02:08:26.0181 2420 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
02:08:26.0337 2420 ============================================================
02:08:26.0337 2420 Current date / time: 2013/08/10 02:08:26.0337
02:08:26.0337 2420 SystemInfo:
02:08:26.0337 2420
02:08:26.0337 2420 OS Version: 6.1.7601 ServicePack: 1.0
02:08:26.0337 2420 Product type: Workstation
02:08:26.0337 2420 ComputerName: SLAIN
02:08:26.0337 2420 UserName: Faraz
02:08:26.0337 2420 Windows directory: C:\\Windows
02:08:26.0337 2420 System windows directory: C:\\Windows
02:08:26.0337 2420 Running under WOW64
02:08:26.0337 2420 Processor architecture: Intel x64
02:08:26.0337 2420 Number of processors: 4
02:08:26.0337 2420 Page size: 0x1000
02:08:26.0337 2420 Boot type: Normal boot
02:08:26.0337 2420 ============================================================
02:08:30.0698 2420 Drive \\Device\\Harddisk0\\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type \'K0\', Flags 0x00000040
02:08:30.0714 2420 ============================================================
02:08:30.0714 2420 \\Device\\Harddisk0\\DR0:
02:08:30.0714 2420 MBR partitions:
02:08:30.0714 2420 \\Device\\Harddisk0\\DR0\\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
02:08:30.0714 2420 \\Device\\Harddisk0\\DR0\\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6176000
02:08:30.0714 2420 \\Device\\Harddisk0\\DR0\\Partition3: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x61A8000
02:08:30.0714 2420 \\Device\\Harddisk0\\DR0\\Partition4: MBR, Type 0x7, StartLBA 0xC350800, BlocksNum 0x2E035000
02:08:30.0714 2420 ============================================================
02:08:30.0730 2420 C: <-> \\Device\\Harddisk0\\DR0\\Partition2
02:08:30.0776 2420 D: <-> \\Device\\Harddisk0\\DR0\\Partition3
02:08:30.0808 2420 E: <-> \\Device\\Harddisk0\\DR0\\Partition4
02:08:30.0808 2420 ============================================================
02:08:30.0808 2420 Initialize success
02:08:30.0808 2420 ============================================================
02:09:02.0054 4208 ============================================================
02:09:02.0054 4208 Scan started
02:09:02.0054 4208 Mode: Manual;
02:09:02.0054 4208 ============================================================
02:09:03.0068 4208 ================ Scan system memory ========================
02:09:03.0068 4208 System memory - ok
02:09:03.0068 4208 ================ Scan services =============================
02:09:03.0209 4208 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\\Windows\\system32\\drivers\\1394ohci.sys
02:09:03.0224 4208 1394ohci - ok
02:09:03.0256 4208 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\\Windows\\system32\\drivers\\ACPI.sys
02:09:03.0256 4208 ACPI - ok
02:09:03.0287 4208 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\\Windows\\system32\\drivers\\acpipmi.sys
02:09:03.0287 4208 AcpiPmi - ok
02:09:03.0396 4208 [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashPlayerUpdateService.exe
02:09:03.0412 4208 AdobeFlashPlayerUpdateSvc - ok
02:09:03.0458 4208 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\\Windows\\system32\\DRIVERS\\adp94xx.sys
02:09:03.0490 4208 adp94xx - ok
02:09:03.0505 4208 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\\Windows\\system32\\DRIVERS\\adpahci.sys
02:09:03.0521 4208 adpahci - ok
02:09:03.0536 4208 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\\Windows\\system32\\DRIVERS\\adpu320.sys
02:09:03.0552 4208 adpu320 - ok
02:09:03.0583 4208 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\\Windows\\System32\\aelupsvc.dll
02:09:03.0599 4208 AeLookupSvc - ok
02:09:03.0630 4208 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\\Windows\\system32\\drivers\\afd.sys
02:09:03.0677 4208 AFD - ok
02:09:03.0708 4208 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\\Windows\\system32\\drivers\\agp440.sys
02:09:03.0708 4208 agp440 - ok
02:09:03.0739 4208 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\\Windows\\System32\\alg.exe
02:09:03.0739 4208 ALG - ok
02:09:03.0770 4208 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\\Windows\\system32\\drivers\\aliide.sys
02:09:03.0770 4208 aliide - ok
02:09:03.0770 4208 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\\Windows\\system32\\drivers\\amdide.sys
02:09:03.0786 4208 amdide - ok
02:09:03.0802 4208 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\\Windows\\system32\\DRIVERS\\amdk8.sys
02:09:03.0802 4208 AmdK8 - ok
02:09:03.0833 4208 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\\Windows\\system32\\DRIVERS\\amdppm.sys
02:09:03.0833 4208 AmdPPM - ok
02:09:03.0864 4208 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\\Windows\\system32\\drivers\\amdsata.sys
02:09:03.0880 4208 amdsata - ok
02:09:03.0895 4208 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\\Windows\\system32\\DRIVERS\\amdsbs.sys
02:09:03.0911 4208 amdsbs - ok
02:09:03.0926 4208 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\\Windows\\system32\\drivers\\amdxata.sys
02:09:03.0926 4208 amdxata - ok
02:09:03.0942 4208 apcrybwd - ok
02:09:03.0989 4208 [ 24ED0EB2B2558970176ECEE680F8F806 ] ApfiltrService C:\\Windows\\system32\\DRIVERS\\Apfiltr.sys
02:09:04.0004 4208 ApfiltrService - ok
02:09:04.0067 4208 [ 59D01FA91962C9C1E9B4022B2D3B46DB ] AppHostSvc C:\\Windows\\system32\\inetsrv\\apphostsvc.dll
02:09:04.0067 4208 AppHostSvc - ok
02:09:04.0114 4208 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\\Windows\\system32\\drivers\\appid.sys
02:09:04.0129 4208 AppID - ok
02:09:04.0160 4208 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\\Windows\\System32\\appidsvc.dll
02:09:04.0160 4208 AppIDSvc - ok
02:09:04.0192 4208 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\\Windows\\System32\\appinfo.dll
02:09:04.0192 4208 Appinfo - ok
02:09:04.0223 4208 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\\Windows\\System32\\appmgmts.dll
02:09:04.0238 4208 AppMgmt - ok
02:09:04.0270 4208 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\\Windows\\system32\\DRIVERS\\arc.sys
02:09:04.0270 4208 arc - ok
02:09:04.0285 4208 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\\Windows\\system32\\DRIVERS\\arcsas.sys
02:09:04.0301 4208 arcsas - ok
02:09:04.0348 4208 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\\Windows\\system32\\DRIVERS\\asyncmac.sys
02:09:04.0348 4208 AsyncMac - ok
02:09:04.0379 4208 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\\Windows\\system32\\drivers\\atapi.sys
02:09:04.0379 4208 atapi - ok
02:09:04.0410 4208 [ CBE61B4494165F458BD87E37181EE934 ] AthBTPort C:\\Windows\\system32\\DRIVERS\\btath_flt.sys
02:09:04.0410 4208 AthBTPort - ok
02:09:04.0488 4208 [ 67B8BD46E8626C348688930244761DAB ] Atheros Bt&Wlan Coex Agent C:\\Program Files (x86)\\Dell Wireless\\Ath_CoexAgent.exe
02:09:04.0722 4208 Atheros Bt&Wlan Coex Agent - ok
02:09:04.0784 4208 [ 8430ED17CEF0D7878B25776E02508957 ] AtherosSvc C:\\Program Files (x86)\\Dell Wireless\\Bluetooth Suite\\adminservice.exe
02:09:04.0784 4208 AtherosSvc - ok
02:09:04.0878 4208 [ 782D36BAD8DDBF008D02E055DBE70F82 ] athr C:\\Windows\\system32\\DRIVERS\\athrx.sys
02:09:04.0956 4208 athr - ok
02:09:05.0034 4208 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\\Windows\\System32\\Audiosrv.dll
02:09:05.0065 4208 AudioEndpointBuilder - ok
02:09:05.0096 4208 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\\Windows\\System32\\Audiosrv.dll
02:09:05.0112 4208 AudioSrv - ok
02:09:05.0143 4208 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\\Windows\\System32\\AxInstSV.dll
02:09:05.0159 4208 AxInstSV - ok
02:09:05.0190 4208 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\\Windows\\system32\\DRIVERS\\bxvbda.sys
02:09:05.0221 4208 b06bdrv - ok
02:09:05.0252 4208 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\\Windows\\system32\\DRIVERS\\b57nd60a.sys
02:09:05.0252 4208 b57nd60a - ok
02:09:05.0284 4208 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\\Windows\\System32\\bdesvc.dll
02:09:05.0299 4208 BDESVC - ok
02:09:05.0315 4208 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\\Windows\\system32\\drivers\\Beep.sys
02:09:05.0315 4208 Beep - ok
02:09:05.0377 4208 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\\Windows\\System32\\bfe.dll
02:09:05.0408 4208 BFE - ok
02:09:05.0440 4208 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\\Windows\\System32\\qmgr.dll
02:09:05.0502 4208 BITS - ok
02:09:05.0518 4208 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\\Windows\\system32\\DRIVERS\\blbdrive.sys
02:09:05.0533 4208 blbdrive - ok
02:09:05.0627 4208 [ 093B1B419EF25B15D3A1CA6953F41AFB ] Bluetooth Device Monitor C:\\Program Files (x86)\\Intel\\Bluetooth\\devmonsrv.exe
02:09:05.0674 4208 Bluetooth Device Monitor - ok
02:09:05.0736 4208 [ 03A7341E94ACD92E0831336D4F3ACE92 ] Bluetooth Media Service C:\\Program Files (x86)\\Intel\\Bluetooth\\mediasrv.exe
02:09:06.0064 4208 Bluetooth Media Service - ok
02:09:06.0110 4208 [ A2EBF384ED105FED7D05C5465500EF2E ] Bluetooth OBEX Service C:\\Program Files (x86)\\Intel\\Bluetooth\\obexsrv.exe
02:09:06.0422 4208 Bluetooth OBEX Service - ok
02:09:06.0485 4208 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\\Windows\\system32\\DRIVERS\\bowser.sys
02:09:06.0485 4208 bowser - ok
02:09:06.0516 4208 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\\Windows\\system32\\DRIVERS\\BrFiltLo.sys
02:09:06.0516 4208 BrFiltLo - ok
02:09:06.0532 4208 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\\Windows\\system32\\DRIVERS\\BrFiltUp.sys
02:09:06.0532 4208 BrFiltUp - ok
02:09:06.0563 4208 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\\Windows\\System32\\browser.dll
02:09:06.0594 4208 Browser - ok
02:09:06.0625 4208 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\\Windows\\System32\\Drivers\\Brserid.sys
02:09:06.0625 4208 Brserid - ok
02:09:06.0641 4208 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\\Windows\\System32\\Drivers\\BrSerWdm.sys
02:09:06.0656 4208 BrSerWdm - ok
02:09:06.0672 4208 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\\Windows\\System32\\Drivers\\BrUsbMdm.sys
02:09:06.0672 4208 BrUsbMdm - ok
02:09:06.0672 4208 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\\Windows\\System32\\Drivers\\BrUsbSer.sys
02:09:06.0688 4208 BrUsbSer - ok
02:09:06.0766 4208 [ 227C8F308DE4AF4808E587465CEAB838 ] BTATH_A2DP C:\\Windows\\system32\\drivers\\btath_a2dp.sys
02:09:06.0766 4208 BTATH_A2DP - ok
02:09:06.0781 4208 [ A83A91D07D1FE6BBE7A9DB46CA00434B ] BTATH_BUS C:\\Windows\\system32\\DRIVERS\\btath_bus.sys
02:09:06.0781 4208 BTATH_BUS - ok
02:09:06.0812 4208 [ C864FF85EE16D61C2BDD5EF76824625F ] BTATH_HCRP C:\\Windows\\system32\\DRIVERS\\btath_hcrp.sys
02:09:06.0828 4208 BTATH_HCRP - ok
02:09:06.0844 4208 [ 0DEA505EFB5D771826D177EF8B8A208F ] BTATH_LWFLT C:\\Windows\\system32\\DRIVERS\\btath_lwflt.sys
02:09:06.0844 4208 BTATH_LWFLT - ok
02:09:06.0859 4208 [ 724C8088C96EFE7A3E63FEC21D4681C0 ] BTATH_RCP C:\\Windows\\system32\\DRIVERS\\btath_rcp.sys
02:09:06.0859 4208 BTATH_RCP - ok
02:09:06.0906 4208 [ 486720DA2B3BB13D1080C83140C18B56 ] BtFilter C:\\Windows\\system32\\DRIVERS\\btfilter.sys
02:09:06.0922 4208 BtFilter - ok
02:09:06.0953 4208 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\\Windows\\system32\\drivers\\BthEnum.sys
02:09:06.0968 4208 BthEnum - ok
02:09:06.0984 4208 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\\Windows\\system32\\DRIVERS\\bthmodem.sys
02:09:07.0000 4208 BTHMODEM - ok
02:09:07.0031 4208 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\\Windows\\system32\\DRIVERS\\bthpan.sys
02:09:07.0031 4208 BthPan - ok
02:09:07.0062 4208 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\\Windows\\System32\\Drivers\\BTHport.sys
02:09:07.0093 4208 BTHPORT - ok
02:09:07.0124 4208 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\\Windows\\system32\\bthserv.dll
02:09:07.0124 4208 bthserv - ok
02:09:07.0156 4208 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\\Windows\\System32\\Drivers\\BTHUSB.sys
02:09:07.0156 4208 BTHUSB - ok
02:09:07.0171 4208 [ 16C1BAC9760C9FA85A30F3FA0FBB1B7A ] btmaux C:\\Windows\\system32\\DRIVERS\\btmaux.sys
02:09:07.0187 4208 btmaux - ok
02:09:07.0202 4208 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\\Windows\\system32\\DRIVERS\\cdfs.sys
02:09:07.0218 4208 cdfs - ok
02:09:07.0265 4208 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\\Windows\\system32\\DRIVERS\\cdrom.sys
02:09:07.0265 4208 cdrom - ok
02:09:07.0312 4208 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\\Windows\\System32\\certprop.dll
02:09:07.0327 4208 CertPropSvc - ok
02:09:07.0358 4208 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\\Windows\\system32\\DRIVERS\\circlass.sys
02:09:07.0358 4208 circlass - ok
02:09:07.0390 4208 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\\Windows\\system32\\CLFS.sys
02:09:07.0405 4208 CLFS - ok
02:09:07.0514 4208 [ 882E3973505C441CE000133C821D0EDD ] CLPSLS C:\\Program Files\\COMODO\\COMODO GeekBuddy\\CLPSLS.exe
02:09:07.0546 4208 CLPSLS - ok
02:09:07.0608 4208 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\\Windows\\Microsoft.NET\\Framework\\v2.0.50727\\mscorsvw.exe
02:09:07.0608 4208 clr_optimization_v2.0.50727_32 - ok
02:09:07.0655 4208 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\\Windows\\Microsoft.NET\\Framework64\\v2.0.50727\\mscorsvw.exe
02:09:07.0670 4208 clr_optimization_v2.0.50727_64 - ok
02:09:07.0702 4208 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\\Windows\\system32\\DRIVERS\\CmBatt.sys
02:09:07.0717 4208 CmBatt - ok
02:09:07.0795 4208 [ 65FB5097D9EE7E3A99E932CFA0E4B344 ] cmdAgent C:\\Program Files\\COMODO\\COMODO Internet Security\\cmdagent.exe
02:09:07.0842 4208 cmdAgent - ok
02:09:07.0858 4208 [ 2D6DC31AA55BFF702519235DEF0DA68E ] cmderd C:\\Windows\\system32\\DRIVERS\\cmderd.sys
02:09:07.0873 4208 cmderd - ok
02:09:07.0904 4208 [ 919ACCC22ABDC1C3CA68326C0E5DEAF9 ] cmdGuard C:\\Windows\\system32\\DRIVERS\\cmdguard.sys
02:09:07.0904 4208 cmdGuard - ok
02:09:07.0936 4208 [ F8FECE0F1D44C4A58778083B00EEADAC ] cmdHlp C:\\Windows\\system32\\DRIVERS\\cmdhlp.sys
02:09:07.0936 4208 cmdHlp - ok
02:09:07.0967 4208 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\\Windows\\system32\\drivers\\cmdide.sys
02:09:07.0967 4208 cmdide - ok
02:09:08.0014 4208 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\\Windows\\system32\\Drivers\\cng.sys
02:09:08.0045 4208 CNG - ok
02:09:08.0076 4208 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\\Windows\\system32\\DRIVERS\\compbatt.sys
02:09:08.0076 4208 Compbatt - ok
02:09:08.0123 4208 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\\Windows\\system32\\drivers\\CompositeBus.sys
02:09:08.0123 4208 CompositeBus - ok
02:09:08.0138 4208 COMSysApp - ok
02:09:08.0170 4208 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\\Windows\\system32\\DRIVERS\\crcdisk.sys
02:09:08.0170 4208 crcdisk - ok
02:09:08.0232 4208 [ 2177A0F611584BCA1DFDD7EEB35C0224 ] CrypKey License C:\\Windows\\system32\\crypserv.exe
02:09:08.0482 4208 CrypKey License - ok
02:09:08.0528 4208 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\\Windows\\system32\\cryptsvc.dll
02:09:08.0544 4208 CryptSvc - ok
02:09:08.0575 4208 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\\Windows\\system32\\drivers\\csc.sys
02:09:08.0606 4208 CSC - ok
02:09:08.0638 4208 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\\Windows\\System32\\cscsvc.dll
02:09:08.0669 4208 CscService - ok
02:09:08.0700 4208 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\\Windows\\system32\\rpcss.dll
02:09:08.0747 4208 DcomLaunch - ok
02:09:08.0778 4208 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\\Windows\\System32\\defragsvc.dll
02:09:08.0809 4208 defragsvc - ok
02:09:08.0840 4208 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\\Windows\\system32\\Drivers\\dfsc.sys
02:09:08.0840 4208 DfsC - ok
02:09:08.0872 4208 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\\Windows\\system32\\dhcpcore.dll
02:09:08.0887 4208 Dhcp - ok
02:09:08.0918 4208 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\\Windows\\system32\\drivers\\discache.sys
02:09:08.0918 4208 discache - ok
02:09:08.0965 4208 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\\Windows\\system32\\DRIVERS\\disk.sys
02:09:08.0965 4208 Disk - ok
02:09:08.0996 4208 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\\Windows\\System32\\dnsrslvr.dll
02:09:09.0012 4208 Dnscache - ok
02:09:09.0059 4208 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\\Windows\\System32\\dot3svc.dll
02:09:09.0090 4208 dot3svc - ok
02:09:09.0121 4208 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\\Windows\\system32\\dps.dll
02:09:09.0137 4208 DPS - ok
02:09:09.0168 4208 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\\Windows\\system32\\drivers\\drmkaud.sys
02:09:09.0184 4208 drmkaud - ok
02:09:09.0215 4208 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\\Windows\\System32\\drivers\\dxgkrnl.sys
02:09:09.0246 4208 DXGKrnl - ok
02:09:09.0277 4208 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\\Windows\\System32\\eapsvc.dll
02:09:09.0293 4208 EapHost - ok
02:09:09.0433 4208 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\\Windows\\system32\\DRIVERS\\evbda.sys
02:09:09.0527 4208 ebdrv - ok
02:09:09.0542 4208 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\\Windows\\System32\\lsass.exe
02:09:09.0574 4208 EFS - ok
02:09:09.0667 4208 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\\Windows\\ehome\\ehRecvr.exe
02:09:09.0683 4208 ehRecvr - ok
02:09:09.0730 4208 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\\Windows\\ehome\\ehsched.exe
02:09:09.0730 4208 ehSched - ok
02:09:09.0761 4208 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\\Windows\\system32\\DRIVERS\\elxstor.sys
02:09:09.0792 4208 elxstor - ok
02:09:09.0823 4208 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\\Windows\\system32\\drivers\\errdev.sys
02:09:09.0823 4208 ErrDev - ok
02:09:09.0886 4208 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\\Windows\\system32\\es.dll
02:09:09.0901 4208 EventSystem - ok
02:09:09.0979 4208 [ 2B831232C7F57FD675C9AFCA82A5CC24 ] ewusbmbb C:\\Windows\\system32\\DRIVERS\\ewusbwwan.sys
02:09:10.0010 4208 ewusbmbb - ok
02:09:10.0026 4208 ewusbnet - ok
02:09:10.0057 4208 [ 86F7951BBCEE4A86E79A97306BD14318 ] ew_hwusbdev C:\\Windows\\system32\\DRIVERS\\ew_hwusbdev.sys
02:09:10.0057 4208 ew_hwusbdev - ok
02:09:10.0088 4208 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\\Windows\\system32\\drivers\\exfat.sys
02:09:10.0104 4208 exfat - ok
02:09:10.0120 4208 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\\Windows\\system32\\drivers\\fastfat.sys
02:09:10.0135 4208 fastfat - ok
02:09:10.0182 4208 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\\Windows\\system32\\fxssvc.exe
02:09:10.0229 4208 Fax - ok
02:09:10.0260 4208 [ 240FF3619817B039198CDCD1E8DAE921 ] fcdabus C:\\Windows\\system32\\DRIVERS\\fcdabus.sys
02:09:10.0260 4208 fcdabus - ok
02:09:10.0291 4208 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\\Windows\\system32\\DRIVERS\\fdc.sys
02:09:10.0291 4208 fdc - ok
02:09:10.0322 4208 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\\Windows\\system32\\fdPHost.dll
02:09:10.0338 4208 fdPHost - ok
02:09:10.0354 4208 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\\Windows\\system32\\fdrespub.dll
02:09:10.0385 4208 FDResPub - ok
02:09:10.0400 4208 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\\Windows\\system32\\drivers\\fileinfo.sys
02:09:10.0400 4208 FileInfo - ok
02:09:10.0416 4208 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\\Windows\\system32\\drivers\\filetrace.sys
02:09:10.0432 4208 Filetrace - ok
02:09:10.0447 4208 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\\Windows\\system32\\DRIVERS\\flpydisk.sys
02:09:10.0447 4208 flpydisk - ok
02:09:10.0510 4208 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\\Windows\\system32\\drivers\\fltmgr.sys
02:09:10.0541 4208 FltMgr - ok
02:09:10.0619 4208 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\\Windows\\system32\\FntCache.dll
02:09:10.0666 4208 FontCache - ok
02:09:10.0712 4208 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\\Windows\\Microsoft.Net\\Framework64\\v3.0\\WPF\\PresentationFontCache.exe
02:09:10.0915 4208 FontCache3.0.0.0 - ok
02:09:10.0946 4208 fqtirfym - ok
02:09:10.0962 4208 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\\Windows\\system32\\drivers\\FsDepends.sys
02:09:10.0978 4208 FsDepends - ok
02:09:10.0993 4208 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\\Windows\\system32\\drivers\\Fs_Rec.sys
02:09:10.0993 4208 Fs_Rec - ok
02:09:11.0040 4208 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\\Windows\\system32\\DRIVERS\\fvevol.sys
02:09:11.0056 4208 fvevol - ok
02:09:11.0087 4208 [ C4AE69B476A40C165B6E99D10E814D0F ] FVXSCSI C:\\Windows\\system32\\DRIVERS\\fvxscsi.sys
02:09:11.0087 4208 FVXSCSI - ok
02:09:11.0134 4208 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\\Windows\\system32\\DRIVERS\\gagp30kx.sys
02:09:11.0134 4208 gagp30kx - ok
02:09:11.0149 4208 gnfjuabb - ok
02:09:11.0212 4208 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\\Windows\\System32\\gpsvc.dll
02:09:11.0258 4208 gpsvc - ok
02:09:11.0274 4208 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\\Windows\\system32\\drivers\\hcw85cir.sys
02:09:11.0274 4208 hcw85cir - ok
02:09:11.0336 4208 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\\Windows\\system32\\drivers\\HdAudio.sys
02:09:11.0352 4208 HdAudAddService - ok
02:09:11.0368 4208 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\\Windows\\system32\\drivers\\HDAudBus.sys
02:09:11.0383 4208 HDAudBus - ok
02:09:11.0399 4208 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\\Windows\\system32\\DRIVERS\\HidBatt.sys
02:09:11.0399 4208 HidBatt - ok
02:09:11.0414 4208 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\\Windows\\system32\\DRIVERS\\hidbth.sys
02:09:11.0430 4208 HidBth - ok
02:09:11.0446 4208 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\\Windows\\system32\\DRIVERS\\hidir.sys
02:09:11.0446 4208 HidIr - ok
02:09:11.0477 4208 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\\Windows\\system32\\hidserv.dll
02:09:11.0492 4208 hidserv - ok
02:09:11.0508 4208 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\\Windows\\system32\\drivers\\hidusb.sys
02:09:11.0508 4208 HidUsb - ok
02:09:11.0555 4208 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\\Windows\\system32\\kmsvc.dll
02:09:11.0570 4208 hkmsvc - ok
02:09:11.0617 4208 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\\Windows\\system32\\ListSvc.dll
02:09:11.0664 4208 HomeGroupListener - ok
02:09:11.0695 4208 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\\Windows\\system32\\provsvc.dll
02:09:11.0726 4208 HomeGroupProvider - ok
02:09:11.0758 4208 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\\Windows\\system32\\drivers\\HpSAMD.sys
02:09:11.0773 4208 HpSAMD - ok
02:09:11.0804 4208 [ 26B05FFD8FB5E70EB501A610E3425341 ] HssDRV6 C:\\Windows\\system32\\DRIVERS\\hssdrv6.sys
02:09:11.0820 4208 HssDRV6 - ok
02:09:11.0914 4208 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\\Windows\\system32\\drivers\\HTTP.sys
02:09:11.0960 4208 HTTP - ok
02:09:11.0992 4208 [ 91971BCD780D6063DF90DE4F1DF10C2F ] huawei_cdcacm C:\\Windows\\system32\\DRIVERS\\ew_jucdcacm.sys
02:09:12.0007 4208 huawei_cdcacm - ok
02:09:12.0038 4208 [ 53D3E56CB36C9DDE9B7CDB5447DA0E80 ] huawei_cdcecm C:\\Windows\\system32\\DRIVERS\\ew_jucdcecm.sys
02:09:12.0038 4208 huawei_cdcecm - ok
02:09:12.0070 4208 [ CCE3DB0BA3C615CAA321EB1301532688 ] huawei_enumerator C:\\Windows\\system32\\DRIVERS\\ew_jubusenum.sys
02:09:12.0085 4208 huawei_enumerator - ok
02:09:12.0101 4208 [ C4BC37B9E5E54A50B2AA458F1FCA428C ] huawei_ext_ctrl C:\\Windows\\system32\\DRIVERS\\ew_juextctrl.sys
02:09:12.0101 4208 huawei_ext_ctrl - ok
02:09:12.0148 4208 [ CE93B8AF848FE2AA44455A4769C1BC8A ] hwdatacard C:\\Windows\\system32\\DRIVERS\\ewusbmdm.sys
02:09:12.0163 4208 hwdatacard - ok
02:09:12.0241 4208 [ E90DA42B87D684DEBFB73B38A718A006 ] HWDeviceService64.exe C:\\ProgramData\\DatacardService\\HWDeviceService64.exe
02:09:12.0257 4208 HWDeviceService64.exe - ok
02:09:12.0288 4208 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\\Windows\\system32\\drivers\\hwpolicy.sys
02:09:12.0304 4208 hwpolicy - ok
02:09:12.0319 4208 hwusbdev - ok
02:09:12.0366 4208 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\\Windows\\system32\\drivers\\i8042prt.sys
02:09:12.0366 4208 i8042prt - ok
02:09:12.0413 4208 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\\Windows\\system32\\drivers\\iaStorV.sys
02:09:12.0444 4208 iaStorV - ok
02:09:12.0491 4208 [ 2A63036283B36B3B68CDC6F85A7D53ED ] IDMWFP C:\\Windows\\system32\\DRIVERS\\idmwfp.sys
02:09:12.0491 4208 IDMWFP - ok
02:09:12.0538 4208 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\\Windows\\Microsoft.NET\\Framework64\\v3.0\\Windows Communication Foundation\\infocard.exe
02:09:12.0569 4208 idsvc - ok
02:09:13.0052 4208 [ 795C99DC4F574C97C03D0BB39CF099EE ] igfx C:\\Windows\\system32\\DRIVERS\\igdkmd64.sys
02:09:13.0364 4208 igfx - ok
02:09:13.0411 4208 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\\Windows\\system32\\DRIVERS\\iirsp.sys
02:09:13.0411 4208 iirsp - ok
02:09:13.0474 4208 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\\Windows\\System32\\ikeext.dll
02:09:13.0505 4208 IKEEXT - ok
02:09:13.0552 4208 [ C4E67D3037DC79E39D7136581A947F50 ] inspect C:\\Windows\\system32\\DRIVERS\\inspect.sys
02:09:13.0552 4208 inspect - ok
02:09:13.0583 4208 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\\Windows\\system32\\drivers\\intelide.sys
02:09:13.0598 4208 intelide - ok
02:09:13.0630 4208 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\\Windows\\system32\\DRIVERS\\intelppm.sys
02:09:13.0630 4208 intelppm - ok
02:09:13.0661 4208 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\\Windows\\system32\\ipbusenum.dll
02:09:13.0676 4208 IPBusEnum - ok
02:09:13.0708 4208 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\\Windows\\system32\\DRIVERS\\ipfltdrv.sys
02:09:13.0723 4208 IpFilterDriver - ok
02:09:13.0770 4208 [ A34A587FFFD45FA649FBA6D03784D257 ] IpHlpSvc C:\\Windows\\System32\\iphlpsvc.dll
02:09:13.0848 4208 IpHlpSvc - ok
02:09:13.0879 4208 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\\Windows\\system32\\drivers\\IPMIDrv.sys
02:09:13.0895 4208 IPMIDRV - ok
02:09:13.0926 4208 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\\Windows\\system32\\drivers\\ipnat.sys
02:09:13.0926 4208 IPNAT - ok
02:09:13.0957 4208 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\\Windows\\system32\\drivers\\irenum.sys
02:09:13.0957 4208 IRENUM - ok
02:09:13.0988 4208 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\\Windows\\system32\\drivers\\isapnp.sys
02:09:13.0988 4208 isapnp - ok
02:09:14.0020 4208 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\\Windows\\system32\\drivers\\msiscsi.sys
02:09:14.0066 4208 iScsiPrt - ok
02:09:14.0113 4208 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\\Windows\\system32\\drivers\\kbdclass.sys
02:09:14.0113 4208 kbdclass - ok
02:09:14.0144 4208 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\\Windows\\system32\\drivers\\kbdhid.sys
02:09:14.0144 4208 kbdhid - ok
02:09:14.0191 4208 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\\Windows\\system32\\lsass.exe
02:09:14.0207 4208 KeyIso - ok
02:09:14.0222 4208 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\\Windows\\system32\\Drivers\\ksecdd.sys
02:09:14.0222 4208 KSecDD - ok
02:09:14.0254 4208 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\\Windows\\system32\\Drivers\\ksecpkg.sys
02:09:14.0254 4208 KSecPkg - ok
02:09:14.0300 4208 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\\Windows\\system32\\drivers\\ksthunk.sys
02:09:14.0300 4208 ksthunk - ok
02:09:14.0347 4208 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\\Windows\\system32\\msdtckrm.dll
02:09:14.0378 4208 KtmRm - ok
02:09:14.0441 4208 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\\Windows\\system32\\srvsvc.dll
02:09:14.0488 4208 LanmanServer - ok
02:09:14.0534 4208 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\\Windows\\System32\\wkssvc.dll
02:09:14.0581 4208 LanmanWorkstation - ok
02:09:14.0628 4208 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\\Windows\\system32\\DRIVERS\\lltdio.sys
02:09:14.0628 4208 lltdio - ok
02:09:14.0659 4208 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\\Windows\\System32\\lltdsvc.dll
02:09:14.0690 4208 lltdsvc - ok
02:09:14.0706 4208 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\\Windows\\System32\\lmhsvc.dll
02:09:14.0737 4208 lmhosts - ok
02:09:14.0784 4208 [ 0803906D607A9B83184447B75B60ECC2 ] LMS C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\LMS\\LMS.exe
02:09:14.0784 4208 LMS - ok
02:09:14.0815 4208 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\\Windows\\system32\\DRIVERS\\lsi_fc.sys
02:09:14.0831 4208 LSI_FC - ok
02:09:14.0846 4208 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\\Windows\\system32\\DRIVERS\\lsi_sas.sys
02:09:14.0862 4208 LSI_SAS - ok
02:09:14.0878 4208 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\\Windows\\system32\\DRIVERS\\lsi_sas2.sys
02:09:14.0878 4208 LSI_SAS2 - ok
02:09:14.0893 4208 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\\Windows\\system32\\DRIVERS\\lsi_scsi.sys
02:09:14.0909 4208 LSI_SCSI - ok
02:09:14.0940 4208 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\\Windows\\system32\\drivers\\luafv.sys
02:09:14.0940 4208 luafv - ok
02:09:14.0971 4208 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\\Windows\\system32\\Mcx2Svc.dll
02:09:15.0002 4208 Mcx2Svc - ok
02:09:15.0034 4208 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\\Windows\\system32\\DRIVERS\\megasas.sys
02:09:15.0034 4208 megasas - ok
02:09:15.0065 4208 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\\Windows\\system32\\DRIVERS\\MegaSR.sys
02:09:15.0080 4208 MegaSR - ok
02:09:15.0127 4208 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\\Windows\\system32\\DRIVERS\\HECIx64.sys
02:09:15.0127 4208 MEIx64 - ok
02:09:15.0158 4208 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\\Windows\\system32\\mmcss.dll
02:09:15.0190 4208 MMCSS - ok
02:09:15.0205 4208 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\\Windows\\system32\\drivers\\modem.sys
02:09:15.0205 4208 Modem - ok
02:09:15.0236 4208 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\\Windows\\system32\\DRIVERS\\monitor.sys
02:09:15.0236 4208 monitor - ok
02:09:15.0268 4208 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\\Windows\\system32\\drivers\\mouclass.sys
02:09:15.0283 4208 mouclass - ok
02:09:15.0299 4208 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\\Windows\\system32\\DRIVERS\\mouhid.sys
02:09:15.0299 4208 mouhid - ok
02:09:15.0346 4208 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\\Windows\\system32\\drivers\\mountmgr.sys
02:09:15.0346 4208 mountmgr - ok
02:09:15.0361 4208 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\\Windows\\system32\\drivers\\mpio.sys
02:09:15.0377 4208 mpio - ok
02:09:15.0392 4208 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\\Windows\\system32\\drivers\\mpsdrv.sys
02:09:15.0408 4208 mpsdrv - ok
02:09:15.0486 4208 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\\Windows\\system32\\mpssvc.dll
02:09:15.0533 4208 MpsSvc - ok
02:09:15.0580 4208 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\\Windows\\system32\\drivers\\mrxdav.sys
02:09:15.0595 4208 MRxDAV - ok
02:09:15.0626 4208 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\\Windows\\system32\\DRIVERS\\mrxsmb.sys
02:09:15.0626 4208 mrxsmb - ok
02:09:15.0658 4208 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\\Windows\\system32\\DRIVERS\\mrxsmb10.sys
02:09:15.0689 4208 mrxsmb10 - ok
02:09:15.0704 4208 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\\Windows\\system32\\DRIVERS\\mrxsmb20.sys
02:09:15.0720 4208 mrxsmb20 - ok
02:09:15.0751 4208 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\\Windows\\system32\\drivers\\msahci.sys
02:09:15.0751 4208 msahci - ok
02:09:15.0782 4208 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\\Windows\\system32\\drivers\\msdsm.sys
02:09:15.0798 4208 msdsm - ok
02:09:15.0814 4208 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\\Windows\\System32\\msdtc.exe
02:09:15.0845 4208 MSDTC - ok
02:09:15.0876 4208 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\\Windows\\system32\\drivers\\Msfs.sys
02:09:15.0892 4208 Msfs - ok
02:09:15.0970 4208 [ F7E0900F9A8E3F71F2C16A932F0E03E0 ] msftesql$PRIMAVERA C:\\Program Files (x86)\\MSSQL\\Primavera\\MSSQL.1\\MSSQL\\Binn\\msftesql.exe
02:09:16.0188 4208 msftesql$PRIMAVERA - ok
02:09:16.0235 4208 [ F7E0900F9A8E3F71F2C16A932F0E03E0 ] msftesql$SQLEXPRESS C:\\Program Files (x86)\\Microsoft SQL Server\\MSSQL.2\\MSSQL\\Binn\\msftesql.exe
02:09:16.0406 4208 msftesql$SQLEXPRESS - ok
02:09:16.0438 4208 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\\Windows\\System32\\drivers\\mshidkmdf.sys
02:09:16.0453 4208 mshidkmdf - ok
02:09:16.0484 4208 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\\Windows\\system32\\drivers\\msisadrv.sys
02:09:16.0484 4208 msisadrv - ok
02:09:16.0531 4208 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\\Windows\\system32\\iscsiexe.dll
02:09:16.0547 4208 MSiSCSI - ok
02:09:16.0562 4208 msiserver - ok
02:09:16.0594 4208 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\\Windows\\system32\\drivers\\MSKSSRV.sys
02:09:16.0594 4208 MSKSSRV - ok
02:09:16.0609 4208 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\\Windows\\system32\\drivers\\MSPCLOCK.sys
02:09:16.0609 4208 MSPCLOCK - ok
02:09:16.0625 4208 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\\Windows\\system32\\drivers\\MSPQM.sys
02:09:16.0640 4208 MSPQM - ok
02:09:16.0703 4208 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\\Windows\\system32\\drivers\\MsRPC.sys
02:09:16.0718 4208 MsRPC - ok
02:09:16.0734 4208 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\\Windows\\system32\\drivers\\mssmbios.sys
02:09:16.0734 4208 mssmbios - ok
02:09:16.0765 4208 MSSQL$PRIMAVERA - ok
02:09:16.0781 4208 MSSQL$SQLEXPRESS - ok
02:09:16.0828 4208 [ ADAF062116B4E6D96E44D26486A87AF6 ] MSSQLServerADHelper C:\\Program Files (x86)\\Microsoft SQL Server\\90\\Shared\\sqladhlp90.exe
02:09:16.0843 4208 MSSQLServerADHelper - ok
02:09:16.0859 4208 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\\Windows\\system32\\drivers\\MSTEE.sys
02:09:16.0874 4208 MSTEE - ok
02:09:16.0890 4208 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\\Windows\\system32\\DRIVERS\\MTConfig.sys
02:09:16.0890 4208 MTConfig - ok
02:09:16.0921 4208 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\\Windows\\system32\\Drivers\\mup.sys
02:09:16.0921 4208 Mup - ok
02:09:16.0968 4208 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\\Windows\\system32\\qagentRT.dll
02:09:17.0015 4208 napagent - ok
02:09:17.0077 4208 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\\Windows\\system32\\DRIVERS\\nwifi.sys
02:09:17.0093 4208 NativeWifiP - ok
02:09:17.0140 4208 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\\Windows\\system32\\drivers\\ndis.sys
02:09:17.0155 4208 NDIS - ok
02:09:17.0186 4208 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\\Windows\\system32\\DRIVERS\\ndiscap.sys
02:09:17.0202 4208 NdisCap - ok
02:09:17.0218 4208 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\\Windows\\system32\\DRIVERS\\ndistapi.sys
02:09:17.0233 4208 NdisTapi - ok
02:09:17.0264 4208 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\\Windows\\system32\\DRIVERS\\ndisuio.sys
02:09:17.0280 4208 Ndisuio - ok
02:09:17.0311 4208 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\\Windows\\system32\\DRIVERS\\ndiswan.sys
02:09:17.0327 4208 NdisWan - ok
02:09:17.0358 4208 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\\Windows\\system32\\drivers\\NDProxy.sys
02:09:17.0358 4208 NDProxy - ok
02:09:17.0389 4208 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\\Windows\\system32\\DRIVERS\\netbios.sys
02:09:17.0405 4208 NetBIOS - ok
02:09:17.0436 4208 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\\Windows\\system32\\DRIVERS\\netbt.sys
02:09:17.0467 4208 NetBT - ok
02:09:17.0483 4208 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\\Windows\\system32\\lsass.exe
02:09:17.0498 4208 Netlogon - ok
02:09:17.0561 4208 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\\Windows\\System32\\netman.dll
02:09:17.0608 4208 Netman - ok
02:09:17.0623 4208 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\\Windows\\System32\\netprofm.dll
02:09:17.0670 4208 netprofm - ok
02:09:17.0732 4208 [ C9E9017AC2291E96ED3376B72BC7CF8D ] netr28ux C:\\Windows\\system32\\DRIVERS\\netr28ux.sys
02:09:17.0779 4208 netr28ux - ok
02:09:17.0810 4208 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\\Windows\\Microsoft.NET\\Framework64\\v3.0\\Windows Communication Foundation\\SMSvcHost.exe
02:09:18.0029 4208 NetTcpPortSharing - ok
02:09:18.0060 4208 [ A97D9B1C2EEB2E169D2593E7073BCD27 ] NetworkX C:\\Windows\\System32\\ckldrv.sys
02:09:18.0076 4208 NetworkX - ok
02:09:18.0107 4208 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\\Windows\\system32\\DRIVERS\\nfrd960.sys
02:09:18.0122 4208 nfrd960 - ok
02:09:18.0200 4208 [ 07937CE37AD35FBECBF9D8BE584DCF2A ] NitroDriverReadSpool8 C:\\Program Files\\Common Files\\Nitro\\Pro\\8.0\\NitroPDFDriverService8x64.exe
02:09:18.0216 4208 NitroDriverReadSpool8 - ok
02:09:18.0263 4208 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\\Windows\\System32\\nlasvc.dll
02:09:18.0294 4208 NlaSvc - ok
02:09:18.0450 4208 [ 06FE5405DA932CD4DEF1517B532F543A ] nlsX86cc C:\\Windows\\SysWOW64\\NLSSRV32.EXE
02:09:18.0684 4208 nlsX86cc - ok
02:09:18.0715 4208 [ 02C1198276C0D4F39E54EB5148AF1E2A ] nmwcdcx64 C:\\Windows\\system32\\drivers\\ccdcmbox64.sys
02:09:18.0731 4208 nmwcdcx64 - ok
02:09:18.0746 4208 [ D8F00FCC82451BDAA3DB93BB62AE6AC3 ] nmwcdx64 C:\\Windows\\system32\\drivers\\ccdcmbx64.sys
02:09:18.0762 4208 nmwcdx64 - ok
02:09:18.0778 4208 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\\Windows\\system32\\drivers\\Npfs.sys
02:09:18.0778 4208 Npfs - ok
02:09:18.0809 4208 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\\Windows\\system32\\nsisvc.dll
02:09:18.0840 4208 nsi - ok
02:09:18.0856 4208 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\\Windows\\system32\\drivers\\nsiproxy.sys
02:09:18.0871 4208 nsiproxy - ok
02:09:18.0949 4208 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\\Windows\\system32\\drivers\\Ntfs.sys
02:09:19.0027 4208 Ntfs - ok
02:09:19.0043 4208 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\\Windows\\system32\\drivers\\Null.sys
02:09:19.0058 4208 Null - ok
02:09:19.0090 4208 [ 158AD24745BD85BA9BE3C51C38F48C32 ] nusb3hub C:\\Windows\\system32\\DRIVERS\\nusb3hub.sys
02:09:19.0090 4208 nusb3hub - ok
02:09:19.0105 4208 [ D40A13B2C0891E218F9523B376955DB6 ] nusb3xhc C:\\Windows\\system32\\DRIVERS\\nusb3xhc.sys
02:09:19.0121 4208 nusb3xhc - ok
02:09:19.0168 4208 [ F2662FDC20518EE8A8EED4F61BA42349 ] NVHDA C:\\Windows\\system32\\drivers\\nvhda64v.sys
02:09:19.0183 4208 NVHDA - ok
02:09:19.0526 4208 [ 573B0941A37AEBEE96085D56A103F57B ] nvlddmkm C:\\Windows\\system32\\DRIVERS\\nvlddmkm.sys
02:09:19.0729 4208 nvlddmkm - ok
02:09:19.0760 4208 [ 43AF7EBEAC2AB623468E32CADDCB61A4 ] nvpciflt C:\\Windows\\system32\\DRIVERS\\nvpciflt.sys
02:09:19.0760 4208 nvpciflt - ok
02:09:19.0807 4208 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\\Windows\\system32\\drivers\\nvraid.sys
02:09:19.0823 4208 nvraid - ok
02:09:19.0854 4208 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\\Windows\\system32\\drivers\\nvstor.sys
02:09:19.0854 4208 nvstor - ok
02:09:19.0901 4208 [ C500760572C6059918FB0C960967695B ] NVSvc C:\\Windows\\system32\\nvvsvc.exe
02:09:19.0948 4208 NVSvc - ok
02:09:20.0041 4208 [ F28169A7ADF7B41809CF92D369E744F0 ] nvUpdatusService C:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe
02:09:20.0462 4208 nvUpdatusService - ok
02:09:20.0494 4208 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\\Windows\\system32\\drivers\\nv_agp.sys
02:09:20.0509 4208 nv_agp - ok
02:09:20.0540 4208 odserv - ok
02:09:20.0572 4208 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\\Windows\\system32\\drivers\\ohci1394.sys
02:09:20.0587 4208 ohci1394 - ok
02:09:20.0650 4208 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Source Engine\\OSE.EXE
02:09:20.0868 4208 ose - ok
02:09:21.0040 4208 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\\Program Files\\Common Files\\Microsoft Shared\\OfficeSoftwareProtectionPlatform\\OSPPSVC.EXE
02:09:21.0258 4208 osppsvc - ok
02:09:21.0305 4208 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\\Windows\\system32\\pnrpsvc.dll
02:09:21.0352 4208 p2pimsvc - ok
02:09:21.0367 4208 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\\Windows\\system32\\p2psvc.dll
02:09:21.0414 4208 p2psvc - ok
02:09:21.0445 4208 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\\Windows\\system32\\DRIVERS\\parport.sys
02:09:21.0461 4208 Parport - ok
02:09:21.0492 4208 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\\Windows\\system32\\drivers\\partmgr.sys
02:09:21.0492 4208 partmgr - ok
02:09:21.0523 4208 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\\Windows\\System32\\pcasvc.dll
02:09:21.0554 4208 PcaSvc - ok
02:09:21.0601 4208 [ BC0018C2D29F655188A0ED3FA94FDB24 ] pccsmcfd C:\\Windows\\system32\\DRIVERS\\pccsmcfdx64.sys
02:09:21.0601 4208 pccsmcfd - ok
02:09:21.0632 4208 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\\Windows\\system32\\drivers\\pci.sys
02:09:21.0664 4208 pci - ok
02:09:21.0695 4208 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\\Windows\\system32\\drivers\\pciide.sys
02:09:21.0695 4208 pciide - ok
02:09:21.0726 4208 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\\Windows\\system32\\DRIVERS\\pcmcia.sys
02:09:21.0742 4208 pcmcia - ok
02:09:21.0757 4208 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\\Windows\\system32\\drivers\\pcw.sys
02:09:21.0773 4208 pcw - ok
02:09:21.0804 4208 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\\Windows\\system32\\drivers\\peauth.sys
02:09:21.0835 4208 PEAUTH - ok
02:09:21.0898 4208 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\\Windows\\system32\\peerdistsvc.dll
02:09:21.0976 4208 PeerDistSvc - ok
02:09:22.0022 4208 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\\Windows\\SysWow64\\perfhost.exe
02:09:22.0272 4208 PerfHost - ok
02:09:22.0350 4208 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\\Windows\\system32\\pla.dll
02:09:22.0428 4208 pla - ok
02:09:22.0490 4208 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\\Windows\\system32\\umpnpmgr.dll
02:09:22.0553 4208 PlugPlay - ok
02:09:22.0584 4208 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\\Windows\\system32\\pnrpauto.dll
02:09:22.0631 4208 PNRPAutoReg - ok
02:09:22.0646 4208 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\\Windows\\system32\\pnrpsvc.dll
02:09:22.0678 4208 PNRPsvc - ok
02:09:22.0709 4208 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\\Windows\\System32\\ipsecsvc.dll
02:09:22.0756 4208 PolicyAgent - ok
02:09:22.0802 4208 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\\Windows\\system32\\umpo.dll
02:09:22.0849 4208 Power - ok
02:09:22.0880 4208 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\\Windows\\system32\\DRIVERS\\raspptp.sys
02:09:22.0896 4208 PptpMiniport - ok
02:09:23.0005 4208 [ 4747B514561B1F6E8937202C0BCE0411 ] PrmBackAgent C:\\Program Files (x86)\\Common Files\\Primavera Common\\BackgroundAgent\\PrmBackgroundAgent.exe
02:09:23.0426 4208 PrmBackAgent - ok
02:09:23.0458 4208 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\\Windows\\system32\\DRIVERS\\processr.sys
02:09:23.0458 4208 Processor - ok
02:09:23.0504 4208 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\\Windows\\system32\\profsvc.dll
02:09:23.0536 4208 ProfSvc - ok
02:09:23.0551 4208 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\\Windows\\system32\\lsass.exe
02:09:23.0582 4208 ProtectedStorage - ok
02:09:23.0629 4208 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\\Windows\\system32\\DRIVERS\\pacer.sys
02:09:23.0645 4208 Psched - ok
02:09:23.0692 4208 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\\Windows\\system32\\DRIVERS\\ql2300.sys
02:09:23.0754 4208 ql2300 - ok
02:09:23.0770 4208 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\\Windows\\system32\\DRIVERS\\ql40xx.sys
02:09:23.0785 4208 ql40xx - ok
02:09:23.0816 4208 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\\Windows\\system32\\qwave.dll
02:09:23.0863 4208 QWAVE - ok
02:09:23.0879 4208 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\\Windows\\system32\\drivers\\qwavedrv.sys
02:09:23.0894 4208 QWAVEdrv - ok
02:09:23.0910 4208 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\\Windows\\system32\\DRIVERS\\rasacd.sys
02:09:23.0910 4208 RasAcd - ok
02:09:23.0957 4208 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\\Windows\\system32\\DRIVERS\\AgileVpn.sys
02:09:23.0957 4208 RasAgileVpn - ok
02:09:23.0988 4208 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\\Windows\\System32\\rasauto.dll
02:09:24.0019 4208 RasAuto - ok
02:09:24.0050 4208 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\\Windows\\system32\\DRIVERS\\rasl2tp.sys
02:09:24.0066 4208 Rasl2tp - ok
02:09:24.0097 4208 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\\Windows\\System32\\rasmans.dll
02:09:24.0144 4208 RasMan - ok
02:09:24.0175 4208 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\\Windows\\system32\\DRIVERS\\raspppoe.sys
02:09:24.0175 4208 RasPppoe - ok
02:09:24.0206 4208 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\\Windows\\system32\\DRIVERS\\rassstp.sys
02:09:24.0222 4208 RasSstp - ok
02:09:24.0253 4208 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\\Windows\\system32\\DRIVERS\\rdbss.sys
02:09:24.0284 4208 rdbss - ok
02:09:24.0300 4208 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\\Windows\\system32\\DRIVERS\\rdpbus.sys
02:09:24.0316 4208 rdpbus - ok
02:09:24.0331 4208 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\\Windows\\system32\\DRIVERS\\RDPCDD.sys
02:09:24.0331 4208 RDPCDD - ok
02:09:24.0378 4208 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\\Windows\\system32\\drivers\\rdpdr.sys
02:09:24.0409 4208 RDPDR - ok
02:09:24.0440 4208 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\\Windows\\system32\\drivers\\rdpencdd.sys
02:09:24.0440 4208 RDPENCDD - ok
02:09:24.0472 4208 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\\Windows\\system32\\drivers\\rdprefmp.sys
02:09:24.0472 4208 RDPREFMP - ok
02:09:24.0518 4208 [ 70CBA1A0C98600A2AA1863479B35CB90 ] RdpVideoMiniport C:\\Windows\\system32\\drivers\\rdpvideominiport.sys
02:09:24.0518 4208 RdpVideoMiniport - ok
02:09:24.0550 4208 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\\Windows\\system32\\drivers\\RDPWD.sys
02:09:24.0581 4208 RDPWD - ok
02:09:24.0612 4208 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost