PC Hunter Standard --- Computer Examination Report
Examination Date: 2013-10-20 14:56
OS Information: Microsoft Windows 7 Ultimate Edition Service Pack 1 (build 7601), 32-bit
Internet Explorer: 9.10.9200.16721

Examination Items:
      Process
      Process Modules
      Process Threads
      Kernel Module
      Notify Routine
      Filter
      DPC Timer
      Worker Thread
      HalDispatchTable
      HalPrivateDispatchTable
      HalAcpiDispatchTable
      Wdf01000 Dispatch Fun
      WdfFunction
      Filter
      File System
      Sfilter FileSystem Filter Callback
      ClassInitData Callback
      Npfs Dispatch Fun
      Msfs Dispatch Fun
      System Debug
      Object Hijack
      Direct IO
      GDT
      SSDT
      Shadow SSDT
      FSD
      Keyboard
      Mouclass
      Classpnp
      Atapi
      Acpi
      Scsi
      Kernel Hook
      PTE HOOK
      Object Type
      IDT
      Message Hook
      Process Hook
      KernelCallbackTable
      Port
      Tcpip
      Nsiproxy
      Tdx
      Ndis Handler
      IE Plugin
      IE Shell
      Spi
      Hosts File
      Startup
      Service
      Schedule Task
      File Association
      IFEO
      IME
      Firewall Rule
      System User Name
      Scan MBR Rootkit

==========================================================================================

Process

       System - System - 
       AvastSvc.exe - C:\Program Files\AVAST Software\Avast\AvastSvc.exe - AVAST Software
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       TuneUpUtilitiesApp32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - TuneUp Software
       nvvsvc.exe - C:\Windows\System32\nvvsvc.exe - NVIDIA Corporation
       lsass.exe - C:\Windows\System32\lsass.exe - Microsoft Corporation
       WmiPrvSE.exe - C:\Windows\System32\wbem\WmiPrvSE.exe - Microsoft Corporation
       smss.exe - C:\Windows\System32\smss.exe - Microsoft Corporation
       WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - Wargaming.net
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       SASCore.exe - C:\Program Files\SUPERAntiSpyware\SASCore.exe - SUPERAntiSpyware.com
       csrss.exe - C:\Windows\System32\csrss.exe - Microsoft Corporation
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - Comodo Security Solutions, Inc.
       wininit.exe - C:\Windows\System32\wininit.exe - Microsoft Corporation
       csrss.exe - C:\Windows\System32\csrss.exe - Microsoft Corporation
       services.exe - C:\Windows\System32\services.exe - Microsoft Corporation
       winlogon.exe - C:\Windows\System32\winlogon.exe - Microsoft Corporation
       wmpnetwk.exe - C:\Program Files\Windows Media Player\wmpnetwk.exe - Microsoft Corporation
       lsm.exe - C:\Windows\System32\lsm.exe - Microsoft Corporation
       nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
       avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
       taskhost.exe - C:\Windows\System32\taskhost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       cmdagent.exe - C:\Program Files\Comodo\COMODO Internet Security\cmdagent.exe - COMODO
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       launcher_service.exe - C:\Program Files\Common Files\COMODO\launcher_service.exe - Comodo Security Solutions, Inc.
       cmdvirth.exe - C:\Program Files\Comodo\COMODO Internet Security\cmdvirth.exe - COMODO
       nvvsvc.exe - C:\Windows\System32\nvvsvc.exe - NVIDIA Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       nvSCPAPISvr.exe - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - NVIDIA Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       explorer.exe - C:\Windows\explorer.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       CisTray.exe - C:\Program Files\Comodo\COMODO Internet Security\CisTray.exe - COMODO
       nvtray.exe - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - NVIDIA Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       conhost.exe - C:\Windows\System32\conhost.exe - Microsoft Corporation
       cavwp.exe - C:\Program Files\Comodo\COMODO Internet Security\cavwp.exe - COMODO
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       dragon_updater.exe - C:\Program Files\Comodo\Dragon\dragon_updater.exe - 
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
       GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
       PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - ????(??)????????
       WLIDSVC.EXE - C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE - Microsoft Corp.
       RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       mbamscheduler.exe - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe - Malwarebytes Corporation
       nvxdsync.exe - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - NVIDIA Corporation
       spoolsv.exe - C:\Windows\System32\spoolsv.exe - Microsoft Corporation
       daemonu.exe - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - NVIDIA Corporation
       rundll32.exe - C:\Windows\System32\rundll32.exe - Microsoft Corporation
       TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
       dwm.exe - C:\Windows\System32\dwm.exe - Microsoft Corporation
       WLIDSVCM.EXE - C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE - Microsoft Corp.
       unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - Comodo Security Solutions, Inc.
       audiodg.exe - C:\Windows\System32\audiodg.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       conhost.exe - C:\Windows\System32\conhost.exe - Microsoft Corporation
       Idle - Idle - 

==========================================================================================

Process Modules

      Image File Name[System]Modules
             ntdll.dll - C:\Windows\System32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[AvastSvc.exe]Modules
             AvastSvc.exe - C:\Program Files\AVAST Software\Avast\AvastSvc.exe - AVAST Software
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ashBase.dll - C:\Program Files\AVAST Software\Avast\ashBase.dll - AVAST Software
             WSOCK32.dll - C:\Windows\system32\WSOCK32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             SSLEAY32.dll - C:\Program Files\AVAST Software\Avast\SSLEAY32.dll - The OpenSSL Project, http://www.openssl.org/
             LIBEAY32.dll - C:\Program Files\AVAST Software\Avast\LIBEAY32.dll - The OpenSSL Project, http://www.openssl.org/
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             aswCmnBS.dll - C:\Program Files\AVAST Software\Avast\aswCmnBS.dll - AVAST Software
             aswCmnOS.dll - C:\Program Files\AVAST Software\Avast\aswCmnOS.dll - AVAST Software
             aswCmnIS.dll - C:\Program Files\AVAST Software\Avast\aswCmnIS.dll - AVAST Software
             MSVCP110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCP110.dll - Microsoft Corporation
             avastIP.dll - C:\Program Files\AVAST Software\Avast\avastIP.dll - AVAST Software
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             aswCommChannel.dll - C:\Program Files\AVAST Software\Avast\aswCommChannel.dll - AVAST Software
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             aswEngLdr.dll - C:\Program Files\AVAST Software\Avast\aswEngLdr.dll - AVAST Software
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             shlwapi.DLL - C:\Windows\system32\shlwapi.DLL - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             dbghelp.dll - C:\Program Files\AVAST Software\Avast\dbghelp.dll - Microsoft Corporation
             Base.dll - C:\Program Files\AVAST Software\Avast\1029\Base.dll - AVAST Software
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             ashServ.dll - C:\Program Files\AVAST Software\Avast\ashServ.dll - AVAST Software
             RASAPI32.dll - C:\Windows\system32\RASAPI32.dll - Microsoft Corporation
             rasman.dll - C:\Windows\system32\rasman.dll - Microsoft Corporation
             ashTask.dll - C:\Program Files\AVAST Software\Avast\ashTask.dll - AVAST Software
             aswAux.dll - C:\Program Files\AVAST Software\Avast\aswAux.dll - AVAST Software
             Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             aswProperty.dll - C:\Program Files\AVAST Software\Avast\aswProperty.dll - AVAST Software
             AavmRpch.dll - C:\Program Files\AVAST Software\Avast\AavmRpch.dll - AVAST Software
             aswIdle.dll - C:\Program Files\AVAST Software\Avast\aswIdle.dll - AVAST Software
             aswLog.dll - C:\Program Files\AVAST Software\Avast\aswLog.dll - AVAST Software
             aswSqLt.dll - C:\Program Files\AVAST Software\Avast\aswSqLt.dll - AVAST Software
             ashTaskEx.dll - C:\Program Files\AVAST Software\Avast\ashTaskEx.dll - AVAST Software
             aswStrm.dll - C:\Program Files\AVAST Software\Avast\aswStrm.dll - AVAST Software
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             wscisvif.dll - C:\Windows\system32\wscisvif.dll - Microsoft Corporation
             WSCAPI.dll - C:\Windows\system32\WSCAPI.dll - Microsoft Corporation
             aswEngin.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswEngin.dll - AVAST Software
             aswCmnIS.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswCmnIS.dll - AVAST Software
             aswCmnOS.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswCmnOS.dll - AVAST Software
             aswCmnBS.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswCmnBS.dll - AVAST Software
             aswScan.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswScan.dll - AVAST Software
             aswRep.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswRep.dll - AVAST Software
             aswFiDb.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\aswFiDb.dll - AVAST Software
             algo.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\algo.dll - 
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             Wtsapi32.dll - C:\Windows\system32\Wtsapi32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             NetApi32.dll - C:\Windows\system32\NetApi32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             AhResMai.dll - C:\Program Files\AVAST Software\Avast\AhResMai.dll - AVAST Software
             AhResStd.dll - C:\Program Files\AVAST Software\Avast\AhResStd.dll - AVAST Software
             AhResWS.dll - C:\Program Files\AVAST Software\Avast\AhResWS.dll - AVAST Software
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             wlanapi.dll - C:\Windows\system32\wlanapi.dll - Microsoft Corporation
             wlanutil.dll - C:\Windows\system32\wlanutil.dll - Microsoft Corporation
             netshell.dll - C:\Windows\system32\netshell.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             nlaapi.dll - C:\Windows\system32\nlaapi.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             aswpatchmgt.dll - C:\Program Files\AVAST Software\Avast\aswpatchmgt.dll - AVAST Software
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\system32\SAMCLI.DLL - Microsoft Corporation
             swhealthex.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\swhealthex.dll - AVAST Software
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             schannel.DLL - C:\Windows\system32\schannel.DLL - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             qmgrprxy.dll - C:\Windows\system32\qmgrprxy.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             ashMaiSv.dll - C:\Program Files\AVAST Software\Avast\ashMaiSv.dll - AVAST Software
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             wscproxystub.dll - C:\Windows\system32\wscproxystub.dll - Microsoft Corporation
             ashWebSv.dll - C:\Program Files\AVAST Software\Avast\ashWebSv.dll - AVAST Software
             security.dll - C:\Windows\system32\security.dll - Microsoft Corporation
             ashWsFtr.dll - C:\Program Files\AVAST Software\Avast\ashWsFtr.dll - AVAST Software
             aswDld.dll - C:\Program Files\AVAST Software\Avast\aswDld.dll - AVAST Software
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             cryptsvc.dll - c:\windows\system32\cryptsvc.dll - Microsoft Corporation
             CRYPTNET.dll - c:\windows\system32\CRYPTNET.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             VSSAPI.DLL - C:\Windows\system32\VSSAPI.DLL - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             VssTrace.DLL - C:\Windows\system32\VssTrace.DLL - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             DNSAPI.dll - c:\windows\system32\DNSAPI.dll - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             Fwpuclnt.dll - C:\Windows\system32\Fwpuclnt.dll - Microsoft Corporation
             dnsext.dll - C:\Windows\System32\dnsext.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             samcli.dll - C:\Windows\system32\samcli.dll - Microsoft Corporation
             SAMLIB.dll - C:\Windows\system32\SAMLIB.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             es.dll - C:\Windows\system32\es.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             iphlpapi.dll - C:\Windows\system32\iphlpapi.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wkssvc.dll - c:\windows\system32\wkssvc.dll - Microsoft Corporation
             netjoin.dll - c:\windows\system32\netjoin.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             nlasvc.dll - c:\windows\system32\nlasvc.dll - Microsoft Corporation
             wevtapi.dll - c:\windows\system32\wevtapi.dll - Microsoft Corporation
             ncsi.dll - c:\windows\system32\ncsi.dll - Microsoft Corporation
             WINHTTP.dll - c:\windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - c:\windows\system32\webio.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             ssdpapi.dll - C:\Windows\system32\ssdpapi.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             tapisrv.dll - c:\windows\system32\tapisrv.dll - Microsoft Corporation
             rtutils.dll - C:\Windows\system32\rtutils.dll - Microsoft Corporation
             unimdm.tsp - C:\Windows\system32\unimdm.tsp - Microsoft Corporation
             uniplat.dll - C:\Windows\system32\uniplat.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             kmddsp.tsp - C:\Windows\system32\kmddsp.tsp - Microsoft Corporation
             ndptsp.tsp - C:\Windows\system32\ndptsp.tsp - Microsoft Corporation
             hidphone.tsp - C:\Windows\system32\hidphone.tsp - Microsoft Corporation
             HID.DLL - C:\Windows\system32\HID.DLL - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             SensApi.dll - C:\Windows\system32\SensApi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[TuneUpUtilitiesApp32.exe]Modules
             TuneUpUtilitiesApp32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - TuneUp Software
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvvsvc.exe]Modules
             nvvsvc.exe - C:\Windows\system32\nvvsvc.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             NVSVC.DLL - C:\Windows\system32\NVSVC.DLL - NVIDIA Corporation
             mscms.dll - C:\Windows\system32\mscms.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             nvapi.dll - C:\Windows\system32\nvapi.dll - NVIDIA Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             NVSVCR.DLL - C:\Windows\system32\NVSVCR.DLL - NVIDIA Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             nvxdbat.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll - NVIDIA Corporation
             nvxdplcy.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll - NVIDIA Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[lsass.exe]Modules
             lsass.exe - C:\Windows\system32\lsass.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SspiSrv.dll - C:\Windows\system32\SspiSrv.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             lsasrv.dll - C:\Windows\system32\lsasrv.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             SAMSRV.dll - C:\Windows\system32\SAMSRV.dll - Microsoft Corporation
             cryptdll.dll - C:\Windows\system32\cryptdll.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             wevtapi.dll - C:\Windows\system32\wevtapi.dll - Microsoft Corporation
             cngaudit.dll - C:\Windows\system32\cngaudit.dll - Microsoft Corporation
             AUTHZ.dll - C:\Windows\system32\AUTHZ.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             msprivs.DLL - C:\Windows\system32\msprivs.DLL - Microsoft Corporation
             netjoin.dll - C:\Windows\system32\netjoin.dll - Microsoft Corporation
             negoexts.DLL - C:\Windows\system32\negoexts.DLL - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             cryptbase.dll - C:\Windows\system32\cryptbase.dll - Microsoft Corporation
             kerberos.DLL - C:\Windows\system32\kerberos.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             msv1_0.DLL - C:\Windows\system32\msv1_0.DLL - Microsoft Corporation
             netlogon.DLL - C:\Windows\system32\netlogon.DLL - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             logoncli.dll - C:\Windows\system32\logoncli.dll - Microsoft Corporation
             schannel.DLL - C:\Windows\system32\schannel.DLL - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             wdigest.DLL - C:\Windows\system32\wdigest.DLL - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             tspkg.DLL - C:\Windows\system32\tspkg.DLL - Microsoft Corporation
             pku2u.DLL - C:\Windows\system32\pku2u.DLL - Microsoft Corporation
             livessp.DLL - C:\Windows\system32\livessp.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             efslsaext.dll - C:\Windows\system32\efslsaext.dll - Microsoft Corporation
             scecli.DLL - C:\Windows\system32\scecli.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             dssenh.dll - C:\Windows\system32\dssenh.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             certpoleng.dll - C:\Windows\system32\certpoleng.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WmiPrvSE.exe]Modules
             wmiprvse.exe - C:\Windows\system32\wbem\wmiprvse.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             FastProx.dll - C:\Windows\system32\wbem\FastProx.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             NCObjAPI.DLL - C:\Windows\system32\NCObjAPI.DLL - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             wmiutils.dll - C:\Windows\system32\wbem\wmiutils.dll - Microsoft Corporation
             cimwin32.dll - C:\Windows\system32\wbem\cimwin32.dll - Microsoft Corporation
             framedynos.dll - C:\Windows\system32\framedynos.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WMI.DLL - C:\Windows\system32\WMI.DLL - Microsoft Corporation
             WINBRAND.dll - C:\Windows\system32\WINBRAND.dll - Microsoft Corporation
             SECURITY.DLL - C:\Windows\system32\SECURITY.DLL - Microsoft Corporation
             SECUR32.DLL - C:\Windows\system32\SECUR32.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             schannel.DLL - C:\Windows\system32\schannel.DLL - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             NETAPI32.DLL - C:\Windows\system32\NETAPI32.DLL - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\system32\SAMCLI.DLL - Microsoft Corporation
             LOGONCLI.DLL - C:\Windows\system32\LOGONCLI.DLL - Microsoft Corporation
             BROWCLI.DLL - C:\Windows\system32\BROWCLI.DLL - Microsoft Corporation
             SCHEDCLI.DLL - C:\Windows\system32\SCHEDCLI.DLL - Microsoft Corporation
             DSROLE.DLL - C:\Windows\system32\DSROLE.DLL - Microsoft Corporation
             cscapi.dll - C:\Windows\system32\cscapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[smss.exe]Modules
             smss.exe - C:\Windows\System32\smss.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WorldOfTanks.exe]Modules
             WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - Wargaming.net
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             voip.dll - C:\Program Files\World_of_Tanks\voip.dll - 
             vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             ortp.dll - C:\Program Files\World_of_Tanks\ortp.dll - 
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             libsndfile-1.dll - C:\Program Files\World_of_Tanks\libsndfile-1.dll - Vivox
             vivoxoal.dll - C:\Program Files\World_of_Tanks\vivoxoal.dll - Vivox
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             SensApi.dll - C:\Windows\system32\SensApi.dll - Microsoft Corporation
             vivoxplatform.dll - C:\Program Files\World_of_Tanks\vivoxplatform.dll - Vivox
             libcurl.dll - C:\Program Files\World_of_Tanks\libcurl.dll - 
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             zlib1.dll - C:\Program Files\World_of_Tanks\zlib1.dll - Zlib
             MSVCP90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll - Microsoft Corporation
             MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             umbraob32.dll - C:\Program Files\World_of_Tanks\umbraob32.dll - Umbra Software Ltd.
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             DINPUT8.dll - C:\Windows\system32\DINPUT8.dll - Microsoft Corporation
             d3dx9_43.dll - C:\Windows\system32\d3dx9_43.dll - Microsoft Corporation
             d3d9.dll - C:\Windows\system32\d3d9.dll - Microsoft Corporation
             d3d8thk.dll - C:\Windows\system32\d3d8thk.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             LIBEAY32.dll - C:\Program Files\World_of_Tanks\LIBEAY32.dll - The OpenSSL Project, http://www.openssl.org/
             WSOCK32.dll - C:\Windows\system32\WSOCK32.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             fmodex.dll - C:\Program Files\World_of_Tanks\fmodex.dll - Firelight Technologies
             MSACM32.dll - C:\Windows\system32\MSACM32.dll - Microsoft Corporation
             fmod_event_net.dll - C:\Program Files\World_of_Tanks\fmod_event_net.dll - Firelight Technologies
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             d3dx10_43.dll - C:\Windows\system32\d3dx10_43.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             AcLayers.DLL - C:\Windows\AppPatch\AcLayers.DLL - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             cmdvrt32.dll - C:\Windows\system32\cmdvrt32.dll - COMODO
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             nvapi.dll - C:\Windows\system32\nvapi.dll - NVIDIA Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             HID.DLL - C:\Windows\system32\HID.DLL - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\system32\powrprof.dll - Microsoft Corporation
             nvSCPAPI.dll - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPI.dll - NVIDIA Corporation
             nvStereoApiI.dll - C:\Program Files\NVIDIA Corporation\3D Vision\nvStereoApiI.dll - NVIDIA Corporation
             d3dx9_31.dll - C:\Windows\system32\d3dx9_31.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\System32\PROPSYS.dll - Microsoft Corporation
             wdmaud.drv - C:\Windows\system32\wdmaud.drv - Microsoft Corporation
             ksuser.dll - C:\Windows\system32\ksuser.dll - Microsoft Corporation
             AVRT.dll - C:\Windows\system32\AVRT.dll - Microsoft Corporation
             AUDIOSES.DLL - C:\Windows\system32\AUDIOSES.DLL - Microsoft Corporation
             msacm32.drv - C:\Windows\system32\msacm32.drv - Microsoft Corporation
             midimap.dll - C:\Windows\system32\midimap.dll - Microsoft Corporation
             uwApi.dll - C:\Program Files\World_of_Tanks\uwApi.dll - Gametrix
             explorerframe.dll - C:\Windows\system32\explorerframe.dll - Microsoft Corporation
             DUser.dll - C:\Windows\system32\DUser.dll - Microsoft Corporation
             DUI70.dll - C:\Windows\system32\DUI70.dll - Microsoft Corporation
             dsound.dll - C:\Windows\system32\dsound.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bfe.dll - c:\windows\system32\bfe.dll - Microsoft Corporation
             AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             slc.dll - c:\windows\system32\slc.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             pcwum.dll - C:\Windows\system32\pcwum.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             FirewallAPI.dll - c:\windows\system32\FirewallAPI.dll - Microsoft Corporation
             fwpuclnt.dll - c:\windows\system32\fwpuclnt.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshqos.dll - C:\Windows\System32\wshqos.dll - Microsoft Corporation
             wshtcpip.DLL - C:\Windows\system32\wshtcpip.DLL - Microsoft Corporation
             wship6.dll - C:\Windows\system32\wship6.dll - Microsoft Corporation
             wfapigp.dll - C:\Windows\system32\wfapigp.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             dps.dll - c:\windows\system32\dps.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             taskschd.dll - C:\Windows\system32\taskschd.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             wdi.dll - C:\Windows\system32\wdi.dll - Microsoft Corporation
             wdiasqmmodule.dll - C:\Windows\system32\wdiasqmmodule.dll - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             radardt.dll - C:\Windows\system32\radardt.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             fdrespub.dll - c:\windows\system32\fdrespub.dll - Microsoft Corporation
             wsdapi.dll - c:\windows\system32\wsdapi.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             IPHLPAPI.DLL - c:\windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             webservices.dll - c:\windows\system32\webservices.dll - Microsoft Corporation
             FirewallAPI.dll - c:\windows\system32\FirewallAPI.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             wshqos.dll - C:\Windows\System32\wshqos.dll - Microsoft Corporation
             wshtcpip.DLL - C:\Windows\system32\wshtcpip.DLL - Microsoft Corporation
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             HTTPAPI.dll - C:\Windows\system32\HTTPAPI.dll - Microsoft Corporation
             pcwum.dll - C:\Windows\system32\pcwum.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             msxml6.dll - C:\Windows\System32\msxml6.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             ssdpsrv.dll - c:\windows\system32\ssdpsrv.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             upnphost.dll - c:\windows\system32\upnphost.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SSDPAPI.dll - c:\windows\system32\SSDPAPI.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvstreamsvc.exe]Modules
             nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             d3d9.dll - C:\Windows\system32\d3d9.dll - Microsoft Corporation
             d3d8thk.dll - C:\Windows\system32\d3d8thk.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             nvaudcap32v.dll - C:\Windows\system32\nvaudcap32v.dll - NVIDIA Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\System32\PROPSYS.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             bthserv.dll - c:\windows\system32\bthserv.dll - Microsoft Corporation
             SHFOLDER.dll - c:\windows\system32\SHFOLDER.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             msv1_0.DLL - C:\Windows\system32\msv1_0.DLL - Microsoft Corporation
             cryptdll.dll - C:\Windows\system32\cryptdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[SASCore.exe]Modules
             SASCORE.EXE - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE - SUPERAntiSpyware.com
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Modules
             csrss.exe - C:\Windows\system32\csrss.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             cmdcsr.dll - C:\Windows\system32\cmdcsr.dll - COMODO
             basesrv.DLL - C:\Windows\system32\basesrv.DLL - Microsoft Corporation
             winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\SYSTEM32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sxssrv.DLL - C:\Windows\system32\sxssrv.DLL - Microsoft Corporation
             sxs.dll - C:\Windows\system32\sxs.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[unit.exe]Modules
             unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - Comodo Security Solutions, Inc.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             unity_core.dll - C:\Program Files\Comodo\GeekBuddy\unity_core.dll - Comodo Security Solutions, Inc.
             QtNetwork4.dll - C:\Program Files\Comodo\GeekBuddy\QtNetwork4.dll - 
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             QtCore4.dll - C:\Program Files\Comodo\GeekBuddy\QtCore4.dll - 
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             MSVCP90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll - Microsoft Corporation
             MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             web-client.dll - C:\Program Files\Comodo\GeekBuddy\web-client.dll - Comodo Security Solutions, Inc.
             QtGui4.dll - C:\Program Files\Comodo\GeekBuddy\QtGui4.dll - 
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             AcLayers.DLL - C:\Windows\AppPatch\AcLayers.DLL - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-2\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-0\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2040\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-3\export.DLL - Comodo Security Solutions, Inc.
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             OFFREG.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\OFFREG.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             imagehlp.dll - C:\Windows\system32\imagehlp.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             taskschd.dll - C:\Windows\system32\taskschd.dll - Microsoft Corporation
             LINKINFO.dll - C:\Windows\system32\LINKINFO.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             CRYPTNET.dll - C:\Windows\system32\CRYPTNET.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             SensApi.dll - C:\Windows\system32\SensApi.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-5\export.DLL - Comodo Security Solutions, Inc.
             eventmonitorapi.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-5\eventmonitorapi.DLL - Comodo Security Solutions, Inc.
             wevtapi.dll - C:\Windows\system32\wevtapi.dll - Microsoft Corporation
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2037\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-8\export.DLL - Comodo Security Solutions, Inc.
             addonscontroller.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2037\addonscontroller.DLL - Comodo Security Solutions, Inc.
             QtScript4.dll - C:\Program Files\Comodo\GeekBuddy\QtScript4.dll - 
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-10\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-13\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2041\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-2042\export.DLL - Comodo Security Solutions, Inc.
             pdh.dll - C:\Windows\system32\pdh.dll - Microsoft Corporation
             sfc.dll - C:\Windows\system32\sfc.dll - Microsoft Corporation
             sfc_os.DLL - C:\Windows\system32\sfc_os.DLL - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2051\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-2045\export.DLL - Comodo Security Solutions, Inc.
             sensor-mb.dll - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2051\sensor-mb.dll - Comodo Security Solutions, Inc.
             sensors-cpu.dll - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2051\sensors-cpu.dll - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-15\export.DLL - Comodo Security Solutions, Inc.
             eventmonitorapi.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-15\eventmonitorapi.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\plugin\component-2048\export.DLL - Comodo Security Solutions, Inc.
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-2054\export.DLL - Comodo Security Solutions, Inc.
             export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-17\export.DLL - Comodo Security Solutions, Inc.
             DEVRTL.dll - C:\Windows\system32\DEVRTL.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[wininit.exe]Modules
             wininit.exe - C:\Windows\system32\wininit.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Modules
             csrss.exe - C:\Windows\system32\csrss.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             cmdcsr.dll - C:\Windows\system32\cmdcsr.dll - COMODO
             basesrv.DLL - C:\Windows\system32\basesrv.DLL - Microsoft Corporation
             winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\SYSTEM32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sxssrv.DLL - C:\Windows\system32\sxssrv.DLL - Microsoft Corporation
             sxs.dll - C:\Windows\system32\sxs.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[services.exe]Modules
             services.exe - C:\Windows\system32\services.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             scext.dll - C:\Windows\system32\scext.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SCESRV.dll - C:\Windows\system32\SCESRV.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             AUTHZ.dll - C:\Windows\system32\AUTHZ.dll - Microsoft Corporation
             UBPM.dll - C:\Windows\system32\UBPM.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[winlogon.exe]Modules
             winlogon.exe - C:\Windows\system32\winlogon.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             uxtuneup.dll - c:\windows\system32\uxtuneup.dll - TuneUp Software
             dbghelp.dll - C:\Windows\system32\dbghelp.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             themeservice.dll - C:\Windows\system32\themeservice.dll - Microsoft Corporation
             UXINIT.dll - C:\Windows\system32\UXINIT.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             netjoin.dll - C:\Windows\system32\netjoin.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[wmpnetwk.exe]Modules
             wmpnetwk.exe - C:\Program Files\Windows Media Player\wmpnetwk.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             WSOCK32.dll - C:\Windows\system32\WSOCK32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             wmdrmdev.dll - C:\Windows\system32\wmdrmdev.dll - Microsoft Corporation
             drmv2clt.dll - C:\Windows\system32\drmv2clt.dll - Microsoft Corporation
             MFPlat.DLL - C:\Windows\system32\MFPlat.DLL - Microsoft Corporation
             AVRT.dll - C:\Windows\system32\AVRT.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             upnp.dll - C:\Windows\system32\upnp.dll - Microsoft Corporation
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             SSDPAPI.dll - C:\Windows\system32\SSDPAPI.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             wmp.dll - C:\Windows\system32\wmp.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             wmploc.dll - C:\Windows\system32\wmploc.dll - Microsoft Corporation
             ieproxy.dll - C:\Program Files\Internet Explorer\ieproxy.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             windowscodecs.dll - C:\Windows\system32\windowscodecs.dll - Microsoft Corporation
             wmpps.dll - C:\Windows\System32\wmpps.dll - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             FirewallAPI.dll - C:\Windows\system32\FirewallAPI.dll - Microsoft Corporation
             devenum.dll - C:\Windows\system32\devenum.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             msdmo.dll - C:\Windows\system32\msdmo.dll - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             provsvc.dll - C:\Windows\System32\provsvc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[lsm.exe]Modules
             lsm.exe - C:\Windows\system32\lsm.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SYSNTFY.dll - C:\Windows\system32\SYSNTFY.dll - Microsoft Corporation
             WMsgAPI.dll - C:\Windows\system32\WMsgAPI.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             pcwum.dll - C:\Windows\system32\pcwum.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvstreamsvc.exe]Modules
             nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             d3d9.dll - C:\Windows\system32\d3d9.dll - Microsoft Corporation
             d3d8thk.dll - C:\Windows\system32\d3d8thk.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             nvapi.dll - C:\Windows\system32\nvapi.dll - NVIDIA Corporation
             EasyDaemonAPIU.dll - C:\Program Files\NVIDIA Corporation\Update Common\EasyDaemonAPIU.dll - NVIDIA Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[avastui.exe]Modules
             avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             ole32.DLL - C:\Windows\system32\ole32.DLL - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             shlwapi.DLL - C:\Windows\system32\shlwapi.DLL - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             advapi32.DLL - C:\Windows\system32\advapi32.DLL - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             version.DLL - C:\Windows\system32\version.DLL - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             CRYPTUI.dll - C:\Windows\system32\CRYPTUI.dll - Microsoft Corporation
             HTMLayout.dll - C:\Program Files\AVAST Software\Avast\HTMLayout.dll - AVAST Software
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             aswAux.dll - C:\Program Files\AVAST Software\Avast\aswAux.dll - AVAST Software
             aswCmnBS.dll - C:\Program Files\AVAST Software\Avast\aswCmnBS.dll - AVAST Software
             aswCmnOS.dll - C:\Program Files\AVAST Software\Avast\aswCmnOS.dll - AVAST Software
             aswCmnIS.dll - C:\Program Files\AVAST Software\Avast\aswCmnIS.dll - AVAST Software
             MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             MSVCP110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCP110.dll - Microsoft Corporation
             ashBase.dll - C:\Program Files\AVAST Software\Avast\ashBase.dll - AVAST Software
             WSOCK32.dll - C:\Windows\system32\WSOCK32.dll - Microsoft Corporation
             SSLEAY32.dll - C:\Program Files\AVAST Software\Avast\SSLEAY32.dll - The OpenSSL Project, http://www.openssl.org/
             LIBEAY32.dll - C:\Program Files\AVAST Software\Avast\LIBEAY32.dll - The OpenSSL Project, http://www.openssl.org/
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             avastIP.dll - C:\Program Files\AVAST Software\Avast\avastIP.dll - AVAST Software
             aswCommChannel.dll - C:\Program Files\AVAST Software\Avast\aswCommChannel.dll - AVAST Software
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             aswEngLdr.dll - C:\Program Files\AVAST Software\Avast\aswEngLdr.dll - AVAST Software
             ashTask.dll - C:\Program Files\AVAST Software\Avast\ashTask.dll - AVAST Software
             AavmRpch.dll - C:\Program Files\AVAST Software\Avast\AavmRpch.dll - AVAST Software
             aswLog.dll - C:\Program Files\AVAST Software\Avast\aswLog.dll - AVAST Software
             aswSqLt.dll - C:\Program Files\AVAST Software\Avast\aswSqLt.dll - AVAST Software
             aswProperty.dll - C:\Program Files\AVAST Software\Avast\aswProperty.dll - AVAST Software
             aswUtil.dll - C:\Program Files\AVAST Software\Avast\aswUtil.dll - AVAST Software
             mfc110u.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\mfc110u.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             dbghelp.dll - C:\Program Files\AVAST Software\Avast\dbghelp.dll - Microsoft Corporation
             Base.dll - C:\Program Files\AVAST Software\Avast\1029\Base.dll - AVAST Software
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             aswAra.dll - C:\Program Files\AVAST Software\Avast\aswAra.dll - AVAST Software
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             aswData.dll - C:\Program Files\AVAST Software\Avast\aswData.dll - AVAST Software
             Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             ashTaskEx.dll - C:\Program Files\AVAST Software\Avast\ashTaskEx.dll - AVAST Software
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             UILangRes.dll - C:\Program Files\AVAST Software\Avast\1029\UILangRes.dll - AVAST Software
             CommonRes.dll - C:\Program Files\AVAST Software\Avast\CommonRes.dll - AVAST Software
             aswResourceLib.dll - C:\Program Files\AVAST Software\Avast\aswResourceLib.dll - AVAST Software
             aswRemoteCache.dll - C:\Program Files\AVAST Software\Avast\aswRemoteCache.dll - AVAST Software
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             icudt.dll - C:\Program Files\AVAST Software\Avast\icudt.dll - The ICU Project
             D3DCompiler_43.dll - C:\Windows\system32\D3DCompiler_43.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             DSOUND.dll - C:\Windows\system32\DSOUND.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             WinSATAPI.dll - C:\Windows\system32\WinSATAPI.dll - Microsoft Corporation
             dxgi.dll - C:\Windows\system32\dxgi.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             DEVRTL.dll - C:\Windows\system32\DEVRTL.dll - Microsoft Corporation
             SPINF.dll - C:\Windows\system32\SPINF.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             uiExt.dll - C:\Program Files\AVAST Software\Avast\defs\13101901\uiExt.dll - AVAST Software
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshqos.dll - C:\Windows\System32\wshqos.dll - Microsoft Corporation
             wshtcpip.DLL - C:\Windows\system32\wshtcpip.DLL - Microsoft Corporation
             wship6.dll - C:\Windows\system32\wship6.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             schannel.DLL - C:\Windows\system32\schannel.DLL - Microsoft Corporation
             explorerframe.dll - C:\Windows\system32\explorerframe.dll - Microsoft Corporation
             DUser.dll - C:\Windows\system32\DUser.dll - Microsoft Corporation
             DUI70.dll - C:\Windows\system32\DUI70.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[taskhost.exe]Modules
             taskhost.exe - C:\Windows\system32\taskhost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             HotStartUserAgent.dll - C:\Windows\System32\HotStartUserAgent.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             MsCtfMonitor.dll - C:\Windows\system32\MsCtfMonitor.dll - Microsoft Corporation
             MSUTB.dll - C:\Windows\system32\MSUTB.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             PlaySndSrv.dll - C:\Windows\System32\PlaySndSrv.dll - Microsoft Corporation
             dimsjob.dll - C:\Windows\system32\dimsjob.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             wininet.dll - C:\Windows\system32\wininet.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             mscms.dll - C:\Windows\System32\mscms.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\System32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\System32\profapi.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             Dxva2.dll - C:\Windows\system32\Dxva2.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             taskschd.dll - C:\Windows\system32\taskschd.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             psapi.dll - C:\Windows\system32\psapi.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             dsrole.dll - C:\Windows\system32\dsrole.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             sqmapi.dll - C:\Program Files\Internet Explorer\sqmapi.dll - Microsoft Corporation
             MMDevAPI.DLL - C:\Windows\system32\MMDevAPI.DLL - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             wdmaud.drv - C:\Windows\system32\wdmaud.drv - Microsoft Corporation
             ksuser.dll - C:\Windows\system32\ksuser.dll - Microsoft Corporation
             AVRT.dll - C:\Windows\system32\AVRT.dll - Microsoft Corporation
             AUDIOSES.DLL - C:\Windows\system32\AUDIOSES.DLL - Microsoft Corporation
             msacm32.drv - C:\Windows\system32\msacm32.drv - Microsoft Corporation
             MSACM32.dll - C:\Windows\system32\MSACM32.dll - Microsoft Corporation
             midimap.dll - C:\Windows\system32\midimap.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             umpnpmgr.dll - c:\windows\system32\umpnpmgr.dll - Microsoft Corporation
             SPINF.dll - c:\windows\system32\SPINF.dll - Microsoft Corporation
             DEVRTL.dll - c:\windows\system32\DEVRTL.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             umpo.dll - c:\windows\system32\umpo.dll - Microsoft Corporation
             WINSTA.dll - c:\windows\system32\WINSTA.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             pcwum.DLL - C:\Windows\system32\pcwum.DLL - Microsoft Corporation
             rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             SspiCli.dll - c:\windows\system32\SspiCli.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             wmidcprv.dll - C:\Windows\system32\wbem\wmidcprv.dll - Microsoft Corporation
             FastProx.dll - C:\Windows\system32\wbem\FastProx.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             wmiutils.dll - C:\Windows\system32\wbem\wmiutils.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[cmdagent.exe]Modules
             cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             dbghelp.dll - C:\Program Files\COMODO\COMODO Internet Security\dbghelp.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             FLTLIB.DLL - C:\Windows\system32\FLTLIB.DLL - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             imagehlp.dll - C:\Windows\system32\imagehlp.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             msi.dll - C:\Windows\system32\msi.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             rasapi32.dll - C:\Windows\system32\rasapi32.dll - Microsoft Corporation
             rasman.dll - C:\Windows\system32\rasman.dll - Microsoft Corporation
             cmdavcen.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdavcen.dll - COMODO
             cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             cmdtrust.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdtrust.dll - COMODO
             cmdcfg.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcfg.dll - COMODO
             cmdcloud.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcloud.dll - COMODO
             taskschd.dll - C:\Windows\system32\taskschd.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             cavwpps.dll - C:\Program Files\COMODO\COMODO Internet Security\cavwpps.dll - COMODO
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             wscisvif.dll - C:\Windows\system32\wscisvif.dll - Microsoft Corporation
             WSCAPI.dll - C:\Windows\system32\WSCAPI.dll - Microsoft Corporation
             cmdcomps.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcomps.dll - COMODO
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             ieproxy.dll - C:\Program Files\Internet Explorer\ieproxy.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             wshqos.dll - C:\Windows\System32\wshqos.dll - Microsoft Corporation
             wshtcpip.DLL - C:\Windows\system32\wshtcpip.DLL - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             cmdupdps.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdupdps.dll - COMODO

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\System32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\System32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\System32\CRYPTBASE.dll - Microsoft Corporation
             audiosrv.dll - c:\windows\system32\audiosrv.dll - Microsoft Corporation
             POWRPROF.dll - c:\windows\system32\POWRPROF.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             MMDevAPI.DLL - c:\windows\system32\MMDevAPI.DLL - Microsoft Corporation
             PROPSYS.dll - c:\windows\system32\PROPSYS.dll - Microsoft Corporation
             AVRT.dll - c:\windows\system32\AVRT.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             cscsvc.dll - c:\windows\system32\cscsvc.dll - Microsoft Corporation
             USERENV.dll - c:\windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - c:\windows\system32\profapi.dll - Microsoft Corporation
             pcwum.dll - C:\Windows\System32\pcwum.dll - Microsoft Corporation
             PeerDist.dll - C:\Windows\System32\PeerDist.dll - Microsoft Corporation
             AUTHZ.dll - C:\Windows\System32\AUTHZ.dll - Microsoft Corporation
             taskschd.dll - C:\Windows\system32\taskschd.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\System32\SspiCli.dll - Microsoft Corporation
             mstask.dll - C:\Windows\System32\mstask.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\System32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\System32\RpcRtRemote.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\System32\WTSAPI32.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\System32\GPAPI.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\System32\WINSTA.dll - Microsoft Corporation
             uxsms.dll - c:\windows\system32\uxsms.dll - Microsoft Corporation
             netman.dll - c:\windows\system32\netman.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             pcasvc.dll - c:\windows\system32\pcasvc.dll - Microsoft Corporation
             apphelp.dll - c:\windows\system32\apphelp.dll - Microsoft Corporation
             AEPIC.dll - c:\windows\system32\AEPIC.dll - Microsoft Corporation
             sfc.dll - c:\windows\system32\sfc.dll - Microsoft Corporation
             sfc_os.DLL - c:\windows\system32\sfc_os.DLL - Microsoft Corporation
             wevtapi.dll - c:\windows\system32\wevtapi.dll - Microsoft Corporation
             sysmain.dll - c:\windows\system32\sysmain.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\System32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             trkwks.dll - c:\windows\system32\trkwks.dll - Microsoft Corporation
             netshell.dll - C:\Windows\System32\netshell.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\System32\IPHLPAPI.DLL - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             netcfgx.dll - C:\Windows\system32\netcfgx.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             devrtl.DLL - C:\Windows\System32\devrtl.DLL - Microsoft Corporation
             hnetcfg.dll - C:\Windows\system32\hnetcfg.dll - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             PortableDeviceApi.dll - C:\Windows\system32\PortableDeviceApi.dll - Microsoft Corporation
             portabledeviceconnectapi.dll - C:\Windows\System32\portabledeviceconnectapi.dll - Microsoft Corporation
             secur32.dll - C:\Windows\System32\secur32.dll - Microsoft Corporation
             credssp.dll - C:\Windows\System32\credssp.dll - Microsoft Corporation
             cscobj.dll - C:\Windows\system32\cscobj.dll - Microsoft Corporation
             RASDLG.dll - C:\Windows\System32\RASDLG.dll - Microsoft Corporation
             MPRAPI.dll - C:\Windows\System32\MPRAPI.dll - Microsoft Corporation
             RASAPI32.dll - C:\Windows\System32\RASAPI32.dll - Microsoft Corporation
             rasman.dll - C:\Windows\System32\rasman.dll - Microsoft Corporation
             rtutils.dll - C:\Windows\System32\rtutils.dll - Microsoft Corporation
             dsrole.dll - C:\Windows\System32\dsrole.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[launcher_service.exe]Modules
             launcher_service.exe - C:\Program Files\Common Files\COMODO\launcher_service.exe - Comodo Security Solutions, Inc.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             imagehlp.dll - C:\Windows\system32\imagehlp.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             AcLayers.DLL - C:\Windows\AppPatch\AcLayers.DLL - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             CRYPTNET.dll - C:\Windows\system32\CRYPTNET.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             SensApi.dll - C:\Windows\system32\SensApi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[cmdvirth.exe]Modules
             cmdvirth.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe - COMODO
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             FLTLIB.DLL - C:\Windows\system32\FLTLIB.DLL - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             iphlpapi.dll - C:\Windows\system32\iphlpapi.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvvsvc.exe]Modules
             nvvsvc.exe - C:\Windows\system32\nvvsvc.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             nvxdbat.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll - NVIDIA Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             fntcache.dll - c:\windows\system32\fntcache.dll - Microsoft Corporation
             es.dll - c:\windows\system32\es.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             nsisvc.dll - c:\windows\system32\nsisvc.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             sstpsvc.dll - c:\windows\system32\sstpsvc.dll - Microsoft Corporation
             rtutils.dll - c:\windows\system32\rtutils.dll - Microsoft Corporation
             HTTPAPI.dll - c:\windows\system32\HTTPAPI.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             webio.dll - c:\windows\system32\webio.dll - Microsoft Corporation
             IPHLPAPI.DLL - c:\windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             wdi.dll - c:\windows\system32\wdi.dll - Microsoft Corporation
             netprofm.dll - c:\windows\system32\netprofm.dll - Microsoft Corporation
             nlaapi.dll - c:\windows\system32\nlaapi.dll - Microsoft Corporation
             perftrack.dll - C:\Windows\system32\perftrack.dll - Microsoft Corporation
             wer.dll - C:\Windows\system32\wer.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             AEPIC.dll - C:\Windows\system32\AEPIC.dll - Microsoft Corporation
             sfc.dll - C:\Windows\system32\sfc.dll - Microsoft Corporation
             sfc_os.DLL - C:\Windows\system32\sfc_os.DLL - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             winhttp.dll - C:\Windows\system32\winhttp.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\System32\mswsock.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             fdphost.dll - c:\windows\system32\fdphost.dll - Microsoft Corporation
             fdwsd.dll - C:\Windows\system32\fdwsd.dll - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             MLANG.dll - C:\Windows\system32\MLANG.dll - Microsoft Corporation
             wsdapi.dll - C:\Windows\system32\wsdapi.dll - Microsoft Corporation
             webservices.dll - C:\Windows\system32\webservices.dll - Microsoft Corporation
             FirewallAPI.dll - C:\Windows\system32\FirewallAPI.dll - Microsoft Corporation
             fdssdp.dll - C:\Windows\system32\fdssdp.dll - Microsoft Corporation
             SSDPAPI.dll - C:\Windows\system32\SSDPAPI.dll - Microsoft Corporation
             fdproxy.dll - C:\Windows\system32\fdproxy.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             msxml6.dll - C:\Windows\System32\msxml6.dll - Microsoft Corporation
             propsys.dll - C:\Windows\system32\propsys.dll - Microsoft Corporation
             ieproxy.dll - C:\Program Files\Internet Explorer\ieproxy.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             dsrole.dll - C:\Windows\system32\dsrole.dll - Microsoft Corporation
             fthsvc.dll - C:\Windows\system32\fthsvc.dll - Microsoft Corporation
             wevtapi.dll - C:\Windows\system32\wevtapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvSCPAPISvr.exe]Modules
             nvSCPAPISvr.exe - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             DEVRTL.dll - C:\Windows\system32\DEVRTL.dll - Microsoft Corporation
             SPINF.dll - C:\Windows\system32\SPINF.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             rpcepmap.dll - c:\windows\system32\rpcepmap.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             FirewallAPI.dll - C:\Windows\system32\FirewallAPI.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\system32\fwpuclnt.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[explorer.exe]Modules
             Explorer.exe - C:\Windows\Explorer.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             EXPLORERFRAME.dll - C:\Windows\system32\EXPLORERFRAME.dll - Microsoft Corporation
             DUser.dll - C:\Windows\system32\DUser.dll - Microsoft Corporation
             DUI70.dll - C:\Windows\system32\DUI70.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             SkyDriveShell.dll - C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll - Microsoft Corporation
             MSVCP110.dll - C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\MSVCP110.dll - Microsoft Corporation
             MSVCR110.dll - C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\MSVCR110.dll - Microsoft Corporation
             Telemetry.dll - C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\Telemetry.dll - Microsoft Corporation
             logging.dll - C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\logging.dll - Microsoft Corporation
             faultrep.dll - C:\Windows\system32\faultrep.dll - Microsoft Corporation
             WSOCK32.dll - C:\Windows\system32\WSOCK32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             Cabinet.dll - C:\Windows\system32\Cabinet.dll - Microsoft Corporation
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             ashShell.dll - C:\Program Files\AVAST Software\Avast\ashShell.dll - AVAST Software
             msi.dll - C:\Windows\system32\msi.dll - Microsoft Corporation
             EhStorShell.dll - C:\Windows\system32\EhStorShell.dll - Microsoft Corporation
             cscui.dll - C:\Windows\System32\cscui.dll - Microsoft Corporation
             CSCDLL.dll - C:\Windows\System32\CSCDLL.dll - Microsoft Corporation
             CSCAPI.dll - C:\Windows\system32\CSCAPI.dll - Microsoft Corporation
             ntshrui.dll - C:\Windows\system32\ntshrui.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             IconCodecService.dll - C:\Windows\system32\IconCodecService.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             SndVolSSO.DLL - C:\Windows\system32\SndVolSSO.DLL - Microsoft Corporation
             HID.DLL - C:\Windows\system32\HID.DLL - Microsoft Corporation
             MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             timedate.cpl - C:\Windows\system32\timedate.cpl - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             actxprxy.dll - C:\Windows\system32\actxprxy.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             shdocvw.dll - C:\Windows\System32\shdocvw.dll - Microsoft Corporation
             LINKINFO.dll - C:\Windows\system32\LINKINFO.dll - Microsoft Corporation
             msiltcfg.dll - C:\Windows\system32\msiltcfg.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             msutb.dll - C:\Windows\system32\msutb.dll - Microsoft Corporation
             gameux.dll - C:\Windows\System32\gameux.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             wer.dll - C:\Windows\System32\wer.dll - Microsoft Corporation
             SAMLIB.dll - C:\Windows\system32\SAMLIB.dll - Microsoft Corporation
             samcli.dll - C:\Windows\system32\samcli.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             msls31.dll - C:\Windows\system32\msls31.dll - Microsoft Corporation
             tiptsf.dll - C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll - Microsoft Corporation
             authui.dll - C:\Windows\system32\authui.dll - Microsoft Corporation
             CRYPTUI.dll - C:\Windows\system32\CRYPTUI.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             NetworkExplorer.dll - C:\Windows\system32\NetworkExplorer.dll - Microsoft Corporation
             stobject.dll - C:\Windows\system32\stobject.dll - Microsoft Corporation
             BatMeter.dll - C:\Windows\system32\BatMeter.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             es.dll - C:\Windows\system32\es.dll - Microsoft Corporation
             prnfldr.dll - C:\Windows\system32\prnfldr.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             AUDIOSES.DLL - C:\Windows\system32\AUDIOSES.DLL - Microsoft Corporation
             dxp.dll - C:\Windows\system32\dxp.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             Syncreg.dll - C:\Windows\system32\Syncreg.dll - Microsoft Corporation
             ehSSO.dll - C:\Windows\ehome\ehSSO.dll - Microsoft Corporation
             netshell.dll - C:\Windows\System32\netshell.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\System32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\System32\WINNSI.DLL - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             AltTab.dll - C:\Windows\System32\AltTab.dll - Microsoft Corporation
             wpdshserviceobj.dll - C:\Windows\system32\wpdshserviceobj.dll - Microsoft Corporation
             PortableDeviceTypes.dll - C:\Windows\system32\PortableDeviceTypes.dll - Microsoft Corporation
             PortableDeviceApi.dll - C:\Windows\system32\PortableDeviceApi.dll - Microsoft Corporation
             pnidui.dll - C:\Windows\System32\pnidui.dll - Microsoft Corporation
             QUtil.dll - C:\Windows\System32\QUtil.dll - Microsoft Corporation
             wevtapi.dll - C:\Windows\System32\wevtapi.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             cscobj.dll - C:\Windows\System32\cscobj.dll - Microsoft Corporation
             Wlanapi.dll - C:\Windows\system32\Wlanapi.dll - Microsoft Corporation
             wlanutil.dll - C:\Windows\system32\wlanutil.dll - Microsoft Corporation
             wwanapi.dll - C:\Windows\system32\wwanapi.dll - Microsoft Corporation
             wwapi.dll - C:\Windows\system32\wwapi.dll - Microsoft Corporation
             QAgent.dll - C:\Windows\System32\QAgent.dll - Microsoft Corporation
             srchadmin.dll - C:\Windows\System32\srchadmin.dll - Microsoft Corporation
             bthprops.cpl - C:\Windows\System32\bthprops.cpl - Microsoft Corporation
             SyncCenter.dll - C:\Windows\System32\SyncCenter.dll - Microsoft Corporation
             Actioncenter.dll - C:\Windows\System32\Actioncenter.dll - Microsoft Corporation
             imapi2.dll - C:\Windows\system32\imapi2.dll - Microsoft Corporation
             hgcpl.dll - C:\Windows\System32\hgcpl.dll - Microsoft Corporation
             provsvc.dll - C:\Windows\System32\provsvc.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             fxsst.dll - C:\Windows\system32\fxsst.dll - Microsoft Corporation
             FXSAPI.dll - C:\Windows\system32\FXSAPI.dll - Microsoft Corporation
             FXSRESM.DLL - C:\Windows\system32\FXSRESM.DLL - Microsoft Corporation
             wscinterop.dll - C:\Windows\System32\wscinterop.dll - Microsoft Corporation
             WSCAPI.dll - C:\Windows\System32\WSCAPI.dll - Microsoft Corporation
             wscui.cpl - C:\Windows\System32\wscui.cpl - Microsoft Corporation
             werconcpl.dll - C:\Windows\System32\werconcpl.dll - Microsoft Corporation
             framedynos.dll - C:\Windows\System32\framedynos.dll - Microsoft Corporation
             wercplsupport.dll - C:\Windows\System32\wercplsupport.dll - Microsoft Corporation
             msxml6.dll - C:\Windows\System32\msxml6.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - Microsoft Corporation
             hcproviders.dll - C:\Windows\System32\hcproviders.dll - Microsoft Corporation
             ieproxy.dll - C:\Program Files\Internet Explorer\ieproxy.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             DEVRTL.dll - C:\Windows\system32\DEVRTL.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             ieframe.dll - C:\Windows\System32\ieframe.dll - Microsoft Corporation
             api-ms-win-downlevel-shell32-l1-1-0.dll - C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll - Microsoft Corporation
             MLANG.dll - C:\Windows\system32\MLANG.dll - Microsoft Corporation
             twext.dll - C:\Windows\system32\twext.dll - Microsoft Corporation
             mbamext.dll - C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll - Malwarebytes Corporation
             SASCTXMN.DLL - C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL - SUPERAntiSpyware.com
             rarext.dll - C:\Program Files\WinRAR\rarext.dll - Alexander Roshal
             IObitUnlockerExtension.dll - C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll - IObit
             SDShelEx-win32.dll - C:\Program Files\TuneUp Utilities 2014\SDShelEx-win32.dll - TuneUp Software
             DefragglerShell.dll - C:\Program Files\Defraggler\DefragglerShell.dll - Piriform Ltd
             cavshell.dll - C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll - COMODO
             syncui.dll - C:\Windows\system32\syncui.dll - Microsoft Corporation
             SYNCENG.dll - C:\Windows\system32\SYNCENG.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             dsrole.dll - C:\Windows\system32\dsrole.dll - Microsoft Corporation
             StructuredQuery.dll - C:\Windows\System32\StructuredQuery.dll - Microsoft Corporation
             wdmaud.drv - C:\Windows\system32\wdmaud.drv - Microsoft Corporation
             ksuser.dll - C:\Windows\system32\ksuser.dll - Microsoft Corporation
             AVRT.dll - C:\Windows\system32\AVRT.dll - Microsoft Corporation
             msacm32.drv - C:\Windows\system32\msacm32.drv - Microsoft Corporation
             MSACM32.dll - C:\Windows\system32\MSACM32.dll - Microsoft Corporation
             midimap.dll - C:\Windows\system32\midimap.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             van.dll - C:\Windows\system32\van.dll - Microsoft Corporation
             RasMM.dll - C:\Windows\system32\RasMM.dll - Microsoft Corporation
             RASAPI32.dll - C:\Windows\system32\RASAPI32.dll - Microsoft Corporation
             rasman.dll - C:\Windows\system32\rasman.dll - Microsoft Corporation
             WWanMM.dll - C:\Windows\system32\WWanMM.dll - Microsoft Corporation
             WlanMM.dll - C:\Windows\system32\WlanMM.dll - Microsoft Corporation
             wlanhlp.dll - C:\Windows\system32\wlanhlp.dll - Microsoft Corporation
             OneX.DLL - C:\Windows\system32\OneX.DLL - Microsoft Corporation
             eappprxy.dll - C:\Windows\system32\eappprxy.dll - Microsoft Corporation
             eappcfg.dll - C:\Windows\system32\eappcfg.dll - Microsoft Corporation
             MsftEdit.dll - C:\Windows\system32\MsftEdit.dll - Microsoft Corporation
             RUExt.dll - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll - VS Revo Group
             SPPC.DLL - C:\Windows\system32\SPPC.DLL - Microsoft Corporation
             WinSATAPI.dll - C:\Windows\system32\WinSATAPI.dll - Microsoft Corporation
             dxgi.dll - C:\Windows\system32\dxgi.dll - Microsoft Corporation
             SPINF.dll - C:\Windows\system32\SPINF.dll - Microsoft Corporation
             appwiz.cpl - C:\Windows\System32\appwiz.cpl - Microsoft Corporation
             osbaseln.dll - C:\Windows\System32\osbaseln.dll - Microsoft Corporation
             comsvcs.dll - C:\Windows\system32\comsvcs.dll - Microsoft Corporation
             msxml3.dll - C:\Windows\System32\msxml3.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             wiaservc.dll - c:\windows\system32\wiaservc.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             wiatrace.dll - C:\Windows\system32\wiatrace.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             msv1_0.DLL - C:\Windows\system32\msv1_0.DLL - Microsoft Corporation
             cryptdll.dll - C:\Windows\system32\cryptdll.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[CisTray.exe]Modules
             CisTray.exe - C:\Program Files\Comodo\COMODO Internet Security\CisTray.exe - COMODO
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             dbghelp.dll - C:\Program Files\Comodo\COMODO Internet Security\dbghelp.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             cmdcomps.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcomps.dll - COMODO
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             msxml3.dll - C:\Windows\System32\msxml3.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             version.DLL - C:\Windows\system32\version.DLL - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             ieproxy.dll - C:\Program Files\Internet Explorer\ieproxy.dll - Microsoft Corporation
             cmdcfg.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcfg.dll - COMODO
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvtray.exe]Modules
             nvtray.exe - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             NvUI.dll - C:\Program Files\NVIDIA Corporation\Display\NvUI.dll - NVIDIA Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             NvUpdt.dll - C:\Program Files\NVIDIA Corporation\Update Common\NvUpdt.dll - NVIDIA Corporation
             NVUPDTR.DLL - C:\Program Files\NVIDIA Corporation\Update Common\NVUPDTR.DLL - NVIDIA Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             profsvc.dll - c:\windows\system32\profsvc.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             SYSNTFY.dll - c:\windows\system32\SYSNTFY.dll - Microsoft Corporation
             USERENV.dll - c:\windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - c:\windows\system32\profapi.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ATL.DLL - c:\windows\system32\ATL.DLL - Microsoft Corporation
             themeservice.dll - c:\windows\system32\themeservice.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             uxtuneup.dll - c:\windows\system32\uxtuneup.dll - TuneUp Software
             dbghelp.dll - c:\windows\system32\dbghelp.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             sens.dll - c:\windows\system32\sens.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             shsvcs.dll - c:\windows\system32\shsvcs.dll - Microsoft Corporation
             slc.dll - c:\windows\system32\slc.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             schedsvc.dll - c:\windows\system32\schedsvc.dll - Microsoft Corporation
             pcwum.dll - c:\windows\system32\pcwum.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             NETAPI32.dll - c:\windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - c:\windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - c:\windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - c:\windows\system32\wkscli.dll - Microsoft Corporation
             SspiCli.dll - c:\windows\system32\SspiCli.dll - Microsoft Corporation
             wevtapi.dll - c:\windows\system32\wevtapi.dll - Microsoft Corporation
             AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             UBPM.dll - c:\windows\system32\UBPM.dll - Microsoft Corporation
             ktmw32.dll - c:\windows\system32\ktmw32.dll - Microsoft Corporation
             XmlLite.dll - c:\windows\system32\XmlLite.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             FVEAPI.dll - C:\Windows\system32\FVEAPI.dll - Microsoft Corporation
             tbs.dll - C:\Windows\system32\tbs.dll - Microsoft Corporation
             FVECERTS.dll - C:\Windows\system32\FVECERTS.dll - Microsoft Corporation
             LOGONCLI.DLL - C:\Windows\system32\LOGONCLI.DLL - Microsoft Corporation
             wiarpc.dll - C:\Windows\system32\wiarpc.dll - Microsoft Corporation
             taskcomp.dll - C:\Windows\system32\taskcomp.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             netjoin.dll - C:\Windows\system32\netjoin.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             ikeext.dll - c:\windows\system32\ikeext.dll - Microsoft Corporation
             fwpuclnt.dll - c:\windows\system32\fwpuclnt.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             seclogon.dll - c:\windows\system32\seclogon.dll - Microsoft Corporation
             wmisvc.dll - c:\windows\system32\wbem\wmisvc.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             VSSAPI.DLL - C:\Windows\system32\VSSAPI.DLL - Microsoft Corporation
             VssTrace.DLL - C:\Windows\system32\VssTrace.DLL - Microsoft Corporation
             samcli.dll - C:\Windows\system32\samcli.dll - Microsoft Corporation
             SAMLIB.dll - C:\Windows\system32\SAMLIB.dll - Microsoft Corporation
             wbemcore.dll - C:\Windows\system32\wbem\wbemcore.dll - Microsoft Corporation
             esscli.dll - C:\Windows\system32\wbem\esscli.dll - Microsoft Corporation
             FastProx.dll - C:\Windows\system32\wbem\FastProx.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             wmiutils.dll - C:\Windows\system32\wbem\wmiutils.dll - Microsoft Corporation
             repdrvfs.dll - C:\Windows\system32\wbem\repdrvfs.dll - Microsoft Corporation
             iphlpsvc.dll - c:\windows\system32\iphlpsvc.dll - Microsoft Corporation
             FirewallAPI.dll - c:\windows\system32\FirewallAPI.dll - Microsoft Corporation
             rtutils.dll - c:\windows\system32\rtutils.dll - Microsoft Corporation
             sqmapi.dll - c:\windows\system32\sqmapi.dll - Microsoft Corporation
             WDSCORE.dll - c:\windows\system32\WDSCORE.dll - Microsoft Corporation
             rasmans.dll - c:\windows\system32\rasmans.dll - Microsoft Corporation
             eappprxy.dll - c:\windows\system32\eappprxy.dll - Microsoft Corporation
             rastapi.DLL - C:\Windows\system32\rastapi.DLL - Microsoft Corporation
             TAPI32.dll - C:\Windows\system32\TAPI32.dll - Microsoft Corporation
             srvsvc.dll - c:\windows\system32\srvsvc.dll - Microsoft Corporation
             dsrole.dll - c:\windows\system32\dsrole.dll - Microsoft Corporation
             browser.dll - c:\windows\system32\browser.dll - Microsoft Corporation
             devrtl.DLL - C:\Windows\system32\devrtl.DLL - Microsoft Corporation
             NCI.dll - C:\Windows\system32\NCI.dll - Microsoft Corporation
             hnetcfg.dll - C:\Windows\system32\hnetcfg.dll - Microsoft Corporation
             SSCORE.DLL - C:\Windows\system32\SSCORE.DLL - Microsoft Corporation
             CLUSAPI.DLL - C:\Windows\system32\CLUSAPI.DLL - Microsoft Corporation
             cryptdll.dll - C:\Windows\system32\cryptdll.dll - Microsoft Corporation
             RESUTILS.DLL - C:\Windows\system32\RESUTILS.DLL - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             rasppp.dll - C:\Windows\system32\rasppp.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             RASAPI32.dll - C:\Windows\system32\RASAPI32.dll - Microsoft Corporation
             rasman.dll - C:\Windows\system32\rasman.dll - Microsoft Corporation
             eappcfg.dll - C:\Windows\system32\eappcfg.dll - Microsoft Corporation
             vpnike.dll - C:\Windows\system32\vpnike.dll - Microsoft Corporation
             kerberos.DLL - C:\Windows\system32\kerberos.DLL - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             raschap.dll - C:\Windows\System32\raschap.dll - Microsoft Corporation
             credui.dll - C:\Windows\system32\credui.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             wmiprvsd.dll - C:\Windows\system32\wbem\wmiprvsd.dll - Microsoft Corporation
             NCObjAPI.DLL - C:\Windows\system32\NCObjAPI.DLL - Microsoft Corporation
             wbemess.dll - C:\Windows\system32\wbem\wbemess.dll - Microsoft Corporation
             qmgr.dll - c:\windows\system32\qmgr.dll - Microsoft Corporation
             bitsperf.dll - c:\windows\system32\bitsperf.dll - Microsoft Corporation
             bitsigd.dll - C:\Windows\system32\bitsigd.dll - Microsoft Corporation
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             ncprov.dll - C:\Windows\system32\wbem\ncprov.dll - Microsoft Corporation
             wuaueng.dll - c:\windows\system32\wuaueng.dll - Microsoft Corporation
             ESENT.dll - c:\windows\system32\ESENT.dll - Microsoft Corporation
             WINSPOOL.DRV - c:\windows\system32\WINSPOOL.DRV - Microsoft Corporation
             Cabinet.dll - c:\windows\system32\Cabinet.dll - Microsoft Corporation
             mspatcha.dll - c:\windows\system32\mspatcha.dll - Microsoft Corporation
             WMsgAPI.dll - C:\Windows\system32\WMsgAPI.dll - Microsoft Corporation
             wer.dll - C:\Windows\system32\wer.dll - Microsoft Corporation
             appinfo.dll - c:\windows\system32\appinfo.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             SensApi.dll - C:\Windows\system32\SensApi.dll - Microsoft Corporation
             mmcss.dll - c:\windows\system32\mmcss.dll - Microsoft Corporation
             AVRT.dll - c:\windows\system32\AVRT.dll - Microsoft Corporation
             aelupsvc.dll - c:\windows\system32\aelupsvc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[conhost.exe]Modules
             conhost.exe - C:\Windows\system32\conhost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             comctl32.DLL - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[cavwp.exe]Modules
             cavwp.exe - C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe - COMODO
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             dbghelp.dll - C:\Program Files\COMODO\COMODO Internet Security\dbghelp.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             imagehlp.dll - C:\Windows\system32\imagehlp.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             msi.dll - C:\Windows\system32\msi.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             Framework.dll - C:\Program Files\COMODO\COMODO Internet Security\Framework.dll - COMODO
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\system32\SAMCLI.DLL - Microsoft Corporation
             cavwpps.dll - C:\Program Files\COMODO\COMODO Internet Security\cavwpps.dll - COMODO
             platform.dll - C:\Program Files\COMODO\COMODO Internet Security\platform.dll - COMODO
             common.cav - C:\Program Files\COMODO\COMODO Internet Security\scanners\common.cav - COMODO
             signmgr.dll - C:\Program Files\COMODO\COMODO Internet Security\signmgr.dll - COMODO
             fileid.cav - C:\Program Files\COMODO\COMODO Internet Security\scanners\fileid.cav - COMODO
             pkann.dll - C:\Program Files\COMODO\COMODO Internet Security\scanners\pkann.dll - COMODO
             mach32.dll - C:\Program Files\COMODO\COMODO Internet Security\scanners\mach32.dll - COMODO
             white.cav - C:\Program Files\COMODO\COMODO Internet Security\scanners\white.cav - COMODO

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\System32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\System32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\System32\CRYPTBASE.dll - Microsoft Corporation
             wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\System32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\System32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\System32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\System32\credssp.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\System32\GPAPI.dll - Microsoft Corporation
             audiosrv.dll - c:\windows\system32\audiosrv.dll - Microsoft Corporation
             POWRPROF.dll - c:\windows\system32\POWRPROF.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             MMDevAPI.DLL - c:\windows\system32\MMDevAPI.DLL - Microsoft Corporation
             PROPSYS.dll - c:\windows\system32\PROPSYS.dll - Microsoft Corporation
             AVRT.dll - c:\windows\system32\AVRT.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             WINSTA.dll - C:\Windows\System32\WINSTA.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\System32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             audioses.dll - C:\Windows\System32\audioses.dll - Microsoft Corporation
             lmhsvc.dll - c:\windows\system32\lmhsvc.dll - Microsoft Corporation
             IPHLPAPI.DLL - c:\windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             nrpsrv.DLL - c:\windows\system32\nrpsrv.DLL - Microsoft Corporation
             dhcpcore.dll - c:\windows\system32\dhcpcore.dll - Microsoft Corporation
             DNSAPI.dll - c:\windows\system32\DNSAPI.dll - Microsoft Corporation
             firewallapi.dll - C:\Windows\System32\firewallapi.dll - Microsoft Corporation
             dhcpcore6.dll - C:\Windows\System32\dhcpcore6.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\System32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\System32\dhcpcsvc.DLL - Microsoft Corporation
             wscsvc.dll - c:\windows\system32\wscsvc.dll - Microsoft Corporation
             dbghelp.dll - c:\windows\system32\dbghelp.dll - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WINTRUST.DLL - C:\Windows\system32\WINTRUST.DLL - Microsoft Corporation
             imagehlp.dll - C:\Windows\system32\imagehlp.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\System32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\System32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             wuapi.dll - C:\Windows\system32\wuapi.dll - Microsoft Corporation
             Cabinet.dll - C:\Windows\system32\Cabinet.dll - Microsoft Corporation
             profapi.dll - C:\Windows\System32\profapi.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\System32\USERENV.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\System32\wkscli.dll - Microsoft Corporation
             netutils.dll - C:\Windows\System32\netutils.dll - Microsoft Corporation
             provsvc.dll - c:\windows\system32\provsvc.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             actxprxy.dll - C:\Windows\system32\actxprxy.dll - Microsoft Corporation
             FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             msxml6.dll - C:\Windows\System32\msxml6.dll - Microsoft Corporation
             fdproxy.dll - C:\Windows\system32\fdproxy.dll - Microsoft Corporation
             ieproxy.dll - C:\Program Files\Internet Explorer\ieproxy.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             rasadhlp.dll - C:\Windows\System32\rasadhlp.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             RtkAPO.dll - C:\Windows\system32\RtkAPO.dll - Realtek Semiconductor Corp.
             audioeng.dll - C:\Windows\system32\audioeng.dll - Microsoft Corporation
             WMALFXGFXDSP.dll - C:\Windows\system32\WMALFXGFXDSP.dll - Microsoft Corporation
             mfplat.DLL - C:\Windows\System32\mfplat.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dragon_updater.exe]Modules
             dragon_updater.exe - C:\Program Files\Comodo\Dragon\dragon_updater.exe - 
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             distribution.dll - C:\Program Files\Comodo\Dragon\distribution.dll - Comodo
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             shlwapi.DLL - C:\Windows\system32\shlwapi.DLL - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             version.DLL - C:\Windows\system32\version.DLL - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             gpsvc.dll - c:\windows\system32\gpsvc.dll - Microsoft Corporation
             GPAPI.dll - c:\windows\system32\GPAPI.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             Secur32.dll - c:\windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             SYSNTFY.dll - c:\windows\system32\SYSNTFY.dll - Microsoft Corporation
             nlaapi.dll - c:\windows\system32\nlaapi.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             dsrole.dll - C:\Windows\system32\dsrole.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             SAMLIB.dll - C:\Windows\system32\SAMLIB.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[GeekBuddyRSP.exe]Modules
             GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[GeekBuddyRSP.exe]Modules
             GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[PCHunter32.exe]Modules
             PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - ????(??)????????
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             oledlg.dll - C:\Windows\system32\oledlg.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             version.DLL - C:\Windows\system32\version.DLL - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\system32\SAMCLI.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             Psapi.dll - C:\Windows\system32\Psapi.dll - Microsoft Corporation
             RICHED32.DLL - C:\Windows\system32\RICHED32.DLL - Microsoft Corporation
             RICHED20.dll - C:\Windows\system32\RICHED20.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             comctl32.DLL - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.DLL - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             ashShell.dll - C:\Program Files\AVAST Software\Avast\ashShell.dll - AVAST Software
             msi.dll - C:\Windows\system32\msi.dll - Microsoft Corporation
             EhStorShell.dll - C:\Windows\system32\EhStorShell.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             cscui.dll - C:\Windows\System32\cscui.dll - Microsoft Corporation
             CSCDLL.dll - C:\Windows\System32\CSCDLL.dll - Microsoft Corporation
             CSCAPI.dll - C:\Windows\system32\CSCAPI.dll - Microsoft Corporation
             ntshrui.dll - C:\Windows\system32\ntshrui.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             IconCodecService.dll - C:\Windows\system32\IconCodecService.dll - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             nlaapi.dll - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WLIDSVC.EXE]Modules
             WLIDSVC.EXE - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - Microsoft Corp.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             SensApi.dll - C:\Windows\system32\SensApi.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             sqmapi.dll - C:\Program Files\Common Files\Microsoft Shared\Windows Live\sqmapi.dll - Microsoft Corporation
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\system32\SAMCLI.DLL - Microsoft Corporation
             WINHTTP.dll - C:\Windows\system32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\system32\webio.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             wer.dll - C:\Windows\system32\wer.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             WinSCard.dll - C:\Windows\system32\WinSCard.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             msxml3.dll - C:\Windows\System32\msxml3.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             wbemprox.dll - C:\Windows\system32\wbem\wbemprox.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\system32\wbemcomn.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation
             dssenh.dll - C:\Windows\system32\dssenh.dll - Microsoft Corporation
             fastprox.dll - C:\Windows\system32\wbem\fastprox.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshqos.dll - C:\Windows\System32\wshqos.dll - Microsoft Corporation
             wshtcpip.DLL - C:\Windows\system32\wshtcpip.DLL - Microsoft Corporation
             wship6.dll - C:\Windows\system32\wship6.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             schannel.DLL - C:\Windows\system32\schannel.DLL - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             bcryptprimitives.dll - C:\Windows\system32\bcryptprimitives.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\system32\GPAPI.dll - Microsoft Corporation
             CRYPTNET.dll - C:\Windows\system32\CRYPTNET.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[RtHDVCpl.exe]Modules
             RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             DSOUND.dll - C:\Windows\system32\DSOUND.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             oledlg.dll - C:\Windows\system32\oledlg.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             AUDIOSES.DLL - C:\Windows\system32\AUDIOSES.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\System32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\System32\fltlib.dll - Microsoft Corporation
             wersvc.dll - c:\windows\system32\wersvc.dll - Microsoft Corporation
             wer.dll - C:\Windows\System32\wer.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             profapi.dll - C:\Windows\System32\profapi.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\System32\USERENV.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\System32\SspiCli.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[mbamscheduler.exe]Modules
             mbamscheduler.exe - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe - Malwarebytes Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             mbam.dll - C:\Program Files\Malwarebytes' Anti-Malware\mbam.dll - Malwarebytes Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             mbamnet.dll - C:\Program Files\Malwarebytes' Anti-Malware\mbamnet.dll - Malwarebytes Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvxdsync.exe]Modules
             nvxdsync.exe - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             nvxdapix.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - NVIDIA Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             NvUI.dll - C:\Program Files\NVIDIA Corporation\Display\NvUI.dll - NVIDIA Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\system32\MSIMG32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             OLEACC.dll - C:\Windows\system32\OLEACC.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             nvapi.dll - C:\Windows\system32\nvapi.dll - NVIDIA Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             nvxdbat.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll - NVIDIA Corporation
             NvSmartMax.dll - C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll - 
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             nvSCPAPI.dll - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPI.dll - NVIDIA Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             nvxdplcy.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll - NVIDIA Corporation

------------------------------------------------------------------------------------------

      Image File Name[spoolsv.exe]Modules
             spoolsv.exe - C:\Windows\System32\spoolsv.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\System32\POWRPROF.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\System32\DNSAPI.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\System32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\System32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\System32\CRYPTBASE.dll - Microsoft Corporation
             slc.dll - C:\Windows\System32\slc.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\System32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\System32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\System32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\System32\credssp.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\System32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\System32\WINNSI.DLL - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\System32\rasadhlp.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             umb.dll - C:\Windows\system32\umb.dll - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             localspl.dll - C:\Windows\System32\localspl.dll - Microsoft Corporation
             SPOOLSS.DLL - C:\Windows\System32\SPOOLSS.DLL - Microsoft Corporation
             srvcli.dll - C:\Windows\System32\srvcli.dll - Microsoft Corporation
             winspool.drv - C:\Windows\system32\winspool.drv - Microsoft Corporation
             PrintIsolationProxy.dll - C:\Windows\System32\PrintIsolationProxy.dll - Microsoft Corporation
             CNMLM9E.DLL - C:\Windows\System32\CNMLM9E.DLL - CANON INC.
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             FXSMON.DLL - C:\Windows\System32\FXSMON.DLL - Microsoft Corporation
             tcpmon.dll - C:\Windows\System32\tcpmon.dll - Microsoft Corporation
             snmpapi.dll - C:\Windows\System32\snmpapi.dll - Microsoft Corporation
             wsnmp32.dll - C:\Windows\System32\wsnmp32.dll - Microsoft Corporation
             msxml6.dll - C:\Windows\System32\msxml6.dll - Microsoft Corporation
             usbmon.dll - C:\Windows\System32\usbmon.dll - Microsoft Corporation
             wls0wndh.dll - C:\Windows\system32\wls0wndh.dll - Microsoft Corporation
             WSDMon.dll - C:\Windows\System32\WSDMon.dll - Microsoft Corporation
             wsdapi.dll - C:\Windows\System32\wsdapi.dll - Microsoft Corporation
             webservices.dll - C:\Windows\System32\webservices.dll - Microsoft Corporation
             FirewallAPI.dll - C:\Windows\System32\FirewallAPI.dll - Microsoft Corporation
             FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             fdPnp.dll - C:\Windows\system32\fdPnp.dll - Microsoft Corporation
             winprint.dll - C:\Windows\system32\spool\PRTPROCS\W32X86\winprint.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\System32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\System32\profapi.dll - Microsoft Corporation
             GPAPI.dll - C:\Windows\System32\GPAPI.dll - Microsoft Corporation
             CNMPD9E.DLL - C:\Windows\system32\spool\PRTPROCS\W32X86\CNMPD9E.DLL - CANON INC.
             dsrole.dll - C:\Windows\System32\dsrole.dll - Microsoft Corporation
             win32spl.dll - C:\Windows\System32\win32spl.dll - Microsoft Corporation
             DEVRTL.dll - C:\Windows\System32\DEVRTL.dll - Microsoft Corporation
             SPINF.dll - C:\Windows\System32\SPINF.dll - Microsoft Corporation
             inetpp.dll - C:\Windows\System32\inetpp.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\System32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\System32\WINSTA.dll - Microsoft Corporation
             cscapi.dll - C:\Windows\System32\cscapi.dll - Microsoft Corporation
             netutils.dll - C:\Windows\System32\netutils.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\System32\WTSAPI32.dll - Microsoft Corporation
             WINHTTP.dll - C:\Windows\System32\WINHTTP.dll - Microsoft Corporation
             webio.dll - C:\Windows\System32\webio.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[daemonu.exe]Modules
             daemonu.exe - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - NVIDIA Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             AcGenral.DLL - C:\Windows\AppPatch\AcGenral.DLL - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             samcli.dll - C:\Windows\system32\samcli.dll - Microsoft Corporation
             MSACM32.dll - C:\Windows\system32\MSACM32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             sfc.dll - C:\Windows\system32\sfc.dll - Microsoft Corporation
             sfc_os.DLL - C:\Windows\system32\sfc_os.DLL - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             NLAapi.dll - C:\Windows\system32\NLAapi.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\system32\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\system32\pnrpnsp.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\System32\winrnr.dll - Microsoft Corporation
             wshbth.dll - C:\Windows\system32\wshbth.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[rundll32.exe]Modules
             rundll32.exe - C:\Windows\system32\rundll32.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             imagehlp.dll - C:\Windows\system32\imagehlp.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             AcLayers.DLL - C:\Windows\AppPatch\AcLayers.DLL - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             mmsys.cpl - C:\Windows\system32\mmsys.cpl - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\System32\PROPSYS.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             AUDIOSES.DLL - C:\Windows\system32\AUDIOSES.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[TuneUpUtilitiesService32.exe]Modules
             TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             msi.dll - C:\Windows\system32\msi.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Microsoft Corporation
             LINKINFO.dll - C:\Windows\system32\LINKINFO.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\system32\PROPSYS.dll - Microsoft Corporation
             avgreplibx.dll - C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll - 
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             api-ms-win-downlevel-user32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-shlwapi-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-version-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-normaliz-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll - Microsoft Corporation
             normaliz.DLL - C:\Windows\system32\normaliz.DLL - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\system32\Secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             api-ms-win-downlevel-advapi32-l2-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll - Microsoft Corporation
             api-ms-win-downlevel-ole32-l1-1-0.dll - C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             wlanapi.dll - C:\Windows\system32\wlanapi.dll - Microsoft Corporation
             wlanutil.dll - C:\Windows\system32\wlanutil.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             SXS.DLL - C:\Windows\system32\SXS.DLL - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             WLIDNSP.DLL - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation
             fwpuclnt.dll - C:\Windows\System32\fwpuclnt.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             ntshrui.dll - C:\Windows\system32\ntshrui.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             cscapi.dll - C:\Windows\system32\cscapi.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dwm.exe]Modules
             Dwm.exe - C:\Windows\system32\Dwm.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             dwmredir.dll - C:\Windows\system32\dwmredir.dll - Microsoft Corporation
             dwmcore.dll - C:\Windows\system32\dwmcore.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             d3d10_1.dll - C:\Windows\system32\d3d10_1.dll - Microsoft Corporation
             d3d10_1core.dll - C:\Windows\system32\d3d10_1core.dll - Microsoft Corporation
             dxgi.dll - C:\Windows\system32\dxgi.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             d3d11.dll - C:\Windows\system32\d3d11.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             nvwgf2um.dll - C:\Windows\system32\nvwgf2um.dll - NVIDIA Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             uDWM.dll - C:\Windows\system32\uDWM.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WLIDSVCM.EXE]Modules
             WLIDSvcM.exe - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe - Microsoft Corp.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[unit_manager.exe]Modules
             unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - Comodo Security Solutions, Inc.
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             unity_core.dll - C:\Program Files\Comodo\GeekBuddy\unity_core.dll - Comodo Security Solutions, Inc.
             QtNetwork4.dll - C:\Program Files\Comodo\GeekBuddy\QtNetwork4.dll - 
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             QtCore4.dll - C:\Program Files\Comodo\GeekBuddy\QtCore4.dll - 
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             MSVCP90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll - Microsoft Corporation
             MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             web-client.dll - C:\Program Files\Comodo\GeekBuddy\web-client.dll - Comodo Security Solutions, Inc.
             PSAPI.DLL - C:\Windows\system32\PSAPI.DLL - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             AcLayers.DLL - C:\Windows\AppPatch\AcLayers.DLL - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             winmm.dll - C:\Windows\system32\winmm.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             rasadhlp.dll - C:\Windows\system32\rasadhlp.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[audiodg.exe]Modules
             AUDIODG.EXE - C:\Windows\system32\AUDIODG.EXE - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\System32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\System32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\System32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\System32\RPCRT4.dll - Microsoft Corporation
             MMDevAPI.DLL - C:\Windows\System32\MMDevAPI.DLL - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             USER32.dll - C:\Windows\System32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\System32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\System32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\System32\USP10.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\System32\PROPSYS.dll - Microsoft Corporation
             ole32.dll - C:\Windows\System32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\System32\OLEAUT32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             VERSION.dll - C:\Windows\System32\VERSION.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\system32\ntmarta.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             audioses.dll - C:\Windows\System32\audioses.dll - Microsoft Corporation
             audioeng.dll - C:\Windows\System32\audioeng.dll - Microsoft Corporation
             AVRT.dll - C:\Windows\System32\AVRT.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             audiokse.dll - C:\Windows\System32\audiokse.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\System32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\System32\MSASN1.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\System32\WINTRUST.dll - Microsoft Corporation
             ksuser.dll - C:\Windows\System32\ksuser.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             RtkAPO.dll - C:\Windows\system32\RtkAPO.dll - Realtek Semiconductor Corp.
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WMALFXGFXDSP.dll - C:\Windows\system32\WMALFXGFXDSP.dll - Microsoft Corporation
             mfplat.DLL - C:\Windows\system32\mfplat.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             ipsecsvc.dll - c:\windows\system32\ipsecsvc.dll - Microsoft Corporation
             AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             fwpuclnt.dll - c:\windows\system32\fwpuclnt.dll - Microsoft Corporation
             FirewallAPI.dll - c:\windows\system32\FirewallAPI.dll - Microsoft Corporation
             FwRemoteSvr.DLL - c:\windows\system32\FwRemoteSvr.DLL - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[conhost.exe]Modules

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             cmdvrt32.dll - C:\Windows\system32\cmdvrt32.dll - COMODO
             rpcepmap.dll - c:\windows\system32\rpcepmap.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             secur32.dll - C:\Windows\system32\secur32.dll - Microsoft Corporation
             SSPICLI.DLL - C:\Windows\system32\SSPICLI.DLL - Microsoft Corporation
             rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wshtcpip.dll - C:\Windows\System32\wshtcpip.dll - Microsoft Corporation
             wship6.dll - C:\Windows\System32\wship6.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             cmdvrt32.dll - C:\Windows\system32\cmdvrt32.dll - COMODO
             rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             SspiCli.dll - c:\windows\system32\SspiCli.dll - Microsoft Corporation
             credssp.dll - C:\Windows\system32\credssp.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             CLBCatQ.DLL - C:\Windows\system32\CLBCatQ.DLL - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\system32\kernel32.dll - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             guard32.dll - C:\Windows\system32\guard32.dll - COMODO
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             LPK.dll - C:\Windows\system32\LPK.dll - Microsoft Corporation
             USP10.dll - C:\Windows\system32\USP10.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\system32\VERSION.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             fltlib.dll - C:\Windows\system32\fltlib.dll - Microsoft Corporation
             cmdvrt32.dll - C:\Windows\system32\cmdvrt32.dll - COMODO
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             appinfo.dll - c:\windows\system32\appinfo.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\system32\apphelp.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[PING.EXE]Modules

------------------------------------------------------------------------------------------

      Image File Name[WerFault.exe]Modules

------------------------------------------------------------------------------------------

      Image File Name[Idle]Modules

==========================================================================================

Process Threads

      Image File Name[System]Threads
             8 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             12 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             16 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             20 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             24 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             28 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             32 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             36 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             40 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             44 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             48 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             52 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             56 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             60 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             64 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             68 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             72 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             76 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             80 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             84 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             88 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             92 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             96 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             100 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             104 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             116 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             120 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             124 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             128 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             132 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             136 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             140 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             144 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             152 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             156 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             160 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             164 - Wait - sptd.sys - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
             168 - Wait - sptd.sys - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
             172 - Wait - sptd.sys - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
             176 - Wait - ACPI.sys - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
             184 - Wait - ACPI.sys - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
             188 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             192 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             196 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             208 - Wait - fltsrv.sys - C:\Windows\system32\DRIVERS\fltsrv.sys - Acronis
             212 - Wait - fltsrv.sys - C:\Windows\system32\DRIVERS\fltsrv.sys - Acronis
             216 - Wait - fltsrv.sys - C:\Windows\system32\DRIVERS\fltsrv.sys - Acronis
             224 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             228 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             232 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             236 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             240 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             244 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             248 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             252 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             256 - Wait - volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
             264 - Wait - aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
             268 - Wait - aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
             272 - Wait - aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
             276 - Wait - aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
             280 - Wait - aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
             284 - Wait - aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
             288 - Wait - cmdguard.sys - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
             292 - Wait - cmdguard.sys - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
             296 - Wait - aswKbd.SYS - C:\Windows\System32\Drivers\aswKbd.SYS - AVAST Software
             300 - Wait - watchdog.sys - C:\Windows\System32\drivers\watchdog.sys - Microsoft Corporation
             304 - Wait - cmdhlp.sys - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
             308 - Wait - cmdhlp.sys - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
             312 - Wait - cmdhlp.sys - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
             316 - Wait - aswTdi.sys - C:\Windows\system32\drivers\aswTdi.sys - AVAST Software
             320 - Wait - inspect.sys - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
             324 - Wait - inspect.sys - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
             328 - Wait - inspect.sys - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
             332 - Wait - inspect.sys - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
             336 - Wait - rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
             340 - Wait - blbdrive.sys - C:\Windows\system32\DRIVERS\blbdrive.sys - Microsoft Corporation
             344 - Terminate - aswSP.sys - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
             348 - Wait - aswSP.sys - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
             352 - Wait - aswSP.sys - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
             356 - Wait - aswSP.sys - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
             360 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             372 - Terminate - CFRMD.sys - C:\Windows\system32\DRIVERS\CFRMD.sys - Windows (R) Win 7 DDK provider
             388 - Wait - dxgkrnl.sys - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
             392 - Wait - dxgkrnl.sys - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
             396 - Wait - dtsoftbus01.sys - C:\Windows\system32\DRIVERS\dtsoftbus01.sys - Disc Soft Ltd
             404 - Wait - parport.sys - C:\Windows\system32\DRIVERS\parport.sys - Microsoft Corporation
             436 - Wait - raspptp.sys - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
             440 - Wait - nvvad32v.sys - C:\Windows\system32\drivers\nvvad32v.sys - NVIDIA Corporation
             444 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             448 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             452 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             456 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             460 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             464 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             468 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             472 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             476 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             480 - Wait - RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
             528 - Wait - nvlddmkm.sys - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
             532 - Wait - nvlddmkm.sys - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
             536 - Wait - dxgmms1.sys - C:\Windows\System32\drivers\dxgmms1.sys - Microsoft Corporation
             600 - Wait - msrpc.sys - C:\Windows\System32\Drivers\msrpc.sys - Microsoft Corporation
             764 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             852 - Wait - luafv.sys - C:\Windows\system32\drivers\luafv.sys - Microsoft Corporation
             856 - Wait - aswMonFlt.sys - C:\Windows\system32\drivers\aswMonFlt.sys - AVAST Software
             860 - Terminate - aswMonFlt.sys - C:\Windows\system32\drivers\aswMonFlt.sys - AVAST Software
             1348 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             1444 - Wait - csc.sys - C:\Windows\system32\drivers\csc.sys - Microsoft Corporation
             1448 - Wait - csc.sys - C:\Windows\system32\drivers\csc.sys - Microsoft Corporation
             1568 - Wait - rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
             1936 - Wait - HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
             1940 - Wait - HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
             1944 - Wait - HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
             2024 - Wait - mpsdrv.sys - C:\Windows\System32\drivers\mpsdrv.sys - Microsoft Corporation
             2120 - Wait - HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
             2176 - Terminate -  -  - 
             2200 - Wait - HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
             2208 - Wait - HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
             2668 - Terminate - CFRMD.sys - C:\Windows\system32\DRIVERS\CFRMD.sys - Windows (R) Win 7 DDK provider
             2720 - Wait - srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
             2732 - Wait - srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
             2740 - Wait - srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
             2752 - Wait - srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
             2764 - Wait - srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
             2780 - Wait - srv.sys - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
             2792 - Wait - srv.sys - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
             2800 - Wait - srv.sys - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
             2820 - Wait - srv.sys - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
             2868 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             2924 - Wait - rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
             3156 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             3780 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             3808 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             4276 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             4380 - Terminate - aswMonFlt.sys - C:\Windows\system32\drivers\aswMonFlt.sys - AVAST Software
             4912 - Wait - rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
             5212 - Wait - rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
             5468 - Wait - rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
             5512 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             5852 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             5980 - Terminate -  -  - 
             6056 - Wait - ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
             468 - Wait -  -  - 
             464 - Wait -  -  - 
             472 - Wait -  -  - 

------------------------------------------------------------------------------------------

      Image File Name[AvastSvc.exe]Threads
             108 - Wait - ashMaiSv.dll - C:\Program Files\AVAST Software\Avast\ashMaiSv.dll - AVAST Software
             560 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             744 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1280 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1304 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1332 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1668 - Wait - AvastSvc.exe - C:\Program Files\AVAST Software\Avast\AvastSvc.exe - AVAST Software
             1852 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1868 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1872 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1884 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1892 - Wait - ashServ.dll - C:\Program Files\AVAST Software\Avast\ashServ.dll - AVAST Software
             1900 - Wait - aswProperty.dll - C:\Program Files\AVAST Software\Avast\aswProperty.dll - AVAST Software
             1912 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             1916 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             1924 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1928 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1960 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2352 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2356 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2360 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2364 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2368 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2372 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2376 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2380 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2384 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2388 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2392 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2396 - Wait - AhResMai.dll - C:\Program Files\AVAST Software\Avast\AhResMai.dll - AVAST Software
             2400 - Wait - AhResStd.dll - C:\Program Files\AVAST Software\Avast\AhResStd.dll - AVAST Software
             2404 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2408 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2412 - Wait - AhResWS.dll - C:\Program Files\AVAST Software\Avast\AhResWS.dll - AVAST Software
             2416 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2420 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2424 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2428 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             2432 - Wait - aswLog.dll - C:\Program Files\AVAST Software\Avast\aswLog.dll - AVAST Software
             2440 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2444 - Wait - ashServ.dll - C:\Program Files\AVAST Software\Avast\ashServ.dll - AVAST Software
             2448 - Wait - ashServ.dll - C:\Program Files\AVAST Software\Avast\ashServ.dll - AVAST Software
             2452 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2456 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2460 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2468 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2472 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2476 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2480 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2536 - Wait - mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             2564 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2588 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3000 - Wait - ashWsFtr.dll - C:\Program Files\AVAST Software\Avast\ashWsFtr.dll - AVAST Software
             3072 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3408 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             3412 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             4064 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             4192 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             4216 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             4232 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             4444 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4640 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             5380 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6016 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6068 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             6076 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             6092 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             6108 - Wait - AhResMai.dll - C:\Program Files\AVAST Software\Avast\AhResMai.dll - AVAST Software
             6128 - Wait - ashWsFtr.dll - C:\Program Files\AVAST Software\Avast\ashWsFtr.dll - AVAST Software
             6132 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             6136 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             112 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             408 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             612 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             672 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1104 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             1116 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1120 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1124 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1136 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1144 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1632 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             1640 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             1644 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             1648 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             2028 - Wait - nlasvc.dll - c:\windows\system32\nlasvc.dll - Microsoft Corporation
             2288 - Wait - tapisrv.dll - c:\windows\system32\tapisrv.dll - Microsoft Corporation
             2292 - Wait - tapisrv.dll - c:\windows\system32\tapisrv.dll - Microsoft Corporation
             2784 - Wait - unimdm.tsp - C:\Windows\system32\unimdm.tsp - Microsoft Corporation
             2804 - Wait - uniplat.dll - C:\Windows\system32\uniplat.dll - Microsoft Corporation
             2812 - Wait - kmddsp.tsp - C:\Windows\system32\kmddsp.tsp - Microsoft Corporation
             2816 - Wait - ndptsp.tsp - C:\Windows\system32\ndptsp.tsp - Microsoft Corporation
             2824 - Wait - hidphone.tsp - C:\Windows\system32\hidphone.tsp - Microsoft Corporation
             2944 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3280 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             3356 - Wait - ssdpapi.dll - C:\Windows\system32\ssdpapi.dll - Microsoft Corporation
             3456 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3892 - Wait - ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             4204 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             5092 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[TuneUpUtilitiesApp32.exe]Threads
             148 - Wait - TuneUpUtilitiesApp32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - TuneUp Software
             900 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1080 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2556 - Wait - TuneUpUtilitiesApp32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - TuneUp Software
             3184 - Wait - TuneUpUtilitiesApp32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - TuneUp Software
             3260 - Wait - TuneUpUtilitiesApp32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - TuneUp Software
             4016 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4792 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5324 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvvsvc.exe]Threads
             180 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1692 - Wait - nvvsvc.exe - C:\Windows\system32\nvvsvc.exe - NVIDIA Corporation
             1744 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2096 - Wait - NVSVC.DLL - C:\Windows\system32\NVSVC.DLL - NVIDIA Corporation
             2844 - Wait - nvapi.dll - C:\Windows\system32\nvapi.dll - NVIDIA Corporation

------------------------------------------------------------------------------------------

      Image File Name[lsass.exe]Threads
             200 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             712 - Wait - lsass.exe - C:\Windows\system32\lsass.exe - Microsoft Corporation
             716 - Wait - lsasrv.dll - C:\Windows\system32\lsasrv.dll - Microsoft Corporation
             720 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             724 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             728 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             748 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             760 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WmiPrvSE.exe]Threads
             260 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             676 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3396 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4164 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             4752 - Wait - NCObjAPI.DLL - C:\Windows\system32\NCObjAPI.DLL - Microsoft Corporation
             5588 - Wait - wmiprvse.exe - C:\Windows\system32\wbem\wmiprvse.exe - Microsoft Corporation
             5928 - Wait - wmiprvse.exe - C:\Windows\system32\wbem\wmiprvse.exe - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[smss.exe]Threads
             368 - Wait - smss.exe - C:\Windows\System32\smss.exe - Microsoft Corporation
             488 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WorldOfTanks.exe]Threads
             376 - Wait - umbraob32.dll - C:\Program Files\World_of_Tanks\umbraob32.dll - Umbra Software Ltd.
             1252 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             1540 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             1616 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2068 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2500 - Wait - vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             2572 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3028 - Wait - fmodex.dll - C:\Program Files\World_of_Tanks\fmodex.dll - Firelight Technologies
             3384 - Wait - fmodex.dll - C:\Program Files\World_of_Tanks\fmodex.dll - Firelight Technologies
             3416 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3516 - Wait - vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             3880 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4376 - Wait - WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - Wargaming.net
             4400 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4428 - Wait - nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             4504 - Wait - nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             4536 - Wait - nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             4544 - Wait - gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             4668 - Wait - fmodex.dll - C:\Program Files\World_of_Tanks\fmodex.dll - Firelight Technologies
             4720 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4728 - Wait - WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - Wargaming.net
             4980 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4996 - Wait - vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             5272 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5356 - Wait - umbraob32.dll - C:\Program Files\World_of_Tanks\umbraob32.dll - Umbra Software Ltd.
             5360 - Wait - vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             5388 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5556 - Wait - vivoxplatform.dll - C:\Program Files\World_of_Tanks\vivoxplatform.dll - Vivox
             5636 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5668 - Wait - vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             5688 - Wait - nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             5776 - Wait - vivoxsdk.dll - C:\Program Files\World_of_Tanks\vivoxsdk.dll - Vivox Inc.
             5792 - Wait - nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             5884 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5912 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5984 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             6012 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             6024 - Wait - fmodex.dll - C:\Program Files\World_of_Tanks\fmodex.dll - Firelight Technologies
             6064 - Wait - nvd3dum.dll - C:\Windows\system32\nvd3dum.dll - NVIDIA Corporation
             6116 - Wait - WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             384 - Wait - mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             400 - Wait - dps.dll - c:\windows\system32\dps.dll - Microsoft Corporation
             412 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             416 - Wait - mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             420 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             424 - Wait - mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             524 - Wait - radardt.dll - C:\Windows\system32\radardt.dll - Microsoft Corporation
             1032 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1996 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             2000 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2016 - Wait - AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             2020 - Wait - AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             2032 - Wait - AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             2036 - Terminate - mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             2040 - Wait - mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             2044 - Terminate - mpssvc.dll - c:\windows\system32\mpssvc.dll - Microsoft Corporation
             2156 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3108 - Wait - dps.dll - c:\windows\system32\dps.dll - Microsoft Corporation
             3164 - Wait - wdiasqmmodule.dll - C:\Windows\system32\wdiasqmmodule.dll - Microsoft Corporation
             4288 - Wait - radardt.dll - C:\Windows\system32\radardt.dll - Microsoft Corporation
             5760 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             428 - Wait - FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             432 - Wait - FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             940 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1464 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             1480 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1548 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1584 - Terminate - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1808 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1816 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2100 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2104 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2516 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3160 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3348 - Wait - ssdpsrv.dll - c:\windows\system32\ssdpsrv.dll - Microsoft Corporation
             3352 - Wait - ssdpsrv.dll - c:\windows\system32\ssdpsrv.dll - Microsoft Corporation
             3856 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5836 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvstreamsvc.exe]Threads
             752 - Wait - nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
             756 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2064 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             3796 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             504 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             556 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             620 - Wait - bthserv.dll - c:\windows\system32\bthserv.dll - Microsoft Corporation
             708 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[SASCore.exe]Threads
             496 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             516 - Wait - SASCORE.EXE - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE - SUPERAntiSpyware.com
             520 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             580 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Threads
             540 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             544 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             548 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             552 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             584 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             604 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             608 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             700 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             704 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[unit.exe]Threads
             508 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             588 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             740 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             788 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             820 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             1132 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             1272 - Wait - export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-2042\export.DLL - Comodo Security Solutions, Inc.
             1344 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1560 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2056 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2164 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2180 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2512 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2520 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2940 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             2980 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3012 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3092 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3192 - Wait - unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - Comodo Security Solutions, Inc.
             3372 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             3756 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3908 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3948 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4000 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4004 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4152 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4188 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4224 - Wait - mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             4268 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4272 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4320 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4336 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             4404 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4620 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4664 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             4684 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             4800 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4828 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4848 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4872 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4896 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4900 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4932 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5024 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5060 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5096 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5120 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5160 - Wait - export.DLL - C:\Program Files\Comodo\GeekBuddy\lps-cspm\components\core\component-2042\export.DLL - Comodo Security Solutions, Inc.
             5260 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5264 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5276 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             5280 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5296 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5372 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5384 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             5416 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5436 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5476 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5488 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             5524 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5544 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5612 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5692 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             5704 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5812 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5828 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5944 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5992 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             6004 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             6052 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             6088 - Wait - AutorunsWrapper.dll - C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\plugin\component-2040\AutorunsWrapper.dll - TODO: <Company name>
             6112 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[wininit.exe]Threads
             568 - Wait - wininit.exe - C:\Windows\system32\wininit.exe - Microsoft Corporation
             592 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             596 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             624 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             732 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Threads
             572 - Wait - cdd.dll - C:\Windows\System32\cdd.dll - Microsoft Corporation
             628 - Wait - cdd.dll - C:\Windows\System32\cdd.dll - Microsoft Corporation
             640 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             644 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             648 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             652 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             664 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             692 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             696 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             1064 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[services.exe]Threads
             636 - Terminate - services.exe - C:\Windows\system32\services.exe - Microsoft Corporation
             768 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             776 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             792 - Wait - UBPM.dll - C:\Windows\system32\UBPM.dll - Microsoft Corporation
             848 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             956 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1792 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2248 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2984 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3400 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4284 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4432 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5864 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[winlogon.exe]Threads
             660 - Wait - winlogon.exe - C:\Windows\system32\winlogon.exe - Microsoft Corporation
             1024 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5196 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[wmpnetwk.exe]Threads
             680 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1380 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1412 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1756 - Wait - wmpnetwk.exe - C:\Program Files\Windows Media Player\wmpnetwk.exe - Microsoft Corporation
             2912 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3048 - Wait - SSDPAPI.dll - C:\Windows\system32\SSDPAPI.dll - Microsoft Corporation
             3084 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3244 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             3312 - Wait - gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             4084 - Wait - wmpnetwk.exe - C:\Program Files\Windows Media Player\wmpnetwk.exe - Microsoft Corporation
             5796 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[lsm.exe]Threads
             688 - Wait - lsm.exe - C:\Windows\system32\lsm.exe - Microsoft Corporation
             784 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1000 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1004 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1008 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1012 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1016 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1020 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1028 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2948 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5676 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvstreamsvc.exe]Threads
             872 - Wait - nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
             1036 - Wait - nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
             2488 - Wait - nvstreamsvc.exe - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - NVIDIA Corporation
             2676 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3224 - Wait - EasyDaemonAPIU.dll - C:\Program Files\NVIDIA Corporation\Update Common\EasyDaemonAPIU.dll - NVIDIA Corporation

------------------------------------------------------------------------------------------

      Image File Name[avastui.exe]Threads
             772 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1248 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1296 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1352 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             1660 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             1680 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             1700 - Wait - Aavm4h.dll - C:\Program Files\AVAST Software\Avast\Aavm4h.dll - AVAST Software
             1740 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             1752 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             1796 - Wait - aswData.dll - C:\Program Files\AVAST Software\Avast\aswData.dll - AVAST Software
             2008 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             2240 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             2568 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             2616 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             2644 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2724 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2880 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             2988 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             3020 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             3088 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             3212 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3240 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             3304 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             3428 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3620 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3764 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             3772 - Wait - MSVCR110.dll - C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll - Microsoft Corporation
             3792 - Wait - HTMLayout.dll - C:\Program Files\AVAST Software\Avast\HTMLayout.dll - AVAST Software
             3800 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             3828 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             3868 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             4024 - Wait - avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software
             4088 - Wait - libcef.dll - C:\Program Files\AVAST Software\Avast\libcef.dll - 
             4292 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5244 - Wait - WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             5392 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5988 - Wait - HTMLayout.dll - C:\Program Files\AVAST Software\Avast\HTMLayout.dll - AVAST Software
             5996 - Wait - HTMLayout.dll - C:\Program Files\AVAST Software\Avast\HTMLayout.dll - AVAST Software
             6032 - Wait - HTMLayout.dll - C:\Program Files\AVAST Software\Avast\HTMLayout.dll - AVAST Software
             6044 - Wait - HTMLayout.dll - C:\Program Files\AVAST Software\Avast\HTMLayout.dll - AVAST Software

------------------------------------------------------------------------------------------

      Image File Name[taskhost.exe]Threads
             780 - Wait - MsCtfMonitor.dll - C:\Windows\system32\MsCtfMonitor.dll - Microsoft Corporation
             828 - Wait - taskhost.exe - C:\Windows\system32\taskhost.exe - Microsoft Corporation
             1328 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1508 - Wait - WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             1704 - Wait - taskhost.exe - C:\Windows\system32\taskhost.exe - Microsoft Corporation
             1876 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2596 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2716 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3040 - Wait - PlaySndSrv.dll - C:\Windows\System32\PlaySndSrv.dll - Microsoft Corporation
             3200 - Wait - MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             3292 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4208 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4244 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4488 - Wait - ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             5732 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5756 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6020 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             800 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             808 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             816 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             824 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             832 - Wait - umpnpmgr.dll - c:\windows\system32\umpnpmgr.dll - Microsoft Corporation
             836 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             840 - Wait - umpo.dll - c:\windows\system32\umpo.dll - Microsoft Corporation
             844 - Wait - umpo.dll - c:\windows\system32\umpo.dll - Microsoft Corporation
             944 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1880 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4296 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4976 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5876 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[cmdagent.exe]Threads
             804 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             892 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1056 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1068 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1084 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1096 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1112 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1336 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1564 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1576 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1748 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             1848 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1968 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             2116 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2160 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2212 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             2300 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             2312 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             2584 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             2696 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             2796 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2936 - Ready - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3208 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3220 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3460 - Wait - cmdavcen.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdavcen.dll - COMODO
             3464 - Wait - cmdavcen.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdavcen.dll - COMODO
             3468 - Wait - cmdavcen.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdavcen.dll - COMODO
             3476 - Wait - cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             3480 - Wait - cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             3484 - Wait - cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             3488 - Wait - cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             3492 - Wait - cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             3496 - Wait - cmdboost.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdboost.dll - COMODO
             3500 - Wait - cmdtrust.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdtrust.dll - COMODO
             3504 - Wait - cmdtrust.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdtrust.dll - COMODO
             3508 - Wait - cmdcloud.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcloud.dll - COMODO
             3512 - Wait - cmdcloud.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdcloud.dll - COMODO
             3520 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3524 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3528 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3532 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3536 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3540 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3544 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3548 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3552 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3588 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3592 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3596 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3600 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3604 - Wait - cmdtrust.dll - C:\Program Files\COMODO\COMODO Internet Security\cmdtrust.dll - COMODO
             3608 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3624 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3628 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3632 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3636 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3640 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3644 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3648 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3652 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3656 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3660 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3664 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3668 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3672 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3676 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3680 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3684 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3688 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3692 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3696 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3700 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3704 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3708 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3712 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3716 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3720 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3724 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3728 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3732 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3736 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3740 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3744 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO
             3748 - Wait - cmdagent.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - COMODO

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             812 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1196 - Wait - svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             1204 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1208 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1212 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1240 - Wait - audiosrv.dll - c:\windows\system32\audiosrv.dll - Microsoft Corporation
             1284 - Wait - MMDevAPI.DLL - c:\windows\system32\MMDevAPI.DLL - Microsoft Corporation
             1356 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1432 - Wait - cscsvc.dll - c:\windows\system32\cscsvc.dll - Microsoft Corporation
             1452 - Wait - cscsvc.dll - c:\windows\system32\cscsvc.dll - Microsoft Corporation
             1456 - Wait - cscsvc.dll - c:\windows\system32\cscsvc.dll - Microsoft Corporation
             1468 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1476 - Wait - PeerDist.dll - C:\Windows\System32\PeerDist.dll - Microsoft Corporation
             1544 - Wait - uxsms.dll - c:\windows\system32\uxsms.dll - Microsoft Corporation
             2216 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2280 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2332 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2972 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3784 - Wait - sysmain.dll - c:\windows\system32\sysmain.dll - Microsoft Corporation
             3804 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4452 - Wait - pcasvc.dll - c:\windows\system32\pcasvc.dll - Microsoft Corporation
             5916 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[launcher_service.exe]Threads
             868 - Wait - launcher_service.exe - C:\Program Files\Common Files\COMODO\launcher_service.exe - Comodo Security Solutions, Inc.
             880 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2528 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3388 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5148 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[cmdvirth.exe]Threads
             876 - Wait - cmdvirth.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe - COMODO
             3120 - Wait - cmdvirth.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe - COMODO
             3172 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3436 - Wait - cmdvirth.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe - COMODO
             4808 - Wait - cmdvirth.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe - COMODO
             4836 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4960 - Wait - cmdvirth.exe - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe - COMODO
             5048 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5168 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             5292 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5716 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvvsvc.exe]Threads
             888 - Wait - nvvsvc.exe - C:\Windows\system32\nvvsvc.exe - NVIDIA Corporation
             904 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             908 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1484 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4324 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5008 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             896 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1184 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1228 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             1244 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1288 - Wait - fntcache.dll - c:\windows\system32\fntcache.dll - Microsoft Corporation
             1292 - Wait - fntcache.dll - c:\windows\system32\fntcache.dll - Microsoft Corporation
             1532 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2252 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2256 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2748 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3060 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3104 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             3128 - Wait - netprofm.dll - c:\windows\system32\netprofm.dll - Microsoft Corporation
             3168 - Wait - netprofm.dll - c:\windows\system32\netprofm.dll - Microsoft Corporation
             3272 - Wait - fthsvc.dll - C:\Windows\system32\fthsvc.dll - Microsoft Corporation
             3284 - Wait - netprofm.dll - c:\windows\system32\netprofm.dll - Microsoft Corporation
             3296 - Wait - netprofm.dll - c:\windows\system32\netprofm.dll - Microsoft Corporation
             3812 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3932 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4132 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4460 - Wait - fdwsd.dll - C:\Windows\system32\fdwsd.dll - Microsoft Corporation
             4464 - Wait - fdwsd.dll - C:\Windows\system32\fdwsd.dll - Microsoft Corporation
             4468 - Wait - fdwsd.dll - C:\Windows\system32\fdwsd.dll - Microsoft Corporation
             4472 - Wait - fdwsd.dll - C:\Windows\system32\fdwsd.dll - Microsoft Corporation
             4476 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4484 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5224 - Wait - fthsvc.dll - C:\Windows\system32\fthsvc.dll - Microsoft Corporation
             6008 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvSCPAPISvr.exe]Threads
             916 - Wait - nvSCPAPISvr.exe - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - NVIDIA Corporation
             920 - Wait - nvSCPAPISvr.exe - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - NVIDIA Corporation
             924 - Wait - nvSCPAPISvr.exe - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - NVIDIA Corporation
             932 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             936 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             964 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             952 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             968 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             972 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             984 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             992 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             996 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1812 - Wait - rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             3420 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4384 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4692 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[explorer.exe]Threads
             980 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             2172 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             2284 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3472 - Wait - WINMM.dll - C:\Windows\system32\WINMM.dll - Microsoft Corporation
             4356 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4392 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4408 - Wait - pnidui.dll - C:\Windows\System32\pnidui.dll - Microsoft Corporation
             4604 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             4948 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5532 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5720 - Wait - Explorer.exe - C:\Windows\Explorer.exe - Microsoft Corporation
             5724 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5740 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5772 - Wait - msiltcfg.dll - C:\Windows\system32\msiltcfg.dll - Microsoft Corporation
             5780 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5808 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             5816 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5824 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5832 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5924 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5936 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5940 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5948 - Wait - MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             5952 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             5968 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6036 - Wait - SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             6104 - Wait - fxsst.dll - C:\Windows\system32\fxsst.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             988 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2264 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             2276 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2296 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2304 - Wait - wiaservc.dll - c:\windows\system32\wiaservc.dll - Microsoft Corporation
             2308 - Wait - wiaservc.dll - c:\windows\system32\wiaservc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[CisTray.exe]Threads
             1040 - Wait - CisTray.exe - C:\Program Files\Comodo\COMODO Internet Security\CisTray.exe - COMODO
             2560 - Wait - CisTray.exe - C:\Program Files\Comodo\COMODO Internet Security\CisTray.exe - COMODO
             3176 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3568 - Wait - gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             4816 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5284 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[PING.EXE]Threads
             1044 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5116 - Wait - ping.exe - C:\Windows\system32\ping.exe - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvtray.exe]Threads
             1048 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1520 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1800 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             2080 - Wait - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             2128 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2144 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             2196 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3136 - Wait - nvtray.exe - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - NVIDIA Corporation
             3196 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             3752 - Wait - NvUpdt.dll - C:\Program Files\NVIDIA Corporation\Update Common\NvUpdt.dll - NVIDIA Corporation
             3832 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3916 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4060 - Wait - NvUI.dll - C:\Program Files\NVIDIA Corporation\Display\NvUI.dll - NVIDIA Corporation
             4120 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4124 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4140 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4220 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4240 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4368 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4700 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4712 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             4744 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4924 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5072 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5088 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5268 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5300 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             5424 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             5456 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5472 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             5520 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5660 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             5680 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5700 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5856 - Terminate - easyDaemonAPIU.DLL - C:\Program Files\NVIDIA Corporation\Update Common\easyDaemonAPIU.DLL - NVIDIA Corporation
             5904 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6080 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             1060 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1264 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             1268 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1324 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1388 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1392 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1488 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1492 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1624 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1716 - Wait - AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             1836 - Terminate - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1888 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1896 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1904 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1908 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1920 - Wait - schedsvc.dll - c:\windows\system32\schedsvc.dll - Microsoft Corporation
             1932 - Wait - taskcomp.dll - C:\Windows\system32\taskcomp.dll - Microsoft Corporation
             2544 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2604 - Wait - AUTHZ.dll - c:\windows\system32\AUTHZ.dll - Microsoft Corporation
             2628 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2632 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2640 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2660 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2672 - Wait - rastapi.DLL - C:\Windows\system32\rastapi.DLL - Microsoft Corporation
             2680 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2692 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2704 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2712 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2728 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2744 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2828 - Wait - TAPI32.dll - C:\Windows\system32\TAPI32.dll - Microsoft Corporation
             2852 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             2856 - Wait - rasmans.dll - c:\windows\system32\rasmans.dll - Microsoft Corporation
             2860 - Wait - rasppp.dll - C:\Windows\system32\rasppp.dll - Microsoft Corporation
             2876 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2904 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2908 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2964 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2968 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3064 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3100 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             3116 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3132 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             3216 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             3288 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             3432 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             3876 - Wait - ncprov.dll - C:\Windows\system32\wbem\ncprov.dll - Microsoft Corporation
             3884 - Wait - NCObjAPI.DLL - C:\Windows\system32\NCObjAPI.DLL - Microsoft Corporation
             3888 - Wait - NCObjAPI.DLL - C:\Windows\system32\NCObjAPI.DLL - Microsoft Corporation
             3900 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4176 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4532 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4840 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5232 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5368 - Wait - mmcss.dll - c:\windows\system32\mmcss.dll - Microsoft Corporation
             5484 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5632 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6140 - Wait - aelupsvc.dll - c:\windows\system32\aelupsvc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[conhost.exe]Threads
             2052 - Wait - conhost.exe - C:\Windows\system32\conhost.exe - Microsoft Corporation
             2244 - Wait - conhost.exe - C:\Windows\system32\conhost.exe - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[cavwp.exe]Threads
             1092 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2004 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3560 - Wait - cavwp.exe - C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe - COMODO
             3564 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3580 - Wait - cavwp.exe - C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe - COMODO
             3584 - Wait - cavwp.exe - C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe - COMODO

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             1152 - Wait - svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             1156 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1160 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1164 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1168 - Terminate - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1172 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             1176 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             1200 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1316 - Wait - audiosrv.dll - c:\windows\system32\audiosrv.dll - Microsoft Corporation
             1340 - Wait - MMDevAPI.DLL - c:\windows\system32\MMDevAPI.DLL - Microsoft Corporation
             1396 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             1400 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             1404 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             1436 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1580 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1588 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1592 - Wait - lmhsvc.dll - c:\windows\system32\lmhsvc.dll - Microsoft Corporation
             1600 - Wait - dhcpcore6.dll - C:\Windows\System32\dhcpcore6.dll - Microsoft Corporation
             2540 - Wait - wscsvc.dll - c:\windows\system32\wscsvc.dll - Microsoft Corporation
             2864 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2888 - Wait - wscsvc.dll - c:\windows\system32\wscsvc.dll - Microsoft Corporation
             3032 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             3896 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4456 - Wait - FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             5188 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dragon_updater.exe]Threads
             1256 - Wait - dragon_updater.exe - C:\Program Files\Comodo\Dragon\dragon_updater.exe - 
             1312 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1384 - Wait - dragon_updater.exe - C:\Program Files\Comodo\Dragon\dragon_updater.exe - 
             1428 - Wait - dragon_updater.exe - C:\Program Files\Comodo\Dragon\dragon_updater.exe - 
             1536 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4360 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             1368 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             1372 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1512 - Terminate - gpsvc.dll - c:\windows\system32\gpsvc.dll - Microsoft Corporation
             1552 - Wait - gpsvc.dll - c:\windows\system32\gpsvc.dll - Microsoft Corporation
             2124 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3320 - Terminate - gpsvc.dll - c:\windows\system32\gpsvc.dll - Microsoft Corporation
             3324 - Wait - gpsvc.dll - c:\windows\system32\gpsvc.dll - Microsoft Corporation
             5028 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[GeekBuddyRSP.exe]Threads
             1376 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1528 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1608 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1656 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1712 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1720 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1824 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1840 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1844 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1856 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1860 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             2012 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             2184 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             2188 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             2192 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             3944 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.

------------------------------------------------------------------------------------------

      Image File Name[GeekBuddyRSP.exe]Threads
             1440 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             1684 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.
             2932 - Wait - GeekBuddyRSP.exe - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc.

------------------------------------------------------------------------------------------

      Image File Name[PCHunter32.exe]Threads
             1460 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2976 - Run - PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - ????(??)????????
             3004 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             4708 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4844 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4964 - Wait - WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             5404 - Wait - mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             5412 - Wait - PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - ????(??)????????
             5580 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5900 - Terminate - PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - ????(??)????????

------------------------------------------------------------------------------------------

      Image File Name[WLIDSVC.EXE]Threads
             1472 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2108 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2552 - Wait - WLIDSVC.EXE - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - Microsoft Corp.
             2624 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2636 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2648 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2652 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2656 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2776 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3052 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[RtHDVCpl.exe]Threads
             1516 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             2092 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             2612 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2688 - Wait - gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             2996 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             3612 - Wait - MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             3816 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             3924 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             3956 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             3980 - Wait - RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor
             4048 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             1636 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4112 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4492 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4600 - Wait - svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             5640 - Wait - wersvc.dll - c:\windows\system32\wersvc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[mbamscheduler.exe]Threads
             1628 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1708 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1828 - Wait - mbamscheduler.exe - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe - Malwarebytes Corporation
             4248 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[nvxdsync.exe]Threads
             1676 - Wait - nvxdsync.exe - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - NVIDIA Corporation
             1696 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1736 - Wait - nvxdsync.exe - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - NVIDIA Corporation
             1776 - Wait - nvapi.dll - C:\Windows\system32\nvapi.dll - NVIDIA Corporation
             1780 - Wait - nvxdapix.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - NVIDIA Corporation
             1784 - Wait - nvxdapix.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - NVIDIA Corporation
             1788 - Wait - nvxdsync.exe - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - NVIDIA Corporation
             2132 - Wait - nvxdapix.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - NVIDIA Corporation
             4040 - Wait - nvxdapix.dll - C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - NVIDIA Corporation
             4416 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4556 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             5140 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[spoolsv.exe]Threads
             1952 - Wait - spoolsv.exe - C:\Windows\System32\spoolsv.exe - Microsoft Corporation
             1980 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1984 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1988 - Wait - spoolsv.exe - C:\Windows\System32\spoolsv.exe - Microsoft Corporation
             3952 - Wait - usbmon.dll - C:\Windows\System32\usbmon.dll - Microsoft Corporation
             3960 - Wait - WSDMon.dll - C:\Windows\System32\WSDMon.dll - Microsoft Corporation
             3964 - Wait - FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             3968 - Wait - fdPnp.dll - C:\Windows\system32\fdPnp.dll - Microsoft Corporation
             3972 - Wait - FunDisc.dll - C:\Windows\system32\FunDisc.dll - Microsoft Corporation
             3988 - Wait - PrintIsolationProxy.dll - C:\Windows\System32\PrintIsolationProxy.dll - Microsoft Corporation
             3992 - Wait - localspl.dll - C:\Windows\System32\localspl.dll - Microsoft Corporation
             5896 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WerFault.exe]Threads

------------------------------------------------------------------------------------------

      Image File Name[daemonu.exe]Threads
             2140 - Wait - daemonu.exe - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - NVIDIA Corporation
             2168 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2204 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2336 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2340 - Wait - daemonu.exe - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - NVIDIA Corporation
             2344 - Wait - daemonu.exe - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - NVIDIA Corporation
             2348 - Wait - daemonu.exe - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - NVIDIA Corporation
             3068 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4104 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5972 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[rundll32.exe]Threads
             2152 - Wait - rundll32.exe - C:\Windows\system32\rundll32.exe - Microsoft Corporation
             2220 - Wait - gdiplus.dll - C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\gdiplus.dll - Microsoft Corporation
             2224 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2228 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2232 - Wait - MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[TuneUpUtilitiesService32.exe]Threads
             2328 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             2492 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2496 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             2508 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2524 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             2832 - Wait - avgreplibx.dll - C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll - 
             2836 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             2840 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             2896 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             2900 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             2956 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             3148 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             3256 - Wait - TuneUpUtilitiesService32.exe - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - TuneUp Software
             3452 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3844 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4052 - Wait - ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dwm.exe]Threads
             2600 - Wait - Dwm.exe - C:\Windows\system32\Dwm.exe - Microsoft Corporation
             2684 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2952 - Wait - Dwm.exe - C:\Windows\system32\Dwm.exe - Microsoft Corporation
             2960 - Wait - dwmcore.dll - C:\Windows\system32\dwmcore.dll - Microsoft Corporation
             3140 - Wait - uDWM.dll - C:\Windows\system32\uDWM.dll - Microsoft Corporation
             5888 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[WLIDSVCM.EXE]Threads
             2760 - Wait - WLIDSvcM.exe - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe - Microsoft Corp.
             2768 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2772 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2788 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[unit_manager.exe]Threads
             2928 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3376 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             3572 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4308 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             4672 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5044 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5364 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5452 - Wait - MSVCR90.dll - C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll - Microsoft Corporation
             5620 - Wait - unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - Comodo Security Solutions, Inc.

------------------------------------------------------------------------------------------

      Image File Name[audiodg.exe]Threads
             3056 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3912 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3976 - Wait - RtkAPO.dll - C:\Windows\system32\RtkAPO.dll - Realtek Semiconductor Corp.
             4732 - Wait - AUDIODG.EXE - C:\Windows\system32\AUDIODG.EXE - Microsoft Corporation
             5012 - Wait - MMDevAPI.DLL - C:\Windows\System32\MMDevAPI.DLL - Microsoft Corporation
             5204 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5328 - Wait - RtkAPO.dll - C:\Windows\system32\RtkAPO.dll - Realtek Semiconductor Corp.
             5332 - Wait - RtkAPO.dll - C:\Windows\system32\RtkAPO.dll - Realtek Semiconductor Corp.
             5880 - Wait - RtkAPO.dll - C:\Windows\system32\RtkAPO.dll - Realtek Semiconductor Corp.
             5956 - Wait - audioeng.dll - C:\Windows\System32\audioeng.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             3232 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             3264 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3268 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             3328 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3332 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             6060 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[conhost.exe]Threads

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             3340 - Wait - cmdvrt32.dll - C:\Windows\system32\cmdvrt32.dll - COMODO
             3820 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             3840 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4168 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4228 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4508 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             5496 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             3448 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4068 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4528 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             4864 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             5480 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             4740 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             4772 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             5200 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[Idle]Threads

==========================================================================================

Kernel Module

       ntkrnlpa.exe - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       halmacpi.dll - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       kdcom.dll - C:\Windows\system32\kdcom.dll - Microsoft Corporation
       mcupdate_AuthenticAMD.dll - C:\Windows\system32\mcupdate_AuthenticAMD.dll - Microsoft Corporation
       PSHED.dll - C:\Windows\system32\PSHED.dll - Microsoft Corporation
       BOOTVID.dll - C:\Windows\system32\BOOTVID.dll - Microsoft Corporation
       CLFS.SYS - C:\Windows\system32\CLFS.SYS - Microsoft Corporation
       CI.dll - C:\Windows\system32\CI.dll - Microsoft Corporation
       Wdf01000.sys - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WDFLDR.SYS - C:\Windows\system32\drivers\WDFLDR.SYS - Microsoft Corporation
       sptd.sys - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       ACPI.sys - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       WMILIB.SYS - C:\Windows\system32\drivers\WMILIB.SYS - Microsoft Corporation
       msisadrv.sys - C:\Windows\system32\drivers\msisadrv.sys - Microsoft Corporation
       vdrvroot.sys - C:\Windows\system32\drivers\vdrvroot.sys - Microsoft Corporation
       pci.sys - C:\Windows\system32\drivers\pci.sys - Microsoft Corporation
       partmgr.sys - C:\Windows\System32\drivers\partmgr.sys - Microsoft Corporation
       volmgr.sys - C:\Windows\system32\drivers\volmgr.sys - Microsoft Corporation
       volmgrx.sys - C:\Windows\System32\drivers\volmgrx.sys - Microsoft Corporation
       pciide.sys - C:\Windows\system32\drivers\pciide.sys - Microsoft Corporation
       PCIIDEX.SYS - C:\Windows\system32\drivers\PCIIDEX.SYS - Microsoft Corporation
       mountmgr.sys - C:\Windows\System32\drivers\mountmgr.sys - Microsoft Corporation
       vmbus.sys - C:\Windows\system32\drivers\vmbus.sys - Microsoft Corporation
       winhv.sys - C:\Windows\system32\drivers\winhv.sys - Microsoft Corporation
       atapi.sys - C:\Windows\system32\drivers\atapi.sys - Microsoft Corporation
       ataport.SYS - C:\Windows\system32\drivers\ataport.SYS - Microsoft Corporation
       amdxata.sys - C:\Windows\system32\drivers\amdxata.sys - Advanced Micro Devices
       fltmgr.sys - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       fileinfo.sys - C:\Windows\system32\drivers\fileinfo.sys - Microsoft Corporation
       Ntfs.sys - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       msrpc.sys - C:\Windows\System32\Drivers\msrpc.sys - Microsoft Corporation
       ksecdd.sys - C:\Windows\System32\Drivers\ksecdd.sys - Microsoft Corporation
       cng.sys - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       pcw.sys - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       Fs_Rec.sys - C:\Windows\System32\Drivers\Fs_Rec.sys - Microsoft Corporation
       ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       NETIO.SYS - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       ksecpkg.sys - C:\Windows\System32\Drivers\ksecpkg.sys - Microsoft Corporation
       tcpip.sys - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       fwpkclnt.sys - C:\Windows\System32\drivers\fwpkclnt.sys - Microsoft Corporation
       vmstorfl.sys - C:\Windows\system32\drivers\vmstorfl.sys - Microsoft Corporation
       volsnap.sys - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
       spldr.sys - C:\Windows\System32\Drivers\spldr.sys - Microsoft Corporation
       speedfan.sys - C:\Windows\system32\speedfan.sys - Almico Software
       rdyboost.sys - C:\Windows\System32\drivers\rdyboost.sys - Microsoft Corporation
       NVAMACPI.sys - C:\Windows\system32\DRIVERS\NVAMACPI.sys - NVIDIA Corporation
       mup.sys - C:\Windows\System32\Drivers\mup.sys - Microsoft Corporation
       hwpolicy.sys - C:\Windows\System32\drivers\hwpolicy.sys - Microsoft Corporation
       giveio.sys - C:\Windows\system32\giveio.sys - 
       fltsrv.sys - C:\Windows\system32\DRIVERS\fltsrv.sys - Acronis
       fvevol.sys - C:\Windows\System32\DRIVERS\fvevol.sys - Microsoft Corporation
       disk.sys - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       CLASSPNP.SYS - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       BtHidBus.sys - C:\Windows\System32\Drivers\BtHidBus.sys - IVT Corporation.
       aswVmm.sys - C:\Windows\System32\Drivers\aswVmm.sys - 
       aswRvrt.sys - C:\Windows\System32\Drivers\aswRvrt.sys - 
       dtsoftbus01.sys - C:\Windows\system32\DRIVERS\dtsoftbus01.sys - Disc Soft Ltd
       cmderd.sys - C:\Windows\System32\DRIVERS\cmderd.sys - COMODO
       cdrom.sys - C:\Windows\system32\DRIVERS\cdrom.sys - Microsoft Corporation
       aswSnx.sys - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       cmdguard.sys - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       CFRMD.sys - C:\Windows\system32\DRIVERS\CFRMD.sys - Windows (R) Win 7 DDK provider
       Null.SYS - C:\Windows\System32\Drivers\Null.SYS - Microsoft Corporation
       Beep.SYS - C:\Windows\System32\Drivers\Beep.SYS - Microsoft Corporation
       aswKbd.SYS - C:\Windows\System32\Drivers\aswKbd.SYS - AVAST Software
       vga.sys - C:\Windows\System32\drivers\vga.sys - Microsoft Corporation
       VIDEOPRT.SYS - C:\Windows\System32\drivers\VIDEOPRT.SYS - Microsoft Corporation
       watchdog.sys - C:\Windows\System32\drivers\watchdog.sys - Microsoft Corporation
       RDPCDD.sys - C:\Windows\System32\DRIVERS\RDPCDD.sys - Microsoft Corporation
       rdpencdd.sys - C:\Windows\system32\drivers\rdpencdd.sys - Microsoft Corporation
       rdprefmp.sys - C:\Windows\system32\drivers\rdprefmp.sys - Microsoft Corporation
       Msfs.SYS - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       Npfs.SYS - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       tdx.sys - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       TDI.SYS - C:\Windows\system32\DRIVERS\TDI.SYS - Microsoft Corporation
       cmdhlp.sys - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       aswTdi.sys - C:\Windows\system32\drivers\aswTdi.sys - AVAST Software
       afd.sys - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       aswRdr2.sys - C:\Windows\system32\drivers\aswRdr2.sys - AVAST Software
       netbt.sys - C:\Windows\System32\DRIVERS\netbt.sys - Microsoft Corporation
       ws2ifsl.sys - C:\Windows\system32\drivers\ws2ifsl.sys - Microsoft Corporation
       wfplwf.sys - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       pacer.sys - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       inspect.sys - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       netbios.sys - C:\Windows\system32\DRIVERS\netbios.sys - Microsoft Corporation
       serial.sys - C:\Windows\system32\DRIVERS\serial.sys - Brother Industries Ltd.
       wanarp.sys - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       termdd.sys - C:\Windows\system32\drivers\termdd.sys - Microsoft Corporation
       SASKUTIL.SYS - C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS - SUPERAdBlocker.com and SUPERAntiSpyware.com
       SASDIFSV.SYS - C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS - SUPERAdBlocker.com and SUPERAntiSpyware.com
       rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
       nsiproxy.sys - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       mssmbios.sys - C:\Windows\system32\drivers\mssmbios.sys - Microsoft Corporation
       hmd.sys - C:\Windows\system32\DRIVERS\hmd.sys - 
       discache.sys - C:\Windows\System32\drivers\discache.sys - Microsoft Corporation
       csc.sys - C:\Windows\system32\drivers\csc.sys - Microsoft Corporation
       dfsc.sys - C:\Windows\System32\Drivers\dfsc.sys - Microsoft Corporation
       blbdrive.sys - C:\Windows\system32\DRIVERS\blbdrive.sys - Microsoft Corporation
       aswSP.sys - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       ASPI32.SYS - C:\Windows\System32\Drivers\ASPI32.SYS - Adaptec
       tunnel.sys - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       amdk8.sys - C:\Windows\system32\DRIVERS\amdk8.sys - Microsoft Corporation
       serenum.sys - C:\Windows\system32\DRIVERS\serenum.sys - Microsoft Corporation
       parport.sys - C:\Windows\system32\DRIVERS\parport.sys - Microsoft Corporation
       i8042prt.sys - C:\Windows\system32\drivers\i8042prt.sys - Microsoft Corporation
       kbdclass.sys - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       usbohci.sys - C:\Windows\system32\DRIVERS\usbohci.sys - Microsoft Corporation
       USBPORT.SYS - C:\Windows\system32\DRIVERS\USBPORT.SYS - Microsoft Corporation
       usbehci.sys - C:\Windows\system32\DRIVERS\usbehci.sys - Microsoft Corporation
       nvm62x32.sys - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       HDAudBus.sys - C:\Windows\system32\drivers\HDAudBus.sys - Microsoft Corporation
       1394ohci.sys - C:\Windows\system32\drivers\1394ohci.sys - Microsoft Corporation
       nvlddmkm.sys - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       dxgkrnl.sys - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       dxgmms1.sys - C:\Windows\System32\drivers\dxgmms1.sys - Microsoft Corporation
       CompositeBus.sys - C:\Windows\system32\drivers\CompositeBus.sys - Microsoft Corporation
       anvsnddrv.sys - C:\Windows\system32\drivers\anvsnddrv.sys - AnvSoft Inc.
       portcls.sys - C:\Windows\system32\drivers\portcls.sys - Microsoft Corporation
       drmk.sys - C:\Windows\system32\drivers\drmk.sys - Microsoft Corporation
       ks.sys - C:\Windows\system32\drivers\ks.sys - Microsoft Corporation
       AgileVpn.sys - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       rasl2tp.sys - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       ndistapi.sys - C:\Windows\system32\DRIVERS\ndistapi.sys - Microsoft Corporation
       ndiswan.sys - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       raspppoe.sys - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       raspptp.sys - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       rassstp.sys - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       rdpbus.sys - C:\Windows\system32\DRIVERS\rdpbus.sys - Microsoft Corporation
       mouclass.sys - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       swenum.sys - C:\Windows\system32\drivers\swenum.sys - Microsoft Corporation
       umbus.sys - C:\Windows\system32\drivers\umbus.sys - Microsoft Corporation
       nvvad32v.sys - C:\Windows\system32\drivers\nvvad32v.sys - NVIDIA Corporation
       usbhub.sys - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       NDProxy.SYS - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       RTKVHDA.sys - C:\Windows\system32\drivers\RTKVHDA.sys - Realtek Semiconductor Corp.
       crashdmp.sys - C:\Windows\System32\Drivers\crashdmp.sys - Microsoft Corporation
       dump_dumpata.sys - C:\Windows\System32\Drivers\dump_dumpata.sys - File not found
       dump_atapi.sys - C:\Windows\System32\Drivers\dump_atapi.sys - File not found
       dump_dumpfve.sys - C:\Windows\System32\Drivers\dump_dumpfve.sys - File not found
       win32k.sys - C:\Windows\System32\win32k.sys - Microsoft Corporation
       Dxapi.sys - C:\Windows\System32\drivers\Dxapi.sys - Microsoft Corporation
       hidusb.sys - C:\Windows\system32\drivers\hidusb.sys - Microsoft Corporation
       HIDCLASS.SYS - C:\Windows\system32\drivers\HIDCLASS.SYS - Microsoft Corporation
       HIDPARSE.SYS - C:\Windows\system32\drivers\HIDPARSE.SYS - Microsoft Corporation
       USBD.SYS - C:\Windows\system32\drivers\USBD.SYS - Microsoft Corporation
       mouhid.sys - C:\Windows\system32\DRIVERS\mouhid.sys - Microsoft Corporation
       monitor.sys - C:\Windows\system32\DRIVERS\monitor.sys - Microsoft Corporation
       TSDDD.dll - C:\Windows\System32\TSDDD.dll - Microsoft Corporation
       cdd.dll - C:\Windows\System32\cdd.dll - Microsoft Corporation
       ATMFD.DLL - C:\Windows\System32\ATMFD.DLL - Adobe Systems Incorporated
       luafv.sys - C:\Windows\system32\drivers\luafv.sys - Microsoft Corporation
       aswMonFlt.sys - C:\Windows\system32\drivers\aswMonFlt.sys - AVAST Software
       mbam.sys - C:\Windows\system32\drivers\mbam.sys - Malwarebytes Corporation
       aswFsBlk.sys - C:\Windows\system32\drivers\aswFsBlk.sys - AVAST Software
       lltdio.sys - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       rspndr.sys - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       bowser.sys - C:\Windows\system32\DRIVERS\bowser.sys - Microsoft Corporation
       mpsdrv.sys - C:\Windows\System32\drivers\mpsdrv.sys - Microsoft Corporation
       mrxsmb.sys - C:\Windows\system32\DRIVERS\mrxsmb.sys - Microsoft Corporation
       mrxsmb10.sys - C:\Windows\system32\DRIVERS\mrxsmb10.sys - Microsoft Corporation
       mrxsmb20.sys - C:\Windows\system32\DRIVERS\mrxsmb20.sys - Microsoft Corporation
       parvdm.sys - C:\Windows\system32\DRIVERS\parvdm.sys - Microsoft Corporation
       peauth.sys - C:\Windows\system32\drivers\peauth.sys - Microsoft Corporation
       secdrv.SYS - C:\Windows\System32\Drivers\secdrv.SYS - Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.
       srvnet.sys - C:\Windows\System32\DRIVERS\srvnet.sys - Microsoft Corporation
       tcpipreg.sys - C:\Windows\System32\drivers\tcpipreg.sys - Microsoft Corporation
       srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
       srv.sys - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
       TuneUpUtilitiesDriver32.sys - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys - TuneUp Software
       PROCEXP113.SYS - C:\Windows\system32\Drivers\PROCEXP113.SYS - File not found
       PCHunter32ad.sys - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
      
       [UnloadDriver] GPCIDrv.sys - C:\Program Files\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv.sys - 
       [UnloadDriver] IObitUnlocker.sys - C:\Program Files\IObit\IObit Unlocker\IObitUnlocker.sys - 
       [UnloadDriver] catchme.sys - C:\Users\Vladimir\AppData\Local\Temp\catchme.sys - File not found
       [UnloadDriver] mbr.sys - C:\Users\Vladimir\AppData\Local\Temp\mbr.sys - File not found
       [UnloadDriver] rasacd.sys - C:\Windows\System32\DRIVERS\rasacd.sys - Microsoft Corporation
       [UnloadDriver] scfilter.sys - C:\Windows\System32\DRIVERS\scfilter.sys - Microsoft Corporation
       [UnloadDriver] tssecsrv.sys - C:\Windows\System32\DRIVERS\tssecsrv.sys - Microsoft Corporation
       [UnloadDriver] BTHUSB.sys - C:\Windows\System32\Drivers\BTHUSB.sys - Microsoft Corporation
       [UnloadDriver] BTHport.sys - C:\Windows\System32\Drivers\BTHport.sys - Microsoft Corporation
       [UnloadDriver] BrSerWdm.sys - C:\Windows\System32\Drivers\BrSerWdm.sys - Brother Industries Ltd.
       [UnloadDriver] BrUsbMdm.sys - C:\Windows\System32\Drivers\BrUsbMdm.sys - Brother Industries Ltd.
       [UnloadDriver] BrUsbSer.sys - C:\Windows\System32\Drivers\BrUsbSer.sys - Brother Industries Ltd.
       [UnloadDriver] Brserid.sys - C:\Windows\System32\Drivers\Brserid.sys - Brother Industries Ltd.
       [UnloadDriver] IvtBtBus.sys - C:\Windows\System32\Drivers\IvtBtBus.sys - IVT Corporation.
       [UnloadDriver] btcombus.sys - C:\Windows\System32\Drivers\btcombus.sys - File not found
       [UnloadDriver] btcusb.sys - C:\Windows\System32\Drivers\btcusb.sys - File not found
       [UnloadDriver] btnetBus.sys - C:\Windows\System32\Drivers\btnetBus.sys - 
       [UnloadDriver] FsDepends.sys - C:\Windows\System32\drivers\FsDepends.sys - Microsoft Corporation
       [UnloadDriver] ipnat.sys - C:\Windows\System32\drivers\ipnat.sys - Microsoft Corporation
       [UnloadDriver] mshidkmdf.sys - C:\Windows\System32\drivers\mshidkmdf.sys - Microsoft Corporation
       [UnloadDriver] rdpdr.sys - C:\Windows\System32\drivers\rdpdr.sys - Microsoft Corporation
       [UnloadDriver] rdpvideominiport.sys - C:\Windows\System32\drivers\rdpvideominiport.sys - Microsoft Corporation
       [UnloadDriver] tsusbflt.sys - C:\Windows\System32\drivers\tsusbflt.sys - Microsoft Corporation
       [UnloadDriver] vwifibus.sys - C:\Windows\System32\drivers\vwifibus.sys - Microsoft Corporation
       [UnloadDriver] 61883.sys - C:\Windows\system32\DRIVERS\61883.sys - Microsoft Corporation
       [UnloadDriver] AmdLLD.sys - C:\Windows\system32\DRIVERS\AmdLLD.sys - File not found
       [UnloadDriver] BrFiltLo.sys - C:\Windows\system32\DRIVERS\BrFiltLo.sys - Brother Industries, Ltd.
       [UnloadDriver] BrFiltUp.sys - C:\Windows\system32\DRIVERS\BrFiltUp.sys - Brother Industries, Ltd.
       [UnloadDriver] CmBatt.sys - C:\Windows\system32\DRIVERS\CmBatt.sys - Microsoft Corporation
       [UnloadDriver] HidBatt.sys - C:\Windows\system32\DRIVERS\HidBatt.sys - Microsoft Corporation
       [UnloadDriver] MTConfig.sys - C:\Windows\system32\DRIVERS\MTConfig.sys - Microsoft Corporation
       [UnloadDriver] MegaSR.sys - C:\Windows\system32\DRIVERS\MegaSR.sys - LSI Corporation, Inc.
       [UnloadDriver] SiSRaid2.sys - C:\Windows\system32\DRIVERS\SiSRaid2.sys - Silicon Integrated Systems Corp.
       [UnloadDriver] USBSTOR.SYS - C:\Windows\system32\DRIVERS\USBSTOR.SYS - Microsoft Corporation
       [UnloadDriver] VBoxNetAdp.sys - C:\Windows\system32\DRIVERS\VBoxNetAdp.sys - Oracle Corporation
       [UnloadDriver] VBoxNetFlt.sys - C:\Windows\system32\DRIVERS\VBoxNetFlt.sys - File not found
       [UnloadDriver] WUDFRd.sys - C:\Windows\system32\DRIVERS\WUDFRd.sys - Microsoft Corporation
       [UnloadDriver] WinUsb.sys - C:\Windows\system32\DRIVERS\WinUsb.sys - Microsoft Corporation
       [UnloadDriver] ZTEusbmdm6k.sys - C:\Windows\system32\DRIVERS\ZTEusbmdm6k.sys - File not found
       [UnloadDriver] ZTEusbnmea.sys - C:\Windows\system32\DRIVERS\ZTEusbnmea.sys - File not found
       [UnloadDriver] ZTEusbser6k.sys - C:\Windows\system32\DRIVERS\ZTEusbser6k.sys - File not found
       [UnloadDriver] adp94xx.sys - C:\Windows\system32\DRIVERS\adp94xx.sys - Adaptec, Inc.
       [UnloadDriver] adpahci.sys - C:\Windows\system32\DRIVERS\adpahci.sys - Adaptec, Inc.
       [UnloadDriver] adpu320.sys - C:\Windows\system32\DRIVERS\adpu320.sys - Adaptec, Inc.
       [UnloadDriver] amdppm.sys - C:\Windows\system32\DRIVERS\amdppm.sys - Microsoft Corporation
       [UnloadDriver] amdsbs.sys - C:\Windows\system32\DRIVERS\amdsbs.sys - AMD Technologies Inc.
       [UnloadDriver] arc.sys - C:\Windows\system32\DRIVERS\arc.sys - Adaptec, Inc.
       [UnloadDriver] arcsas.sys - C:\Windows\system32\DRIVERS\arcsas.sys - Adaptec, Inc.
       [UnloadDriver] asyncmac.sys - C:\Windows\system32\DRIVERS\asyncmac.sys - Microsoft Corporation
       [UnloadDriver] avc.sys - C:\Windows\system32\DRIVERS\avc.sys - Microsoft Corporation
       [UnloadDriver] b57nd60x.sys - C:\Windows\system32\DRIVERS\b57nd60x.sys - Broadcom Corporation
       [UnloadDriver] bridge.sys - C:\Windows\system32\DRIVERS\bridge.sys - Microsoft Corporation
       [UnloadDriver] btcomport.sys - C:\Windows\system32\DRIVERS\btcomport.sys - File not found
       [UnloadDriver] bthmodem.sys - C:\Windows\system32\DRIVERS\bthmodem.sys - Microsoft Corporation
       [UnloadDriver] bthpan.sys - C:\Windows\system32\DRIVERS\bthpan.sys - Microsoft Corporation
       [UnloadDriver] btnetdrv.sys - C:\Windows\system32\DRIVERS\btnetdrv.sys - File not found
       [UnloadDriver] btwl2cap.sys - C:\Windows\system32\DRIVERS\btwl2cap.sys - File not found
       [UnloadDriver] btwrchid.sys - C:\Windows\system32\DRIVERS\btwrchid.sys - File not found
       [UnloadDriver] bxvbdx.sys - C:\Windows\system32\DRIVERS\bxvbdx.sys - Broadcom Corporation
       [UnloadDriver] cdfs.sys - C:\Windows\system32\DRIVERS\cdfs.sys - Microsoft Corporation
       [UnloadDriver] circlass.sys - C:\Windows\system32\DRIVERS\circlass.sys - Microsoft Corporation
       [UnloadDriver] compbatt.sys - C:\Windows\system32\DRIVERS\compbatt.sys - Microsoft Corporation
       [UnloadDriver] crcdisk.sys - C:\Windows\system32\DRIVERS\crcdisk.sys - Microsoft Corporation
       [UnloadDriver] djsvs.sys - C:\Windows\system32\DRIVERS\djsvs.sys - Adaptec, Inc.
       [UnloadDriver] elxstor.sys - C:\Windows\system32\DRIVERS\elxstor.sys - Emulex
       [UnloadDriver] evbdx.sys - C:\Windows\system32\DRIVERS\evbdx.sys - Broadcom Corporation
       [UnloadDriver] fdc.sys - C:\Windows\system32\DRIVERS\fdc.sys - Microsoft Corporation
       [UnloadDriver] flpydisk.sys - C:\Windows\system32\DRIVERS\flpydisk.sys - Microsoft Corporation
       [UnloadDriver] fssfltr.sys - C:\Windows\system32\DRIVERS\fssfltr.sys - Microsoft Corporation
       [UnloadDriver] gagp30kx.sys - C:\Windows\system32\DRIVERS\gagp30kx.sys - Microsoft Corporation
       [UnloadDriver] hamachi.sys - C:\Windows\system32\DRIVERS\hamachi.sys - LogMeIn, Inc.
       [UnloadDriver] hidbth.sys - C:\Windows\system32\DRIVERS\hidbth.sys - Microsoft Corporation
       [UnloadDriver] hidir.sys - C:\Windows\system32\DRIVERS\hidir.sys - Microsoft Corporation
       [UnloadDriver] iirsp.sys - C:\Windows\system32\DRIVERS\iirsp.sys - Intel Corp./ICP vortex GmbH
       [UnloadDriver] intelppm.sys - C:\Windows\system32\DRIVERS\intelppm.sys - Microsoft Corporation
       [UnloadDriver] ipfltdrv.sys - C:\Windows\system32\DRIVERS\ipfltdrv.sys - Microsoft Corporation
       [UnloadDriver] kbdhid.sys - C:\Windows\system32\DRIVERS\kbdhid.sys - Microsoft Corporation
       [UnloadDriver] lsi_fc.sys - C:\Windows\system32\DRIVERS\lsi_fc.sys - LSI Corporation
       [UnloadDriver] lsi_sas.sys - C:\Windows\system32\DRIVERS\lsi_sas.sys - LSI Corporation
       [UnloadDriver] lsi_sas2.sys - C:\Windows\system32\DRIVERS\lsi_sas2.sys - LSI Corporation
       [UnloadDriver] lsi_scsi.sys - C:\Windows\system32\DRIVERS\lsi_scsi.sys - LSI Corporation
       [UnloadDriver] megasas.sys - C:\Windows\system32\DRIVERS\megasas.sys - LSI Corporation
       [UnloadDriver] msdv.sys - C:\Windows\system32\DRIVERS\msdv.sys - Microsoft Corporation
       [UnloadDriver] ndiscap.sys - C:\Windows\system32\DRIVERS\ndiscap.sys - Microsoft Corporation
       [UnloadDriver] ndisuio.sys - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       [UnloadDriver] nfrd960.sys - C:\Windows\system32\DRIVERS\nfrd960.sys - IBM Corporation
       [UnloadDriver] nwifi.sys - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       [UnloadDriver] pccsmcfd.sys - C:\Windows\system32\DRIVERS\pccsmcfd.sys - Nokia
       [UnloadDriver] pcmcia.sys - C:\Windows\system32\DRIVERS\pcmcia.sys - Microsoft Corporation
       [UnloadDriver] processr.sys - C:\Windows\system32\DRIVERS\processr.sys - Microsoft Corporation
       [UnloadDriver] ql2300.sys - C:\Windows\system32\DRIVERS\ql2300.sys - QLogic Corporation
       [UnloadDriver] ql40xx.sys - C:\Windows\system32\DRIVERS\ql40xx.sys - QLogic Corporation
       [UnloadDriver] revoflt.sys - C:\Windows\system32\DRIVERS\revoflt.sys - VS Revo Group
       [UnloadDriver] rfcomm.sys - C:\Windows\system32\DRIVERS\rfcomm.sys - Microsoft Corporation
       [UnloadDriver] seehcri.sys - C:\Windows\system32\DRIVERS\seehcri.sys - Sony Ericsson Mobile Communications
       [UnloadDriver] sermouse.sys - C:\Windows\system32\DRIVERS\sermouse.sys - Microsoft Corporation
       [UnloadDriver] sfloppy.sys - C:\Windows\system32\DRIVERS\sfloppy.sys - Microsoft Corporation
       [UnloadDriver] sisraid4.sys - C:\Windows\system32\DRIVERS\sisraid4.sys - Silicon Integrated Systems
       [UnloadDriver] smb.sys - C:\Windows\system32\DRIVERS\smb.sys - Microsoft Corporation
       [UnloadDriver] ss_bbus.sys - C:\Windows\system32\DRIVERS\ss_bbus.sys - MCCI
       [UnloadDriver] ss_bmdfl.sys - C:\Windows\system32\DRIVERS\ss_bmdfl.sys - MCCI Corporation
       [UnloadDriver] ss_bmdm.sys - C:\Windows\system32\DRIVERS\ss_bmdm.sys - MCCI Corporation
       [UnloadDriver] stexstor.sys - C:\Windows\system32\DRIVERS\stexstor.sys - Promise Technology
       [UnloadDriver] tcpip.sys - C:\Windows\system32\DRIVERS\tcpip.sys - Microsoft Corporation
       [UnloadDriver] uagp35.sys - C:\Windows\system32\DRIVERS\uagp35.sys - Microsoft Corporation
       [UnloadDriver] udfs.sys - C:\Windows\system32\DRIVERS\udfs.sys - Microsoft Corporation
       [UnloadDriver] umpass.sys - C:\Windows\system32\DRIVERS\umpass.sys - Microsoft Corporation
       [UnloadDriver] usbccgp.sys - C:\Windows\system32\DRIVERS\usbccgp.sys - Microsoft Corporation
       [UnloadDriver] usbprint.sys - C:\Windows\system32\DRIVERS\usbprint.sys - Microsoft Corporation
       [UnloadDriver] vgapnp.sys - C:\Windows\system32\DRIVERS\vgapnp.sys - Microsoft Corporation
       [UnloadDriver] viac7.sys - C:\Windows\system32\DRIVERS\viac7.sys - Microsoft Corporation
       [UnloadDriver] vsmraid.sys - C:\Windows\system32\DRIVERS\vsmraid.sys - VIA Technologies Inc.,Ltd
       [UnloadDriver] wacompen.sys - C:\Windows\system32\DRIVERS\wacompen.sys - Microsoft Corporation
       [UnloadDriver] wd.sys - C:\Windows\system32\DRIVERS\wd.sys - Microsoft Corporation
       [UnloadDriver] FsUsbExDisk.SYS - C:\Windows\system32\FsUsbExDisk.SYS - 
       [UnloadDriver] BthEnum.sys - C:\Windows\system32\drivers\BthEnum.sys - Microsoft Corporation
       [UnloadDriver] HdAudio.sys - C:\Windows\system32\drivers\HdAudio.sys - Microsoft Corporation
       [UnloadDriver] HpSAMD.sys - C:\Windows\system32\drivers\HpSAMD.sys - Hewlett-Packard Company
       [UnloadDriver] IPMIDrv.sys - C:\Windows\system32\drivers\IPMIDrv.sys - Microsoft Corporation
       [UnloadDriver] MSKSSRV.sys - C:\Windows\system32\drivers\MSKSSRV.sys - Microsoft Corporation
       [UnloadDriver] MSPCLOCK.sys - C:\Windows\system32\drivers\MSPCLOCK.sys - Microsoft Corporation
       [UnloadDriver] MSPQM.sys - C:\Windows\system32\drivers\MSPQM.sys - Microsoft Corporation
       [UnloadDriver] MSTEE.sys - C:\Windows\system32\drivers\MSTEE.sys - Microsoft Corporation
       [UnloadDriver] VMBusHID.sys - C:\Windows\system32\drivers\VMBusHID.sys - Microsoft Corporation
       [UnloadDriver] WudfPf.sys - C:\Windows\system32\drivers\WudfPf.sys - Microsoft Corporation
       [UnloadDriver] acpipmi.sys - C:\Windows\system32\drivers\acpipmi.sys - Microsoft Corporation
       [UnloadDriver] agp440.sys - C:\Windows\system32\drivers\agp440.sys - Microsoft Corporation
       [UnloadDriver] aliide.sys - C:\Windows\system32\drivers\aliide.sys - Acer Laboratories Inc.
       [UnloadDriver] amdagp.sys - C:\Windows\system32\drivers\amdagp.sys - Microsoft Corporation
       [UnloadDriver] amdide.sys - C:\Windows\system32\drivers\amdide.sys - Microsoft Corporation
       [UnloadDriver] amdsata.sys - C:\Windows\system32\drivers\amdsata.sys - Advanced Micro Devices
       [UnloadDriver] appid.sys - C:\Windows\system32\drivers\appid.sys - Microsoft Corporation
       [UnloadDriver] btwaudio.sys - C:\Windows\system32\drivers\btwaudio.sys - File not found
       [UnloadDriver] btwavdt.sys - C:\Windows\system32\drivers\btwavdt.sys - File not found
       [UnloadDriver] cmdide.sys - C:\Windows\system32\drivers\cmdide.sys - CMD Technology, Inc.
       [UnloadDriver] drmkaud.sys - C:\Windows\system32\drivers\drmkaud.sys - Microsoft Corporation
       [UnloadDriver] errdev.sys - C:\Windows\system32\drivers\errdev.sys - Microsoft Corporation
       [UnloadDriver] filetrace.sys - C:\Windows\system32\drivers\filetrace.sys - Microsoft Corporation
       [UnloadDriver] hcw85cir.sys - C:\Windows\system32\drivers\hcw85cir.sys - Hauppauge Computer Works, Inc.
       [UnloadDriver] iaStorV.sys - C:\Windows\system32\drivers\iaStorV.sys - Intel Corporation
       [UnloadDriver] intelide.sys - C:\Windows\system32\drivers\intelide.sys - Microsoft Corporation
       [UnloadDriver] irenum.sys - C:\Windows\system32\drivers\irenum.sys - Microsoft Corporation
       [UnloadDriver] isapnp.sys - C:\Windows\system32\drivers\isapnp.sys - Microsoft Corporation
       [UnloadDriver] massfilter.sys - C:\Windows\system32\drivers\massfilter.sys - File not found
       [UnloadDriver] modem.sys - C:\Windows\system32\drivers\modem.sys - Microsoft Corporation
       [UnloadDriver] mpio.sys - C:\Windows\system32\drivers\mpio.sys - Microsoft Corporation
       [UnloadDriver] mrxdav.sys - C:\Windows\system32\drivers\mrxdav.sys - Microsoft Corporation
       [UnloadDriver] msahci.sys - C:\Windows\system32\drivers\msahci.sys - Microsoft Corporation
       [UnloadDriver] msdsm.sys - C:\Windows\system32\drivers\msdsm.sys - Microsoft Corporation
       [UnloadDriver] msiscsi.sys - C:\Windows\system32\drivers\msiscsi.sys - Microsoft Corporation
       [UnloadDriver] nv_agp.sys - C:\Windows\system32\drivers\nv_agp.sys - Microsoft Corporation
       [UnloadDriver] nvraid.sys - C:\Windows\system32\drivers\nvraid.sys - NVIDIA Corporation
       [UnloadDriver] nvstor.sys - C:\Windows\system32\drivers\nvstor.sys - NVIDIA Corporation
       [UnloadDriver] ohci1394.sys - C:\Windows\system32\drivers\ohci1394.sys - Microsoft Corporation
       [UnloadDriver] qwavedrv.sys - C:\Windows\system32\drivers\qwavedrv.sys - Microsoft Corporation
       [UnloadDriver] sbp2port.sys - C:\Windows\system32\drivers\sbp2port.sys - Microsoft Corporation
       [UnloadDriver] sffdisk.sys - C:\Windows\system32\drivers\sffdisk.sys - Microsoft Corporation
       [UnloadDriver] sffp_mmc.sys - C:\Windows\system32\drivers\sffp_mmc.sys - Microsoft Corporation
       [UnloadDriver] sffp_sd.sys - C:\Windows\system32\drivers\sffp_sd.sys - Microsoft Corporation
       [UnloadDriver] sisagp.sys - C:\Windows\system32\drivers\sisagp.sys - Microsoft Corporation
       [UnloadDriver] storvsc.sys - C:\Windows\system32\drivers\storvsc.sys - Microsoft Corporation
       [UnloadDriver] tdpipe.sys - C:\Windows\system32\drivers\tdpipe.sys - Microsoft Corporation
       [UnloadDriver] tdtcp.sys - C:\Windows\system32\drivers\tdtcp.sys - Microsoft Corporation
       [UnloadDriver] uliagpkx.sys - C:\Windows\system32\drivers\uliagpkx.sys - Microsoft Corporation
       [UnloadDriver] usbcir.sys - C:\Windows\system32\drivers\usbcir.sys - Microsoft Corporation
       [UnloadDriver] usbscan.sys - C:\Windows\system32\drivers\usbscan.sys - Microsoft Corporation
       [UnloadDriver] usbuhci.sys - C:\Windows\system32\drivers\usbuhci.sys - Microsoft Corporation
       [UnloadDriver] vhdmp.sys - C:\Windows\system32\drivers\vhdmp.sys - Microsoft Corporation
       [UnloadDriver] viaagp.sys - C:\Windows\system32\drivers\viaagp.sys - Microsoft Corporation
       [UnloadDriver] viaide.sys - C:\Windows\system32\drivers\viaide.sys - VIA Technologies, Inc.
       [UnloadDriver] vms3cap.sys - C:\Windows\system32\drivers\vms3cap.sys - Microsoft Corporation
       [UnloadDriver] wimmount.sys - C:\Windows\system32\drivers\wimmount.sys - Microsoft Corporation
       [UnloadDriver] wmiacpi.sys - C:\Windows\system32\drivers\wmiacpi.sys - Microsoft Corporation

==========================================================================================

Notify Routine

       CreateProcess - 0x83313758 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CreateProcess - 0x8CC8B958 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       CreateProcess - 0x8D1819D8 - C:\Windows\System32\Drivers\ksecdd.sys - Microsoft Corporation
       CreateProcess - 0x8D18CD96 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       CreateProcess - 0x8D4BBF75 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       CreateProcess - 0xA5C281D9 - C:\Windows\system32\drivers\peauth.sys - Microsoft Corporation
       CreateProcess - 0x8CA9BDFC - C:\Windows\system32\CI.dll - Microsoft Corporation
       CreateProcess - 0x92655544 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       CreateProcess - 0x926F01F4 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       CreateProcess - 0x95F0EF3A - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       CreateProcess - 0x962E388C - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       CreateProcess - 0x96CB0BA4 - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       CreateProcess - 0xA5D8D486 - C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys - TuneUp Software
       CreateThread - 0x9264C9F4 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       CreateThread - 0x962E356E - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       CreateThread - 0x96CD710C - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       LoadImage - 0x834AADD5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       LoadImage - 0x8CC1800C - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       LoadImage - 0x92654ECA - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       LoadImage - 0x926F93C2 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       LoadImage - 0x962E344C - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       CmpCallback - 0x962CA5EA - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       CmpCallback - 0x926F17B4 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       CmpCallback - 0x9268055B - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       BugCheckCallback - 0x8D262690 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       BugCheckCallback - 0x8D262690 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       BugCheckCallback - 0x8D262690 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       BugCheckCallback - 0x8D262690 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       BugCheckCallback - 0x8D262690 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       BugCheckCallback - 0x8CC0E84C - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       BugCheckCallback - 0x8322D996 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9B7B950E - C:\Windows\system32\DRIVERS\mouhid.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9B7A2AEC - C:\Windows\system32\drivers\HIDCLASS.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0x9B79285E - C:\Windows\system32\drivers\hidusb.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9B7541BE - C:\Windows\System32\Drivers\crashdmp.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9B261A1E - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9B2619C9 - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9640D5F5 - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x96CAEE9E - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       BugCheckReasonCallback - 0x9751BAC9 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x964C467C - C:\Windows\system32\drivers\1394ohci.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x963B7ECB - C:\Windows\system32\DRIVERS\USBPORT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0x963B7F82 - C:\Windows\system32\DRIVERS\USBPORT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0x963B7F28 - C:\Windows\system32\DRIVERS\USBPORT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0x96382861 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x9636F8D5 - C:\Windows\system32\drivers\i8042prt.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x95FDBEEC - C:\Windows\system32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x95FDBEA4 - C:\Windows\system32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x95FDBE54 - C:\Windows\system32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x95FDBE0C - C:\Windows\system32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x927A8392 - C:\Windows\System32\drivers\VIDEOPRT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CFB9889 - C:\Windows\system32\DRIVERS\cdrom.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8D3CD4FF - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CBA1B42 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CC0E862 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       BugCheckReasonCallback - 0x8CBA1C55 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0x8CEE72A6 - C:\Windows\system32\drivers\ataport.SYS - Microsoft Corporation
       SeFileSystem - 0x9B362EB9 - C:\Windows\system32\DRIVERS\mrxsmb.sys - Microsoft Corporation
       SeFileSystem - 0x9B7DA9D9 - C:\Windows\system32\drivers\luafv.sys - Microsoft Corporation
       Shutdown - 0x927AD107 - C:\Windows\System32\drivers\VIDEOPRT.SYS - Microsoft Corporation
       Shutdown - 0x9B261977 - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       Shutdown - 0x9B261977 - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       Shutdown - 0x9624F914 - C:\Windows\system32\drivers\csc.sys - Microsoft Corporation
       Shutdown - 0x927AD107 - C:\Windows\System32\drivers\VIDEOPRT.SYS - Microsoft Corporation
       Shutdown - 0x927AD107 - C:\Windows\System32\drivers\VIDEOPRT.SYS - Microsoft Corporation
       Shutdown - 0x927AD107 - C:\Windows\System32\drivers\VIDEOPRT.SYS - Microsoft Corporation
       Shutdown - 0x92707B08 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       Shutdown - 0x8CC4EF80 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       Shutdown - 0x8D3E8154 - C:\Windows\System32\Drivers\aswRvrt.sys - 
       Shutdown - 0x8D181A14 - C:\Windows\System32\Drivers\ksecdd.sys - Microsoft Corporation
       Shutdown - 0x8CE93172 - C:\Windows\System32\drivers\mountmgr.sys - Microsoft Corporation
       Shutdown - 0x835361CD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Shutdown - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Shutdown - 0x8CDC3318 - C:\Windows\system32\drivers\volmgr.sys - Microsoft Corporation
       PlugPlay - 0x96F444CC - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       PlugPlay - 0x833E1C41 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PlugPlay - 0x833E1C41 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PlugPlay - 0x9CE5DC2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0x964D8958 - C:\Windows\system32\drivers\CompositeBus.sys - Microsoft Corporation
       PlugPlay - 0x96DACD9A - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       PlugPlay - 0x833E1C41 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PlugPlay - 0x833E1C41 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PlugPlay - 0x964D8958 - C:\Windows\system32\drivers\CompositeBus.sys - Microsoft Corporation
       PlugPlay - 0x8CC90428 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       PlugPlay - 0x8CDC9448 - C:\Windows\system32\drivers\volmgr.sys - Microsoft Corporation
       PlugPlay - 0x9756B82D - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       PlugPlay - 0x9CE5DC2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0x8CC90428 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       PlugPlay - 0x9CE507A6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0x96DF61AE - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       PlugPlay - 0x8CECDE12 - C:\Windows\system32\drivers\winhv.sys - Microsoft Corporation
       PlugPlay - 0x8CC90428 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       PlugPlay - 0x8CDC9448 - C:\Windows\system32\drivers\volmgr.sys - Microsoft Corporation
       PlugPlay - 0x8CE9B214 - C:\Windows\System32\drivers\mountmgr.sys - Microsoft Corporation
       PlugPlay - 0x8CC90428 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       PlugPlay - 0x8D5EFF94 - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
       PlugPlay - 0x9CE5DC2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0x833E1C41 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PlugPlay - 0x8CDB8F82 - C:\Windows\System32\drivers\partmgr.sys - Microsoft Corporation
       FsNotifyChange - 0x8CF2ABDA - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       PriorityCallback - 0x8D3C1CD3 - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       PowerSettingCallback - 0x833E7276 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83345EFB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x83260274 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x8D348460 - C:\Windows\system32\DRIVERS\NVAMACPI.sys - NVIDIA Corporation
       PowerSettingCallback - 0x832758C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x832758C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x832758C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x832758C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PowerSettingCallback - 0x832758C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopTimer - 0x8D3BFC24 - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IopTimer - 0x9639751B - C:\Windows\system32\DRIVERS\USBPORT.SYS - Microsoft Corporation
       IopTimer - 0x9639751B - C:\Windows\system32\DRIVERS\USBPORT.SYS - Microsoft Corporation
       IopTimer - 0x964E7005 - C:\Windows\system32\drivers\portcls.sys - Microsoft Corporation
       IopTimer - 0x964E7005 - C:\Windows\system32\drivers\portcls.sys - Microsoft Corporation
       IopTimer - 0x964E7005 - C:\Windows\system32\drivers\portcls.sys - Microsoft Corporation
       IopTimer - 0x9B23C0C7 - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       IopTimer - 0x9B23C0C7 - C:\Windows\system32\DRIVERS\usbhub.sys - Microsoft Corporation
       IopTimer - 0x9B329005 - C:\Windows\system32\DRIVERS\bowser.sys - Microsoft Corporation

==========================================================================================

Filter

       File - \FileSystem\FltMgr->\FileSystem\Ntfs - 0x86D62AC0[] - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       Disk - \Driver\partmgr->\Driver\Disk - 0x86D021B8[] - C:\Windows\System32\drivers\partmgr.sys - Microsoft Corporation
       Raw - \FileSystem\FltMgr->\FileSystem\RAW - 0x86C0C960[] - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       Raw - \FileSystem\FltMgr->\FileSystem\RAW - 0x85F5A428[] - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       Volume - \Driver\fvevol->\Driver\volmgr - 0x86D08C80[] - C:\Windows\System32\DRIVERS\fvevol.sys - Microsoft Corporation
       Volume - \Driver\rdyboost->\Driver\fvevol - 0x86D04978[] - C:\Windows\System32\drivers\rdyboost.sys - Microsoft Corporation
       Volume - \Driver\volsnap->\Driver\rdyboost - 0x86C145A0[] - C:\Windows\system32\drivers\volsnap.sys - Microsoft Corporation
       I8042prt - \Driver\aswKbd->\Driver\i8042prt - 0x872858B0[] - C:\Windows\System32\Drivers\aswKbd.SYS - AVAST Software
       I8042prt - \Driver\kbdclass->\Driver\aswKbd - 0x872856B8[KeyboardClass0] - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871FBEE0[CFPRaw6Flt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871BAA10[CFPRawFlt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871C7398[CFPUdp6Flt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871EC930[CFPUdpFlt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       Tdx - \Driver\aswTdi->\Driver\cmdHlp - 0x871EDEB8[AswUdpFilter] - C:\Windows\system32\drivers\aswTdi.sys - AVAST Software
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871B7C08[CFPTcp6Flt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       Tdx - \Driver\aswTdi->\Driver\cmdHlp - 0x871ED030[AswTcpTdi6Filter] - C:\Windows\system32\drivers\aswTdi.sys - AVAST Software
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871E83A8[CFPTcpFlt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       Tdx - \Driver\aswTdi->\Driver\cmdHlp - 0x871EC438[AswTcpTdi4Filter] - C:\Windows\system32\drivers\aswTdi.sys - AVAST Software
       Tdx - \Driver\cmdHlp->\Driver\tdx - 0x871BCEE0[CFPIpFlt] - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO
       PnpManager - \Driver\volmgr->\Driver\PnpManager - 0x86BD6638[VolMgrControl] - C:\Windows\system32\drivers\volmgr.sys - Microsoft Corporation
       PnpManager - \Driver\vdrvroot->\Driver\PnpManager - 0x86BCB3B8[] - C:\Windows\system32\drivers\vdrvroot.sys - Microsoft Corporation
       PnpManager - \Driver\nvvad_WaveExtensible->\Driver\PnpManager - 0x874C2610[00000072] - C:\Windows\system32\drivers\nvvad32v.sys - NVIDIA Corporation
       PnpManager - \Driver\umbus->\Driver\PnpManager - 0x874C2848[] - C:\Windows\system32\drivers\umbus.sys - Microsoft Corporation
       PnpManager - \Driver\dtsoftbus01->\Driver\PnpManager - 0x874B8350[] - C:\Windows\system32\DRIVERS\dtsoftbus01.sys - Disc Soft Ltd
       PnpManager - \Driver\swenum->\Driver\PnpManager - 0x872C98C8[] - C:\Windows\system32\drivers\swenum.sys - Microsoft Corporation
       PnpManager - \Driver\TermDD->\Driver\PnpManager - 0x874B16C0[] - C:\Windows\system32\drivers\termdd.sys - Microsoft Corporation
       PnpManager - \Driver\mouclass->\Driver\TermDD - 0x874BE778[PointerClass0] - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       PnpManager - \Driver\TermDD->\Driver\PnpManager - 0x874C1878[] - C:\Windows\system32\drivers\termdd.sys - Microsoft Corporation
       PnpManager - \Driver\kbdclass->\Driver\TermDD - 0x874BEE28[KeyboardClass1] - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       PnpManager - \Driver\rdpbus->\Driver\PnpManager - 0x874C1A68[RdpBus] - C:\Windows\system32\DRIVERS\rdpbus.sys - Microsoft Corporation
       PnpManager - \Driver\RasSstp->\Driver\PnpManager - 0x874C0028[NDMP12] - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       PnpManager - \Driver\PptpMiniport->\Driver\PnpManager - 0x874AD028[NDMP11] - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       PnpManager - \Driver\RasPppoe->\Driver\PnpManager - 0x874B0028[NDMP10] - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       PnpManager - \Driver\NdisWan->\Driver\PnpManager - 0x874AA028[NDMP9] - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       PnpManager - \Driver\NdisWan->\Driver\PnpManager - 0x874A8028[NDMP8] - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       PnpManager - \Driver\NdisWan->\Driver\PnpManager - 0x86FD9028[NDMP7] - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       PnpManager - \Driver\Rasl2tp->\Driver\PnpManager - 0x87382028[NDMP6] - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       PnpManager - \Driver\RasAgileVpn->\Driver\PnpManager - 0x874A0028[NDMP5] - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       PnpManager - \Driver\mssmbios->\Driver\PnpManager - 0x86BDCE00[] - C:\Windows\system32\drivers\mssmbios.sys - Microsoft Corporation
       PnpManager - \Driver\anvsnddrv->\Driver\PnpManager - 0x86BDC750[00000070] - C:\Windows\system32\drivers\anvsnddrv.sys - AnvSoft Inc.
       PnpManager - \Driver\CompositeBus->\Driver\PnpManager - 0x86BDAE08[] - C:\Windows\system32\drivers\CompositeBus.sys - Microsoft Corporation
       PnpManager - \Driver\blbdrive->\Driver\PnpManager - 0x8724C678[BlbControl] - C:\Windows\system32\DRIVERS\blbdrive.sys - Microsoft Corporation
       PnpManager - \Driver\ACPI_HAL->\Driver\PnpManager - 0x85F6F8E8[] -  - 
       PnpManager - \Driver\tunnel->\Driver\PnpManager - 0x8703A028[NDMP3] - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       PnpManager - \Driver\tunnel->\Driver\PnpManager - 0x87331028[NDMP2] - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       PnpManager - \Driver\tunnel->\Driver\PnpManager - 0x87183028[NDMP1] - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation

==========================================================================================

DPC Timer

       0x874A0150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x9628D1E0 - 0x9628AB0E - C:\Windows\System32\Drivers\dfsc.sys - Microsoft Corporation
       0x95FA3180 - 0x95F90569 - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
       0x8323AF68 - 0x8322CC8C - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       0x8338DA30 - 0x8325F457 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x86C62560 - 0x8D4BD759 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x87183150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87331150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8F14BCC8 - 0x832D03DD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x873CEF68 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x8BED2A30 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x833BCCC0 - 0x83317FF1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8C4D5930 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x875189B8 - 0x96439C8A - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x874AA150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A8150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD9150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87382150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8D537B60 - 0x8D4B2640 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x87317670 - 0x96439C8A - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x85F46288 - 0x85EEEB08 - unknown image - 
       0x85F4A288 - 0x85EEEB08 - unknown image - 
       0x85F3E288 - 0x85EEEB08 - unknown image - 
       0x85F42288 - 0x85EEEB08 - unknown image - 
       0x8C2BC280 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x873812C8 - 0x96CB22F8 - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       0x8655D038 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x8C4C8028 - 0x965EEA6B - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x96327610 - 0x9631554C - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x833BC320 - 0x832D58FD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8BBC6450 - 0x96D7903C - C:\Windows\system32\DRIVERS\nvlddmkm.sys - NVIDIA Corporation
       0x874BDE00 - 0x8CB41E34 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       0x86D617E8 - 0x8CB41E34 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       0x8D531208 - 0x8D2E3530 - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       0x8D535BF8 - 0x8D2E3530 - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       0x8D537078 - 0x8D2E3530 - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       0x83390DE0 - 0x832F1046 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8D1DCC18 - 0x8D18E1C8 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       0x871E9778 - 0x95E32360 - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x8667BAB0 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x8651BDD0 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x8725C960 - 0x962D699C - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       0x83397700 - 0x8331C37D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8D5364D8 - 0x8D2E3530 - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       0x85F5A738 - 0x8CF176C2 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       0x8D429670 - 0x8D4149E6 - C:\Windows\System32\drivers\rdyboost.sys - Microsoft Corporation
       0x8D05B580 - 0x8D023967 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       0x87380150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B0150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C0150 - 0x8D281B38 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x85ECB728 - 0x8D2E3530 - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       0x8C6229F0 - 0xA5D3C005 - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
       0xCAAB3F70 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x83390760 - 0x83369997 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8C29C7E8 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x9B2CC900 - 0x9B2A4298 - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       0x8C47C1E0 - 0xA5CBE005 - C:\Windows\System32\DRIVERS\srvnet.sys - Microsoft Corporation
       0x95E42290 - 0x95E3206A - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x833BD6A0 - 0x832EEC0E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0xA5D4C878 - 0xA5D3C0B6 - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
       0x83390660 - 0x83320B6E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x833907E0 - 0x83369965 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x833BC170 - 0x83286171 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x833831A8 - 0x83288107 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8776D410 - 0x95EA4005 - C:\Windows\System32\DRIVERS\netbt.sys - Microsoft Corporation
       0x8776C410 - 0x95EA4005 - C:\Windows\System32\DRIVERS\netbt.sys - Microsoft Corporation
       0x8D1DCB90 - 0x8D18DF92 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       0x8C0ADC80 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x878A7A88 - 0x8D282E23 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x862B0038 - 0x95E5995B - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       0x872A6650 - 0x9751E525 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       0x9B7D2180 - 0x9B7CD240 - C:\Windows\system32\drivers\luafv.sys - Microsoft Corporation
       0x8C0A62F0 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8C0A63B8 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x833906E0 - 0x833699C7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8C0A9928 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x9B2C9D80 - 0x9B2A49B0 - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       0x9B2C9A38 - 0x9B2A4A39 - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       0x9B2CC800 - 0x9B2A4ACA - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       0x86356BA8 - 0x8328588C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       0x8D05B520 - 0x8D037FF9 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       0x9B2CCD20 - 0x9B2A4AB3 - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       0x86C62688 - 0x8D4BD759 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8C4C8228 - 0x965EEA6B - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x8C622C30 - 0xA5D3C005 - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
       0x807C65A8 - 0x83288107 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

Worker Thread

       CriticalWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       HyperCriticalWorkQueue - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation

==========================================================================================

HalDispatchTable

       0 - 0x832458A2 - HaliQuerySystemInformation - C:\Windows\system32\halmacpi.dll
       1 - 0x832461B4 - HalpSetSystemInformation - C:\Windows\system32\halmacpi.dll
       2 - 0x835089DB - xHalQueryBusSlots - C:\Windows\system32\ntkrnlpa.exe
       3 - 0x00000000 - - - 
       4 - 0x832565BA - HalExamineMBR - C:\Windows\system32\ntkrnlpa.exe
       5 - 0x833CA4FE - IoReadPartitionTable - C:\Windows\system32\ntkrnlpa.exe
       6 - 0x835082DC - IoSetPartitionInformation - C:\Windows\system32\ntkrnlpa.exe
       7 - 0x83508587 - IoWritePartitionTable - C:\Windows\system32\ntkrnlpa.exe
       8 - 0x8332CA1F - xHalHandlerForBus - C:\Windows\system32\ntkrnlpa.exe
       9 - 0x8332CA2C - xHalReferenceHandler - C:\Windows\system32\ntkrnlpa.exe
       10 - 0x8332CA2C - xHalReferenceHandler - C:\Windows\system32\ntkrnlpa.exe
       11 - 0x832456CE - HaliInitPnpDriver - C:\Windows\system32\halmacpi.dll
       12 - 0x83245F30 - xHalWheaInitProcessorGenericSection - C:\Windows\system32\halmacpi.dll
       13 - 0x83222178 - HaliGetDmaAdapter - C:\Windows\system32\halmacpi.dll
       14 - 0x83244DCE - HalacpiGetInterruptTranslator - C:\Windows\system32\halmacpi.dll
       15 - 0x83508A08 - xHalStartMirroring - C:\Windows\system32\ntkrnlpa.exe
       16 - 0x8332CA4B - PoCancelDeviceNotify - C:\Windows\system32\ntkrnlpa.exe
       17 - 0x8332CB6B - xHalMirrorPhysicalMemory - C:\Windows\system32\ntkrnlpa.exe
       18 - 0x832460F6 - UnknowName - C:\Windows\system32\halmacpi.dll
       19 - 0x8332CB6B - xHalMirrorPhysicalMemory - C:\Windows\system32\ntkrnlpa.exe
       20 - 0x8322498C - UnknowName - C:\Windows\system32\halmacpi.dll

==========================================================================================

HalPrivateDispatchTable

       0 - 0x8332CA1F - xHalHandlerForBus - C:\Windows\system32\ntkrnlpa.exe
       1 - 0x8332CA1F - xHalHandlerForBus - C:\Windows\system32\ntkrnlpa.exe
       2 - 0x83245700 - HaliLocateHiberRanges - C:\Windows\system32\halmacpi.dll
       3 - 0x835089EF - xHalRegisterBusHandler - C:\Windows\system32\ntkrnlpa.exe
       4 - 0x8323EF0A - HaliSetWakeEnable - C:\Windows\system32\halmacpi.dll
       5 - 0x8323EDD6 - HaliSetWakeAlarm - C:\Windows\system32\halmacpi.dll
       6 - 0x8CD8F350 - xHalTranslateBusAddress - C:\Windows\system32\drivers\pci.sys
       7 - 0x8CDA1DDE - xHalTranslateBusAddress - C:\Windows\system32\drivers\pci.sys
       8 - 0x83225CEE - HaliHaltSystem - C:\Windows\system32\halmacpi.dll
       9 - 0x8322F980 - HalpFindBusAddressTranslation - C:\Windows\system32\halmacpi.dll
       10 - 0x8322C28A - HalpBiosDisplayReset - C:\Windows\system32\halmacpi.dll
       11 - 0x83244006 - HalpAllocateMapRegisters - C:\Windows\system32\halmacpi.dll
       12 - 0x83248DCA - xKdSetupPciDeviceForDebugging - C:\Windows\system32\halmacpi.dll
       13 - 0x83247006 - xKdReleasePciDeviceForDebugging - C:\Windows\system32\halmacpi.dll
       14 - 0x8322496E - xKdGetAcpiTablePhase0 - C:\Windows\system32\halmacpi.dll
       15 - 0x83225B5E - KdCheckPowerButton - C:\Windows\system32\halmacpi.dll
       16 - 0x83267AEB - xHalVectorToIDTEntry - C:\Windows\system32\ntkrnlpa.exe
       17 - 0x83227A22 - KdMapPhysicalMemory64/MatchAll - C:\Windows\system32\halmacpi.dll
       18 - 0x83227BAA - xKdUnmapVirtualAddress - C:\Windows\system32\halmacpi.dll
       19 - 0x83228938 - KdGetPciDataByOffset - C:\Windows\system32\halmacpi.dll
       20 - 0x83228994 - KdSetPciDataByOffset - C:\Windows\system32\halmacpi.dll
       21 - 0x8CD580C1 - xHalGetInterruptVector - C:\Windows\system32\drivers\ACPI.sys
       22 - 0x8CD43BAC - xHalGetVectorInput - C:\Windows\system32\drivers\ACPI.sys
       23 - 0x832448CA - HalpLoadMicrocode - C:\Windows\system32\halmacpi.dll
       24 - 0x8324482A - HalpUnloadMicrocode - C:\Windows\system32\halmacpi.dll
       25 - 0x832277D8 - HalpMcUpdatePostUpdate - C:\Windows\system32\halmacpi.dll
       26 - 0x8CD571F2 - xHalAllocateMessageTarget - C:\Windows\system32\drivers\ACPI.sys
       27 - 0x8CD573E4 - xKdUnmapVirtualAddress - C:\Windows\system32\drivers\ACPI.sys
       28 - 0x832462AE - HalpDpReplaceBegin - C:\Windows\system32\halmacpi.dll
       29 - 0x832418F6 - HalpDpReplaceTarget - C:\Windows\system32\halmacpi.dll
       30 - 0x83241B8A - HalpDpReplaceControl - C:\Windows\system32\halmacpi.dll
       31 - 0x83246234 - HalpDpReplaceEnd - C:\Windows\system32\halmacpi.dll
       32 - 0x832320A4 - HalpPrepareForBugcheck - C:\Windows\system32\halmacpi.dll
       33 - 0x8322B024 - HalpReadWheaPhysicalMemory - C:\Windows\system32\halmacpi.dll
       34 - 0x8332CB28 - HalpWriteWheaPhysicalMemory - C:\Windows\system32\ntkrnlpa.exe
       35 - 0x83231628 - HalpTscSynchronization - C:\Windows\system32\halmacpi.dll
       36 - 0x8322B370 - HalpWheaInitProcessorGenericSection - C:\Windows\system32\halmacpi.dll
       37 - 0x83224F84 - HalStopLegacyUsbInterrupts - C:\Windows\system32\halmacpi.dll
       38 - 0x8322C0B0 - HalpReadWheaPhysicalMemory - C:\Windows\system32\halmacpi.dll
       39 - 0x8322C0D2 - HalpWriteWheaPhysicalMemory - C:\Windows\system32\halmacpi.dll
       40 - 0x832416DE - HalpDpMaskLevelTriggeredInterrupts - C:\Windows\system32\halmacpi.dll
       41 - 0x8324173A - HalpDpUnmaskLevelTriggeredInterrupts - C:\Windows\system32\halmacpi.dll
       42 - 0x83241748 - HalpDpGetInterruptReplayState - C:\Windows\system32\halmacpi.dll
       43 - 0x83241886 - HalpDpReplayInterrupts - C:\Windows\system32\halmacpi.dll
       44 - 0x832566BA - xHalQueryIoPortAccessSupported - C:\Windows\system32\ntkrnlpa.exe

==========================================================================================

HalAcpiDispatchTable

       HalAcpiTimerCarry - 0x8322C506 - - - 0x8322C506 - C:\Windows\system32\halmacpi.dll
       HaliAcpiMachineStateInit - 0x83245B00 - - - 0x83245B00 - C:\Windows\system32\halmacpi.dll
       HaliAcpiQueryFlags - 0x83245CFA - - - 0x83245CFA - C:\Windows\system32\halmacpi.dll
       HalpAcpiPicStateIntact - 0x83240C00 - - - 0x83240C00 - C:\Windows\system32\halmacpi.dll
       HalpRestoreInterruptControllerState - 0x83240A78 - - - 0x83240A78 - C:\Windows\system32\halmacpi.dll
       HaliPciInterfaceReadConfig - 0x83228510 - - - 0x83228510 - C:\Windows\system32\halmacpi.dll
       HaliPciInterfaceWriteConfig - 0x83228574 - - - 0x83228574 - C:\Windows\system32\halmacpi.dll
       HalpGetApicVersion - 0x8322D92E - - - 0x8322D92E - C:\Windows\system32\halmacpi.dll
       HaliSetMaxLegacyPciBusNumber - 0x83227F58 - - - 0x83227F58 - C:\Windows\system32\halmacpi.dll
       HaliIsVectorValid - 0x832465E6 - - - 0x832465E6 - C:\Windows\system32\halmacpi.dll
       HalAcpiGetTableDispatch - 0x8322498C - - - 0x8322498C - C:\Windows\system32\halmacpi.dll
       HalAcpiGetRsdpDispatch - 0x83223CD4 - - - 0x83223CD4 - C:\Windows\system32\halmacpi.dll
       HalAcpiGetFacsMappingDispatch - 0x83224952 - - - 0x83224952 - C:\Windows\system32\halmacpi.dll
       HalAcpiGetAllTablesDispatch - 0x83224960 - - - 0x83224960 - C:\Windows\system32\halmacpi.dll

==========================================================================================

Wdf01000 Dispatch Fun

       IRP_MJ_CREATE - OK - 0x8CB64AE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x8CB64AE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x8CB64AE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

WdfFunction

       WdfChildListCreate - OK - 0x8CB8141F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListGetDevice - OK - 0x8CB48DBB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRetrievePdo - OK - 0x8CB819A3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRetrieveAddressDescription - OK - 0x8CB8161E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListBeginScan - OK - 0x8CB4B6B0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListEndScan - OK - 0x8CB4B804 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListBeginIteration - OK - 0x8CB4B8D1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRetrieveNextDevice - OK - 0x8CB49333 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListEndIteration - OK - 0x8CB4B562 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListAddOrUpdateChildDescriptionAsPresent - OK - 0x8CB4B18A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListUpdateChildDescriptionAsMissing - OK - 0x8CB81792 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListUpdateAllChildDescriptionsAsPresent - OK - 0x8CB818BA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRequestChildEject - OK - 0x8CB81B44 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionCreate - OK - 0x8CB67C93 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetCount - OK - 0x8CB4AC0E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionAdd - OK - 0x8CB8B761 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionRemove - OK - 0x8CB8BA2C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionRemoveItem - OK - 0x8CB8B8CC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetItem - OK - 0x8CB67E25 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetFirstItem - OK - 0x8CB8BC27 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetLastItem - OK - 0x8CB8BD20 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferCreate - OK - 0x8CB6AEE8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferGetAlignedVirtualAddress - OK - 0x8CB6B2B2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferGetAlignedLogicalAddress - OK - 0x8CB6B34C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferGetLength - OK - 0x8CB6B3E9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfControlDeviceInitAllocate - OK - 0x8CB5F2A8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfControlDeviceInitSetShutdownNotification - OK - 0x8CB7C28A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfControlFinishInitializing - OK - 0x8CB5F1B1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDeviceState - OK - 0x8CB7D596 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetDeviceState - OK - 0x8CB7D697 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWdmDeviceGetWdfDeviceHandle - OK - 0x8CB61660 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmGetDeviceObject - OK - 0x8CB5564F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmGetAttachedDevice - OK - 0x8CB5E8D9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmGetPhysicalDevice - OK - 0x8CB4670A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmDispatchPreprocessedIrp - OK - 0x8CB4E789 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAddDependentUsageDeviceObject - OK - 0x8CB7CE05 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAddRemovalRelationsPhysicalDevice - OK - 0x8CB7DD3F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceRemoveRemovalRelationsPhysicalDevice - OK - 0x8CB7DDF9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceClearRemovalRelationsDevices - OK - 0x8CB7DEBD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDriver - OK - 0x8CB5F713 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceRetrieveDeviceName - OK - 0x8CB7CF83 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAssignMofResourceName - OK - 0x8CB5FEDE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetIoTarget - OK - 0x8CB59BC1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDevicePnpState - OK - 0x8CB7D3C8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDevicePowerState - OK - 0x8CB7D462 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDevicePowerPolicyState - OK - 0x8CB7D4FC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAssignS0IdleSettings - OK - 0x8CB4E5AC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAssignSxWakeSettings - OK - 0x8CB6405E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceOpenRegistryKey - OK - 0x8CB5A320 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetSpecialFileSupport - OK - 0x8CB6648D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetCharacteristics - OK - 0x8CB7D148 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetCharacteristics - OK - 0x8CB7D1EE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetAlignmentRequirement - OK - 0x8CB7D28B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetAlignmentRequirement - OK - 0x8CB7D328 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitFree - OK - 0x8CB7B6A2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetPnpPowerEventCallbacks - OK - 0x8CB55B0D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetPowerPolicyEventCallbacks - OK - 0x8CB63B9E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetPowerPolicyOwnership - OK - 0x8CB5FB2E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitRegisterPnpStateChangeCallback - OK - 0x8CB7B77D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitRegisterPowerStateChangeCallback - OK - 0x8CB7B8E7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitRegisterPowerPolicyStateChangeCallback - OK - 0x8CB7BA51 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetIoType - OK - 0x8CB5E973 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetExclusive - OK - 0x8CB5A124 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetPowerNotPageable - OK - 0x8CB7B6DE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetPowerPageable - OK - 0x8CB5FB03 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetPowerInrush - OK - 0x8CB7B709 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetDeviceType - OK - 0x8CB59C9E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitAssignName - OK - 0x8CB5EDAD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitAssignSDDLString - OK - 0x8CB5EF66 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetDeviceClass - OK - 0x8CB7B736 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetCharacteristics - OK - 0x8CB5BC60 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetFileObjectConfig - OK - 0x8CB5C1E5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetRequestAttributes - OK - 0x8CB5F0FA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitAssignWdmIrpPreprocessCallback - OK - 0x8CB634A3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceInitSetIoInCallerContextCallback - OK - 0x8CB5F17D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceCreate - OK - 0x8CB52048 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetStaticStopRemove - OK - 0x8CB7D939 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceCreateDeviceInterface - OK - 0x8CB57CFF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetDeviceInterfaceState - OK - 0x8CB8BE1A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceRetrieveDeviceInterfaceString - OK - 0x8CB63D1B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceCreateSymbolicLink - OK - 0x8CB5E9ED - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceQueryProperty - OK - 0x8CB62C76 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAllocAndQueryProperty - OK - 0x8CB6169C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetPnpCapabilities - OK - 0x8CB5D485 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetPowerCapabilities - OK - 0x8CB5BECC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetBusInformationForChildren - OK - 0x8CB5A4BA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceIndicateWakeStatus - OK - 0x8CB7D808 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetFailed - OK - 0x8CB7D9F2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceStopIdle - OK - 0x8CB7DB04 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceResumeIdle - OK - 0x8CB7DC78 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetFileObject - OK - 0x8CB7DF9B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceEnqueueRequest - OK - 0x8CB4149C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDefaultQueue - OK - 0x8CB7E253 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceConfigureRequestDispatching - OK - 0x8CB64761 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaEnablerCreate - OK - 0x8CB6A512 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaEnablerGetMaximumLength - OK - 0x8CB6A911 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaEnablerGetMaximumScatterGatherElements - OK - 0x8CB6A9AB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaEnablerSetMaximumScatterGatherElements - OK - 0x8CB6AA48 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionCreate - OK - 0x8CB68CF8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionInitialize - OK - 0x8CB691AF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionInitializeUsingRequest - OK - 0x8CB68E03 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionExecute - OK - 0x8CB69422 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionRelease - OK - 0x8CB694C2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionDmaCompleted - OK - 0x8CB69564 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionDmaCompletedWithLength - OK - 0x8CB6961C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionDmaCompletedFinal - OK - 0x8CB696D5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionGetBytesTransferred - OK - 0x8CB6978E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionSetMaximumLength - OK - 0x8CB69828 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionGetRequest - OK - 0x8CB698CD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionGetCurrentDmaTransferLength - OK - 0x8CB69983 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaTransactionGetDevice - OK - 0x8CB69A1D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDpcCreate - OK - 0x8CB82443 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDpcEnqueue - OK - 0x8CB8263E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDpcCancel - OK - 0x8CB826E3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDpcGetParentObject - OK - 0x8CB827FE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDpcWdmGetDpc - OK - 0x8CB825A9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverCreate - OK - 0x8CB5383E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverGetRegistryPath - OK - 0x8CB81CEA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverWdmGetDriverObject - OK - 0x8CB557D3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverOpenParametersRegistryKey - OK - 0x8CB60E41 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWdmDriverGetWdfDriverHandle - OK - 0x8CB81DE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverRegisterTraceInfo - OK - 0x8CB820C3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverRetrieveVersionString - OK - 0x8CB820D0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverIsVersionAvailable - OK - 0x8CB8225D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitWdmGetPhysicalDevice - OK - 0x8CB5F6C9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitOpenRegistryKey - OK - 0x8CB64C4A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitQueryProperty - OK - 0x8CB7BC3A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitAllocAndQueryProperty - OK - 0x8CB64CD9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitSetEventCallbacks - OK - 0x8CB7BD15 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitSetFilter - OK - 0x8CB613FD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoInitSetDefaultChildListConfig - OK - 0x8CB5A652 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoQueryForInterface - OK - 0x8CB491B1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoGetDefaultChildList - OK - 0x8CB5A96B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoAddStaticChild - OK - 0x8CB80E57 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoLockStaticChildListForIteration - OK - 0x8CB81036 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoRetrieveNextStaticChild - OK - 0x8CB8114D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFdoUnlockStaticChildListFromIteration - OK - 0x8CB8126F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFileObjectGetFileName - OK - 0x8CB80BB7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFileObjectGetFlags - OK - 0x8CB80CB9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFileObjectGetDevice - OK - 0x8CB4306F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfFileObjectWdmGetFileObject - OK - 0x8CB67AE8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptCreate - OK - 0x8CB95EE4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptQueueDpcForIsr - OK - 0x8CB962DA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptSynchronize - OK - 0x8CB9643D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptAcquireLock - OK - 0x8CB96571 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptReleaseLock - OK - 0x8CB96674 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptEnable - OK - 0x8CB96777 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptDisable - OK - 0x8CB96872 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptWdmGetInterrupt - OK - 0x8CB9696D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptGetInfo - OK - 0x8CB96A07 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptSetPolicy - OK - 0x8CB96BC3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptGetDevice - OK - 0x8CB96B24 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueCreate - OK - 0x8CB5467E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueGetState - OK - 0x8CB863F5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueStart - OK - 0x8CB864CD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueStop - OK - 0x8CB8659D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueStopSynchronously - OK - 0x8CB86651 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueGetDevice - OK - 0x8CB3DBA4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueRetrieveNextRequest - OK - 0x8CB61B08 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueRetrieveRequestByFileObject - OK - 0x8CB8691D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueFindRequest - OK - 0x8CB86BF4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueRetrieveFoundRequest - OK - 0x8CB86A8A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueDrainSynchronously - OK - 0x8CB86E9D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueDrain - OK - 0x8CB86DE3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueuePurgeSynchronously - OK - 0x8CB86FA7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueuePurge - OK - 0x8CB870B1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueReadyNotify - OK - 0x8CB87167 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetCreate - OK - 0x8CB5B586 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetOpen - OK - 0x8CB5AC1E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetCloseForQueryRemove - OK - 0x8CB6FABB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetClose - OK - 0x8CB6FBF0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetStart - OK - 0x8CB6F733 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetStop - OK - 0x8CB6F7D1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetGetState - OK - 0x8CB6FA1E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetGetDevice - OK - 0x8CB64B68 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetQueryTargetProperty - OK - 0x8CB7078D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetAllocAndQueryTargetProperty - OK - 0x8CB70900 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetQueryForInterface - OK - 0x8CB6FD23 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetWdmGetTargetDeviceObject - OK - 0x8CB6FE63 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetWdmGetTargetPhysicalDevice - OK - 0x8CB612B9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetWdmGetTargetFileObject - OK - 0x8CB6FF41 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetWdmGetTargetFileHandle - OK - 0x8CB7001F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetSendReadSynchronously - OK - 0x8CB7066D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetFormatRequestForRead - OK - 0x8CB7069D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetSendWriteSynchronously - OK - 0x8CB706CA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetFormatRequestForWrite - OK - 0x8CB706FA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetSendIoctlSynchronously - OK - 0x8CB4A982 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetFormatRequestForIoctl - OK - 0x8CB4B042 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetSendInternalIoctlSynchronously - OK - 0x8CB70727 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetFormatRequestForInternalIoctl - OK - 0x8CB7075A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetSendInternalIoctlOthersSynchronously - OK - 0x8CB637F7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoTargetFormatRequestForInternalIoctlOthers - OK - 0x8CB4117E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryCreate - OK - 0x8CB6301F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryCreatePreallocated - OK - 0x8CB4D33C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryGetBuffer - OK - 0x8CB62E23 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryAssignBuffer - OK - 0x8CB829AD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryCopyToBuffer - OK - 0x8CB809A1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryCopyFromBuffer - OK - 0x8CB80AB3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfLookasideListCreate - OK - 0x8CB82A83 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfMemoryCreateFromLookaside - OK - 0x8CB82E40 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceMiniportCreate - OK - 0x8CB81EC9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDriverMiniportUnload - OK - 0x8CB81E2A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectGetTypedContextWorker - OK - 0x8CB3E04E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectAllocateContext - OK - 0x8CB673ED - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectContextGetObject - OK - 0x8CB5A309 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectReferenceActual - OK - 0x8CB8EDA4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectDereferenceActual - OK - 0x8CB8EE29 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectCreate - OK - 0x8CB8F944 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectDelete - OK - 0x8CB45EAA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectQuery - OK - 0x8CB8F0B4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAllocate - OK - 0x8CB7BE15 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitSetEventCallbacks - OK - 0x8CB5C64A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAssignDeviceID - OK - 0x8CB5C71C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAssignInstanceID - OK - 0x8CB5C8AA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAddHardwareID - OK - 0x8CB5CA38 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAddCompatibleID - OK - 0x8CB614A2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAddDeviceText - OK - 0x8CB6215C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitSetDefaultLocale - OK - 0x8CB5CBEC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAssignRawDevice - OK - 0x8CB7C112 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoMarkMissing - OK - 0x8CB80184 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoRequestEject - OK - 0x8CB801CF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoGetParent - OK - 0x8CB4C902 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoRetrieveIdentificationDescription - OK - 0x8CB44F0D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoRetrieveAddressDescription - OK - 0x8CB80283 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoUpdateAddressDescription - OK - 0x8CB80327 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoAddEjectionRelationsPhysicalDevice - OK - 0x8CB803C5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoRemoveEjectionRelationsPhysicalDevice - OK - 0x8CB80417 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoClearEjectionRelationsDevices - OK - 0x8CB80478 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAddQueryInterface - OK - 0x8CB59CCB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryOpenKey - OK - 0x8CB48E91 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryCreateKey - OK - 0x8CB88BF0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryClose - OK - 0x8CB4AA3D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryWdmGetHandle - OK - 0x8CB61BE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryRemoveKey - OK - 0x8CB88F11 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryRemoveValue - OK - 0x8CB89026 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryQueryValue - OK - 0x8CB5F4FC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryQueryMemory - OK - 0x8CB891AC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryQueryMultiString - OK - 0x8CB67FDE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryQueryUnicodeString - OK - 0x8CB89477 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryQueryString - OK - 0x8CB61C7F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryQueryULong - OK - 0x8CB5A151 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryAssignValue - OK - 0x8CB6847B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryAssignMemory - OK - 0x8CB89710 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryAssignMultiString - OK - 0x8CB8A02E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryAssignUnicodeString - OK - 0x8CB89B79 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryAssignString - OK - 0x8CB89DF4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRegistryAssignULong - OK - 0x8CB899BF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestCreate - OK - 0x8CB45ADC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestCreateFromIrp - OK - 0x8CB61846 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestReuse - OK - 0x8CB41665 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestChangeTarget - OK - 0x8CB7E671 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestFormatRequestUsingCurrentType - OK - 0x8CB4458D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestWdmFormatUsingStackLocation - OK - 0x8CB7F31D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestSend - OK - 0x8CB3EFCB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetStatus - OK - 0x8CB3F98D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestMarkCancelable - OK - 0x8CB4F38D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestUnmarkCancelable - OK - 0x8CB508C6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestIsCanceled - OK - 0x8CB45110 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestCancelSentRequest - OK - 0x8CB7F1CE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestIsFrom32BitProcess - OK - 0x8CB7F28C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestSetCompletionRoutine - OK - 0x8CB45803 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetCompletionParams - OK - 0x8CB7F452 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestAllocateTimer - OK - 0x8CB7F5AB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestComplete - OK - 0x8CB4F877 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestCompleteWithPriorityBoost - OK - 0x8CB7E78D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestCompleteWithInformation - OK - 0x8CB3EBDA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetParameters - OK - 0x8CB3F890 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveInputMemory - OK - 0x8CB7E887 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveOutputMemory - OK - 0x8CB7E989 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveInputBuffer - OK - 0x8CB451DE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveOutputBuffer - OK - 0x8CB447EA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveInputWdmMdl - OK - 0x8CB7EFED - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveOutputWdmMdl - OK - 0x8CB7F0D4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveUnsafeUserInputBuffer - OK - 0x8CB7EAA7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRetrieveUnsafeUserOutputBuffer - OK - 0x8CB7ED6F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestSetInformation - OK - 0x8CB4F981 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetInformation - OK - 0x8CB444F1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetFileObject - OK - 0x8CB446A8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestProbeAndLockUserBufferForRead - OK - 0x8CB7F647 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestProbeAndLockUserBufferForWrite - OK - 0x8CB7F80C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetRequestorMode - OK - 0x8CB41CF3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestForwardToIoQueue - OK - 0x8CB7FB04 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestGetIoQueue - OK - 0x8CB7F9CE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestRequeue - OK - 0x8CB7FE56 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestStopAcknowledge - OK - 0x8CB506CB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestWdmGetIrp - OK - 0x8CB3F7A4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListSetSlotNumber - OK - 0x8CB8A315 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListSetInterfaceType - OK - 0x8CB8A3BE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListAppendIoResList - OK - 0x8CB8A5CC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListInsertIoResList - OK - 0x8CB8A5AD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListGetCount - OK - 0x8CB8A5EA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListGetIoResList - OK - 0x8CB8A6BB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListRemove - OK - 0x8CB8A7B9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceRequirementsListRemoveByIoResList - OK - 0x8CB8A8A5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListCreate - OK - 0x8CB8AA89 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListAppendDescriptor - OK - 0x8CB8AD1B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListInsertDescriptor - OK - 0x8CB8ACFC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListUpdateDescriptor - OK - 0x8CB8AD39 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListGetCount - OK - 0x8CB8AE9C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListGetDescriptor - OK - 0x8CB8AF6D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListRemove - OK - 0x8CB8B065 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoResourceListRemoveByDescriptor - OK - 0x8CB8B15A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCmResourceListAppendDescriptor - OK - 0x8CB8B421 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCmResourceListInsertDescriptor - OK - 0x8CB8B402 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCmResourceListGetCount - OK - 0x8CB632DF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCmResourceListGetDescriptor - OK - 0x8CB633AD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCmResourceListRemove - OK - 0x8CB8B43F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCmResourceListRemoveByDescriptor - OK - 0x8CB8B52B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfStringCreate - OK - 0x8CB61070 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfStringGetUnicodeString - OK - 0x8CB5BCC1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectAcquireLock - OK - 0x8CB8EEB9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfObjectReleaseLock - OK - 0x8CB8EFBA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWaitLockCreate - OK - 0x8CB5A7D0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWaitLockAcquire - OK - 0x8CB429EB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWaitLockRelease - OK - 0x8CB4294C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfSpinLockCreate - OK - 0x8CB63638 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfSpinLockAcquire - OK - 0x8CB66B78 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfSpinLockRelease - OK - 0x8CB66CBF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfTimerCreate - OK - 0x8CB60138 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfTimerStart - OK - 0x8CB50A47 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfTimerStop - OK - 0x8CB50EE8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfTimerGetParentObject - OK - 0x8CB41C3B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceCreate - OK - 0x8CB711E9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceRetrieveInformation - OK - 0x8CB7136F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceGetDeviceDescriptor - OK - 0x8CB71464 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceRetrieveConfigDescriptor - OK - 0x8CB71579 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceQueryString - OK - 0x8CB7168F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceAllocAndQueryString - OK - 0x8CB7181B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceFormatRequestForString - OK - 0x8CB71A16 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceGetNumInterfaces - OK - 0x8CB720E1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceSelectConfig - OK - 0x8CB71C97 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceWdmGetConfigurationHandle - OK - 0x8CB7217E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceRetrieveCurrentFrameNumber - OK - 0x8CB7221B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceSendControlTransferSynchronously - OK - 0x8CB7289B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceFormatRequestForControlTransfer - OK - 0x8CB72BAA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceIsConnectedSynchronous - OK - 0x8CB72E1E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceResetPortSynchronously - OK - 0x8CB72F33 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceCyclePortSynchronously - OK - 0x8CB73035 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceFormatRequestForCyclePort - OK - 0x8CB73137 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceSendUrbSynchronously - OK - 0x8CB722E3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceFormatRequestForUrb - OK - 0x8CB725E7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeGetInformation - OK - 0x8CB73EB0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeIsInEndpoint - OK - 0x8CB73F64 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeIsOutEndpoint - OK - 0x8CB74005 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeGetType - OK - 0x8CB740AB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeSetNoMaximumPacketSizeCheck - OK - 0x8CB7415C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeWriteSynchronously - OK - 0x8CB7421C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeFormatRequestForWrite - OK - 0x8CB74272 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeReadSynchronously - OK - 0x8CB742CC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeFormatRequestForRead - OK - 0x8CB74322 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeConfigContinuousReader - OK - 0x8CB7437B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeAbortSynchronously - OK - 0x8CB745B1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeFormatRequestForAbort - OK - 0x8CB74859 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeResetSynchronously - OK - 0x8CB749D4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeFormatRequestForReset - OK - 0x8CB74C88 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeSendUrbSynchronously - OK - 0x8CB74DFE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeFormatRequestForUrb - OK - 0x8CB75102 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetInterfaceNumber - OK - 0x8CB737FD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetNumEndpoints - OK - 0x8CB73897 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetDescriptor - OK - 0x8CB73AEA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceSelectSetting - OK - 0x8CB7360C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetEndpointInformation - OK - 0x8CB7394C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetDeviceGetInterface - OK - 0x8CB73412 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetConfiguredSettingIndex - OK - 0x8CB73BB4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetNumConfiguredPipes - OK - 0x8CB73C50 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetConfiguredPipe - OK - 0x8CB73CEA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbTargetPipeWdmGetPipeHandle - OK - 0x8CB753AF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfVerifierDbgBreakPoint - OK - 0x8CB80D5E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfVerifierKeBugCheck - OK - 0x8CB80D7B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiProviderCreate - OK - 0x8CB873DA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiProviderGetDevice - OK - 0x8CB8751A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiProviderIsEnabled - OK - 0x8CB875CA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiProviderGetTracingHandle - OK - 0x8CB8767A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiInstanceCreate - OK - 0x8CB604FE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiInstanceRegister - OK - 0x8CB87717 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiInstanceDeregister - OK - 0x8CB877B9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiInstanceGetDevice - OK - 0x8CB46657 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiInstanceGetProvider - OK - 0x8CB87859 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWmiInstanceFireEvent - OK - 0x8CB87906 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWorkItemCreate - OK - 0x8CB5FBC1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWorkItemEnqueue - OK - 0x8CB40BEA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWorkItemGetParentObject - OK - 0x8CB40C86 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWorkItemFlush - OK - 0x8CB828B0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferCreateWithConfig - OK - 0x8CB6B0AE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaEnablerGetFragmentLength - OK - 0x8CB6AB60 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDmaEnablerWdmGetDmaAdapter - OK - 0x8CB6AC70 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfUsbInterfaceGetNumSettings - OK - 0x8CB73A50 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceRemoveDependentUsageDeviceObject - OK - 0x8CB7CEBF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetSystemPowerAction - OK - 0x8CB7E323 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfInterruptSetExtendedPolicy - OK - 0x8CB96CDB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfIoQueueAssignForwardProgressPolicy - OK - 0x8CB8720B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAssignContainerID - OK - 0x8CB7BF84 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfPdoInitAllowForwardingRequestToParent - OK - 0x8CB7C1E3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestMarkCancelableEx - OK - 0x8CB7FF4F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestIsReserved - OK - 0x8CB8005F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfRequestForwardToParentDeviceIoQueue - OK - 0x8CB7FC6E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListCreate - OK - 0x8CB808DF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListGetDevice - OK - 0x8CB804B5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRetrievePdo - OK - 0x8CB8066A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRetrieveAddressDescription - OK - 0x8CB806F3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListBeginScan - OK - 0x8CB80795 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListEndScan - OK - 0x8CB7C60B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListBeginIteration - OK - 0x8CB7CA5C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRetrieveNextDevice - OK - 0x8CB63C58 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListEndIteration - OK - 0x8CB7E088 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListAddOrUpdateChildDescriptionAsPresent - OK - 0x8CB6AD80 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListUpdateChildDescriptionAsMissing - OK - 0x8CB6917F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListUpdateAllChildDescriptionsAsPresent - OK - 0x8CB69EE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRequestChildEject - OK - 0x8CB69ACD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionCreate - OK - 0x8CB69BCC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetCount - OK - 0x8CB69F89 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionAdd - OK - 0x8CB6A084 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionRemove - OK - 0x8CB69CCB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionRemoveItem - OK - 0x8CB6A20B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetItem - OK - 0x8CB6A335 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetFirstItem - OK - 0x8CB69DC1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetLastItem - OK - 0x8CB9637E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferCreate - OK - 0x8CB96E3A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferGetAlignedVirtualAddress - OK - 0x8CB8675D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferGetAlignedLogicalAddress - OK - 0x8CB86811 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferGetLength - OK - 0x8CB6F8FA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfControlDeviceInitAllocate - OK - 0x8CB71291 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfControlDeviceInitSetShutdownNotification - OK - 0x8CB73504 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfControlFinishInitializing - OK - 0x8CB73253 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDeviceState - OK - 0x8CB73331 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetDeviceState - OK - 0x8CB7E3C7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWdmDeviceGetWdfDeviceHandle - OK - 0x8CB6A420 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmGetDeviceObject - OK - 0x8CB80DA2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmGetAttachedDevice - OK - 0x8CB96F9F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmGetPhysicalDevice - OK - 0x8CB97046 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmDispatchPreprocessedIrp - OK - 0x8CB7BBBD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAddDependentUsageDeviceObject - OK - 0x8CB80E4A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListCreate - OK - 0x8CBAA5F8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListGetDevice - OK - 0x8CBAA609 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRetrievePdo - OK - 0x8CBAA61A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRetrieveAddressDescription - OK - 0x8CBAA62B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListBeginScan - OK - 0x8CBAA63C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListEndScan - OK - 0x8CBAA64D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListBeginIteration - OK - 0x8CBAA65E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRetrieveNextDevice - OK - 0x8CBAA66F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListEndIteration - OK - 0x8CBAA680 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListAddOrUpdateChildDescriptionAsPresent - OK - 0x8CBAA691 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListUpdateChildDescriptionAsMissing - OK - 0x8CBAA6A2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListUpdateAllChildDescriptionsAsPresent - OK - 0x8CBAA6B3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfChildListRequestChildEject - OK - 0x8CBAA6C4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionCreate - OK - 0x8CBAA6D5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetCount - OK - 0x8CBAA6E6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionAdd - OK - 0x8CBAA6F7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionRemove - OK - 0x8CBAA708 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionRemoveItem - OK - 0x8CBAA719 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetItem - OK - 0x8CBAA72A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetFirstItem - OK - 0x8CBAA73B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCollectionGetLastItem - OK - 0x8CBAA74C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferCreate - OK - 0x8CBAA75D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferGetAlignedVirtualAddress - OK - 0x8CBAA77F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferGetAlignedLogicalAddress - OK - 0x8CBAA790 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferGetLength - OK - 0x8CBAA7A1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfControlDeviceInitAllocate - OK - 0x8CBAA7B2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfControlDeviceInitSetShutdownNotification - OK - 0x8CBAA7C3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfControlFinishInitializing - OK - 0x8CBAA7D4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDeviceState - OK - 0x8CBAA84B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetDeviceState - OK - 0x8CBAA85C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWdmDeviceGetWdfDeviceHandle - OK - 0x8CBAA86D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmGetDeviceObject - OK - 0x8CBAA87E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmGetAttachedDevice - OK - 0x8CBAA88F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmGetPhysicalDevice - OK - 0x8CBAA8A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceWdmDispatchPreprocessedIrp - OK - 0x8CBAA8B1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAddDependentUsageDeviceObject - OK - 0x8CBAA8E4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAddRemovalRelationsPhysicalDevice - OK - 0x8CBAA906 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceRemoveRemovalRelationsPhysicalDevice - OK - 0x8CBAA917 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceClearRemovalRelationsDevices - OK - 0x8CBAA928 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDriver - OK - 0x8CBAA939 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceRetrieveDeviceName - OK - 0x8CBAA94A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAssignMofResourceName - OK - 0x8CBAA95B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetIoTarget - OK - 0x8CBAA96C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDevicePnpState - OK - 0x8CBAA97D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDevicePowerState - OK - 0x8CBAA98E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDevicePowerPolicyState - OK - 0x8CBAA99F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAssignS0IdleSettings - OK - 0x8CBAA9B0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAssignSxWakeSettings - OK - 0x8CBAA9C1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceOpenRegistryKey - OK - 0x8CBAA9D2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetSpecialFileSupport - OK - 0x8CBAA9E3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetCharacteristics - OK - 0x8CBAA9F4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetCharacteristics - OK - 0x8CBAAA05 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetAlignmentRequirement - OK - 0x8CBAAA16 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetAlignmentRequirement - OK - 0x8CBAAA27 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitFree - OK - 0x8CBAAA38 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetPnpPowerEventCallbacks - OK - 0x8CBAAA49 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetPowerPolicyEventCallbacks - OK - 0x8CBAAA5A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetPowerPolicyOwnership - OK - 0x8CBAAA6B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitRegisterPnpStateChangeCallback - OK - 0x8CBAAA7C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitRegisterPowerStateChangeCallback - OK - 0x8CBAAA8D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitRegisterPowerPolicyStateChangeCallback - OK - 0x8CBAAA9E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetIoType - OK - 0x8CBAAAAF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetExclusive - OK - 0x8CBAAAC0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetPowerNotPageable - OK - 0x8CBAAAD1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetPowerPageable - OK - 0x8CBAAAE2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetPowerInrush - OK - 0x8CBAAAF3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetDeviceType - OK - 0x8CBAAB04 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitAssignName - OK - 0x8CBAAB15 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitAssignSDDLString - OK - 0x8CBAAB26 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetDeviceClass - OK - 0x8CBAAB37 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetCharacteristics - OK - 0x8CBAAB48 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetFileObjectConfig - OK - 0x8CBAAB59 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetRequestAttributes - OK - 0x8CBAAB6A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitAssignWdmIrpPreprocessCallback - OK - 0x8CBAAB7B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceInitSetIoInCallerContextCallback - OK - 0x8CBAAB8C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceCreate - OK - 0x8CBAABAE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetStaticStopRemove - OK - 0x8CBAABF9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceCreateDeviceInterface - OK - 0x8CBAAC0A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetDeviceInterfaceState - OK - 0x8CBAAC1B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceRetrieveDeviceInterfaceString - OK - 0x8CBAAC2C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceCreateSymbolicLink - OK - 0x8CBAAC3D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceQueryProperty - OK - 0x8CBAAC4E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAllocAndQueryProperty - OK - 0x8CBAAC5F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetPnpCapabilities - OK - 0x8CBAAC70 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetPowerCapabilities - OK - 0x8CBAAC81 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetBusInformationForChildren - OK - 0x8CBAAC92 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceIndicateWakeStatus - OK - 0x8CBAACA3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceSetFailed - OK - 0x8CBAACB4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceStopIdle - OK - 0x8CBAACC5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceResumeIdle - OK - 0x8CBAACD6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetFileObject - OK - 0x8CBAACE7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceEnqueueRequest - OK - 0x8CBAACF8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetDefaultQueue - OK - 0x8CBAAD09 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceConfigureRequestDispatching - OK - 0x8CBAAD1A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaEnablerCreate - OK - 0x8CBAAD6F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaEnablerGetMaximumLength - OK - 0x8CBAAD91 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaEnablerGetMaximumScatterGatherElements - OK - 0x8CBAADA2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaEnablerSetMaximumScatterGatherElements - OK - 0x8CBAADB3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionCreate - OK - 0x8CBAADE6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionInitialize - OK - 0x8CBAADF7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionInitializeUsingRequest - OK - 0x8CBAAE19 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionExecute - OK - 0x8CBAAE2A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionRelease - OK - 0x8CBAAE3B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionDmaCompleted - OK - 0x8CBAAE4C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionDmaCompletedWithLength - OK - 0x8CBAAE5D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionDmaCompletedFinal - OK - 0x8CBAAE6E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionGetBytesTransferred - OK - 0x8CBAAE7F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionSetMaximumLength - OK - 0x8CBAAE90 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionGetRequest - OK - 0x8CBAAEA1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionGetCurrentDmaTransferLength - OK - 0x8CBAAEB2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaTransactionGetDevice - OK - 0x8CBAAEC3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDpcCreate - OK - 0x8CBAAF7E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDpcEnqueue - OK - 0x8CBAAF8F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDpcCancel - OK - 0x8CBAAFA0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDpcGetParentObject - OK - 0x8CBAAFB1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDpcWdmGetDpc - OK - 0x8CBAAFC2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverCreate - OK - 0x8CBAAFD3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverGetRegistryPath - OK - 0x8CBAAFE4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverWdmGetDriverObject - OK - 0x8CBAAFF5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverOpenParametersRegistryKey - OK - 0x8CBAB006 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWdmDriverGetWdfDriverHandle - OK - 0x8CBAB017 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverRegisterTraceInfo - OK - 0x8CBAB028 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverRetrieveVersionString - OK - 0x8CBAB039 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverIsVersionAvailable - OK - 0x8CBAB04A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitWdmGetPhysicalDevice - OK - 0x8CBAB05B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitOpenRegistryKey - OK - 0x8CBAB06C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitQueryProperty - OK - 0x8CBAB07D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitAllocAndQueryProperty - OK - 0x8CBAB08E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitSetEventCallbacks - OK - 0x8CBAB09F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitSetFilter - OK - 0x8CBAB0B0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoInitSetDefaultChildListConfig - OK - 0x8CBAB0C1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoQueryForInterface - OK - 0x8CBAB0D2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoGetDefaultChildList - OK - 0x8CBAB0E3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoAddStaticChild - OK - 0x8CBAB0F4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoLockStaticChildListForIteration - OK - 0x8CBAB105 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoRetrieveNextStaticChild - OK - 0x8CBAB116 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFdoUnlockStaticChildListFromIteration - OK - 0x8CBAB127 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFileObjectGetFileName - OK - 0x8CBAB138 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFileObjectGetFlags - OK - 0x8CBAB149 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFileObjectGetDevice - OK - 0x8CBAB15A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfFileObjectWdmGetFileObject - OK - 0x8CBAB16B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptCreate - OK - 0x8CBAB17C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptQueueDpcForIsr - OK - 0x8CBAB18D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptSynchronize - OK - 0x8CBAB1AF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptAcquireLock - OK - 0x8CBAB1C0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptReleaseLock - OK - 0x8CBAB1D1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptEnable - OK - 0x8CBAB1E2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptDisable - OK - 0x8CBAB1F3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptWdmGetInterrupt - OK - 0x8CBAB204 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptGetInfo - OK - 0x8CBAB215 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptSetPolicy - OK - 0x8CBAB226 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptGetDevice - OK - 0x8CBAB248 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueCreate - OK - 0x8CBAB28C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueGetState - OK - 0x8CBAB2DD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueStart - OK - 0x8CBAB2EE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueStop - OK - 0x8CBAB2FF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueStopSynchronously - OK - 0x8CBAB310 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueGetDevice - OK - 0x8CBAB321 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueRetrieveNextRequest - OK - 0x8CBAB332 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueRetrieveRequestByFileObject - OK - 0x8CBAB343 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueFindRequest - OK - 0x8CBAB354 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueRetrieveFoundRequest - OK - 0x8CBAB365 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueDrainSynchronously - OK - 0x8CBAB376 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueDrain - OK - 0x8CBAB387 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueuePurgeSynchronously - OK - 0x8CBAB398 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueuePurge - OK - 0x8CBAB3A9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueReadyNotify - OK - 0x8CBAB3BA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetCreate - OK - 0x8CBAB3FE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetOpen - OK - 0x8CBAB40F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetCloseForQueryRemove - OK - 0x8CBAB420 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetClose - OK - 0x8CBAB431 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetStart - OK - 0x8CBAB442 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetStop - OK - 0x8CBAB453 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetGetState - OK - 0x8CBAB475 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetGetDevice - OK - 0x8CBAB486 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetQueryTargetProperty - OK - 0x8CBAB497 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetAllocAndQueryTargetProperty - OK - 0x8CBAB4A8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetQueryForInterface - OK - 0x8CBAB4B9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetWdmGetTargetDeviceObject - OK - 0x8CBAB4CA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetWdmGetTargetPhysicalDevice - OK - 0x8CBAB4DB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetWdmGetTargetFileObject - OK - 0x8CBAB4EC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetWdmGetTargetFileHandle - OK - 0x8CBAB4FD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetSendReadSynchronously - OK - 0x8CBAB50E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetFormatRequestForRead - OK - 0x8CBAB51F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetSendWriteSynchronously - OK - 0x8CBAB530 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetFormatRequestForWrite - OK - 0x8CBAB541 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetSendIoctlSynchronously - OK - 0x8CBAB552 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetFormatRequestForIoctl - OK - 0x8CBAB563 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetSendInternalIoctlSynchronously - OK - 0x8CBAB574 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetFormatRequestForInternalIoctl - OK - 0x8CBAB585 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetSendInternalIoctlOthersSynchronously - OK - 0x8CBAB596 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoTargetFormatRequestForInternalIoctlOthers - OK - 0x8CBAB5A7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryCreate - OK - 0x8CBAB5B8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryCreatePreallocated - OK - 0x8CBAB5C9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryGetBuffer - OK - 0x8CBAB5DA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryAssignBuffer - OK - 0x8CBAB5EB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryCopyToBuffer - OK - 0x8CBAB5FC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryCopyFromBuffer - OK - 0x8CBAB60D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfLookasideListCreate - OK - 0x8CBAB61E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfMemoryCreateFromLookaside - OK - 0x8CBAB62F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceMiniportCreate - OK - 0x8CBAB640 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDriverMiniportUnload - OK - 0x8CBAB651 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectGetTypedContextWorker - OK - 0x8CBAB662 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectAllocateContext - OK - 0x8CBAB673 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectContextGetObject - OK - 0x8CBAB684 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectReferenceActual - OK - 0x8CBAB68F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectDereferenceActual - OK - 0x8CBAB6A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectCreate - OK - 0x8CBAB6B1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectDelete - OK - 0x8CBAB6C2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectQuery - OK - 0x8CBAB6D3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAllocate - OK - 0x8CBAB6E4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitSetEventCallbacks - OK - 0x8CBAB6F5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAssignDeviceID - OK - 0x8CBAB706 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAssignInstanceID - OK - 0x8CBAB717 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAddHardwareID - OK - 0x8CBAB728 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAddCompatibleID - OK - 0x8CBAB739 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAddDeviceText - OK - 0x8CBAB75B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitSetDefaultLocale - OK - 0x8CBAB76C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAssignRawDevice - OK - 0x8CBAB77D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoMarkMissing - OK - 0x8CBAB79F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoRequestEject - OK - 0x8CBAB7B0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoGetParent - OK - 0x8CBAB7C1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoRetrieveIdentificationDescription - OK - 0x8CBAB7D2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoRetrieveAddressDescription - OK - 0x8CBAB7E3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoUpdateAddressDescription - OK - 0x8CBAB7F4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoAddEjectionRelationsPhysicalDevice - OK - 0x8CBAB805 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoRemoveEjectionRelationsPhysicalDevice - OK - 0x8CBAB816 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoClearEjectionRelationsDevices - OK - 0x8CBAB827 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceAddQueryInterface - OK - 0x8CBAB838 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryOpenKey - OK - 0x8CBAB849 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryCreateKey - OK - 0x8CBAB85A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryClose - OK - 0x8CBAB86B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryWdmGetHandle - OK - 0x8CBAB87C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryRemoveKey - OK - 0x8CBAB88D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryRemoveValue - OK - 0x8CBAB89E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryQueryValue - OK - 0x8CBAB8AF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryQueryMemory - OK - 0x8CBAB8C0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryQueryMultiString - OK - 0x8CBAB8D1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryQueryUnicodeString - OK - 0x8CBAB8E2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryQueryString - OK - 0x8CBAB8F3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryQueryULong - OK - 0x8CBAB904 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryAssignValue - OK - 0x8CBAB915 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryAssignMemory - OK - 0x8CBAB926 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryAssignMultiString - OK - 0x8CBAB937 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryAssignUnicodeString - OK - 0x8CBAB948 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryAssignString - OK - 0x8CBAB959 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRegistryAssignULong - OK - 0x8CBAB96A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestCreate - OK - 0x8CBAB97B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestCreateFromIrp - OK - 0x8CBAB98C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestReuse - OK - 0x8CBAB99D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestChangeTarget - OK - 0x8CBAB9AE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestFormatRequestUsingCurrentType - OK - 0x8CBAB9BF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestWdmFormatUsingStackLocation - OK - 0x8CBAB9D0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestSend - OK - 0x8CBAB9E1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetStatus - OK - 0x8CBAB9F2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestMarkCancelable - OK - 0x8CBABA03 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestUnmarkCancelable - OK - 0x8CBABA25 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestIsCanceled - OK - 0x8CBABA36 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestCancelSentRequest - OK - 0x8CBABA47 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestIsFrom32BitProcess - OK - 0x8CBABA58 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestSetCompletionRoutine - OK - 0x8CBABA69 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetCompletionParams - OK - 0x8CBABA7A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestAllocateTimer - OK - 0x8CBABA8B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestComplete - OK - 0x8CBABA9C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestCompleteWithPriorityBoost - OK - 0x8CBABAAD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestCompleteWithInformation - OK - 0x8CBABABE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetParameters - OK - 0x8CBABACF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveInputMemory - OK - 0x8CBABAE0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveOutputMemory - OK - 0x8CBABAF1 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveInputBuffer - OK - 0x8CBABB02 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveOutputBuffer - OK - 0x8CBABB13 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveInputWdmMdl - OK - 0x8CBABB24 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveOutputWdmMdl - OK - 0x8CBABB35 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveUnsafeUserInputBuffer - OK - 0x8CBABB46 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRetrieveUnsafeUserOutputBuffer - OK - 0x8CBABB57 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestSetInformation - OK - 0x8CBABB68 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetInformation - OK - 0x8CBABB79 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetFileObject - OK - 0x8CBABB8A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestProbeAndLockUserBufferForRead - OK - 0x8CBABB9B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestProbeAndLockUserBufferForWrite - OK - 0x8CBABBAC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetRequestorMode - OK - 0x8CBABBBD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestForwardToIoQueue - OK - 0x8CBABBCE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestGetIoQueue - OK - 0x8CBABBDF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestRequeue - OK - 0x8CBABBF0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestStopAcknowledge - OK - 0x8CBABC01 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestWdmGetIrp - OK - 0x8CBABC12 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListSetSlotNumber - OK - 0x8CBABC45 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListSetInterfaceType - OK - 0x8CBABC56 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListAppendIoResList - OK - 0x8CBABC67 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListInsertIoResList - OK - 0x8CBABC78 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListGetCount - OK - 0x8CBABC89 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListGetIoResList - OK - 0x8CBABC9A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListRemove - OK - 0x8CBABCAB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceRequirementsListRemoveByIoResList - OK - 0x8CBABCBC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListCreate - OK - 0x8CBABCCD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListAppendDescriptor - OK - 0x8CBABCDE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListInsertDescriptor - OK - 0x8CBABCEF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListUpdateDescriptor - OK - 0x8CBABD00 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListGetCount - OK - 0x8CBABD11 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListGetDescriptor - OK - 0x8CBABD22 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListRemove - OK - 0x8CBABD33 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoResourceListRemoveByDescriptor - OK - 0x8CBABD44 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCmResourceListAppendDescriptor - OK - 0x8CBABD55 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCmResourceListInsertDescriptor - OK - 0x8CBABD66 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCmResourceListGetCount - OK - 0x8CBABD77 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCmResourceListGetDescriptor - OK - 0x8CBABD88 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCmResourceListRemove - OK - 0x8CBABD99 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCmResourceListRemoveByDescriptor - OK - 0x8CBABDAA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfStringCreate - OK - 0x8CBABDBB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfStringGetUnicodeString - OK - 0x8CBABDCC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectAcquireLock - OK - 0x8CBABDDD - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfObjectReleaseLock - OK - 0x8CBABDEE - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWaitLockCreate - OK - 0x8CBABDFF - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWaitLockAcquire - OK - 0x8CBABE10 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWaitLockRelease - OK - 0x8CBABE21 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfSpinLockCreate - OK - 0x8CBABE32 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfSpinLockAcquire - OK - 0x8CBABE43 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfSpinLockRelease - OK - 0x8CBABE54 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfTimerCreate - OK - 0x8CBABE65 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfTimerStart - OK - 0x8CBABE76 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfTimerStop - OK - 0x8CBABE96 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfTimerGetParentObject - OK - 0x8CBABEA7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceCreate - OK - 0x8CBABEB8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceRetrieveInformation - OK - 0x8CBABEDA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceGetDeviceDescriptor - OK - 0x8CBABEEB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceRetrieveConfigDescriptor - OK - 0x8CBABEFC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceQueryString - OK - 0x8CBABF0D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceAllocAndQueryString - OK - 0x8CBABF1E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceFormatRequestForString - OK - 0x8CBABF2F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceGetNumInterfaces - OK - 0x8CBABF40 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceSelectConfig - OK - 0x8CBABF51 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceWdmGetConfigurationHandle - OK - 0x8CBABF62 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceRetrieveCurrentFrameNumber - OK - 0x8CBABF73 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceSendControlTransferSynchronously - OK - 0x8CBABF84 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceFormatRequestForControlTransfer - OK - 0x8CBABF95 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceIsConnectedSynchronous - OK - 0x8CBABFA6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceResetPortSynchronously - OK - 0x8CBABFB7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceCyclePortSynchronously - OK - 0x8CBABFC8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceFormatRequestForCyclePort - OK - 0x8CBABFD9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceSendUrbSynchronously - OK - 0x8CBABFEA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceFormatRequestForUrb - OK - 0x8CBABFFB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeGetInformation - OK - 0x8CBAC03F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeIsInEndpoint - OK - 0x8CBAC050 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeIsOutEndpoint - OK - 0x8CBAC061 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeGetType - OK - 0x8CBAC072 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeSetNoMaximumPacketSizeCheck - OK - 0x8CBAC083 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeWriteSynchronously - OK - 0x8CBAC094 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeFormatRequestForWrite - OK - 0x8CBAC0A5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeReadSynchronously - OK - 0x8CBAC0B6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeFormatRequestForRead - OK - 0x8CBAC0C7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeConfigContinuousReader - OK - 0x8CBAC0D8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeAbortSynchronously - OK - 0x8CBAC0E9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeFormatRequestForAbort - OK - 0x8CBAC0FA - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeResetSynchronously - OK - 0x8CBAC10B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeFormatRequestForReset - OK - 0x8CBAC11C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeSendUrbSynchronously - OK - 0x8CBAC12D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeFormatRequestForUrb - OK - 0x8CBAC13E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetInterfaceNumber - OK - 0x8CBAC14F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetNumEndpoints - OK - 0x8CBAC160 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetDescriptor - OK - 0x8CBAC171 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceSelectSetting - OK - 0x8CBAC193 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetEndpointInformation - OK - 0x8CBAC1A4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetDeviceGetInterface - OK - 0x8CBAC1B5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetConfiguredSettingIndex - OK - 0x8CBAC1C6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetNumConfiguredPipes - OK - 0x8CBAC1D7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetConfiguredPipe - OK - 0x8CBAC1E8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbTargetPipeWdmGetPipeHandle - OK - 0x8CBAC1F9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfVerifierDbgBreakPoint - OK - 0x8CBAC20A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfVerifierKeBugCheck - OK - 0x8CBAC21B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiProviderCreate - OK - 0x8CBAC23D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiProviderGetDevice - OK - 0x8CBAC24E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiProviderIsEnabled - OK - 0x8CBAC25F - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiProviderGetTracingHandle - OK - 0x8CBAC270 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiInstanceCreate - OK - 0x8CBAC281 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiInstanceRegister - OK - 0x8CBAC292 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiInstanceDeregister - OK - 0x8CBAC2A3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiInstanceGetDevice - OK - 0x8CBAC2B4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiInstanceGetProvider - OK - 0x8CBAC2C5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWmiInstanceFireEvent - OK - 0x8CBAC2D6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWorkItemCreate - OK - 0x8CBAC2E7 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWorkItemEnqueue - OK - 0x8CBAC2F8 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWorkItemGetParentObject - OK - 0x8CBAC309 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfWorkItemFlush - OK - 0x8CBAC31A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfCommonBufferCreateWithConfig - OK - 0x8CBAA76E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaEnablerGetFragmentLength - OK - 0x8CBAADC4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDmaEnablerWdmGetDmaAdapter - OK - 0x8CBAADD5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfUsbInterfaceGetNumSettings - OK - 0x8CBAC182 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceRemoveDependentUsageDeviceObject - OK - 0x8CBAA8F5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfDeviceGetSystemPowerAction - OK - 0x8CBAAD3C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfInterruptSetExtendedPolicy - OK - 0x8CBAB237 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfIoQueueAssignForwardProgressPolicy - OK - 0x8CBAB3CB - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAssignContainerID - OK - 0x8CBAB74A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfPdoInitAllowForwardingRequestToParent - OK - 0x8CBAB78E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestMarkCancelableEx - OK - 0x8CBABA14 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestIsReserved - OK - 0x8CBABC23 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       VfWdfRequestForwardToParentDeviceIoQueue - OK - 0x8CBABC34 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListCreate - OK - 0x8CBAA7E5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListGetDevice - OK - 0x8CBAA7F6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRetrievePdo - OK - 0x8CBAA807 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRetrieveAddressDescription - OK - 0x8CBAA818 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListBeginScan - OK - 0x8CBAA829 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListEndScan - OK - 0x8CBAA8C2 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListBeginIteration - OK - 0x8CBAA8D3 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRetrieveNextDevice - OK - 0x8CBAAB9D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListEndIteration - OK - 0x8CBAAD2B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListAddOrUpdateChildDescriptionAsPresent - OK - 0x8CBAAD80 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListUpdateChildDescriptionAsMissing - OK - 0x8CBAAE08 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListUpdateAllChildDescriptionsAsPresent - OK - 0x8CBAAED4 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfChildListRequestChildEject - OK - 0x8CBAAEE5 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionCreate - OK - 0x8CBAAEF6 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetCount - OK - 0x8CBAAF07 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionAdd - OK - 0x8CBAAF18 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionRemove - OK - 0x8CBAAF29 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionRemoveItem - OK - 0x8CBAAF3A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetItem - OK - 0x8CBAAF4B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetFirstItem - OK - 0x8CBAAF5C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCollectionGetLastItem - OK - 0x8CBAB19E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferCreate - OK - 0x8CBAB259 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferGetAlignedVirtualAddress - OK - 0x8CBAB3DC - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferGetAlignedLogicalAddress - OK - 0x8CBAB3ED - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfCommonBufferGetLength - OK - 0x8CBAB464 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfControlDeviceInitAllocate - OK - 0x8CBABEC9 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfControlDeviceInitSetShutdownNotification - OK - 0x8CBAC00C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfControlFinishInitializing - OK - 0x8CBAC01D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceGetDeviceState - OK - 0x8CBAC02E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceSetDeviceState - OK - 0x8CBAAD4D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfWdmDeviceGetWdfDeviceHandle - OK - 0x8CBAAF6D - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmGetDeviceObject - OK - 0x8CBAA83A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmGetAttachedDevice - OK - 0x8CBAB26A - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmGetPhysicalDevice - OK - 0x8CBAB27B - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceWdmDispatchPreprocessedIrp - OK - 0x8CBAAD5E - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WdfDeviceAddDependentUsageDeviceObject - OK - 0x8CBAC22C - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation

==========================================================================================

Filter

       [0x8BEE27E0]InstanceSetup - 0x9B42F206 - C:\Windows\system32\drivers\aswFsBlk.sys
       [0x8BEE27E0]IRP_MJ_CREATE PreFun - 0x9B42F3F2 - C:\Windows\system32\drivers\aswFsBlk.sys
       [0x8BEE27E0]IRP_MJ_CREATE PostFun - 0x9B42F612 - C:\Windows\system32\drivers\aswFsBlk.sys
       [0x8BEE27E0]IRP_MJ_SET_INFORMATION PreFun - 0x9B42F6EC - C:\Windows\system32\drivers\aswFsBlk.sys
       [0x8BEE27E0]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0x9B42F868 - C:\Windows\system32\drivers\aswFsBlk.sys
       [0x8718D280]FilterUnload - 0x9277DB92 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]InstanceSetup - 0x9277DC30 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]InstanceQueryTeardown - 0x9277D648 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]InstanceTeardownStart - 0x9277D89E - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]InstanceTeardownComplete - 0x9277D652 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_CREATE PreFun - 0x92779590 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_CREATE PostFun - 0x9277D678 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_CLOSE PreFun - 0x92779590 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_CLOSE PostFun - 0x92779340 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_DEVICE_CONTROL PreFun - 0x92779590 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_DEVICE_CONTROL PostFun - 0x92779340 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_DIRECTORY_CONTROL PreFun - 0x92779590 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_DIRECTORY_CONTROL PostFun - 0x9277D678 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_SET_INFORMATION PreFun - 0x9277D66E - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_SET_INFORMATION PostFun - 0x92779340 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_SHUTDOWN PreFun - 0x9277DC0A - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_CLEANUP PreFun - 0x9277D66E - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_CLEANUP PostFun - 0x92779340 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_VOLUME_MOUNT PreFun - 0x92779590 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_VOLUME_MOUNT PostFun - 0x92779340 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_VOLUME_DISMOUNT PreFun - 0x92779590 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8718D280]IRP_MJ_VOLUME_DISMOUNT PostFun - 0x92779340 - C:\Windows\system32\DRIVERS\CFRMD.sys
       [0x8BEDFA50]InstanceSetup - 0x9B427C10 - C:\Windows\system32\drivers\mbam.sys
       [0x8BEDFA50]OldDriverUnload - 0x9B427560 - C:\Windows\system32\drivers\mbam.sys
       [0x8BEDFA50]IRP_MJ_CREATE PreFun - 0x9B427D70 - C:\Windows\system32\drivers\mbam.sys
       [0x87185008]InstanceSetup - 0x926EF2A6 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]InstanceTeardownStart - 0x926F09D6 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]GenerateFileName - 0x926EF588 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]NormalizeNameComponentEx - 0x926EF746 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_CREATE PreFun - 0x926EF9FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_CREATE PostFun - 0x926EFA7E - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_WRITE PreFun - 0x926EFB28 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_WRITE PostFun - 0x926EFB74 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_INFORMATION PreFun - 0x926EFCD0 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_INFORMATION PostFun - 0x926EFDA2 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_DIRECTORY_CONTROL PreFun - 0x926EFE1E - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_CLEANUP PreFun - 0x926EFBAC - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_SECURITY PreFun - 0x926EFD3C - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_ACQUIRE_FOR_SECTION_SYNCHRONIZATION PreFun - 0x926EFC32 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_CLOSE PreFun - 0x926EFBFA - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_READ PreFun - 0x926EFAC4 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_READ PostFun - 0x926EFB18 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_INFORMATION PreFun - 0x926EFE78 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_EA PreFun - 0x926F0062 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_EA PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_EA PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_EA PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_FLUSH_BUFFERS PreFun - 0x926EFF62 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_VOLUME_INFORMATION PreFun - 0x926EFF0E - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0x926EFFF4 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_DEVICE_CONTROL PreFun - 0x926F00A8 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_DEVICE_CONTROL PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_INTERNAL_DEVICE_CONTROL PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_INTERNAL_DEVICE_CONTROL PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_LOCK_CONTROL PreFun - 0x926F003E - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_LOCK_CONTROL PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_SECURITY PreFun - 0x926EFEC0 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_SECURITY PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_QUOTA PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_QUERY_QUOTA PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_QUOTA PreFun - 0x926F0062 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_SET_QUOTA PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_RELEASE_FOR_SECTION_SYNCHRONIZATION PreFun - 0x926EFC8A - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_RELEASE_FOR_SECTION_SYNCHRONIZATION PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_ACQUIRE_FOR_MOD_WRITE PreFun - 0x926F0062 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_ACQUIRE_FOR_MOD_WRITE PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_RELEASE_FOR_MOD_WRITE PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_RELEASE_FOR_MOD_WRITE PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_ACQUIRE_FOR_CC_FLUSH PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_ACQUIRE_FOR_CC_FLUSH PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_RELEASE_FOR_CC_FLUSH PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_RELEASE_FOR_CC_FLUSH PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_FAST_IO_CHECK_IF_POSSIBLE PreFun - 0x926EFFAC - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_NETWORK_QUERY_OPEN PreFun - 0x926EFDCA - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_MDL_READ PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_MDL_READ PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_MDL_READ_COMPLETE PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_MDL_READ_COMPLETE PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_PREPARE_MDL_WRITE PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_PREPARE_MDL_WRITE PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_MDL_WRITE_COMPLETE PreFun - 0x926F00FE - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87185008]IRP_MJ_MDL_WRITE_COMPLETE PostFun - 0x926F0144 - C:\Windows\system32\DRIVERS\cmdguard.sys
       [0x87514008]InstanceSetup - 0x9B42104C - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]InstanceQueryTeardown - 0x9B401150 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]InstanceTeardownStart - 0x9B40115E - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_CREATE PreFun - 0x9B421A34 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_CREATE PostFun - 0x9B421B78 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_WRITE PostFun - 0x9B401DF0 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_CLEANUP PreFun - 0x9B42272E - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_CLEANUP PostFun - 0x9B401E88 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_CLOSE PostFun - 0x9B401E88 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_QUERY_INFORMATION PostFun - 0x9B401CFE - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_SET_INFORMATION PreFun - 0x9B4229BA - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_SET_INFORMATION PostFun - 0x9B422ABA - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_ACQUIRE_FOR_SECTION_SYNCHRONIZATION PostFun - 0x9B401E32 - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x87514008]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0x9B40117E - C:\Windows\system32\drivers\aswMonFlt.sys
       [0x8716E7A0]InstanceSetup - 0x92625B3C - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]InstanceQueryTeardown - 0x92625610 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]InstanceTeardownStart - 0x9263D5E6 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]InstanceTeardownComplete - 0x9262561E - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]GenerateFileName - 0x9262563A - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]NormalizeNameComponent - 0x92625708 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_CREATE PreFun - 0x926273D6 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_CREATE PostFun - 0x92628248 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_NETWORK_QUERY_OPEN PreFun - 0x92628630 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_WRITE PreFun - 0x9262865E - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_DIRECTORY_CONTROL PreFun - 0x9262AD0E - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_CLEANUP PreFun - 0x926288E6 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_CLEANUP PostFun - 0x92628C2A - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_QUERY_INFORMATION PostFun - 0x92629670 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_SET_INFORMATION PreFun - 0x92628C76 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_SET_INFORMATION PostFun - 0x9262A120 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0x926297B6 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_FILE_SYSTEM_CONTROL PostFun - 0x9262B602 - C:\Windows\system32\drivers\aswSnx.sys
       [0x8716E7A0]IRP_MJ_QUERY_VOLUME_INFORMATION PreFun - 0x92629BAC - C:\Windows\system32\drivers\aswSnx.sys
       [0x8BECF518]InstanceSetup - 0x9B7D962B - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]GenerateFileName - 0x9B7D58FA - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]NormalizeNameComponentEx - 0x9B7D59B2 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_VOLUME_DISMOUNT PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_VOLUME_MOUNT PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_MDL_WRITE_COMPLETE PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_PREPARE_MDL_WRITE PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_MDL_READ_COMPLETE PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_MDL_READ PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_NETWORK_QUERY_OPEN PreFun - 0x9B7D4A9E - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_FAST_IO_CHECK_IF_POSSIBLE PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RESERVED(-12) PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RESERVED(-11) PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RESERVED(-10) PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RESERVED(-9) PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RESERVED(-8) PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RESERVED(-7) PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RELEASE_FOR_CC_FLUSH PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_ACQUIRE_FOR_CC_FLUSH PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RELEASE_FOR_MOD_WRITE PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_ACQUIRE_FOR_MOD_WRITE PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_RELEASE_FOR_SECTION_SYNCHRONIZATION PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_ACQUIRE_FOR_SECTION_SYNCHRONIZATION PreFun - 0x9B7D41D1 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CREATE PreFun - 0x9B7D4263 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CREATE PostFun - 0x9B7D74E8 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CREATE_NAMED_PIPE PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CLOSE PreFun - 0x9B7D4877 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_READ PreFun - 0x9B7CD158 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_READ PostFun - 0x9B7CDBA7 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_WRITE PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_WRITE PostFun - 0x9B7CDBA7 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_QUERY_INFORMATION PreFun - 0x9B7D4AC8 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_QUERY_INFORMATION PostFun - 0x9B7CDBF9 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SET_INFORMATION PreFun - 0x9B7D4005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SET_INFORMATION PostFun - 0x9B7CDC55 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_QUERY_EA PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SET_EA PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_FLUSH_BUFFERS PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_QUERY_VOLUME_INFORMATION PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SET_VOLUME_INFORMATION PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_DIRECTORY_CONTROL PreFun - 0x9B7D4D29 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_DIRECTORY_CONTROL PostFun - 0x9B7CDC97 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0x9B7D4BD7 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_FILE_SYSTEM_CONTROL PostFun - 0x9B7DC7D4 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_DEVICE_CONTROL PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_INTERNAL_DEVICE_CONTROL PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SHUTDOWN PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_LOCK_CONTROL PreFun - 0x9B7D4837 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CLEANUP PreFun - 0x9B7D4992 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CLEANUP PostFun - 0x9B7D4AA9 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_CREATE_MAILSLOT PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_QUERY_SECURITY PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SET_SECURITY PreFun - 0x9B7CD005 - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_POWER PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SYSTEM_CONTROL PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_DEVICE_CHANGE PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_QUERY_QUOTA PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_SET_QUOTA PreFun - 0x9B7CD0CC - C:\Windows\system32\drivers\luafv.sys
       [0x8BECF518]IRP_MJ_PNP_POWER PreFun - 0x9B7D8330 - C:\Windows\system32\drivers\luafv.sys
       [0x86C08008]FilterUnload - 0x8CF4BB6A - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_CREATE PreFun - 0x8CF4BE84 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_CREATE PostFun - 0x8CF4CD6C - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_CLEANUP PreFun - 0x8CF4C086 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_CLEANUP PostFun - 0x8CF4C946 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_CLOSE PreFun - 0x8CF4C0B2 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_CLOSE PostFun - 0x8CF466C8 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_READ PreFun - 0x8CF46A44 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_READ PostFun - 0x8CF4655E - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_WRITE PreFun - 0x8CF46A44 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_WRITE PostFun - 0x8CF4655E - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_SET_INFORMATION PreFun - 0x8CF466E0 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_SET_INFORMATION PostFun - 0x8CF467FE - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0x8CF4A288 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_FILE_SYSTEM_CONTROL PostFun - 0x8CF46626 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_FLUSH_BUFFERS PreFun - 0x8CF4C120 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_FLUSH_BUFFERS PostFun - 0x8CF466C8 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_DIRECTORY_CONTROL PreFun - 0x8CF4A3B6 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_DIRECTORY_CONTROL PostFun - 0x8CF466C8 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_QUERY_INFORMATION PreFun - 0x8CF46074 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_QUERY_INFORMATION PostFun - 0x8CF466C8 - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_PNP_POWER PreFun - 0x8CF4A4EC - C:\Windows\system32\drivers\fileinfo.sys
       [0x86C08008]IRP_MJ_PNP_POWER PostFun - 0x8CF46100 - C:\Windows\system32\drivers\fileinfo.sys

==========================================================================================

File System

       Disk - 0x86C22A38 - FatCdRomRecognizer - 0x86C21E98 - \FileSystem\Fs_Rec
       Disk - 0x86C21958 - UdfsCdRomRecognizer - 0x86C21E98 - \FileSystem\Fs_Rec
       Disk - 0x86C21BD8 - CdfsRecognizer - 0x86C21E98 - \FileSystem\Fs_Rec
       Disk - 0x85F71AC8 - RawCdRom - 0x85F831B8 - \FileSystem\RAW
       CdRom - 0x86D00610 - Mup - 0x85EBBC50 - \FileSystem\Mup
       Tape - 0x86C22900 - ExFatRecognizer - 0x86C21E98 - \FileSystem\Fs_Rec
       Tape - 0x86C22B70 - FatDiskRecognizer - 0x86C21E98 - \FileSystem\Fs_Rec
       Tape - 0x86C20140 - UdfsDiskRecognizer - 0x86C21E98 - \FileSystem\Fs_Rec
       Tape - 0x86C08C90 - Ntfs - 0x86BD8B30 - \FileSystem\Ntfs
       Tape - 0x867EC1B0 - RawDisk - 0x85F831B8 - \FileSystem\RAW

==========================================================================================

Sfilter FileSystem Filter Callback

       \FileSystem\FltMgr - 0x86C12870 - PreAcquireForSectionSynchronization - 0x8CF16BCC - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PostAcquireForSectionSynchronization - 0x8CF16688 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PreReleaseForSectionSynchronization - 0x8CF16BCC - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PostReleaseForSectionSynchronization - 0x8CF16688 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PreAcquireForCcFlush - 0x8CF16BCC - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PostAcquireForCcFlush - 0x8CF16688 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PreReleaseForCcFlush - 0x8CF16BCC - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PostReleaseForCcFlush - 0x8CF16688 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PreAcquireForModifiedPageWriter - 0x8CF16BCC - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PostAcquireForModifiedPageWriter - 0x8CF16688 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PreReleaseForModifiedPageWriter - 0x8CF16BCC - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0x86C12870 - PostReleaseForModifiedPageWriter - 0x8CF16688 - C:\Windows\system32\drivers\fltmgr.sys

==========================================================================================

ClassInitData Callback

       Disk FdoData.ClassError - OK - 0x8D3ACDCC - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassReadWriteVerification - OK - 0x8D3AC5C2 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassDeviceControl - OK - 0x8D3ACB5E - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassShutdownFlush - OK - 0x8D3B4212 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassInitDevice - OK - 0x8D3B678E - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassStartDevice - OK - 0x8D3B60D2 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassPowerDevice - OK - 0x8D3AE1D8 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassStopDevice - OK - 0x8D3ADFEE - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassRemoveDevice - OK - 0x8D3B66D8 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassQueryWmiRegInfo - OK - 0x8D3B4A62 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassQueryWmiDataBlock - OK - 0x8D3B4B02 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassSetWmiDataBlock - OK - 0x8D3B4D82 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassSetWmiDataItem - OK - 0x8D3B4EEA - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassExecuteWmiMethod - OK - 0x8D3B5432 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassWmiFunctionControl - OK - 0x8D3B52A8 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk ClassAddDevice - OK - 0x8D3B5EE6 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation
       Disk ClassUnload - OK - 0x8D3B1422 - C:\Windows\system32\DRIVERS\disk.sys - Microsoft Corporation

==========================================================================================

Npfs Dispatch Fun

       IRP_MJ_CREATE - OK - 0x92605ABA - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x9260614A - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x9260546E - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_READ - OK - 0x92608C0C - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x9260A086 - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x9260755A - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x9260759E - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x926076C4 - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x92609E66 - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x92606D92 - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x926088A6 - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x926052CA - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x92609318 - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x9260935C - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

Msfs Dispatch Fun

       IRP_MJ_CREATE - OK - 0x927EE9A2 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x927EE3E4 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_READ - OK - 0x927F0254 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x927F11C2 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x927EFBA2 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x927EFBCE - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x927F1058 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x927EF5A6 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x927EFE62 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x927EE2A6 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x927EEDEA - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x927F062C - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x927F0658 - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

System Debug

       KiDebugRoutine OK - 0x8333268B - 0x8333268B - C:\Windows\system32\ntkrnlpa.exe

==========================================================================================

Object Hijack

       0x8BAC8028 - DeviceObject - 2233932960 - Abnormal DeviceObject/DriverObject

==========================================================================================

Direct IO

       Nothing

==========================================================================================

GDT

       cpu[0] - Selector(0x0001) - Type(Code RE Ac)
       cpu[0] - Selector(0x0002) - Type(Data RW Ac)
       cpu[0] - Selector(0x0003) - Type(Code RE Ac)
       cpu[0] - Selector(0x0004) - Type(Data RW Ac)
       cpu[0] - Selector(0x0005) - Type(T5532 Busy)
       cpu[0] - Selector(0x0007) - Type(Data RW Ac)
       cpu[0] - Selector(0x0008) - Type(Data RW)
       cpu[0] - Selector(0x000A) - Type(T5532 Avl)
       cpu[0] - Selector(0x000E) - Type(Data RW)
       cpu[0] - Selector(0x0014) - Type(T5532 Avl)
       cpu[0] - Selector(0x001D) - Type(Data RW)
       cpu[0] - Selector(0x001E) - Type(Code EO)
       cpu[0] - Selector(0x001F) - Type(Data RW)
       cpu[1] - Selector(0x0001) - Type(Code RE Ac)
       cpu[1] - Selector(0x0002) - Type(Data RW Ac)
       cpu[1] - Selector(0x0003) - Type(Code RE Ac)
       cpu[1] - Selector(0x0004) - Type(Data RW Ac)
       cpu[1] - Selector(0x0005) - Type(T5532 Busy)
       cpu[1] - Selector(0x0007) - Type(Data RW Ac)
       cpu[1] - Selector(0x0008) - Type(Data RW)
       cpu[1] - Selector(0x000A) - Type(T5532 Avl)
       cpu[1] - Selector(0x000E) - Type(Data RW)
       cpu[1] - Selector(0x0014) - Type(T5532 Avl)
       cpu[1] - Selector(0x001D) - Type(Data RW)
       cpu[1] - Selector(0x001E) - Type(Code EO)
       cpu[1] - Selector(0x001F) - Type(Data RW)

==========================================================================================

SSDT

       NtAcceptConnectPort - OK - 0x834CEFBF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheck - OK - 0x83316855 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheckAndAuditAlarm - OK - 0x8345ED47 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheckByType - OK - 0x8327A897 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheckByTypeAndAuditAlarm - OK - 0x834D0895 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheckByTypeResultList - OK - 0x83353112 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheckByTypeResultListAndAuditAlarm - OK - 0x835410D7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAccessCheckByTypeResultListAndAuditAlarmByHandle - OK - 0x83541120 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAddAtom - OK - 0x83453563 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAddBootEntry - ssdt hook - 0x9263CB10 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtAddDriverEntry - OK - 0x8355BC2D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAdjustGroupsToken - OK - 0x83449D3B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAdjustPrivilegesToken - ssdt hook - 0x926F44FA - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtAlertResumeThread - OK - 0x83533DA3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlertThread - OK - 0x83486CC7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAllocateLocallyUniqueId - OK - 0x834568AB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAllocateReserveObject - OK - 0x833EC9E3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAllocateUserPhysicalPages - OK - 0x83525C88 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAllocateUuids - OK - 0x8343D28C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAllocateVirtualMemory - OK - 0x8347FCBC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcAcceptConnectPort - OK - 0x834CC191 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcCancelMessage - OK - 0x8342D300 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcConnectPort - ssdt hook - 0x926F46EE - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtAlpcCreatePort - OK - 0x8344ADB2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcCreatePortSection - OK - 0x834DC95A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcCreateResourceReserve - OK - 0x8344D435 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcCreateSectionView - OK - 0x834DC73A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcCreateSecurityContext - OK - 0x834D4E92 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcDeletePortSection - OK - 0x8345F2CF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcDeleteResourceReserve - OK - 0x83520A25 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcDeleteSectionView - OK - 0x834D225F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcDeleteSecurityContext - OK - 0x834DCB8C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcDisconnectPort - OK - 0x834B5577 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcImpersonateClientOfPort - OK - 0x834D02C4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcOpenSenderProcess - OK - 0x83461EF4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcOpenSenderThread - OK - 0x83455EED - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcQueryInformation - OK - 0x83447CB8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcQueryInformationMessage - OK - 0x834B5DFE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcRevokeSecurityContext - OK - 0x83520B49 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcSendWaitReceivePort - OK - 0x834A8225 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAlpcSetInformation - OK - 0x834558FD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtApphelpCacheControl - OK - 0x834673DF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAreMappedFilesTheSame - OK - 0x834231AB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtAssignProcessToJobObject - ssdt hook - 0x9263D5EE - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCallbackReturn - OK - 0x832D3F60 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCancelIoFile - OK - 0x8341E68B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCancelIoFileEx - OK - 0x83452E8D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCancelSynchronousIoFile - OK - 0x8350D35C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCancelTimer - OK - 0x832803E6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtClearEvent - OK - 0x83481DD0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtClose - OK - 0x8349A5C8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCloseObjectAuditAlarm - OK - 0x834D07C4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCommitComplete - OK - 0x835489CA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCommitEnlistment - OK - 0x835486EA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCommitTransaction - OK - 0x83429A81 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCompactKeys - OK - 0x834F23B3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCompareTokens - OK - 0x83450E43 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCompleteConnectPort - OK - 0x83455EE3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCompressKey - OK - 0x834F261F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtConnectPort - ssdt hook - 0x926F37AA - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtContinue - OK - 0x832962C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateDebugObject - OK - 0x8350301D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateDirectoryObject - OK - 0x834586E4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateEnlistment - OK - 0x833FAB05 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateEvent - ssdt hook - 0x926495E0 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCreateEventPair - ssdt hook - 0x9264962C - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCreateFile - ssdt hook - 0x926F4128 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtCreateIoCompletion - ssdt hook - 0x926497C6 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCreateJobObject - OK - 0x83447ABF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateJobSet - OK - 0x83535B1E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateKey - OK - 0x83457009 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateKeyedEvent - OK - 0x83465EE2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateKeyTransacted - OK - 0x83427AFE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateMailslotFile - OK - 0x8345B50E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateMutant - ssdt hook - 0x9264954E - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCreateNamedPipeFile - OK - 0x834D688F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreatePagingFile - OK - 0x833E249E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreatePort - OK - 0x834478A6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreatePrivateNamespace - OK - 0x83429647 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateProcess - OK - 0x835321D1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateProcessEx - OK - 0x8353221C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateProfile - OK - 0x83561167 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateProfileEx - OK - 0x8356112D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateResourceManager - OK - 0x833FD421 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateSection - ssdt hook - 0x926F3EBA - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtCreateSemaphore - ssdt hook - 0x92649596 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCreateSymbolicLinkObject - ssdt hook - 0x926F52AE - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtCreateThread - ssdt hook - 0x926F3154 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtCreateThreadEx - ssdt hook - 0x926F4938 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtCreateTimer - ssdt hook - 0x92649780 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtCreateToken - OK - 0x8345ACA7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateTransaction - OK - 0x83425F2A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateTransactionManager - OK - 0x833FD22D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateUserProcess - OK - 0x834C43DD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateWaitablePort - OK - 0x833FA1E4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtCreateWorkerFactory - OK - 0x834660FD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDebugActiveProcess - ssdt hook - 0x9263E3DC - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtDebugContinue - OK - 0x83504597 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDelayExecution - OK - 0x8347EBC9 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeleteAtom - OK - 0x834421C2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeleteBootEntry - ssdt hook - 0x9263CB76 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtDeleteDriverEntry - OK - 0x8355BC5F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeleteFile - OK - 0x833EE75D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeleteKey - OK - 0x83441A58 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeleteObjectAuditAlarm - OK - 0x834E0D7D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeletePrivateNamespace - OK - 0x834E9A94 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeleteValueKey - OK - 0x83433461 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDeviceIoControlFile - OK - 0x834C974F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDisableLastKnownGood - OK - 0x8351D884 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDisplayString - OK - 0x83558C5B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDrawText - OK - 0x83369FA8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtDuplicateObject - ssdt hook - 0x92641B58 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtDuplicateToken - OK - 0x834C1CFB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnableLastKnownGood - OK - 0x8351D965 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnumerateBootEntries - OK - 0x8355AC09 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnumerateDriverEntries - OK - 0x8355BE5F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnumerateKey - OK - 0x834BCDE0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnumerateSystemEnvironmentValuesEx - OK - 0x8355A7E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnumerateTransactionObject - OK - 0x8354950A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtEnumerateValueKey - OK - 0x834BF246 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtExtendSection - OK - 0x83523E07 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFilterToken - OK - 0x8343AEBF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFindAtom - OK - 0x83446A46 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushBuffersFile - OK - 0x8345E2F6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushInstallUILanguage - OK - 0x833EA9CA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushInstructionCache - OK - 0x834556BD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushKey - OK - 0x83434B06 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushProcessWriteBuffers - OK - 0x8327B1BE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushVirtualMemory - OK - 0x83430220 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFlushWriteBuffer - OK - 0x83526DA7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFreeUserPhysicalPages - OK - 0x83526429 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFreeVirtualMemory - OK - 0x8330E82C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFreezeRegistry - OK - 0x833293A2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFreezeTransactions - OK - 0x8354995A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtFsControlFile - OK - 0x834ABA4D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetContextThread - OK - 0x834EB15F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetCurrentProcessorNumber - OK - 0x834EB0F4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetDevicePowerState - OK - 0x8352F20F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetMUIRegistryInfo - OK - 0x83466F73 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetNextProcess - OK - 0x83533F94 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetNextThread - OK - 0x834E2FA8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetNlsSectionPtr - OK - 0x8342F6B6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetNotificationResourceManager - OK - 0x83549ABA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetPlugPlayEvent - OK - 0x83414F2F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtGetWriteWatch - OK - 0x833404A1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtImpersonateAnonymousToken - OK - 0x8344B970 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtImpersonateClientOfPort - OK - 0x8351FB8F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtImpersonateThread - OK - 0x834CF992 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtInitializeNlsFiles - OK - 0x834B22E8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtInitializeRegistry - OK - 0x833EE27A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtInitiatePowerAction - OK - 0x834E5961 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtIsProcessInJob - OK - 0x834E707B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtIsSystemResumeAutomatic - OK - 0x8352F1F6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtIsUILanguageComitted - OK - 0x833E8EA4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtListenPort - OK - 0x833E5D30 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLoadDriver - ssdt hook - 0x926F4CB4 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtLoadKey - OK - 0x833E74E1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLoadKey2 - OK - 0x833D4A69 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLoadKeyEx - OK - 0x833F7F22 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLockFile - OK - 0x8345950A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLockProductActivationKeys - OK - 0x833CE07A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLockRegistryKey - OK - 0x833C96EC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtLockVirtualMemory - OK - 0x8327A19E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtMakePermanentObject - OK - 0x8341C279 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtMakeTemporaryObject - ssdt hook - 0x926F3A8E - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtMapCMFModule - OK - 0x8346651F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtMapUserPhysicalPages - OK - 0x83524F49 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtMapUserPhysicalPagesScatter - OK - 0x8352551F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtMapViewOfSection - OK - 0x8349C5F1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtModifyBootEntry - ssdt hook - 0x9263CBDC - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtModifyDriverEntry - OK - 0x8355BE30 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtNotifyChangeDirectoryFile - OK - 0x8344BF5C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtNotifyChangeKey - ssdt hook - 0x92641F4E - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtNotifyChangeMultipleKeys - ssdt hook - 0x9263EE6C - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtNotifyChangeSession - OK - 0x83415E33 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenDirectoryObject - OK - 0x834987D2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenEnlistment - OK - 0x83547F51 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenEvent - ssdt hook - 0x9264960A - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenEventPair - ssdt hook - 0x9264964E - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenFile - ssdt hook - 0x926F4320 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtOpenIoCompletion - ssdt hook - 0x926497EA - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenJobObject - OK - 0x83535497 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenKey - OK - 0x834A18D2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenKeyEx - OK - 0x83465CA1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenKeyedEvent - OK - 0x83560B0B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenKeyTransacted - OK - 0x83425231 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenKeyTransactedEx - OK - 0x834251C1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenMutant - ssdt hook - 0x92649574 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenObjectAuditAlarm - OK - 0x8342E5A2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenPrivateNamespace - OK - 0x8342FFF7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenProcess - ssdt hook - 0x92641452 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenProcessToken - OK - 0x834BA37F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenProcessTokenEx - OK - 0x834A7E52 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenResourceManager - OK - 0x833D3114 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenSection - ssdt hook - 0x926F3D42 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtOpenSemaphore - ssdt hook - 0x926495BE - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenSession - OK - 0x834DCD15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenSymbolicLinkObject - OK - 0x834A3DFF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenThread - ssdt hook - 0x9264183A - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenThreadToken - OK - 0x834CE67B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenThreadTokenEx - OK - 0x834A7F69 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenTimer - ssdt hook - 0x926497A4 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtOpenTransaction - OK - 0x83548CAF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtOpenTransactionManager - OK - 0x83549F4F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPlugPlayControl - OK - 0x8343963E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPowerInformation - OK - 0x83496BBD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrepareComplete - OK - 0x8354885A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrepareEnlistment - OK - 0x83548578 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrePrepareComplete - OK - 0x83548912 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrePrepareEnlistment - OK - 0x83548632 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrivilegeCheck - OK - 0x8344CAE5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrivilegedServiceAuditAlarm - OK - 0x8341C028 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPrivilegeObjectAuditAlarm - OK - 0x83436B8A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPropagationComplete - OK - 0x8354A6AA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtPropagationFailed - OK - 0x8354A772 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtProtectVirtualMemory - ssdt hook - 0x962BC0CC - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       NtPulseEvent - OK - 0x834E9945 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryAttributesFile - OK - 0x834ADD4C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryBootEntryOrder - OK - 0x8355B0AA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryBootOptions - OK - 0x8355B4EF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryDebugFilterState - OK - 0x8331A176 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryDefaultLocale - OK - 0x834CCF23 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryDefaultUILanguage - OK - 0x833F900C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryDirectoryFile - OK - 0x83489F82 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryDirectoryObject - OK - 0x834AEDCB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryDriverEntryOrder - OK - 0x8355B9ED - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryEaFile - OK - 0x833E7C05 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryEvent - OK - 0x834509C4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryFullAttributesFile - OK - 0x834D696B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationAtom - OK - 0x83442393 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationEnlistment - OK - 0x8354815C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationFile - OK - 0x834ABA80 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationJobObject - OK - 0x834E249D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationPort - OK - 0x8351FBC4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationProcess - OK - 0x8348C8B5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationResourceManager - OK - 0x83549BC4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationThread - OK - 0x834B30E8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationToken - OK - 0x834A8389 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationTransaction - OK - 0x83548EA2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationTransactionManager - OK - 0x833D2C1C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInformationWorkerFactory - OK - 0x8336ABCF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryInstallUILanguage - OK - 0x83434D78 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryIntervalProfile - OK - 0x835614D7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryIoCompletion - OK - 0x8350D11A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryKey - OK - 0x834A1F3E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryLicenseValue - OK - 0x8345806C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryMultipleValueKey - OK - 0x83436DF9 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryMutant - OK - 0x83560BE8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryObject - ssdt hook - 0x9263ED38 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtQueryOpenSubKeys - OK - 0x834F1EA5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryOpenSubKeysEx - OK - 0x834E0196 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryPerformanceCounter - OK - 0x8346643B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryPortInformationProcess - OK - 0x8353269C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryQuotaInformationFile - OK - 0x8350E6F5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySection - OK - 0x834CCD7D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySecurityAttributesToken - OK - 0x8344C476 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySecurityObject - OK - 0x8344FFF2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySemaphore - OK - 0x83559A68 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySymbolicLinkObject - OK - 0x834A3EA5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySystemEnvironmentValue - OK - 0x83559C3F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySystemEnvironmentValueEx - OK - 0x8355A233 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySystemInformation - OK - 0x83485F45 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySystemInformationEx - OK - 0x834BF164 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQuerySystemTime - OK - 0x834CCE8E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryTimer - OK - 0x8356053A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryTimerResolution - OK - 0x83442870 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryValueKey - OK - 0x834A0695 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryVirtualMemory - OK - 0x834B1A82 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueryVolumeInformationFile - OK - 0x834AC673 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueueApcThread - OK - 0x83451E50 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtQueueApcThreadEx - ssdt hook - 0x9263EA46 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtRaiseException - OK - 0x83296308 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRaiseHardError - OK - 0x8342D16B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReadFile - OK - 0x834B8007 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReadFileScatter - OK - 0x833ED762 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReadOnlyEnlistment - OK - 0x83548B3A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReadRequestData - OK - 0x8351FCA9 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReadVirtualMemory - OK - 0x834B5BA7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRecoverEnlistment - OK - 0x83548102 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRecoverResourceManager - OK - 0x833FD94E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRecoverTransactionManager - OK - 0x833FF1EA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRegisterProtocolAddressInformation - OK - 0x8354A4FE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRegisterThreadTerminatePort - OK - 0x835333DC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReleaseKeyedEvent - OK - 0x8348635E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReleaseMutant - OK - 0x8347EACD - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReleaseSemaphore - OK - 0x83468D2F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReleaseWorkerFactoryWorker - OK - 0x832D9097 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRemoveIoCompletion - OK - 0x8345BC6D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRemoveIoCompletionEx - OK - 0x83456C6D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRemoveProcessDebug - OK - 0x83504025 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRenameKey - OK - 0x834F20EB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRenameTransactionManager - OK - 0x8354A19A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReplaceKey - OK - 0x834F1C38 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReplacePartitionUnit - OK - 0x833320AF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReplyPort - OK - 0x83446B84 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReplyWaitReceivePort - OK - 0x8348E854 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReplyWaitReceivePortEx - OK - 0x8348E3D7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtReplyWaitReplyPort - OK - 0x8351FE77 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRequestPort - OK - 0x834D67CB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRequestWaitReplyPort - OK - 0x83493B22 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtResetEvent - OK - 0x83431FBE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtResetWriteWatch - OK - 0x83340AF2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRestoreKey - OK - 0x834E7CA2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtResumeProcess - OK - 0x83533D3D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtResumeThread - OK - 0x834C66D2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRollbackComplete - OK - 0x83548BF2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRollbackEnlistment - OK - 0x835487A2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRollbackTransaction - OK - 0x833FBD2C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtRollforwardTransactionManager - OK - 0x8354A2FC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSaveKey - OK - 0x834E9514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSaveKeyEx - OK - 0x834E8CBA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSaveMergedKeys - OK - 0x834F0F5B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSecureConnectPort - OK - 0x834B4137 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSerializeBoot - OK - 0x833E0F9F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetBootEntryOrder - ssdt hook - 0x9263CC42 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtSetBootOptions - ssdt hook - 0x9263CCA8 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtSetContextThread - ssdt hook - 0x962BC316 - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       NtSetDebugFilterState - OK - 0x833C69D4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetDefaultHardErrorPort - OK - 0x833E4950 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetDefaultLocale - OK - 0x833F8D91 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetDefaultUILanguage - OK - 0x833F9300 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetDriverEntryOrder - OK - 0x8355C261 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetEaFile - OK - 0x8350E188 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetEvent - OK - 0x8347F938 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetEventBoostPriority - OK - 0x83559723 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetHighEventPair - OK - 0x83560AA1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetHighWaitLowEventPair - OK - 0x835609D3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationDebugObject - OK - 0x8350475D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationEnlistment - OK - 0x835483A2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationFile - OK - 0x834ACB07 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationJobObject - OK - 0x83451E74 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationKey - OK - 0x834F174D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationObject - OK - 0x8345E4F3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationProcess - OK - 0x8348E875 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationResourceManager - OK - 0x83549DD2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationThread - OK - 0x834BFE36 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationToken - OK - 0x8345995F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationTransaction - OK - 0x83549704 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationTransactionManager - OK - 0x8354A3C1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetInformationWorkerFactory - OK - 0x833026A5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetIntervalProfile - OK - 0x835614B4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetIoCompletion - OK - 0x83439CBA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetIoCompletionEx - OK - 0x8350D240 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetLdtEntries - OK - 0x83535157 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetLowEventPair - OK - 0x83560A3E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetLowWaitHighEventPair - OK - 0x83560968 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetQuotaInformationFile - OK - 0x8350ED0B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetSecurityObject - OK - 0x83457805 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetSystemEnvironmentValue - OK - 0x83559F39 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetSystemEnvironmentValueEx - OK - 0x8355A54B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetSystemInformation - ssdt hook - 0x926F4FB4 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtSetSystemPowerState - ssdt hook - 0x9263C9CE - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtSetSystemTime - OK - 0x834E620E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetThreadExecutionState - OK - 0x834ECEEB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetTimer - OK - 0x832D91C1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetTimerEx - OK - 0x832EB8B2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetTimerResolution - OK - 0x83446C85 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetUuidSeed - OK - 0x833E8392 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetValueKey - OK - 0x83460606 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSetVolumeInformationFile - OK - 0x8350ED25 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtShutdownSystem - ssdt hook - 0x926F39F8 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtShutdownWorkerFactory - OK - 0x83468B7C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSignalAndWaitForSingleObject - OK - 0x833233FE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSinglePhaseReject - OK - 0x83548A82 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtStartProfile - OK - 0x835611F0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtStopProfile - OK - 0x835613E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtSuspendProcess - ssdt hook - 0x9263E5A6 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtSuspendThread - ssdt hook - 0x9263E708 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtSystemDebugControl - ssdt hook - 0x926F3C2E - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtTerminateJobObject - OK - 0x834484B7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtTerminateProcess - ssdt hook - 0x962BC194 - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       NtTerminateThread - ssdt hook - 0x926F3358 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtTestAlert - OK - 0x834C5E81 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtThawRegistry - OK - 0x83329405 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtThawTransactions - OK - 0x83549A3A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtTraceControl - OK - 0x834A5C47 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtTraceEvent - OK - 0x8331CAE2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtTranslateFilePath - OK - 0x8355C465 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUmsThreadYield - OK - 0x8351FB3F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnloadDriver - OK - 0x8350F583 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnloadKey - OK - 0x834DE8A1 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnloadKey2 - OK - 0x834DE8BB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnloadKeyEx - OK - 0x834F10F3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnlockFile - OK - 0x8345C08E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnlockVirtualMemory - OK - 0x83272B24 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtUnmapViewOfSection - OK - 0x834BA9BA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtVdmControl - ssdt hook - 0x9263CD0E - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtWaitForDebugEvent - OK - 0x8350427B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitForKeyedEvent - OK - 0x83486087 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitForMultipleObjects - OK - 0x8347E68F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitForMultipleObjects32 - OK - 0x83529CF0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitForSingleObject - OK - 0x8347DD41 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitForWorkViaWorkerFactory - OK - 0x832D8C20 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitHighEventPair - OK - 0x835608FF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWaitLowEventPair - OK - 0x83560896 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWorkerFactoryWorkerReady - OK - 0x83312ED7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWriteFile - OK - 0x834C52B2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWriteFileGather - OK - 0x833F53A7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWriteRequestData - OK - 0x8351FD16 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       NtWriteVirtualMemory - ssdt hook - 0x9263D64A - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtYieldExecution - OK - 0x83280C55 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

Shadow SSDT

       NtGdiAbortDoc - OK - 0x9CFD7D81 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAbortPath - OK - 0x9CFEFD79 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddFontResourceW - OK - 0x9CE47252 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddRemoteFontToDC - OK - 0x9CFE6BB1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddFontMemResourceEx - OK - 0x9CFF1527 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRemoveMergeFont - OK - 0x9CFD859E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddRemoteMMInstanceToDC - OK - 0x9CFD8632 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAlphaBlend - inline hook - 0x92643BD4 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtGdiAngleArc - OK - 0x9CFF0D52 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAnyLinkedFonts - OK - 0x9CEB36EB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFontIsLinked - OK - 0x9CEB3608 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiArcInternal - OK - 0x9CFF3025 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBeginGdiRendering - OK - 0x9CFF1243 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBeginPath - OK - 0x9CFEFDED - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBitBlt - ssdt hook - 0x926F7F02 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtGdiCancelDC - OK - 0x9CFF1196 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCheckBitmapBits - OK - 0x9CFF3DC9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCloseFigure - OK - 0x9CFEFCF4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiClearBitmapAttributes - OK - 0x9CF26A73 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiClearBrushAttributes - OK - 0x9CFF12CD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiColorCorrectPalette - OK - 0x9CFF37BD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCombineRgn - OK - 0x9CEB3DE5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCombineTransform - OK - 0x9CF5AF3D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiComputeXformCoefficients - OK - 0x9CF7F436 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiConfigureOPMProtectedOutput - OK - 0x9CFF47B5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiConvertMetafileRect - OK - 0x9CFE9735 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateBitmap - OK - 0x9CF154BA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateBitmapFromDxSurface - OK - 0x9CFF1233 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateClientObj - OK - 0x9CF6A099 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateColorSpace - OK - 0x9CFF3680 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateColorTransform - OK - 0x9CFF3A4A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateCompatibleBitmap - OK - 0x9CEEECD7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateCompatibleDC - inline hook - 0x92643722 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtGdiCreateDIBBrush - OK - 0x9CF554EE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateDIBitmapInternal - OK - 0x9CEDA98F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateDIBSection - OK - 0x9CEFDEFF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateEllipticRgn - OK - 0x9CFDD851 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateHalftonePalette - OK - 0x9CE7EB3B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateHatchBrushInternal - OK - 0x9CFF4B95 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateMetafileDC - OK - 0x9CF6A11E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateOPMProtectedOutputs - OK - 0x9CF3B4E1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreatePaletteInternal - OK - 0x9CEB2803 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreatePatternBrushInternal - OK - 0x9CED7FF9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreatePen - OK - 0x9CF85FD1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateRectRgn - OK - 0x9CEE2DAD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateRoundRectRgn - OK - 0x9CEB0681 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateServerMetaFile - OK - 0x9CFF563B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateSolidBrush - OK - 0x9CF18231 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiD3dContextCreate - OK - 0x9CFD1E13 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiD3dContextDestroy - OK - 0x9CFD1E26 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiD3dContextDestroyAll - OK - 0x9CFD1E39 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiD3dValidateTextureStageState - OK - 0x9CFD1E4C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiD3dDrawPrimitives2 - OK - 0x9CFD1E5F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetDriverState - OK - 0x9CFD1E72 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdAddAttachedSurface - OK - 0x9CFD1AF7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdAlphaBlt - OK - 0x9CFD1F74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdAttachSurface - OK - 0x9CFD1B0A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdBeginMoCompFrame - OK - 0x9CFD1F1F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdBlt - OK - 0x9CFD1B1D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCanCreateSurface - OK - 0x9CFD1B30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCanCreateD3DBuffer - OK - 0x9CFD1DEA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdColorControl - OK - 0x9CFD1B43 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateDirectDrawObject - OK - 0x9CF5910A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateSurface - OK - 0x9CFD1B56 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateD3DBuffer - OK - 0x9CFD1DD4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateMoComp - OK - 0x9CFD1EF3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateSurfaceObject - OK - 0x9CFD1B6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDeleteDirectDrawObject - OK - 0x9CFD1B98 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDeleteSurfaceObject - OK - 0x9CFD1B82 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDestroyMoComp - OK - 0x9CFD1F09 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDestroySurface - OK - 0x9CFD1BAE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDestroyD3DBuffer - OK - 0x9CFD1DFD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdEndMoCompFrame - OK - 0x9CFD1F32 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdFlip - OK - 0x9CFD1BC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdFlipToGDISurface - OK - 0x9CFD1C74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetAvailDriverMemory - OK - 0x9CFD1BDA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetBltStatus - OK - 0x9CFD1BF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetDC - OK - 0x9CFD1C06 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetDriverInfo - OK - 0x9CFD1C1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetDxHandle - OK - 0x9CFD1D7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetFlipStatus - OK - 0x9CFD1C32 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetInternalMoCompInfo - OK - 0x9CFD1EDD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetMoCompBuffInfo - OK - 0x9CFD1EC7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetMoCompGuids - OK - 0x9CFD1E9B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetMoCompFormats - OK - 0x9CFD1EB1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdGetScanLine - OK - 0x9CFD1C48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdLock - OK - 0x9CFD1C8A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdLockD3D - OK - 0x9CFD1DA8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdQueryDirectDrawObject - OK - 0x9CFD1CA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdQueryMoCompStatus - OK - 0x9CFD1F5E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdReenableDirectDrawObject - OK - 0x9CFD1CB6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdReleaseDC - OK - 0x9CFD1CCC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdRenderMoComp - OK - 0x9CFD1F48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdResetVisrgn - OK - 0x9CFD1CE2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdSetColorKey - OK - 0x9CFD1CF8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdSetExclusiveMode - OK - 0x9CFD1C5E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdSetGammaRamp - OK - 0x9CFD1D92 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateSurfaceEx - OK - 0x9CFD1E85 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdSetOverlayPosition - OK - 0x9CFD1D0E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdUnattachSurface - OK - 0x9CFD1D24 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdUnlock - OK - 0x9CFD1D3A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdUnlockD3D - OK - 0x9CFD1DBE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdUpdateOverlay - OK - 0x9CFD1D50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdWaitForVerticalBlank - OK - 0x9CFD1D66 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpCanCreateVideoPort - OK - 0x9CFD1F87 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpColorControl - OK - 0x9CFD1F9D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpCreateVideoPort - OK - 0x9CFD1FB3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpDestroyVideoPort - OK - 0x9CFD1FC9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpFlipVideoPort - OK - 0x9CFD1FDF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortBandwidth - OK - 0x9CFD1FF5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortField - OK - 0x9CFD200B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortFlipStatus - OK - 0x9CFD2021 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortInputFormats - OK - 0x9CFD2037 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortLine - OK - 0x9CFD204D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortOutputFormats - OK - 0x9CFD2063 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoPortConnectInfo - OK - 0x9CFD2079 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpGetVideoSignalStatus - OK - 0x9CFD208F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpUpdateVideoPort - OK - 0x9CFD20A5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpWaitForVideoPortSync - OK - 0x9CFD20BB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpAcquireNotification - OK - 0x9CFD20D1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDvpReleaseNotification - OK - 0x9CFD20E7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0x9CFD1AE4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteClientObj - OK - 0x9CF773CE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteColorSpace - OK - 0x9CFF3650 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteColorTransform - OK - 0x9CFF3CE6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteObjectApp - ssdt & inline - 0x926F884A - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtGdiDescribePixelFormat - OK - 0x9CFF208B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDestroyOPMProtectedOutput - OK - 0x9CF3C218 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPerBandInfo - OK - 0x9CFD826A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDoBanding - OK - 0x9CFD8145 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDoPalette - OK - 0x9CEE473C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDrawEscape - OK - 0x9CFF0D9C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEllipse - OK - 0x9CFF60C2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEnableEudc - OK - 0x9CE46591 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndDoc - OK - 0x9CFD7D69 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndGdiRendering - OK - 0x9CFF1253 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndPage - OK - 0x9CFD7E8A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndPath - OK - 0x9CFEFE9F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEnumFonts - OK - 0x9CEB862E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEnumObjects - OK - 0x9CFF809B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEqualRgn - OK - 0x9CF80FB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEudcLoadUnloadLink - OK - 0x9CFF7E50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExcludeClipRect - OK - 0x9CEB4ECE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtCreatePen - OK - 0x9CF54094 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtCreateRegion - OK - 0x9CE81EE7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtEscape - OK - 0x9CF6BF87 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtFloodFill - OK - 0x9CF758D3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtGetObjectW - OK - 0x9CEF8A01 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtSelectClipRgn - OK - 0x9CEF2AC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtTextOutW - OK - 0x9CF009F2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFillPath - OK - 0x9CFF018A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFillRgn - OK - 0x9CF7E4DE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFlattenPath - OK - 0x9CFEFEFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFlush - OK - 0x9CF09851 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiForceUFIMapping - OK - 0x9CFF202A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFrameRgn - OK - 0x9CF84D7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFullscreenControl - OK - 0x9CFE27A5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetAndSetDCDword - OK - 0x9CF728FB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetAppClipBox - OK - 0x9CF0228D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetBitmapBits - OK - 0x9CE87342 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetBitmapDimension - OK - 0x9CFF1F66 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetBoundsRect - OK - 0x9CE98B44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCertificate - OK - 0x9CF3B572 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCertificateSize - OK - 0x9CF3B76C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharABCWidthsW - OK - 0x9CEC6334 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharacterPlacementW - OK - 0x9CFF071A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharSet - OK - 0x9CEF15FD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharWidthW - OK - 0x9CF67631 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharWidthInfo - OK - 0x9CE7DF9F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetColorAdjustment - OK - 0x9CFF1022 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetColorSpaceforBitmap - OK - 0x9CFF85E2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCOPPCompatibleOPMInformation - OK - 0x9CFF474F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCDword - OK - 0x9CEF2213 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCforBitmap - OK - 0x9CEB8C1D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCObject - OK - 0x9CEF8916 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCPoint - OK - 0x9CF7FE30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceCaps - OK - 0x9CEFDE8C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceGammaRamp - OK - 0x9CFF3F34 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceCapsAll - OK - 0x9CF6249F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDIBitsInternal - OK - 0x9CEE2AEF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetETM - OK - 0x9CFF93BB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetEudcTimeStampEx - OK - 0x9CFF72C3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontData - OK - 0x9CEB3257 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontFileData - OK - 0x9CFF9D09 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontFileInfo - OK - 0x9CF29B0B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontResourceInfoInternalW - OK - 0x9CFF178B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetGlyphIndicesW - OK - 0x9CEAEE1E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetGlyphIndicesWInternal - OK - 0x9CEAECC2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetGlyphOutline - OK - 0x9CFF0E89 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetOPMInformation - OK - 0x9CF3B16F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetKerningPairs - OK - 0x9CF6AB4D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetLinkedUFIs - OK - 0x9CFD8321 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetMiterLimit - OK - 0x9CF5548D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetMonitorID - OK - 0x9CF549D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetNearestColor - OK - 0x9CEB07E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetNearestPaletteIndex - OK - 0x9CF6ABF5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetObjectBitmapHandle - OK - 0x9CF557D2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetOPMRandomNumber - OK - 0x9CF3CBC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetOutlineTextMetricsInternalW - OK - 0x9CEB309A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPath - OK - 0x9CFF0508 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPixel - inline hook - 0x92643772 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtGdiGetRandomRgn - OK - 0x9CEFF757 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRasterizerCaps - OK - 0x9CFF0F9E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRealizationInfo - OK - 0x9CEAEC13 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRegionData - OK - 0x9CEB3B39 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRgnBox - OK - 0x9CEA8190 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetServerMetaFileBits - OK - 0x9CFF573B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       DxgStubContextCreate - OK - 0x9CFD27C5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetStats - OK - 0x9CFF9EEC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetStockObject - OK - 0x9CF133BB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetStringBitmapW - OK - 0x9CFF7FA7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetSuggestedOPMProtectedOutputArraySize - OK - 0x9CF3A5CF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetSystemPaletteUse - OK - 0x9CF582A9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextCharsetInfo - OK - 0x9CE9602F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextExtent - OK - 0x9CFF130D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextExtentExW - OK - 0x9CE9552F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextFaceW - OK - 0x9CEB7D33 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextMetricsW - OK - 0x9CEB7CBA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTransform - OK - 0x9CE83090 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetUFI - OK - 0x9CFF19C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetEmbUFI - OK - 0x9CFF1AA6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetUFIPathname - OK - 0x9CFF1BA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetEmbedFonts - OK - 0x9CFF1953 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiChangeGhostFont - OK - 0x9CFF195D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddEmbFontToDC - OK - 0x9CFD6DFF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontUnicodeRanges - OK - 0x9CF44479 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetWidthTable - OK - 0x9CEAFCC5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGradientFill - OK - 0x9CF7FE86 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHfontCreate - OK - 0x9CEC3EAB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiIcmBrushInfo - OK - 0x9CFF4231 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       IsIMMEnabledSystem - OK - 0x9CF114BE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiInitSpool - OK - 0x9CFDF8E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiIntersectClipRect - OK - 0x9CEF11E2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiInvertRgn - OK - 0x9CF6F9A3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiLineTo - OK - 0x9CF7914C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMakeFontDir - OK - 0x9CFF2116 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMakeInfoDC - OK - 0x9CFF8713 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMaskBlt - ssdt & inline - 0x926F8058 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtGdiModifyWorldTransform - OK - 0x9CE82F7F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMonoBitmap - OK - 0x9CF55792 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMoveTo - OK - 0x9CFF11C6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiOffsetClipRgn - OK - 0x9CFDD981 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiOffsetRgn - OK - 0x9CE9D37D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiOpenDCW - ssdt & inline - 0x926F86FE - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtGdiPatBlt - OK - 0x9CE919A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyPatBlt - OK - 0x9CF20B24 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPathToRegion - OK - 0x9CFF024D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPlgBlt - ssdt & inline - 0x926F81BA - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtGdiPolyDraw - OK - 0x9CFF0C5C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyPolyDraw - OK - 0x9CF79CDC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyTextOutW - OK - 0x9CF1E8CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPtInRegion - OK - 0x9CF4D5FD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPtVisible - OK - 0x9CFDDADB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiQueryFonts - OK - 0x9CFF143C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiQueryFontAssocInfo - OK - 0x9CF133CB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRectangle - OK - 0x9CF89FCA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRectInRegion - OK - 0x9CF4D536 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRectVisible - OK - 0x9CEBB618 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRemoveFontResourceW - OK - 0x9CFF1623 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRemoveFontMemResourceEx - OK - 0x9CFF176F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiResetDC - OK - 0x9CF71A8B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiResizePalette - OK - 0x9CFF521F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRestoreDC - OK - 0x9CEAE429 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRoundRect - OK - 0x9CF7760C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSaveDC - OK - 0x9CEADFD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiScaleViewportExtEx - OK - 0x9CFE94A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiScaleWindowExtEx - OK - 0x9CFF1F03 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       GreSelectBitmap - OK - 0x9CF1538E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectBrush - OK - 0x9CFF11A6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectClipPath - OK - 0x9CFF009A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectFont - OK - 0x9CEF160D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectPen - OK - 0x9CFF11B6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBitmapAttributes - OK - 0x9CE509D1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBitmapBits - OK - 0x9CE848CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBitmapDimension - OK - 0x9CFF1FC3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBoundsRect - OK - 0x9CE968B1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBrushAttributes - OK - 0x9CFF12AD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBrushOrg - OK - 0x9CF65C3E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetColorAdjustment - OK - 0x9CFF1078 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetColorSpace - OK - 0x9CFF3913 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetDeviceGammaRamp - OK - 0x9CFF3FBB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetDIBitsToDeviceInternal - OK - 0x9CED4787 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetFontEnumeration - OK - 0x9CEB8BBB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetFontXform - OK - 0x9CF5ED7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetIcmMode - OK - 0x9CF6A9FA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetLinkedUFIs - OK - 0x9CFD778B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetMagicColors - OK - 0x9CF27B47 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetMetaRgn - OK - 0x9CF5926D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetMiterLimit - OK - 0x9CF5EC97 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceWidth - OK - 0x9CFF1EF3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMirrorWindowOrg - OK - 0x9CFF1EE3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetLayout - OK - 0x9CE7BE0D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetOPMSigningKeyAndSequenceNumbers - OK - 0x9CF3CCC7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetPixel - OK - 0x9CF8D59D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetPixelFormat - OK - 0x9CFFAC26 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetRectRgn - OK - 0x9CFF12FD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetSystemPaletteUse - OK - 0x9CFF1223 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetTextJustification - OK - 0x9CFFA3A5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetVirtualResolution - OK - 0x9CF5AEB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetSizeDevice - OK - 0x9CF5EC41 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStartDoc - OK - 0x9CFD789A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStartPage - OK - 0x9CFD7D99 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStretchBlt - ssdt & inline - 0x926F8310 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtGdiStretchDIBitsInternal - OK - 0x9CEE49EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStrokeAndFillPath - OK - 0x9CFF0332 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStrokePath - OK - 0x9CFF042F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSwapBuffers - OK - 0x9CFFADFB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiTransformPoints - OK - 0x9CE82885 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiTransparentBlt - inline hook - 0x92643B2C - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       DxgStubEnableDirectDrawRedirection - OK - 0x9CF41D11 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUnmapMemFont - OK - 0x9CFF151C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUnrealizeObject - OK - 0x9CFF12ED - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUpdateColors - OK - 0x9CFF5482 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiWidenPath - OK - 0x9CFEFF87 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserActivateKeyboardLayout - OK - 0x9CE8B0A2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAddClipboardFormatListener - inline hook - 0x9264266E - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserAlterWindowStyle - OK - 0x9CF9EE5A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAssociateInputContext - OK - 0x9CEB3D81 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAttachThreadInput - inline hook - 0x92642CCA - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserBeginPaint - OK - 0x9CEEE661 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBitBltSysBmp - OK - 0x9CF74468 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBlockInput - ssdt & inline - 0x926F7D72 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserBuildHimcList - OK - 0x9CEEB88A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBuildHwndList - ssdt hook - 0xE149A8D0 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserBuildNameList - inline hook - 0x92642AC8 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserBuildPropList - OK - 0x9CF9F161 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwnd - OK - 0x9CE61A0B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndLock - OK - 0x9CEE88FE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndOpt - OK - 0x9CE51084 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndParam - OK - 0x9CEB9AF1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndParamLock - ssdt & inline - 0x926F6ACE - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserCallMsgFilter - OK - 0x9CF85370 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallNextHookEx - OK - 0x9CF6B053 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallNoParam - OK - 0x9CF14A71 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallOneParam - OK - 0x9CF14A1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallTwoParam - OK - 0x9CEDA8DB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChangeClipboardChain - OK - 0x9CF7452D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChangeDisplaySettings - OK - 0x9CF520E5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDisplayConfigBufferSizes - OK - 0x9CE71718 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetDisplayConfig - OK - 0x9CF9F678 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryDisplayConfig - OK - 0x9CE65EC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisplayConfigGetDeviceInfo - OK - 0x9CF29C86 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisplayConfigSetDeviceInfo - OK - 0x9CF9F994 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckAccessForIntegrityLevel - OK - 0x9CFA2264 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckDesktopByThreadId - OK - 0x9CE81FC2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckWindowThreadDesktop - OK - 0x9CF9EEFF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckMenuItem - OK - 0x9CF41D3B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChildWindowFromPointEx - OK - 0x9CF67D28 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserClipCursor - OK - 0x9CF30214 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCloseClipboard - OK - 0x9CF7F2FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCloseDesktop - OK - 0x9CED1467 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCloseWindowStation - OK - 0x9CEBE9A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserConsoleControl - OK - 0x9CF1E533 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserConvertMemHandle - OK - 0x9CF3401C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCopyAcceleratorTable - OK - 0x9CF79AC1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCountClipboardFormats - OK - 0x9CF87780 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateAcceleratorTable - OK - 0x9CE85753 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateCaret - OK - 0x9CF85871 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateDesktopEx - OK - 0x9CE5EB3E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateInputContext - OK - 0x9CF5B2BF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateLocalMemHandle - OK - 0x9CF35EB5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateWindowEx - OK - 0x9CEE1F58 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateWindowStation - OK - 0x9CE48ECB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDdeInitialize - OK - 0x9CE759D6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDeferWindowPos - OK - 0x9CE8ED14 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDefSetText - OK - 0x9CF712C5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDeleteMenu - OK - 0x9CEEA77C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyAcceleratorTable - OK - 0x9CF81DF4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyCursor - OK - 0x9CE9347B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyInputContext - OK - 0x9CF72EA7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyMenu - OK - 0x9CE83821 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyWindow - ssdt & inline - 0xE149B020 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserDisableThreadIme - OK - 0x9CE80C65 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDispatchMessage - OK - 0x9CEF11F2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDoSoundConnect - OK - 0x9CE461FD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDoSoundDisconnect - OK - 0x9CF28758 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDragDetect - OK - 0x9CF9F25B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDragObject - OK - 0x9CF9D9A2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawAnimatedRects - OK - 0x9CF9E45C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawCaption - OK - 0x9CF9E51F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawCaptionTemp - OK - 0x9CF9FBAC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawIconEx - OK - 0x9CEBF3C1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawMenuBarTemp - OK - 0x9CF9FADB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEmptyClipboard - OK - 0x9CF34136 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableMenuItem - OK - 0x9CF5B30E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableScrollBar - OK - 0x9CF5EF64 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndDeferWindowPosEx - OK - 0x9CE8ECB7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndMenu - OK - 0x9CE8B4DE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndPaint - OK - 0x9CF005FE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnumDisplayDevices - OK - 0x9CEE35B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnumDisplayMonitors - OK - 0x9CED3B63 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnumDisplaySettings - OK - 0x9CEC6B2B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEvent - OK - 0x9CF9DB04 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserExcludeUpdateRgn - OK - 0x9CF6FCF2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFillWindow - OK - 0x9CF7FD47 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFindExistingCursorIcon - OK - 0x9CEC8EE9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFindWindowEx - ssdt hook - 0xE149AB70 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserFlashWindowEx - OK - 0x9CF6E052 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFrostCrashedWindow - OK - 0x9CFA220F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAltTabInfo - OK - 0x9CF9DFAE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAncestor - OK - 0x9CEBC9E7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAppImeLevel - OK - 0x9CFA0C86 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAsyncKeyState - ssdt & inline - 0x926F7A00 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserGetAtomName - OK - 0x9CED7988 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCaretBlinkTime - OK - 0x9CEC56BC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCaretPos - OK - 0x9CF7B084 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClassInfoEx - OK - 0x9CECEF0E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClassName - OK - 0x9CEB6C94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardData - ssdt & inline - 0x926F846C - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserGetClipboardFormatName - OK - 0x9CF52F71 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardOwner - OK - 0x9CF7F37D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardSequenceNumber - OK - 0x9CF7F357 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardViewer - OK - 0x9CF9E66C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipCursor - OK - 0x9CF9E301 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetComboBoxInfo - OK - 0x9CF79C10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetControlBrush - OK - 0x9CF53270 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetControlColor - OK - 0x9CF9E5C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCPD - OK - 0x9CE8A0D5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCursorFrameInfo - OK - 0x9CF71F3B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCursorInfo - OK - 0x9CF9DE75 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDC - OK - 0x9CEFDD82 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDCEx - OK - 0x9CEB4F05 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDoubleClickTime - OK - 0x9CE91411 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetForegroundWindow - ssdt hook - 0xE149AC10 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserGetGuiResources - OK - 0x9CFA3017 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGUIThreadInfo - OK - 0x9CED859D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetIconInfo - OK - 0x9CEBEEF5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetIconSize - OK - 0x9CEE58C3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetImeHotKey - OK - 0x9CFA0B56 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetImeInfoEx - OK - 0x9CEAC2AB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetInputLocaleInfo - OK - 0x9CF9F57E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetInternalWindowPos - OK - 0x9CF9DC12 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyboardLayoutList - OK - 0x9CE83A60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyboardLayoutName - OK - 0x9CF9F491 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyboardState - ssdt & inline - 0x926F7714 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserGetKeyNameText - OK - 0x9CF9F418 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyState - ssdt & inline - 0x926F7884 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserGetListBoxInfo - OK - 0x9CF9DE1D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMenuBarInfo - OK - 0x9CF9B83C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMenuIndex - OK - 0x9CF9E38B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMenuItemRect - OK - 0x9CF31B1E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMessage - OK - 0x9CF0B923 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMouseMovePointsEx - OK - 0x9CF9EAC1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetObjectInformation - OK - 0x9CEBE1AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetOpenClipboardWindow - OK - 0x9CF884CB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPriorityClipboardFormat - OK - 0x9CF9E698 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetProcessWindowStation - OK - 0x9CEC8437 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputBuffer - OK - 0x9CFA1AC3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputData - OK - 0x9CFA14F9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputDeviceInfo - OK - 0x9CFA1683 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputDeviceList - OK - 0x9CFA1963 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRegisteredRawInputDevices - OK - 0x9CFA1A88 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetScrollBarInfo - OK - 0x9CF01E16 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetSystemMenu - OK - 0x9CEEA59F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetThreadDesktop - OK - 0x9CF18117 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetThreadState - OK - 0x9CEEBCFE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTitleBarInfo - OK - 0x9CEF161D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTopLevelWindow - OK - 0x9CF9E1B7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetUpdatedClipboardFormats - OK - 0x9CFA208F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetUpdateRect - OK - 0x9CEA8A33 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetUpdateRgn - OK - 0x9CF72F73 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowCompositionInfo - OK - 0x9CEB0DD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowCompositionAttribute - OK - 0x9CEEAC69 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowDC - OK - 0x9CEF3FCE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowDisplayAffinity - OK - 0x9CF9E1F7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowPlacement - OK - 0x9CF93871 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWOWClass - OK - 0x9CF9DB89 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGhostWindowFromHungWindow - OK - 0x9CE98558 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHardErrorControl - OK - 0x9CFA2D68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHideCaret - OK - 0x9CE82ECF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHiliteMenuItem - OK - 0x9CF9E71B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHungWindowFromGhostWindow - OK - 0x9CF463EA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserImpersonateDdeClientWindow - OK - 0x9CF9F3AB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitialize - OK - 0x9CE5387A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitializeClientPfnArrays - OK - 0x9CE5BF4D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitTask - OK - 0x9CF9DCE4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInternalGetWindowText - OK - 0x9CEF33DA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInternalGetWindowIcon - OK - 0x9CF47E12 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInvalidateRect - OK - 0x9CEFF68C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInvalidateRgn - OK - 0x9CE8AAC7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsClipboardFormatAvailable - OK - 0x9CF7F31B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsTopLevelWindow - OK - 0x9CEA81E5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserKillTimer - OK - 0x9CF00883 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLoadKeyboardLayoutEx - OK - 0x9CE4A1D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLockWindowStation - OK - 0x9CE5F2C1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLockWindowUpdate - OK - 0x9CF41531 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLockWorkStation - OK - 0x9CF2928B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLogicalToPhysicalPoint - OK - 0x9CF9B313 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMapVirtualKeyEx - OK - 0x9CF98C66 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMenuItemFromPoint - OK - 0x9CF9ED17 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMessageCall - ssdt hook - 0xE149B080 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserMinMaximize - OK - 0x9CF9E7C6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMNDragLeave - OK - 0x9CF9E8EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMNDragOver - OK - 0x9CF9E854 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserModifyUserStartupInfoFlags - OK - 0x9CF9EE18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMoveWindow - ssdt hook - 0x926F67FA - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserNotifyIMEStatus - OK - 0x9CEB396F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserNotifyProcessCreate - OK - 0x9CF18CDB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserNotifyWinEvent - OK - 0x9CED3A97 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenClipboard - OK - 0x9CF7F267 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenDesktop - inline hook - 0x926427EE - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserOpenInputDesktop - inline hook - 0x926428B4 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserOpenThreadDesktop - OK - 0x9CF9EEAA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenWindowStation - OK - 0x9CEBEA46 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPaintDesktop - OK - 0x9CE722D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPaintMonitor - OK - 0x9CE72ABC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPeekMessage - OK - 0x9CEFD1DF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPhysicalToLogicalPoint - OK - 0x9CF92F73 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPostMessage - ssdt & inline - 0x926F6F14 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserPostThreadMessage - ssdt hook - 0xE149ADB0 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserPrintWindow - OK - 0x9CFA146B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserProcessConnect - OK - 0x9CF18518 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryInformationThread - OK - 0x9CF28316 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryInputContext - OK - 0x9CEB3664 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQuerySendMessage - OK - 0x9CF9F307 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryWindow - ssdt hook - 0xE149ADF0 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserRealChildWindowFromPoint - OK - 0x9CF9DF70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRealInternalGetMessage - OK - 0x9CEFE205 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRealWaitMessageEx - OK - 0x9CF9EC57 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRedrawWindow - OK - 0x9CED84C1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterClassExWOW - OK - 0x9CECE479 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterErrorReportingDialog - OK - 0x9CFA21D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterUserApiHook - OK - 0x9CE509F1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterHotKey - ssdt & inline - 0x926F85A8 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserRegisterRawInputDevices - ssdt & inline - 0x926F7B7C - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserRegisterServicesProcess - OK - 0x9CE413F6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterTasklist - OK - 0x9CF9DDE9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterWindowMessage - OK - 0x9CEBB8F9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoveClipboardFormatListener - OK - 0x9CFA2025 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoveMenu - OK - 0x9CE87BDB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoveProp - OK - 0x9CF015C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserResolveDesktopForWOW - OK - 0x9CFA2EEE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSBGetParms - OK - 0x9CF01EE5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserScrollDC - OK - 0x9CF1FAA2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserScrollWindowEx - OK - 0x9CF827BB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSelectPalette - OK - 0x9CEB8BF1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSendInput - ssdt & inline - 0x926F754E - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserSetActiveWindow - OK - 0x9CEB63EA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetAppImeLevel - OK - 0x9CFA0C20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCapture - OK - 0x9CF9358A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetChildWindowNoActivate - OK - 0x9CE467E6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClassLong - OK - 0x9CE7AD3A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClassWord - OK - 0x9CF9E909 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClipboardData - OK - 0x9CF34086 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClipboardViewer - ssdt & inline - 0x926F7C7A - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserSetCursor - OK - 0x9CEB632B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCursorContents - OK - 0x9CF9ECD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCursorIconData - OK - 0x9CEDB33F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetFocus - OK - 0x9CE975E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImeHotKey - OK - 0x9CE4A02B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImeInfoEx - OK - 0x9CE50897 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImeOwnerWindow - OK - 0x9CEB371F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetInformationThread - OK - 0x9CE94AE2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetInternalWindowPos - OK - 0x9CF9E0C7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetKeyboardState - OK - 0x9CF96889 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenu - OK - 0x9CF8CA4F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenuContextHelpId - OK - 0x9CF9E3EB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenuDefaultItem - OK - 0x9CE87C5C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenuFlagRtoL - OK - 0x9CF9E428 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetObjectInformation - OK - 0x9CFA2E2D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetParent - ssdt hook - 0xE149AE80 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserSetProcessWindowStation - OK - 0x9CEBE126 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetProp - OK - 0x9CEF61A5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProp - OK - 0x9CF007C7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetScrollInfo - OK - 0x9CF01AD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetShellWindowEx - OK - 0x9CE51107 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSysColors - inline hook - 0x9264229E - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserSetSystemCursor - OK - 0x9CF9EC97 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSystemMenu - OK - 0x9CF7406D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSystemTimer - OK - 0x9CF9F2B9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadDesktop - OK - 0x9CEBDDAD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadLayoutHandles - OK - 0x9CFA0CEE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadState - OK - 0x9CF7A183 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetTimer - OK - 0x9CEECE40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProcessDPIAware - OK - 0x9CF1E311 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowCompositionAttribute - OK - 0x9CE9A863 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowDisplayAffinity - OK - 0x9CF9E288 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowFNID - OK - 0x9CECF0EA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowLong - ssdt hook - 0xE149AFA0 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserSetWindowPlacement - OK - 0x9CE879C7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowPos - OK - 0x9CED0F84 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowRgn - OK - 0x9CE87081 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowRgnEx - OK - 0x9CEB4797 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowRgnEx - OK - 0x9CF74C14 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowsHookAW - OK - 0x9CF9E945 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowsHookEx - ssdt & inline - 0x926F8888 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserSetWindowStationUser - OK - 0x9CE492ED - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowWord - OK - 0x9CF5B386 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWinEventHook - ssdt & inline - 0x926F8B5A - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserShowCaret - OK - 0x9CE82E95 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowScrollBar - OK - 0x9CF7A335 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowWindow - ssdt hook - 0xE149AFE0 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserShowWindowAsync - OK - 0x9CF9E971 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSoundSentry - OK - 0x9CF44528 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSwitchDesktop - inline hook - 0x92642A9C - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserSystemParametersInfo - ssdt & inline - 0x926F6C70 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       NtUserTestForInteractiveUser - OK - 0x9CF9EDB5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserThunkedMenuInfo - OK - 0x9CF876B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserThunkedMenuItemInfo - OK - 0x9CEE9D70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserToUnicodeEx - OK - 0x9CF30415 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTrackMouseEvent - OK - 0x9CEC7694 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTrackPopupMenuEx - OK - 0x9CF8173A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCalculatePopupWindowPosition - OK - 0x9CF292FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCalcMenuBar - OK - 0x9CEF1750 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPaintMenuBar - OK - 0x9CF9C593 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTranslateAccelerator - OK - 0x9CF8DD88 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTranslateMessage - OK - 0x9CF98373 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnhookWindowsHookEx - OK - 0x9CE92AF1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnhookWinEvent - OK - 0x9CEEB9EF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnloadKeyboardLayout - OK - 0x9CF9F22D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnlockWindowStation - OK - 0x9CE61498 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterClass - OK - 0x9CED7DC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterUserApiHook - OK - 0x9CE509B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterHotKey - inline hook - 0x92642E4C - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       NtUserUpdateInputContext - OK - 0x9CEC3BD8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateInstance - OK - 0x9CF9DA7D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateLayeredWindow - OK - 0x9CEA83B2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetLayeredWindowAttributes - OK - 0x9CFA1395 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetLayeredWindowAttributes - OK - 0x9CE90701 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdatePerUserSystemParameters - OK - 0x9CE4A9D3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUserHandleGrantAccess - OK - 0x9CF9EF6F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserValidateHandleSecure - OK - 0x9CF79124 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserValidateRect - OK - 0x9CF6B522 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserValidateTimerCallback - OK - 0x9CF0367B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserVkKeyScanEx - OK - 0x9CF74A9B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitForInputIdle - OK - 0x9CF6E140 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitForMsgAndEvent - OK - 0x9CF9D97A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitMessage - OK - 0x9CF02815 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWindowFromPhysicalPoint - OK - 0x9CF8F40D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWindowFromPoint - ssdt hook - 0xE149AF10 - C:\Users\Vladimir\Desktop\PCHunter32ad.sys - File not found
       NtUserYieldTask - OK - 0x9CF9EB8D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteConnect - OK - 0x9CE5DA1F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteRedrawRectangle - OK - 0x9CF9D891 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteRedrawScreen - OK - 0x9CF9D8E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteStopScreenUpdates - OK - 0x9CF9D938 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCtxDisplayIOCtl - OK - 0x9CFA2C94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterSessionPort - OK - 0x9CE4664D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterSessionPort - OK - 0x9CFA1D38 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateWindowTransform - OK - 0x9CFA12A2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmStartRedirection - OK - 0x9CE6294F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmStopRedirection - OK - 0x9CF4D60D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowMinimizeRect - OK - 0x9CE9624A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxBindSwapChain - OK - 0x9CF3B811 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxOpenSwapChain - OK - 0x9CF3C820 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxReleaseSwapChain - OK - 0x9CF3BB36 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxSetSwapChainBindingStatus - OK - 0x9CF3BDFD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxQuerySwapChainBindingStatus - OK - 0x9CF3CA94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxReportPendingBindingsToDwm - OK - 0x9CE63B32 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxGetSwapChainStats - OK - 0x9CF3B2AE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDxSetSwapChainStats - OK - 0x9CF0B2B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmGetLogicalSurfaceBinding - OK - 0x9CFA1D73 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSfmDestroyLogicalSurfaceBinding - OK - 0x9CFA1EBC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserModifyWindowTouchCapability - OK - 0x9CFA2360 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsTouchWindow - OK - 0x9CFA23C7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSendTouchInput - OK - 0x9CFA2453 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndTouchOperation - OK - 0x9CFA2597 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTouchInputInfo - OK - 0x9CFA2628 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChangeWindowMessageFilterEx - OK - 0x9CED8294 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInjectGesture - OK - 0x9CFA2709 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGestureInfo - OK - 0x9CFA28D5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGestureExtArgs - OK - 0x9CFA299A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserManageGestureHandlerWindow - OK - 0x9CFA2A74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetGestureConfig - OK - 0x9CE5EEF9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGestureConfig - OK - 0x9CFA2AF6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngAssociateSurface - OK - 0x9CFFBE8B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateBitmap - OK - 0x9CFFBF9C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateDeviceSurface - OK - 0x9CFFB616 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateDeviceBitmap - OK - 0x9CFFB686 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreatePalette - OK - 0x9CF7251C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngComputeGlyphSet - OK - 0x9CFFF950 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCopyBits - OK - 0x9CFFC9D7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeletePalette - OK - 0x9CF6A3A6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeleteSurface - OK - 0x9CFFBF20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngEraseSurface - OK - 0x9CFFC1A3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngUnlockSurface - OK - 0x9CFFC170 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngLockSurface - OK - 0x9CFFC139 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngBitBlt - OK - 0x9CFFD2AE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStretchBlt - OK - 0x9CFFCB6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngPlgBlt - OK - 0x9CFFD0CE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngMarkBandingSurface - OK - 0x9CFFBF4D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStrokePath - OK - 0x9CFFD56D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngFillPath - OK - 0x9CFFD755 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStrokeAndFillPath - OK - 0x9CFFD8B2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngPaint - OK - 0x9CFFDA9A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngLineTo - OK - 0x9CFFDBAE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngAlphaBlend - OK - 0x9CFFDCD1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngGradientFill - OK - 0x9CFFDE3C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngTransparentBlt - OK - 0x9CFFE072 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngTextOut - OK - 0x9CFFE1CA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStretchBltROP - OK - 0x9CFFCDD9 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXLATEOBJ_cGetPalette - OK - 0x9CFFF851 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXLATEOBJ_iXlate - OK - 0x9CFFF905 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXLATEOBJ_hGetColorTransform - OK - 0x9CFFF80A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCLIPOBJ_bEnum - OK - 0x9CFFE428 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCLIPOBJ_cEnumStart - OK - 0x9CFFE3A1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCLIPOBJ_ppoGetPath - OK - 0x9CFFC2A5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeletePath - OK - 0x9CFFC2DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateClip - OK - 0x9CFFC30F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeleteClip - OK - 0x9CFFC33A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_ulGetBrushColor - OK - 0x9CFFE5A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_pvAllocRbrush - OK - 0x9CFFE50F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_pvGetRbrush - OK - 0x9CFFE559 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_hGetColorTransform - OK - 0x9CFFE680 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXFORMOBJ_bApplyXform - OK - 0x9CFFE6C7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXFORMOBJ_iGetXform - OK - 0x9CFFE81D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_vGetInfo - OK - 0x9CFFE8C6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pxoGetXform - OK - 0x9CFFC36D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_cGetGlyphs - OK - 0x9CFFE9B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pifi - OK - 0x9CFFEE19 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pfdg - OK - 0x9CFFEC2E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pQueryGlyphAttrs - OK - 0x9CFFED1B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pvTrueTypeFontFile - OK - 0x9CFFF73D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_cGetAllGlyphHandles - OK - 0x9CFFEB62 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_bEnum - OK - 0x9CFFF039 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_bEnumPositionsOnly - OK - 0x9CFFF057 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_bGetAdvanceWidths - OK - 0x9CFFF075 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_vEnumStart - OK - 0x9CFFF14F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_dwGetCodePage - OK - 0x9CFFF18C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_vGetBounds - OK - 0x9CFFF26F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_bEnum - OK - 0x9CFFF2F1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_vEnumStart - OK - 0x9CFFF445 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_vEnumStartClipLines - OK - 0x9CFFF4B2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_bEnumClipLines - OK - 0x9CFFF5C5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDhpdev - OK - 0x9CFFC3A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCheckAbort - OK - 0x9CFFC3DA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHT_Get8BPPFormatPalette - OK - 0x9CFFC43C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHT_Get8BPPMaskPalette - OK - 0x9CFFC4C7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUpdateTransform - OK - 0x9CFE96FA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetPUMPDOBJ - OK - 0x9CF72CC5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_DeleteRbrush - OK - 0x9CFFF1D3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUnmapMemFont - OK - 0x9CFF151C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDrawStream - OK - 0x9CEF2BBD - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSfmGetNotificationTokens - OK - 0x9CF0A2AF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHLSurfGetInformation - OK - 0x9CED8974 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHLSurfSetInformation - OK - 0x9CEC7441 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateAllocation - OK - 0x9CED16A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryResourceInfo - OK - 0x9CEEB0C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenResource - OK - 0x9CEEB0E7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyAllocation - OK - 0x9CEEB547 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetAllocationPriority - OK - 0x9CF52976 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryAllocationResidency - OK - 0x9CF798E7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateDevice - OK - 0x9CE73E05 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyDevice - OK - 0x9CF52476 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateContext - OK - 0x9CE73DE6 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyContext - OK - 0x9CF52CEA - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateSynchronizationObject - OK - 0x9CF3CB56 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenSynchronizationObject - OK - 0x9CFD22C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroySynchronizationObject - OK - 0x9CF3C26C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForSynchronizationObject - OK - 0x9CF3A5B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISignalSynchronizationObject - OK - 0x9CF3A591 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetRuntimeData - OK - 0x9CFD22E7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryAdapterInfo - OK - 0x9CE73DC7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDILock - OK - 0x9CEEAA73 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIUnlock - OK - 0x9CEEAA92 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetDisplayModeList - OK - 0x9CF52C00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetDisplayMode - OK - 0x9CE724D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetMultisampleMethodList - OK - 0x9CFD2306 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIPresent - OK - 0x9CF0BB43 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIRender - OK - 0x9CF0B0C4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenAdapterFromDeviceName - OK - 0x9CE62396 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenAdapterFromHdc - OK - 0x9CE73BF3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICloseAdapter - OK - 0x9CE73B6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetSharedPrimaryHandle - OK - 0x9CF4D81B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIEscape - OK - 0x9CE73E24 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryStatistics - OK - 0x9CFD2325 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetVidPnSourceOwner - OK - 0x9CE71AFB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetPresentHistory - OK - 0x9CF0A127 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetPresentQueueEvent - OK - 0x9CE71C52 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateOverlay - OK - 0x9CFD2344 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIUpdateOverlay - OK - 0x9CFD2363 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIFlipOverlay - OK - 0x9CFD2382 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyOverlay - OK - 0x9CFD23A1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForVerticalBlankEvent - OK - 0x9CF0B0E3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetGammaRamp - OK - 0x9CFD23C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetDeviceState - OK - 0x9CF0A35B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateDCFromMemory - OK - 0x9CF2D22C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyDCFromMemory - OK - 0x9CF300EE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetContextSchedulingPriority - OK - 0x9CF52F18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetContextSchedulingPriority - OK - 0x9CFD23DF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetProcessSchedulingPriorityClass - OK - 0x9CE61E81 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetProcessSchedulingPriorityClass - OK - 0x9CFD23FE - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIReleaseProcessVidPnSourceOwners - OK - 0x9CFD241D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetScanLine - OK - 0x9CF3B1D5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetQueuedLimit - OK - 0x9CF3A804 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIPollDisplayChildren - OK - 0x9CFD2455 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIInvalidateActiveVidPn - OK - 0x9CFD2474 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckOcclusion - OK - 0x9CFD2493 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForIdle - OK - 0x9CFD24B2 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckMonitorPowerState - OK - 0x9CF0B102 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckExclusiveOwnership - OK - 0x9CF3A7F1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetDisplayPrivateDriverFormat - OK - 0x9CFD24D1 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISharedPrimaryLockNotification - OK - 0x9CFD3674 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISharedPrimaryUnLockNotification - OK - 0x9CFD36E3 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateKeyedMutex - OK - 0x9CFD24F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenKeyedMutex - OK - 0x9CFD250F - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyKeyedMutex - OK - 0x9CFD252E - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIAcquireKeyedMutex - OK - 0x9CFD254D - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIReleaseKeyedMutex - OK - 0x9CFD256C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIConfigureSharedResource - OK - 0x9CF3CD55 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetOverlayState - OK - 0x9CFD258B - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckVidPnExclusiveOwnership - OK - 0x9CF04198 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckSharedResourceAccess - OK - 0x9CF3CA5A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       DxgStubEnableDirectDrawRedirection - OK - 0x9CF41D11 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       DxgStubDeleteDirectDrawObject - OK - 0x9CF59100 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetNumberOfPhysicalMonitors - OK - 0x9CFFFCED - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPhysicalMonitors - OK - 0x9CFFFD1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPhysicalMonitorDescription - OK - 0x9D0006C5 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       DestroyPhysicalMonitor - OK - 0x9D0009EF - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetVCPFeature - OK - 0x9D00076A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCISetVCPFeature - OK - 0x9D0007FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCISaveCurrentSettings - OK - 0x9D000812 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetCapabilitiesStringLength - OK - 0x9D000B7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetCapabilitiesString - OK - 0x9D000BDB - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetTimingReport - OK - 0x9D000828 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateFullscreenSprite - OK - 0x9CFD27DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdNotifyFullscreenSpriteUpdate - OK - 0x9CFD27EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDestroyFullscreenSprite - OK - 0x9CFD27FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdQueryVisRgnUniqueness - OK - 0x9CFD197A - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMirrorRendering - OK - 0x9CF9E9F4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowSystemCursor - OK - 0x9CF9EA79 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMagControl - OK - 0x9CF56048 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMagSetContextInformation - OK - 0x9CF560B7 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMagGetContextInformation - OK - 0x9CF55840 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHwndQueryRedirectionInfo - OK - 0x9CF52495 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHwndSetRedirectionInfo - OK - 0x9CF44FC7 - C:\Windows\System32\win32k.sys - Microsoft Corporation

==========================================================================================

FSD

       IRP_MJ_CREATE - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_READ - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_WRITE - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_QUERY_INFORMATION - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SET_INFORMATION - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_QUERY_EA - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SET_EA - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_FLUSH_BUFFERS - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_QUERY_VOLUME_INFORMATION - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SET_VOLUME_INFORMATION - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_DIRECTORY_CONTROL - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_FILE_SYSTEM_CONTROL - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_DEVICE_CONTROL - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SHUTDOWN - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_LOCK_CONTROL - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_CLEANUP - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SET_SECURITY - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SET_QUOTA - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_PNP_POWER - fsd hook - 0x85EF61F8->0x8CC2402A - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       FastIoCheckIfPossible[FastIo] - OK - 0x8D0F2E65 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoRead[FastIo] - OK - 0x8D09FEE3 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoWrite[FastIo] - OK - 0x8D0B39A8 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoQueryBasicInfo[FastIo] - OK - 0x8D0C35A6 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoQueryStandardInfo[FastIo] - OK - 0x8D0C01AF - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoLock[FastIo] - OK - 0x8D0A0F84 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoUnlockSingle[FastIo] - OK - 0x8D09AAC4 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoUnlockAll[FastIo] - OK - 0x8D0F230F - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoUnlockAllByKey[FastIo] - OK - 0x8D0F24B2 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       ReleaseFileForNtCreateSection[FastIo] - OK - 0x8D032079 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoQueryNetworkOpenInfo[FastIo] - OK - 0x8D0C3C4B - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       AcquireForModWrite[FastIo] - OK - 0x8D02C26F - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       MdlRead[FastIo] - OK - 0x8D0F1C28 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       MdlReadComplete[FastIo] - OK - 0x8327BA78 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PrepareMdlWrite[FastIo] - OK - 0x8D0F1E4D - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       MdlWriteComplete[FastIo] - OK - 0x83448346 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       FastIoQueryOpen[FastIo] - fsd hook - 0x85EF6398->0x8CC96E48 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       ReleaseForModWrite[FastIo] - OK - 0x8D02C362 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       AcquireForCcFlush[FastIo] - OK - 0x8D032D95 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       ReleaseForCcFlush[FastIo] - OK - 0x8D032CFC - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation

==========================================================================================

Keyboard

       IRP_MJ_CREATE - OK - 0x96381000 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x96381294 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x963820BA - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x96380F78 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x96385C22 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x963853C2 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x963806C6 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x9638642A - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x96385AB2 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x96381DA4 - C:\Windows\system32\DRIVERS\kbdclass.sys - Microsoft Corporation

==========================================================================================

Mouclass

       IRP_MJ_CREATE - OK - 0x9640BE42 - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x9640C0CE - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x9640CE54 - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x9640BDBA - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x964105E4 - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x964103C2 - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x9640B6C6 - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x9641126C - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x96410C9C - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x9640CB6C - C:\Windows\system32\DRIVERS\mouclass.sys - Microsoft Corporation

==========================================================================================

Classpnp

       IRP_MJ_CREATE - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_READ - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8D3C039F - C:\Windows\system32\DRIVERS\CLASSPNP.SYS - Microsoft Corporation

==========================================================================================

Atapi

       IRP_MJ_CREATE - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_READ - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_INTERNAL_DEVICE_CONTROL - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_SYSTEM_CONTROL - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - atapi hook - 0x85EF41F8->0x8CC22C40 - C:\Windows\System32\Drivers\sptd.sys - Duplex Secure Ltd.

==========================================================================================

Acpi

       IRP_MJ_CREATE - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8CD2B4CC - C:\Windows\system32\drivers\ACPI.sys - Microsoft Corporation

==========================================================================================

Scsi

       Nothing

==========================================================================================

Kernel Hook

       Inline - len(1) RtlPrefetchMemoryNonTemporal[ntkrnlpa.exe] - [0x8328F508]->[-]
       Inline - len(4) NtDuplicateObject[ntkrnlpa.exe] - [0x834877BE]->[0xE149BDF0][C:\Users\Vladimir\Desktop\PCHunter32ad.sys]
       Inline - len(1) KiFastCallEntry[ntkrnlpa.exe] - [0x83292A15]->[-]
       Inline - len(4) NtAlpcSendWaitReceivePort[ntkrnlpa.exe] - [0x834A8347]->[0x9263F544][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(4) NtTerminateProcess[ntkrnlpa.exe] - [0x834B0DDD]->[0xE149C410][C:\Users\Vladimir\Desktop\PCHunter32ad.sys]
       Inline - len(4) NtTerminateThread[ntkrnlpa.exe] - [0x834CE71C]->[0xE149C410][C:\Users\Vladimir\Desktop\PCHunter32ad.sys]
       Inline - len(22) [ntkrnlpa.exe] - [0x832CC212]->[-]
       Inline - len(1) [ntkrnlpa.exe] - [0x832CC22F]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3460]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D346C]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3494]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D34E8]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3528]->[-]
       Inline - len(16) [ntkrnlpa.exe] - [0x832D353C]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3564]->[-]
       Inline - len(24) [ntkrnlpa.exe] - [0x832D358C]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D35BC]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D35CC]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D35F8]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D36A8]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D36CC]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D36E0]->[-]
       Inline - len(8) [ntkrnlpa.exe] - [0x832D36EC]->[-]
       Inline - len(16) [ntkrnlpa.exe] - [0x832D3700]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3728]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3734]->[-]
       Inline - len(8) [ntkrnlpa.exe] - [0x832D3744]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3754]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3760]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3798]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D381C]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3874]->[-]
       Inline - len(12) [ntkrnlpa.exe] - [0x832D3924]->[-]
       Inline - len(8) [ntkrnlpa.exe] - [0x832D39B4]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D39DC]->[-]
       Inline - len(24) [ntkrnlpa.exe] - [0x832D39F4]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3A44]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x832D3A78]->[-]
       Inline - len(4) [ntkrnlpa.exe] - [0x8348E4DF]->[0x9263F52E][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(4) [ntkrnlpa.exe] - [0x834B4095]->[0xE149BBB0][C:\Users\Vladimir\Desktop\PCHunter32ad.sys]
       Inline - len(4) [ntkrnlpa.exe] - [0x834CC43A]->[0xE149BBB0][C:\Users\Vladimir\Desktop\PCHunter32ad.sys]
       Inline - len(5) DllUnload[PCIIDEX.SYS] - [0x8CE83606]->[0x85EF21D8][->0x8CC93FE2==>C:\Windows\System32\Drivers\sptd.sys]
       Iat - ataport.SYS:AtaPortReadPortUchar[atapi.sys<=>0x8CEE0010] - [0x8CEE9E96]->[0x8CC0D730][C:\Windows\System32\Drivers\sptd.sys]
       Iat - ataport.SYS:AtaPortWritePortUchar[atapi.sys<=>0x8CEE0018] - [0x8CEE9F6E]->[0x8CC0DF12][C:\Windows\System32\Drivers\sptd.sys]
       Iat - ataport.SYS:AtaPortWritePortUlong[atapi.sys<=>0x8CEE001C] - [0x8CEE9F92]->[0x8CC0E232][C:\Windows\System32\Drivers\sptd.sys]
       Iat - ataport.SYS:AtaPortWritePortBufferUshort[atapi.sys<=>0x8CEE0034] - [0x8CEE9FB6]->[0x8CC0E0F0][C:\Windows\System32\Drivers\sptd.sys]
       Iat - ataport.SYS:AtaPortReadPortBufferUshort[atapi.sys<=>0x8CEE0054] - [0x8CEE9EDE]->[0x8CC0D914][C:\Windows\System32\Drivers\sptd.sys]
       Inline - len(4) DllUnload[ataport.SYS] - [0x8CEFAAD7]->[-]
       Inline - len(5) DllUnload[USBPORT.SYS] - [0x963BAE0D]->[0x8703B410][->0x8CC93FE2==>C:\Windows\System32\Drivers\sptd.sys]
       Inline - len(5) [win32k.sys] - [0x9CE60ACB]->[0x92642A9C][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE74BA4]->[0x92642BE8][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE75B87]->[0x926428B4][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE915AB]->[0x92643772][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE95F84]->[0x92642316][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE973D1]->[0x926439BA][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE9D13E]->[0x92642C8E][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CE9D38D]->[0x92642DA2][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEB6ED1]->[0x92641F84][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEB6F8F]->[0x92642CAC][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEBA17F]->[0x9264209A][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEBA23D]->[0x926421B6][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEBE8B5]->[0x92642AC8][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEC8315]->[0x926427EE][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CED04D3]->[0x926423B6][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEDA794]->[0x92643620][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEF1F7E]->[0x926436D6][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CEFDA9F]->[0xE149ACB0][C:\Users\Vladimir\Desktop\PCHunter32ad.sys]
       Inline - len(5) [win32k.sys] - [0x9CEFF94B]->[0x92643BD4][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF15243]->[0x92643722][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF16C02]->[0x926458A0][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF27B63]->[0x9264229E][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF35B52]->[0x92642712][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF3CDE9]->[0x92643A7E][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF53C3F]->[0x926425CA][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF74D48]->[0x92643B2C][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF8CCD0]->[0x926438FC][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF8D261]->[0x9264247E][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF90350]->[0x92642CCA][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF93490]->[0x926424E6][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF95D77]->[0x92642D84][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CF96E65]->[0x92642E4C][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(5) [win32k.sys] - [0x9CFA1F44]->[0x9264266E][C:\Windows\system32\drivers\aswSnx.sys]
       Inline - len(28) [peauth.sys] - [0xA5C21C9D]->[-]
       Inline - len(28) [peauth.sys] - [0xA5C21CC1]->[-]

==========================================================================================

PTE HOOK

       Nothing

==========================================================================================

Object Type

       CmpCloseKeyObject - CmpKeyObjectType - OK - 0x834A13F8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpDeleteKeyObject - CmpKeyObjectType - OK - 0x83488912 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpParseKey - CmpKeyObjectType - OK - 0x83482FBC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpSecurityMethod - CmpKeyObjectType - OK - 0x8344A3CF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpQueryKeyName - CmpKeyObjectType - OK - 0x83440D55 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopCloseFile - IoFileObjectType - OK - 0x83487992 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopDeleteFile - IoFileObjectType - OK - 0x83486ADA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopParseFile - IoFileObjectType - OK - 0x834D63F3 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopGetSetSecurityObject - IoFileObjectType - OK - 0x834B951D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopQueryName - IoFileObjectType - OK - 0x834C59CE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopDeleteDriver - IoDriverObjectType - OK - 0x8350F237 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - IoDriverObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopDeleteDevice - IoDeviceObjectType - OK - 0x8341037E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopParseDevice - IoDeviceObjectType - OK - 0x8349A620 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopGetSetSecurityObject - IoDeviceObjectType - OK - 0x834B951D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopCloseIoCompletion - IoCompletionObjectType - OK - 0x834B6D40 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IopDeleteIoCompletion - IoCompletionObjectType - OK - 0x834B6D5E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - IoCompletionObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspJobClose - PsJobType - OK - 0x83448053 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspJobDelete - PsJobType - OK - 0x83447EFB - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - PsJobType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspThreadOpen - PsThreadType - OK - 0x834BC4CC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspThreadDelete - PsThreadType - OK - 0x834BEB1B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - PsThreadType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspProcessOpen - PsProcessType - OK - 0x83465E8F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspProcessClose - PsProcessType - OK - 0x834C60B5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PspProcessDelete - PsProcessType - OK - 0x834C897A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - PsProcessType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - ObpTypeObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       ObpCloseDirectoryObject - ObpDirectoryObjectType - OK - 0x834BFBD6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - ObpDirectoryObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       ObpDeleteSymbolicLink - ObpSymbolicLinkObjectType - OK - 0x83460E0A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       ObpParseSymbolicLink - ObpSymbolicLinkObjectType - OK - 0x8347C959 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - ObpSymbolicLinkObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       MiSectionDelete - MmSectionObjectType - OK - 0x83477A71 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - MmSectionObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - ExEventObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       ExpDeleteMutant - ExMutantObjectType - OK - 0x83316453 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - ExMutantObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - ExSemaphoreObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SepTokenDeleteMethod - SeTokenObjectType - OK - 0x834AF2ED - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - SeTokenObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       AlpcpOpenPort - AlpcPortObjectType - OK - 0x834BF816 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       AlpcpClosePort - AlpcPortObjectType - OK - 0x834B5210 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       AlpcpDeletePort - AlpcPortObjectType - OK - 0x834B4A19 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - AlpcPortObjectType - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - TpWorkerFactory - OK - 0x83468B60 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - TpWorkerFactory - OK - 0x83317BD6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - TpWorkerFactory - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - FilterCommunicationPort - OK - 0x8CF2E51A - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DeleteProcedure - FilterCommunicationPort - OK - 0x8CF2DFC8 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       SeDefaultObjectMethod - FilterCommunicationPort - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - TmTx - OK - 0x83427834 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - TmTx - OK - 0x834279FF - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - TmTx - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Controller - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - EtwRegistration - OK - 0x834C609B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - EtwRegistration - OK - 0x834B551A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - EtwRegistration - OK - 0x834AA873 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - EtwRegistration - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - Profile - OK - 0x83560D78 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Profile - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - EventPair - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - Desktop - OK - 0x834B5619 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - Desktop - OK - 0x834CFB1C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - Desktop - OK - 0x834E20C7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Desktop - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OkayToCloseProcedure - Desktop - OK - 0x834CFA9D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - UserApcReserve - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - EtwConsumer - OK - 0x834C609B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - EtwConsumer - OK - 0x834EB6C4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - EtwConsumer - OK - 0x834EB699 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - EtwConsumer - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - Timer - OK - 0x8327968F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Timer - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - WindowStation - OK - 0x834B5619 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - WindowStation - OK - 0x834CFB1C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - WindowStation - OK - 0x834E20C7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       ParseProcedure - WindowStation - OK - 0x8346735F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - WindowStation - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OkayToCloseProcedure - WindowStation - OK - 0x834CFA9D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - PcwObject - OK - 0x8D1EBC70 - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       CloseProcedure - PcwObject - OK - 0x8D1EBC8A - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       DeleteProcedure - PcwObject - OK - 0x8D1EBCAC - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       SeDefaultObjectMethod - PcwObject - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - TmEn - OK - 0x8342B6FA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - TmEn - OK - 0x8342B731 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - TmEn - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - WmiGuid - OK - 0x8327C774 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - WmiGuid - OK - 0x834473C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - KeyedEvent - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - DebugObject - OK - 0x83502D2F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - DebugObject - OK - 0x834D2C14 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - DebugObject - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - TmRm - OK - 0x833FD059 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - TmRm - OK - 0x834DDB9B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - TmRm - OK - 0x834DD861 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - TmRm - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Adapter - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - PowerRequest - OK - 0x8343D4CE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - PowerRequest - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - Session - OK - 0x834E0A4D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Session - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       OpenProcedure - TmTm - OK - 0x833FC168 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - TmTm - OK - 0x833FC0E9 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - TmTm - OK - 0x834DD462 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - TmTm - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - IoCompletionReserve - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       DeleteProcedure - Callback - OK - 0x834D2C14 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       SeDefaultObjectMethod - Callback - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CloseProcedure - FilterConnectionPort - OK - 0x8CF2E54A - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DeleteProcedure - FilterConnectionPort - OK - 0x8CF2DFE2 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       SeDefaultObjectMethod - FilterConnectionPort - OK - 0x834BA936 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       PostOperation - Thread - ObjectType_Callback - 0x962C94A6 - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       PreOperation - Thread - ObjectType_Callback - 0x962C9440 - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       PostOperation - Thread - ObjectType_Callback - 0x926F09D6 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       PreOperation - Thread - ObjectType_Callback - 0x926F09A0 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       PostOperation - Thread - ObjectType_Callback - 0x9263D5E6 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       PreOperation - Thread - ObjectType_Callback - 0x926413BC - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       PostOperation - Process - ObjectType_Callback - 0x962C94A6 - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       PreOperation - Process - ObjectType_Callback - 0x962C9440 - C:\Windows\system32\drivers\aswSP.sys - AVAST Software
       PostOperation - Process - ObjectType_Callback - 0x926F09D6 - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       PreOperation - Process - ObjectType_Callback - 0x926F096A - C:\Windows\system32\DRIVERS\cmdguard.sys - COMODO
       PostOperation - Process - ObjectType_Callback - 0x9263D5E6 - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       PreOperation - Process - ObjectType_Callback - 0x926413BC - C:\Windows\system32\drivers\aswSnx.sys - AVAST Software
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0x8349F514 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0x83460C10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0x83460DEA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileSetSize - HHIVE - OK - 0x834369E7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0x83464AD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0x8342158F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       CmpFileFlush - HHIVE - OK - 0x83464B15 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

IDT

       Divide error - cpu[0] - 0x01 - OK - 0x83293690 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Debug - cpu[0] - 0x01 - OK - 0x83293820 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Not used - cpu[0] - 0x0B - idt hook - 0x807C8B30 - unknown image - 
       Breakpoint - cpu[0] - 0x01 - OK - 0x83293C90 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Overflow - cpu[0] - 0x01 - OK - 0x83293E18 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Bounds check - cpu[0] - 0x01 - OK - 0x83293F78 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Invalid opcode - cpu[0] - 0x01 - OK - 0x832940EC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Device not available - cpu[0] - 0x01 - OK - 0x832946E8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Double fault - cpu[0] - 0x0A - idt hook - 0x807C8AC0 - unknown image - 
       Coprocessor segment overrun - cpu[0] - 0x01 - OK - 0x83294B48 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Invalid TSS - cpu[0] - 0x01 - OK - 0x83294C6C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Segment not present - cpu[0] - 0x01 - OK - 0x83294DAC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Stack segment fault - cpu[0] - 0x01 - OK - 0x8329500C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       General protection - cpu[0] - 0x01 - OK - 0x832952FC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Page Fault - cpu[0] - 0x01 - OK - 0x832959CC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Floating-point error - cpu[0] - 0x01 - OK - 0x83295D88 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Alignment check - cpu[0] - 0x01 - OK - 0x83295EC8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Machine check - cpu[0] - 0x14 - idt hook - 0x85ECBF98 - unknown image - 
       SIMD floating point exception - cpu[0] - 0x01 - OK - 0x83296034 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x01 - OK - 0x83238AF8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[0] - 0x01 - OK - 0x00000000 - - - 
       KiGetTickCount - cpu[0] - 0x01 - OK - 0x83292D0A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiCallbackReturn - cpu[0] - 0x01 - OK - 0x83292E90 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiSetLowWaitHighThread - cpu[0] - 0x01 - OK - 0x83292FCC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiDebugService - cpu[0] - 0x01 - OK - 0x83293B68 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiSystemService - cpu[0] - 0x01 - OK - 0x832926BE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved for APIC - cpu[0] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiStartUnexpectedRange - cpu[0] - 0x01 - OK - 0x83291D80 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt1 - cpu[0] - 0x01 - OK - 0x83291D8A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt2 - cpu[0] - 0x01 - OK - 0x83291D94 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt3 - cpu[0] - 0x01 - OK - 0x83291D9E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt4 - cpu[0] - 0x01 - OK - 0x83291DA8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt5 - cpu[0] - 0x01 - OK - 0x83291DB2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt6 - cpu[0] - 0x01 - OK - 0x83291DBC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt7 - cpu[0] - 0x01 - OK - 0x83238104 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt8 - cpu[0] - 0x01 - OK - 0x83291DD0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt9 - cpu[0] - 0x01 - OK - 0x83291DDA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt10 - cpu[0] - 0x01 - OK - 0x83291DE4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt11 - cpu[0] - 0x01 - OK - 0x83291DEE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt12 - cpu[0] - 0x01 - OK - 0x83291DF8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt13 - cpu[0] - 0x01 - OK - 0x83291E02 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt14 - cpu[0] - 0x01 - OK - 0x83291E0C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt15 - cpu[0] - 0x01 - OK - 0x83291E16 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt16 - cpu[0] - 0x01 - OK - 0x83291E20 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt17 - cpu[0] - 0x01 - OK - 0x83291E2A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt18 - cpu[0] - 0x01 - OK - 0x83291E34 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt19 - cpu[0] - 0x01 - OK - 0x83291E3E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt20 - cpu[0] - 0x01 - OK - 0x83291E48 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt21 - cpu[0] - 0x01 - OK - 0x83291E52 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt22 - cpu[0] - 0x01 - OK - 0x83291E5C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt23 - cpu[0] - 0x01 - OK - 0x83291E66 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt24 - cpu[0] - 0x01 - OK - 0x83291E70 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt25 - cpu[0] - 0x01 - OK - 0x83291E7A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt26 - cpu[0] - 0x01 - OK - 0x83291E84 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt27 - cpu[0] - 0x01 - OK - 0x83291E8E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt28 - cpu[0] - 0x01 - OK - 0x83291E98 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt29 - cpu[0] - 0x01 - OK - 0x83291EA2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt30 - cpu[0] - 0x01 - OK - 0x83291EAC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt31 - cpu[0] - 0x01 - OK - 0x83291EB6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt32 - cpu[0] - 0x01 - OK - 0x83291EC0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt33 - cpu[0] - 0x01 - idt hook - 0x875A3CD8 - unknown image - 
       KiUnexpectedInterrupt34 - cpu[0] - 0x01 - idt hook - 0x875A32D8 - unknown image - 
       KiUnexpectedInterrupt35 - cpu[0] - 0x01 - OK - 0x83291EDE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt36 - cpu[0] - 0x01 - OK - 0x83291EE8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt37 - cpu[0] - 0x01 - OK - 0x83291EF2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt38 - cpu[0] - 0x01 - OK - 0x83291EFC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt39 - cpu[0] - 0x01 - OK - 0x83291F06 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt40 - cpu[0] - 0x01 - OK - 0x83291F10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt41 - cpu[0] - 0x01 - OK - 0x83291F1A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt42 - cpu[0] - 0x01 - OK - 0x83291F24 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt43 - cpu[0] - 0x01 - OK - 0x83291F2E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt44 - cpu[0] - 0x01 - OK - 0x83291F38 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt45 - cpu[0] - 0x01 - OK - 0x83291F42 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt46 - cpu[0] - 0x01 - OK - 0x83291F4C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt47 - cpu[0] - 0x01 - OK - 0x83291F56 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt48 - cpu[0] - 0x01 - OK - 0x83291F60 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt49 - cpu[0] - 0x01 - OK - 0x83291F6A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt50 - cpu[0] - 0x01 - idt hook - 0x875A3058 - unknown image - 
       KiUnexpectedInterrupt51 - cpu[0] - 0x01 - OK - 0x83291F7E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt52 - cpu[0] - 0x01 - OK - 0x83291F88 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt53 - cpu[0] - 0x01 - OK - 0x83291F92 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt54 - cpu[0] - 0x01 - OK - 0x83291F9C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt55 - cpu[0] - 0x01 - OK - 0x83291FA6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt56 - cpu[0] - 0x01 - OK - 0x83291FB0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt57 - cpu[0] - 0x01 - OK - 0x83291FBA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt58 - cpu[0] - 0x01 - OK - 0x83291FC4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt59 - cpu[0] - 0x01 - OK - 0x83291FCE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt60 - cpu[0] - 0x01 - OK - 0x83291FD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt61 - cpu[0] - 0x01 - OK - 0x83291FE2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt62 - cpu[0] - 0x01 - OK - 0x83291FEC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt63 - cpu[0] - 0x01 - OK - 0x83291FF6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt64 - cpu[0] - 0x01 - OK - 0x83292000 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt65 - cpu[0] - 0x01 - idt hook - 0x868097D8 - unknown image - 
       KiUnexpectedInterrupt66 - cpu[0] - 0x01 - idt hook - 0x8BC20CD8 - unknown image - 
       KiUnexpectedInterrupt67 - cpu[0] - 0x01 - OK - 0x8329201E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt68 - cpu[0] - 0x01 - OK - 0x83292028 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt69 - cpu[0] - 0x01 - OK - 0x83292032 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt70 - cpu[0] - 0x01 - OK - 0x8329203C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt71 - cpu[0] - 0x01 - OK - 0x83292046 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt72 - cpu[0] - 0x01 - OK - 0x83292050 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt73 - cpu[0] - 0x01 - OK - 0x8329205A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt74 - cpu[0] - 0x01 - OK - 0x83292064 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt75 - cpu[0] - 0x01 - OK - 0x8329206E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt76 - cpu[0] - 0x01 - OK - 0x83292078 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt77 - cpu[0] - 0x01 - OK - 0x83292082 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt78 - cpu[0] - 0x01 - OK - 0x8329208C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt79 - cpu[0] - 0x01 - OK - 0x83292096 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt80 - cpu[0] - 0x01 - OK - 0x832920A0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt81 - cpu[0] - 0x01 - OK - 0x832920AA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt82 - cpu[0] - 0x01 - idt hook - 0x868092D8 - unknown image - 
       KiUnexpectedInterrupt83 - cpu[0] - 0x01 - OK - 0x832920BE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt84 - cpu[0] - 0x01 - OK - 0x832920C8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt85 - cpu[0] - 0x01 - OK - 0x832920D2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt86 - cpu[0] - 0x01 - OK - 0x832920DC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt87 - cpu[0] - 0x01 - OK - 0x832920E6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt88 - cpu[0] - 0x01 - OK - 0x832920F0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt89 - cpu[0] - 0x01 - OK - 0x832920FA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt90 - cpu[0] - 0x01 - OK - 0x83292104 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt91 - cpu[0] - 0x01 - OK - 0x8329210E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt92 - cpu[0] - 0x01 - OK - 0x83292118 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt93 - cpu[0] - 0x01 - OK - 0x83292122 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt94 - cpu[0] - 0x01 - OK - 0x8329212C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt95 - cpu[0] - 0x01 - OK - 0x83292136 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt96 - cpu[0] - 0x01 - OK - 0x83292140 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt97 - cpu[0] - 0x01 - OK - 0x8329214A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt98 - cpu[0] - 0x01 - idt hook - 0x86809558 - unknown image - 
       KiUnexpectedInterrupt99 - cpu[0] - 0x01 - idt hook - 0x875A3A58 - unknown image - 
       KiUnexpectedInterrupt100 - cpu[0] - 0x01 - OK - 0x83292168 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt101 - cpu[0] - 0x01 - OK - 0x83292172 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt102 - cpu[0] - 0x01 - OK - 0x8329217C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt103 - cpu[0] - 0x01 - OK - 0x83292186 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt104 - cpu[0] - 0x01 - OK - 0x83292190 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt105 - cpu[0] - 0x01 - OK - 0x8329219A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt106 - cpu[0] - 0x01 - OK - 0x832921A4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt107 - cpu[0] - 0x01 - OK - 0x832921AE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt108 - cpu[0] - 0x01 - OK - 0x832921B8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt109 - cpu[0] - 0x01 - OK - 0x832921C2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt110 - cpu[0] - 0x01 - OK - 0x832921CC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt111 - cpu[0] - 0x01 - OK - 0x832921D6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt112 - cpu[0] - 0x01 - OK - 0x832921E0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt113 - cpu[0] - 0x01 - OK - 0x832921EA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt114 - cpu[0] - 0x01 - idt hook - 0x86809058 - unknown image - 
       KiUnexpectedInterrupt115 - cpu[0] - 0x01 - idt hook - 0x875A37D8 - unknown image - 
       KiUnexpectedInterrupt116 - cpu[0] - 0x01 - OK - 0x83292208 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt117 - cpu[0] - 0x01 - OK - 0x83292212 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt118 - cpu[0] - 0x01 - OK - 0x8329221C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt119 - cpu[0] - 0x01 - OK - 0x83292226 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt120 - cpu[0] - 0x01 - OK - 0x83292230 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt121 - cpu[0] - 0x01 - OK - 0x8329223A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt122 - cpu[0] - 0x01 - OK - 0x83292244 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt123 - cpu[0] - 0x01 - OK - 0x8329224E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt124 - cpu[0] - 0x01 - OK - 0x83292258 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt125 - cpu[0] - 0x01 - OK - 0x83292262 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt126 - cpu[0] - 0x01 - OK - 0x8329226C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt127 - cpu[0] - 0x01 - OK - 0x83292276 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt128 - cpu[0] - 0x01 - OK - 0x83292280 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt129 - cpu[0] - 0x01 - idt hook - 0x86809CD8 - unknown image - 
       KiUnexpectedInterrupt130 - cpu[0] - 0x01 - OK - 0x83292294 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt131 - cpu[0] - 0x01 - OK - 0x8329229E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt132 - cpu[0] - 0x01 - OK - 0x832922A8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt133 - cpu[0] - 0x01 - OK - 0x832922B2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt134 - cpu[0] - 0x01 - OK - 0x832922BC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt135 - cpu[0] - 0x01 - OK - 0x832922C6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt136 - cpu[0] - 0x01 - OK - 0x832922D0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt137 - cpu[0] - 0x01 - OK - 0x832922DA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt138 - cpu[0] - 0x01 - OK - 0x832922E4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt139 - cpu[0] - 0x01 - OK - 0x832922EE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt140 - cpu[0] - 0x01 - OK - 0x832922F8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt141 - cpu[0] - 0x01 - OK - 0x83292302 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt142 - cpu[0] - 0x01 - OK - 0x8329230C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt143 - cpu[0] - 0x01 - OK - 0x83292316 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt144 - cpu[0] - 0x01 - OK - 0x83292320 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt145 - cpu[0] - 0x01 - OK - 0x832383F4 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt146 - cpu[0] - 0x01 - OK - 0x83292334 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt147 - cpu[0] - 0x01 - OK - 0x8329233E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt148 - cpu[0] - 0x01 - OK - 0x83292348 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt149 - cpu[0] - 0x01 - OK - 0x83292352 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt150 - cpu[0] - 0x01 - OK - 0x8329235C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt151 - cpu[0] - 0x01 - OK - 0x83292366 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt152 - cpu[0] - 0x01 - OK - 0x83292370 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt153 - cpu[0] - 0x01 - OK - 0x8329237A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt154 - cpu[0] - 0x01 - OK - 0x83292384 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt155 - cpu[0] - 0x01 - OK - 0x8329238E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt156 - cpu[0] - 0x01 - OK - 0x83292398 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt157 - cpu[0] - 0x01 - OK - 0x832923A2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt158 - cpu[0] - 0x01 - OK - 0x832923AC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt159 - cpu[0] - 0x01 - OK - 0x832923B6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt160 - cpu[0] - 0x01 - OK - 0x832923C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt161 - cpu[0] - 0x01 - OK - 0x832212D8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt162 - cpu[0] - 0x01 - OK - 0x83220898 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt163 - cpu[0] - 0x01 - OK - 0x832923DE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt164 - cpu[0] - 0x01 - OK - 0x832923E8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt165 - cpu[0] - 0x01 - OK - 0x832923F2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt166 - cpu[0] - 0x01 - OK - 0x832923FC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt167 - cpu[0] - 0x01 - OK - 0x83292406 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt168 - cpu[0] - 0x01 - OK - 0x83292410 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt169 - cpu[0] - 0x01 - OK - 0x8329241A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt170 - cpu[0] - 0x01 - OK - 0x83292424 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt171 - cpu[0] - 0x01 - OK - 0x8329242E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt172 - cpu[0] - 0x01 - OK - 0x83292438 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt173 - cpu[0] - 0x01 - OK - 0x83292442 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt174 - cpu[0] - 0x01 - OK - 0x8329244C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt175 - cpu[0] - 0x01 - OK - 0x832381DC - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt176 - cpu[0] - 0x01 - OK - 0x83292460 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt177 - cpu[0] - 0x01 - OK - 0x83238958 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt178 - cpu[0] - 0x01 - OK - 0x83292474 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt179 - cpu[0] - 0x01 - OK - 0x832386F8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt180 - cpu[0] - 0x01 - OK - 0x83292488 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt181 - cpu[0] - 0x01 - OK - 0x83292492 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt182 - cpu[0] - 0x01 - OK - 0x8329249C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt183 - cpu[0] - 0x01 - OK - 0x832924A6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt184 - cpu[0] - 0x01 - OK - 0x832924B0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt185 - cpu[0] - 0x01 - OK - 0x832924BA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt186 - cpu[0] - 0x01 - OK - 0x832924C4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt187 - cpu[0] - 0x01 - OK - 0x832924CE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt188 - cpu[0] - 0x01 - OK - 0x832924D8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt189 - cpu[0] - 0x01 - OK - 0x832924E2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt190 - cpu[0] - 0x01 - OK - 0x832924E9 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt191 - cpu[0] - 0x01 - OK - 0x832924F0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt192 - cpu[0] - 0x01 - OK - 0x832924F7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt193 - cpu[0] - 0x01 - OK - 0x832924FE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt194 - cpu[0] - 0x01 - OK - 0x83292505 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt195 - cpu[0] - 0x01 - OK - 0x8329250C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt196 - cpu[0] - 0x01 - OK - 0x83292513 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt197 - cpu[0] - 0x01 - OK - 0x8329251A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt198 - cpu[0] - 0x01 - OK - 0x83292521 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt199 - cpu[0] - 0x01 - OK - 0x83292528 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt200 - cpu[0] - 0x01 - OK - 0x8329252F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt201 - cpu[0] - 0x01 - OK - 0x83292536 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt202 - cpu[0] - 0x01 - OK - 0x8329253D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt203 - cpu[0] - 0x01 - OK - 0x83292544 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt204 - cpu[0] - 0x01 - OK - 0x8329254B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt205 - cpu[0] - 0x01 - OK - 0x83238F2C - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt206 - cpu[0] - 0x01 - OK - 0x832391A8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt207 - cpu[0] - 0x01 - OK - 0x83292560 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Divide error - cpu[1] - 0x01 - OK - 0x83293690 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Debug - cpu[1] - 0x01 - OK - 0x83293820 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Not used - cpu[1] - 0x0B - idt hook - 0x807C8B30 - unknown image - 
       Breakpoint - cpu[1] - 0x01 - OK - 0x83293C90 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Overflow - cpu[1] - 0x01 - OK - 0x83293E18 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Bounds check - cpu[1] - 0x01 - OK - 0x83293F78 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Invalid opcode - cpu[1] - 0x01 - OK - 0x832940EC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Device not available - cpu[1] - 0x01 - OK - 0x832946E8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Double fault - cpu[1] - 0x0A - idt hook - 0x807C8AC0 - unknown image - 
       Coprocessor segment overrun - cpu[1] - 0x01 - OK - 0x83294B48 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Invalid TSS - cpu[1] - 0x01 - OK - 0x83294C6C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Segment not present - cpu[1] - 0x01 - OK - 0x83294DAC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Stack segment fault - cpu[1] - 0x01 - OK - 0x8329500C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       General protection - cpu[1] - 0x01 - OK - 0x832952FC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Page Fault - cpu[1] - 0x01 - OK - 0x832959CC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Floating-point error - cpu[1] - 0x01 - OK - 0x83295D88 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Alignment check - cpu[1] - 0x01 - OK - 0x83295EC8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Machine check - cpu[1] - 0x14 - idt hook - 0x85ECBF98 - unknown image - 
       SIMD floating point exception - cpu[1] - 0x01 - OK - 0x83296034 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x01 - OK - 0x83238AF8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       Not used - cpu[1] - 0x01 - OK - 0x00000000 - - - 
       KiGetTickCount - cpu[1] - 0x01 - OK - 0x83292D0A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiCallbackReturn - cpu[1] - 0x01 - OK - 0x83292E90 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiSetLowWaitHighThread - cpu[1] - 0x01 - OK - 0x83292FCC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiDebugService - cpu[1] - 0x01 - OK - 0x83293B68 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiSystemService - cpu[1] - 0x01 - OK - 0x832926BE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       Reserved for APIC - cpu[1] - 0x01 - OK - 0x83295C64 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiStartUnexpectedRange - cpu[1] - 0x01 - OK - 0x83291D80 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt1 - cpu[1] - 0x01 - OK - 0x83291D8A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt2 - cpu[1] - 0x01 - OK - 0x83291D94 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt3 - cpu[1] - 0x01 - OK - 0x83291D9E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt4 - cpu[1] - 0x01 - OK - 0x83291DA8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt5 - cpu[1] - 0x01 - OK - 0x83291DB2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt6 - cpu[1] - 0x01 - OK - 0x83291DBC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt7 - cpu[1] - 0x01 - OK - 0x83238104 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt8 - cpu[1] - 0x01 - OK - 0x83291DD0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt9 - cpu[1] - 0x01 - OK - 0x83291DDA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt10 - cpu[1] - 0x01 - OK - 0x83291DE4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt11 - cpu[1] - 0x01 - OK - 0x83291DEE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt12 - cpu[1] - 0x01 - OK - 0x83291DF8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt13 - cpu[1] - 0x01 - OK - 0x83291E02 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt14 - cpu[1] - 0x01 - OK - 0x83291E0C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt15 - cpu[1] - 0x01 - OK - 0x83291E16 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt16 - cpu[1] - 0x01 - OK - 0x83291E20 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt17 - cpu[1] - 0x01 - OK - 0x83291E2A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt18 - cpu[1] - 0x01 - OK - 0x83291E34 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt19 - cpu[1] - 0x01 - OK - 0x83291E3E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt20 - cpu[1] - 0x01 - OK - 0x83291E48 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt21 - cpu[1] - 0x01 - OK - 0x83291E52 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt22 - cpu[1] - 0x01 - OK - 0x83291E5C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt23 - cpu[1] - 0x01 - OK - 0x83291E66 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt24 - cpu[1] - 0x01 - OK - 0x83291E70 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt25 - cpu[1] - 0x01 - OK - 0x83291E7A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt26 - cpu[1] - 0x01 - OK - 0x83291E84 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt27 - cpu[1] - 0x01 - OK - 0x83291E8E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt28 - cpu[1] - 0x01 - OK - 0x83291E98 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt29 - cpu[1] - 0x01 - OK - 0x83291EA2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt30 - cpu[1] - 0x01 - OK - 0x83291EAC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt31 - cpu[1] - 0x01 - OK - 0x83291EB6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt32 - cpu[1] - 0x01 - OK - 0x83291EC0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt33 - cpu[1] - 0x01 - idt hook - 0x875A3CD8 - unknown image - 
       KiUnexpectedInterrupt34 - cpu[1] - 0x01 - idt hook - 0x875A32D8 - unknown image - 
       KiUnexpectedInterrupt35 - cpu[1] - 0x01 - OK - 0x83291EDE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt36 - cpu[1] - 0x01 - OK - 0x83291EE8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt37 - cpu[1] - 0x01 - OK - 0x83291EF2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt38 - cpu[1] - 0x01 - OK - 0x83291EFC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt39 - cpu[1] - 0x01 - OK - 0x83291F06 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt40 - cpu[1] - 0x01 - OK - 0x83291F10 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt41 - cpu[1] - 0x01 - OK - 0x83291F1A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt42 - cpu[1] - 0x01 - OK - 0x83291F24 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt43 - cpu[1] - 0x01 - OK - 0x83291F2E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt44 - cpu[1] - 0x01 - OK - 0x83291F38 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt45 - cpu[1] - 0x01 - OK - 0x83291F42 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt46 - cpu[1] - 0x01 - OK - 0x83291F4C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt47 - cpu[1] - 0x01 - OK - 0x83291F56 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt48 - cpu[1] - 0x01 - OK - 0x83291F60 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt49 - cpu[1] - 0x01 - OK - 0x83291F6A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt50 - cpu[1] - 0x01 - idt hook - 0x875A3058 - unknown image - 
       KiUnexpectedInterrupt51 - cpu[1] - 0x01 - OK - 0x83291F7E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt52 - cpu[1] - 0x01 - OK - 0x83291F88 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt53 - cpu[1] - 0x01 - OK - 0x83291F92 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt54 - cpu[1] - 0x01 - OK - 0x83291F9C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt55 - cpu[1] - 0x01 - OK - 0x83291FA6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt56 - cpu[1] - 0x01 - OK - 0x83291FB0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt57 - cpu[1] - 0x01 - OK - 0x83291FBA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt58 - cpu[1] - 0x01 - OK - 0x83291FC4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt59 - cpu[1] - 0x01 - OK - 0x83291FCE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt60 - cpu[1] - 0x01 - OK - 0x83291FD8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt61 - cpu[1] - 0x01 - OK - 0x83291FE2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt62 - cpu[1] - 0x01 - OK - 0x83291FEC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt63 - cpu[1] - 0x01 - OK - 0x83291FF6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt64 - cpu[1] - 0x01 - OK - 0x83292000 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt65 - cpu[1] - 0x01 - idt hook - 0x868097D8 - unknown image - 
       KiUnexpectedInterrupt66 - cpu[1] - 0x01 - idt hook - 0x8BC20CD8 - unknown image - 
       KiUnexpectedInterrupt67 - cpu[1] - 0x01 - OK - 0x8329201E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt68 - cpu[1] - 0x01 - OK - 0x83292028 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt69 - cpu[1] - 0x01 - OK - 0x83292032 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt70 - cpu[1] - 0x01 - OK - 0x8329203C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt71 - cpu[1] - 0x01 - OK - 0x83292046 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt72 - cpu[1] - 0x01 - OK - 0x83292050 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt73 - cpu[1] - 0x01 - OK - 0x8329205A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt74 - cpu[1] - 0x01 - OK - 0x83292064 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt75 - cpu[1] - 0x01 - OK - 0x8329206E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt76 - cpu[1] - 0x01 - OK - 0x83292078 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt77 - cpu[1] - 0x01 - OK - 0x83292082 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt78 - cpu[1] - 0x01 - OK - 0x8329208C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt79 - cpu[1] - 0x01 - OK - 0x83292096 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt80 - cpu[1] - 0x01 - OK - 0x832920A0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt81 - cpu[1] - 0x01 - OK - 0x832920AA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt82 - cpu[1] - 0x01 - idt hook - 0x868092D8 - unknown image - 
       KiUnexpectedInterrupt83 - cpu[1] - 0x01 - OK - 0x832920BE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt84 - cpu[1] - 0x01 - OK - 0x832920C8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt85 - cpu[1] - 0x01 - OK - 0x832920D2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt86 - cpu[1] - 0x01 - OK - 0x832920DC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt87 - cpu[1] - 0x01 - OK - 0x832920E6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt88 - cpu[1] - 0x01 - OK - 0x832920F0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt89 - cpu[1] - 0x01 - OK - 0x832920FA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt90 - cpu[1] - 0x01 - OK - 0x83292104 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt91 - cpu[1] - 0x01 - OK - 0x8329210E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt92 - cpu[1] - 0x01 - OK - 0x83292118 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt93 - cpu[1] - 0x01 - OK - 0x83292122 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt94 - cpu[1] - 0x01 - OK - 0x8329212C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt95 - cpu[1] - 0x01 - OK - 0x83292136 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt96 - cpu[1] - 0x01 - OK - 0x83292140 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt97 - cpu[1] - 0x01 - OK - 0x8329214A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt98 - cpu[1] - 0x01 - idt hook - 0x86809558 - unknown image - 
       KiUnexpectedInterrupt99 - cpu[1] - 0x01 - idt hook - 0x875A3A58 - unknown image - 
       KiUnexpectedInterrupt100 - cpu[1] - 0x01 - OK - 0x83292168 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt101 - cpu[1] - 0x01 - OK - 0x83292172 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt102 - cpu[1] - 0x01 - OK - 0x8329217C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt103 - cpu[1] - 0x01 - OK - 0x83292186 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt104 - cpu[1] - 0x01 - OK - 0x83292190 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt105 - cpu[1] - 0x01 - OK - 0x8329219A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt106 - cpu[1] - 0x01 - OK - 0x832921A4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt107 - cpu[1] - 0x01 - OK - 0x832921AE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt108 - cpu[1] - 0x01 - OK - 0x832921B8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt109 - cpu[1] - 0x01 - OK - 0x832921C2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt110 - cpu[1] - 0x01 - OK - 0x832921CC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt111 - cpu[1] - 0x01 - OK - 0x832921D6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt112 - cpu[1] - 0x01 - OK - 0x832921E0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt113 - cpu[1] - 0x01 - OK - 0x832921EA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt114 - cpu[1] - 0x01 - idt hook - 0x86809058 - unknown image - 
       KiUnexpectedInterrupt115 - cpu[1] - 0x01 - idt hook - 0x875A37D8 - unknown image - 
       KiUnexpectedInterrupt116 - cpu[1] - 0x01 - OK - 0x83292208 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt117 - cpu[1] - 0x01 - OK - 0x83292212 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt118 - cpu[1] - 0x01 - OK - 0x8329221C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt119 - cpu[1] - 0x01 - OK - 0x83292226 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt120 - cpu[1] - 0x01 - OK - 0x83292230 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt121 - cpu[1] - 0x01 - OK - 0x8329223A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt122 - cpu[1] - 0x01 - OK - 0x83292244 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt123 - cpu[1] - 0x01 - OK - 0x8329224E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt124 - cpu[1] - 0x01 - OK - 0x83292258 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt125 - cpu[1] - 0x01 - OK - 0x83292262 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt126 - cpu[1] - 0x01 - OK - 0x8329226C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt127 - cpu[1] - 0x01 - OK - 0x83292276 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt128 - cpu[1] - 0x01 - OK - 0x83292280 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt129 - cpu[1] - 0x01 - idt hook - 0x86809CD8 - unknown image - 
       KiUnexpectedInterrupt130 - cpu[1] - 0x01 - OK - 0x83292294 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt131 - cpu[1] - 0x01 - OK - 0x8329229E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt132 - cpu[1] - 0x01 - OK - 0x832922A8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt133 - cpu[1] - 0x01 - OK - 0x832922B2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt134 - cpu[1] - 0x01 - OK - 0x832922BC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt135 - cpu[1] - 0x01 - OK - 0x832922C6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt136 - cpu[1] - 0x01 - OK - 0x832922D0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt137 - cpu[1] - 0x01 - OK - 0x832922DA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt138 - cpu[1] - 0x01 - OK - 0x832922E4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt139 - cpu[1] - 0x01 - OK - 0x832922EE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt140 - cpu[1] - 0x01 - OK - 0x832922F8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt141 - cpu[1] - 0x01 - OK - 0x83292302 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt142 - cpu[1] - 0x01 - OK - 0x8329230C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt143 - cpu[1] - 0x01 - OK - 0x83292316 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt144 - cpu[1] - 0x01 - OK - 0x83292320 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt145 - cpu[1] - 0x01 - OK - 0x832383F4 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt146 - cpu[1] - 0x01 - OK - 0x83292334 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt147 - cpu[1] - 0x01 - OK - 0x8329233E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt148 - cpu[1] - 0x01 - OK - 0x83292348 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt149 - cpu[1] - 0x01 - OK - 0x83292352 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt150 - cpu[1] - 0x01 - OK - 0x8329235C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt151 - cpu[1] - 0x01 - OK - 0x83292366 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt152 - cpu[1] - 0x01 - OK - 0x83292370 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt153 - cpu[1] - 0x01 - OK - 0x8329237A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt154 - cpu[1] - 0x01 - OK - 0x83292384 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt155 - cpu[1] - 0x01 - OK - 0x8329238E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt156 - cpu[1] - 0x01 - OK - 0x83292398 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt157 - cpu[1] - 0x01 - OK - 0x832923A2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt158 - cpu[1] - 0x01 - OK - 0x832923AC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt159 - cpu[1] - 0x01 - OK - 0x832923B6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt160 - cpu[1] - 0x01 - OK - 0x832923C0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt161 - cpu[1] - 0x01 - OK - 0x832212D8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt162 - cpu[1] - 0x01 - OK - 0x83220898 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt163 - cpu[1] - 0x01 - OK - 0x832923DE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt164 - cpu[1] - 0x01 - OK - 0x832923E8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt165 - cpu[1] - 0x01 - OK - 0x832923F2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt166 - cpu[1] - 0x01 - OK - 0x832923FC - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt167 - cpu[1] - 0x01 - OK - 0x83292406 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt168 - cpu[1] - 0x01 - OK - 0x83292410 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt169 - cpu[1] - 0x01 - OK - 0x8329241A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt170 - cpu[1] - 0x01 - OK - 0x83292424 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt171 - cpu[1] - 0x01 - OK - 0x8329242E - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt172 - cpu[1] - 0x01 - OK - 0x83292438 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt173 - cpu[1] - 0x01 - OK - 0x83292442 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt174 - cpu[1] - 0x01 - OK - 0x8329244C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt175 - cpu[1] - 0x01 - OK - 0x832381DC - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt176 - cpu[1] - 0x01 - OK - 0x83292460 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt177 - cpu[1] - 0x01 - OK - 0x83238958 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt178 - cpu[1] - 0x01 - OK - 0x83292474 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt179 - cpu[1] - 0x01 - OK - 0x832386F8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt180 - cpu[1] - 0x01 - OK - 0x83292488 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt181 - cpu[1] - 0x01 - OK - 0x83292492 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt182 - cpu[1] - 0x01 - OK - 0x8329249C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt183 - cpu[1] - 0x01 - OK - 0x832924A6 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt184 - cpu[1] - 0x01 - OK - 0x832924B0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt185 - cpu[1] - 0x01 - OK - 0x832924BA - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt186 - cpu[1] - 0x01 - OK - 0x832924C4 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt187 - cpu[1] - 0x01 - OK - 0x832924CE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt188 - cpu[1] - 0x01 - OK - 0x832924D8 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt189 - cpu[1] - 0x01 - OK - 0x832924E2 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt190 - cpu[1] - 0x01 - OK - 0x832924E9 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt191 - cpu[1] - 0x01 - OK - 0x832924F0 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt192 - cpu[1] - 0x01 - OK - 0x832924F7 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt193 - cpu[1] - 0x01 - OK - 0x832924FE - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt194 - cpu[1] - 0x01 - OK - 0x83292505 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt195 - cpu[1] - 0x01 - OK - 0x8329250C - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt196 - cpu[1] - 0x01 - OK - 0x83292513 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt197 - cpu[1] - 0x01 - OK - 0x8329251A - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt198 - cpu[1] - 0x01 - OK - 0x83292521 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt199 - cpu[1] - 0x01 - OK - 0x83292528 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt200 - cpu[1] - 0x01 - OK - 0x8329252F - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt201 - cpu[1] - 0x01 - OK - 0x83292536 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt202 - cpu[1] - 0x01 - OK - 0x8329253D - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt203 - cpu[1] - 0x01 - OK - 0x83292544 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt204 - cpu[1] - 0x01 - OK - 0x8329254B - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       KiUnexpectedInterrupt205 - cpu[1] - 0x01 - OK - 0x83238F2C - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt206 - cpu[1] - 0x01 - OK - 0x832391A8 - C:\Windows\system32\halmacpi.dll - Microsoft Corporation
       KiUnexpectedInterrupt207 - cpu[1] - 0x01 - OK - 0x83292560 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

Message Hook

       conhost.exe - C:\Windows\System32\conhost.exe - WH_MSGFILTER - conhost.exe
       PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - WH_CBT - PCHunter32.exe
       avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - WH_MSGFILTER - mfc110u.dll
       RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - WH_MSGFILTER - RtHDVCpl.exe
       RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - WH_MSGFILTER - RtHDVCpl.exe
       RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - WH_MSGFILTER - RtHDVCpl.exe
       RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - WH_CBT - RtHDVCpl.exe
       RtHDVCpl.exe - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - WH_MSGFILTER - RtHDVCpl.exe
       nvtray.exe - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - WH_MSGFILTER - nvtray.exe
       avastui.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - WH_CBT - mfc110u.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - WH_GETMESSAGE - QtCore4.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - WH_GETMESSAGE - QtCore4.dll
       WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - WH_CALLWNDPROC - guard32.dll
       unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - WH_GETMESSAGE - QtCore4.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit.exe - C:\Program Files\Comodo\GeekBuddy\unit.exe - WH_GETMESSAGE - QtCore4.dll
       unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - WH_GETMESSAGE - QtCore4.dll
       WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - WH_CALLWNDPROC - guard32.dll
       WorldOfTanks.exe - C:\Program Files\World_of_Tanks\WorldOfTanks.exe - WH_CALLWNDPROC - guard32.dll
       unit_manager.exe - C:\Program Files\Comodo\GeekBuddy\unit_manager.exe - WH_GETMESSAGE - QtCore4.dll
       PCHunter32.exe - C:\Users\Vladimir\Desktop\PCHunter32.exe - WH_MSGFILTER - PCHunter32.exe

==========================================================================================

Process Hook

      Image File Name[1664 AvastSvc.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USER32.dll->KERNEL32.dll:LoadLibraryExW - 0x76CF50C1->0x6F3759A0[C:\Program Files\AVAST Software\Avast\aswCmnBS.dll]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1100 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[204 TuneUpUtilitiesApp32.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1688 nvvsvc.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7175000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7178000A

------------------------------------------------------------------------------------------

      Image File Name[668 lsass.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[364 smss.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[2872 WorldOfTanks.exe]Process Hook
             Iat - WorldOfTanks.exe->KERNEL32.dll:CreateProcessA - 0x76CB2082->0x742E241B[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - WorldOfTanks.exe->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WorldOfTanks.exe->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x742E258F[C:\Windows\AppPatch\AcLayers.DLL]
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->_
             inline - len(6) ntdll.dll->NtAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->NtAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->NtConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->NtCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->NtCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->NtCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->NtCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->NtCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->NtCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->NtCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->NtCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->NtCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->NtFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->NtOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->NtOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->NtOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->NtOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->NtOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->NtOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->NtQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->NtReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->NtRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->NtSecureConnectPort - 0x76DD6568->_
             inline - len(6) ntdll.dll->ZwAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->ZwAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->ZwConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->ZwCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->ZwCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->ZwCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->ZwCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->ZwCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->ZwCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->ZwCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->ZwCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->ZwCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->ZwFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->ZwOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->ZwOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->ZwOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->ZwOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->ZwOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->ZwOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->ZwQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->ZwReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->ZwRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->ZwSecureConnectPort - 0x76DD6568->_
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->_
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->_
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->_
             inline - len(6) kernel32.dll->GetPrivateProfileStringA - 0x76CEDEE1->0x71A5000A
             inline - len(6) kernel32.dll->GetPrivateProfileStringW - 0x76CE7FCB->0x71A8000A
             inline - len(6) kernel32.dll->RegOpenKeyExW - 0x76CFCF61->0x7187000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(6) KERNELBASE.dll->LoadLibraryExW - 0x7502B8B1->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             Iat - USER32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) USER32.dll->CreateDialogIndirectParamA - 0x752F721D->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamAorW - 0x75305327->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamW - 0x752FEA10->_
             inline - len(6) USER32.dll->CreateDialogParamA - 0x752F1F42->_
             inline - len(6) USER32.dll->CreateDialogParamW - 0x75305630->_
             inline - len(6) USER32.dll->CreateWindowExA - 0x752DBF40->_
             inline - len(6) USER32.dll->CreateWindowExW - 0x752DEC7C->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamA - 0x7531D274->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamAorW - 0x75303B40->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamW - 0x75303B7F->_
             inline - len(6) USER32.dll->DialogBoxParamA - 0x7531CF42->_
             inline - len(6) USER32.dll->DialogBoxParamW - 0x752F3B9B->_
             inline - len(6) USER32.dll->EnumChildWindows - 0x752E2948->_
             inline - len(6) USER32.dll->EnumDesktopWindows - 0x752DB4C7->_
             inline - len(6) USER32.dll->EnumThreadWindows - 0x752DB712->_
             inline - len(6) USER32.dll->EnumWindows - 0x752E375B->_
             inline - len(6) USER32.dll->FindWindowA - 0x752D8FF3->_
             inline - len(6) USER32.dll->FindWindowExA - 0x752D6F69->_
             inline - len(6) USER32.dll->FindWindowExW - 0x7530712B->_
             inline - len(6) USER32.dll->FindWindowW - 0x752DAE0D->_
             inline - len(6) USER32.dll->GetClassInfoA - 0x752D7158->_
             inline - len(6) USER32.dll->GetClassInfoExA - 0x752D6FD9->_
             inline - len(6) USER32.dll->GetClassInfoExW - 0x752E095E->_
             inline - len(6) USER32.dll->GetClassInfoW - 0x752E0AC2->_
             inline - len(6) USER32.dll->GetClassNameA - 0x75302445->_
             inline - len(6) USER32.dll->GetClassNameW - 0x752E2A29->_
             inline - len(6) USER32.dll->GetShellWindow - 0x752E2FCB->0x71A2000A
             inline - len(6) USER32.dll->RegisterClassA - 0x752DBC6A->_
             inline - len(6) USER32.dll->RegisterClassExA - 0x752D6293->_
             inline - len(6) USER32.dll->RegisterClassExW - 0x752E0162->_
             inline - len(6) USER32.dll->RegisterClassW - 0x752DED4A->_
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->_
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->_
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->_
             inline - len(6) USER32.dll->UnregisterClassA - 0x752D8D70->_
             inline - len(6) USER32.dll->UnregisterClassW - 0x752DB9AE->_
             Iat - GDI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->_
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->_
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->_
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->_
             Iat - USP10.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CRYPT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - VERSION.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - voip.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - vivoxsdk.dll->KERNEL32.dll:CreateProcessA - 0x76CB2082->0x742E241B[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - vivoxsdk.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ortp.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINMM.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - vivoxoal.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) IPHLPAPI.DLL->Icmp6CreateFile - 0x740FACBD->_
             inline - len(6) IPHLPAPI.DLL->Icmp6SendEcho2 - 0x740FAA57->_
             inline - len(6) IPHLPAPI.DLL->IcmpCloseHandle - 0x740F821A->_
             inline - len(6) IPHLPAPI.DLL->IcmpCreateFile - 0x740F8666->0x740F3CE9[C:\Windows\system32\IPHLPAPI.DLL]
             inline - len(6) IPHLPAPI.DLL->IcmpSendEcho2 - 0x740F873B->_
             inline - len(6) IPHLPAPI.DLL->IcmpSendEcho2Ex - 0x740F843C->_
             inline - len(6) IPHLPAPI.DLL->IcmpSendEcho - 0x740F870B->_
             inline - len(6) SHELL32.dll->SHOpenFolderAndSelectItems - 0x759E51CA->0x71AF000A
             inline - len(6) SHELL32.dll->ShellExecuteExW - 0x757C1DF6->0x719F000A
             Iat - SHLWAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->_
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->_
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerA - 0x753E35CF->0x7190000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExA - 0x753E35DF->0x7193000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExW - 0x753AA94D->0x7196000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerW - 0x753AA91D->0x718D000A
             inline - len(6) ADVAPI32.dll->SetServiceStatus - 0x753AC746->0x718A000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherA - 0x753E365F->0x7199000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherW - 0x753AA905->0x719C000A
             inline - len(6) sechost.dll->I_ScPnPGetServiceName - 0x756C7C40->_
             inline - len(6) sechost.dll->I_ScValidatePnPService - 0x756C6B9D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChange - 0x756CA0FF->_
             inline - len(6) sechost.dll->NotifyServiceStatusChangeA - 0x756CA11D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChangeW - 0x756CA0FF->_
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerA - 0x756C7D64->0x7178000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExA - 0x756C7DC6->0x717B000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExW - 0x756C7DA8->0x717E000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerW - 0x756C7D47->0x7175000A
             inline - len(6) sechost.dll->SetServiceStatus - 0x756C4F9C->_
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherA - 0x756C84EB->0x7181000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherW - 0x756C85B2->0x7184000A
             Iat - vivoxplatform.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - libcurl.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLDAP32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSVCR90.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - IMM32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSCTF.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WININET.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - iertutil.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - gdiplus.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - umbraob32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - Secur32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - DINPUT8.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - d3dx9_43.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - d3d9.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - dwmapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - LIBEAY32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - fmodex.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSACM32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - fmod_event_net.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OLEAUT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - d3dx10_43.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - COMCTL32.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINSPOOL.DRV->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MPR.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->_
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->_
             Iat - cmdvrt32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - uxtheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - nvd3dum.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - nvapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SETUPAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CFGMGR32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINTRUST.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - rsaenh.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - NLAapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - napinsp.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - pnrpnsp.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - wshbth.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLIDNSP.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - fwpuclnt.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - powrprof.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - nvSCPAPI.dll->KERNEL32.dll:CreateProcessA - 0x76CB2082->0x742E241B[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - nvSCPAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - nvStereoApiI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - d3dx9_31.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CLBCatQ.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MMDevApi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - PROPSYS.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - AUDIOSES.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - uwApi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - explorerframe.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - DUser.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - DUI70.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - dsound.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]

------------------------------------------------------------------------------------------

      Image File Name[1992 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->0x7190000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717B000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7181000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717E000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x718D000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718A000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7184000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x7187000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             inline - len(4) bfe.dll - 0x6E241D5C->_

------------------------------------------------------------------------------------------

      Image File Name[1500 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[484 nvstreamsvc.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[492 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[512 SASCore.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[500 csrss.exe]Process Hook
             inline - len(5) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x74E22270[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->NtReplyWaitReceivePort - 0x76DD6458->0x74E21970[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->NtReplyWaitReceivePortEx - 0x76DD6468->0x74E21DF0[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x74E22270[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->ZwReplyWaitReceivePort - 0x76DD6458->0x74E21970[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->ZwReplyWaitReceivePortEx - 0x76DD6468->0x74E21DF0[C:\Windows\system32\cmdcsr.dll]
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[4764 unit.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             Iat - QtNetwork4.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - QtCore4.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - QtCore4.dll->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x742E258F[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - USER32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             Iat - GDI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USP10.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             Iat - MSVCR90.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - QtGui4.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - QtGui4.dll->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x742E258F[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - COMDLG32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SHLWAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - COMCTL32.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OLEAUT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - IMM32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSCTF.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINMM.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINSPOOL.DRV->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MPR.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - VERSION.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             Iat - uxtheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - dwmapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLIDNSP.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - fwpuclnt.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - export.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CLBCatQ.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - AutorunsWrapper.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - AutorunsWrapper.dll->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x742E258F[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - WININET.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - iertutil.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OFFREG.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WTSAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - Secur32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINTRUST.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CRYPT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINSTA.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - LINKINFO.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - PROPSYS.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SETUPAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CFGMGR32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - rsaenh.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - bcrypt.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - bcryptprimitives.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CRYPTNET.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLDAP32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - eventmonitorapi.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - wevtapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - addonscontroller.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - export.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - export.DLL->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x742E258F[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - pdh.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - sfc_os.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ntmarta.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - sensor-mb.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - eventmonitorapi.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]

------------------------------------------------------------------------------------------

      Image File Name[564 wininit.exe]Process Hook
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[576 csrss.exe]Process Hook
             inline - len(5) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x74E22270[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->NtReplyWaitReceivePort - 0x76DD6458->0x74E21970[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->NtReplyWaitReceivePortEx - 0x76DD6468->0x74E21DF0[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x74E22270[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->ZwReplyWaitReceivePort - 0x76DD6458->0x74E21970[C:\Windows\system32\cmdcsr.dll]
             inline - len(5) ntdll.dll->ZwReplyWaitReceivePortEx - 0x76DD6468->0x74E21DF0[C:\Windows\system32\cmdcsr.dll]
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[632 services.exe]Process Hook
             inline - len(4) services.exe - 0x00111608->_
             inline - len(4) services.exe - 0x00111618->_
             inline - len(4) services.exe - 0x00111638->_
             inline - len(4) services.exe - 0x00111648->_
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->0x7190000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717B000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7181000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717E000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x718D000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718A000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7184000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x7187000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[656 winlogon.exe]Process Hook
             inline - len(1) kernel32.dll - 0x76D169E4->_
             Iat - uxtheme.dll->KERNEL32.dll:ReadFile - 0x76CF9BAE->0x72582330[c:\windows\system32\uxtuneup.dll]
             Iat - uxtheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x72582430[c:\windows\system32\uxtuneup.dll]
             Iat - themeservice.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x72582430[c:\windows\system32\uxtuneup.dll]
             Iat - themeservice.dll->KERNEL32.dll:ReadFile - 0x76CF9BAE->0x72582330[c:\windows\system32\uxtuneup.dll]

------------------------------------------------------------------------------------------

      Image File Name[3616 wmpnetwk.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[684 lsm.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[736 nvstreamsvc.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[4044 avastui.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7181000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USER32.dll->KERNEL32.dll:LoadLibraryExW - 0x76CF50C1->0x6F3759A0[C:\Program Files\AVAST Software\Avast\aswCmnBS.dll]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x7178000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717B000A
             inline - len(6) advapi32.DLL->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) advapi32.DLL->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7184000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7187000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[3424 taskhost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[796 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->0x7190000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717B000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7181000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717E000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x718D000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718A000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7184000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x7187000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1052 cmdagent.exe]Process Hook
             inline - len(5) ntdll.dll->NtAllocateVirtualMemory - 0x76DD5318->0x00BE32F0[C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe]
             inline - len(5) ntdll.dll->NtCreateFile - 0x76DD5608->0x00C2A0F0[C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe]
             inline - len(5) ntdll.dll->ZwAllocateVirtualMemory - 0x76DD5318->0x00BE32F0[C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe]
             inline - len(5) ntdll.dll->ZwCreateFile - 0x76DD5608->0x00C2A0F0[C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe]
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[1192 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[864 launcher_service.exe]Process Hook
             Iat - launcher_service.exe->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             Iat - WINTRUST.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CRYPT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             Iat - USER32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             Iat - GDI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USP10.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SHLWAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OLEAUT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINSPOOL.DRV->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MPR.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - IMM32.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSCTF.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - VERSION.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             Iat - rsaenh.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - bcrypt.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - bcryptprimitives.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CRYPTNET.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLDAP32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]

------------------------------------------------------------------------------------------

      Image File Name[5764 cmdvirth.exe]Process Hook
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[884 nvvsvc.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1224 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[912 nvSCPAPISvr.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[948 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->0x7190000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717B000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7181000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717E000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x718D000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718A000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7184000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x7187000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             inline - len(8) rpcss.dll - 0x741B35EC->_

------------------------------------------------------------------------------------------

      Image File Name[5708 explorer.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[2260 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[2436 CisTray.exe]Process Hook
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[3152 nvtray.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7181000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x7178000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717B000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7184000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7187000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1260 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7178000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->0x7190000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717B000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7181000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717E000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x718D000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718A000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7184000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x7187000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             Iat - themeservice.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x72582430[c:\windows\system32\uxtuneup.dll]
             Iat - themeservice.dll->KERNEL32.dll:ReadFile - 0x76CF9BAE->0x72582330[c:\windows\system32\uxtuneup.dll]
             Iat - uxtheme.dll->KERNEL32.dll:ReadFile - 0x76CF9BAE->0x72582330[c:\windows\system32\uxtuneup.dll]
             Iat - uxtheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x72582430[c:\windows\system32\uxtuneup.dll]
             inline - len(4) schedsvc.dll - 0x6E90C1BC->_

------------------------------------------------------------------------------------------

      Image File Name[1076 conhost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[3556 cavwp.exe]Process Hook
             inline - len(5) ntdll.dll->NtAllocateVirtualMemory - 0x76DD5318->0x010D11F0[C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe]
             inline - len(5) ntdll.dll->NtCreateFile - 0x76DD5608->0x010D1000[C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe]
             inline - len(5) ntdll.dll->ZwAllocateVirtualMemory - 0x76DD5318->0x010D11F0[C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe]
             inline - len(5) ntdll.dll->ZwCreateFile - 0x76DD5608->0x010D1000[C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe]
             inline - len(1) kernel32.dll - 0x76D169E4->_

------------------------------------------------------------------------------------------

      Image File Name[1148 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1216 dragon_updater.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7181000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x7178000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717B000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7184000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7187000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1364 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1820 GeekBuddyRSP.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[3368 GeekBuddyRSP.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[2548 WLIDSVC.EXE]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1764 RtHDVCpl.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7181000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x7178000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717B000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7184000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7187000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1572 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1832 mbamscheduler.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[1672 nvxdsync.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7175000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7178000A

------------------------------------------------------------------------------------------

      Image File Name[1948 spoolsv.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[2136 daemonu.exe]Process Hook
             Iat - daemonu.exe->KERNEL32.dll:GetFileAttributesW - 0x76D04C04->0x6C6D954C[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - daemonu.exe->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x6C6D995C[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:GetFileAttributesExW - 0x76CF30C6->0x6C6D974A[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:CopyFileW - 0x76CE6B3F->0x6C6E16DE[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - daemonu.exe->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             Iat - SETUPAPI.dll->KERNEL32.dll:RegOpenKeyExW - 0x76CFCF61->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:CopyFileW - 0x76CE6B3F->0x6C6E16DE[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:MoveFileExW - 0x76CF8DF8->0x6C6E19FC[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:RegCreateKeyExW - 0x76CF1669->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:RegDeleteValueW - 0x76CEBB8B->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:RegSetValueExW - 0x76CF9844->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SETUPAPI.dll->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SETUPAPI.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CFGMGR32.dll->ADVAPI32.dll:RegDeleteValueW - 0x753ACED1->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CFGMGR32.dll->ADVAPI32.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CFGMGR32.dll->ADVAPI32.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CFGMGR32.dll->ADVAPI32.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CFGMGR32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:CopyFileW - 0x76CE6B3F->0x6C6E16DE[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ADVAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ADVAPI32.dll->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ADVAPI32.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             Iat - GDI32.dll->KERNEL32.dll:CopyFileW - 0x76CE6B3F->0x6C6E16DE[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - GDI32.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - GDI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - GDI32.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USER32.dll->KERNEL32.dll:RegOpenKeyExW - 0x76CFCF61->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - USER32.dll->KERNEL32.dll:RegSetValueExW - 0x76CF9844->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - USER32.dll->KERNEL32.dll:RegCreateKeyExW - 0x76CF1669->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - USER32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - USER32.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             Iat - USP10.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - USP10.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - USP10.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - OLEAUT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OLEAUT32.dll->KERNEL32.dll:_lwrite - 0x76D3D51D->0x6C6E1C59[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - OLEAUT32.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - OLEAUT32.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINTRUST.dll->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINTRUST.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINTRUST.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CRYPT32.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CRYPT32.dll->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CRYPT32.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CRYPT32.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CRYPT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SHELL32.dll->KERNEL32.dll:MoveFileExW - 0x76CF8DF8->0x6C6E19FC[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHELL32.dll->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHELL32.dll->KERNEL32.dll:CopyFileW - 0x76CE6B3F->0x6C6E16DE[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHLWAPI.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHLWAPI.dll->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHLWAPI.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHLWAPI.dll->KERNEL32.dll:SetFileAttributesA - 0x76CE91E1->0x6C6E1D36[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHLWAPI.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - SHLWAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - UxTheme.dll->KERNEL32.dll:RegDeleteValueW - 0x76CEBB8B->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - UxTheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - UxTheme.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINMM.dll->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINMM.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINMM.dll->KERNEL32.dll:_lwrite - 0x76D3D51D->0x6C6E1C59[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WINMM.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINMM.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSACM32.dll->ADVAPI32.dll:RegCreateKeyW - 0x753B1494->0x6C6E2298[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegCreateKeyA - 0x753ACCA1->0x6C6E2180[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegDeleteValueA - 0x753CA482->0x6C6E2A67[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegOpenKeyExA - 0x753B4887->0x6C6E2549[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegDeleteValueW - 0x753ACED1->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegSetValueExA - 0x753B1433->0x6C6E2903[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MSACM32.dll->ADVAPI32.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:_lopen - 0x76D3D496->0x6C6E1B17[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:_lwrite - 0x76D3D51D->0x6C6E1C59[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - VERSION.dll->KERNEL32.dll:_lcreat - 0x76D3D4E9->0x6C6E1BB8[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:DeleteFileA - 0x76CF43CA->0x6C6E17F8[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - VERSION.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - sfc_os.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - USERENV.dll->KERNEL32.dll:MoveFileExW - 0x76CF8DF8->0x6C6E19FC[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - USERENV.dll->KERNEL32.dll:PrivCopyFileExW - 0x76D185AD->0x6C6E1CD2[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - dwmapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - urlmon.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - urlmon.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->KERNEL32.dll:SetFileAttributesA - 0x76CE91E1->0x6C6E1D36[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->KERNEL32.dll:DeleteFileA - 0x76CF43CA->0x6C6E17F8[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->KERNEL32.dll:CopyFileA - 0x76D16D4A->0x6C6E1686[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegOpenKeyExA - 0x753B4887->0x6C6E2549[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegDeleteValueA - 0x753CA482->0x6C6E2A67[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegCreateKeyExA - 0x753B13E9->0x6C6E232B[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegSetValueExA - 0x753B1433->0x6C6E2903[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - urlmon.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - iertutil.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - iertutil.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - iertutil.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - iertutil.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - iertutil.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - iertutil.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegOpenKeyExA - 0x753B4887->0x6C6E2549[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - iertutil.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegDeleteValueW - 0x753ACED1->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WININET.dll->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:DeleteFileA - 0x76CF43CA->0x6C6E17F8[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:SetFileAttributesA - 0x76CE91E1->0x6C6E1D36[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:MoveFileExW - 0x76CF8DF8->0x6C6E19FC[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegCreateKeyExA - 0x753B13E9->0x6C6E232B[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegSetValueExA - 0x753B1433->0x6C6E2903[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegDeleteValueW - 0x753ACED1->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegOpenKeyExA - 0x753B4887->0x6C6E2549[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WININET.dll->api-ms-win-downlevel-advapi32-l1-1-0.dll:RegDeleteValueA - 0x753CA482->0x6C6E2A67[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - MPR.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - IMM32.DLL->KERNEL32.dll:OpenFile - 0x76D0D53F->0x6C6E1A6C[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - IMM32.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSCTF.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - guard32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->ADVAPI32.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - fltlib.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             Iat - ntmarta.dll->ADVAPI32.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ntmarta.dll->ADVAPI32.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ntmarta.dll->ADVAPI32.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ntmarta.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - ntmarta.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLDAP32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - NLAapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - napinsp.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - pnrpnsp.dll->KERNEL32.dll:RegOpenKeyExW - 0x76CFCF61->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - pnrpnsp.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - wshbth.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - wshbth.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WLIDNSP.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WLIDNSP.DLL->KERNEL32.dll:CreateFileA - 0x76CFEA51->0x6C6E3090[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WLIDNSP.DLL->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WLIDNSP.DLL->ADVAPI32.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WLIDNSP.DLL->ADVAPI32.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - WLIDNSP.DLL->ADVAPI32.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - fwpuclnt.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - fwpuclnt.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CLBCatQ.DLL->ADVAPI32.dll:RegDeleteValueW - 0x753ACED1->0x6C6E2B09[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->ADVAPI32.dll:RegCreateKeyExW - 0x753B407E->0x6C6E2439[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->ADVAPI32.dll:RegOpenKeyExW - 0x753B460D->0x6C6E261D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->ADVAPI32.dll:RegSetValueExW - 0x753B1456->0x6C6E29B7[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->KERNEL32.dll:MoveFileExW - 0x76CF8DF8->0x6C6E19FC[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->KERNEL32.dll:SetFileAttributesW - 0x76CEB333->0x6C6E1D8E[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->KERNEL32.dll:MoveFileW - 0x76D16EC6->0x6C6E1917[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - CLBCatQ.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - rsaenh.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - rsaenh.dll->KERNEL32.dll:RegSetValueExA - 0x76CF40A0->0x6C6E2903[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - rsaenh.dll->KERNEL32.dll:RegCreateKeyExA - 0x76CF367E->0x6C6E232B[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - rsaenh.dll->KERNEL32.dll:CreateFileW - 0x76CFE895->0x6C6E31A9[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - rsaenh.dll->KERNEL32.dll:MoveFileExW - 0x76CF8DF8->0x6C6E19FC[C:\Windows\AppPatch\AcGenral.DLL]
             Iat - rsaenh.dll->KERNEL32.dll:DeleteFileW - 0x76CF1737->0x6C6E184D[C:\Windows\AppPatch\AcGenral.DLL]

------------------------------------------------------------------------------------------

      Image File Name[2148 rundll32.exe]Process Hook
             Iat - rundll32.exe->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             Iat - USER32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             Iat - GDI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USP10.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             Iat - SHLWAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OLEAUT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINSPOOL.DRV->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MPR.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - IMM32.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSCTF.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - VERSION.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             Iat - mmsys.cpl->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - COMCTL32.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - COMDLG32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINMM.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - gdiplus.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - UxTheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WindowsCodecs.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CLBCatQ.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MMDevApi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - PROPSYS.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SETUPAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - CFGMGR32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - AUDIOSES.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]

------------------------------------------------------------------------------------------

      Image File Name[2324 TuneUpUtilitiesService32.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[3008 dwm.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[2756 WLIDSVCM.EXE]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[2808 unit_manager.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             Iat - QtNetwork4.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - QtCore4.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - QtCore4.dll->KERNEL32.dll:CreateProcessW - 0x76CB204D->0x742E258F[C:\Windows\AppPatch\AcLayers.DLL]
             Iat - USER32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             Iat - GDI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             Iat - USP10.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - ADVAPI32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             Iat - MSVCR90.dll[WinSxs]->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - SHLWAPI.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - OLEAUT32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - WINSPOOL.DRV->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MPR.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - IMM32.DLL->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - MSCTF.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - guard32.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - VERSION.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A
             Iat - winmm.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - uxtheme.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]
             Iat - dwmapi.dll->KERNEL32.dll:GetProcAddress - 0x76CFCC84->0x74CFFFF6[C:\Windows\system32\apphelp.dll]

------------------------------------------------------------------------------------------

      Image File Name[4904 PCHunter32.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x7175000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(5) kernel32.dll->LoadLibraryExW - 0x76CF50C1->0x0043F3E0[C:\Users\Vladimir\Desktop\PCHunter32.exe]
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x7178000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x717B000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7181000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) MSIMG32.dll->AlphaBlend - 0x740D1210->0x7184000A
             inline - len(6) MSIMG32.dll->TransparentBlt - 0x740D1320->0x7187000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[3228 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[4696 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->_
             inline - len(6) ntdll.dll->NtAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->NtAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->NtConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->NtCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->NtCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->NtCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->NtCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->NtCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->NtCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->NtCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->NtCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->NtCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->NtFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->NtOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->NtOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->NtOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->NtOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->NtOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->NtOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->NtQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->NtReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->NtRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->NtSecureConnectPort - 0x76DD6568->_
             inline - len(6) ntdll.dll->ZwAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->ZwAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->ZwConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->ZwCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->ZwCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->ZwCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->ZwCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->ZwCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->ZwCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->ZwCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->ZwCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->ZwCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->ZwFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->ZwOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->ZwOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->ZwOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->ZwOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->ZwOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->ZwOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->ZwQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->ZwReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->ZwRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->ZwSecureConnectPort - 0x76DD6568->_
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->_
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->_
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->_
             inline - len(6) kernel32.dll->GetPrivateProfileStringA - 0x76CEDEE1->0x71A8000A
             inline - len(6) kernel32.dll->GetPrivateProfileStringW - 0x76CE7FCB->0x71AB000A
             inline - len(6) kernel32.dll->RegOpenKeyExW - 0x76CFCF61->0x718D000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(6) KERNELBASE.dll->LoadLibraryExW - 0x7502B8B1->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x50515257
             inline - len(6) sechost.dll->I_ScPnPGetServiceName - 0x756C7C40->_
             inline - len(6) sechost.dll->I_ScValidatePnPService - 0x756C6B9D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChange - 0x756CA0FF->0x7175000A
             inline - len(6) sechost.dll->NotifyServiceStatusChangeA - 0x756CA11D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChangeW - 0x756CA0FF->0x7175000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerA - 0x756C7D64->0x717E000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExA - 0x756C7DC6->0x7181000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExW - 0x756C7DA8->0x7184000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerW - 0x756C7D47->0x717B000A
             inline - len(6) sechost.dll->SetServiceStatus - 0x756C4F9C->0x7178000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherA - 0x756C84EB->0x7187000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherW - 0x756C85B2->0x718A000A
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamA - 0x752F721D->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamAorW - 0x75305327->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamW - 0x752FEA10->_
             inline - len(6) USER32.dll->CreateDialogParamA - 0x752F1F42->_
             inline - len(6) USER32.dll->CreateDialogParamW - 0x75305630->_
             inline - len(6) USER32.dll->CreateWindowExA - 0x752DBF40->_
             inline - len(6) USER32.dll->CreateWindowExW - 0x752DEC7C->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamA - 0x7531D274->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamAorW - 0x75303B40->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamW - 0x75303B7F->_
             inline - len(6) USER32.dll->DialogBoxParamA - 0x7531CF42->_
             inline - len(6) USER32.dll->DialogBoxParamW - 0x752F3B9B->_
             inline - len(6) USER32.dll->EnumChildWindows - 0x752E2948->_
             inline - len(6) USER32.dll->EnumDesktopWindows - 0x752DB4C7->_
             inline - len(6) USER32.dll->EnumThreadWindows - 0x752DB712->_
             inline - len(6) USER32.dll->EnumWindows - 0x752E375B->_
             inline - len(6) USER32.dll->FindWindowA - 0x752D8FF3->_
             inline - len(6) USER32.dll->FindWindowExA - 0x752D6F69->_
             inline - len(6) USER32.dll->FindWindowExW - 0x7530712B->_
             inline - len(6) USER32.dll->FindWindowW - 0x752DAE0D->_
             inline - len(6) USER32.dll->GetClassInfoA - 0x752D7158->_
             inline - len(6) USER32.dll->GetClassInfoExA - 0x752D6FD9->_
             inline - len(6) USER32.dll->GetClassInfoExW - 0x752E095E->_
             inline - len(6) USER32.dll->GetClassInfoW - 0x752E0AC2->_
             inline - len(6) USER32.dll->GetClassNameA - 0x75302445->_
             inline - len(6) USER32.dll->GetClassNameW - 0x752E2A29->_
             inline - len(6) USER32.dll->GetShellWindow - 0x752E2FCB->0x71A5000A
             inline - len(6) USER32.dll->RegisterClassA - 0x752DBC6A->_
             inline - len(6) USER32.dll->RegisterClassExA - 0x752D6293->_
             inline - len(6) USER32.dll->RegisterClassExW - 0x752E0162->_
             inline - len(6) USER32.dll->RegisterClassW - 0x752DED4A->_
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->_
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->_
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->_
             inline - len(6) USER32.dll->UnregisterClassA - 0x752D8D70->_
             inline - len(6) USER32.dll->UnregisterClassW - 0x752DB9AE->_
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->_
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->_
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->_
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->_
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->_
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->_
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerA - 0x753E35CF->0x7196000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExA - 0x753E35DF->0x7199000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExW - 0x753AA94D->0x719C000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerW - 0x753AA91D->0x7193000A
             inline - len(6) ADVAPI32.dll->SetServiceStatus - 0x753AC746->0x7190000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherA - 0x753E365F->0x719F000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherW - 0x753AA905->0x71A2000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->_
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->_
             inline - len(8) rpcss.dll - 0x741B35EC->_

------------------------------------------------------------------------------------------

      Image File Name[6120 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->_
             inline - len(6) ntdll.dll->NtAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->NtAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->NtConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->NtCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->NtCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->NtCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->NtCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->NtCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->NtCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->NtCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->NtCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->NtCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->NtFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->NtOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->NtOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->NtOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->NtOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->NtOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->NtOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->NtQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->NtReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->NtRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->NtSecureConnectPort - 0x76DD6568->_
             inline - len(6) ntdll.dll->ZwAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->ZwAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->ZwConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->ZwCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->ZwCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->ZwCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->ZwCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->ZwCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->ZwCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->ZwCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->ZwCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->ZwCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->ZwFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->ZwOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->ZwOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->ZwOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->ZwOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->ZwOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->ZwOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->ZwQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->ZwReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->ZwRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->ZwSecureConnectPort - 0x76DD6568->_
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->_
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->_
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->_
             inline - len(6) kernel32.dll->GetPrivateProfileStringA - 0x76CEDEE1->0x71A8000A
             inline - len(6) kernel32.dll->GetPrivateProfileStringW - 0x76CE7FCB->0x71AB000A
             inline - len(6) kernel32.dll->RegOpenKeyExW - 0x76CFCF61->0x718D000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(6) KERNELBASE.dll->LoadLibraryExW - 0x7502B8B1->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x50515257
             inline - len(6) sechost.dll->I_ScPnPGetServiceName - 0x756C7C40->_
             inline - len(6) sechost.dll->I_ScValidatePnPService - 0x756C6B9D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChange - 0x756CA0FF->0x7175000A
             inline - len(6) sechost.dll->NotifyServiceStatusChangeA - 0x756CA11D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChangeW - 0x756CA0FF->0x7175000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerA - 0x756C7D64->0x717E000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExA - 0x756C7DC6->0x7181000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExW - 0x756C7DA8->0x7184000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerW - 0x756C7D47->0x717B000A
             inline - len(6) sechost.dll->SetServiceStatus - 0x756C4F9C->0x7178000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherA - 0x756C84EB->0x7187000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherW - 0x756C85B2->0x718A000A
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamA - 0x752F721D->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamAorW - 0x75305327->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamW - 0x752FEA10->_
             inline - len(6) USER32.dll->CreateDialogParamA - 0x752F1F42->_
             inline - len(6) USER32.dll->CreateDialogParamW - 0x75305630->_
             inline - len(6) USER32.dll->CreateWindowExA - 0x752DBF40->_
             inline - len(6) USER32.dll->CreateWindowExW - 0x752DEC7C->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamA - 0x7531D274->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamAorW - 0x75303B40->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamW - 0x75303B7F->_
             inline - len(6) USER32.dll->DialogBoxParamA - 0x7531CF42->_
             inline - len(6) USER32.dll->DialogBoxParamW - 0x752F3B9B->_
             inline - len(6) USER32.dll->EnumChildWindows - 0x752E2948->_
             inline - len(6) USER32.dll->EnumDesktopWindows - 0x752DB4C7->_
             inline - len(6) USER32.dll->EnumThreadWindows - 0x752DB712->_
             inline - len(6) USER32.dll->EnumWindows - 0x752E375B->_
             inline - len(6) USER32.dll->FindWindowA - 0x752D8FF3->_
             inline - len(6) USER32.dll->FindWindowExA - 0x752D6F69->_
             inline - len(6) USER32.dll->FindWindowExW - 0x7530712B->_
             inline - len(6) USER32.dll->FindWindowW - 0x752DAE0D->_
             inline - len(6) USER32.dll->GetClassInfoA - 0x752D7158->_
             inline - len(6) USER32.dll->GetClassInfoExA - 0x752D6FD9->_
             inline - len(6) USER32.dll->GetClassInfoExW - 0x752E095E->_
             inline - len(6) USER32.dll->GetClassInfoW - 0x752E0AC2->_
             inline - len(6) USER32.dll->GetClassNameA - 0x75302445->_
             inline - len(6) USER32.dll->GetClassNameW - 0x752E2A29->_
             inline - len(6) USER32.dll->GetShellWindow - 0x752E2FCB->0x71A5000A
             inline - len(6) USER32.dll->RegisterClassA - 0x752DBC6A->_
             inline - len(6) USER32.dll->RegisterClassExA - 0x752D6293->_
             inline - len(6) USER32.dll->RegisterClassExW - 0x752E0162->_
             inline - len(6) USER32.dll->RegisterClassW - 0x752DED4A->_
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->_
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->_
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->_
             inline - len(6) USER32.dll->UnregisterClassA - 0x752D8D70->_
             inline - len(6) USER32.dll->UnregisterClassW - 0x752DB9AE->_
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->_
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->_
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->_
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->_
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->_
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->_
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerA - 0x753E35CF->0x7196000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExA - 0x753E35DF->0x7199000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExW - 0x753AA94D->0x719C000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerW - 0x753AA91D->0x7193000A
             inline - len(6) ADVAPI32.dll->SetServiceStatus - 0x753AC746->0x7190000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherA - 0x753E365F->0x719F000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherW - 0x753AA905->0x71A2000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->_
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->_

------------------------------------------------------------------------------------------

      Image File Name[5504 audiodg.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->0x71A8000A
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->0x71AF000A
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->0x717B000A
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->0x71AF000A
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->0x719C000A
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->0x7193000A
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->0x719F000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x71AC0000
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->0x717E000A
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->0x7184000A
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->0x7181000A
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->0x7190000A
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->0x718D000A
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->0x7187000A
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->0x718A000A
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->0x7199000A
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->0x7196000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->0x71A5000A
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->0x71A2000A

------------------------------------------------------------------------------------------

      Image File Name[4888 svchost.exe]Process Hook
             inline - len(6) ntdll.dll->LdrUnloadDll - 0x76DEC8DE->_
             inline - len(6) ntdll.dll->NtAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->NtAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->NtAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->NtClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->NtConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->NtCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->NtCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->NtCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->NtCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->NtCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->NtCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->NtCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->NtCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->NtCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->NtFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->NtOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->NtOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->NtOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->NtOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->NtOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->NtOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->NtQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->NtReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->NtRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->NtSecureConnectPort - 0x76DD6568->_
             inline - len(6) ntdll.dll->ZwAlpcConnectPort - 0x76DD5348->_
             inline - len(6) ntdll.dll->ZwAlpcCreatePort - 0x76DD5358->_
             inline - len(6) ntdll.dll->ZwAlpcSendWaitReceivePort - 0x76DD5458->_
             inline - len(6) ntdll.dll->ZwClose - 0x76DD5508->_
             inline - len(6) ntdll.dll->ZwConnectPort - 0x76DD5598->_
             inline - len(6) ntdll.dll->ZwCreateEvent - 0x76DD55E8->_
             inline - len(6) ntdll.dll->ZwCreateEventPair - 0x76DD55F8->_
             inline - len(6) ntdll.dll->ZwCreateFile - 0x76DD5608->_
             inline - len(6) ntdll.dll->ZwCreateMutant - 0x76DD5688->_
             inline - len(6) ntdll.dll->ZwCreateNamedPipeFile - 0x76DD5698->_
             inline - len(6) ntdll.dll->ZwCreatePort - 0x76DD56B8->_
             inline - len(6) ntdll.dll->ZwCreateSection - 0x76DD5728->_
             inline - len(6) ntdll.dll->ZwCreateSemaphore - 0x76DD5738->_
             inline - len(6) ntdll.dll->ZwCreateWaitablePort - 0x76DD57C8->_
             inline - len(6) ntdll.dll->ZwFsControlFile - 0x76DD5A48->_
             inline - len(6) ntdll.dll->ZwOpenEvent - 0x76DD5CF8->_
             inline - len(6) ntdll.dll->ZwOpenEventPair - 0x76DD5D08->_
             inline - len(6) ntdll.dll->ZwOpenFile - 0x76DD5D18->_
             inline - len(6) ntdll.dll->ZwOpenMutant - 0x76DD5D98->_
             inline - len(6) ntdll.dll->ZwOpenSection - 0x76DD5E08->_
             inline - len(6) ntdll.dll->ZwOpenSemaphore - 0x76DD5E18->_
             inline - len(6) ntdll.dll->ZwQueryVirtualMemory - 0x76DD6298->_
             inline - len(6) ntdll.dll->ZwReplyPort - 0x76DD6448->_
             inline - len(6) ntdll.dll->ZwRequestWaitReplyPort - 0x76DD6498->_
             inline - len(6) ntdll.dll->ZwSecureConnectPort - 0x76DD6568->_
             inline - len(6) kernel32.dll->CreateProcessA - 0x76CB2082->_
             inline - len(6) kernel32.dll->CreateProcessAsUserW - 0x76CE59FF->_
             inline - len(6) kernel32.dll->CreateProcessW - 0x76CB204D->_
             inline - len(6) kernel32.dll->GetPrivateProfileStringA - 0x76CEDEE1->0x71A8000A
             inline - len(6) kernel32.dll->GetPrivateProfileStringW - 0x76CE7FCB->0x71AB000A
             inline - len(6) kernel32.dll->RegOpenKeyExW - 0x76CFCF61->0x718D000A
             inline - len(1) kernel32.dll - 0x76D169E4->_
             inline - len(6) KERNELBASE.dll->CheckTokenMembership - 0x7502AF13->_
             inline - len(6) KERNELBASE.dll->LoadLibraryExW - 0x7502B8B1->_
             inline - len(4) KERNELBASE.dll - 0x75028C15->0x50515257
             inline - len(6) sechost.dll->I_ScPnPGetServiceName - 0x756C7C40->_
             inline - len(6) sechost.dll->I_ScValidatePnPService - 0x756C6B9D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChange - 0x756CA0FF->0x7175000A
             inline - len(6) sechost.dll->NotifyServiceStatusChangeA - 0x756CA11D->_
             inline - len(6) sechost.dll->NotifyServiceStatusChangeW - 0x756CA0FF->0x7175000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerA - 0x756C7D64->0x717E000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExA - 0x756C7DC6->0x7181000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerExW - 0x756C7DA8->0x7184000A
             inline - len(6) sechost.dll->RegisterServiceCtrlHandlerW - 0x756C7D47->0x717B000A
             inline - len(6) sechost.dll->SetServiceStatus - 0x756C4F9C->0x7178000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherA - 0x756C84EB->0x7187000A
             inline - len(6) sechost.dll->StartServiceCtrlDispatcherW - 0x756C85B2->0x718A000A
             inline - len(6) RPCRT4.dll->RpcServerRegisterIfEx - 0x767E08A4->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamA - 0x752F721D->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamAorW - 0x75305327->_
             inline - len(6) USER32.dll->CreateDialogIndirectParamW - 0x752FEA10->_
             inline - len(6) USER32.dll->CreateDialogParamA - 0x752F1F42->_
             inline - len(6) USER32.dll->CreateDialogParamW - 0x75305630->_
             inline - len(6) USER32.dll->CreateWindowExA - 0x752DBF40->_
             inline - len(6) USER32.dll->CreateWindowExW - 0x752DEC7C->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamA - 0x7531D274->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamAorW - 0x75303B40->_
             inline - len(6) USER32.dll->DialogBoxIndirectParamW - 0x75303B7F->_
             inline - len(6) USER32.dll->DialogBoxParamA - 0x7531CF42->_
             inline - len(6) USER32.dll->DialogBoxParamW - 0x752F3B9B->_
             inline - len(6) USER32.dll->EnumChildWindows - 0x752E2948->_
             inline - len(6) USER32.dll->EnumDesktopWindows - 0x752DB4C7->_
             inline - len(6) USER32.dll->EnumThreadWindows - 0x752DB712->_
             inline - len(6) USER32.dll->EnumWindows - 0x752E375B->_
             inline - len(6) USER32.dll->FindWindowA - 0x752D8FF3->_
             inline - len(6) USER32.dll->FindWindowExA - 0x752D6F69->_
             inline - len(6) USER32.dll->FindWindowExW - 0x7530712B->_
             inline - len(6) USER32.dll->FindWindowW - 0x752DAE0D->_
             inline - len(6) USER32.dll->GetClassInfoA - 0x752D7158->_
             inline - len(6) USER32.dll->GetClassInfoExA - 0x752D6FD9->_
             inline - len(6) USER32.dll->GetClassInfoExW - 0x752E095E->_
             inline - len(6) USER32.dll->GetClassInfoW - 0x752E0AC2->_
             inline - len(6) USER32.dll->GetClassNameA - 0x75302445->_
             inline - len(6) USER32.dll->GetClassNameW - 0x752E2A29->_
             inline - len(6) USER32.dll->GetShellWindow - 0x752E2FCB->0x71A5000A
             inline - len(6) USER32.dll->RegisterClassA - 0x752DBC6A->_
             inline - len(6) USER32.dll->RegisterClassExA - 0x752D6293->_
             inline - len(6) USER32.dll->RegisterClassExW - 0x752E0162->_
             inline - len(6) USER32.dll->RegisterClassW - 0x752DED4A->_
             inline - len(6) USER32.dll->SetWinEventHook - 0x752E24DC->_
             inline - len(6) USER32.dll->SetWindowsHookExA - 0x75306D0C->_
             inline - len(6) USER32.dll->SetWindowsHookExW - 0x752DE30C->_
             inline - len(6) USER32.dll->UnregisterClassA - 0x752D8D70->_
             inline - len(6) USER32.dll->UnregisterClassW - 0x752DB9AE->_
             inline - len(6) GDI32.dll->CreateDCA - 0x7564CCA9->_
             inline - len(6) GDI32.dll->CreateDCW - 0x7564CF79->_
             inline - len(6) GDI32.dll->DeleteDC - 0x75646EAA->_
             inline - len(6) GDI32.dll->GetPixel - 0x7564C3D5->_
             inline - len(6) ADVAPI32.dll->CreateProcessAsUserA - 0x753E2642->_
             inline - len(6) ADVAPI32.dll->CreateProcessWithLogonW - 0x753E5429->_
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerA - 0x753E35CF->0x7196000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExA - 0x753E35DF->0x7199000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerExW - 0x753AA94D->0x719C000A
             inline - len(6) ADVAPI32.dll->RegisterServiceCtrlHandlerW - 0x753AA91D->0x7193000A
             inline - len(6) ADVAPI32.dll->SetServiceStatus - 0x753AC746->0x7190000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherA - 0x753E365F->0x719F000A
             inline - len(6) ADVAPI32.dll->StartServiceCtrlDispatcherW - 0x753AA905->0x71A2000A
             inline - len(6) fltlib.dll->FilterConnectCommunicationPort - 0x74C512C6->_
             inline - len(6) fltlib.dll->FilterSendMessage - 0x74C52384->_

==========================================================================================

KernelCallbackTable

      Image File Name[4 System]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[1664 AvastSvc.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1100 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[204 TuneUpUtilitiesApp32.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1688 nvvsvc.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[668 lsass.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[364 smss.exe]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[2872 WorldOfTanks.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1948 spoolsv.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1992 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1500 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[484 nvstreamsvc.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[492 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[512 SASCore.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[500 csrss.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4764 unit.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3556 cavwp.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[564 wininit.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[576 csrss.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[632 services.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[656 winlogon.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3616 wmpnetwk.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[684 lsm.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[736 nvstreamsvc.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3424 taskhost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[796 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1052 cmdagent.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1192 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[864 launcher_service.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[5764 cmdvirth.exe]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[884 nvvsvc.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[912 nvSCPAPISvr.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[948 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[5708 explorer.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2260 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2436 CisTray.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[5140 conhost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3152 nvtray.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1260 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1076 conhost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1148 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1224 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1216 dragon_updater.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4044 avastui.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1364 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1820 GeekBuddyRSP.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3368 GeekBuddyRSP.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4628 WerFault.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2548 WLIDSVC.EXE]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1764 RtHDVCpl.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1572 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1832 mbamscheduler.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1672 nvxdsync.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1768 PING.EXE]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3404 PING.EXE]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4212 conhost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2136 daemonu.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2148 rundll32.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[5932 WerFault.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2324 TuneUpUtilitiesService32.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3008 dwm.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2756 WLIDSVCM.EXE]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[2808 unit_manager.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4904 PCHunter32.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4696 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[3228 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[6120 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[5504 audiodg.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\System32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\System32\USER32.dll
             fnDWORD - OK - C:\Windows\System32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\System32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\System32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\System32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\System32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\System32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\System32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\System32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\System32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\System32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\System32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\System32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\System32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\System32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\System32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\System32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\System32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\System32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\System32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\System32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\System32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\System32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\System32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\System32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\System32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\System32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\System32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\System32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\System32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\System32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\System32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\System32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\System32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\System32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\System32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\System32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\System32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\System32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\System32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\System32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\System32\USER32.dll
             ClientCopyImage - OK - C:\Windows\System32\USER32.dll
             ClientEventCallback - OK - C:\Windows\System32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\System32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\System32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\System32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\System32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\System32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\System32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\System32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\System32\USER32.dll
             ClientLoadImage - OK - C:\Windows\System32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\System32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\System32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\System32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\System32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\System32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\System32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\System32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\System32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\System32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\System32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\System32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\System32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\System32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\System32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\System32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\System32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\System32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\System32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\System32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\System32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\System32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\System32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\System32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\System32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\System32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\System32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\System32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\System32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\System32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\System32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\System32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\System32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\System32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\System32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\System32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\System32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\System32\USER32.dll
             fnTOUCH - OK - C:\Windows\System32\USER32.dll
             fnGESTURE - OK - C:\Windows\System32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\System32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[4888 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[0 Idle]KernelCallbackTable

==========================================================================================

Port

       Tcp 0.0.0.0 : 135 - 0.0.0.0 : 0 - LISTENING - 948 - C:\Windows\System32\svchost.exe
       Tcp 192.168.0.100 : 139 - 0.0.0.0 : 0 - LISTENING - 4 - System
       Tcp 127.0.0.1 : 2559 - 0.0.0.0 : 0 - LISTENING - 2136 - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
       Tcp 0.0.0.0 : 5800 - 0.0.0.0 : 0 - LISTENING - 1820 - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
       Tcp 127.0.0.1 : 5901 - 0.0.0.0 : 0 - LISTENING - 1820 - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
       Tcp 127.0.0.1 : 10501 - 127.0.0.1 : 49576 - ESTABLISHED - 2872 - C:\Program Files\World_of_Tanks\WorldOfTanks.exe
       Tcp 127.0.0.1 : 10502 - 127.0.0.1 : 49577 - ESTABLISHED - 2872 - C:\Program Files\World_of_Tanks\WorldOfTanks.exe
       Tcp 127.0.0.1 : 12025 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12080 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12110 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12119 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12143 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12465 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12563 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12993 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 12995 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 127.0.0.1 : 27275 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 49152 - 0.0.0.0 : 0 - LISTENING - 564 - C:\Windows\System32\wininit.exe
       Tcp 0.0.0.0 : 49153 - 0.0.0.0 : 0 - LISTENING - 1148 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 49154 - 0.0.0.0 : 0 - LISTENING - 668 - C:\Windows\System32\lsass.exe
       Tcp 0.0.0.0 : 49155 - 0.0.0.0 : 0 - LISTENING - 1260 - C:\Windows\System32\svchost.exe
       Tcp 192.168.0.100 : 49159 - 77.234.41.56 : 80 - ESTABLISHED - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 49163 - 0.0.0.0 : 0 - LISTENING - 632 - C:\Windows\System32\services.exe
       Tcp 0.0.0.0 : 49167 - 0.0.0.0 : 0 - LISTENING - 3228 - C:\Windows\System32\svchost.exe
       Tcp 192.168.0.100 : 49193 - 91.199.212.171 : 80 - CLOSE_WAIT - 1052 - C:\Program Files\Comodo\COMODO Internet Security\cmdagent.exe
       Tcp 192.168.0.100 : 49194 - 178.255.82.1 : 80 - CLOSE_WAIT - 1052 - C:\Program Files\Comodo\COMODO Internet Security\cmdagent.exe
       Tcp 192.168.0.100 : 49534 - 173.194.70.101 : 80 - CLOSE_WAIT - 4044 - C:\Program Files\AVAST Software\Avast\avastui.exe
       Tcp 127.0.0.1 : 49576 - 127.0.0.1 : 10501 - ESTABLISHED - 2872 - C:\Program Files\World_of_Tanks\WorldOfTanks.exe
       Tcp 127.0.0.1 : 49577 - 127.0.0.1 : 10502 - ESTABLISHED - 2872 - C:\Program Files\World_of_Tanks\WorldOfTanks.exe
       Tcp 127.0.0.1 : 51339 - 127.0.0.1 : 12080 - TIME_WAIT - 0 - 
       Tcp 127.0.0.1 : 51341 - 127.0.0.1 : 12080 - TIME_WAIT - 0 - 
       Tcp 127.0.0.1 : 51343 - 127.0.0.1 : 12080 - TIME_WAIT - 0 - 
       Tcp 127.0.0.1 : 51345 - 127.0.0.1 : 12080 - TIME_WAIT - 0 - 
       Tcp 0.0.0.0 : 135 - 0.0.0.0 : 0 - LISTENING - 948 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 135 - 0.0.0.0 : 50103 - ESTABLISHED - 948 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 445 - 0.0.0.0 : 0 - LISTENING - 4 - System
       Tcp 0.0.0.0 : 5357 - 0.0.0.0 : 0 - LISTENING - 4 - System
       Tcp 0.0.0.0 : 12025 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12080 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12110 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12119 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12143 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12465 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12563 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12993 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 12995 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 27275 - 0.0.0.0 : 0 - LISTENING - 1664 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
       Tcp 0.0.0.0 : 49152 - 0.0.0.0 : 0 - LISTENING - 564 - C:\Windows\System32\wininit.exe
       Tcp 0.0.0.0 : 49153 - 0.0.0.0 : 0 - LISTENING - 1148 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 49154 - 0.0.0.0 : 0 - LISTENING - 668 - C:\Windows\System32\lsass.exe
       Tcp 0.0.0.0 : 49155 - 0.0.0.0 : 0 - LISTENING - 1260 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 49163 - 0.0.0.0 : 0 - LISTENING - 632 - C:\Windows\System32\services.exe
       Tcp 0.0.0.0 : 49167 - 0.0.0.0 : 0 - LISTENING - 3228 - C:\Windows\System32\svchost.exe
       Udp 192.168.0.100 : 137 - * : * - 4 - System
       Udp 192.168.0.100 : 138 - * : * - 4 - System
       Udp 0.0.0.0 : 500 - * : * - 1260 - C:\Windows\System32\svchost.exe
       Udp 127.0.0.1 : 1900 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 192.168.0.100 : 1900 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 4500 - * : * - 1260 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 5355 - * : * - 1100 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 32509 - * : * - 2872 - C:\Program Files\World_of_Tanks\WorldOfTanks.exe
       Udp 127.0.0.1 : 48000 - * : * - 2136 - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
       Udp 127.0.0.1 : 48001 - * : * - 736 - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
       Udp 127.0.0.1 : 48002 - * : * - 3152 - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
       Udp 0.0.0.0 : 53503 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 56386 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 192.168.0.100 : 57510 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 127.0.0.1 : 57511 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 127.0.0.1 : 62466 - * : * - 4904 - C:\Users\Vladimir\Desktop\PCHunter32.exe
       Udp 0.0.0.0 : 62718 - * : * - 2872 - C:\Program Files\World_of_Tanks\WorldOfTanks.exe
       Udp 0.0.0.0 : 64938 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 500 - * : * - 1260 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 1900 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 1900 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 3702 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 4500 - * : * - 1260 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 5355 - * : * - 1100 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 53504 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 56387 - * : * - 1224 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 57508 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 57509 - * : * - 1500 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 64939 - * : * - 1224 - C:\Windows\System32\svchost.exe

==========================================================================================

Tcpip

       IRP_MJ_CREATE - OK - 0x8D449669 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x8D449669 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8D484B3B - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8D449669 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x8D449669 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

Nsiproxy

       IRP_MJ_CREATE - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x95FD2FB2 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation

==========================================================================================

Tdx

       IRP_MJ_CREATE - OK - 0x8CFD9FAA - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0x8CFDA23E - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0x8CFDB332 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0x8CFDA2BE - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0x8CFDA1CA - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0x8CFDA4C4 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0x8330A0E5 - C:\Windows\system32\ntkrnlpa.exe - Microsoft Corporation

==========================================================================================

Ndis Handler

       0x8C138340 - NdisProtocolBlock - 0x9B2924C8 - StatusHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B291CBA - PnPEventHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B2918AA - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B291DCE - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B291C98 - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B291C66 - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B29214E - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B291DA6 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C138340 - NdisProtocolBlock - 0x9B292092 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x9B2924C8 - StatusHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x9643C9FC - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x9B291DA6 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x9B29214E - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x9643C9FC - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x9B292092 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       0x8C13CAA8 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E87FA - StatusHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E8674 - PnPEventHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E8B48 - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E8888 - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E8652 - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E8622 - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E8EDA - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7E9274 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12D878 - NdisProtocolBlock - 0x9B7EE202 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x9B7E87FA - StatusHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x9643C9FC - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x9B7E9274 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x9B7E8EDA - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x9643C9FC - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x9B7EE202 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       0x8C12C008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B28B006 - OpenAdapterCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B28B038 - CloseAdapterCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B28168E - (Wan)SendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B281696 - (Wan)TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B280948 - BindAdapterHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B280DD4 - UnbindAdapterHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B28B074 - PnPEventHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B281634 - UnloadHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B2816CA - CoStatusHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B2816AE - CoReceivePacketHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x872F4828 - NdisProtocolBlock - 0x9B281222 - CoAfRegisterNotifyHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D2950FD - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D29517E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D25C191 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9656C3BA - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x96563A1C - MiniportCoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B280618 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B280618 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B280618 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B28169E - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B280648 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D25C191 - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9656C3BA - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D2950FD - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x9656399A - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1B008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D2950FD - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D29517E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D25C191 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9656C3BA - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x96563A1C - MiniportCoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B286006 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B286006 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B286006 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B280006 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D25C191 - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9656C3BA - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D2950FD - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x9656399A - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1AA60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x96575005 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B280618 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B280618 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B280618 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B28169E - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B280648 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1A008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x96575005 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B286006 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B286006 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B286006 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B280006 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A19558 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x965BADB2 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B280618 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B280618 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B280618 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B28169E - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B280648 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7A60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x965BADB2 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B286006 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B286006 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B286006 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B280006 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F7008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x965D25BA - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B280618 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B280618 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B280618 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B28169E - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B280648 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F14B8 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x965D25BA - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B286006 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B286006 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B286006 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B280006 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F1A60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x965E97B0 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B280618 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B280618 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B280618 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B28169E - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B280648 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776D940 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B281696 - TransferDataCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B2816A6 - ReceiveCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B281200 - RequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B28169E - ResetCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B2816A6 - StatusCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x965E97B0 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B286006 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B286006 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B286006 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B280006 - CoRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x9B28168E - ProtSendCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F2A60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BC95C - OpenAdapterCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BCBE6 - CloseAdapterCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965C8F74 - (Wan)SendCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965C90CC - (Wan)TransferDataCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BCA04 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965C93BC - (Wan)ReceiveHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965C91FC - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BCC9E - StatusHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BC9FC - StatusCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965C9002 - ReceivePacketHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BD08C - BindAdapterHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BD1E8 - UnbindAdapterHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965BCD34 - PnPEventHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A96F0 - NdisProtocolBlock - 0x965C335C - UnloadHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965A5005 - OpenAdapterCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965A56AD - CloseAdapterCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965AE0A5 - (Wan)SendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659F496 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x96598665 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965AD8CB - (Wan)ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659F512 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659F577 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659F607 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x96598C74 - BindAdapterHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659A08A - UnbindAdapterHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x96599562 - PnPEventHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659F60F - UnloadHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965AE1AA - CoSendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x9659F66B - CoStatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965ADAEB - CoReceivePacketHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AC9F0 - NdisProtocolBlock - 0x965986FA - CoAfRegisterNotifyHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x965AD8CB - ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659F512 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x96598665 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659F496 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659F577 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659F607 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x965E97B0 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659C70B - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659C70B - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659C70B - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x9659F94B - CoRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x965AE0A5 - ProtSendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1DA60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x965AD8CB - ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659F512 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x96598665 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659F496 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659F577 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659F607 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x965D25BA - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659C70B - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659C70B - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659C70B - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x9659F94B - CoRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x965AE0A5 - ProtSendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1D008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x965AD8CB - ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659F512 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x96598665 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659F496 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659F577 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659F607 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x965BADB2 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659C70B - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659C70B - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659C70B - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x9659F94B - CoRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x965AE0A5 - ProtSendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1CA60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D295EEB - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x965AD8CB - ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659F512 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x96598665 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659F496 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659F577 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659F607 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x96575005 - MiniportCoRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659C70B - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659C70B - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659C70B - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x9659F94B - CoRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x965AE0A5 - ProtSendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D2950FD - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D29517E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x965AD8CB - ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659F512 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x96598665 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D25C191 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659F496 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659F577 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659F607 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9656C3BA - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x96563A1C - MiniportCoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659C70B - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659C70B - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659C70B - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9659F94B - CoRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D295040 - ProtSendNetBufferListsComplete - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D25C191 - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9656C3BA - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D2950FD - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x965AE0A5 - ProtSendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D28702D - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x9656399A - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D2B7BE4 - CoOidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1BA60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F44E76 - StatusHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F4911A - PnPEventHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F44CA6 - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F49264 - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F492CA - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F491BC - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F45E20 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F45BEC - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6F0 - NdisProtocolBlock - 0x95F441A8 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x95F44E76 - StatusHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x9659EF4D - WSendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x95F45BEC - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x95F45E20 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x95F441A8 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87A1C008 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F44E76 - StatusHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F4911A - PnPEventHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F44CA6 - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F49264 - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F492CA - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F491BC - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F45E20 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F45BEC - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87229728 - NdisProtocolBlock - 0x95F441A8 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x95F44E76 - StatusHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x9659EF4D - WSendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x95F45BEC - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x95F45E20 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D29553E - SavedSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x95F441A8 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x87768A60 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D44FBCA - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D44FBF6 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D44B453 - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D515CF1 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D44A896 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D4B5B5F - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D4A0F55 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA7E50 - NdisProtocolBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x96315CA2 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4E6017 - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4E7CE7 - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4A0F55 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4B5B5F - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x96315CA2 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874E0798 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D298680 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D298731 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D298826 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4E6200 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4E6017 - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4E7CE7 - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4A0F55 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4B5B5F - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x96315CA2 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x874DC798 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D43EBAC - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D44FBF6 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D44B453 - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D515CF1 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D44A896 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D4B5B5F - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D4A0F55 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC510 - NdisProtocolBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D450908 - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D44FBF6 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D44B453 - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D515CF1 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D44A896 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D4B5B5F - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D4A0F55 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CAC008 - NdisProtocolBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x9643C9FC - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D515961 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D515996 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D515961 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D515961 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D4E6017 - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D5159CB - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D4A0F55 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D4B5B5F - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x9643C9FC - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x879EFAA8 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D450934 - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D44FBF6 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D44B453 - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D515CF1 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D44A896 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D4B5B5F - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D4A0F55 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x86CA41C0 - NdisProtocolBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D2973A2 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D294AE0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D25982F - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D298999 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D294394 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D451F5F - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x9643C9FC - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D515667 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D5156C2 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D515749 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D51577A - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D5157AB - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D515961 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D515996 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D515961 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D515961 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D4E6017 - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D5159CB - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D293425 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D4A0F55 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D4B5B5F - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x9643C9FC - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D2973A2 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D4B1DFF - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D4B1DFF - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0x8776CAA8 - NdisOpenBlock - 0x8D235D62 - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8722A978 - NdisFilterDriverBlock - 0x95F05808 - AttachHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F05282 - DetachHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F051B6 - RestartHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F05162 - PauseHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F053E8 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F052FC - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F056AC - CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F055A6 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F05494 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F134A2 - OidRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F133EA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F1320C - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F05760 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F0577E - NetPnPEventHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8722A978 - NdisFilterDriverBlock - 0x95F056CA - StatusHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x95EEA794 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x95EEAC48 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x8D2991D6 - NextReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x8D25D9F0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x95F053E8 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F052FC - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F056AC - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F055A6 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F05494 - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F053E8 - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F052FC - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F056AC - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F055A6 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F05494 - SavedCharacteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F134A2 - OidRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F133EA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F1320C - CancelRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F05760 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F0577E - NetPnPEventHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x95F056CA - StatusHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879FADF8 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879FADF8 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x95EEA794 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x95EEAC48 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x8D2991D6 - NextReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x8D25D9F0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x95F053E8 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F052FC - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F056AC - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F055A6 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F05494 - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F053E8 - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F052FC - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F056AC - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F055A6 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F05494 - SavedCharacteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F134A2 - OidRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F133EA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F1320C - CancelRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F05760 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F0577E - NetPnPEventHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x95F056CA - StatusHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9DF8 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9DF8 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x95EEA794 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x95EEAC48 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x8D2991D6 - NextReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x8D25D9F0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x95F053E8 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F052FC - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F056AC - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F055A6 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F05494 - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F053E8 - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F052FC - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F056AC - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F055A6 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F05494 - SavedCharacteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F134A2 - OidRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F133EA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F1320C - CancelRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F05760 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F0577E - NetPnPEventHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x95F056CA - StatusHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F0DF8 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F0DF8 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874BA4B0 - NdisFilterBlock - 0x8D293C87 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874BA4B0 - NdisFilterBlock - 0x95EEA794 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x874BA4B0 - NdisFilterBlock - 0x8D22CC00 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874BA4B0 - NdisFilterBlock - 0x964348BA - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x874BA4B0 - NdisFilterBlock - 0x9643C9FC - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x874BA4B0 - NdisFilterBlock - 0x95F053E8 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F052FC - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F056AC - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F055A6 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F05494 - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F053E8 - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F052FC - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F056AC - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F055A6 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F05494 - SavedCharacteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F134A2 - OidRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F133EA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F1320C - CancelRequestHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F05760 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F0577E - NetPnPEventHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x95F056CA - StatusHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874BA4B0 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874BA4B0 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874BA4B0 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EE9FFA - SetOptionsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EEAD22 - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EE9A80 - AttachHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EEA09E - DetachHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EF3BD0 - RestartHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EE9F88 - PauseHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EEB00E - OidRequestHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EEB0C0 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EF3CCA - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EF3CE8 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8721A9F8 - NdisFilterDriverBlock - 0x95EEA706 - StatusHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95F053E8 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x87A177D0 - NdisFilterBlock - 0x8D29368F - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x8D22CC00 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95F05494 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x87A177D0 - NdisFilterBlock - 0x95F056AC - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x87A177D0 - NdisFilterBlock - 0x95EEAD22 - SetFilterModuleOptionalHandlers - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEA9CA - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEA794 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEAC2A - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEAC48 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEA9CA - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEA794 - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEAC2A - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEAC48 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEB00E - OidRequestHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEB0C0 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EF3CCA - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EF3CE8 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x95EEA706 - StatusHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87A177D0 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95F053E8 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9008 - NdisFilterBlock - 0x8D29368F - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x8D22CC00 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95F05494 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9008 - NdisFilterBlock - 0x95F056AC - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x879F9008 - NdisFilterBlock - 0x95EEAD22 - SetFilterModuleOptionalHandlers - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEA9CA - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEA794 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEAC2A - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEAC48 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEA9CA - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEA794 - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEAC2A - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEAC48 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEB00E - OidRequestHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEB0C0 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EF3CCA - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EF3CE8 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x95EEA706 - StatusHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x879F9008 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95F053E8 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8776C778 - NdisFilterBlock - 0x8D29368F - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x8D22CC00 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95F05494 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8776C778 - NdisFilterBlock - 0x95F056AC - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8776C778 - NdisFilterBlock - 0x95EEAD22 - SetFilterModuleOptionalHandlers - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEA9CA - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEA794 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEAC2A - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEAC48 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEA9CA - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEA794 - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEAC2A - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEAC48 - SavedCharacteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEB00E - OidRequestHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEB0C0 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EF3CCA - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EF3CE8 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x95EEA706 - StatusHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776C778 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95F053E8 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8758A4A0 - NdisFilterBlock - 0x8D29368F - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x8D22CC00 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95F05494 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8758A4A0 - NdisFilterBlock - 0x95F056AC - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8758A4A0 - NdisFilterBlock - 0x95EEAD22 - SetFilterModuleOptionalHandlers - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEA9CA - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEA794 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEAC2A - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEA9CA - SavedCharacteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEA794 - SavedCharacteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEAC2A - SavedCharacteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEB00E - OidRequestHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEB0C0 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EF3CCA - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EF3CE8 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x95EEA706 - StatusHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8758A4A0 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF504 - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF6C4 - AttachHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF96E - DetachHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF8E6 - RestartHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF006 - PauseHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDFAD2 - OidRequestHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF9CA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF216 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF234 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8721AE38 - NdisFilterDriverBlock - 0x95EDF1F8 - StatusHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EEA9CA - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x8D29368F - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x8D22CC00 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95F05494 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x8776A9B8 - NdisFilterBlock - 0x95EEAC2A - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EDF504 - SetFilterModuleOptionalHandlers - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EDFAD2 - OidRequestHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EDF9CA - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EDF216 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EDF234 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x95EDF1F8 - StatusHandler - C:\Windows\system32\DRIVERS\wfplwf.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x8D22F468 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x8D25D554 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8776A9B8 - NdisFilterBlock - 0x8D25D9D0 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F3422 - UnloadHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F3966 - HaltHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F3C30 - InitializeHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965E92A8 - ResetHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F5006 - ReturnPacketHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F504E - CoActivateVcHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F5084 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F50BA - CoSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965E97B0 - CoRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F504E - MiniportCharacteristics.CoActivateVcHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x965F5084 - MiniportCharacteristics.CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874AE4F0 - NdisMiniDriverBlock - 0x8D2349DD - CoOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFCF9 - UnloadHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965D4A57 - HaltHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965E16BC - InitializeHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965D4A4A - ResetHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFABB - ReturnPacketHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFB8D - CoActivateVcHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFBC3 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFBF9 - CoSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965D25BA - CoRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFB8D - MiniportCharacteristics.CoActivateVcHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x965DFBC3 - MiniportCharacteristics.CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x86FDA298 - NdisMiniDriverBlock - 0x8D2349DD - CoOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C2422 - UnloadHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965BA3D8 - HaltHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C2C5E - InitializeHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965BA4FA - ResetHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C4054 - ReturnPacketHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C414E - CoActivateVcHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C4184 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C53D6 - CoSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965BADB2 - CoRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C414E - MiniportCharacteristics.CoActivateVcHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x965C4184 - MiniportCharacteristics.CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874A98A8 - NdisMiniDriverBlock - 0x8D2349DD - CoOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x965A8F4A - UnloadHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F21A - HaltHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x965A51A1 - InitializeHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659ED96 - ReconfigureHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659EE10 - ResetHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659EEB5 - ReturnPacketHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659EF4D - SendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659EFD6 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F036 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F096 - CoActivateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F0F6 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F156 - CoSendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x965985CD - CoRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659EFD6 - MiniportCharacteristics.CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F036 - MiniportCharacteristics.CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F096 - MiniportCharacteristics.CoActivateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x9659F0F6 - MiniportCharacteristics.CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x87383B40 - NdisMiniDriverBlock - 0x8D2349DD - CoOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x965865F7 - UnloadHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x965862CC - HaltHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x965853E3 - InitializeHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x965774E7 - ResetHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x9657E107 - ReturnPacketHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x9657E0BA - CoActivateVcHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x9657E0C4 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x9657E0CE - CoSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x96575005 - CoRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x9657E0BA - MiniportCharacteristics.CoActivateVcHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x9657E0C4 - MiniportCharacteristics.CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x874A1558 - NdisMiniDriverBlock - 0x8D2349DD - CoOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563A1C - CoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563A12 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563A08 - CoActivateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563A12 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C272 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656399A - CoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563D30 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563EF2 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563BB4 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563C1E - CmCloseAfHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x965647E2 - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656403A - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96564B42 - CmMakeCallHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x965643AA - CmCloseCallHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C432 - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C5B6 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C714 - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C40C - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x965646A8 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96564082 - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656353E - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656AD82 - SetOptionsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656AA28 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563384 - HaltHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656A422 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x965634AC - PauseHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656350C - RestartHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C3B2 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C3C2 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656C3BA - CancelSendHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x96563546 - CheckForHangHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x965639FA - ResetHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656AD7A - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656353E - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x86BDD208 - NdisMiniDriverBlock - 0x9656353E - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x96430DA2 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9642F486 - HaltHandlerEx - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9642FB38 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x96434CD2 - PauseHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x96434D0E - RestartHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x96434D82 - OidRequestHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x964351C0 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x964348BA - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9643C9FC - CancelSendHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9643586A - CheckForHangHandlerEx - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9646147A - ResetHandlerEx - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9643C9FC - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x96434C42 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x8728D678 - NdisMiniDriverBlock - 0x9643C9FC - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631D240 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631D618 - HaltHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x96328422 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631D720 - PauseHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631D824 - RestartHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631E14C - OidRequestHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631C0B6 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631C098 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x96315CA2 - CancelSendHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631C0EA - CheckForHangHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x96328872 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631D908 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x872647B0 - NdisMiniDriverBlock - 0x9631D598 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D292448 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D297A36 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2972A6 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2973C3 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x965F5006 - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x965F5006 - SynchronousReturnPacketHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D25D9F0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D2991D6 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874C00E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D292448 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D297A36 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2972A6 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2973C3 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x965DFABB - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x965DFABB - SynchronousReturnPacketHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D25D9F0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D2991D6 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AD0E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D292448 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D297A36 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2972A6 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2973C3 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x965C4054 - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x965C4054 - SynchronousReturnPacketHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D25D9F0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D2991D6 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874B00E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D298DAA - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D297541 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2B64EE - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D29B4C3 - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x9659EF4D - WSendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D298DAA - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D22F53D - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D22F53D - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2B5C01 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x9659EEB5 - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x95EEAC2A - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x95F052FC - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874AA0E0 - NdisMiniportBlock - 0x95F055A6 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874AA0E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x95F05494 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874AA0E0 - NdisMiniportBlock - 0x95EEA9CA - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x874AA0E0 - NdisMiniportBlock - 0x8D2B5C01 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D298DAA - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D297541 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2B64EE - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D29B4C3 - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x9659EF4D - WSendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D298DAA - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D22F53D - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D22F53D - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2B5C01 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x9659EEB5 - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x95EEAC2A - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x95F052FC - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874A80E0 - NdisMiniportBlock - 0x95F055A6 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874A80E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x95F05494 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x874A80E0 - NdisMiniportBlock - 0x95EEA9CA - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x874A80E0 - NdisMiniportBlock - 0x8D2B5C01 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D298DAA - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D297541 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2B64EE - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D29B4C3 - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x9659EF4D - WSendPacketsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D298DAA - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D22F53D - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D22F53D - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2B5C01 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x9659EEB5 - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x95EEAC2A - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x95F052FC - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x86FD90E0 - NdisMiniportBlock - 0x95F055A6 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x86FD90E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x95F05494 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x86FD90E0 - NdisMiniportBlock - 0x95EEA9CA - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x86FD90E0 - NdisMiniportBlock - 0x8D2B5C01 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D292448 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D29553E - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D297A36 - DeferredSendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2972A6 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2972A6 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2973C3 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2973C3 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x9657E107 - MiniportReturnPacketHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x9657E107 - SynchronousReturnPacketHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D25D9F0 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2991D6 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2972A6 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D25D9F0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D2991D6 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873820E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D2632A2 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D293C87 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D293C87 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D292C1E - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D25C409 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x9656353E - ShutdownHandler(Ex) - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x9656C3BA - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x9656C3C2 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D293C87 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x9656C3BA - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x9656C3C2 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0x874A00E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2B5C01 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2B5C01 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D22F53D - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D22F53D - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D25C409 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x96434C42 - ShutdownHandler(Ex) - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2B5C01 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x9643C9FC - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x964348BA - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\nvm62x32.sys - NVIDIA Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D293C87 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x95EEAC2A - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x95F052FC - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x873800E0 - NdisMiniportBlock - 0x95F055A6 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x873800E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x95F05494 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\inspect.sys - COMODO
       0x873800E0 - NdisMiniportBlock - 0x95EEA9CA - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0x873800E0 - NdisMiniportBlock - 0x8D2B5C01 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D292448 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D293C87 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D293C87 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D2814F1 - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D25C409 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x9631D908 - ShutdownHandler(Ex) - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x96315CA2 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x9631C098 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D293C87 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x96315CA2 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x9631C098 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x8703A0E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D2632A2 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D260DC0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D293C87 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D293C87 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D292C1E - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D25C409 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x9631D908 - ShutdownHandler(Ex) - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x96315CA2 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x9631C098 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D293C87 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x96315CA2 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x9631C098 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x873310E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D2632A2 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D295C5E - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D2901FF - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D290FFF - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D2B582F - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D29A92F - TrRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D2B5356 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D29AC8E - TrRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D291441 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D290AEC - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D296668 - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D28C646 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D28C6FA - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D294E27 - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D290AF4 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D290B9A - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D292448 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D25D9F0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D293FA0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D293C87 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D292C1E - IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D293E66 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D2814F1 - SavedIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D25C409 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D25C409 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x9631D908 - ShutdownHandler(Ex) - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D281389 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D292448 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D2991C6 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x96315CA2 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D29368F - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D22CC00 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x9631C098 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D293C87 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x96315CA2 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D29368F - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D22CC00 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D22CC00 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x9631C098 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0x871830E0 - NdisMiniportBlock - 0x8D292448 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x8722B6C0 - NdisIfProviderBlock - 0x95F444D2 - QueryObjectHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x8722B6C0 - NdisIfProviderBlock - 0x95F49162 - SetObjectHandler - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       0x86C21DD8 - NdisIfProviderBlock - 0x8D2344C9 - QueryObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86C21DD8 - NdisIfProviderBlock - 0x8D24EBED - SetObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86C21E08 - NdisIfProviderBlock - 0x8D2306A7 - QueryObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0x86C21E08 - NdisIfProviderBlock - 0x8D24EBED - SetObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation

==========================================================================================

IE Plugin

       Browser Helper Objects - Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll - Oracle Corporation - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
       Browser Helper Objects - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll - AVAST Software - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
       Browser Helper Objects - Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll - Oracle Corporation - {DBC80044-A445-435b-BC74-9C25C1C588A9}
       Browser Helper Objects - avast! Ad Blocker - C:\Program Files\AVAST Software\avast! Ad Blocker IE\Adblocker32.dll - AVAST Software - {FFCB3198-32F3-4E8B-9539-4324694ED663}
       Browser Extensions - @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 -  -  - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}
       ToolBar -  - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll - AVAST Software - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
       URLSearchHooks - Microsoft Url Search Hook - C:\Windows\System32\ieframe.dll - Microsoft Corporation - {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
       ActiveX -  -  -  - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
       ActiveX -  -  -  - {106A66FC-D7C4-49A9-A416-4FF09B5A4F19}
       ActiveX - VistaWUWebControl Class - C:\Windows\System32\wuwebv.dll - Microsoft Corporation - {12A66224-5E8A-4679-8941-0B9B960BF5EA}
       ActiveX - Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll - Adobe Systems Incorporated - {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
       ActiveX -  -  -  - {1c492e6a-2803-5ed7-83e1-1b1d4d41eb39}
       ActiveX - HTML Document - C:\Windows\System32\mshtml.dll - Microsoft Corporation - {25336920-03F9-11CF-8FD0-00AA00686F13}
       ActiveX - XML DOM Document - C:\Windows\System32\msxml3.dll - Microsoft Corporation - {2933BF90-7B36-11D2-B20E-00C04F983E60}
       ActiveX - QuickTime Object - C:\Program Files\QuickTime\QTPlugin.ocx - Apple Inc. - {4063BE15-3B08-470D-A0D5-B37161CFFD69}
       ActiveX -  -  -  - {444785F1-DE89-4295-863A-D46C3A781394}
       ActiveX - Shell Name Space - C:\Windows\System32\ieframe.dll - Microsoft Corporation - {55136805-B2DE-11D1-B9F2-00A0C98BC547}
       ActiveX - isInstalled Class - C:\Program Files\Java\jre7\bin\wsdetect.dll - Oracle Corporation - {5852F5ED-8BF4-11D4-A245-0080C6F74284}
       ActiveX -  -  -  - {6327884D-249B-497E-9675-1460E674E2D9}
       ActiveX - Windows Media Player - C:\Windows\System32\wmp.dll - Microsoft Corporation - {6BF52A52-394A-11D3-B153-00C04F79FAA6}
       ActiveX -  -  -  - {7530BFB8-7293-4D34-9923-61A11451AFC5}
       ActiveX - Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll - Oracle Corporation - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
       ActiveX - Microsoft Web Browser - C:\Windows\System32\ieframe.dll - Microsoft Corporation - {8856F961-340A-11D0-A96B-00C04FD705A2}
       ActiveX - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll - AVAST Software - {8E5E2654-AD2D-48BF-AC2D-D17F00898D06}
       ActiveX - Google Update Plugin - C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll - Google Inc. - {C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}
       ActiveX - Google Update Plugin - C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll - Google Inc. - {C442AC41-9200-4770-8CC0-7CDB4F245C55}
       ActiveX - Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll - Adobe Systems, Inc. - {CA8A9780-280D-11CF-A24D-444553540000}
       ActiveX - Deployment Toolkit - C:\Program Files\Java\jre7\bin\dtplugin\deployJava1.dll - Oracle Corporation - {CAFEEFAC-DEC7-0000-0001-ABCDEFFEDCBA}
       ActiveX - Windows Live ID Sign-in Control - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - Microsoft Corp. - {D2517915-48CE-4286-970F-921E881B8C5C}
       ActiveX - Shockwave Flash Object - C:\Windows\System32\Macromed\Flash\Flash32_11_9_900_117.ocx - Adobe Systems, Inc. - {D27CDB6E-AE6D-11CF-96B8-444553540000}
       ActiveX - Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll - Oracle Corporation - {DBC80044-A445-435B-BC74-9C25C1C588A9}
       ActiveX - Microsoft Silverlight - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll -  Microsoft Corporation - {DFEAF541-F3E1-4C24-ACAC-99C30715084A}
       ActiveX - XML HTTP Request - C:\Windows\System32\msxml3.dll - Microsoft Corporation - {ED8C108E-4349-11D2-91A4-00C04F7969E8}
       ActiveX - XML DOM Document 3.0 - C:\Windows\System32\msxml3.dll - Microsoft Corporation - {F5078F32-C551-11D3-89B9-0000F81FE221}
       ActiveX - XML DOM Document - C:\Windows\System32\msxml3.dll - Microsoft Corporation - {F6D90F11-9C73-11D3-B32E-00C04F990BB4}
       ActiveX - XML HTTP - C:\Windows\System32\msxml3.dll - Microsoft Corporation - {F6D90F16-9C73-11D3-B32E-00C04F990BB4}
       ActiveX - avast! Ad Blocker - C:\Program Files\AVAST Software\avast! Ad Blocker IE\Adblocker32.dll - AVAST Software - {FFCB3198-32F3-4E8B-9539-4324694ED663}

==========================================================================================

IE Shell

       Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

==========================================================================================

Spi

       @%SystemRoot%\System32\wshtcpip.dll,-60100 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
       @%SystemRoot%\System32\wshtcpip.dll,-60101 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
       @%SystemRoot%\System32\wshtcpip.dll,-60102 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
       @%SystemRoot%\System32\wship6.dll,-60100 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
       @%SystemRoot%\System32\wship6.dll,-60101 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
       @%SystemRoot%\System32\wship6.dll,-60102 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
       @%SystemRoot%\System32\wshqos.dll,-100 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\System32\wshqos.dll,-101 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\System32\wshqos.dll,-102 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\System32\wshqos.dll,-103 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       MSAFD RfComm [Bluetooth] - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {9FC48064-7298-43E4-B7BD-181F2089792A}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{4B378F58-ED1E-4730-876E-36FA68DD354A}] SEQPACKET 6 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{4B378F58-ED1E-4730-876E-36FA68DD354A}] DATAGRAM 6 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{3F77517D-F535-4243-987E-91071A3A6DDD}] SEQPACKET 0 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{3F77517D-F535-4243-987E-91071A3A6DDD}] DATAGRAM 0 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{4B720C90-146F-4AF1-B2CC-279C1D364EFD}] SEQPACKET 13 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{4B720C90-146F-4AF1-B2CC-279C1D364EFD}] DATAGRAM 13 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{2115FC09-427C-4DA1-A55D-48A9B543E806}] SEQPACKET 8 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{2115FC09-427C-4DA1-A55D-48A9B543E806}] DATAGRAM 8 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{E53B39C6-1E62-4848-BB7E-CC56371B6165}] SEQPACKET 5 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{E53B39C6-1E62-4848-BB7E-CC56371B6165}] DATAGRAM 5 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{07B4288E-B4C4-4F3F-9795-1078E4C45287}] SEQPACKET 3 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{07B4288E-B4C4-4F3F-9795-1078E4C45287}] DATAGRAM 3 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{91C89D88-4FB5-48CA-9AA5-7840DB89F067}] SEQPACKET 2 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip6_{91C89D88-4FB5-48CA-9AA5-7840DB89F067}] DATAGRAM 2 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{4B720C90-146F-4AF1-B2CC-279C1D364EFD}] SEQPACKET 12 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{4B720C90-146F-4AF1-B2CC-279C1D364EFD}] DATAGRAM 12 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{2115FC09-427C-4DA1-A55D-48A9B543E806}] SEQPACKET 7 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{2115FC09-427C-4DA1-A55D-48A9B543E806}] DATAGRAM 7 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{E53B39C6-1E62-4848-BB7E-CC56371B6165}] SEQPACKET 4 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{E53B39C6-1E62-4848-BB7E-CC56371B6165}] DATAGRAM 4 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{91C89D88-4FB5-48CA-9AA5-7840DB89F067}] SEQPACKET 1 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       MSAFD NetBIOS [\Device\NetBT_Tcpip_{91C89D88-4FB5-48CA-9AA5-7840DB89F067}] DATAGRAM 1 - C:\Windows\System32\mswsock.dll - Microsoft Corporation - {8D5F1830-C273-11CF-95C8-00805F48A192}
       @%SystemRoot%\system32\nlasvc.dll,-1000 - C:\Windows\System32\nlaapi.dll - Microsoft Corporation
       @%SystemRoot%\system32\napinsp.dll,-1000 - C:\Windows\System32\NapiNSP.dll - Microsoft Corporation
       @%SystemRoot%\system32\pnrpnsp.dll,-1000 - C:\Windows\System32\pnrpnsp.dll - Microsoft Corporation
       @%SystemRoot%\system32\pnrpnsp.dll,-1001 - C:\Windows\System32\pnrpnsp.dll - Microsoft Corporation
       @%SystemRoot%\system32\wshtcpip.dll,-60103 - C:\Windows\System32\mswsock.dll - Microsoft Corporation
       NTDS - C:\Windows\System32\winrnr.dll - Microsoft Corporation
       Obor nzv Bluetooth - C:\Windows\System32\wshbth.dll - Microsoft Corporation
       WindowsLive NSP - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.
       WindowsLive Local NSP - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - Microsoft Corp.

==========================================================================================

Hosts File

       127.0.0.1       localhost


==========================================================================================

Startup

       RTHDVCPL - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe - Realtek Semiconductor - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run RTHDVCPL]
       AvastUI.exe - C:\Program Files\AVAST Software\Avast\avastui.exe - AVAST Software - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run AvastUI.exe]
       COMODO Internet Security - C:\Program Files\Comodo\COMODO Internet Security\CisTray.exe - COMODO - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run COMODO Internet Security]
       tvncontrol - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe - Comodo Security Solutions, Inc. - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run tvncontrol]
       Start GeekBuddy.lnk - C:\Program Files\Comodo\GeekBuddy\launcher.exe - Comodo Security Solutions, Inc. - [C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Start GeekBuddy.lnk]
       wdmaud.drv - C:\Windows\system32\wdmaud.drv - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 aux]
       Shell - Explorer.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell]
       Userinit - C:\Windows\system32\userinit.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit]
       SASSEH.DLL({5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}) - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL - SuperAdBlocker.com - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}]
       Canon BJ Language Monitor MP540 series - C:\Windows\system32\CNMLM9E.DLL - CANON INC. - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Canon BJ Language Monitor MP540 series]
       Local Port - C:\Windows\system32\localspl.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Local Port]
       Microsoft Shared Fax Monitor - C:\Windows\system32\FXSMON.DLL - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Microsoft Shared Fax Monitor]
       Standard TCP/IP Port - C:\Windows\system32\tcpmon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Standard TCP/IP Port]
       USB Monitor - C:\Windows\system32\usbmon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors USB Monitor]
       WSD Port - C:\Windows\system32\WSDMon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors WSD Port]
       Internet Print Provider - C:\Windows\system32\inetpp.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Providers Internet Print Provider]
       LanMan Print Services - C:\Windows\system32\win32spl.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Providers LanMan Print Services]
       clbcatq - C:\Windows\System32\clbcatq.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs clbcatq]
       ole32 - C:\Windows\System32\ole32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs ole32]
       advapi32 - C:\Windows\System32\advapi32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs advapi32]
       COMDLG32 - C:\Windows\System32\comdlg32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs COMDLG32]
       gdi32 - C:\Windows\System32\gdi32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs gdi32]
       IERTUTIL - C:\Windows\System32\iertutil.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs IERTUTIL]
       IMAGEHLP - C:\Windows\System32\imagehlp.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs IMAGEHLP]
       IMM32 - C:\Windows\System32\imm32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs IMM32]
       kernel32 - C:\Windows\System32\kernel32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs kernel32]
       LPK - C:\Windows\System32\lpk.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs LPK]
       MSCTF - C:\Windows\System32\msctf.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs MSCTF]
       MSVCRT - C:\Windows\System32\msvcrt.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs MSVCRT]
       NORMALIZ - C:\Windows\System32\normaliz.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs NORMALIZ]
       NSI - C:\Windows\System32\nsi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs NSI]
       OLEAUT32 - C:\Windows\System32\oleaut32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs OLEAUT32]
       PSAPI - C:\Windows\System32\psapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs PSAPI]
       rpcrt4 - C:\Windows\System32\rpcrt4.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs rpcrt4]
       sechost - C:\Windows\System32\sechost.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs sechost]
       Setupapi - C:\Windows\System32\setupapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs Setupapi]
       SHELL32 - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs SHELL32]
       SHLWAPI - C:\Windows\System32\shlwapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs SHLWAPI]
       URLMON - C:\Windows\System32\urlmon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs URLMON]
       user32 - C:\Windows\System32\user32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs user32]
       USP10 - C:\Windows\System32\usp10.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs USP10]
       WININET - C:\Windows\System32\wininet.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs WININET]
       WLDAP32 - C:\Windows\System32\Wldap32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs WLDAP32]
       WS2_32 - C:\Windows\System32\ws2_32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs WS2_32]
       DifxApi - C:\Windows\System32\difxapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs DifxApi]
       ashShell.dll(avast) - C:\Program Files\AVAST Software\Avast\ashShell.dll - AVAST Software - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers avast]
       syncui.dll(BriefcaseMenu) - C:\Windows\System32\syncui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers BriefcaseMenu]
       cavshell.dll(Comodo Antivirus) - C:\Program Files\Comodo\COMODO Internet Security\cavshell.dll - COMODO - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Comodo Antivirus]
       DefragglerShell.dll(DefragglerShellExtension) - C:\Program Files\Defraggler\DefragglerShell.dll - Piriform Ltd - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers DefragglerShellExtension]
       shell32.dll(Open With) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Open With]
       shell32.dll(Open With EncryptionMenu) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Open With EncryptionMenu]
       ntshrui.dll(Sharing) - C:\Windows\System32\ntshrui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Sharing]
       SDShelEx-win32.dll(TuneUp Shredder Shell Extension) - C:\Program Files\TuneUp Utilities 2014\SDShelEx-win32.dll - TuneUp Software - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers TuneUp Shredder Shell Extension]
       IObitUnlockerExtension.dll(UnLockerMenu) - C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll - IObit - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers UnLockerMenu]
       RarExt.dll(WinRAR) - C:\Program Files\WinRAR\RarExt.dll - Alexander Roshal - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers WinRAR]
       ashShell.dll(00avast) - C:\Program Files\AVAST Software\Avast\ashShell.dll - AVAST Software - [\Registry\Machine\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers 00avast]
       shell32.dll(CopyAsPathMenu) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers CopyAsPathMenu]
       mbamext.dll(MBAMShlExt) - C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll - Malwarebytes Corporation - [\Registry\Machine\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers MBAMShlExt]
       shell32.dll(SendTo) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers SendTo]
       ashShell.dll(avast) - C:\Program Files\AVAST Software\Avast\ashShell.dll - AVAST Software - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers avast]
       syncui.dll(BriefcaseMenu) - C:\Windows\System32\syncui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers BriefcaseMenu]
       cavshell.dll(Comodo Antivirus) - C:\Program Files\Comodo\COMODO Internet Security\cavshell.dll - COMODO - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers Comodo Antivirus]
       DefragglerShell.dll(DefragglerShellExtension) - C:\Program Files\Defraggler\DefragglerShell.dll - Piriform Ltd - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers DefragglerShellExtension]
       shell32.dll(Library Location) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers Library Location]
       mbamext.dll(MBAMShlExt) - C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll - Malwarebytes Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers MBAMShlExt]
       cscui.dll(Offline Files) - C:\Windows\System32\cscui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers Offline Files]
       RUExt.dll(RUShellExt) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll - VS Revo Group - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers RUShellExt]
       IObitUnlockerExtension.dll(UnLockerMenu) - C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll - IObit - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers UnLockerMenu]
       RarExt.dll(WinRAR) - C:\Program Files\WinRAR\RarExt.dll - Alexander Roshal - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers WinRAR]
       Themes Setup({2C7339CF-2B09-4501-B3F3-F3508C9228ED}) - C:\Windows\System32\regsvr32.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
       Internet Explorer({2D46B6DC-2207-486B-B523-A557E6D54B47}) - C:\Windows\System32\cmd.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {2D46B6DC-2207-486B-B523-A557E6D54B47}]
       Microsoft Windows({44BBA840-CC51-11CF-AAFA-00AA00B6015C}) - C:\Program Files\Windows Mail\WinMail.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
       Windows Desktop Update({89820200-ECBD-11cf-8B85-00AA005B4340}) - C:\Windows\system32\regsvr32.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {89820200-ECBD-11cf-8B85-00AA005B4340}]
       Web Platform Customizations({89820200-ECBD-11cf-8B85-00AA005B4383}) - C:\Windows\System32\ie4uinit.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {89820200-ECBD-11cf-8B85-00AA005B4383}]
       ({89B4C1CD-B018-4511-B0A1-5476DBF70820}) - C:\Windows\System32\mscories.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {89B4C1CD-B018-4511-B0A1-5476DBF70820}]

==========================================================================================

Service

       !SASCORE - Started - Automatic - "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE" - SUPERAntiSpyware.com -  - 
       AdobeARMservice - Stopped - Manual - "C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe" - Adobe Systems Incorporated -  - 
       AdobeFlashPlayerUpdateSvc - Stopped - Manual - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe - Adobe Systems Incorporated -  - 
       AeLookupSvc - Started - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       ALG - Stopped - Manual - C:\Windows\System32\alg.exe - Microsoft Corporation -  - 
       AppIDSvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       Appinfo - Started - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       AppMgmt - Stopped - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       aspnet_state - Stopped - Disabled - C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe - Microsoft Corporation -  - 
       AudioEndpointBuilder - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       Audiosrv - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       avast! Antivirus - Started - Automatic - "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" - AVAST Software -  - 
       AxInstSV - Stopped - Manual - C:\Windows\system32\svchost.exe -k AxInstSVGroup - Microsoft Corporation -  - 
       BDESVC - Stopped - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       BFE - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       BITS - Started - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       Browser - Started - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       bthserv - Started - Automatic - C:\Windows\system32\svchost.exe -k bthsvcs - Microsoft Corporation -  - 
       CertPropSvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       CLPSLauncher - Started - Automatic - "C:\Program Files\Common Files\COMODO\launcher_service.exe" - Comodo Security Solutions, Inc. -  - 
       clr_optimization_v2.0.50727_32 - Stopped - Disabled - C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe - Microsoft Corporation -  - 
       clr_optimization_v4.0.30319_32 - Stopped - Automatic - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - Microsoft Corporation -  - 
       cmdAgent - Started - Automatic - "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe" - COMODO -  - 
       cmdvirth - Started - Manual - "C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe" - COMODO -  - 
       COMSysApp - Stopped - Manual - C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} - Microsoft Corporation -  - 
       CryptSvc - Started - Automatic - C:\Windows\system32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       CscService - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       DcomLaunch - Started - Automatic - C:\Windows\system32\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       defragsvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k defragsvc - Microsoft Corporation -  - 
       Dhcp - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       Dnscache - Started - Automatic - C:\Windows\system32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       dot3svc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       DPS - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       DragonUpdater - Started - Automatic - C:\Program Files\Comodo\Dragon\dragon_updater.exe -  -  - 
       EapHost - Stopped - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       EFS - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       ehRecvr - Stopped - Manual - C:\Windows\ehome\ehrecvr.exe - Microsoft Corporation -  - 
       ehSched - Stopped - Manual - C:\Windows\ehome\ehsched.exe - Microsoft Corporation -  - 
       eventlog - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       EventSystem - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Fax - Stopped - Manual - C:\Windows\System32\FXSSVC.exe - Microsoft Corporation -  - 
       fdPHost - Started - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       FDResPub - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       FontCache - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       FontCache3.0.0.0 - Stopped - Manual - C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe - Microsoft Corporation -  - 
       fsssvc - Stopped - Manual - "C:\Program Files\Windows Live\Family Safety\fsssvc.exe" - Microsoft Corporation -  - 
       FsUsbExService - Stopped - Manual - C:\Windows\System32\FsUsbExService.Exe - Teruten -  - 
       GeekBuddyRSP - Started - Automatic - "C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe" -service - Comodo Security Solutions, Inc. -  - 
       gpsvc - Started - Automatic - C:\Windows\system32\svchost.exe -k GPSvcGroup - Microsoft Corporation -  - 
       hidserv - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       hkmsvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       HomeGroupListener - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       HomeGroupProvider - Started - Manual - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       IDriverT - Stopped - Manual - "C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe" - Macrovision Corporation -  - 
       idsvc - Stopped - Manual - "C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe" - Microsoft Corporation -  - 
       IKEEXT - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       IPBusEnum - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       iphlpsvc - Started - Automatic - C:\Windows\System32\svchost.exe -k NetSvcs - Microsoft Corporation -  - 
       KeyIso - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       KtmRm - Stopped - Manual - C:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation - Microsoft Corporation -  - 
       LanmanServer - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       LanmanWorkstation - Started - Automatic - C:\Windows\System32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       lltdsvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       lmhosts - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       MBAMScheduler - Started - Automatic - "C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe" - Malwarebytes Corporation -  - 
       MBAMService - Stopped - Automatic - "C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe" - Malwarebytes Corporation -  - 
       Mcx2Svc - Stopped - Disabled - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       MMCSS - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       MozillaMaintenance - Stopped - Manual - "C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe" - Mozilla Foundation -  - 
       MpsSvc - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       MSDTC - Stopped - Manual - C:\Windows\System32\msdtc.exe - Microsoft Corporation -  - 
       MSiSCSI - Stopped - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       msiserver - Stopped - Manual - C:\Windows\system32\msiexec.exe /V - Microsoft Corporation -  - 
       napagent - Stopped - Manual - C:\Windows\System32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       Netlogon - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       Netman - Started - Manual - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       NetMsmqActivator - Stopped - Disabled - "C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator - Microsoft Corporation -  - 
       NetPipeActivator - Stopped - Disabled - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe - Microsoft Corporation -  - 
       netprofm - Started - Manual - C:\Windows\System32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       NetTcpActivator - Stopped - Disabled - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe - Microsoft Corporation -  - 
       NetTcpPortSharing - Stopped - Disabled - C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe - Microsoft Corporation -  - 
       NlaSvc - Started - Automatic - C:\Windows\System32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       nsi - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       NvStreamSvc - Started - Automatic - "C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" - NVIDIA Corporation -  - 
       nvsvc - Started - Automatic - "C:\Windows\system32\nvvsvc.exe" - NVIDIA Corporation -  - 
       nvUpdatusService - Started - Automatic - "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" - NVIDIA Corporation -  - 
       p2pimsvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       p2psvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       PcaSvc - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       PeerDistSvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k PeerDist - Microsoft Corporation -  - 
       pla - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       PlugPlay - Started - Automatic - C:\Windows\system32\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       PNRPAutoReg - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       PNRPsvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       PolicyAgent - Started - Manual - C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted - Microsoft Corporation -  - 
       Power - Started - Automatic - C:\Windows\system32\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       ProfSvc - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       ProtectedStorage - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       QWAVE - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       RasAuto - Stopped - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       RasMan - Started - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       RemoteAccess - Stopped - Disabled - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       RemoteRegistry - Stopped - Disabled - C:\Windows\system32\svchost.exe -k regsvc - Microsoft Corporation -  - 
       RpcEptMapper - Started - Automatic - C:\Windows\system32\svchost.exe -k RPCSS - Microsoft Corporation -  - 
       RpcLocator - Stopped - Manual - C:\Windows\System32\Locator.exe - Microsoft Corporation -  - 
       RpcSs - Started - Automatic - C:\Windows\system32\svchost.exe -k rpcss - Microsoft Corporation -  - 
       SamSs - Started - Automatic - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       SCardSvr - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       Schedule - Started - Automatic - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SCPolicySvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SDRSVC - Stopped - Manual - C:\Windows\system32\svchost.exe -k SDRSVC - Microsoft Corporation -  - 
       seclogon - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SENS - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SensrSvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       ServiceLayer - Stopped - Disabled - "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe" - Nokia -  - 
       SessionEnv - Stopped - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SharedAccess - Stopped - Automatic - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       ShellHWDetection - Started - Automatic - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SkypeUpdate - Stopped - Disabled - "C:\Program Files\Skype\Updater\Updater.exe" - Skype Technologies -  - 
       SNMPTRAP - Stopped - Manual - C:\Windows\System32\snmptrap.exe - Microsoft Corporation -  - 
       Spooler - Started - Automatic - C:\Windows\System32\spoolsv.exe - Microsoft Corporation -  - 
       sppsvc - Stopped - Automatic - C:\Windows\System32\sppsvc.exe - Microsoft Corporation -  - 
       sppuinotify - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       SSDPSRV - Started - Manual - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       SstpSvc - Started - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Steam Client Service - Stopped - Manual - C:\Program Files\Common Files\Steam\SteamService.exe /RunAsService - Valve Corporation -  - 
       Stereo Service - Started - Automatic - "C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" - NVIDIA Corporation -  - 
       StiSvc - Started - Automatic - C:\Windows\system32\svchost.exe -k imgsvc - Microsoft Corporation -  - 
       swprv - Stopped - Manual - C:\Windows\System32\svchost.exe -k swprv - Microsoft Corporation -  - 
       SysMain - Started - Automatic - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       TabletInputService - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       TapiSrv - Started - Manual - C:\Windows\System32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       TBS - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       TermService - Stopped - Manual - C:\Windows\System32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       Themes - Started - Automatic - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       THREADORDER - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       TrkWks - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       TrustedInstaller - Stopped - Manual - C:\Windows\servicing\TrustedInstaller.exe - Microsoft Corporation -  - 
       TuneUp.UtilitiesSvc - Started - Automatic - "C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe" - TuneUp Software -  - 
       UI0Detect - Stopped - Manual - C:\Windows\System32\UI0Detect.exe - Microsoft Corporation -  - 
       UmRdpService - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       upnphost - Started - Manual - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       UxSms - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       UxTuneUp - Started - Automatic - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       VaultSvc - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       vds - Stopped - Manual - C:\Windows\System32\vds.exe - Microsoft Corporation -  - 
       VSS - Stopped - Manual - C:\Windows\System32\VSSVC.exe - Microsoft Corporation -  - 
       W32Time - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       WatAdminSvc - Stopped - Manual - C:\Windows\System32\Wat\WatAdminSvc.exe - Microsoft Corporation -  - 
       wbengine - Stopped - Manual - "C:\Windows\system32\wbengine.exe" - Microsoft Corporation -  - 
       WbioSrvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k WbioSvcGroup - Microsoft Corporation -  - 
       wcncsvc - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       WcsPlugInService - Stopped - Manual - C:\Windows\system32\svchost.exe -k wcssvc - Microsoft Corporation -  - 
       WdiServiceHost - Started - Manual - C:\Windows\System32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       WdiSystemHost - Stopped - Manual - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       WebClient - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Wecsvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       wercplsupport - Stopped - Manual - C:\Windows\System32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       WerSvc - Started - Manual - C:\Windows\System32\svchost.exe -k WerSvcGroup - Microsoft Corporation -  - 
       WinDefend - Stopped - Automatic - C:\Windows\System32\svchost.exe -k secsvcs - Microsoft Corporation -  - 
       WinHttpAutoProxySvc - Started - Manual - C:\Windows\system32\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Winmgmt - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       WinRM - Stopped - Manual - C:\Windows\System32\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       Wlansvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       wlidsvc - Started - Automatic - "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" - Microsoft Corp. -  - 
       wmiApSrv - Stopped - Manual - C:\Windows\System32\wbem\WmiApSrv.exe - Microsoft Corporation -  - 
       WMPNetworkSvc - Started - Automatic - "C:\Program Files\Windows Media Player\wmpnetwk.exe" - Microsoft Corporation -  - 
       WPCSvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       WPDBusEnum - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       wscsvc - Started - Automatic - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       WSearch - Stopped - Disabled - C:\Windows\system32\SearchIndexer.exe /Embedding - Microsoft Corporation -  - 
       wuauserv - Started - Automatic - C:\Windows\system32\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       wudfsvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       WwanSvc - Stopped - Manual - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 

==========================================================================================

Schedule Task

       COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} - \COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} - C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe - (null) - Enable - COMODO
       COMODO Welcome {CEB54B45-2B5E-4FF5-9223-6735CD80FE69} - \COMODO\COMODO Welcome {CEB54B45-2B5E-4FF5-9223-6735CD80FE69} - C:\Program Files\COMODO\COMODO Internet Security\cis.exe - (null) - Disable - COMODO
       PolicyConverter - \Microsoft\Windows\AppID\PolicyConverter - C:\Windows\System32\appidpolicyconverter.exe - Pevede zsady zsad omezen softwaru z formtu XML do binrnho formtu. - Disable - Microsoft Corporation
       VerifiedPublisherCertStoreCheck - \Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - C:\Windows\System32\appidcertstorecheck.exe - Vyhled v mezipamti certifikt AppID neplatn a odvolan certifikty. - Disable - Microsoft Corporation
       AitAgent - \Microsoft\Windows\Application Experience\AitAgent - aitagent - Pihlste-li se do programu Zlepovn softwaru a slueb na zklad zkuenost uivatel, shromauje a odesl informace o telemetrii aplikace. - Enable - 
       ProgramDataUpdater - \Microsoft\Windows\Application Experience\ProgramDataUpdater - C:\Windows\System32\rundll32.exe - Pihlste-li se do programu Zlepovn softwaru a slueb na zklad zkuenost uivatel, shromauje informace o telemetrii programu. - Enable - Microsoft Corporation
       Proxy - \Microsoft\Windows\Autochk\Proxy - C:\Windows\System32\rundll32.exe - Tato loha shromauje a odesl data autochk SQM, pokud se uivatel explicitn pihlsil do programu Zlepovn softwaru a slueb na zklad zkuenost uivatel. - Enable - Microsoft Corporation
       UninstallDeviceTask - \Microsoft\Windows\Bluetooth\UninstallDeviceTask - C:\Windows\system32\BthUdTask.exe - Odinstaluje zazen Plug and Play pidruen k zadanmu ID sluby Bluetooth. - Enable - Microsoft Corporation
       Consolidator - \Microsoft\Windows\Customer Experience Improvement Program\Consolidator - C:\Windows\System32\wsqmcons.exe - Pokud uivatel souhlasil, e se zastn programu Zlepovn softwaru a slueb na zklad zkuenost uivatel, shromauje tato loha data o nvtvnosti webu a odesl je spolenosti Microsoft. - Enable - Microsoft Corporation
       ScheduledDefrag - \Microsoft\Windows\Defrag\ScheduledDefrag - C:\Windows\System32\Defrag.exe - Tato loha provede defragmentaci pevnho disku potae. - Enable - Microsoft Corp.
       Microsoft-Windows-DiskDiagnosticDataCollector - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - C:\Windows\System32\rundll32.exe - Program Diagnostika disk pedv spolenosti Microsoft zprvy s obecnmi informacemi o discch a systmu uivatel, kte se astn programu Zlepovn softwaru a slueb na zklad zkuenost uivatel. - Disable - Microsoft Corporation
       Microsoft-Windows-DiskDiagnosticResolver - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - C:\Windows\System32\DFDWiz.exe - Vydavatel udlost Microsoft-Windows-DiskDiagnosticResolver upozorn uivatele na chyby hlen pevnmi disky, kter podporuj standard SMART (Self Monitoring and Reporting Technology). Tato loha je po rozpoznn chyby SMART sputna slubou DPS (Diagnostic Policy Service) automaticky. - Disable - Microsoft Corporation
       Notifications - \Microsoft\Windows\Location\Notifications - C:\Windows\System32\LocationNotifications.exe - Aktivity tkajc se pozice - Enable - Microsoft Corporation
       ActivateWindowsSearch - \Microsoft\Windows\Media Center\ActivateWindowsSearch - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha novho vytvoen indexu v hledn aplikace Media Center - Enable - Microsoft Corporation
       ConfigureInternetTimeService - \Microsoft\Windows\Media Center\ConfigureInternetTimeService - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha nastaven sluby asovch aktualizac aplikace Media Center - Enable - Microsoft Corporation
       DispatchRecoveryTasks - \Microsoft\Windows\Media Center\DispatchRecoveryTasks - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha dispeera kol obnoven aplikace Media Center - Enable - Microsoft Corporation
       ehDRMInit - \Microsoft\Windows\Media Center\ehDRMInit - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha inicializace Sprvy digitlnch prv (DRM) aplikace Media Center - Enable - Microsoft Corporation
       InstallPlayReady - \Microsoft\Windows\Media Center\InstallPlayReady - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha instalace technologie PlayReady aplikace Media Center - Enable - Microsoft Corporation
       mcupdate - \Microsoft\Windows\Media Center\mcupdate - C:\Windows\ehome\mcupdate.exe - Vyhled aktualizace aplikace Media Center. - Enable - Microsoft Corporation
       MediaCenterRecoveryTask - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask - C:\Windows\ehome\mcupdate.exe - Provd innosti obnoven aplikace Media Center. - Enable - Microsoft Corporation
       ObjectStoreRecoveryTask - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - C:\Windows\ehome\mcupdate.exe - Provd innosti obnoven loit objekt. - Enable - Microsoft Corporation
       OCURActivate - \Microsoft\Windows\Media Center\OCURActivate - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha aktivace pijmae OCUR aplikace Media Center - Enable - Microsoft Corporation
       OCURDiscovery - \Microsoft\Windows\Media Center\OCURDiscovery - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha zjiovn pijmae OCUR aplikace Media Center - Enable - Microsoft Corporation
       PBDADiscovery - \Microsoft\Windows\Media Center\PBDADiscovery - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha zjiovn pijmae OCUR aplikace Media Center - Enable - Microsoft Corporation
       PBDADiscoveryW1 - \Microsoft\Windows\Media Center\PBDADiscoveryW1 - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha zjiovn pijmae OCUR aplikace Media Center - Enable - Microsoft Corporation
       PBDADiscoveryW2 - \Microsoft\Windows\Media Center\PBDADiscoveryW2 - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha zjiovn pijmae OCUR aplikace Media Center - Enable - Microsoft Corporation
       PeriodicScanRetry - \Microsoft\Windows\Media Center\PeriodicScanRetry - C:\Windows\ehome\mcupdate.exe - Periodick vyhledvn na pozad - periodick opakovan vyhledvn - Disable - Microsoft Corporation
       PvrRecoveryTask - \Microsoft\Windows\Media Center\PvrRecoveryTask - C:\Windows\ehome\mcupdate.exe - Provd innosti obnoven PVR. - Enable - Microsoft Corporation
       PvrScheduleTask - \Microsoft\Windows\Media Center\PvrScheduleTask - C:\Windows\ehome\mcupdate.exe - Provd innosti plnovn PVR. - Enable - Microsoft Corporation
       RecordingRestart - \Microsoft\Windows\Media Center\RecordingRestart - C:\Windows\ehome\ehrec.exe - Znovu spust nahrvn po vpadku napjen. - Disable - Microsoft Corporation
       RegisterSearch - \Microsoft\Windows\Media Center\RegisterSearch - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha registrace hledn aplikace Media Center - Enable - Microsoft Corporation
       ReindexSearchRoot - \Microsoft\Windows\Media Center\ReindexSearchRoot - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha novho vytvoen indexu v hledn aplikace Media Center - Enable - Microsoft Corporation
       SqlLiteRecoveryTask - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask - C:\Windows\ehome\mcupdate.exe - Provd innosti obnoven dat. - Enable - Microsoft Corporation
       StartRecording - \Microsoft\Windows\Media Center\StartRecording - C:\Windows\ehome\ehrec.exe - (null) - Enable - Microsoft Corporation
       UpdateRecordPath - \Microsoft\Windows\Media Center\UpdateRecordPath - C:\Windows\ehome\ehPrivJob.exe - Privilegovan loha nastaven oprvnn zznamovho zazen aplikace Media Center - Enable - Microsoft Corporation
       LPRemove - \Microsoft\Windows\MUI\LPRemove - C:\Windows\System32\lpremove.exe - Spustit nstroj pro vyitn jazykovho nastaven - Enable - Microsoft Corporation
       GatherNetworkInfo - \Microsoft\Windows\NetTrace\GatherNetworkInfo - C:\Windows\System32\gatherNetworkInfo.vbs - Shromaovn informac o sti - Enable - 
       AnalyzeSystem - \Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - C:\Windows\System32\powercfg.exe - Tato loha analyzuje systm a vyhledv okolnosti, kter mohou zpsobovat vysokou spotebu energie. - Enable - Microsoft Corporation
       RemoteAssistanceTask - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - C:\Windows\System32\raserver.exe - Vyhled zsady skupiny tkajc se programu Vzdlen pomoc. - Enable - Microsoft Corporation
       SvcRestartTask - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - C:\Windows\system32\sc.exe - Tato loha restartuje v zadan as slubu Software Protection Platform. - Disable - Microsoft Corporation
       SR - \Microsoft\Windows\SystemRestore\SR - C:\Windows\System32\rundll32.exe - Tato loha vytvo bn body ochrany systmu. - Enable - Microsoft Corporation
       IpAddressConflict1 - \Microsoft\Windows\Tcpip\IpAddressConflict1 - C:\Windows\System32\rundll32.exe - Tato udlost je aktivovna, kdy je zjitn konflikt IP adresy. - Enable - Microsoft Corporation
       IpAddressConflict2 - \Microsoft\Windows\Tcpip\IpAddressConflict2 - C:\Windows\System32\rundll32.exe - Tato udlost je aktivovna, kdy je zjitn konflikt IP adresy. - Enable - Microsoft Corporation
       SynchronizeTime - \Microsoft\Windows\Time Synchronization\SynchronizeTime - C:\Windows\System32\sc.exe - Udruje synchronizaci data a asu u vech klient a server v sti. Pokud bude tato sluba ukonena, synchronizace data a asu nebude k dispozici. Jestlie je tato sluba zakzna, nezda se sputn dnch slueb, kter na tto slub zvis. - Enable - Microsoft Corporation
       UPnPHostConfig - \Microsoft\Windows\UPnP\UPnPHostConfig - C:\Windows\system32\sc.exe - Nastavit automatick sputn sluby UPnPHost - Enable - Microsoft Corporation
       ValidationTask - \Microsoft\Windows\Windows Activation Technologies\ValidationTask - C:\Windows\System32\Wat\WatAdminSvc.exe - Microsoft Update KB971033 - Enable - Microsoft Corporation
       ValidationTaskDeadline - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - C:\Windows\System32\schtasks.exe - Microsoft Update KB971033 - Enable - Microsoft Corporation
       QueueReporting - \Microsoft\Windows\Windows Error Reporting\QueueReporting - C:\Windows\System32\wermgr.exe - loha sluby Zasln zprv o chybch systmu Windows pro zpracovn zprv ve front - Enable - Microsoft Corporation
       BfeOnServiceStartTypeChange - \Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - C:\Windows\System32\rundll32.exe - Tato loha uprav typ spoutn slueb spoutnch brnou firewall, kdy je typ spoutn sluby BFE (Base Filtering Engine) zakzn. - Enable - Microsoft Corporation
       UpdateLibrary - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary - C:\Program Files\Windows Media Player\wmpnscfg.exe - Tato loha aktualizuje seznam sloek v mezipamti a oprvnn zabezpeen pro vechny nov soubory ve sdlen knihovn mdi uivatele. - Enable - Microsoft Corporation
       ConfigNotification - \Microsoft\Windows\WindowsBackup\ConfigNotification - C:\Windows\System32\sdclt.exe - Tato naplnovan loha upozoruje uivatele, e program Windows Zlohovn nebyl nakonfigurovn. - Enable - Microsoft Corporation
       SqmUpload_S-1-5-21-3786599678-3196244946-1610063088-1000 - \WPD\SqmUpload_S-1-5-21-3786599678-3196244946-1610063088-1000 - C:\Windows\System32\rundll32.exe - This task uploads Customer Experience Improvement Program (CEIP) data for Portable Devices - Enable - Microsoft Corporation
       Adobe Flash Player Updater - \Adobe Flash Player Updater - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe - Tato loha udruje instalaci pehrvae Adobe Flash Player v aktualizovanm stavu s pouitm nejnovjch rozen a oprav zabezpeen. Pi zakzn nebo odebrn tto lohy nebude moci pehrva Adobe Flash Player pout automatick zabezpeen potae pomoc nejnovjch oprav zabezpeen. - Disable - Adobe Systems Incorporated
       Adobe online update program - \Adobe online update program - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe - tuident:597942F8 - Enable - Adobe Systems Incorporated
       avast! Emergency Update - \avast! Emergency Update - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe - (null) - Enable - AVAST Software
       CCleanerSkipUAC - \CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe - (null) - Disable - Piriform Ltd
       Java Update Scheduler - \Java Update Scheduler - C:\Program Files\Common Files\Java\Java Update\jusched.exe - tuident:3BDB2E3B - Enable - Oracle Corporation
       SidebarExecute - \SidebarExecute - C:\Program Files\Windows Sidebar\sidebar.exe - (null) - Enable - Microsoft Corporation
       TuneUpUtilities_Task_BkGndMaintenance2013 - \TuneUpUtilities_Task_BkGndMaintenance2013 - C:\Program Files\TuneUp Utilities 2014\OneClick.exe - (null) - Enable - TuneUp Software
       User_Feed_Synchronization-{33A922E1-C349-4298-926C-8C9502C0422B} - \User_Feed_Synchronization-{33A922E1-C349-4298-926C-8C9502C0422B} - C:\Windows\System32\msfeedssync.exe - Aktualizace zastaralch systmovch informanch kanl - Enable - Microsoft Corporation
       {72FBCE8E-030A-4107-9EB5-C7F39E7921DE} - \{72FBCE8E-030A-4107-9EB5-C7F39E7921DE} - C:\Windows\System32\pcalua.exe - (null) - Disable - Microsoft Corporation
       {7508A5C7-90AF-45AB-B7D8-65813633B50C} - \{7508A5C7-90AF-45AB-B7D8-65813633B50C} - C:\Windows\System32\pcalua.exe - (null) - Disable - Microsoft Corporation
       {862E46A6-6200-48D9-809E-F422FC203E72} - \{862E46A6-6200-48D9-809E-F422FC203E72} - C:\Windows\System32\pcalua.exe - (null) - Disable - Microsoft Corporation
       {A472F0F1-1B0A-4A62-ACEF-DDCFD2CECD4F} - \{A472F0F1-1B0A-4A62-ACEF-DDCFD2CECD4F} - C:\Windows\System32\pcalua.exe - (null) - Disable - Microsoft Corporation
       {B3E0C577-1293-4414-86CD-012B20004D2D} - \{B3E0C577-1293-4414-86CD-012B20004D2D} - C:\Windows\System32\pcalua.exe - (null) - Disable - Microsoft Corporation
       {BC2E1B00-74FB-4B00-9F40-E29FAE9ECC79} - \{BC2E1B00-74FB-4B00-9F40-E29FAE9ECC79} - C:\Windows\System32\pcalua.exe - (null) - Disable - Microsoft Corporation
       {F4D3E5DC-FF8E-4E97-800D-359A59BD9AC0} - \{F4D3E5DC-FF8E-4E97-800D-359A59BD9AC0} - C:\Windows\System32\pcalua.exe - (null) - Enable - Microsoft Corporation

==========================================================================================

File Association

       .bat - "%1" %* - HKEY_CLASSES_ROOT\.bat
       .cmd - "%1" %* - HKEY_CLASSES_ROOT\.cmd
       .com - "%1" %* - HKEY_CLASSES_ROOT\.com
       .exe - "%1" %* - HKEY_CLASSES_ROOT\.exe
       .scr - "%1" /S - HKEY_CLASSES_ROOT\.scr
       .txt - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\.txt
       .ini - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\.ini
       .pif - "%1" %* - HKEY_CLASSES_ROOT\.pif
       .reg - regedit.exe "%1" - HKEY_CLASSES_ROOT\.reg
       .inf - %SystemRoot%\System32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\.inf
       .hlp - %SystemRoot%\winhlp32.exe %1 - HKEY_CLASSES_ROOT\.hlp
       .chm - "%SystemRoot%\hh.exe" %1 - HKEY_CLASSES_ROOT\.chm
       .vbs - %SystemRoot%\System32\WScript.exe "%1" %* - HKEY_CLASSES_ROOT\.vbs
       .js - %SystemRoot%\System32\WScript.exe "%1" %* - HKEY_CLASSES_ROOT\.js
       .lnk - lnkfile - HKEY_CLASSES_ROOT\.lnk
       batfile - "%1" %* - HKEY_CLASSES_ROOT\batfile\Shell\Open\Command
       cmdfile - "%1" %* - HKEY_CLASSES_ROOT\cmdfile\Shell\Open\Command
       comfile - "%1" %* - HKEY_CLASSES_ROOT\comfile\Shell\Open\Command
       exefile - "%1" %* - HKEY_CLASSES_ROOT\exefile\Shell\Open\Command
       scrfile - "%1" /S - HKEY_CLASSES_ROOT\scrfile\Shell\Open\Command
       txtfile - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\txtfile\Shell\Open\Command
       inifile - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\inifile\Shell\Open\Command
       piffile - "%1" %* - HKEY_CLASSES_ROOT\piffile\Shell\Open\Command
       regfile - regedit.exe "%1" - HKEY_CLASSES_ROOT\regfile\Shell\Open\Command
       inffile - %SystemRoot%\System32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\inffile\Shell\Open\Command
       hlpfile - %SystemRoot%\winhlp32.exe %1 - HKEY_CLASSES_ROOT\hlpfile\Shell\Open\Command
       chm.file - "%SystemRoot%\hh.exe" %1 - HKEY_CLASSES_ROOT\chm.file\Shell\Open\Command
       vbsfile - %SystemRoot%\System32\WScript.exe "%1" %* - HKEY_CLASSES_ROOT\vbsfile\Shell\Open\Command
       jsfile - %SystemRoot%\System32\WScript.exe "%1" %* - HKEY_CLASSES_ROOT\jsfile\Shell\Open\Command
       HKCU .bat Progid - "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bat\OpenWithProgids
       HKCU .cmd Progid - "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cmd\OpenWithProgids
       HKCU .com Progid - "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.com\OpenWithProgids
       HKCU .exe Progid - "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\OpenWithProgids
       HKCU .scr Progid - "%1" /S - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.scr\OpenWithProgids
       HKCU .txt Progid - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithProgids
       HKCU .ini Progid - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ini\OpenWithProgids
       HKCU .reg Progid - regedit.exe "%1" - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.reg\OpenWithProgids
       HKCU .inf Progid - %SystemRoot%\System32\NOTEPAD.EXE %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inf\OpenWithProgids
       HKCU .chm Progid - "%SystemRoot%\hh.exe" %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.chm\OpenWithProgids
       HKCU .js Progid - %SystemRoot%\System32\WScript.exe "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.js\OpenWithProgids
       HKCU .lnk Progid -  - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lnk\OpenWithProgids

==========================================================================================

IFEO

       Nothing

==========================================================================================

IME

       Czech -  -  - C:\Windows\system32\KBDCZ.DLL - Microsoft Corporation
       US -  -  - C:\Windows\system32\KBDUS.DLL - Microsoft Corporation

==========================================================================================

Firewall Rule

       SSTP-IN-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=443|App=System|Name=@sstpsvc.dll,-35002|Desc=@sstpsvc.dll,-35003|EmbedCtxt=@sstpsvc.dll,-35001| - Enabled - 
       Netlogon-NamedPipe-In --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010| - Enabled - 
       SNMPTRAP-In-UDP --> C:\Windows\System32\snmptrap.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3| - Enabled - Microsoft Corporation
       SNMPTRAP-In-UDP-NoScope --> C:\Windows\System32\snmptrap.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=162|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3| - Enabled - Microsoft Corporation
       WMP-In-UDP --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31003|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - Microsoft Corporation
       WMP-Out-UDP --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31007|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - Microsoft Corporation
       WMP-Out-TCP --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31011|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - Microsoft Corporation
       WMPNSS-QWave-In-UDP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-Out-UDP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-Out-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-HTTPSTR-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=10243|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       WMPNSS-HTTPSTR-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=10243|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       WMPNSS-WMP-In-UDP-NoScope --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-WMP-Out-UDP-NoScope --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-WMP-Out-TCP-NoScope --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-In-UDP-NoScope --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-Out-UDP-NoScope --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-In-TCP-NoScope --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-Out-TCP-NoScope --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-QWave-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-SSDPSrv-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31269|Desc=@FirewallAPI.dll,-31272|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-SSDPSrv-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31273|Desc=@FirewallAPI.dll,-31276|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-UPnPHost-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31277|Desc=@FirewallAPI.dll,-31280|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       WMPNSS-UPnPHost-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31281|Desc=@FirewallAPI.dll,-31284|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       WMPNSS-HTTPSTR-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       WMPNSS-HTTPSTR-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       WMPNSS-WMP-In-UDP --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-WMP-Out-UDP --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-WMP-Out-TCP --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-In-UDP --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-Out-UDP --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-In-TCP --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-Out-TCP --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-UPnP-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-31321|Desc=@FirewallAPI.dll,-31322|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       WMPNSS-RME-HTTP-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|LPort=10245|App=System|Name=@FirewallAPI.dll,-31501|Desc=@FirewallAPI.dll,-31502|EmbedCtxt=@FirewallAPI.dll,-31500|Edge=TRUE|Defer=App| - Enabled - 
       Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=3587|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=p2psvc|Name=@%systemroot%\system32\provsvc.dll,-200|Desc=@%systemroot%\system32\provsvc.dll,-201|EmbedCtxt=@%systemroot%\system32\provsvc.dll,-202| - Enabled - Microsoft Corporation
       Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=3587|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=p2psvc|Name=@%systemroot%\system32\provsvc.dll,-203|Desc=@%systemroot%\system32\provsvc.dll,-204|EmbedCtxt=@%systemroot%\system32\provsvc.dll,-202| - Enabled - Microsoft Corporation
       Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3540|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=pnrpsvc|Name=@%systemroot%\system32\provsvc.dll,-205|Desc=@%systemroot%\system32\provsvc.dll,-206|EmbedCtxt=@%systemroot%\system32\provsvc.dll,-202| - Enabled - Microsoft Corporation
       Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3540|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=pnrpsvc|Name=@%systemroot%\system32\provsvc.dll,-207|Desc=@%systemroot%\system32\provsvc.dll,-208|EmbedCtxt=@%systemroot%\system32\provsvc.dll,-202| - Enabled - Microsoft Corporation
       Collab-P2PHost-In-TCP --> C:\Windows\System32\p2phost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32003|Desc=@FirewallAPI.dll,-32006|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       Collab-P2PHost-Out-TCP --> C:\Windows\System32\p2phost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32007|Desc=@FirewallAPI.dll,-32010|EmbedCtxt=@FirewallAPI.dll,-32002| - Enabled - Microsoft Corporation
       Collab-P2PHost-WSD-In-UDP --> C:\Windows\System32\p2phost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32011|Desc=@FirewallAPI.dll,-32014|EmbedCtxt=@FirewallAPI.dll,-32002| - Enabled - Microsoft Corporation
       Collab-P2PHost-WSD-Out-UDP --> C:\Windows\System32\p2phost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32015|Desc=@FirewallAPI.dll,-32018|EmbedCtxt=@FirewallAPI.dll,-32002| - Enabled - Microsoft Corporation
       Collab-PNRP-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32019|Desc=@FirewallAPI.dll,-32022|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       Collab-PNRP-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32023|Desc=@FirewallAPI.dll,-32026|EmbedCtxt=@FirewallAPI.dll,-32002| - Enabled - Microsoft Corporation
       Collab-PNRP-SSDPSrv-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32027|Desc=@FirewallAPI.dll,-32030|EmbedCtxt=@FirewallAPI.dll,-32002| - Enabled - Microsoft Corporation
       Collab-PNRP-SSDPSrv-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32031|Desc=@FirewallAPI.dll,-32034|EmbedCtxt=@FirewallAPI.dll,-32002| - Enabled - Microsoft Corporation
       RemoteAssistance-In-TCP-EdgeScope --> C:\Windows\System32\msra.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       RemoteAssistance-Out-TCP --> C:\Windows\System32\msra.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-PnrpSvc-UDP-In-EdgeScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=3540|App=%systemroot%\system32\svchost.exe|Svc=pnrpsvc|Name=@FirewallAPI.dll,-33039|Desc=@FirewallAPI.dll,-33040|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       RemoteAssistance-PnrpSvc-UDP-OUT --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|App=%systemroot%\system32\svchost.exe|Svc=pnrpsvc|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-RAServer-In-TCP-NoScope-Active --> C:\Windows\System32\raserver.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-RAServer-Out-TCP-NoScope-Active --> C:\Windows\System32\raserver.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-DCOM-In-TCP-NoScope-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-33035|Desc=@FirewallAPI.dll,-33036|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-In-TCP-EdgeScope-Active --> C:\Windows\System32\msra.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       RemoteAssistance-Out-TCP-Active --> C:\Windows\System32\msra.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-SSDPSrv-In-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-SSDPSrv-Out-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-SSDPSrv-In-TCP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-SSDPSrv-Out-TCP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|LPort=3540|App=%systemroot%\system32\svchost.exe|Svc=pnrpsvc|Name=@FirewallAPI.dll,-33039|Desc=@FirewallAPI.dll,-33040|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       RemoteAssistance-PnrpSvc-UDP-OUT-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|App=%systemroot%\system32\svchost.exe|Svc=pnrpsvc|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002| - Enabled - Microsoft Corporation
       FPS-NB_Session-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=139|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Session-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=139|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-SMB-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-SMB-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Name-In-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Name-Out-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Datagram-In-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Datagram-Out-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-SpoolSvc-In-TCP-NoScope --> C:\Windows\System32\spoolsv.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       FPS-RPCSS-In-TCP-NoScope - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP4-ERQ-In-NoScope - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP4-ERQ-Out-NoScope - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP6-ERQ-In-NoScope - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP6-ERQ-Out-NoScope - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Session-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Session-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-SMB-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-SMB-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Name-In-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Name-Out-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Datagram-In-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-NB_Datagram-Out-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-SpoolSvc-In-TCP --> C:\Windows\System32\spoolsv.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       FPS-RPCSS-In-TCP - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP4-ERQ-In - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP4-ERQ-Out - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP6-ERQ-In - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-ICMP6-ERQ-Out - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       FPS-LLMNR-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28548|Desc=@FirewallAPI.dll,-28549|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       FPS-LLMNR-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28550|Desc=@FirewallAPI.dll,-28551|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       CoreNet-ICMP6-DU-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=1:*|App=System|Name=@FirewallAPI.dll,-25110|Desc=@FirewallAPI.dll,-25112|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE| - Enabled - 
       CoreNet-ICMP6-PTB-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=2:*|App=System|Name=@FirewallAPI.dll,-25001|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE| - Enabled - 
       CoreNet-ICMP6-PTB-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=2:*|Name=@FirewallAPI.dll,-25002|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-TE-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=3:*|App=System|Name=@FirewallAPI.dll,-25113|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE| - Enabled - 
       CoreNet-ICMP6-TE-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=3:*|Name=@FirewallAPI.dll,-25114|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-PP-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=4:*|App=System|Name=@FirewallAPI.dll,-25116|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE| - Enabled - 
       CoreNet-ICMP6-PP-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=4:*|Name=@FirewallAPI.dll,-25117|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-NDS-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=135:*|App=System|Name=@FirewallAPI.dll,-25019|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE| - Enabled - 
       CoreNet-ICMP6-NDS-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=135:*|Name=@FirewallAPI.dll,-25020|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-NDA-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=136:*|App=System|Name=@FirewallAPI.dll,-25026|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE| - Enabled - 
       CoreNet-ICMP6-NDA-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=136:*|Name=@FirewallAPI.dll,-25027|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-RA-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=134:*|RA6=fe80::/64|App=System|Name=@FirewallAPI.dll,-25012|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-RA-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=134:*|LA6=fe80::/64|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::1|Name=@FirewallAPI.dll,-25013|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-RS-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=133:*|App=System|Name=@FirewallAPI.dll,-25009|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-RS-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=133:*|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::2|Name=@FirewallAPI.dll,-25008|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LQ-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25061|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LQ-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25062|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LR-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25068|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LR-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25069|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LR2-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25075|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LR2-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25076|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LD-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25082|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP6-LD-Out - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25083|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-ICMP4-DUFRAG-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=1|ICMP4=3:4|App=System|Name=@FirewallAPI.dll,-25251|Desc=@FirewallAPI.dll,-25257|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-IGMP-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=2|App=System|Name=@FirewallAPI.dll,-25376|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-IGMP-Out --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=2|App=System|Name=@FirewallAPI.dll,-25377|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-DHCP-In --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25301|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-DHCP-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25302|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-DHCPV6-In --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=546|RPort=547|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25304|Desc=@FirewallAPI.dll,-25306|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-DHCPV6-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|LPort=546|RPort=547|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25305|Desc=@FirewallAPI.dll,-25306|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-Teredo-In --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=Teredo|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25326|Desc=@FirewallAPI.dll,-25332|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-Teredo-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25327|Desc=@FirewallAPI.dll,-25333|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-IPHTTPS-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort2_10=IPTLSIn|LPort2_10=IPHTTPSIn|App=System|Name=@FirewallAPI.dll,-25426|Desc=@FirewallAPI.dll,-25428|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-IPHTTPS-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|RPort2_10=IPTLSOut|RPort2_10=IPHTTPSOut|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25427|Desc=@FirewallAPI.dll,-25429|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-IPv6-In --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=41|App=System|Name=@FirewallAPI.dll,-25351|Desc=@FirewallAPI.dll,-25357|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-IPv6-Out --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=41|App=System|Name=@FirewallAPI.dll,-25352|Desc=@FirewallAPI.dll,-25358|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-GP-NP-Out-TCP --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-25401|Desc=@FirewallAPI.dll,-25401|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - 
       CoreNet-GP-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Name=@FirewallAPI.dll,-25403|Desc=@FirewallAPI.dll,-25404|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-DNS-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|RPort=53|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-25405|Desc=@FirewallAPI.dll,-25406|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       CoreNet-GP-LSASS-Out-TCP --> C:\Windows\System32\lsass.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\lsass.exe|Name=@FirewallAPI.dll,-25407|Desc=@FirewallAPI.dll,-25408|EmbedCtxt=@FirewallAPI.dll,-25000| - Enabled - Microsoft Corporation
       NETDIS-UPnPHost-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-UPnPHost-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Name-In-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Name-Out-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Datagram-In-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Datagram-Out-UDP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNTS-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNTS-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNT-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNT-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-SSDPSrv-In-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-SSDPSrv-Out-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-UPnPHost-In-TCP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-UPnPHost-Out-TCP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-UPnP-Out-TCP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-NB_Name-In-UDP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Name-Out-UDP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Datagram-In-UDP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Datagram-Out-UDP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-FDPHOST-In-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-FDPHOST-Out-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-LLMNR-In-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-LLMNR-Out-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-FDRESPUB-WSD-In-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-FDRESPUB-WSD-Out-UDP-Active --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-WSDEVNTS-In-TCP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNTS-Out-TCP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNT-In-TCP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNT-Out-TCP-Active --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-SSDPSrv-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-SSDPSrv-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-UPnP-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-UPnPHost-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-UPnPHost-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Name-In-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Name-Out-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Datagram-In-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-NB_Datagram-Out-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-FDPHOST-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-FDPHOST-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-LLMNR-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-LLMNR-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-FDRESPUB-WSD-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-FDRESPUB-WSD-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - Microsoft Corporation
       NETDIS-WSDEVNTS-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNTS-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNT-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       NETDIS-WSDEVNT-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752| - Enabled - 
       MsiScsi-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002| - Enabled - Microsoft Corporation
       MsiScsi-Out-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002| - Enabled - Microsoft Corporation
       MsiScsi-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002| - Enabled - Microsoft Corporation
       MsiScsi-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002| - Enabled - Microsoft Corporation
       MSDTC-In-TCP-NoScope --> C:\Windows\System32\msdtc.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-Out-TCP-NoScope --> C:\Windows\System32\msdtc.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-KTMRM-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-In-TCP --> C:\Windows\System32\msdtc.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-Out-TCP --> C:\Windows\System32\msdtc.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-KTMRM-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       MSDTC-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502| - Enabled - Microsoft Corporation
       RemoteSvcAdmin-In-TCP-NoScope --> C:\Windows\System32\services.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502| - Enabled - Microsoft Corporation
       RemoteSvcAdmin-NP-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502| - Enabled - 
       RemoteSvcAdmin-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502| - Enabled - Microsoft Corporation
       RemoteSvcAdmin-In-TCP --> C:\Windows\System32\services.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502| - Enabled - Microsoft Corporation
       RemoteSvcAdmin-NP-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502| - Enabled - 
       RemoteSvcAdmin-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502| - Enabled - Microsoft Corporation
       PerfLogsAlerts-PLASrv-In-TCP --> C:\Windows\System32\plasrv.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\plasrv.exe|Name=@FirewallAPI.dll,-34753|Desc=@FirewallAPI.dll,-34754|EmbedCtxt=@FirewallAPI.dll,-34752| - Enabled - Microsoft Corporation
       PerfLogsAlerts-DCOM-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34755|Desc=@FirewallAPI.dll,-34756|EmbedCtxt=@FirewallAPI.dll,-34752| - Enabled - Microsoft Corporation
       PerfLogsAlerts-PLASrv-In-TCP-NoScope --> C:\Windows\System32\plasrv.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\plasrv.exe|Name=@FirewallAPI.dll,-34753|Desc=@FirewallAPI.dll,-34754|EmbedCtxt=@FirewallAPI.dll,-34752| - Enabled - Microsoft Corporation
       PerfLogsAlerts-DCOM-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34755|Desc=@FirewallAPI.dll,-34756|EmbedCtxt=@FirewallAPI.dll,-34752| - Enabled - Microsoft Corporation
       WMI-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-WINMGMT-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-WINMGMT-Out-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-ASYNC-In-TCP-NoScope --> C:\Windows\System32\wbem\unsecapp.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-WINMGMT-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-WINMGMT-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       WMI-ASYNC-In-TCP --> C:\Windows\System32\wbem\unsecapp.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251| - Enabled - Microsoft Corporation
       PNRPMNRS-PNRP-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34003|Desc=@FirewallAPI.dll,-34004|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=TRUE|Defer=App| - Enabled - Microsoft Corporation
       PNRPMNRS-PNRP-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34005|Desc=@FirewallAPI.dll,-34006|EmbedCtxt=@FirewallAPI.dll,-34002| - Enabled - Microsoft Corporation
       PNRPMNRS-SSDPSrv-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34007|Desc=@FirewallAPI.dll,-34008|EmbedCtxt=@FirewallAPI.dll,-34002| - Enabled - Microsoft Corporation
       PNRPMNRS-SSDPSrv-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34009|Desc=@FirewallAPI.dll,-34010|EmbedCtxt=@FirewallAPI.dll,-34002| - Enabled - Microsoft Corporation
       RemoteEventLogSvc-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252| - Enabled - Microsoft Corporation
       RemoteEventLogSvc-NP-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252| - Enabled - 
       RemoteEventLogSvc-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252| - Enabled - Microsoft Corporation
       RemoteEventLogSvc-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252| - Enabled - Microsoft Corporation
       RemoteEventLogSvc-NP-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252| - Enabled - 
       RemoteEventLogSvc-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252| - Enabled - Microsoft Corporation
       RemoteTask-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252| - Enabled - Microsoft Corporation
       RemoteTask-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252| - Enabled - Microsoft Corporation
       RemoteTask-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252| - Enabled - Microsoft Corporation
       RemoteTask-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252| - Enabled - Microsoft Corporation
       WINRM-HTTP-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5985|App=System|Name=@FirewallAPI.dll,-30253|Desc=@FirewallAPI.dll,-30256|EmbedCtxt=@FirewallAPI.dll,-30252| - Enabled - 
       WINRM-HTTP-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5985|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30253|Desc=@FirewallAPI.dll,-30256|EmbedCtxt=@FirewallAPI.dll,-30252| - Enabled - 
       WINRM-HTTP-Compat-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=80|App=System|Name=@FirewallAPI.dll,-35001|Desc=@FirewallAPI.dll,-35002|EmbedCtxt=@FirewallAPI.dll,-30252| - Enabled - 
       WINRM-HTTP-Compat-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=80|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-35001|Desc=@FirewallAPI.dll,-35002|EmbedCtxt=@FirewallAPI.dll,-30252| - Enabled - 
       RemoteFwAdmin-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002| - Enabled - Microsoft Corporation
       RemoteFwAdmin-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002| - Enabled - Microsoft Corporation
       RemoteFwAdmin-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002| - Enabled - Microsoft Corporation
       RemoteFwAdmin-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002| - Enabled - Microsoft Corporation
       RRAS-GRE-In --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=47|App=System|Name=@FirewallAPI.dll,-33769|Desc=@FirewallAPI.dll,-33772|EmbedCtxt=@FirewallAPI.dll,-33752| - Enabled - 
       RRAS-GRE-Out --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=47|App=System|Name=@FirewallAPI.dll,-33773|Desc=@FirewallAPI.dll,-33776|EmbedCtxt=@FirewallAPI.dll,-33752| - Enabled - 
       RRAS-L2TP-In-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=1701|App=System|Name=@FirewallAPI.dll,-33753|Desc=@FirewallAPI.dll,-33756|EmbedCtxt=@FirewallAPI.dll,-33752| - Enabled - 
       RRAS-L2TP-Out-UDP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=1701|App=System|Name=@FirewallAPI.dll,-33757|Desc=@FirewallAPI.dll,-33760|EmbedCtxt=@FirewallAPI.dll,-33752| - Enabled - 
       RRAS-PPTP-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=1723|App=System|Name=@FirewallAPI.dll,-33765|Desc=@FirewallAPI.dll,-33768|EmbedCtxt=@FirewallAPI.dll,-33752| - Enabled - 
       RRAS-PPTP-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RPort=1723|App=System|Name=@FirewallAPI.dll,-33761|Desc=@FirewallAPI.dll,-33764|EmbedCtxt=@FirewallAPI.dll,-33752| - Enabled - 
       RVM-VDS-In-TCP-NoScope --> C:\Windows\System32\vds.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501| - Enabled - Microsoft Corporation
       RVM-VDSLDR-In-TCP-NoScope --> C:\Windows\System32\vdsldr.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501| - Enabled - Microsoft Corporation
       RVM-RPCSS-In-TCP-NoScope --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501| - Enabled - Microsoft Corporation
       RVM-VDS-In-TCP --> C:\Windows\System32\vds.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501| - Enabled - Microsoft Corporation
       RVM-VDSLDR-In-TCP --> C:\Windows\System32\vdsldr.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501| - Enabled - Microsoft Corporation
       RVM-RPCSS-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501| - Enabled - Microsoft Corporation
       WPDMTP-Out-TCP-NoScope --> C:\Windows\System32\WUDFHost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - Microsoft Corporation
       WPDMTP-Out-TCP --> C:\Windows\System32\WUDFHost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - Microsoft Corporation
       WPDMTP-SSDPSrv-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30507|Desc=@FirewallAPI.dll,-30510|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - Microsoft Corporation
       WPDMTP-SSDPSrv-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30511|Desc=@FirewallAPI.dll,-30514|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - Microsoft Corporation
       WPDMTP-UPnPHost-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30515|Desc=@FirewallAPI.dll,-30518|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - 
       WPDMTP-UPnPHost-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-30519|Desc=@FirewallAPI.dll,-30522|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - Microsoft Corporation
       WPDMTP-UPnP-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-30523|Desc=@FirewallAPI.dll,-30524|EmbedCtxt=@FirewallAPI.dll,-30502| - Enabled - Microsoft Corporation
       Microsoft-Windows-PeerDist-HttpTrans-In --> SYSTEM - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=80|App=SYSTEM|Name=@peerdistsh.dll,-10000|Desc=@peerdistsh.dll,-11000|EmbedCtxt=@peerdistsh.dll,-9000| - Enabled - 
       Microsoft-Windows-PeerDist-HttpTrans-Out --> SYSTEM - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RPort=80|App=SYSTEM|Name=@peerdistsh.dll,-10001|Desc=@peerdistsh.dll,-11001|EmbedCtxt=@peerdistsh.dll,-9000| - Enabled - 
       Microsoft-Windows-PeerDist-WSD-In --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=PeerDistSvc|Name=@peerdistsh.dll,-10002|Desc=@peerdistsh.dll,-11002|EmbedCtxt=@peerdistsh.dll,-9001| - Enabled - Microsoft Corporation
       Microsoft-Windows-PeerDist-WSD-Out --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=PeerDistSvc|Name=@peerdistsh.dll,-10003|Desc=@peerdistsh.dll,-11003|EmbedCtxt=@peerdistsh.dll,-9001| - Enabled - Microsoft Corporation
       Microsoft-Windows-PeerDist-HostedServer-In --> SYSTEM - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=443|App=SYSTEM|Name=@peerdistsh.dll,-10004|Desc=@peerdistsh.dll,-11004|EmbedCtxt=@peerdistsh.dll,-9002| - Enabled - 
       Microsoft-Windows-PeerDist-HostedServer-Out --> SYSTEM - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|LPort=443|App=SYSTEM|Name=@peerdistsh.dll,-10005|Desc=@peerdistsh.dll,-11005|EmbedCtxt=@peerdistsh.dll,-9002| - Enabled - 
       Microsoft-Windows-PeerDist-HostedClient-Out --> SYSTEM - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RPort=443|App=SYSTEM|Name=@peerdistsh.dll,-10006|Desc=@peerdistsh.dll,-11006|EmbedCtxt=@peerdistsh.dll,-9003| - Enabled - 
       NetPres-In-TCP-NoScope --> C:\Windows\System32\NetProj.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - Microsoft Corporation
       NetPres-Out-TCP-NoScope --> C:\Windows\System32\NetProj.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - Microsoft Corporation
       NetPres-WSDEVNT-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSDEVNT-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSDEVNTS-In-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSDEVNTS-Out-TCP-NoScope --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSD-In-UDP --> C:\Windows\System32\NetProj.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31753|Desc=@FirewallAPI.dll,-31756|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - Microsoft Corporation
       NetPres-WSD-Out-UDP --> C:\Windows\System32\NetProj.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31757|Desc=@FirewallAPI.dll,-31760|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - Microsoft Corporation
       NetPres-In-TCP --> C:\Windows\System32\NetProj.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - Microsoft Corporation
       NetPres-Out-TCP --> C:\Windows\System32\NetProj.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - Microsoft Corporation
       NetPres-WSDEVNT-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSDEVNT-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSDEVNTS-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       NetPres-WSDEVNTS-Out-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752| - Enabled - 
       MCX-SSDPSrv-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30753|Desc=@FirewallAPI.dll,-30756|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-SSDPSrv-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30757|Desc=@FirewallAPI.dll,-30760|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-In-TCP --> C:\Windows\ehome\ehshell.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=554|LPort=8554|LPort=8555|LPort=8556|LPort=8557|LPort=8558|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30761|Desc=@FirewallAPI.dll,-30764|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-Out-TCP --> C:\Windows\ehome\ehshell.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30765|Desc=@FirewallAPI.dll,-30768|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-QWave-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30769|Desc=@FirewallAPI.dll,-30772|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-QWave-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30773|Desc=@FirewallAPI.dll,-30776|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-QWave-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30777|Desc=@FirewallAPI.dll,-30780|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-QWave-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30781|Desc=@FirewallAPI.dll,-30784|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-HTTPSTR-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30785|Desc=@FirewallAPI.dll,-30788|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - 
       MCX-TERMSRV-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=3390|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30793|Desc=@FirewallAPI.dll,-30796|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - 
       MCX-In-UDP --> C:\Windows\ehome\ehshell.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=7777|LPort=7778|LPort=7779|LPort=7780|LPort=7781|LPort=5004|LPort=5005|LPort=50004|LPort=50005|LPort=50006|LPort=50007|LPort=50008|LPort=50009|LPort=50010|LPort=50011|LPort=50012|LPort=50013|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30801|Desc=@FirewallAPI.dll,-30804|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-Out-UDP --> C:\Windows\ehome\ehshell.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30805|Desc=@FirewallAPI.dll,-30808|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-MCX2SVC-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=mcx2svc|Name=@FirewallAPI.dll,-30810|Desc=@FirewallAPI.dll,-30811|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-Prov-Out-TCP --> C:\Windows\ehome\Mcx2Prov.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%SystemRoot%\ehome\mcx2prov.exe|Name=@FirewallAPI.dll,-30812|Desc=@FirewallAPI.dll,-30813|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-PlayTo-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30814|Desc=@FirewallAPI.dll,-30815|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - 
       MCX-PlayTo-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-30816|Desc=@FirewallAPI.dll,-30817|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-McrMgr-Out-TCP --> C:\Windows\ehome\McrMgr.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%SystemRoot%\ehome\mcrmgr.exe|Name=@FirewallAPI.dll,-30818|Desc=@FirewallAPI.dll,-30819|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-PlayTo-Out-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30820|Desc=@FirewallAPI.dll,-30821|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       MCX-FDPHost-Out-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-30822|Desc=@FirewallAPI.dll,-30823|EmbedCtxt=@FirewallAPI.dll,-30752| - Enabled - Microsoft Corporation
       RemoteDesktop-In-TCP --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=3389|App=System|Name=@FirewallAPI.dll,-28753|Desc=@FirewallAPI.dll,-28756|EmbedCtxt=@FirewallAPI.dll,-28752| - Enabled - 
       RemoteDesktop-UserMode-In-TCP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=3389|App=%SystemRoot%\system32\svchost.exe|Svc=termservice|Name=@FirewallAPI.dll,-28853|Desc=@FirewallAPI.dll,-28856|EmbedCtxt=@FirewallAPI.dll,-28852| - Enabled - Microsoft Corporation
       {0F3C85B0-4813-45B8-820D-7AAD280D1282} --> C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe|Name=KTF MUSIC AoD Server| - Enabled - PeeringPortal
       {20E0D810-B31D-4028-876A-A032A1E4CFBE} --> C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe|Name=KTF MUSIC AoD Server| - Enabled - PeeringPortal
       {00D80156-2BB2-4FE5-9104-9CE1C8CF5AA5} --> C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe|Name=KTF MUSIC VoD Server| - Enabled - PeeringPortal
       {823AED06-CFB6-467F-9D8B-66E38CCB4E46} --> C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe|Name=KTF MUSIC VoD Server| - Enabled - PeeringPortal
       {7B07F34F-E971-444F-BCC3-71292A5B74C4} --> C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe|Name=WebKit|Edge=TRUE| - Enabled - Apple Inc.
       {C296DFC4-8543-493B-8783-7978CBB91EEE} --> C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe|Name=Ubisoft Game Launcher| - Enabled - 
       {5DA8D66F-8E6A-4D72-9FB6-F78A2C54B622} --> C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe|Name=Ubisoft Game Launcher| - Enabled - 
       {BF1647A4-C524-495A-8B44-DA0763846CEC} --> C:\Program Files\Steam\steam.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Steam\Steam.exe|Name=Steam| - Enabled - Valve Corporation
       {71485A32-8674-4F06-A87D-DFA22606C4B6} --> C:\Program Files\Steam\steam.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Steam\Steam.exe|Name=Steam| - Enabled - Valve Corporation
       RemoteDesktop-UserMode-In-UDP --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|LPort=3389|App=%SystemRoot%\system32\svchost.exe|Svc=termservice|Name=@RdpGroupPolicyExtension.dll,-101|Desc=@RdpGroupPolicyExtension.dll,-102|EmbedCtxt=@FirewallAPI.dll,-28852| - Enabled - Microsoft Corporation
       {B05F4E89-CBFB-415F-85FC-DEA59B878C96} --> C:\Windows\System32\muzapp.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\muzapp.exe|Name=MUZ AOD APP player| - Enabled - Musiccity Co.Ltd.
       {B4165498-7353-4E54-859C-2A11BDFC3A71} --> C:\Windows\System32\muzapp.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\muzapp.exe|Name=MUZ AOD APP player| - Enabled - Musiccity Co.Ltd.
       {41D3EFA0-DBE1-4B3D-8590-EBEBA268634E} --> C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe|Name=Daemonu.exe| - Enabled - NVIDIA Corporation
       {6052B914-F19F-4B9E-9EBC-03FA65150BEF} --> C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe|Name=Daemonu.exe| - Enabled - NVIDIA Corporation
       {ED40E639-915D-45AB-9602-0A3252E78653} --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31011|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - Microsoft Corporation
       {DEDBB74C-5812-404E-B4E4-29605447C6A5} --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31007|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - Microsoft Corporation
       {2D7C6433-4869-46EC-A5E2-AC081E35DCE2} --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31003|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - Microsoft Corporation
       {A1EDF383-4813-4597-89D3-5679AE94EF13} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-31321|Desc=@FirewallAPI.dll,-31322|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {493BD05C-1ABC-48B0-A2D4-E62D1E8BA2F2} --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {88A307DE-E43B-435A-A521-1E4A3B7D9E62} --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {4304A6FB-C48B-450D-8896-B80BA473D53D} --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {3808A6F6-43E2-4D30-9A39-5430D6CB97A6} --> C:\Program Files\Windows Media Player\wmpnetwk.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {98A18023-43E3-4168-B149-5C3B0FFEBE5C} --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {32190957-F276-4E3E-9959-3D9275E7AC05} --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {13388AE8-F445-4B01-85CC-3A33C83CFF93} --> C:\Program Files\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%PROGRAMFILES%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {755B8630-49DA-4FFA-9C85-FD9856F91293} --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       {7E5B6A03-A8C7-459D-A86A-DBFA2B409342} --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       {4A05A67F-B755-4E1D-9CEF-A1B323927ED3} --> System - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31281|Desc=@FirewallAPI.dll,-31284|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       {F36AB156-96F6-487E-B6C9-C55B914CA5D9} --> System - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31277|Desc=@FirewallAPI.dll,-31280|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - 
       {D82FF57C-ECF9-4567-9D85-CBAAD6251E41} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31273|Desc=@FirewallAPI.dll,-31276|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {449C57CF-DF4C-4F2F-8B44-FE43E03D6B4A} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31269|Desc=@FirewallAPI.dll,-31272|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {B6732CEE-73F3-4FED-A506-135ABBA128AA} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {7F293CFE-8843-499F-8882-4CC4FB064916} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {367CD250-1595-475E-9D64-206D178469FC} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {358949D4-1F83-40B2-84BC-E2263D51B973} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252| - Enabled - Microsoft Corporation
       {E26CE087-CA29-4AB4-BEC8-E2D3ABDAB7E0} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28550|Desc=@FirewallAPI.dll,-28551|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {A6D024DD-B81F-4C67-A5F0-93B333C75185} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28548|Desc=@FirewallAPI.dll,-28549|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {403B957F-641C-4F75-9A52-9C75F8AFD7F7} - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {E3F9E01A-A82D-49C4-815D-20E19AC88DBB} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {558F245F-85ED-42F2-9CA1-E2946F49C14C} - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {B9A2CCE9-FFEF-45CB-B88F-0B047412EEAB} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {CF4EEFF6-662D-4D12-ABED-036CD13208AD} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {819A25F4-04DE-453C-B2FE-9071DD006E5C} --> C:\Windows\System32\spoolsv.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {C79EC8D1-543B-4D50-A3FA-6DFD97E6B2C5} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {2D93269A-5AFF-4258-862D-303AC5A55D52} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {98B6A0E6-21B7-4160-A4D3-1B5D84C44DF3} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {992D227A-F45D-415E-A98F-41B40F4B8E69} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {171575BF-E68D-4500-9D2C-AB80BB2546C5} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {08E85D54-D3D2-4428-857F-AD398601579E} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {BE35F18E-14D1-4D29-96AA-FFDC0597DA50} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {1BD3A539-E76B-4550-8B57-19196CF1E140} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {0CE3C3EC-3DD9-4B40-AFFF-355DCFF8F76D} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28550|Desc=@FirewallAPI.dll,-28551|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {0354B2E9-279D-4721-9C47-0DF9F51EE38D} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28548|Desc=@FirewallAPI.dll,-28549|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       TCP Query User{0C5AA9AE-CB03-4491-8BB5-B0CE23255D2A}C:\program files\java\jre7\bin\javaw.exe --> C:\program files\Java\jre7\bin\javaw.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files\java\jre7\bin\javaw.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|Defer=User| - Enabled - Oracle Corporation
       UDP Query User{98015561-E2FD-4933-8C3F-598F56686288}C:\program files\java\jre7\bin\javaw.exe --> C:\program files\Java\jre7\bin\javaw.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files\java\jre7\bin\javaw.exe|Name=Java(TM) Platform SE binary|Desc=Java(TM) Platform SE binary|Defer=User| - Enabled - Oracle Corporation
       {1BBC0FFC-69D6-4D40-B68A-664667694DC4} --> C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|App=C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe|Name=Torrent (TCP-In)|Desc=Allow Torrent network traffic with Edge Traversal|Edge=TRUE| - Enabled - BitTorrent Inc.
       {11388620-4C40-490C-AD84-0AC9616AA2E0} --> C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|App=C:\Users\Vladimir\AppData\Roaming\uTorrent\uTorrent.exe|Name=Torrent (UDP-In)|Desc=Allow Torrent network traffic with Edge Traversal|Edge=TRUE| - Enabled - BitTorrent Inc.
       {06B6EE71-7BB2-4629-B3A4-D3ADDC93B204} --> C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=808|App=C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe|Svc=NetTcpActivator|Name=@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelEvents.dll,-2000|Desc=@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelEvents.dll,-2001|EmbedCtxt=@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelEvents.dll,-2002| - Enabled - Microsoft Corporation
       {E1A73022-CC0F-47EF-B566-6088BF269244} --> C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Users\Vladimir\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe|Name=Microsoft SkyDrive| - Enabled - Microsoft Corporation
       {75874E2B-436F-4F40-81D1-0B6C822E585E} --> C:\Program Files\Windows Live\Contacts\wlcomm.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\Windows Live\Contacts\wlcomm.exe|Name=Windows Live Communications Platform|Edge=TRUE| - Enabled - Microsoft Corporation
       {91441F14-A75A-423F-8FD1-41AB67D0432E} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|Name=Windows Live Communications Platform (UPnP)| - Enabled - 
       {960B9821-D584-49A9-8B4B-10373F8F7CD5} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|Name=Windows Live Communications Platform (SSDP)| - Enabled - 
       {43D03423-C1AF-4672-A51C-E55AB7D3A895} --> C:\Program Files\Windows Live\Messenger\msnmsgr.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\Windows Live\Messenger\msnmsgr.exe|Name=Windows Live Messenger|Edge=TRUE| - Enabled - Microsoft Corporation
       {8441D82E-8BF1-4E15-8417-00F2C1BD50FD} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=47987|LPort=47988|LPort=47989|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe|Name=SHIELD Streaming Service TCP Exception|Desc=TCP exceptions for SHIELD Streaming service| - Enabled - NVIDIA Corporation
       {421235D4-3180-4C1D-8B03-DB4E5B516E85} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe|Name=SHIELD Streaming Service UDP Exception|Desc=UDP exceptions for SHIELD Streaming service| - Enabled - NVIDIA Corporation
       {50C87B7D-EF9F-4153-BC73-38A8A3D4A868} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=47991|LPort=47995|LPort=47996|LPort=47998|LPort=35043|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe|Name=SHIELD Streaming Application TCP Exception|Desc=TCP exceptions for SHIELD Streaming| - Enabled - NVIDIA Corporation
       {5979696C-0E4A-4D2D-A53F-BC2138E040E9} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=48000|LPort=47999|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe|Name=SHIELD Streaming Application UDP Exception|Desc=UDP exceptions for SHIELD Streaming| - Enabled - NVIDIA Corporation
       {A646095C-42D2-4CEF-AF29-BEA5BEAB80CC} --> C:\Program Files\Nokia\nokia suite\nokiasuite.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\nokia\nokia suite\nokiasuite.exe|Name=Nokia Suite|Desc=Nokia Suite| - Enabled - Nokia
       {9C51F441-89C5-4403-9CE9-2FE499D7F579} --> C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|App=C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe|Name=Daemonu.exe| - Enabled - NVIDIA Corporation
       {9D702785-C8BB-4F37-95D1-2A84B9F5D2BA} --> C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|App=C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe|Name=Daemonu.exe| - Enabled - NVIDIA Corporation
       {6239BA5F-699F-4A61-8648-A1DC7F0B8E40} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=47987|LPort=47988|LPort=47989|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe|Name=SHIELD Streaming Service TCP Exception|Desc=TCP exceptions for SHIELD Streaming service| - Enabled - NVIDIA Corporation
       {7B6CA0FD-EBEE-453B-BC84-1790BBBF1A67} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe|Name=SHIELD Streaming Service UDP Exception|Desc=UDP exceptions for SHIELD Streaming service| - Enabled - NVIDIA Corporation
       {46CC4B8D-8AF4-4C3F-BD1B-F8ED47550FD8} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=47991|LPort=47995|LPort=47996|LPort=47998|LPort=35043|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe|Name=SHIELD Streaming Application TCP Exception|Desc=TCP exceptions for SHIELD Streaming| - Enabled - NVIDIA Corporation
       {9E2A1532-3F8F-4859-8E59-2B855F3118CC} --> C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=48000|LPort=47999|App=C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe|Name=SHIELD Streaming Application UDP Exception|Desc=UDP exceptions for SHIELD Streaming| - Enabled - NVIDIA Corporation
       {B9BDF8AC-0782-4441-9555-2F0D05041883} --> C:\Program Files\Skype\Phone\Skype.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\Skype\Phone\Skype.exe|Name=Skype| - Enabled - Skype Technologies S.A.
       WMP-Out-TCP-x86 --> %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|App=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31025|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - 
       WMP-Out-UDP-x86 --> %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|App=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31024|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - 
       WMP-In-UDP-x86 --> %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|App=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31023|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002| - Enabled - 
       SPPSVC-In-TCP --> C:\Windows\System32\sppsvc.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=1688|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\sppsvc.exe|Svc=sppsvc|Name=@FirewallAPI.dll,-28003|Desc=@FirewallAPI.dll,-28006|EmbedCtxt=@FirewallAPI.dll,-28002| - Enabled - Microsoft Corporation
       SPPSVC-In-TCP-NoScope --> C:\Windows\System32\sppsvc.exe - v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=1688|App=%SystemRoot%\system32\sppsvc.exe|Svc=sppsvc|Name=@FirewallAPI.dll,-28003|Desc=@FirewallAPI.dll,-28006|EmbedCtxt=@FirewallAPI.dll,-28002| - Enabled - Microsoft Corporation
       {FA2C2CEE-549A-437E-98F0-F47A8BE9798F} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28550|Desc=@FirewallAPI.dll,-28551|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {A4E4DB9D-6CF0-428F-840D-48886FBA29C4} --> C:\Windows\System32\svchost.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-28548|Desc=@FirewallAPI.dll,-28549|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {D94E76B0-61C3-4258-9A2E-2ABEB55963FB} - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {5C4DDBF0-5C0F-4974-AB96-3D604D77754B} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {CFC1D956-CDD1-495F-8C4A-5791C8B09303} - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {B2CE552B-794C-4A8F-99F9-3838B3D20914} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {7C8F19D4-92D9-4351-AD66-50EDDAB37DBB} - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {DABF104D-1881-4097-BAA0-24F85BA7D919} --> C:\Windows\System32\spoolsv.exe - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - Microsoft Corporation
       {8DE7933B-6593-4E4E-8C73-D737395A3FCB} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {D77006C1-60EF-47C9-BDF9-BCB465A8A61A} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {3A230E5F-6FEA-45A8-A9ED-00F34D0B863D} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {540E3302-292C-43FF-B326-9251BC5A3134} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {2E7455CB-88E4-4CE7-A6E4-C81E33D47D31} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {C92A7281-5584-4224-89DD-E7EFF00691D3} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {2C29C048-79BB-4033-B63E-1F94F1065AF7} --> System - v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 
       {A7571748-B41E-4A28-8F61-49310FDAFA22} --> System - v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502| - Enabled - 

==========================================================================================

System User Name

       Administrator
       Guest
       UpdatusUser
       Vladimir

==========================================================================================

Scan MBR Rootkit

       Unknow MBR!
