09:07:16.0916 0x0f20 TDSS rootkit removing tool 3.0.0.41 Oct 28 2014 17:58:34
09:07:39.0291 0x0f20 ============================================================
09:07:39.0291 0x0f20 Current date / time: 2014/10/30 09:07:39.0291
09:07:39.0291 0x0f20 SystemInfo:
09:07:39.0291 0x0f20
09:07:39.0291 0x0f20 OS Version: 6.1.7600 ServicePack: 0.0
09:07:39.0291 0x0f20 Product type: Workstation
09:07:39.0306 0x0f20 ComputerName: QHSE
09:07:39.0306 0x0f20 UserName: presentation
09:07:39.0306 0x0f20 Windows directory: C:\Windows
09:07:39.0306 0x0f20 System windows directory: C:\Windows
09:07:39.0306 0x0f20 Processor architecture: Intel x86
09:07:39.0306 0x0f20 Number of processors: 1
09:07:39.0306 0x0f20 Page size: 0x1000
09:07:39.0306 0x0f20 Boot type: Normal boot
09:07:39.0306 0x0f20 ============================================================
09:07:41.0181 0x0f20 KLMD registered as C:\Windows\system32\drivers\62079618.sys
09:07:41.0947 0x0f20 System UUID: {9E389817-9927-C219-1F89-1C439CC09BD8}
09:07:43.0041 0x0f20 Drive \Device\Harddisk0\DR0 - Size: 0xBA5541C00 ( 46.58 Gb ), SectorSize: 0x200, Cylinders: 0x17C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
09:07:43.0041 0x0f20 Drive \Device\Harddisk1\DR1 - Size: 0xF6800000 ( 3.85 Gb ), SectorSize: 0x200, Cylinders: 0x1F6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
09:07:43.0041 0x0f20 ============================================================
09:07:43.0041 0x0f20 \Device\Harddisk0\DR0:
09:07:43.0041 0x0f20 MBR partitions:
09:07:43.0041 0x0f20 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x80344B, BlocksNum 0x5523375
09:07:43.0041 0x0f20 \Device\Harddisk1\DR1:
09:07:43.0041 0x0f20 MBR partitions:
09:07:43.0041 0x0f20 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xB, StartLBA 0x230, BlocksNum 0x7B3DD0
09:07:43.0041 0x0f20 ============================================================
09:07:43.0087 0x0f20 C: <-> \Device\Harddisk0\DR0\Partition1
09:07:43.0087 0x0f20 ============================================================
09:07:43.0087 0x0f20 Initialize success
09:07:43.0087 0x0f20 ============================================================
09:07:51.0087 0x0ddc ============================================================
09:07:51.0087 0x0ddc Scan started
09:07:51.0087 0x0ddc Mode: Manual;
09:07:51.0087 0x0ddc ============================================================
09:07:51.0087 0x0ddc KSN ping started
09:07:51.0134 0x0ddc KSN ping finished: false
09:07:52.0259 0x0ddc ================ Scan system memory ========================
09:07:52.0259 0x0ddc System memory - ok
09:07:52.0275 0x0ddc ================ Scan services =============================
09:07:52.0681 0x0ddc [ 6D2ACA41739BFE8CB86EE8E85F29697D, 74A4F53C8309A8E5E94CDE4D440DD5308566185E6D8D98FD08E70A25BD728C91 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
09:07:52.0697 0x0ddc 1394ohci - ok
09:07:52.0822 0x0ddc [ F0E07D144C8685B8774BC32FC8DA4DF0, 39816ED2623CA9ABE2B2EDCDB2F8481634742F00FEEF7E324F34D2BAAD668A67 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
09:07:52.0837 0x0ddc ACPI - ok
09:07:52.0931 0x0ddc [ 98D81CA942D19F7D9153B095162AC013, ACE5C073323176621F3312AA9B1EE1A3382F8CDD590D90DC57B34035FD6BC281 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
09:07:52.0931 0x0ddc AcpiPmi - ok
09:07:53.0228 0x0ddc [ C5679E5186B2FC95BC76A8A9870D5456, 70AC61850B811A0A902532F098AE1D5DF4622455E56C78B89D4ABDBE4A061A48 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
09:07:53.0228 0x0ddc AdobeARMservice - ok
09:07:53.0369 0x0ddc [ 4ECFCAAE5CB380F58934F0DCF5F64E7F, D82B37E57D93484D7A3CB65470BCD54A578A695F0203A8DD441B1348C1EEA751 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
09:07:53.0384 0x0ddc AdobeFlashPlayerUpdateSvc - ok
09:07:53.0541 0x0ddc [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
09:07:53.0572 0x0ddc adp94xx - ok
09:07:53.0666 0x0ddc [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
09:07:53.0697 0x0ddc adpahci - ok
09:07:53.0759 0x0ddc [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
09:07:53.0759 0x0ddc adpu320 - ok
09:07:53.0837 0x0ddc [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
09:07:53.0837 0x0ddc AeLookupSvc - ok
09:07:53.0916 0x0ddc [ DDC040FDB01EF1712A6B13E52AFB104C, BF17E91BBB85A04F1EEF580CD006101332CDE5B876A0D04C6932F30707BB184F ] AFD C:\Windows\system32\drivers\afd.sys
09:07:53.0931 0x0ddc AFD - ok
09:07:54.0009 0x0ddc [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
09:07:54.0009 0x0ddc aic78xx - ok
09:07:54.0541 0x0ddc [ 7997B6F02CBDA0E31FA18CC85871B938, 1960717C0328ADCEDEEF281FB98E1DD899BFFF9FBEC025B732E20D9E9F3A956B ] ALCXWDM C:\Windows\system32\drivers\RTKVAC.SYS
09:07:54.0994 0x0ddc ALCXWDM - ok
09:07:55.0103 0x0ddc [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
09:07:55.0119 0x0ddc ALG - ok
09:07:55.0166 0x0ddc [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
09:07:55.0166 0x0ddc aliide - ok
09:07:55.0197 0x0ddc [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\DRIVERS\amdagp.sys
09:07:55.0212 0x0ddc amdagp - ok
09:07:55.0259 0x0ddc [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\DRIVERS\amdide.sys
09:07:55.0275 0x0ddc amdide - ok
09:07:55.0322 0x0ddc [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
09:07:55.0322 0x0ddc AmdK8 - ok
09:07:55.0400 0x0ddc [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
09:07:55.0400 0x0ddc AmdPPM - ok
09:07:55.0447 0x0ddc [ 2101A86C25C154F8314B24EF49D7FBC2, E4C1326CF55850793B45B2BFDF361C4E98A07FB13E08BFD6DB50135489700998 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
09:07:55.0447 0x0ddc amdsata - ok
09:07:55.0541 0x0ddc [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
09:07:55.0556 0x0ddc amdsbs - ok
09:07:55.0603 0x0ddc [ B81C2B5616F6420A9941EA093A92B150, DA2000C9E06533232F8716A6674BC9DFD5C3AAE1FC46F7A91B8E917DB913F42F ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
09:07:55.0603 0x0ddc amdxata - ok
09:07:55.0650 0x0ddc [ FEB834C02CE1E84B6A38F953CA067706, E5A7F8B632ABFBD1283C3D44FB02449814EDB653B204E1720DAA780A6D64FD01 ] AppID C:\Windows\system32\drivers\appid.sys
09:07:55.0666 0x0ddc AppID - ok
09:07:55.0712 0x0ddc [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc C:\Windows\System32\appidsvc.dll
09:07:55.0712 0x0ddc AppIDSvc - ok
09:07:55.0775 0x0ddc [ 7DEAD9E3F65DCB2794F2711003BBF650, F541C30EEFD1BDB70F361B878B6E51DC728873695DD137148CE531FBACCDA21B ] Appinfo C:\Windows\System32\appinfo.dll
09:07:55.0775 0x0ddc Appinfo - ok
09:07:55.0884 0x0ddc [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt C:\Windows\System32\appmgmts.dll
09:07:55.0884 0x0ddc AppMgmt - ok
09:07:55.0962 0x0ddc [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\DRIVERS\arc.sys
09:07:55.0962 0x0ddc arc - ok
09:07:56.0009 0x0ddc [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
09:07:56.0025 0x0ddc arcsas - ok
09:07:56.0072 0x0ddc [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
09:07:56.0087 0x0ddc AsyncMac - ok
09:07:56.0134 0x0ddc [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\DRIVERS\atapi.sys
09:07:56.0134 0x0ddc atapi - ok
09:07:56.0353 0x0ddc [ 76BAB0C824E2D05B940C4DD40A9B08BF, 237C60123F5AFF06C20757E2791C0CA383DE094DB634C239E375639B1B923844 ] athr C:\Windows\system32\DRIVERS\athr.sys
09:07:56.0509 0x0ddc athr - ok
09:07:56.0619 0x0ddc [ 510C873BFA135AA829F4180352772734, BC528D840EB338B0C5D11801C63D8EADD40AF8043DC77ACB4B42E8D20767538F ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
09:07:56.0650 0x0ddc AudioEndpointBuilder - ok
09:07:56.0744 0x0ddc [ 510C873BFA135AA829F4180352772734, BC528D840EB338B0C5D11801C63D8EADD40AF8043DC77ACB4B42E8D20767538F ] Audiosrv C:\Windows\System32\Audiosrv.dll
09:07:56.0775 0x0ddc Audiosrv - ok
09:07:56.0916 0x0ddc [ EA2D28BBE98256654397CD1F6EAEBDD8, 97BBE5A2C9F2AE4675E6652AD79B1FCAEA76064FB37DBF238947ACA81D3017DF ] Autodesk Licensing Service C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
09:07:56.0916 0x0ddc Autodesk Licensing Service - ok
09:07:57.0009 0x0ddc [ DD6A431B43E34B91A767D1CE33728175, 8BFF6474C9DFBEC96FA7B2789EF9B17C7910B52DBCF70CDA1F0C698CFA5EFB6E ] AxInstSV C:\Windows\System32\AxInstSV.dll
09:07:57.0025 0x0ddc AxInstSV - ok
09:07:57.0134 0x0ddc [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
09:07:57.0181 0x0ddc b06bdrv - ok
09:07:57.0275 0x0ddc [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
09:07:57.0306 0x0ddc b57nd60x - ok
09:07:57.0400 0x0ddc [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
09:07:57.0400 0x0ddc BDESVC - ok
09:07:57.0462 0x0ddc [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys
09:07:57.0462 0x0ddc Beep - ok
09:07:57.0572 0x0ddc [ 85AC71C045CEB054ED48A7841AAE0C11, BA0C0CC50E5C49838116AC9A12A7CF1A683601FD08D3CF6EC06620C51C0806FF ] BFE C:\Windows\System32\bfe.dll
09:07:57.0619 0x0ddc BFE - ok
09:07:57.0744 0x0ddc [ 53F476476F55A27F580661BDE09C4EC4, 90DFBF97F011CFF41D2CFA2E33978BC746A7E693AC75EED1436130C4F10B4E67 ] BITS C:\Windows\System32\qmgr.dll
09:07:57.0822 0x0ddc BITS - ok
09:07:57.0884 0x0ddc [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
09:07:57.0884 0x0ddc blbdrive - ok
09:07:57.0916 0x0ddc [ FCAFAEF6798D7B51FF029F99A9898961, BFB37686B1386EB883B99DB6AC342C20514939F8B7A5CEC5D63865B3DC2B4D4F ] bowser C:\Windows\system32\DRIVERS\bowser.sys
09:07:57.0916 0x0ddc bowser - ok
09:07:57.0962 0x0ddc [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
09:07:57.0962 0x0ddc BrFiltLo - ok
09:07:57.0994 0x0ddc [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
09:07:57.0994 0x0ddc BrFiltUp - ok
09:07:58.0056 0x0ddc [ 598E1280E7FF3744F4B8329366CC5635, 9B6392AEBE7EF26253487AF8C7C114822ABB187BA32DA8DBF622DB1B8DA6F1C0 ] Browser C:\Windows\System32\browser.dll
09:07:58.0072 0x0ddc Browser - ok
09:07:58.0134 0x0ddc [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
09:07:58.0181 0x0ddc Brserid - ok
09:07:58.0212 0x0ddc [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
09:07:58.0212 0x0ddc BrSerWdm - ok
09:07:58.0244 0x0ddc [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
09:07:58.0244 0x0ddc BrUsbMdm - ok
09:07:58.0306 0x0ddc [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
09:07:58.0306 0x0ddc BrUsbSer - ok
09:07:58.0353 0x0ddc [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
09:07:58.0369 0x0ddc BTHMODEM - ok
09:07:58.0462 0x0ddc [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
09:07:58.0462 0x0ddc bthserv - ok
09:07:58.0525 0x0ddc [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
09:07:58.0541 0x0ddc cdfs - ok
09:07:58.0603 0x0ddc [ BA6E70AA0E6091BC39DE29477D866A77, A17A68BDA46995F75FB1C2C593A81CD3B2BFE290CEAA45FA2380DDF5537A23C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
09:07:58.0619 0x0ddc cdrom - ok
09:07:58.0681 0x0ddc [ 628A9E30EC5E18DD5DE6BE4DBDC12198, DDA43DCCB195440D6BD5752BD00D984F45BD6D23DBE2A656C33E3CD1E5D17AD7 ] CertPropSvc C:\Windows\System32\certprop.dll
09:07:58.0681 0x0ddc CertPropSvc - ok
09:07:58.0728 0x0ddc [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
09:07:58.0728 0x0ddc circlass - ok
09:07:58.0822 0x0ddc [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS C:\Windows\system32\CLFS.sys
09:07:58.0853 0x0ddc CLFS - ok
09:07:58.0994 0x0ddc [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
09:07:59.0009 0x0ddc clr_optimization_v2.0.50727_32 - ok
09:07:59.0056 0x0ddc [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
09:07:59.0056 0x0ddc CmBatt - ok
09:07:59.0087 0x0ddc [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
09:07:59.0103 0x0ddc cmdide - ok
09:07:59.0181 0x0ddc [ 1B675691ED940766149C93E8F4488D68, A55C41B2B343B1CF53D737ED1752D0510052094FFC60FDB833279A8A52398132 ] CNG C:\Windows\system32\Drivers\cng.sys
09:07:59.0212 0x0ddc CNG - ok
09:07:59.0275 0x0ddc [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
09:07:59.0275 0x0ddc Compbatt - ok
09:07:59.0337 0x0ddc [ F1724BA27E97D627F808FB0BA77A28A6, F7D69082EEFEC0FB8B309F6AEE282D4A5DFC1A40851ED65904AA9582C5DEA5AB ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
09:07:59.0337 0x0ddc CompositeBus - ok
09:07:59.0369 0x0ddc COMSysApp - ok
09:07:59.0416 0x0ddc [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
09:07:59.0431 0x0ddc crcdisk - ok
09:07:59.0525 0x0ddc [ 9C231178CE4FB385F4B54B0A9080B8A4, 08EFAEBFF68D5CCE432D75116ED4BDC63FEA651459C9AD363CBEEDB769806527 ] CryptSvc C:\Windows\system32\cryptsvc.dll
09:07:59.0525 0x0ddc CryptSvc - ok
09:07:59.0619 0x0ddc [ 27C9490BDD0AE48911AB8CF1932591ED, 751F576F797F8A7BA576C32598BD6FD2E60D4FACC7836CC5BA3F68C38D27CCCA ] CSC C:\Windows\system32\drivers\csc.sys
09:07:59.0666 0x0ddc CSC - ok
09:07:59.0775 0x0ddc [ 56FB5F222EA30D3D3FC459879772CB73, 2C4646774575858E26DBA9C73853E06D0BD18CC8A4C73C633071FF5FE04CA0F4 ] CscService C:\Windows\System32\cscsvc.dll
09:07:59.0853 0x0ddc CscService - ok
09:07:59.0947 0x0ddc [ B82CD39E336973359D7C9BF911E8E84F, 45DB8F1E88FC25A81D2F3C2F8A8CDB6B34C44950B038E24FB71DCDD9823DB22A ] DcomLaunch C:\Windows\system32\rpcss.dll
09:07:59.0978 0x0ddc DcomLaunch - ok
09:08:00.0056 0x0ddc [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
09:08:00.0072 0x0ddc defragsvc - ok
09:08:00.0134 0x0ddc [ 8E09E52EE2E3CEB199EF3DD99CF9E3FB, B03D0CF11C1D0DCBB76E74D796F3AFA2F9598C918017C29670BED4E3A9962EF5 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
09:08:00.0134 0x0ddc DfsC - ok
09:08:00.0244 0x0ddc [ C56495FBD770712367CAD35E5DE72DA6, 9D5456A2E208F542F0B6C951EFCABA2A10919777C4287D7298A28F543D5BAC32 ] Dhcp C:\Windows\system32\dhcpcore.dll
09:08:00.0259 0x0ddc Dhcp - ok
09:08:00.0291 0x0ddc [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys
09:08:00.0306 0x0ddc discache - ok
09:08:00.0384 0x0ddc [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\DRIVERS\disk.sys
09:08:00.0384 0x0ddc Disk - ok
09:08:00.0447 0x0ddc [ D0722E963D3C6145446874241401B209, 542B3E6EC7E0161AB4732380343139959775E749996A97684A5D423833DDB196 ] Dnscache C:\Windows\System32\dnsrslvr.dll
09:08:00.0462 0x0ddc Dnscache - ok
09:08:00.0509 0x0ddc [ 4408C85C21EEA48EB0CE486BAEEF0502, 67EA726F4053665D94D7790EC89616EA0698A7548073A9211E3F75937B4384BE ] dot3svc C:\Windows\System32\dot3svc.dll
09:08:00.0525 0x0ddc dot3svc - ok
09:08:00.0619 0x0ddc [ 7FA81C6E11CAA594ADB52084DA73A1E5, 9ED1C585D9CA091E75E4A2A1E5B923B104EBDC5FC9D12154DE909C583E4D0CAE ] DPS C:\Windows\system32\dps.dll
09:08:00.0634 0x0ddc DPS - ok
09:08:00.0697 0x0ddc [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
09:08:00.0712 0x0ddc drmkaud - ok
09:08:00.0822 0x0ddc [ 39806CFEDDCC55E686A49BCCD2972F23, EFD5816D3E8E7F0F8D8E52AB9C534737F32D2D6D3EACCA78940792C553881C64 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
09:08:00.0900 0x0ddc DXGKrnl - ok
09:08:00.0994 0x0ddc [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
09:08:00.0994 0x0ddc EapHost - ok
09:08:01.0369 0x0ddc [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
09:08:01.0634 0x0ddc ebdrv - ok
09:08:01.0728 0x0ddc [ F42309C4191C506B71DB5D1126D26318, 29B0A8889857CEBFA6CBD795D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] EFS C:\Windows\System32\lsass.exe
09:08:01.0728 0x0ddc EFS - ok
09:08:01.0869 0x0ddc [ 3A74A6E33685662B125A3269B1F2114F, 183E180E4B35E549B5D7363D926E17226FF70CFDE7328F7B0B3676B9A27E2569 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
09:08:01.0916 0x0ddc ehRecvr - ok
09:08:01.0978 0x0ddc [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
09:08:01.0994 0x0ddc ehSched - ok
09:08:02.0087 0x0ddc [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
09:08:02.0134 0x0ddc elxstor - ok
09:08:02.0166 0x0ddc [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
09:08:02.0166 0x0ddc ErrDev - ok
09:08:02.0291 0x0ddc [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
09:08:02.0337 0x0ddc EventSystem - ok
09:08:02.0416 0x0ddc [ 82E7EB9F12321052CD9A904B13724EE2, 47025BCC20F0C86E4ADD127D25402813CE2DEBB768A99CF54BE08466E4D29206 ] ewusbnet C:\Windows\system32\DRIVERS\ewusbnet.sys
09:08:02.0431 0x0ddc ewusbnet - ok
09:08:02.0478 0x0ddc [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
09:08:02.0494 0x0ddc exfat - ok
09:08:02.0541 0x0ddc [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
09:08:02.0556 0x0ddc fastfat - ok
09:08:02.0681 0x0ddc [ F7EA23CC5E6BF2181F3F399D54F6EFC1, 4659A2EDC5D5171668FB20BED7B56466A674876888519D6F524F7456EBD11263 ] Fax C:\Windows\system32\fxssvc.exe
09:08:02.0728 0x0ddc Fax - ok
09:08:02.0791 0x0ddc [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
09:08:02.0791 0x0ddc fdc - ok
09:08:02.0837 0x0ddc [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
09:08:02.0853 0x0ddc fdPHost - ok
09:08:02.0884 0x0ddc [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
09:08:02.0900 0x0ddc FDResPub - ok
09:08:02.0962 0x0ddc [ F5CB6CB6D12F495516BE27CFFCCDE4BF, 52F61636E9C7CD967A78DC4401C4CF7D7768B9C940F1DCC01EB4DD1A48837E89 ] FETNDIS C:\Windows\system32\DRIVERS\fetnd6.sys
09:08:02.0962 0x0ddc FETNDIS - ok
09:08:02.0994 0x0ddc [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
09:08:03.0009 0x0ddc FileInfo - ok
09:08:03.0056 0x0ddc [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
09:08:03.0056 0x0ddc Filetrace - ok
09:08:03.0103 0x0ddc [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
09:08:03.0103 0x0ddc flpydisk - ok
09:08:03.0166 0x0ddc [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
09:08:03.0181 0x0ddc FltMgr - ok
09:08:03.0369 0x0ddc [ B6512A85815FDC3D560C3705F5BDB93D, A04D60BF4649DD7582C0E26E9CED93841D8B2729FDF6E1551F48A94AFD5A6436 ] FontCache C:\Windows\system32\FntCache.dll
09:08:03.0462 0x0ddc FontCache - ok
09:08:03.0556 0x0ddc [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
09:08:03.0556 0x0ddc FontCache3.0.0.0 - ok
09:08:03.0619 0x0ddc [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
09:08:03.0619 0x0ddc FsDepends - ok
09:08:03.0650 0x0ddc [ A574B4360E438977038AAE4BF60D79A2, 7255CCDDDAC4853FA72E6487408C4B7390CBA37549CE952929B2A9CF3327C616 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
09:08:03.0650 0x0ddc Fs_Rec - ok
09:08:03.0728 0x0ddc [ 5592F5DBA26282D24D2B080EB438A4D7, 5376D6CFFE9A1406CFA0BF4325EB65206F57A5C50034DA7EB4238BEB08D4D6DB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
09:08:03.0759 0x0ddc fvevol - ok
09:08:03.0822 0x0ddc [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
09:08:03.0822 0x0ddc gagp30kx - ok
09:08:03.0947 0x0ddc [ 8BA3C04702BF8F927AB36AE8313CA4EE, 3B6460C8134AA9D6E4FB978201B35FE9B67DD5BBB6C8D9625F3097DDA30C2893 ] gpsvc C:\Windows\System32\gpsvc.dll
09:08:04.0025 0x0ddc gpsvc - ok
09:08:04.0166 0x0ddc [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
09:08:04.0181 0x0ddc gupdate - ok
09:08:04.0259 0x0ddc [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
09:08:04.0259 0x0ddc gupdatem - ok
09:08:04.0337 0x0ddc [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
09:08:04.0353 0x0ddc gusvc - ok
09:08:04.0400 0x0ddc [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
09:08:04.0416 0x0ddc hcw85cir - ok
09:08:04.0462 0x0ddc [ 717A2207FD6F13AD3E664C7D5A43C7BF, BF28A6F00B64FA0E801493E3289CFFD5E313E724DF7B5AB521C9E37A20890DCF ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
09:08:04.0462 0x0ddc HDAudBus - ok
09:08:04.0509 0x0ddc [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
09:08:04.0509 0x0ddc HidBatt - ok
09:08:04.0541 0x0ddc [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
09:08:04.0556 0x0ddc HidBth - ok
09:08:04.0634 0x0ddc [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
09:08:04.0634 0x0ddc HidIr - ok
09:08:04.0681 0x0ddc [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll
09:08:04.0681 0x0ddc hidserv - ok
09:08:04.0775 0x0ddc [ 25072FB35AC90B25F9E4E3BACF774102, EBCE089947CC5A251A517CB91E81FCB948B18405FBACA04C874D4A48AF88676D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
09:08:04.0775 0x0ddc HidUsb - ok
09:08:04.0837 0x0ddc [ 741C2A45CA8407E374AABA3E330B7872, FCF31C46297CFDF8240F0E783A61C8463FEDB1EF7A676AB89DFF0EAE9F3534B4 ] hkmsvc C:\Windows\system32\kmsvc.dll
09:08:04.0837 0x0ddc hkmsvc - ok
09:08:04.0916 0x0ddc [ A768CA158BB06782A2835B907F4873C3, EFF736C6BA38FB8FC8807286AB273E7274F505E8E59D952E8563DF77C412C5AE ] HomeGroupListener C:\Windows\system32\ListSvc.dll
09:08:04.0931 0x0ddc HomeGroupListener - ok
09:08:04.0994 0x0ddc [ FB08DEC5EF43D0C66D83B8E9694E7549, 9C9ECE9E90F524791FC5DCE797BAE39605F966592126FF058BA3FA0BEFD07BEB ] HomeGroupProvider C:\Windows\system32\provsvc.dll
09:08:04.0994 0x0ddc HomeGroupProvider - ok
09:08:05.0072 0x0ddc [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
09:08:05.0087 0x0ddc HpSAMD - ok
09:08:05.0166 0x0ddc [ C531C7FD9E8B62021112787C4E2C5A5A, 09205E2A5BFB6C623B312B8AC82F7F7CA8A922B1D9A0E3952BD3BA47BBE1F18C ] HTTP C:\Windows\system32\drivers\HTTP.sys
09:08:05.0244 0x0ddc HTTP - ok
09:08:05.0353 0x0ddc [ 348C3A9D01E68A0222A246346924AA55, 6F8803BA37760043A78DC1E0D4E20853E5ABEF55B0201676B281EC2685E951DD ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys
09:08:05.0353 0x0ddc hwdatacard - ok
09:08:05.0384 0x0ddc [ 8305F33CDE89AD6C7A0763ED0B5A8D42, A7CA4978DC1FF6105EA39124DF854F0B1FD478476B871ED0E018AF3AE2165282 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
09:08:05.0384 0x0ddc hwpolicy - ok
09:08:05.0478 0x0ddc [ AC6B4AABF92867584445D0C435B9248F, D65827515221F20E2F3F6A4C5EFA388E851847A1B13A7E4FE350FB9D1F42D25C ] hwusbdev C:\Windows\system32\DRIVERS\ewusbdev.sys
09:08:05.0494 0x0ddc hwusbdev - ok
09:08:05.0603 0x0ddc [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
09:08:05.0603 0x0ddc i8042prt - ok
09:08:05.0697 0x0ddc [ 934AF4D7C5F457B9F0743F4299B77B67, F232554352BB7CD716D6173FC1AB2661E49480994BB22E9A6FE7A33B51F0A51B ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
09:08:05.0728 0x0ddc iaStorV - ok
09:08:05.0900 0x0ddc [ 5AF815EB5BC9802E5A064E2BA62BFC0C, DC8CED05F623D30C57E8A7A382A219B4266C9C766ABF8A8D71783EACB8607B82 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
09:08:05.0994 0x0ddc idsvc - ok
09:08:06.0056 0x0ddc [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
09:08:06.0056 0x0ddc iirsp - ok
09:08:06.0197 0x0ddc [ FAC0EE6562B121B1399D6E855583F7A5, 034C9EE9232EB2CE64297EC4BCBEB5DA443ED9176C436CC754EF84FFB4AD4B08 ] IKEEXT C:\Windows\System32\ikeext.dll
09:08:06.0291 0x0ddc IKEEXT - ok
09:08:06.0353 0x0ddc [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\DRIVERS\intelide.sys
09:08:06.0353 0x0ddc intelide - ok
09:08:06.0416 0x0ddc [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
09:08:06.0416 0x0ddc intelppm - ok
09:08:06.0478 0x0ddc [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
09:08:06.0494 0x0ddc IPBusEnum - ok
09:08:06.0541 0x0ddc [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
09:08:06.0556 0x0ddc IpFilterDriver - ok
09:08:06.0666 0x0ddc [ 477397B432A256A50EE7E4339EB9EA14, 3722938E69D16962F773F39669E9B90279DC9527BBC63564B33C89DAFD283497 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
09:08:06.0728 0x0ddc iphlpsvc - ok
09:08:06.0775 0x0ddc [ E4454B6C37D7FFD5649611F6496308A7, 5B2AA8C06076C9A1FF944E5EA07C29BA7FABEBB38E6BFB388ED46933EAC465FB ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
09:08:06.0775 0x0ddc IPMIDRV - ok
09:08:06.0837 0x0ddc [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
09:08:06.0853 0x0ddc IPNAT - ok
09:08:06.0916 0x0ddc [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
09:08:06.0916 0x0ddc IRENUM - ok
09:08:06.0962 0x0ddc [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
09:08:06.0962 0x0ddc isapnp - ok
09:08:07.0025 0x0ddc [ ED46C223AE46C6866AB77CDC41C404B7, 1B2A4A3FF0E5F8F02717F20983D57612D62DFF809064A7E524700E7254BB7DB3 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
09:08:07.0041 0x0ddc iScsiPrt - ok
09:08:07.0150 0x0ddc [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
09:08:07.0150 0x0ddc kbdclass - ok
09:08:07.0197 0x0ddc [ 3D9F0EBF350EDCFD6498057301455964, B3CB5F0C045B06C86E683F3C67DC0D4E37AF16E20B189B05C926A5A7011438FB ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
09:08:07.0197 0x0ddc kbdhid - ok
09:08:07.0244 0x0ddc [ F42309C4191C506B71DB5D1126D26318, 29B0A8889857CEBFA6CBD795D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] KeyIso C:\Windows\system32\lsass.exe
09:08:07.0244 0x0ddc KeyIso - ok
09:08:07.0306 0x0ddc [ E36A061EC11B373826905B21BE10948F, CB9F8B76E0A99307A841B66CBD96C7087CC0B068699CBEF01040E37C6EA60E6A ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
09:08:07.0306 0x0ddc KSecDD - ok
09:08:07.0353 0x0ddc [ 26C046977E85B95036453D7B88BA1820, 375B284AFB407CAE417D2090B112A0ED1CCD516ABFDDBFCD5D6AADE859F14ACD ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
09:08:07.0369 0x0ddc KSecPkg - ok
09:08:07.0431 0x0ddc [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
09:08:07.0462 0x0ddc KtmRm - ok
09:08:07.0541 0x0ddc [ BCA92CB047A4326925ECEF759DBAA233, C2A188F5526882A2E3AC4CC0190452DA37CBD93043DFE5571A20E8EFE9D56DA3 ] LanmanServer C:\Windows\system32\srvsvc.dll
09:08:07.0556 0x0ddc LanmanServer - ok
09:08:07.0634 0x0ddc [ B9891F885DCF1F0513A51CB58493CB1F, C883D243E1E7B7AEA031FB90FE4FCEED631F835DC95F9D9D60BC554E6EC358C2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
09:08:07.0634 0x0ddc LanmanWorkstation - ok
09:08:07.0697 0x0ddc [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
09:08:07.0697 0x0ddc lltdio - ok
09:08:07.0775 0x0ddc [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
09:08:07.0791 0x0ddc lltdsvc - ok
09:08:07.0837 0x0ddc [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
09:08:07.0837 0x0ddc lmhosts - ok
09:08:07.0916 0x0ddc [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
09:08:07.0931 0x0ddc LSI_FC - ok
09:08:07.0994 0x0ddc [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
09:08:07.0994 0x0ddc LSI_SAS - ok
09:08:08.0056 0x0ddc [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
09:08:08.0056 0x0ddc LSI_SAS2 - ok
09:08:08.0103 0x0ddc [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
09:08:08.0119 0x0ddc LSI_SCSI - ok
09:08:08.0166 0x0ddc [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
09:08:08.0181 0x0ddc luafv - ok
09:08:08.0228 0x0ddc lxec_device - ok
09:08:08.0275 0x0ddc [ E2B0887816ED336685954E3D8FDAA51D, 4DCB08ADC6A89DCA68D1285734B283B567888EF72249F6BBA73A63D1BD462466 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
09:08:08.0291 0x0ddc Mcx2Svc - ok
09:08:08.0353 0x0ddc [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
09:08:08.0353 0x0ddc megasas - ok
09:08:08.0462 0x0ddc [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
09:08:08.0462 0x0ddc MegaSR - ok
09:08:08.0587 0x0ddc [ FAFE367D032ED82E9332B4C741A20216, 7B123766E360570E0FCB211835B7910D6A1806C25A06BCA9227AB9E993376CA8 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
09:08:08.0587 0x0ddc Microsoft Office Groove Audit Service - ok
09:08:08.0634 0x0ddc [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
09:08:08.0650 0x0ddc MMCSS - ok
09:08:08.0697 0x0ddc [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys
09:08:08.0697 0x0ddc Modem - ok
09:08:08.0806 0x0ddc [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
09:08:08.0806 0x0ddc monitor - ok
09:08:08.0853 0x0ddc [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
09:08:08.0869 0x0ddc mouclass - ok
09:08:08.0916 0x0ddc [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
09:08:08.0916 0x0ddc mouhid - ok
09:08:08.0962 0x0ddc [ 921C18727C5920D6C0300736646931C2, 19ACE502982E9C5B0134676102EAEE96675C9CA237E410DB36C389D6B4078301 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
09:08:08.0962 0x0ddc mountmgr - ok
09:08:09.0025 0x0ddc [ 2AF5997438C55FB79D33D015C30E1974, E8F048A02FEB400C133D0BFC1659921E73B59549E3F7D2A13929901B87A1901F ] mpio C:\Windows\system32\DRIVERS\mpio.sys
09:08:09.0025 0x0ddc mpio - ok
09:08:09.0103 0x0ddc [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
09:08:09.0103 0x0ddc mpsdrv - ok
09:08:09.0244 0x0ddc [ 5CD996CECF45CBC3E8D109C86B82D69E, ABE40DA4DA555D3D5054BE28BF82E775D90DCB9E31409DC95FABF2F016B17700 ] MpsSvc C:\Windows\system32\mpssvc.dll
09:08:09.0306 0x0ddc MpsSvc - ok
09:08:09.0369 0x0ddc [ B1BE47008D20E43DA3ADC37C24CDB89D, 6E8555E84B42E5098227B35EA5ABADF2CD3AC247B37CB9E9304FF67064EBE59B ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
09:08:09.0384 0x0ddc MRxDAV - ok
09:08:09.0431 0x0ddc [ F4A054BE78AF7F410129C4B64B07DC9B, 65E14D38CCAB4FBB0C0D4A12F11B2E150AEC00AC692EE92A5CE6C982CF1190F5 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
09:08:09.0431 0x0ddc mrxsmb - ok
09:08:09.0494 0x0ddc [ DEFFA295BD1895C6ED8E3078412AC60B, 3F13CD67659EC2C8ABADC2C5B48B939ECDC6DB7CAAAAC3C2823AC12842BC1630 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
09:08:09.0509 0x0ddc mrxsmb10 - ok
09:08:09.0572 0x0ddc [ 24D76ABE5DCAD22F19D105F76FDF0CE1, D0A7E033B4DF4AA5A9600A2A7A890FDE20AC7CE87C660817EB92FE10E2DAD343 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
09:08:09.0572 0x0ddc mrxsmb20 - ok
09:08:09.0603 0x0ddc [ 4326D168944123F38DD3B2D9C37A0B12, 322AE93418BE3BA6B3E11C86431EC3F4B23CADC3B968B92978A08A7C0D0D8902 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
09:08:09.0619 0x0ddc msahci - ok
09:08:09.0666 0x0ddc [ 455029C7174A2DBB03DBA8A0D8BDDD9A, 614D71978B024109ADD9A7A74F74ABD5FAA1C36A2E859AF288398EAE7CD76DF2 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
09:08:09.0681 0x0ddc msdsm - ok
09:08:09.0728 0x0ddc [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
09:08:09.0744 0x0ddc MSDTC - ok
09:08:09.0775 0x0ddc [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
09:08:09.0791 0x0ddc Msfs - ok
09:08:09.0837 0x0ddc [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
09:08:09.0837 0x0ddc mshidkmdf - ok
09:08:09.0884 0x0ddc [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
09:08:09.0884 0x0ddc msisadrv - ok
09:08:09.0962 0x0ddc [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
09:08:09.0978 0x0ddc MSiSCSI - ok
09:08:10.0009 0x0ddc msiserver - ok
09:08:10.0072 0x0ddc [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
09:08:10.0072 0x0ddc MSKSSRV - ok
09:08:10.0103 0x0ddc [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
09:08:10.0103 0x0ddc MSPCLOCK - ok
09:08:10.0166 0x0ddc [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
09:08:10.0166 0x0ddc MSPQM - ok
09:08:10.0228 0x0ddc [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
09:08:10.0244 0x0ddc MsRPC - ok
09:08:10.0306 0x0ddc [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
09:08:10.0306 0x0ddc mssmbios - ok
09:08:10.0337 0x0ddc [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
09:08:10.0337 0x0ddc MSTEE - ok
09:08:10.0384 0x0ddc [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
09:08:10.0384 0x0ddc MTConfig - ok
09:08:10.0494 0x0ddc [ 8CC4AB0F1FDB5FC7F58779DAB0B1D22E, CE0260F3AC98400860A0DA6974A2DE63DE787CB6F2FAD0D32F72D73D7D867DDE ] Mtlmnt5 C:\Windows\system32\DRIVERS\SLDRV\Mtlmnt5.sys
09:08:10.0525 0x0ddc Mtlmnt5 - ok
09:08:10.0744 0x0ddc [ C3556A7AEAFA2E71F270531FF2F401FD, 1AC3D6DA4E47DFFFD80E680F0A1F945D4B296FE2A1BC7CAC572992ED0719C56E ] Mtlstrm C:\Windows\system32\DRIVERS\SLDRV\Mtlstrm.sys
09:08:10.0900 0x0ddc Mtlstrm - ok
09:08:10.0962 0x0ddc [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
09:08:10.0962 0x0ddc Mup - ok
09:08:11.0072 0x0ddc [ 80284F1985C70C86F0B5F86DA2DFE1DF, 424A5BBC28C72DA0DBABEB9E423B8C409754CD1BA3DFC9E174BF22D8BCE1BE63 ] napagent C:\Windows\system32\qagentRT.dll
09:08:11.0103 0x0ddc napagent - ok
09:08:11.0181 0x0ddc [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
09:08:11.0197 0x0ddc NativeWifiP - ok
09:08:11.0306 0x0ddc [ 23759D175A0A9BAAF04D05047BC135A8, 2C8C553B4E1ED3A644F619F16BCEDD5A3C6D74A17E6E75A3E740E06B1D636348 ] NDIS C:\Windows\system32\drivers\ndis.sys
09:08:11.0384 0x0ddc NDIS - ok
09:08:11.0447 0x0ddc [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
09:08:11.0447 0x0ddc NdisCap - ok
09:08:11.0509 0x0ddc [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
09:08:11.0525 0x0ddc NdisTapi - ok
09:08:11.0556 0x0ddc [ B30AE7F2B6D7E343B0DF32E6C08FCE75, 39BBBF7AF886732CB9ED3E6C06DA4318554089F3BEA74C74328FE1C6EF68E70B ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
09:08:11.0556 0x0ddc Ndisuio - ok
09:08:11.0603 0x0ddc [ 267C415EADCBE53C9CA873DEE39CF3A4, BAA8626BDA7B68176B19A99FBBD40FB2A774C8F44B56F9FFB99A1F5C16A1C555 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
09:08:11.0619 0x0ddc NdisWan - ok
09:08:11.0666 0x0ddc [ AF7E7C63DCEF3F8772726F86039D6EB4, 1CFDED48E8844138864786DBF9D5519162A6DB28F885A781934E8AFBD52EAC50 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
09:08:11.0666 0x0ddc NDProxy - ok
09:08:11.0728 0x0ddc [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
09:08:11.0728 0x0ddc NetBIOS - ok
09:08:11.0791 0x0ddc [ DD52A733BF4CA5AF84562A5E2F963B91, 5CEB9664CED3D120F5408A12035748728710D41090A289CF66023CED4C838A1F ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
09:08:11.0806 0x0ddc NetBT - ok
09:08:11.0837 0x0ddc [ F42309C4191C506B71DB5D1126D26318, 29B0A8889857CEBFA6CBD795D5EECDDFFA04E794BD3C73FC488725B2A160F326 ] Netlogon C:\Windows\system32\lsass.exe
09:08:11.0837 0x0ddc Netlogon - ok
09:08:11.0931 0x0ddc [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
09:08:11.0978 0x0ddc Netman - ok
09:08:12.0056 0x0ddc [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
09:08:12.0103 0x0ddc netprofm - ok
09:08:12.0150 0x0ddc [ FE2AA5A684B0DD9B1FAE57B7817C198B, 59137B15AD038C31BEB909EC11019E08C072DD7EE611B9618B7523880453BD4F ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
09:08:12.0150 0x0ddc NetTcpPortSharing - ok
09:08:12.0228 0x0ddc [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
09:08:12.0228 0x0ddc nfrd960 - ok
09:08:12.0306 0x0ddc [ 2226496E34BD40734946A054B1CD657F, 98392D98C9213822268971432BB55047ABD8B4EBD42483FA69BF50FB8FAD64A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
09:08:12.0322 0x0ddc NlaSvc - ok
09:08:12.0369 0x0ddc [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
09:08:12.0369 0x0ddc Npfs - ok
09:08:12.0431 0x0ddc [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\Windows\system32\nsisvc.dll