0715 0x288c NcbService - ok
16:21:06.0762 0x288c [ 9AB04C4C14B32D127DB6E7D3DF79FF26, DAC84CBDF605C43657CDA1B95A86DC0D55E236A75BFDA3041472C5D6222EB025 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
16:21:06.0793 0x288c NcdAutoSetup - ok
16:21:06.0809 0x288c ndfltr - ok
16:21:06.0809 0x288c NDIS - ok
16:21:06.0856 0x288c [ AF73B18F3096B165A6F4417C5ED36B01, B0FA9E52D7208F756103E2E853F1D17F594C9FDD2E76304743C581613E612449 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys
16:21:06.0887 0x288c NdisCap - ok
16:21:06.0949 0x288c [ 1A9B1F5B8B131CE461A01C9424E149D7, 66E3F49308DF111B5D5DBF57F11A05E0B9492530587E37C6729C46AED17647D3 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys
16:21:06.0965 0x288c NdisImPlatform - ok
16:21:06.0981 0x288c NdisTapi - ok
16:21:06.0981 0x288c Ndisuio - ok
16:21:06.0996 0x288c NdisVirtualBus - ok
16:21:06.0996 0x288c NdisWan - ok
16:21:06.0996 0x288c ndiswanlegacy - ok
16:21:07.0012 0x288c ndproxy - ok
16:21:07.0027 0x288c [ 0E3B0F3645D1BAE79397C66FE8AF6402, 6568FD9646FE7C7D61D280C26097583EFA2FB9F59D43340A7283BEAD3A5CC206 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
16:21:07.0059 0x288c Ndu - ok
16:21:07.0074 0x288c [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
16:21:07.0074 0x288c Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
16:21:07.0121 0x288c Detect skipped due to KSN trusted
16:21:07.0121 0x288c Net Driver HPZ12 - ok
16:21:07.0137 0x288c NetAdapterCx - ok
16:21:07.0189 0x288c NetBIOS - ok
16:21:07.0189 0x288c NetBT - ok
16:21:07.0204 0x288c Netlogon - ok
16:21:07.0204 0x288c Netman - ok
16:21:07.0267 0x288c [ E9931F57F05696CBF53A086449D97BF6, 986C99033AA10A258F0CC42727B14C5812BC76AB535CDF54FCA1B038C4BF9546 ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
16:21:07.0298 0x288c netprofm - ok
16:21:07.0329 0x288c NetSetupSvc - ok
16:21:07.0403 0x288c [ 7EC8B56348F9298BCCA7A745C7F70E2C, F677CBD94ABE25AECF08ECFBBDA063A9C032C678327A0D105CB6B3E587C44C19 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:21:07.0434 0x288c NetTcpPortSharing - ok
16:21:07.0434 0x288c netvsc - ok
16:21:07.0496 0x288c [ 162A571ABAF9546339EE0BB482FF6AE7, E6E590B628AA65D161D7A87C9CF360D905FCC858E73EE1C4723FE217E8A91EA2 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll
16:21:07.0559 0x288c NgcCtnrSvc - ok
16:21:07.0637 0x288c [ DB3589FF79F06EC1967EBA56C7249E3C, C3F1B4687F2AAE869C8566B38DCFE507F8E7201A2241BD5342AAC22A2370D5E4 ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll
16:21:07.0684 0x288c NgcSvc - ok
16:21:07.0684 0x288c NlaSvc - ok
16:21:07.0684 0x288c Npfs - ok
16:21:07.0699 0x288c npsvctrig - ok
16:21:07.0715 0x288c nsi - ok
16:21:07.0731 0x288c nsiproxy - ok
16:21:07.0731 0x288c Ntfs - ok
16:21:07.0746 0x288c Null - ok
16:21:07.0746 0x288c nvdimm - ok
16:21:07.0746 0x288c nvraid - ok
16:21:07.0746 0x288c nvstor - ok
16:21:07.0793 0x288c [ 9DBC464AB85AA48C9760C6C2E591E2D3, C9D718F8BE838E13F7488F1E8DAA79809340235A5BA5BF206C1C3DBF0A5DDB48 ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll
16:21:07.0809 0x288c OneSyncSvc - ok
16:21:07.0887 0x288c [ 61537B02CEA00BE142B11384A7BBF04D, F4B8DE5A889C04CA4EEB82AD0A66D8828CA302ECAF9E91AAF288C8770EC97199 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:21:07.0903 0x288c ose - ok
16:21:07.0949 0x288c [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
16:21:08.0012 0x288c p2pimsvc - ok
16:21:08.0074 0x288c [ CCD10679BA0D9EF549F80C458C2AD1C4, 7B433FEE4BEA69C28A98F4BFBE5FA603DB2CE1DFCF229EBB4D9B7A0FD159FF04 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
16:21:08.0106 0x288c p2psvc - ok
16:21:08.0106 0x288c Parport - ok
16:21:08.0121 0x288c partmgr - ok
16:21:08.0153 0x288c [ 0CF87FC2DA60940031D553F8FDF5066B, 95F8A15210D6F431B84C6E18643F93C9D16F53D3FF4873F9A327A77924B4B9F8 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
16:21:08.0168 0x288c PcaSvc - ok
16:21:08.0184 0x288c pci - ok
16:21:08.0184 0x288c pciide - ok
16:21:08.0184 0x288c pcmcia - ok
16:21:08.0199 0x288c pcw - ok
16:21:08.0199 0x288c pdc - ok
16:21:08.0231 0x288c [ 42B12A76D3C98AE69C97727E3BEC7D8A, C878A05A9817F62514432685FAA795737F628EF7258EC5C7846045E1CAB2DF6E ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
16:21:08.0278 0x288c PEAUTH - ok
16:21:08.0278 0x288c percsas2i - ok
16:21:08.0278 0x288c percsas3i - ok
16:21:08.0387 0x288c [ 185100798FBD23C849DC1C00ED43D99D, 10895ADE339744BBABDFB50BE6025217C02C76B1911C2C8740A57912385B38DE ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
16:21:08.0418 0x288c PerfHost - ok
16:21:08.0434 0x288c PhoneSvc - ok
16:21:08.0496 0x288c [ 807ED476A62E79935315342BD3FAA046, FF56FC79C6B6043A10C123CF85A8DDA0B8564E03D49AD5811DDCBB99823C4836 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
16:21:08.0528 0x288c PimIndexMaintenanceSvc - ok
16:21:08.0621 0x288c [ 4E614DBE28B5857F70DEBCC804629E67, B93C42FB96BBA0577CB892274905352AE4A6DE257F676D6A23CE0297F945D7E7 ] pla C:\WINDOWS\system32\pla.dll
16:21:08.0699 0x288c pla - ok
16:21:08.0731 0x288c PlugPlay - ok
16:21:08.0731 0x288c pmem - ok
16:21:08.0731 0x288c [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
16:21:08.0746 0x288c Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
16:21:08.0778 0x288c Detect skipped due to KSN trusted
16:21:08.0778 0x288c Pml Driver HPZ12 - ok
16:21:08.0809 0x288c [ 99ECEDA6B2E1FDB6892FBD5AED1E5D99, C970DDDBDB4AF8C6A1AA92D780B82920B4922304649509075CF14A2AB86C3CCF ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys
16:21:08.0824 0x288c PNPMEM - ok
16:21:08.0887 0x288c [ 75690F495CEDBEF3D5989828AEEAE832, 3257E7261DF8F39CA4988BBED3060B9E8A5988978F66A4B1409E08F65B262FED ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
16:21:08.0918 0x288c PNRPAutoReg - ok
16:21:08.0918 0x288c [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
16:21:08.0949 0x288c PNRPsvc - ok
16:21:08.0981 0x288c PolicyAgent - ok
16:21:08.0981 0x288c Power - ok
16:21:08.0981 0x288c PptpMiniport - ok
16:21:09.0158 0x288c [ AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4, 6372FC5E78A2DDB8AE6EB73BEB5C0D4056FB6BE9F231A36BAC37AE970F5EB247 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
16:21:09.0283 0x288c PrintNotify - ok
16:21:09.0346 0x288c [ A60202AE474E2173ED91118DD73ADAAD, 6AE315E1DD9E3B03E48B8848FCB0CDD506080F0012DE478BA99D102F91E968E6 ] PrintWorkflowUserSvc C:\WINDOWS\System32\PrintWorkflowService.dll
16:21:09.0377 0x288c PrintWorkflowUserSvc - ok
16:21:09.0393 0x288c Processor - ok
16:21:09.0393 0x288c ProfSvc - ok
16:21:09.0455 0x288c [ E4BF8BE7B3711BCBBC95EE983C0236F4, A71C09D83034C96F7ED4DB58F7388F8A13C7FD1A3F41FE8EEC553C42B65DFFC6 ] Psched C:\WINDOWS\system32\drivers\pacer.sys
16:21:09.0455 0x288c Psched - ok
16:21:09.0518 0x288c [ 29F12CD3F77B65C7E37F8517395B13D2, 690517756A21B3DE4CF4A027AA712FC62DB6F5F2E89B4D2DE220A29C4A36878B ] PushToInstall C:\WINDOWS\system32\PushToInstall.dll
16:21:09.0564 0x288c PushToInstall - ok
16:21:09.0611 0x288c [ 8AB5F41584C98047ABEF490FC1E31F7E, F8480F9D9C1A60901975C529CC0911ED592834AB1068FADD88B15E6497A59221 ] QWAVE C:\WINDOWS\system32\qwave.dll
16:21:09.0658 0x288c QWAVE - ok
16:21:09.0705 0x288c [ 00F72861538B6C4E925A21BAE397A49D, 6847E2332CC8573850428CC7E3A73B2DA0274977F53BDDF7DBA68D223A501CC4 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
16:21:09.0736 0x288c QWAVEdrv - ok
16:21:09.0736 0x288c Ramdisk - ok
16:21:09.0736 0x288c RasAcd - ok
16:21:09.0765 0x288c RasAgileVpn - ok
16:21:09.0779 0x288c RasAuto - ok
16:21:09.0779 0x288c Rasl2tp - ok
16:21:09.0779 0x288c RasMan - ok
16:21:09.0794 0x288c RasPppoe - ok
16:21:09.0794 0x288c RasSstp - ok
16:21:09.0826 0x288c rdbss - ok
16:21:09.0841 0x288c [ 206AB796793FDBD518B82E2F308A7176, ED0DBDE7106970F217F4FB1FB184B6795A16356C879C17E0910840F64F292809 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
16:21:09.0841 0x288c rdpbus - ok
16:21:09.0904 0x288c [ 52A6CC99F5934CFAE88353C47B6193E7, 37F6991FA526036866E8CFC938A16750644AD764FA52BB102B11B5D594DB7E96 ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
16:21:09.0935 0x288c RDPDR - ok
16:21:10.0002 0x288c [ 0600DF60EF88FD10663EC84709E5E245, 48572DC0C644E13BD1713E29E522763EB4E00337ACA64D1392960D17EAF8923A ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
16:21:10.0002 0x288c RdpVideoMiniport - ok
16:21:10.0064 0x288c [ 65652EFAAF4A8A59E60A2D7BE15317E8, 83A9A8506EF4769625EF0EF43B93906A6FBD9133E52C12B17A68B89DAC68D026 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
16:21:10.0080 0x288c rdyboost - ok
16:21:10.0096 0x288c ReFS - ok
16:21:10.0096 0x288c ReFSv1 - ok
16:21:10.0158 0x288c [ 980F60634FAF9C58FC468AF9AA609D68, 7BA03FE851F78D5DC9062ACEADF194ACB4F8F56C9D496B17D846CE1E4373B404 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
16:21:10.0190 0x288c RemoteAccess - ok
16:21:10.0252 0x288c [ 106E630F1B2A8BF2BBD4508D9B166406, FAFBE21EC61B97B4B825285EBA0F661382A95119E1740EE4FB9A1F6FB3C0F5F7 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
16:21:10.0268 0x288c RemoteRegistry - ok
16:21:10.0346 0x288c [ 53BE6D9C36A9CB95A1568C24D44A8A34, DD8245F87B9D4203F56595D6ABF9F1E74EA071D4B7BB0469A293CA9E20BDA246 ] RetailDemo C:\WINDOWS\system32\RDXService.dll
16:21:10.0393 0x288c RetailDemo - ok
16:21:10.0455 0x288c [ 3D4F4CCE0364CD3F1B539D2630686F24, 620EFC53D6F5279AEF4748FAE22F7239E7855D1F5C79B85F6CB54EF51C516408 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys
16:21:10.0486 0x288c rhproxy - ok
16:21:10.0596 0x288c [ FBA61BB4C484A01A655AFB18FF86C417, D53B2110CB09D0A909C4E330C468351BFE076BB056CCDDCB8ADA2FB91E96352E ] RichVideo64 C:\Program Files\CyberLink\Shared files\RichVideo64.exe
16:21:10.0627 0x288c RichVideo64 - ok
16:21:10.0674 0x288c [ ADA13EBD9C23C51876A5B2EADF7F2E29, D08E6A907DE5DC6F51CA71CBF7886FE7D8C6FB09154B633D86CDBE9C311361A0 ] RmSvc C:\WINDOWS\System32\RMapi.dll
16:21:10.0690 0x288c RmSvc - ok
16:21:10.0705 0x288c RpcEptMapper - ok
16:21:10.0752 0x288c [ 19EC4D05E01FE350B3494CEA122D64EB, 09FF60A8F22D66796257E33F4CFD6059D4A11A3173A7691718E9FE841E15ABA2 ] RpcLocator C:\WINDOWS\system32\locator.exe
16:21:10.0783 0x288c RpcLocator - ok
16:21:10.0799 0x288c RpcSs - ok
16:21:10.0846 0x288c [ FFFB16EF6E0B8B5F7F19B425923E7D12, 27C2882AC7B27BAC5A4051C2C9326A6D289F297158DE7A3A93E8B09378DC91AA ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys
16:21:10.0893 0x288c rspndr - ok
16:21:10.0893 0x288c rt640x64 - ok
16:21:11.0096 0x288c [ 8337DEB89F47A29ABC0C64757BBEF522, A6524FD02A3807D70CBA553A6CFF824983AE156C5B61E8C1FCA71B9C1E6CE4E1 ] RTWlanE C:\WINDOWS\System32\drivers\rtwlane.sys
16:21:11.0330 0x288c RTWlanE - ok
16:21:11.0393 0x288c [ A2939E69027B97105014434BFBFF7195, 9DC09BE94415564D0E80431223BDA1C59E3555AB5267DD3F64E71D4A18C8553A ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
16:21:11.0408 0x288c s3cap - ok
16:21:11.0439 0x288c SamSs - ok
16:21:11.0439 0x288c sbp2port - ok
16:21:11.0471 0x288c [ D48F36EA4B4E8237B24E33B18D76EB2A, 128E754F15FDB00D218FB23431BF0FBDC65D64EEF294D72535B0C07EB5472136 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
16:21:11.0502 0x288c SCardSvr - ok
16:21:11.0565 0x288c [ 1B1FB3D8403E621F2B9201EF414E21D9, 5EFBEA5DC09CD5F151EF224BE2FF2C985D19301B17E5C16F5D00CB2852DAF8BF ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
16:21:11.0596 0x288c ScDeviceEnum - ok
16:21:11.0658 0x288c [ 0070C2DC6563C48EDA63A282748F3FCD, 12C8505DDD05994641B2B19666D7A54E12A21F6894913342A9BA5D148F193BE0 ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
16:21:11.0690 0x288c scfilter - ok
16:21:11.0768 0x288c [ 9D13410D7B4D76AA2EA73EC8CA0E0190, 7C46D202683F34F1C07D9D297E9A239376800DC8C84FE1585FE7FC723B6EBBA0 ] Schedule C:\WINDOWS\system32\schedsvc.dll
16:21:11.0830 0x288c Schedule - ok
16:21:11.0830 0x288c scmbus - ok
16:21:11.0846 0x288c [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
16:21:11.0877 0x288c SCPolicySvc - ok
16:21:11.0877 0x288c sdbus - ok
16:21:11.0924 0x288c [ 9EF09DE84CE20B787C02395394AC2A7E, 17019B74506D26707EBC342365008A9BB5AACA381FB60ABA85F34D153FB0682C ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys
16:21:11.0940 0x288c SDFRd - ok
16:21:11.0986 0x288c [ 01607A2FAB0068450A06C90AF755D57E, 9615261063475045CBC99F17BD3A4919198D0F77CA9E4EC7B13826E514BC8543 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll
16:21:12.0002 0x288c SDRSVC - ok
16:21:12.0033 0x288c sdstor - ok
16:21:12.0049 0x288c [ 44B1F4F200B4D3AE8B53290101148AFC, 34F18FEDE525BB398371329CA9F93BD3D88C30E23FCA576978D94EC67513228C ] seclogon C:\WINDOWS\system32\seclogon.dll
16:21:12.0064 0x288c seclogon - ok
16:21:12.0143 0x288c [ 1E8CC4964FEECEE44D720A5130075F79, 75656541633FE90045183C68F4A81F1AA305E4A03CFBF7C50F226F18000924D5 ] SecurityHealthService C:\WINDOWS\system32\SecurityHealthService.exe
16:21:12.0190 0x288c SecurityHealthService - ok
16:21:12.0221 0x288c [ 7D7ED932B6417D8687D1D972989B310B, A5DF3B6CEE97DD110FD1BC542CC5A5313B2F447E5FCC40DF6EFB9D7D49CD792C ] SEMgrSvc C:\WINDOWS\system32\SEMgrSvc.dll
16:21:12.0283 0x288c SEMgrSvc - ok
16:21:12.0346 0x288c [ CA614C9FBC8307AB1DC937F3393899E2, 4833CC631FA30E4D4B45BBC2CE41DE72B332B6A1FFD23B7DBFD6EDD6BC1A2ED8 ] SENS C:\WINDOWS\System32\sens.dll
16:21:12.0361 0x288c SENS - ok
16:21:12.0440 0x288c [ 46AEFFC68BEAF89805B95CC6F9529C2E, 7A6A38A329E82F684191561479604142BBB35121822A5CDD828819C606F2A60A ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
16:21:12.0502 0x288c SensorDataService - ok
16:21:12.0580 0x288c [ 2B81117E9C3E20BBAA2CB5467D000F77, AC0DF8E635908026EE43EE0444DEF61481E211737A85A473D64EC8BB214D1135 ] SensorService C:\WINDOWS\system32\SensorService.dll
16:21:12.0611 0x288c SensorService - ok
16:21:12.0643 0x288c [ DF94FAAEC4CDAA3886A0169E660C984B, 54BB09459D59B5DDA24D72821840FA7A71A194EA464E09DFDE021B24CB27FCAD ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
16:21:12.0658 0x288c SensrSvc - ok
16:21:12.0674 0x288c SerCx - ok
16:21:12.0674 0x288c SerCx2 - ok
16:21:12.0674 0x288c Serenum - ok
16:21:12.0689 0x288c Serial - ok
16:21:12.0689 0x288c sermouse - ok
16:21:12.0721 0x288c [ 87340BC77470B34F11A9E558B591DB08, FD91561FE5951B4F59FEE23707E1ACE31293E508EF734A5CDB0F34D332EFDDF7 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
16:21:12.0752 0x288c SessionEnv - ok
16:21:12.0768 0x288c sfloppy - ok
16:21:12.0815 0x288c [ 1941F5CA54C469E16957587FD56ED842, D356547A9702A50AEB5F7765AC44668EEA913563A422ABBD0427EC22833A5B78 ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys
16:21:12.0830 0x288c SgrmAgent - ok
16:21:12.0893 0x288c [ D3170A3F3A9626597EEE1888686E3EA6, 9321991C441B095DF15D24C8AE58F87EE5A3242532E8C023D0F78B2F96FEE6B7 ] SgrmBroker C:\WINDOWS\system32\SgrmBroker.exe
16:21:12.0924 0x288c SgrmBroker - ok
16:21:13.0002 0x288c [ AC1D97F89F2EC7E334A406603A686973, D230059C1CB400CCA62438603356F058B40E17DE4C7BD4DADDBB981E4F5E4C9C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
16:21:13.0049 0x288c SharedAccess - ok
16:21:13.0143 0x288c [ 0BE15FDA358837ABD88DC72AA75C75CD, 3990FA051E7C280B446C8A749FCEE04E384230CC5E286B4E7080B1737E5730DD ] SharedRealitySvc C:\WINDOWS\System32\SharedRealitySvc.dll
16:21:13.0205 0x288c SharedRealitySvc - ok
16:21:13.0236 0x288c [ 63B104867F70F0D81125C37989146960, 468431098DD9B91F1C58551CEB4DBE6E1C456FFE845E302571B970EF05AE03A8 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
16:21:13.0268 0x288c ShellHWDetection - ok
16:21:13.0330 0x288c [ F6D90D09D2BCFA2B5E492BFECA40EDE4, 7B427335943C1EFDE482D59F3A23149FCD45BB014643BEF620A708720383C4A8 ] shpamsvc C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
16:21:13.0361 0x288c shpamsvc - ok
16:21:13.0377 0x288c SiSRaid2 - ok
16:21:13.0377 0x288c SiSRaid4 - ok
16:21:13.0486 0x288c [ 22CC2A61BC77C5972B58756049AA254E, 4DF554A1C2FF8C2D9AD8633231961DE95171A17295DAA7779E607AFD7BD8FE03 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:21:13.0518 0x288c SkypeUpdate - ok
16:21:13.0548 0x288c smphost - ok
16:21:13.0581 0x288c [ A3BEF2736E902B9DCA68554F4E10E08C, 5C7590D8F2D637B6D4A5F68945D8350B1C3D48EBE1B2C36658361900C9425611 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll
16:21:13.0627 0x288c SmsRouter - ok
16:21:13.0674 0x288c [ 577EC13EB5215325E9B9FC51FB56A974, 1D7A0245A3C474BCD4EC69704040FB50C0E086DB1711C5B7FC4D9C4A7909DAB9 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
16:21:13.0705 0x288c SNMPTRAP - ok
16:21:13.0705 0x288c spaceport - ok
16:21:13.0752 0x288c [ FE1776E587227120DC04EAEC45473245, 9DEBD997D275065481EEEDD2310479F2021D53B64AA6D5CEEA70E9BB8C9856C7 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys
16:21:13.0783 0x288c SpatialGraphFilter - ok
16:21:13.0783 0x288c SpbCx - ok
16:21:13.0799 0x288c spectrum - ok
16:21:13.0877 0x288c [ C05A19A38D7D203B738771FD1854656F, 3A832F3CBA33682EAA18ABB721BF2D5A6FE9AC853038C684C264700DEB52AA65 ] Spooler C:\WINDOWS\System32\spoolsv.exe
16:21:13.0924 0x288c Spooler - ok
16:21:13.0939 0x288c sppsvc - ok
16:21:14.0330 0x288c [ 0F868BD2369D1EB5B8E312ABA8B40ECD, 2C93E9DE372B6549DB17151059A4A2F16684DD2198D0F74AD31AF906231B3C6F ] squeezesvc C:/PROGRA~2/SQUEEZ~1/server/SqueezeSvr.exe
16:21:14.0830 0x288c squeezesvc - detected UnsignedFile.Multi.Generic ( 1 )
16:21:14.0861 0x288c Detect skipped due to KSN trusted
16:21:14.0861 0x288c squeezesvc - ok
16:21:14.0877 0x288c srv - ok
16:21:14.0893 0x288c srv2 - ok
16:21:14.0908 0x288c srvnet - ok
16:21:14.0986 0x288c [ 1AEA66706573E8CCD6038369FE37F237, A62CAFE205D5B4C9F8528EDDA4E20BA4E2D1E231F2B183FE70EFE6458B2D5460 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
16:21:15.0033 0x288c SSDPSRV - ok
16:21:15.0158 0x288c [ 5EE518DFADC18573E681BB78833E93FA, E98CCD3E2ADA265D6E3CF48CDBFE5C3067E0546F179F23B77C267F65CEB978EE ] ssh-agent C:\WINDOWS\System32\OpenSSH\ssh-agent.exe
16:21:15.0205 0x288c ssh-agent - ok
16:21:15.0221 0x288c SstpSvc - ok
16:21:15.0252 0x288c [ F0B59ADCD06BCEB9D47311B7041CA2C9, 6299AB514CBE153C875F083ED789F6205C1781C0178759521F5A6D8007F5257C ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
16:21:15.0268 0x288c ssudmdm - ok
16:21:15.0268 0x288c StateRepository - ok
16:21:15.0283 0x288c stexstor - ok
16:21:15.0346 0x288c [ EB2C25A3700309F3F67D9334CF33A36C, 9262778566EEEA810AD32CD660DEA841797BD9F874252CC5445D917FF159280B ] stisvc C:\WINDOWS\System32\wiaservc.dll
16:21:15.0408 0x288c stisvc - ok
16:21:15.0408 0x288c storahci - ok
16:21:15.0424 0x288c storflt - ok
16:21:15.0424 0x288c stornvme - ok
16:21:15.0439 0x288c storqosflt - ok
16:21:15.0439 0x288c StorSvc - ok
16:21:15.0439 0x288c storufs - ok
16:21:15.0455 0x288c storvsc - ok
16:21:15.0471 0x288c svsvc - ok
16:21:15.0564 0x288c swenum - ok
16:21:15.0564 0x288c swprv - ok
16:21:15.0611 0x288c [ A2A42A570524C975259E3B81C4D80DCA, 4B2A6295E46DD2042B3C741D9519A0376687B30711F2DA8B9B81A039E46229F9 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys
16:21:15.0643 0x288c Synth3dVsc - ok
16:21:15.0721 0x288c [ 62492FAAC26223E8A21E79A2331A3F10, 164C2650EAD344B6DFF95B8275436231E7994B7F06ACB3DA19054849BED61FD2 ] SysMain C:\WINDOWS\system32\sysmain.dll
16:21:15.0783 0x288c SysMain - ok
16:21:15.0799 0x288c SystemEventsBroker - ok
16:21:15.0846 0x288c [ CE9975A9E0DFBEFECECE218D2674C1CD, 20ABA9B78FF40C89A757ED2B4AE2F8BE5F4C6C257AA00A324849D68ACA59A264 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
16:21:15.0877 0x288c TabletInputService - ok
16:21:15.0955 0x288c [ E38C7C4D57B1438F70A1B913870E8665, EEBE640E31F3D9126FD2F58EB93051FE4EEA591223DFAB9E918DEBE879718B95 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
16:21:15.0986 0x288c TapiSrv - ok
16:21:16.0002 0x288c Tcpip - ok
16:21:16.0002 0x288c Tcpip6 - ok
16:21:16.0064 0x288c [ 085F8A5F09E64CC27309AF160EF4F9BA, DB3DFD3059836A9FB26FE924E9F2B960E454F4B20D8862266DFDA3168D610FD8 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
16:21:16.0096 0x288c tcpipreg - ok
16:21:16.0111 0x288c tdx - ok
16:21:16.0152 0x288c [ B2C4D7CB291293CAC636748E695D111E, 5E0AA8147EFDA5D21CEE8AE254F74A974B0ADAF298F569CAA73AC4E3B758438A ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
16:21:16.0183 0x288c terminpt - ok
16:21:16.0214 0x288c [ 10ADC3589E50B1ED8452C86E0CBE8248, BE82341A12EA83D9EFADC9AC35CF16D327F8499C99107DCDE88DD0F5DF84523C ] TermService C:\WINDOWS\System32\termsrv.dll
16:21:16.0277 0x288c TermService - ok
16:21:16.0324 0x288c [ 1A0A0F6A139148AFDC4622046D4B3CBD, 8FC2FB99B70A3A5B2F1D757A2F0E3085B1D242B792A35070E1DB3871A275329E ] Themes C:\WINDOWS\system32\themeservice.dll
16:21:16.0355 0x288c Themes - ok
16:21:16.0417 0x288c [ 811910E891A6DB4A864AE119EB71218C, 2CBB6159E2ACAE4BA73892A4F7F8A3981C159083C29F1A1D548C59FB713B9D74 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
16:21:16.0464 0x288c TieringEngineService - ok
16:21:16.0480 0x288c TimeBrokerSvc - ok
16:21:16.0480 0x288c TokenBroker - ok
16:21:16.0480 0x288c TPM - ok
16:21:16.0542 0x288c [ A5C0F857C38278A90E953A24E1701196, 1A646E47013946CCE41C798A494C6D266AEFC8A8D6EB65CD8848E72106687E38 ] TrkWks C:\WINDOWS\System32\trkwks.dll
16:21:16.0574 0x288c TrkWks - ok
16:21:16.0652 0x288c TrustedInstaller - ok
16:21:16.0698 0x288c [ 0D721F40C179EC5737C15E551F22C69B, BBA04E11C3D9150C60F74D8B1A3F444BDE0C19857BB7C45D58448F641082DE1A ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
16:21:16.0714 0x288c TsUsbFlt - ok
16:21:16.0777 0x288c [ DE1296871208D1F13B7AC57C4B1FA46C, D18709F65E372A47AE114ECFD6A45E6736089B4A8E719E2FB5D831D9415E995D ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
16:21:16.0792 0x288c TsUsbGD - ok
16:21:16.0855 0x288c [ BC938ABBF586272BD4063CA51F09149F, 06EB662948D212ACDF930C3CD01C6381A6FB152AC0F1628C86764F0973ABA1CB ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys
16:21:16.0886 0x288c tunnel - ok
16:21:16.0902 0x288c [ E94996BB8F323AF02860196C1400AD30, DE605439FC5B59C1064DF05F63C94D7C275482C1C66BEC74FA4A83F61C2051FC ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll
16:21:16.0933 0x288c tzautoupdate - ok
16:21:16.0933 0x288c UASPStor - ok
16:21:16.0948 0x288c [ 00C4396DE1CD3502884BB2E2B6D6861C, 39F6BF25096ACE29CAF964DCA15078F47986F645DF49FB502A2CDF2C05C89AAB ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys
16:21:16.0964 0x288c UcmCx0101 - ok
16:21:17.0027 0x288c [ ED9CBD1541C8AFDAA9B8255A384E2B53, D970F5E976CEBE0BCDF07B9E155EDB5B3C225812991779748CD04A9C4852DF3D ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys
16:21:17.0042 0x288c UcmTcpciCx0101 - ok
16:21:17.0105 0x288c [ F58F1BC6A6972437CE18516F8ACCEB9F, 2C619D1E2E80662FA463EE48E3D41C8437A81B0F68EE67A0839A93DEDCD2E0B2 ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys
16:21:17.0136 0x288c UcmUcsi - ok
16:21:17.0136 0x288c Ucx01000 - ok
16:21:17.0152 0x288c UdeCx - ok
16:21:17.0152 0x288c udfs - ok
16:21:17.0152 0x288c UEFI - ok
16:21:17.0214 0x288c [ 588B9212DEE84F5192C09A147AA5C316, 80C70FD489D72015FCF8AFBE649F6C77F40B613882A1F031A2DAE088B9B4F67B ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys
16:21:17.0230 0x288c Ufx01000 - ok
16:21:17.0245 0x288c UfxChipidea - ok
16:21:17.0245 0x288c ufxsynopsys - ok
16:21:17.0261 0x288c umbus - ok
16:21:17.0277 0x288c UmPass - ok
16:21:17.0292 0x288c [ 0D806415E1F86E7C1C192261C247EF0D, 640CB73D9ACC3B6E0F2A2A5A4587375F05A7519081BEC510B926A8A4A496C3B9 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
16:21:17.0324 0x288c UmRdpService - ok
16:21:17.0402 0x288c [ EAEC69961D9D8B39FEA44D56F7FB259D, 43FEB15A32B353B6F3C8E5F1072FF9507F2FA7799A414F30FEA0B8C47999D969 ] UnistoreSvc C:\WINDOWS\System32\unistore.dll
16:21:17.0464 0x288c UnistoreSvc - ok
16:21:17.0511 0x288c [ 2362D5C18120FAB9CE5BD1F73EE33758, D9AB5D5BEAF95F62A204CE8A3B8B3B6C9C1E85FB5425CA2AADCBB4770EDCDF30 ] upnphost C:\WINDOWS\System32\upnphost.dll
16:21:17.0542 0x288c upnphost - ok
16:21:17.0589 0x288c [ 49A5E1B43C59DC0E363AD9C2D7D10BE4, B903C1C24DAF316AF9D8C1770687DE0A24ACDA4EFE47845E13BE99985609B7CE ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys
16:21:17.0620 0x288c UrsChipidea - ok
16:21:17.0620 0x288c [ 53F1DA2D92D1D8CE4BB9D33E58D7DF01, CD3F4B92EDA042FE696C59D67BEB711C7AF0EB5979AD5F4110297C47454EBBFA ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys
16:21:17.0636 0x288c UrsCx01000 - ok
16:21:17.0699 0x288c [ 09518A324B95BBC0B472BD5A472CB916, B3C6BF8C84268C02CC43E5C6B37648F9691B6038D275F4BEBA7B5E9ECA046181 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys
16:21:17.0714 0x288c UrsSynopsys - ok
16:21:17.0730 0x288c usbaudio - ok
16:21:17.0745 0x288c usbccgp - ok
16:21:17.0808 0x288c [ 250D21958EE5F45CD13FE6BE3788EE70, C0EF097EE2ED91950BD3A6881AB08698E85C4ABABC4F7520F7E92E70CA454D4E ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
16:21:17.0824 0x288c usbcir - ok
16:21:17.0824 0x288c usbehci - ok
16:21:17.0855 0x288c [ 504901430B6E03B99EBB6BF26E0868C6, D00C0904B7008305DCA5D1E6FED153DD8875CAD14D80348E59F42A182FA7E832 ] usbfilter C:\WINDOWS\system32\DRIVERS\usbfilter.sys
16:21:17.0870 0x288c usbfilter - ok
16:21:17.0870 0x288c usbhub - ok
16:21:17.0886 0x288c USBHUB3 - ok
16:21:17.0886 0x288c usbohci - ok
16:21:17.0949 0x288c [ 692C0BA4109C8F78392A299369F51129, A675E11CD4794693D0B65A06E85F264199506A4C6EDBB68503163EED389B8D1F ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
16:21:17.0964 0x288c usbprint - ok
16:21:17.0980 0x288c [ 555DE99E30E6A6EF37137F8325B30068, B78B44883A3E524DFEC13B72AFFDF06FD446EFB12061593D8247C0B92D558B8A ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:21:17.0995 0x288c usbscan - ok
16:21:17.0995 0x288c usbser - ok
16:21:17.0995 0x288c USBSTOR - ok
16:21:18.0011 0x288c usbuhci - ok
16:21:18.0011 0x288c USBXHCI - ok
16:21:18.0120 0x288c [ CE0E3BA8FC974BEE5BE20E4F43A1C583, E19DE81559FD92D1F7B0ADB4297926E6971F7FCB642E11758D361FC2A22C33BB ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll
16:21:18.0199 0x288c UserDataSvc - ok
16:21:18.0214 0x288c UserManager - ok
16:21:18.0230 0x288c UsoSvc - ok
16:21:18.0245 0x288c [ 3E283D06357616CD4117CC15BDB7C4C3, ACE50702EE61C9F93855720037898F19E509D45982F9173643EDA455F54FB9E7 ] VacSvc C:\WINDOWS\System32\vac.dll
16:21:18.0277 0x288c VacSvc - ok
16:21:18.0277 0x288c VaultSvc - ok
16:21:18.0277 0x288c vdrvroot - ok
16:21:18.0292 0x288c vds - ok
16:21:18.0292 0x288c VerifierExt - ok
16:21:18.0292 0x288c vhdmp - ok
16:21:18.0308 0x288c vhf - ok
16:21:18.0308 0x288c vmbus - ok
16:21:18.0308 0x288c VMBusHID - ok
16:21:18.0370 0x288c [ C9F69EBA06A703CE726CC6FC0AEFB5E9, 53E441D9D6017CC4BB75F41C6CB9DA79DE500CACBDDE58104D1857A2B749C373 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys
16:21:18.0386 0x288c vmgid - ok
16:21:18.0413 0x288c [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicguestinterface C:\WINDOWS\System32\icsvc.dll
16:21:18.0428 0x288c vmicguestinterface - ok
16:21:18.0444 0x288c [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicheartbeat C:\WINDOWS\System32\icsvc.dll
16:21:18.0460 0x288c vmicheartbeat - ok
16:21:18.0475 0x288c [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmickvpexchange C:\WINDOWS\System32\icsvc.dll
16:21:18.0491 0x288c vmickvpexchange - ok
16:21:18.0553 0x288c [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicrdv C:\WINDOWS\System32\icsvcext.dll
16:21:18.0585 0x288c vmicrdv - ok
16:21:18.0600 0x288c [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicshutdown C:\WINDOWS\System32\icsvc.dll
16:21:18.0616 0x288c vmicshutdown - ok
16:21:18.0631 0x288c [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmictimesync C:\WINDOWS\System32\icsvc.dll
16:21:18.0647 0x288c vmictimesync - ok
16:21:18.0663 0x288c [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicvmsession C:\WINDOWS\System32\icsvc.dll
16:21:18.0678 0x288c vmicvmsession - ok
16:21:18.0694 0x288c [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicvss C:\WINDOWS\System32\icsvcext.dll
16:21:18.0710 0x288c vmicvss - ok
16:21:18.0725 0x288c volmgr - ok
16:21:18.0725 0x288c volmgrx - ok
16:21:18.0741 0x288c volsnap - ok
16:21:18.0741 0x288c volume - ok
16:21:18.0788 0x288c [ CB90DACF9194DD9D60A2C1DBFBC1E0D1, BE454495C79857FD8DF4ABAF5BDB7D076467BBC27B31E87FA9D920F2001B670D ] vpci C:\WINDOWS\System32\drivers\vpci.sys
16:21:18.0819 0x288c vpci - ok
16:21:18.0819 0x288c vsmraid - ok
16:21:18.0819 0x288c VSS - ok
16:21:18.0835 0x288c VSTXRAID - ok
16:21:18.0835 0x288c vwifibus - ok
16:21:18.0835 0x288c vwififlt - ok
16:21:18.0850 0x288c vwifimp - ok
16:21:18.0850 0x288c W32Time - ok
16:21:18.0913 0x288c [ 1C8447EFBC2B36B1CFE889E519F46A6E, 2601185B01909682FB921400C26BE6391AC93F72E84E70E2F49B4059987E191E ] WaaSMedicSvc C:\WINDOWS\System32\WaaSMedicSvc.dll
16:21:18.0944 0x288c WaaSMedicSvc - ok
16:21:18.0960 0x288c WacomPen - ok
16:21:19.0006 0x288c [ 25FAB8A2CFFA21FDB472AB3AE6C17A57, C97E651111643F32FD5B94BEDA31D62E6FF83CA0644FFE8BA98463EC9EA6EF9B ] WalletService C:\WINDOWS\system32\WalletService.dll
16:21:19.0038 0x288c WalletService - ok
16:21:19.0053 0x288c wanarp - ok
16:21:19.0053 0x288c wanarpv6 - ok
16:21:19.0100 0x288c [ 395447583F42FD840520EE87AE439D74, 984AE1EE8BA3B8926C6FC94BC22DE9061C90C15135EA56D0F16C1D3C4EF8DAF8 ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll
16:21:19.0147 0x288c WarpJITSvc - ok
16:21:19.0147 0x288c wbengine - ok
16:21:19.0163 0x288c WbioSrvc - ok
16:21:19.0225 0x288c [ 8A304D6CDC067922448CBA1EBB9FFCA8, DE40DD3A32DFF22C477F38B5E2224D55B8CCF2499EFFE0A8E9923728295BAEC1 ] wcifs C:\WINDOWS\system32\drivers\wcifs.sys
16:21:19.0256 0x288c wcifs - ok
16:21:19.0350 0x288c [ 2BCA9BABB5CEC329E604AE9C1DBA9D5B, 315C72B80A5E6278A725E7BD2DE0C8A2751C2A3F9B4D82F7A034B1ADDE687507 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
16:21:19.0397 0x288c Wcmsvc - ok
16:21:19.0413 0x288c wcncsvc - ok
16:21:19.0444 0x288c [ FCA1B5465213EF4DE373A1F7E76D260E, 2548A9D11027871AD0290FDADF1E42E828E6120ECE925B12BAB3F09E25172489 ] wcnfs C:\WINDOWS\system32\drivers\wcnfs.sys
16:21:19.0460 0x288c wcnfs - ok
16:21:19.0506 0x288c [ 042ABE47A7BA6722AA5B61E267B28DFC, 07CE195F12B5234F4FA10A08E18CB51CDAF179CC1C32581872C28F57835CE1BE ] WdBoot C:\WINDOWS\system32\drivers\wd\WdBoot.sys
16:21:19.0522 0x288c WdBoot - ok
16:21:19.0538 0x288c Wdf01000 - ok
16:21:19.0553 0x288c [ C8C75E56CDDBCDF597055343B641C910, A26556923165B84DC481B9924FF6AE57C7022E07AF1FC2E1FC1B14F12EF85CCF ] WdFilter C:\WINDOWS\system32\drivers\wd\WdFilter.sys
16:21:19.0569 0x288c WdFilter - ok
16:21:19.0631 0x288c [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
16:21:19.0663 0x288c WdiServiceHost - ok
16:21:19.0663 0x288c [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
16:21:19.0694 0x288c WdiSystemHost - ok
16:21:19.0694 0x288c wdiwifi - ok
16:21:19.0725 0x288c [ EAF4FB729E94561EE31BDE5BEF869C65, 73290250B565E0A3F453BC45E69FF16A1D964E372A15401A2D3E2CDEB4670B38 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys
16:21:19.0725 0x288c WdmCompanionFilter - ok
16:21:19.0741 0x288c [ 318AE771614EE4919ED68830C13EA2AE, BFC40724B94623348EFF185BD415893E7F521F58D8F5139913D469D66D9C6CF3 ] WdNisDrv C:\WINDOWS\system32\drivers\wd\WdNisDrv.sys
16:21:19.0756 0x288c WdNisDrv - ok
16:21:20.0053 0x288c [ F41413EEE16B618FB03EAB487A7DC0B7, E59FFC2EE80DB61564EAE0B35759BF6E750FD909104C12DD085112A7A5853319 ] WdNisSvc C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\NisSrv.exe
16:21:20.0163 0x288c WdNisSvc - ok
16:21:20.0225 0x288c [ BDCC510E85F7AF152E2DFF030A526EA2, 67830B42DE20EBB30DD33093F30FBA166B27D3C1F25B52DABE1BC436671A1882 ] WebClient C:\WINDOWS\System32\webclnt.dll
16:21:20.0256 0x288c WebClient - ok
16:21:20.0281 0x288c [ 506F0A1CCABF4428733CF854BCBB6832, 859A7E21ABB93A0AD538AAF93D32E31B961EA6012C24567B4C76A9ED8FD4AD46 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
16:21:20.0312 0x288c Wecsvc - ok
16:21:20.0328 0x288c [ D8D727E8311C86B2A993A9006A453BAC, AD6C93F5ED51C621841DF68A25D5932578FADB83689FB668D056F316A8AA749D ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
16:21:20.0343 0x288c WEPHOSTSVC - ok
16:21:20.0390 0x288c [ 30B4568D058E17500E7BF88AECEDF3F1, 612597DFAF63E55ACB80789483CBCF0E5AC5FF7607C478C61E5A86D77B169E9E ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
16:21:20.0421 0x288c wercplsupport - ok
16:21:20.0437 0x288c WerSvc - ok
16:21:20.0500 0x288c [ 0427A785512BB39BEA530DC5367A9A03, 8ED29AE0FDB65D4E1D8CD3FA1783D74EF7B01AB30DD1090C917A74AC88FD4C3E ] WFDSConMgrSvc C:\WINDOWS\System32\wfdsconmgrsvc.dll
16:21:20.0546 0x288c WFDSConMgrSvc - ok
16:21:20.0546 0x288c WFPLWFS - ok
16:21:20.0609 0x288c [ 752F5931696914DF2EC0B27275C38458, 83415E7BE50D9548785FBF6550FA679E425B5990F303E2D74513275A5E1DC828 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
16:21:20.0640 0x288c WiaRpc - ok
16:21:20.0656 0x288c WIMMount - ok
16:21:20.0671 0x288c [ DD005C7745BE7F0CDB8B17E9CA1FB796, 29C429BC839CE6B88365DADEEC01B7F0629AFF4FE7E555C18692CCE5858D74D8 ] WinDefend C:\ProgramData\Microsoft\Windows Defender\platform\4.16.17656.18052-0\MsMpEng.exe
16:21:20.0687 0x288c WinDefend - ok
16:21:20.0734 0x288c [ EC7C1A7397988EFAF37BF685CA25525D, 50DA7D63CDE618D6426649AED250CEBE229CBBAC718C4E3CD882D816839B4CE9 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
16:21:20.0749 0x288c WindowsTrustedRT - ok
16:21:20.0812 0x288c [ 5F0EDDA201630E132C2251BC9DA85023, 842B5CBA8C33616345EDC2F91B560416AAEAAB15A8CE1F36978B251CE4CBDA16 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
16:21:20.0828 0x288c WindowsTrustedRTProxy - ok
16:21:20.0828 0x288c WinHttpAutoProxySvc - ok
16:21:20.0828 0x288c WinMad - ok
16:21:20.0890 0x288c Winmgmt - ok
16:21:20.0953 0x288c [ 48194110C410B335AC985D9194275A1C, 1CE64B9DD2DB4CCB3916AA4F4C5F8C71C647ABF7845D284019725761138B8A8B ] WinNat C:\WINDOWS\system32\drivers\winnat.sys
16:21:20.0968 0x288c WinNat - ok
16:21:21.0078 0x288c [ C57185CC62AA13E4F5A989D904CC9A16, 993F27F710148335C4244AB74D4B1D232DEDB0E3D82E39093A1E422C72283D31 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
16:21:21.0203 0x288c WinRM - ok
16:21:21.0234 0x288c [ 6FA3D810FE082001B16ADE19829F1E8E, 64B420FC14AB3194D4D2907EA5BE741456928E7E3CB9CBA50FEB8677A43B1971 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS
16:21:21.0250 0x288c WINUSB - ok
16:21:21.0250 0x288c WinVerbs - ok
16:21:21.0281 0x288c wisvc - ok
16:21:21.0281 0x288c WlanSvc - ok
16:21:21.0296 0x288c wlidsvc - ok
16:21:21.0390 0x288c [ 59F6A50CD336D0ADD22E3F1FC0D73957, A62469B30325965735FE76AE7D83E5D829AE09D7F0996CC0B42604E68426B088 ] wlpasvc C:\WINDOWS\System32\lpasvc.dll
16:21:21.0453 0x288c wlpasvc - ok
16:21:21.0468 0x288c WmiAcpi - ok
16:21:21.0468 0x288c wmiApSrv - ok
16:21:21.0562 0x288c WMPNetworkSvc - ok
16:21:21.0593 0x288c [ E122AD60BF4D7E4B28CCBABF33B28C1F, 1ABABE62FCC1B1A837540EE66F3EB0CE062962F05247002D61CFDE6ABB8E7E87 ] Wof C:\WINDOWS\system32\drivers\Wof.sys
16:21:21.0624 0x288c Wof - ok
16:21:21.0734 0x288c [ 0D3303BDBC591ECF113601D7853A1AA7, 437CF89541696E0B1A8056F4A5189642FC76D762113ED4F71458AF4D72FC3E9A ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
16:21:21.0812 0x288c workfolderssvc - ok
16:21:21.0812 0x288c WpcMonSvc - ok
16:21:21.0859 0x288c [ 25180559693250D7B7FF16A6BE7AC9BE, 1872BC298C3ED6A204B3BA2AB13D08EB9DAE5B30B7F83CA7A67BFDECA8D043AD ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
16:21:21.0890 0x288c WPDBusEnum - ok
16:21:21.0937 0x288c [ 15C1131EA0216F799C86B03EDAE0BE45, 39F50C084407BC3B498714B74DDA5D63E0539681F324A18ABBED3CD0DE5D52AA ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
16:21:21.0953 0x288c WpdUpFltr - ok
16:21:22.0015 0x288c [ 096969606BB5C4822AB020081EA07FC5, 522F372834B0497215F45ACBC417DA10DCE45C6D3C7099E47BBA18700C294B22 ] WpnService C:\WINDOWS\system32\WpnService.dll
16:21:22.0046 0x288c WpnService - ok
16:21:22.0109 0x288c [ 8B694BC50D2D2B98311283CFE5B40EE6, 734F8985CAD99E8635ACF09309D958D2B7FB05C6FF54DBE3623DC071BECE3413 ] WpnUserService C:\WINDOWS\System32\WpnUserService.dll
16:21:22.0140 0x288c WpnUserService - ok
16:21:22.0156 0x288c ws2ifsl - ok
16:21:22.0212 0x288c [ DCB549367EB94CD8AFAA28E3F77F6493, 9FD2C6E03F398E76403502CFC94EB8EBD2F90ED5E95ABA5E86C1B7F63601C43C ] wscsvc C:\WINDOWS\System32\wscsvc.dll
16:21:22.0243 0x288c wscsvc - ok
16:21:22.0259 0x288c WSearch - ok
16:21:22.0274 0x288c [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
16:21:22.0290 0x288c wsvd - ok
16:21:22.0306 0x288c wuauserv - ok
16:21:22.0352 0x288c [ 813DC18CC654CFB1875074139B0FEFD3, 87901841AFD9224BFEC06A712BE3C2371E16D3571210D4792F91034A2B926A06 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
16:21:22.0399 0x288c WudfPf - ok
16:21:22.0415 0x288c [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
16:21:22.0430 0x288c WUDFRd - ok
16:21:22.0446 0x288c [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
16:21:22.0477 0x288c WUDFWpdFs - ok
16:21:22.0477 0x288c [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
16:21:22.0509 0x288c WUDFWpdMtp - ok
16:21:22.0602 0x288c [ FAFE3B08208AA28C82BC42731B4EEBE8, 333D9CBE6B3492BC30A7B64C1F83494B38AD2CE7C832C1D68FEBD2EB8029230D ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
16:21:22.0680 0x288c WwanSvc - ok
16:21:22.0727 0x288c [ 51D3A1E2285E2E931A553281BBA10E81, 8B371AF5E7717C53780A5C2F68400412C4DB0F01AC6551476FF062B83A7D0AC8 ] xbgm C:\WINDOWS\system32\xbgmsvc.exe
16:21:22.0774 0x288c xbgm - ok
16:21:22.0868 0x288c [ DB952AD196A9548CF5235A71E5197F3F, 6C51EB14B2808665FCB999F376A97018F6B0A91EE6E63A25C044EA59A5713EE1 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll
16:21:22.0930 0x288c XblAuthManager - ok
16:21:22.0977 0x288c [ 8C0DD7BFFF5A81AEC26AD720057F5451, 4503D4DD540DB9977BBFF3BF7E92BE9778578B769972CF8A54AF0F1FF5C79BF5 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll
16:21:23.0040 0x288c XblGameSave - ok
16:21:23.0102 0x288c [ 0AA38B54EB292CB3EB13FFF948473DBA, C5256ABC0A4A2117EC6F1C88B5BFDBECAE673AD47639A274BFFF92A46452E9B0 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
16:21:23.0149 0x288c xboxgip - ok
16:21:23.0165 0x288c [ C7FEC5C0377E5598BA919B29731CA45F, C153C62742B6F981905AEF7C464761E5894260F26EE164968B21D93979376378 ] XboxGipSvc C:\WINDOWS\System32\XboxGipSvc.dll
16:21:23.0180 0x288c XboxGipSvc - ok
16:21:23.0274 0x288c [ 3A94BD93CD2D9C34725D924230B502A5, 87AF2061D348FFFA190D0E50E6860903BED46968CF64B7765D8D80127C702E6A ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll
16:21:23.0337 0x288c XboxNetApiSvc - ok
16:21:23.0399 0x288c [ CE1F78B5C1F14F74242008B2B3153FA2, 682D1F32DD1BBEB031D5129CE40D9C77D3C6CF4FB5979F1918B2482AF617B5BE ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
16:21:23.0430 0x288c xinputhid - ok
16:21:23.0430 0x288c ================ Scan global ===============================
16:21:23.0493 0x288c [ Global ] - ok
16:21:23.0493 0x288c ================ Scan MBR ==================================
16:21:23.0540 0x288c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
16:21:23.0634 0x288c \Device\Harddisk0\DR0 - ok
16:21:23.0634 0x288c ================ Scan VBR ==================================
16:21:23.0649 0x288c [ 41E58307B07AB4E5CD2339BAE2FC578D ] \Device\Harddisk0\DR0\Partition1
16:21:23.0649 0x288c \Device\Harddisk0\DR0\Partition1 - ok
16:21:23.0680 0x288c [ 1748CDAE4C2EA185860D5EEBEED55777 ] \Device\Harddisk0\DR0\Partition2
16:21:23.0680 0x288c \Device\Harddisk0\DR0\Partition2 - ok
16:21:23.0696 0x288c [ 70B16FFE6B2D8C3CF9ECE238B16083B8 ] \Device\Harddisk0\DR0\Partition3
16:21:23.0696 0x288c \Device\Harddisk0\DR0\Partition3 - ok
16:21:23.0696 0x288c [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition4
16:21:23.0696 0x288c \Device\Harddisk0\DR0\Partition4 - ok
16:21:23.0712 0x288c [ 5CB2E957A4D8F6AD705E745B65038F08 ] \Device\Harddisk0\DR0\Partition5
16:21:23.0712 0x288c \Device\Harddisk0\DR0\Partition5 - ok
16:21:23.0747 0x288c [ 9552335E875F1B7A61A711616E30A727 ] \Device\Harddisk0\DR0\Partition6
16:21:23.0747 0x288c \Device\Harddisk0\DR0\Partition6 - ok
16:21:23.0759 0x288c ================ Scan generic autorun ======================
16:21:23.0837 0x288c SecurityHealth - ok
16:21:24.0228 0x288c [ 324B8DDDF70D28B7A767E0608256DF36, 2FA4AA3F5E6D9C16A50F986027708AF657ADE9AE2A286E4F7686A1DF510FC2C1 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
16:21:24.0525 0x288c RTHDVCPL - ok
16:21:24.0556 0x288c [ 17716C3DD52BF815291D80FAAF329AC7, 3E42FBED89BF8CE6C0EE8C97C050358ED98577BB1DDFA93CDE25F431FC55138E ] C:\WINDOWS\jmesoft\hotkey.exe
16:21:24.0572 0x288c jmekey - detected UnsignedFile.Multi.Generic ( 1 )
16:21:24.0603 0x288c Detect skipped due to KSN trusted
16:21:24.0603 0x288c jmekey - ok
16:21:24.0619 0x288c [ A7464F6ED03611109F435218E424AAB8, 2C582D2E97F5AE97D1FBEC0493DF45A8EAF2D2CA93048556FD11B4AAA09956E6 ] C:\Windows\jmesoft\ServiceLoader.exe
16:21:24.0619 0x288c jmesoft - detected UnsignedFile.Multi.Generic ( 1 )
16:21:24.0665 0x288c Detect skipped due to KSN trusted
16:21:24.0665 0x288c jmesoft - ok
16:21:24.0806 0x288c [ 50299DBA20F8A1735830914777B55932, 7A8864A9FA81BF6C53797B7B8FCC2199B812A7E913D35387A0C5C63C170BAC02 ] C:\Program Files\Lenovo\LVT\LJYZ.exe
16:21:24.0822 0x288c LVT - ok
16:21:24.0884 0x288c [ 0B427D9943C838620AFA30CBB24A6D77, 5A98B1405126F79846C810E739E964B11A4397F3DE597991308DB3C6AABB8F81 ] C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe
16:21:24.0884 0x288c CLMLServer - ok
16:21:24.0915 0x288c [ 8F83160C43C61FC6775391B46B7C16BF, 648588126B2CD0B9F50F478BF4F7474137D1285061A3B22B56C1CB5B4FD3C3BF ] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe
16:21:24.0915 0x288c UpdateP2GoShortCut - ok
16:21:25.0025 0x288c [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
16:21:25.0040 0x288c HP Software Update - ok
16:21:25.0197 0x288c [ FF75DE91DBC310D18B02C22A834A7A2C, 3FDB6303A4353A5FD2A2A5FE702B421EE4D2FD881FEEE8D685FEA82E94EB4F4C ] C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe
16:21:25.0275 0x288c KeePass 2 PreLoad - ok
16:21:25.0290 0x288c [ C049C40CAEE8900130BD5F80B594CC7B, F54FC31662A9B8032B380793D534F34A0C63FED9C84DE313D17A61612EB31DC4 ] C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
16:21:25.0306 0x288c RemoteControl10 - ok
16:21:25.0337 0x288c [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
16:21:25.0353 0x288c APSDaemon - ok
16:21:25.0415 0x288c [ 6AA6EB9015736EF3F2F3D81FBC79B453, E86C04668A1D1B977997E51CC149582C2BE7E13227227A5BE7E38501197F7202 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
16:21:25.0431 0x288c SunJavaUpdateSched - ok
16:21:26.0056 0x288c [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
16:21:26.0572 0x288c OneDriveSetup - ok
16:21:26.0681 0x288c [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
16:21:26.0697 0x288c WAB Migrate - ok
16:21:27.0259 0x288c [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
16:21:27.0790 0x288c OneDriveSetup - ok
16:21:27.0837 0x288c [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
16:21:27.0869 0x288c WAB Migrate - ok
16:21:27.0884 0x288c Uninstall 17.3.7076.1026_1\amd64 - ok
16:21:27.0900 0x288c Uninstall 17.3.7076.1026_1 - ok
16:21:27.0947 0x288c [ 0999D2C471C8FBFDB5231D62A22100A6, C3610EF1B73157BB509B2B40FFEC89C04D8DF18C9B29A3CB9F9A3C415E23258B ] C:\Program Files (x86)\Fieldston Software\gSyncit\gsyncit.exe
16:21:27.0978 0x288c gSyncit - detected UnsignedFile.Multi.Generic ( 1 )
16:21:28.0009 0x288c Detect skipped due to KSN trusted
16:21:28.0009 0x288c gSyncit - ok
16:21:28.0212 0x288c [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] C:\Users\Sigi\AppData\Local\Dropbox\Update\DropboxUpdate.exe
16:21:28.0228 0x288c Dropbox Update - ok
16:21:28.0297 0x288c [ F0B461FB820595E8BAF1161F55BE3E74, B8022060E7280DC568BFC230CA99D37C09092152D0CEE91B08401ACD725E82A2 ] C:\Users\Sigi\AppData\Roaming\Spotify\SpotifyWebHelper.exe
16:21:28.0328 0x288c Spotify Web Helper - ok
16:21:28.0344 0x288c Uninstall 18.065.0329.0002\amd64 - ok
16:21:28.0359 0x288c Uninstall 18.065.0329.0002 - ok
16:21:28.0906 0x288c [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
16:21:29.0422 0x288c OneDriveSetup - ok
16:21:29.0469 0x288c [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
16:21:29.0531 0x288c WAB Migrate - ok
16:21:29.0531 0x288c Waiting for KSN requests completion. In queue: 259
16:21:30.0562 0x288c AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x61100 ( enabled : updated )
16:21:30.0578 0x288c Win FW state via NFP2: enabled ( trusted )
16:21:30.0656 0x288c ============================================================
16:21:30.0656 0x288c Scan finished
16:21:30.0656 0x288c ============================================================
16:21:30.0672 0x2c9c Detected object count: 0
16:21:30.0672 0x2c9c Actual detected object count: 0 |