Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Nalezen trojský kůň v operační paměti

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#31 Příspěvek od Pitrisek »

Provedena kontrola TDSSKillerem, přikládám log:

21:55:33.0361 0x04fc TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
21:55:53.0657 0x04fc ============================================================
21:55:53.0657 0x04fc Current date / time: 2015/06/23 21:55:53.0657
21:55:53.0657 0x04fc SystemInfo:
21:55:53.0657 0x04fc
21:55:53.0657 0x04fc OS Version: 6.1.7601 ServicePack: 1.0
21:55:53.0657 0x04fc Product type: Workstation
21:55:53.0657 0x04fc ComputerName: PETR-VAIO
21:55:53.0657 0x04fc UserName: Petr
21:55:53.0657 0x04fc Windows directory: C:\Windows
21:55:53.0657 0x04fc System windows directory: C:\Windows
21:55:53.0657 0x04fc Running under WOW64
21:55:53.0657 0x04fc Processor architecture: Intel x64
21:55:53.0657 0x04fc Number of processors: 4
21:55:53.0657 0x04fc Page size: 0x1000
21:55:53.0657 0x04fc Boot type: Normal boot
21:55:53.0657 0x04fc ============================================================
21:55:54.0343 0x04fc KLMD registered as C:\Windows\system32\drivers\51226547.sys
21:55:54.0733 0x04fc System UUID: {AD3C7BAC-AA0F-9FFD-10C3-BE40389A6236}
21:55:55.0451 0x04fc Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:55:55.0498 0x04fc ============================================================
21:55:55.0498 0x04fc \Device\Harddisk0\DR0:
21:55:55.0498 0x04fc MBR partitions:
21:55:55.0498 0x04fc \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1F2C000, BlocksNum 0x32000
21:55:55.0498 0x04fc \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1F5E000, BlocksNum 0x38428030
21:55:55.0498 0x04fc ============================================================
21:55:55.0513 0x04fc C: <-> \Device\Harddisk0\DR0\Partition2
21:55:55.0513 0x04fc ============================================================
21:55:55.0513 0x04fc Initialize success
21:55:55.0513 0x04fc ============================================================
21:56:38.0257 0x1100 ============================================================
21:56:38.0257 0x1100 Scan started
21:56:38.0257 0x1100 Mode: Manual;
21:56:38.0257 0x1100 ============================================================
21:56:38.0257 0x1100 KSN ping started
21:56:41.0081 0x1100 KSN ping finished: true
21:56:41.0658 0x1100 ================ Scan system memory ========================
21:56:41.0658 0x1100 System memory - ok
21:56:41.0674 0x1100 ================ Scan services =============================
21:56:41.0830 0x1100 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
21:56:41.0845 0x1100 1394ohci - ok
21:56:41.0954 0x1100 [ ADC420616C501B45D26C0FD3EF1E54E4, 29FC41D40A35AC5476E2A673CE5B12684E0CFA12A1AEBEEBE5883FBA5CA68B67 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
21:56:41.0970 0x1100 ACDaemon - ok
21:56:42.0017 0x1100 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys
21:56:42.0048 0x1100 ACPI - ok
21:56:42.0079 0x1100 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
21:56:42.0079 0x1100 AcpiPmi - ok
21:56:42.0173 0x1100 [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:56:42.0173 0x1100 AdobeARMservice - ok
21:56:42.0313 0x1100 [ 00CC35F515079F5F94FABC3AC5C7D363, 7CE8B1715009602059DEDD6CBCA9C18EF079EDA344E7809813D6C0A395622B82 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
21:56:42.0344 0x1100 AdobeFlashPlayerUpdateSvc - ok
21:56:42.0376 0x1100 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
21:56:42.0407 0x1100 adp94xx - ok
21:56:42.0454 0x1100 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys
21:56:42.0485 0x1100 adpahci - ok
21:56:42.0500 0x1100 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
21:56:42.0516 0x1100 adpu320 - ok
21:56:42.0532 0x1100 [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
21:56:42.0547 0x1100 AeLookupSvc - ok
21:56:42.0578 0x1100 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys
21:56:42.0610 0x1100 AFD - ok
21:56:42.0625 0x1100 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys
21:56:42.0641 0x1100 agp440 - ok
21:56:42.0656 0x1100 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe
21:56:42.0672 0x1100 ALG - ok
21:56:42.0688 0x1100 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys
21:56:42.0688 0x1100 aliide - ok
21:56:42.0719 0x1100 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys
21:56:42.0719 0x1100 amdide - ok
21:56:42.0750 0x1100 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
21:56:42.0750 0x1100 AmdK8 - ok
21:56:42.0781 0x1100 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
21:56:42.0781 0x1100 AmdPPM - ok
21:56:42.0812 0x1100 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys
21:56:42.0812 0x1100 amdsata - ok
21:56:42.0844 0x1100 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
21:56:42.0875 0x1100 amdsbs - ok
21:56:42.0890 0x1100 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys
21:56:42.0890 0x1100 amdxata - ok
21:56:42.0937 0x1100 [ 12BFA9EC4B03CC16BB7D19BAA308AEF2, 83EE94308BBDE5FBFC9D863CB0C14AAD487DA0AF34FFA446CF9B4BE0A68254C7 ] ApfiltrService C:\Windows\system32\DRIVERS\Apfiltr.sys
21:56:42.0968 0x1100 ApfiltrService - ok
21:56:43.0000 0x1100 [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID C:\Windows\system32\drivers\appid.sys
21:56:43.0015 0x1100 AppID - ok
21:56:43.0031 0x1100 [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc C:\Windows\System32\appidsvc.dll
21:56:43.0031 0x1100 AppIDSvc - ok
21:56:43.0062 0x1100 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll
21:56:43.0062 0x1100 Appinfo - ok
21:56:43.0093 0x1100 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys
21:56:43.0093 0x1100 arc - ok
21:56:43.0124 0x1100 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys
21:56:43.0124 0x1100 arcsas - ok
21:56:43.0156 0x1100 [ C130BC4A51B1382B2BE8E44579EC4C0A, CC1FD33ED7CAD87A504D8678F8482CAECACD18C727BB97FFB86F39255563EEF2 ] ArcSoftKsUFilter C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
21:56:43.0171 0x1100 ArcSoftKsUFilter - ok
21:56:43.0249 0x1100 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
21:56:43.0265 0x1100 aspnet_state - ok
21:56:43.0296 0x1100 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
21:56:43.0296 0x1100 AsyncMac - ok
21:56:43.0327 0x1100 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys
21:56:43.0327 0x1100 atapi - ok
21:56:43.0358 0x1100 [ 50F257E19554421B6891E3F998EDCA90, 32D368632B714864D77C700B1115F4404EAA72C5F734BF6A2B96F48C3935A5D9 ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys
21:56:43.0358 0x1100 AthBTPort - ok
21:56:43.0390 0x1100 [ 4119870B90E1B5E7797D6433D21F9216, 5CDA3748A6C89B1046173F20D857D164F4170A5028370B5BB9843212CEA86C8F ] ATHDFU C:\Windows\System32\Drivers\AthDfu.sys
21:56:43.0390 0x1100 ATHDFU - ok
21:56:43.0468 0x1100 [ 650F111D5CDA64C10AE4B9D1BA9D4FFF, 99AD83993D724538687F084318404DBF314C2249AB593AF9DD3783B0AB6B3B25 ] Atheros Bt&Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
21:56:43.0483 0x1100 Atheros Bt&Wlan Coex Agent - ok
21:56:43.0514 0x1100 [ EBC3119394C9074A9CD87578A435050D, 4AE141D02DDE33574CC899BBEDCCC311867FB98CEDBB3E556409B018F8F795E5 ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
21:56:43.0514 0x1100 AtherosSvc - ok
21:56:43.0639 0x1100 [ A5E770426D18F8EF332A593F3289DA91, 87AC97758618765814B630CB1A189CD690DC6B0EAAE93D80EDE7771FB362C9AF ] athr C:\Windows\system32\DRIVERS\athrx.sys
21:56:43.0780 0x1100 athr - ok
21:56:43.0858 0x1100 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:56:43.0904 0x1100 AudioEndpointBuilder - ok
21:56:43.0951 0x1100 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll
21:56:43.0967 0x1100 AudioSrv - ok
21:56:43.0998 0x1100 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll
21:56:44.0014 0x1100 AxInstSV - ok
21:56:44.0076 0x1100 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
21:56:44.0123 0x1100 b06bdrv - ok
21:56:44.0170 0x1100 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
21:56:44.0185 0x1100 b57nd60a - ok
21:56:44.0216 0x1100 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll
21:56:44.0216 0x1100 BDESVC - ok
21:56:44.0232 0x1100 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys
21:56:44.0232 0x1100 Beep - ok
21:56:44.0279 0x1100 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll
21:56:44.0310 0x1100 BFE - ok
21:56:44.0372 0x1100 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\system32\qmgr.dll
21:56:44.0404 0x1100 BITS - ok
21:56:44.0419 0x1100 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
21:56:44.0419 0x1100 blbdrive - ok
21:56:44.0450 0x1100 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
21:56:44.0450 0x1100 bowser - ok
21:56:44.0466 0x1100 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
21:56:44.0466 0x1100 BrFiltLo - ok
21:56:44.0482 0x1100 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
21:56:44.0482 0x1100 BrFiltUp - ok
21:56:44.0544 0x1100 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
21:56:44.0560 0x1100 BridgeMP - ok
21:56:44.0591 0x1100 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll
21:56:44.0606 0x1100 Browser - ok
21:56:44.0622 0x1100 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys
21:56:44.0638 0x1100 Brserid - ok
21:56:44.0653 0x1100 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
21:56:44.0653 0x1100 BrSerWdm - ok
21:56:44.0669 0x1100 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
21:56:44.0669 0x1100 BrUsbMdm - ok
21:56:44.0684 0x1100 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
21:56:44.0684 0x1100 BrUsbSer - ok
21:56:44.0716 0x1100 [ B3BCD755FA9A359D10208CC9F09847CC, 8DE11815A2C76051DFF0F68BC8CF38CADD7BCA3A75EED4CC03B38DEB9F658296 ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys
21:56:44.0731 0x1100 BTATH_A2DP - ok
21:56:44.0747 0x1100 [ 9BBBA9D6DBDEFC8A6542BC7A6EBAF710, EE6932310F97F9DC07F8EC66B3939BA73FF8B7C7B9D84CE9852C85B770681A60 ] btath_avdt C:\Windows\system32\drivers\btath_avdt.sys
21:56:44.0747 0x1100 btath_avdt - ok
21:56:44.0762 0x1100 [ D838DD1BCB328EFCFAD7A52DE9E3CAFD, A364C50240069D7606119E4FD3BC839F307947F680295C3A68AE1CE42B9A6108 ] BTATH_BUS C:\Windows\system32\drivers\btath_bus.sys
21:56:44.0778 0x1100 BTATH_BUS - ok
21:56:44.0794 0x1100 [ A441B800E04CF8443FAF519207563ABB, AAA865453E000B38D4DCCB435731F3843394FFA224F577B88DBBB31256F1BC39 ] BTATH_HCRP C:\Windows\system32\drivers\btath_hcrp.sys
21:56:44.0809 0x1100 BTATH_HCRP - ok
21:56:44.0825 0x1100 [ B16F8429A35BBA2A8EF9DB2E08675B97, B38952519A8AC2E0A211F685CB4AC453AA2885AA0DA39DBF92CE61FE649BC309 ] BTATH_LWFLT C:\Windows\system32\DRIVERS\btath_lwflt.sys
21:56:44.0825 0x1100 BTATH_LWFLT - ok
21:56:44.0856 0x1100 [ C24231C6BDFE21735930084A22089AAB, DF5104AC26A8D3E1C204D479F32204FE66B225DBA7EFDAC7149A02D0B5CEB714 ] BTATH_RCP C:\Windows\system32\drivers\btath_rcp.sys
21:56:44.0856 0x1100 BTATH_RCP - ok
21:56:44.0903 0x1100 [ 3632FA4C6B3CE9EC827690DEAC266D8C, 46D34968DA1BE0D793518506D4FCA094C3F15ACF530DB3660C7CD6ECCBF3C1BD ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
21:56:44.0918 0x1100 BtFilter - ok
21:56:44.0950 0x1100 [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
21:56:44.0950 0x1100 BthEnum - ok
21:56:44.0981 0x1100 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
21:56:44.0981 0x1100 BTHMODEM - ok
21:56:45.0012 0x1100 [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
21:56:45.0028 0x1100 BthPan - ok
21:56:45.0106 0x1100 [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
21:56:45.0152 0x1100 BTHPORT - ok
21:56:45.0184 0x1100 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll
21:56:45.0199 0x1100 bthserv - ok
21:56:45.0215 0x1100 [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
21:56:45.0230 0x1100 BTHUSB - ok
21:56:45.0230 0x1100 catchme - ok
21:56:45.0262 0x1100 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
21:56:45.0262 0x1100 cdfs - ok
21:56:45.0277 0x1100 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
21:56:45.0293 0x1100 cdrom - ok
21:56:45.0308 0x1100 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll
21:56:45.0308 0x1100 CertPropSvc - ok
21:56:45.0340 0x1100 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys
21:56:45.0340 0x1100 circlass - ok
21:56:45.0386 0x1100 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys
21:56:45.0418 0x1100 CLFS - ok
21:56:45.0480 0x1100 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:56:45.0480 0x1100 clr_optimization_v2.0.50727_32 - ok
21:56:45.0527 0x1100 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:56:45.0527 0x1100 clr_optimization_v2.0.50727_64 - ok
21:56:45.0589 0x1100 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:56:45.0589 0x1100 clr_optimization_v4.0.30319_32 - ok
21:56:45.0620 0x1100 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:56:45.0636 0x1100 clr_optimization_v4.0.30319_64 - ok
21:56:45.0652 0x1100 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
21:56:45.0652 0x1100 CmBatt - ok
21:56:45.0683 0x1100 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys
21:56:45.0683 0x1100 cmdide - ok
21:56:45.0730 0x1100 [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG C:\Windows\system32\Drivers\cng.sys
21:56:45.0761 0x1100 CNG - ok
21:56:45.0870 0x1100 [ 1F394DF3714ED4280047810790E6DF69, 92AD804E0F0559BF76EA8DAE038B4CDE4EBB4C4BD7A53913B714BF936B03B85E ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT64.sys
21:56:45.0979 0x1100 CnxtHdAudService - ok
21:56:46.0010 0x1100 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
21:56:46.0010 0x1100 Compbatt - ok
21:56:46.0042 0x1100 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
21:56:46.0042 0x1100 CompositeBus - ok
21:56:46.0042 0x1100 COMSysApp - ok
21:56:46.0073 0x1100 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
21:56:46.0073 0x1100 crcdisk - ok
21:56:46.0104 0x1100 [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc C:\Windows\system32\cryptsvc.dll
21:56:46.0135 0x1100 CryptSvc - ok
21:56:46.0244 0x1100 [ 75E3C4BB1ED032310EDCF5691A452B4B, E7FDF778CBD347017A84EB3919C530ED1EACB22277F3EA3B6FF3EA45D9FE8A6D ] DCDhcpService C:\Program Files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe
21:56:46.0260 0x1100 DCDhcpService - ok
21:56:46.0322 0x1100 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll
21:56:46.0354 0x1100 DcomLaunch - ok
21:56:46.0400 0x1100 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll
21:56:46.0432 0x1100 defragsvc - ok
21:56:46.0463 0x1100 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys
21:56:46.0463 0x1100 DfsC - ok
21:56:46.0510 0x1100 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll
21:56:46.0525 0x1100 Dhcp - ok
21:56:46.0712 0x1100 [ AA5319FA8602676B5D3A2B4A1355896D, 57532E16FF0DDE3D62B6B6DC35E2598DD453140E9277247965A1E835645E588A ] DiagTrack C:\Windows\system32\diagtrack.dll
21:56:46.0775 0x1100 DiagTrack - ok
21:56:46.0790 0x1100 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys
21:56:46.0790 0x1100 discache - ok
21:56:46.0822 0x1100 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys
21:56:46.0822 0x1100 Disk - ok
21:56:46.0853 0x1100 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll
21:56:46.0868 0x1100 Dnscache - ok
21:56:46.0900 0x1100 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll
21:56:46.0900 0x1100 dot3svc - ok
21:56:46.0931 0x1100 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll
21:56:46.0931 0x1100 DPS - ok
21:56:46.0962 0x1100 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
21:56:46.0962 0x1100 drmkaud - ok
21:56:47.0040 0x1100 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
21:56:47.0102 0x1100 DXGKrnl - ok
21:56:47.0118 0x1100 [ 50AD8FC1DC800FF36087994C8F7FDFF2, E3DA8DCE76599E0E1F0D80AA1483D6BECFE0F7242147D986A6AF3A4362FC2C80 ] e1yexpress C:\Windows\system32\DRIVERS\e1y60x64.sys
21:56:47.0134 0x1100 e1yexpress - ok
21:56:47.0165 0x1100 [ 372FF3A3FAD103A036EEDC57AEC0D411, 2785A064973E5A079E26514DA5A598EDC290B898E7D832C6D40C959BD2AB1208 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys
21:56:47.0180 0x1100 eamonm - ok
21:56:47.0212 0x1100 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll
21:56:47.0227 0x1100 EapHost - ok
21:56:47.0368 0x1100 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys
21:56:47.0508 0x1100 ebdrv - ok
21:56:47.0539 0x1100 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] EFS C:\Windows\System32\lsass.exe
21:56:47.0539 0x1100 EFS - ok
21:56:47.0570 0x1100 [ E19846EA7838C0310598BD36B2FA5C41, A52360D37C4EC3B2502A72F8ED68C39586D4DAB1B0A2CDAC7BDBE1F43924EA9F ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys
21:56:47.0570 0x1100 ehdrv - ok
21:56:47.0664 0x1100 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
21:56:47.0726 0x1100 ehRecvr - ok
21:56:47.0742 0x1100 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe
21:56:47.0742 0x1100 ehSched - ok
21:56:47.0914 0x1100 [ FB51E8E39E3FDB6757874653B743BE72, E775069A1651AD78B7E03A16F17C885169FD4DEBBA8DD475013B0BB2220498ED ] ekrn C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
21:56:47.0945 0x1100 ekrn - ok
21:56:47.0976 0x1100 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
21:56:48.0007 0x1100 elxstor - ok
21:56:48.0038 0x1100 [ E4A99E681B93133D6DA3D321CB074349, 4AE61A02518F9ABCC2CD2C9F86CCAB3985D7AD90DDA20C45D0E51AF19BCA4AA3 ] epfw C:\Windows\system32\DRIVERS\epfw.sys
21:56:48.0054 0x1100 epfw - ok
21:56:48.0085 0x1100 [ 1353EC78DDCDA3F9EB2765D6448B82F9, 804A517D4D99AC96BB3E10ACDDAA09AD4645F70511E69D448420062349D88D52 ] EpfwLWF C:\Windows\system32\DRIVERS\EpfwLWF.sys
21:56:48.0085 0x1100 EpfwLWF - ok
21:56:48.0101 0x1100 [ 659D2282E73DA3C923C654A1CA1F5530, FA843C2AA28981998121F8AF16498CBA24C1F456FFEC3BEAF05D2910C16D0A52 ] epfwwfp C:\Windows\system32\DRIVERS\epfwwfp.sys
21:56:48.0101 0x1100 epfwwfp - ok
21:56:48.0132 0x1100 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys
21:56:48.0132 0x1100 ErrDev - ok
21:56:48.0210 0x1100 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll
21:56:48.0241 0x1100 EventSystem - ok
21:56:48.0257 0x1100 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys
21:56:48.0272 0x1100 exfat - ok
21:56:48.0288 0x1100 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys
21:56:48.0304 0x1100 fastfat - ok
21:56:48.0350 0x1100 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe
21:56:48.0382 0x1100 Fax - ok
21:56:48.0397 0x1100 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys
21:56:48.0397 0x1100 fdc - ok
21:56:48.0413 0x1100 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll
21:56:48.0413 0x1100 fdPHost - ok
21:56:48.0428 0x1100 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll
21:56:48.0428 0x1100 FDResPub - ok
21:56:48.0444 0x1100 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
21:56:48.0444 0x1100 FileInfo - ok
21:56:48.0460 0x1100 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
21:56:48.0475 0x1100 Filetrace - ok
21:56:48.0491 0x1100 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
21:56:48.0506 0x1100 flpydisk - ok
21:56:48.0522 0x1100 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
21:56:48.0538 0x1100 FltMgr - ok
21:56:48.0600 0x1100 [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache C:\Windows\system32\FntCache.dll
21:56:48.0647 0x1100 FontCache - ok
21:56:48.0694 0x1100 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:56:48.0709 0x1100 FontCache3.0.0.0 - ok
21:56:48.0740 0x1100 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
21:56:48.0740 0x1100 FsDepends - ok
21:56:48.0772 0x1100 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
21:56:48.0787 0x1100 Fs_Rec - ok
21:56:48.0818 0x1100 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
21:56:48.0818 0x1100 fvevol - ok
21:56:48.0850 0x1100 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
21:56:48.0850 0x1100 gagp30kx - ok
21:56:48.0928 0x1100 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll
21:56:48.0959 0x1100 gpsvc - ok
21:56:48.0974 0x1100 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
21:56:48.0974 0x1100 hcw85cir - ok
21:56:49.0006 0x1100 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:56:49.0021 0x1100 HdAudAddService - ok
21:56:49.0037 0x1100 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
21:56:49.0052 0x1100 HDAudBus - ok
21:56:49.0068 0x1100 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
21:56:49.0068 0x1100 HidBatt - ok
21:56:49.0084 0x1100 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys
21:56:49.0084 0x1100 HidBth - ok
21:56:49.0099 0x1100 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys
21:56:49.0115 0x1100 HidIr - ok
21:56:49.0146 0x1100 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll
21:56:49.0146 0x1100 hidserv - ok
21:56:49.0162 0x1100 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
21:56:49.0177 0x1100 HidUsb - ok
21:56:49.0208 0x1100 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll
21:56:49.0208 0x1100 hkmsvc - ok
21:56:49.0240 0x1100 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:56:49.0240 0x1100 HomeGroupListener - ok
21:56:49.0286 0x1100 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:56:49.0302 0x1100 HomeGroupProvider - ok
21:56:49.0318 0x1100 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
21:56:49.0333 0x1100 HpSAMD - ok
21:56:49.0380 0x1100 [ F47CEC45FB85791D4AB237563AD0FA8F, 1035066D48BD179855BCA7F62EFA1B951E6E839D2E29E15A31844E18A126DD41 ] HTCAND64 C:\Windows\system32\Drivers\ANDROIDUSB.sys
21:56:49.0380 0x1100 HTCAND64 - ok
21:56:49.0458 0x1100 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys
21:56:49.0489 0x1100 HTTP - ok
21:56:49.0505 0x1100 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
21:56:49.0505 0x1100 hwpolicy - ok
21:56:49.0520 0x1100 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
21:56:49.0536 0x1100 i8042prt - ok
21:56:49.0552 0x1100 [ F7CE9BE72EDAC499B713ECA6DAE5D26F, AF158C8ADF0815C406435AB051C8D8DD0ECBDBA8644CB75D7611980D70662193 ] iaStor C:\Windows\system32\drivers\iaStor.sys
21:56:49.0567 0x1100 iaStor - ok
21:56:49.0645 0x1100 [ B25F192EA1F84A316EB7C19EFCCCF33D, 00BACE87CCA40722FF3AD7243439201CDCC23D0BA01E25F928BF63DA12816F8F ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:56:49.0645 0x1100 IAStorDataMgrSvc - ok
21:56:49.0676 0x1100 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
21:56:49.0723 0x1100 iaStorV - ok
21:56:49.0864 0x1100 [ 6F3909A3D40CC9F4B28E03B027F918D8, D1C07E1AE91BB20948BB09FAB2D4BC2811A50BD621A4FB46CC713ABF84930194 ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
21:56:50.0004 0x1100 IconMan_R - ok
21:56:50.0113 0x1100 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:56:50.0191 0x1100 idsvc - ok
21:56:50.0254 0x1100 IEEtwCollectorService - ok
21:56:50.0285 0x1100 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys
21:56:50.0300 0x1100 iirsp - ok
21:56:50.0378 0x1100 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll
21:56:50.0425 0x1100 IKEEXT - ok
21:56:50.0456 0x1100 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys
21:56:50.0456 0x1100 intelide - ok
21:56:50.0488 0x1100 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys
21:56:50.0488 0x1100 intelppm - ok
21:56:50.0503 0x1100 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll
21:56:50.0519 0x1100 IPBusEnum - ok
21:56:50.0534 0x1100 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:56:50.0534 0x1100 IpFilterDriver - ok
21:56:50.0612 0x1100 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
21:56:50.0628 0x1100 iphlpsvc - ok
21:56:50.0644 0x1100 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
21:56:50.0659 0x1100 IPMIDRV - ok
21:56:50.0659 0x1100 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys
21:56:50.0659 0x1100 IPNAT - ok
21:56:50.0675 0x1100 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys
21:56:50.0690 0x1100 IRENUM - ok
21:56:50.0706 0x1100 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys
21:56:50.0706 0x1100 isapnp - ok
21:56:50.0753 0x1100 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
21:56:50.0753 0x1100 iScsiPrt - ok
21:56:50.0784 0x1100 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
21:56:50.0784 0x1100 kbdclass - ok
21:56:50.0800 0x1100 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
21:56:50.0800 0x1100 kbdhid - ok
21:56:50.0800 0x1100 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] KeyIso C:\Windows\system32\lsass.exe
21:56:50.0800 0x1100 KeyIso - ok
21:56:50.0846 0x1100 [ BF69D973523D539A35807946C6DA7E16, 38F2C59B0857131961DBEA48C4A5DFA9BE7B564941935086B8DC8DBEF896F3EC ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
21:56:50.0862 0x1100 KSecDD - ok
21:56:50.0878 0x1100 [ 272C27711C8AA6E7815EE33F8ACA9C66, 0A5A10A7A3E87DB92E06395A6676B94FE8B7AD6704864075D443CDC9BABDB4DF ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
21:56:50.0878 0x1100 KSecPkg - ok
21:56:50.0909 0x1100 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
21:56:50.0909 0x1100 ksthunk - ok
21:56:50.0956 0x1100 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll
21:56:50.0987 0x1100 KtmRm - ok
21:56:51.0018 0x1100 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll
21:56:51.0018 0x1100 LanmanServer - ok
21:56:51.0049 0x1100 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:56:51.0049 0x1100 LanmanWorkstation - ok
21:56:51.0080 0x1100 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
21:56:51.0080 0x1100 lltdio - ok
21:56:51.0096 0x1100 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll
21:56:51.0112 0x1100 lltdsvc - ok
21:56:51.0127 0x1100 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll
21:56:51.0127 0x1100 lmhosts - ok
21:56:51.0205 0x1100 [ 98B16E756243BEA9410E32025B19C06F, C4F8663FF4C2F1123CC92D88004090AD06ED12FCD07706AE168333A33B269A53 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
21:56:51.0236 0x1100 LMS - ok
21:56:51.0283 0x1100 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
21:56:51.0283 0x1100 LSI_FC - ok
21:56:51.0299 0x1100 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
21:56:51.0314 0x1100 LSI_SAS - ok
21:56:51.0330 0x1100 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
21:56:51.0330 0x1100 LSI_SAS2 - ok
21:56:51.0346 0x1100 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
21:56:51.0361 0x1100 LSI_SCSI - ok
21:56:51.0377 0x1100 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys
21:56:51.0377 0x1100 luafv - ok
21:56:51.0455 0x1100 [ 1E9E32AEC3E1EB1B31B8169F33168B56, 39114585E1FDBBA31E1F781C6A627281907183F94626EB347B08D1F78992ED2A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
21:56:51.0455 0x1100 MBAMProtector - ok
21:56:51.0548 0x1100 [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
21:56:51.0626 0x1100 MBAMService - ok
21:56:51.0658 0x1100 [ F49FB3C88E263AE9A246593B0BB29294, FB53D6FA4A98B98334DCFF81E40712265256D31A9E9FF36022887BABD50F39EB ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
21:56:51.0658 0x1100 MBAMWebAccessControl - ok
21:56:51.0736 0x1100 [ 8A7F33C3B8D9FCAA69803E3DE05BE216, D8504A752D3F74A5BEF7B250AD00B481591DC854C9A019C6A87C606C165B27B6 ] McComponentHostServiceSony C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe
21:56:51.0767 0x1100 McComponentHostServiceSony - ok
21:56:51.0782 0x1100 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
21:56:51.0798 0x1100 Mcx2Svc - ok
21:56:51.0829 0x1100 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys
21:56:51.0829 0x1100 megasas - ok
21:56:51.0876 0x1100 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
21:56:51.0907 0x1100 MegaSR - ok
21:56:51.0938 0x1100 [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64 C:\Windows\system32\drivers\HECIx64.sys
21:56:51.0938 0x1100 MEIx64 - ok
21:56:51.0954 0x1100 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll
21:56:51.0954 0x1100 MMCSS - ok
21:56:51.0970 0x1100 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys
21:56:51.0985 0x1100 Modem - ok
21:56:51.0985 0x1100 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
21:56:51.0985 0x1100 monitor - ok
21:56:52.0001 0x1100 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
21:56:52.0001 0x1100 mouclass - ok
21:56:52.0016 0x1100 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
21:56:52.0016 0x1100 mouhid - ok
21:56:52.0048 0x1100 [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
21:56:52.0063 0x1100 mountmgr - ok
21:56:52.0141 0x1100 [ 9FC679D10A7377BB04ECC3D0E2E26B53, 24ACD4EC1618A052C29E4463138B28F62C8B78D442DB82F4925E64FC5849A096 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
21:56:52.0141 0x1100 MozillaMaintenance - ok
21:56:52.0188 0x1100 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys
21:56:52.0188 0x1100 mpio - ok
21:56:52.0219 0x1100 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
21:56:52.0219 0x1100 mpsdrv - ok
21:56:52.0282 0x1100 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll
21:56:52.0313 0x1100 MpsSvc - ok
21:56:52.0360 0x1100 [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
21:56:52.0360 0x1100 MRxDAV - ok
21:56:52.0406 0x1100 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
21:56:52.0422 0x1100 mrxsmb - ok
21:56:52.0469 0x1100 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:56:52.0500 0x1100 mrxsmb10 - ok
21:56:52.0547 0x1100 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:56:52.0547 0x1100 mrxsmb20 - ok
21:56:52.0578 0x1100 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys
21:56:52.0578 0x1100 msahci - ok
21:56:52.0625 0x1100 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys
21:56:52.0625 0x1100 msdsm - ok
21:56:52.0656 0x1100 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe
21:56:52.0656 0x1100 MSDTC - ok
21:56:52.0672 0x1100 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys
21:56:52.0687 0x1100 Msfs - ok
21:56:52.0687 0x1100 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
21:56:52.0703 0x1100 mshidkmdf - ok
21:56:52.0718 0x1100 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
21:56:52.0718 0x1100 msisadrv - ok
21:56:52.0750 0x1100 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
21:56:52.0750 0x1100 MSiSCSI - ok
21:56:52.0765 0x1100 msiserver - ok
21:56:52.0781 0x1100 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
21:56:52.0781 0x1100 MSKSSRV - ok
21:56:52.0796 0x1100 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
21:56:52.0796 0x1100 MSPCLOCK - ok
21:56:52.0812 0x1100 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
21:56:52.0828 0x1100 MSPQM - ok
21:56:52.0843 0x1100 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
21:56:52.0874 0x1100 MsRPC - ok
21:56:52.0890 0x1100 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
21:56:52.0890 0x1100 mssmbios - ok
21:56:52.0921 0x1100 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
21:56:52.0921 0x1100 MSTEE - ok
21:56:52.0937 0x1100 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
21:56:52.0937 0x1100 MTConfig - ok
21:56:52.0968 0x1100 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys
21:56:52.0968 0x1100 Mup - ok
21:56:53.0046 0x1100 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll
21:56:53.0077 0x1100 napagent - ok
21:56:53.0108 0x1100 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
21:56:53.0124 0x1100 NativeWifiP - ok
21:56:53.0218 0x1100 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys
21:56:53.0311 0x1100 NDIS - ok
21:56:53.0342 0x1100 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
21:56:53.0342 0x1100 NdisCap - ok
21:56:53.0374 0x1100 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
21:56:53.0374 0x1100 NdisTapi - ok
21:56:53.0389 0x1100 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
21:56:53.0389 0x1100 Ndisuio - ok
21:56:53.0420 0x1100 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
21:56:53.0436 0x1100 NdisWan - ok
21:56:53.0452 0x1100 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
21:56:53.0452 0x1100 NDProxy - ok
21:56:53.0467 0x1100 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
21:56:53.0467 0x1100 NetBIOS - ok
21:56:53.0498 0x1100 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
21:56:53.0514 0x1100 NetBT - ok
21:56:53.0530 0x1100 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] Netlogon C:\Windows\system32\lsass.exe
21:56:53.0530 0x1100 Netlogon - ok
21:56:53.0561 0x1100 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll
21:56:53.0576 0x1100 Netman - ok
21:56:53.0639 0x1100 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:56:53.0654 0x1100 NetMsmqActivator - ok
21:56:53.0701 0x1100 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:56:53.0701 0x1100 NetPipeActivator - ok
21:56:53.0795 0x1100 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll
21:56:53.0810 0x1100 netprofm - ok
21:56:53.0842 0x1100 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:56:53.0842 0x1100 NetTcpActivator - ok
21:56:53.0873 0x1100 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:56:53.0873 0x1100 NetTcpPortSharing - ok
21:56:53.0904 0x1100 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
21:56:53.0904 0x1100 nfrd960 - ok
21:56:53.0935 0x1100 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll
21:56:53.0966 0x1100 NlaSvc - ok
21:56:53.0982 0x1100 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys
21:56:53.0998 0x1100 Npfs - ok
21:56:54.0013 0x1100 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll
21:56:54.0013 0x1100 nsi - ok
21:56:54.0029 0x1100 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
21:56:54.0029 0x1100 nsiproxy - ok
21:56:54.0122 0x1100 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
21:56:54.0200 0x1100 Ntfs - ok
21:56:54.0216 0x1100 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys
21:56:54.0216 0x1100 Null - ok
21:56:54.0247 0x1100 [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
21:56:54.0263 0x1100 NVHDA - ok
21:56:54.0731 0x1100 [ 2232AE1BB51A96A7381A2CA17DF12E24, 4813E27BC14EB3CBD55AF89B098EA5C8DA4C7FF0B6CCB7AACFC43BC0E578C988 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
21:56:55.0183 0x1100 nvlddmkm - ok
21:56:55.0324 0x1100 [ 45D6780D0525D7BC29E2E3605CA73C18, C8BBE8BE9824CD1D3C4314FE370FA03BD6000187B4FC4FC935F8342E1A02FA7E ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
21:56:55.0386 0x1100 NvNetworkService - ok
21:56:55.0433 0x1100 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys
21:56:55.0433 0x1100 nvraid - ok
21:56:55.0480 0x1100 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys
21:56:55.0495 0x1100 nvstor - ok
21:56:55.0620 0x1100 [ A0D870DCE152EE5B92A41AD927201D19, 67FB025CB380D933BF0FDD4AFE9BE4E3C1D69A59865E02A96533BBE9EC260D71 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
21:56:55.0636 0x1100 NvStreamKms - ok
21:56:56.0353 0x1100 [ E5597D09E5239C0F908948DB7057AC26, A6045D4D9D2F8007B0F75DAAABB2AD9FEB4A898E33A51ECE9A9D788D8E8F84A4 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
21:56:57.0008 0x1100 NvStreamSvc - ok
21:56:57.0211 0x1100 [ 2C8DD5A34A81715865D66D7AF39362A6, 62F9D873127921EE2EAA80B73E8994C4BF6DA7EEDACAEA030B8D58E086FD3850 ] nvsvc C:\Windows\system32\nvvsvc.exe
21:56:57.0258 0x1100 nvsvc - ok
21:56:57.0320 0x1100 [ 75034A4D7C02327D150B617571D4196A, 8E7DAFEC4307E883D52BD0B5F0732E26E019C953770B52ACBBAD3074A66393CB ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
21:56:57.0320 0x1100 nvvad_WaveExtensible - ok
21:56:57.0367 0x1100 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
21:56:57.0367 0x1100 nv_agp - ok
21:56:57.0383 0x1100 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
21:56:57.0398 0x1100 ohci1394 - ok
21:56:57.0430 0x1100 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
21:56:57.0445 0x1100 p2pimsvc - ok
21:56:57.0461 0x1100 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll
21:56:57.0492 0x1100 p2psvc - ok
21:56:57.0523 0x1100 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys
21:56:57.0523 0x1100 Parport - ok
21:56:57.0554 0x1100 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys
21:56:57.0554 0x1100 partmgr - ok
21:56:57.0586 0x1100 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll
21:56:57.0601 0x1100 PcaSvc - ok
21:56:57.0648 0x1100 pccsmcfd - ok
21:56:57.0664 0x1100 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys
21:56:57.0679 0x1100 pci - ok
21:56:57.0710 0x1100 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys
21:56:57.0710 0x1100 pciide - ok
21:56:57.0726 0x1100 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
21:56:57.0742 0x1100 pcmcia - ok
21:56:57.0757 0x1100 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys
21:56:57.0757 0x1100 pcw - ok
21:56:57.0804 0x1100 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys
21:56:57.0835 0x1100 PEAUTH - ok
21:56:57.0929 0x1100 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe
21:56:57.0944 0x1100 PerfHost - ok
21:56:58.0085 0x1100 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll
21:56:58.0147 0x1100 pla - ok
21:56:58.0194 0x1100 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
21:56:58.0210 0x1100 PlugPlay - ok
21:56:58.0288 0x1100 [ 63694C307273062A2167AE4CE80730EF, 788E762D02A8BE9802143361A5768364A994B20E769A9733FA5827F526432893 ] PMBDeviceInfoProvider dále postupovat pro odstranění.

Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#32 Příspěvek od Pitrisek »

Pokračující log TDSSKiller:

C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
21:56:58.0319 0x1100 PMBDeviceInfoProvider - ok
21:56:58.0350 0x1100 PnkBstrA - ok
21:56:58.0366 0x1100 PnkBstrB - ok
21:56:58.0381 0x1100 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
21:56:58.0397 0x1100 PNRPAutoReg - ok
21:56:58.0412 0x1100 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
21:56:58.0428 0x1100 PNRPsvc - ok
21:56:58.0490 0x1100 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
21:56:58.0522 0x1100 PolicyAgent - ok
21:56:58.0553 0x1100 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll
21:56:58.0568 0x1100 Power - ok
21:56:58.0584 0x1100 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
21:56:58.0600 0x1100 PptpMiniport - ok
21:56:58.0615 0x1100 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys
21:56:58.0615 0x1100 Processor - ok
21:56:58.0662 0x1100 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll
21:56:58.0662 0x1100 ProfSvc - ok
21:56:58.0678 0x1100 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] ProtectedStorage C:\Windows\system32\lsass.exe
21:56:58.0678 0x1100 ProtectedStorage - ok
21:56:58.0709 0x1100 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
21:56:58.0709 0x1100 Psched - ok
21:56:58.0818 0x1100 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
21:56:58.0880 0x1100 ql2300 - ok
21:56:58.0912 0x1100 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
21:56:58.0912 0x1100 ql40xx - ok
21:56:58.0974 0x1100 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll
21:56:58.0990 0x1100 QWAVE - ok
21:56:59.0005 0x1100 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
21:56:59.0005 0x1100 QWAVEdrv - ok
21:56:59.0021 0x1100 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
21:56:59.0036 0x1100 RasAcd - ok
21:56:59.0052 0x1100 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
21:56:59.0052 0x1100 RasAgileVpn - ok
21:56:59.0083 0x1100 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll
21:56:59.0083 0x1100 RasAuto - ok
21:56:59.0099 0x1100 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
21:56:59.0114 0x1100 Rasl2tp - ok
21:56:59.0146 0x1100 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll
21:56:59.0161 0x1100 RasMan - ok
21:56:59.0192 0x1100 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
21:56:59.0192 0x1100 RasPppoe - ok
21:56:59.0224 0x1100 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
21:56:59.0224 0x1100 RasSstp - ok
21:56:59.0255 0x1100 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
21:56:59.0270 0x1100 rdbss - ok
21:56:59.0302 0x1100 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
21:56:59.0302 0x1100 rdpbus - ok
21:56:59.0333 0x1100 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
21:56:59.0333 0x1100 RDPCDD - ok
21:56:59.0348 0x1100 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
21:56:59.0348 0x1100 RDPENCDD - ok
21:56:59.0364 0x1100 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
21:56:59.0364 0x1100 RDPREFMP - ok
21:56:59.0442 0x1100 [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
21:56:59.0442 0x1100 RdpVideoMiniport - ok
21:56:59.0489 0x1100 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
21:56:59.0489 0x1100 RDPWD - ok
21:56:59.0520 0x1100 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
21:56:59.0536 0x1100 rdyboost - ok
21:56:59.0567 0x1100 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll
21:56:59.0567 0x1100 RemoteAccess - ok
21:56:59.0614 0x1100 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll
21:56:59.0614 0x1100 RemoteRegistry - ok
21:56:59.0660 0x1100 [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
21:56:59.0660 0x1100 RFCOMM - ok
21:56:59.0692 0x1100 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
21:56:59.0692 0x1100 RpcEptMapper - ok
21:56:59.0723 0x1100 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe
21:56:59.0723 0x1100 RpcLocator - ok
21:56:59.0770 0x1100 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll
21:56:59.0785 0x1100 RpcSs - ok
21:56:59.0832 0x1100 [ 546D7F426776090B90EF5F195B6AE662, E67598E1CA5F98184DD7380E7AFD65C18C99EDC3326909EBFF2A61F95C3A027D ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys
21:56:59.0848 0x1100 RSPCIESTOR - ok
21:56:59.0879 0x1100 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
21:56:59.0894 0x1100 rspndr - ok
21:56:59.0941 0x1100 [ EA5532868BA76923D75BCB2A1448D810, C1489714C9BC95BB76134E6B8F28C5A3D044E9B2857F01BFEEEE7C8A25C74E7D ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
21:56:59.0972 0x1100 RTL8167 - ok
21:56:59.0988 0x1100 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] SamSs C:\Windows\system32\lsass.exe
21:56:59.0988 0x1100 SamSs - ok
21:57:00.0004 0x1100 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
21:57:00.0004 0x1100 sbp2port - ok
21:57:00.0050 0x1100 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll
21:57:00.0050 0x1100 SCardSvr - ok
21:57:00.0066 0x1100 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
21:57:00.0082 0x1100 scfilter - ok
21:57:00.0128 0x1100 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll
21:57:00.0175 0x1100 Schedule - ok
21:57:00.0191 0x1100 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll
21:57:00.0206 0x1100 SCPolicySvc - ok
21:57:00.0222 0x1100 [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
21:57:00.0222 0x1100 sdbus - ok
21:57:00.0253 0x1100 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll
21:57:00.0269 0x1100 SDRSVC - ok
21:57:00.0284 0x1100 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys
21:57:00.0300 0x1100 secdrv - ok
21:57:00.0316 0x1100 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll
21:57:00.0316 0x1100 seclogon - ok
21:57:00.0347 0x1100 [ 1ED7A8574A28357097A5CB4063C96B00, 4E248CA66B7DE930AEC501A85F507AB813FC3CEBCBA347DFF3B05CE6CB8E496B ] semav6thermal64ro C:\Windows\system32\drivers\semav6thermal64ro.sys
21:57:00.0347 0x1100 semav6thermal64ro - ok
21:57:00.0362 0x1100 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\system32\sens.dll
21:57:00.0378 0x1100 SENS - ok
21:57:00.0378 0x1100 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll
21:57:00.0394 0x1100 SensrSvc - ok
21:57:00.0409 0x1100 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys
21:57:00.0409 0x1100 Serenum - ok
21:57:00.0440 0x1100 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys
21:57:00.0440 0x1100 Serial - ok
21:57:00.0472 0x1100 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys
21:57:00.0472 0x1100 sermouse - ok
21:57:00.0518 0x1100 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll
21:57:00.0518 0x1100 SessionEnv - ok
21:57:00.0565 0x1100 [ 286D3889E6AB5589646FF8A63CB928AE, 98D9D34521328F4F0B0B7C2CAB97BA0EC998B9F3F996B5ED08E17292F1CD9452 ] SFEP C:\Windows\system32\drivers\SFEP.sys
21:57:00.0565 0x1100 SFEP - ok
21:57:00.0581 0x1100 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
21:57:00.0581 0x1100 sffdisk - ok
21:57:00.0612 0x1100 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
21:57:00.0612 0x1100 sffp_mmc - ok
21:57:00.0643 0x1100 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
21:57:00.0643 0x1100 sffp_sd - ok
21:57:00.0674 0x1100 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
21:57:00.0674 0x1100 sfloppy - ok
21:57:00.0721 0x1100 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll
21:57:00.0752 0x1100 SharedAccess - ok
21:57:00.0799 0x1100 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:57:00.0815 0x1100 ShellHWDetection - ok
21:57:00.0846 0x1100 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
21:57:00.0846 0x1100 SiSRaid2 - ok
21:57:00.0877 0x1100 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
21:57:00.0877 0x1100 SiSRaid4 - ok
21:57:00.0955 0x1100 [ F6EF225A23D336CA30001E5007644C24, B0A4B1256C1074F1B4F73E3BBA16FD4683D6EEA583DEEF8E11EFD29BA7541F2A ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
21:57:00.0986 0x1100 SkypeUpdate - ok
21:57:01.0018 0x1100 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys
21:57:01.0018 0x1100 Smb - ok
21:57:01.0064 0x1100 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
21:57:01.0064 0x1100 SNMPTRAP - ok
21:57:01.0174 0x1100 [ DDF2EC98AF6FC70608A4F9CE4DB52758, A3F18822C9D0EE508CCAA5323937D631950320D9642C46FD93DB764A06A78F0D ] SOHCImp C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
21:57:01.0189 0x1100 SOHCImp - ok
21:57:01.0205 0x1100 [ 5FA03F5EA6EFEF6D17B4A1A48C40A23C, E99AD063DA8E89ECD2993D1B1AAB346A3EB4E48D687E7378C03037DD00600BB8 ] SOHDs C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
21:57:01.0221 0x1100 SOHDs - ok
21:57:01.0314 0x1100 [ 65E5659E9C2A0762D05657C0E22A7CA2, A6EE72878CFA901A94485C7BEC7675702ED207DB54F5A8ED70835B6A8A8F5754 ] SpfService C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
21:57:01.0345 0x1100 SpfService - ok
21:57:01.0377 0x1100 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys
21:57:01.0392 0x1100 spldr - ok
21:57:01.0439 0x1100 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe
21:57:01.0486 0x1100 Spooler - ok
21:57:01.0657 0x1100 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe
21:57:01.0813 0x1100 sppsvc - ok
21:57:01.0845 0x1100 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll
21:57:01.0845 0x1100 sppuinotify - ok
21:57:01.0907 0x1100 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys
21:57:01.0938 0x1100 srv - ok
21:57:01.0969 0x1100 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
21:57:01.0985 0x1100 srv2 - ok
21:57:02.0001 0x1100 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
21:57:02.0001 0x1100 srvnet - ok
21:57:02.0047 0x1100 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
21:57:02.0079 0x1100 SSDPSRV - ok
21:57:02.0094 0x1100 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll
21:57:02.0094 0x1100 SstpSvc - ok
21:57:02.0141 0x1100 [ D2230317777033CD0456990BFC4994E5, 0F2F559593EAD7AB4596E67E9AE56E5ABF5C945201366CFC972357C22A4F776A ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
21:57:02.0172 0x1100 Stereo Service - ok
21:57:02.0188 0x1100 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys
21:57:02.0188 0x1100 stexstor - ok
21:57:02.0235 0x1100 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll
21:57:02.0266 0x1100 stisvc - ok
21:57:02.0297 0x1100 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys
21:57:02.0297 0x1100 swenum - ok
21:57:02.0344 0x1100 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll
21:57:02.0375 0x1100 swprv - ok
21:57:02.0484 0x1100 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll
21:57:02.0562 0x1100 SysMain - ok
21:57:02.0578 0x1100 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:57:02.0578 0x1100 TabletInputService - ok
21:57:02.0625 0x1100 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll
21:57:02.0656 0x1100 TapiSrv - ok
21:57:02.0671 0x1100 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll
21:57:02.0687 0x1100 TBS - ok
21:57:02.0781 0x1100 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
21:57:02.0874 0x1100 Tcpip - ok
21:57:02.0983 0x1100 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
21:57:03.0030 0x1100 TCPIP6 - ok
21:57:03.0061 0x1100 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
21:57:03.0061 0x1100 tcpipreg - ok
21:57:03.0093 0x1100 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
21:57:03.0093 0x1100 TDPIPE - ok
21:57:03.0108 0x1100 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
21:57:03.0124 0x1100 TDTCP - ok
21:57:03.0139 0x1100 [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\Windows\system32\DRIVERS\tdx.sys
21:57:03.0155 0x1100 tdx - ok
21:57:03.0171 0x1100 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys
21:57:03.0171 0x1100 TermDD - ok
21:57:03.0233 0x1100 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll
21:57:03.0264 0x1100 TermService - ok
21:57:03.0311 0x1100 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll
21:57:03.0311 0x1100 Themes - ok
21:57:03.0327 0x1100 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll
21:57:03.0342 0x1100 THREADORDER - ok
21:57:03.0358 0x1100 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll
21:57:03.0358 0x1100 TrkWks - ok
21:57:03.0405 0x1100 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:57:03.0405 0x1100 TrustedInstaller - ok
21:57:03.0436 0x1100 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
21:57:03.0436 0x1100 tssecsrv - ok
21:57:03.0467 0x1100 [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
21:57:03.0467 0x1100 TsUsbFlt - ok
21:57:03.0498 0x1100 [ AD64450A4ABE076F5CB34CC08EEACB07, B5C386635441A19178E7FEEE299BA430C8D72F9110866C13A216B12A1080AD12 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
21:57:03.0498 0x1100 TsUsbGD - ok
21:57:03.0529 0x1100 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
21:57:03.0529 0x1100 tunnel - ok
21:57:03.0545 0x1100 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
21:57:03.0545 0x1100 uagp35 - ok
21:57:03.0607 0x1100 [ 1FE69F3C1CA1CF4B7EC7E2E9090FFFDC, 30BD61BA46955BD6A48EC78538FAAB46026DD048347F8280352335EB0ECE16AD ] uCamMonitor C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
21:57:03.0623 0x1100 uCamMonitor - ok
21:57:03.0654 0x1100 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
21:57:03.0654 0x1100 udfs - ok
21:57:03.0717 0x1100 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe
21:57:03.0732 0x1100 UI0Detect - ok
21:57:03.0763 0x1100 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
21:57:03.0763 0x1100 uliagpkx - ok
21:57:03.0810 0x1100 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys
21:57:03.0810 0x1100 umbus - ok
21:57:03.0841 0x1100 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys
21:57:03.0841 0x1100 UmPass - ok
21:57:04.0029 0x1100 [ 7A78ED1088890114DFDE2C4AB038D6B6, B52357594A90A8BCF5F96FA630F52BB1274A2FE814AF0270D21C892871D076FC ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
21:57:04.0169 0x1100 UNS - ok
21:57:04.0216 0x1100 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll
21:57:04.0231 0x1100 upnphost - ok
21:57:04.0263 0x1100 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
21:57:04.0263 0x1100 usbccgp - ok
21:57:04.0294 0x1100 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys
21:57:04.0309 0x1100 usbcir - ok
21:57:04.0325 0x1100 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\drivers\usbehci.sys
21:57:04.0341 0x1100 usbehci - ok
21:57:04.0372 0x1100 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
21:57:04.0403 0x1100 usbhub - ok
21:57:04.0434 0x1100 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys
21:57:04.0434 0x1100 usbohci - ok
21:57:04.0465 0x1100 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys
21:57:04.0465 0x1100 usbprint - ok
21:57:04.0528 0x1100 [ B57B4F0BEC4270A281B9F8537EB2FA04, 554273482EE85F010DC62E412C9933E65BD63AA09911BD25D86F86D2618EF382 ] usbser C:\Windows\system32\drivers\usbser.sys
21:57:04.0528 0x1100 usbser - ok
21:57:04.0559 0x1100 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:57:04.0559 0x1100 USBSTOR - ok
21:57:04.0606 0x1100 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
21:57:04.0606 0x1100 usbuhci - ok
21:57:04.0621 0x1100 [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
21:57:04.0637 0x1100 usbvideo - ok
21:57:04.0731 0x1100 [ 34349E7B488FA61B639117F6BF1EBF99, A7A7E60511F7D6370473D41867F5323695308CC27D3EEB0286687D3A9E0084E9 ] USER_ESRV_SVC C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
21:57:04.0746 0x1100 USER_ESRV_SVC - ok
21:57:04.0777 0x1100 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll
21:57:04.0777 0x1100 UxSms - ok
21:57:04.0840 0x1100 [ DCB1F83AD167D16D263CE57C94E9EEDF, 2389268A1F83F0D354111553FB5F48E77A8FE4C0A1C22376A313A961252ED259 ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
21:57:04.0840 0x1100 VAIO Event Service - ok
21:57:04.0871 0x1100 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] VaultSvc C:\Windows\system32\lsass.exe
21:57:04.0871 0x1100 VaultSvc - ok
21:57:04.0980 0x1100 [ D00058C1FFF3F3DE990444A5734E9639, 450192C5F458888D71328994E29A6CB0E04F387BF63D49E7EABA1E1AECD680F9 ] VCFw C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
21:57:05.0027 0x1100 VCFw - ok
21:57:05.0105 0x1100 [ F19275655B42086C884ABCDAE2C659AE, D5D36DFF2D316C390E0336B51EE9C4B23705A52A3BBCCB13CC0B95FCF5761344 ] VcmIAlzMgr C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
21:57:05.0136 0x1100 VcmIAlzMgr - ok
21:57:05.0199 0x1100 [ 2F06D134554BA84FE253DBC481DCFE6D, A88780610A1B4FAFF1818CF3D86AC83B27DDDCD9CDB9F1A38C5BBFEE5632CF5E ] VcmINSMgr C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
21:57:05.0230 0x1100 VcmINSMgr - ok
21:57:05.0261 0x1100 [ 32A3735F6874B7783C6209ED5CA36D9D, B6DA3D749A000D99B6F0BF475C47AC0867595B634CC6502C8758B241759F531C ] VcmXmlIfHelper C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
21:57:05.0277 0x1100 VcmXmlIfHelper - ok
21:57:05.0308 0x1100 [ 0D53D30C8473EEDC1757FDA3C511103B, 54E1AE2CCD71AD446F373DD8E19382D81CA2BC9AEEE326CF5BF020AD3C5F58AB ] VCService C:\Program Files\Sony\VAIO Care\VCService.exe
21:57:05.0308 0x1100 VCService - ok
21:57:05.0323 0x1100 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
21:57:05.0339 0x1100 vdrvroot - ok
21:57:05.0386 0x1100 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe
21:57:05.0417 0x1100 vds - ok
21:57:05.0448 0x1100 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
21:57:05.0448 0x1100 vga - ok
21:57:05.0464 0x1100 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys
21:57:05.0464 0x1100 VgaSave - ok
21:57:05.0495 0x1100 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
21:57:05.0511 0x1100 vhdmp - ok
21:57:05.0542 0x1100 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys
21:57:05.0542 0x1100 viaide - ok
21:57:05.0557 0x1100 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys
21:57:05.0557 0x1100 volmgr - ok
21:57:05.0589 0x1100 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
21:57:05.0620 0x1100 volmgrx - ok
21:57:05.0651 0x1100 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys
21:57:05.0667 0x1100 volsnap - ok
21:57:05.0698 0x1100 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
21:57:05.0698 0x1100 vsmraid - ok
21:57:05.0823 0x1100 [ 86958A24639B8E3A84F14307CE35650B, C16CC385239B441FD3B363EB17D0EA5C792F274347EA028758103E7DC85B9318 ] VSNService C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
21:57:05.0885 0x1100 VSNService - ok
21:57:05.0963 0x1100 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe
21:57:06.0072 0x1100 VSS - ok
21:57:06.0228 0x1100 [ C1FAE2E81955DCCD79034A23EC4F3F37, 61B6477C6068B5542D3EE9C6336FBD7589F1CFFD3E850473A539619033533286 ] VUAgent C:\Program Files\Sony\VAIO Update\VUAgent.exe
21:57:06.0259 0x1100 VUAgent - ok
21:57:06.0291 0x1100 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
21:57:06.0291 0x1100 vwifibus - ok
21:57:06.0306 0x1100 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
21:57:06.0322 0x1100 vwififlt - ok
21:57:06.0337 0x1100 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
21:57:06.0337 0x1100 vwifimp - ok
21:57:06.0384 0x1100 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll
21:57:06.0400 0x1100 W32Time - ok
21:57:06.0415 0x1100 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
21:57:06.0431 0x1100 WacomPen - ok
21:57:06.0447 0x1100 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
21:57:06.0447 0x1100 WANARP - ok
21:57:06.0462 0x1100 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
21:57:06.0462 0x1100 Wanarpv6 - ok
21:57:06.0556 0x1100 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
21:57:06.0649 0x1100 WatAdminSvc - ok
21:57:06.0759 0x1100 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe
21:57:06.0852 0x1100 wbengine - ok
21:57:06.0883 0x1100 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
21:57:06.0883 0x1100 WbioSrvc - ok
21:57:06.0915 0x1100 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll
21:57:06.0946 0x1100 wcncsvc - ok
21:57:06.0961 0x1100 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:57:06.0961 0x1100 WcsPlugInService - ok
21:57:06.0993 0x1100 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys
21:57:06.0993 0x1100 Wd - ok
21:57:07.0055 0x1100 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
21:57:07.0086 0x1100 Wdf01000 - ok
21:57:07.0102 0x1100 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll
21:57:07.0117 0x1100 WdiServiceHost - ok
21:57:07.0117 0x1100 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll
21:57:07.0133 0x1100 WdiSystemHost - ok
21:57:07.0180 0x1100 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll
21:57:07.0227 0x1100 WebClient - ok
21:57:07.0258 0x1100 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll
21:57:07.0289 0x1100 Wecsvc - ok
21:57:07.0305 0x1100 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll
21:57:07.0320 0x1100 wercplsupport - ok
21:57:07.0336 0x1100 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll
21:57:07.0336 0x1100 WerSvc - ok
21:57:07.0367 0x1100 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
21:57:07.0367 0x1100 WfpLwf - ok
21:57:07.0383 0x1100 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
21:57:07.0398 0x1100 WIMMount - ok
21:57:07.0429 0x1100 WinDefend - ok
21:57:07.0445 0x1100 WinHttpAutoProxySvc - ok
21:57:07.0523 0x1100 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
21:57:07.0554 0x1100 Winmgmt - ok
21:57:07.0679 0x1100 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll
21:57:07.0835 0x1100 WinRM - ok
21:57:07.0913 0x1100 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\drivers\WinUsb.sys
21:57:07.0913 0x1100 WinUsb - ok
21:57:07.0975 0x1100 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll
21:57:08.0022 0x1100 Wlansvc - ok
21:57:08.0069 0x1100 [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
21:57:08.0069 0x1100 wlcrasvc - ok
21:57:08.0225 0x1100 [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:57:08.0272 0x1100 wlidsvc - ok
21:57:08.0303 0x1100 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
21:57:08.0303 0x1100 WmiAcpi - ok
21:57:08.0350 0x1100 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
21:57:08.0350 0x1100 wmiApSrv - ok
21:57:08.0381 0x1100 WMPNetworkSvc - ok
21:57:08.0412 0x1100 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll
21:57:08.0412 0x1100 WPCSvc - ok
21:57:08.0428 0x1100 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
21:57:08.0428 0x1100 WPDBusEnum - ok
21:57:08.0459 0x1100 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
21:57:08.0459 0x1100 ws2ifsl - ok
21:57:08.0490 0x1100 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll
21:57:08.0506 0x1100 wscsvc - ok
21:57:08.0506 0x1100 WSearch - ok
21:57:08.0646 0x1100 [ 0814A74C853F50B354F08F83DDA9F7FB, 0A63BAA8DE451B8C2C71FEF961718E769B9BAC305C76D24048C664CB27D0DF28 ] wuauserv C:\Windows\system32\wuaueng.dll
21:57:08.0755 0x1100 wuauserv - ok
21:57:08.0787 0x1100 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
21:57:08.0802 0x1100 WudfPf - ok
21:57:08.0818 0x1100 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\drivers\WUDFRd.sys
21:57:08.0833 0x1100 WUDFRd - ok
21:57:08.0865 0x1100 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
21:57:08.0865 0x1100 wudfsvc - ok
21:57:08.0911 0x1100 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll
21:57:08.0943 0x1100 WwanSvc - ok
21:57:08.0989 0x1100 ================ Scan global ===============================
21:57:09.0036 0x1100 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
21:57:09.0083 0x1100 [ 2313AF8D5A9CEB4A55400A01DD311A95, A5779FE967EA2703E86BEDC32CD736617AF278C72048228F038DFC628E1E0AA2 ] C:\Windows\system32\winsrv.dll
21:57:09.0114 0x1100 [ 2313AF8D5A9CEB4A55400A01DD311A95, A5779FE967EA2703E86BEDC32CD736617AF278C72048228F038DFC628E1E0AA2 ] C:\Windows\system32\winsrv.dll
21:57:09.0145 0x1100 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
21:57:09.0192 0x1100 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
21:57:09.0208 0x1100 [ Global ] - ok
21:57:09.0208 0x1100 ================ Scan MBR ==================================
21:57:09.0223 0x1100 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:57:09.0442 0x1100 \Device\Harddisk0\DR0 - ok
21:57:09.0442 0x1100 ================ Scan VBR ==================================
21:57:09.0442 0x1100 [ C378473348148F26A20DE70F1189FB48 ] \Device\Harddisk0\DR0\Partition1
21:57:09.0457 0x1100 \Device\Harddisk0\DR0\Partition1 - ok
21:57:09.0473 0x1100 [ 91A4BD59DF5CC547715AD1959BDB1F9D ] \Device\Harddisk0\DR0\Partition2
21:57:09.0473 0x1100 \Device\Harddisk0\DR0\Partition2 - ok
21:57:09.0473 0x1100 ================ Scan generic autorun ======================
21:57:09.0489 0x1100 [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
21:57:09.0504 0x1100 Logitech Download Assistant - ok
21:57:09.0769 0x1100 [ C6CF3BBD590309E9C01FAA79C1B8A1E2, 9F7B589777C55A320480E0953EC925C6D074A9300AC612F6E5CD4F6216A48403 ] C:\Program Files\ESET\ESET Smart Security\egui.exe
21:57:09.0894 0x1100 egui - ok
21:57:10.0035 0x1100 [ 3E04F1E482357B1FC8B088197C3D9FF8, 85524ADDC27ADC831EBBD24E079B412CFDC69E5F594BD153319087665A28D546 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
21:57:10.0081 0x1100 Adobe ARM - ok
21:57:10.0440 0x1100 [ 09266319529C342813EA013E24200568, DEC1DCC14CD08304CF502FE4AD5CC188982705BF7D642A8E0EA239F6CB0CE57D ] C:\Program Files\CCleaner\CCleaner64.exe
21:57:10.0612 0x1100 CCleaner Monitoring - ok
21:57:10.0893 0x1100 [ 5F51CC2A6061597BB53A408E98CE2318, 48D4BDAFC289E640779A78AF8E5DB686D712A5CB23492713A2A5B29A762123B5 ] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_188_Plugin.exe
21:57:10.0939 0x1100 FlashPlayerUpdate - ok
21:57:10.0939 0x1100 Waiting for KSN requests completion. In queue: 88
21:57:11.0953 0x1100 Waiting for KSN requests completion. In queue: 88
21:57:12.0967 0x1100 Waiting for KSN requests completion. In queue: 88
21:57:14.0075 0x1100 AV detected via SS2: ESET Smart Security 8.0, C:\Program Files\ESET\ESET Smart Security\ecmd.exe ( 8.0.312.0 ), 0x41000 ( enabled : updated )
21:57:14.0075 0x1100 FW detected via SS2: ESET Personální firewall, C:\Program Files\ESET\ESET Smart Security\ecmd.exe ( 8.0.312.0 ), 0x41010 ( enabled )
21:57:16.0945 0x1100 ============================================================
21:57:16.0945 0x1100 Scan finished
21:57:16.0945 0x1100 ============================================================
21:57:16.0961 0x05ec Detected object count: 0
21:57:16.0961 0x05ec Actual detected object count: 0
21:58:21.0302 0x0f4c Deinitialize success

Dále odinstalován ESET SMART SECURITY, vyčištěno ccleanerem, stáhnut a opět nainstalován ESET SMART SECURITY a po restartu opět hláška: 23.6.2015 22:33:21 Rozšířená kontrola paměti soubor Operační paměť » mem_4260000_1684.dll varianta infiltrace MSIL/Injector.YT trojský kůň nelze léčit

Jinak mockrát děkuji za pomoc a prosím tedy o radu, jak

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nalezen trojský kůň v operační paměti

#33 Příspěvek od motji »

Dejte mi čas, zkusím kolem toho něco pohledat a večer se ozvu.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#34 Příspěvek od Pitrisek »

Samozřejmně, jste zlatíčko a to doslova. Jinak po opětovném nainstalování ESETA se spustila prvotní kontrola PC a od té doby scanuje.
Nyní scanování skončilo s tímto výsledkem: nalezeno objektů:1 ; vyléčeno objektů: 1 - C:\Zaloha - s\ZALOHA\PDFCreator-1_7_2_setup.exe Win32/InstallMonetizer.AQ potenciálně nechtěná aplikace Léčit.
Jen mne překvapuje, že je tento program škodlivý, protože jej mám z pracovního PC pro prohlížení 3D modelů výkresů.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nalezen trojský kůň v operační paměti

#35 Příspěvek od motji »

Nemusí být škodlivý, je to potenciálně nechtěná aplikace . Jeslti to není moc velké, otestujte si program na www.virustotal.com. Já se večer ozvu a v nejhorším Vás pošlu na technickou podporu Esetu.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#36 Příspěvek od Pitrisek »

Dobře, předem děkuji

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nalezen trojský kůň v operační paměti

#37 Příspěvek od motji »

Popravdě si s tím nevím rady. Můžu vám tam samozřejmě dát další a další skeny, ale myslím že je to zbytečné. Co jsme googlila i na zahraničních forech nebo přímo foru Eseta, tak údajně snad tak označuje vir který není aktivní nebo je to falešná detekce. Kontaktovala jsem chlapce z Esetu, ale než se tu objeví, může to být několik dní.

Já bych Vám spíše doporučila obrátit se přímo na jejich podporu. Za těch pár dní, co se vir objevil, budou mít určitě už více poznatků. Zatím Vám necháme v pc všechny programy a logy, můžete je odkázat i na tento topic a na logy. Pak se ozvěte, odstraníme použité programy a samozřejmě mě zajímá, na co v Esetu přijdou :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#38 Příspěvek od Pitrisek »

Děkuji moc za dosvadní pomoc a obrátím se tedy na podporu ESETU.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nalezen trojský kůň v operační paměti

#39 Příspěvek od motji »

A pak dejte prosím vědět :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#40 Příspěvek od Pitrisek »

Zdravím, tohle mi napsali z ESETU:

Dobrý den, jedná se o detekci knihovny, kterou generuje autokms.exe (C:\Winsows\AutoKMS) , který slouží k obcházení aktivace Windows nebo MS Office. Aktuálně je detekována knihovna, kterou soubor vytváří při startu PC (úloha v plánovači: C:\Windows\System32\Tasks\Autokms.exe ) a nyní i samotný autokms.exe. Ten bude detekován ne jako vir, ale jako potenciálně nechtěná aplikace. V případě, že máte legální Windows/Office, soubory smažte. Případně si vytvořte výjimku v antivirovém programu, např. podle nápovědy zde: https://servis.eset.cz/Knowledgebase/Ar ... YftjPntlBc

Takže ještě jednou děkuji moc za pomoc a mohli bychom až budete mít čas uklidit PC.
Mám ještě jeden dotaz, mohl bych se s Vámi písemně zkontaktovat neoficiálně?
Děkuji

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nalezen trojský kůň v operační paměti

#41 Příspěvek od motji »

Na legální systém jsem se Vás ptala, zapoměla jsem na ofice :oops: . Ale mbam by mě na ten soubor upozornil, takže jsme předpoklíádala, že tam není.

:arrow: Odinstalujte combofix přes Start - Spustit
- zkopírujte do okénka:

ComboFix /Uninstall

-stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


***********


:arrow: Stáhněte T-Cleaner
http://tharifas.sweb.cz/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir



***********


:arrow: Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

Obrázekzáložka čistič
- nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
- po analýze klikněte na Spustit Ccleaner

Obrázekzáložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy :arrow: ok :arrow: zavřít

Obrázek Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.

Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.


***********




Můžete mě kontaktovat na email motji(zavinac)forum.viry.cz
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Pitrisek
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 149
Registrován: 17 bře 2006 11:56

Re: Nalezen trojský kůň v operační paměti

#42 Příspěvek od Pitrisek »

Vše provedeno jak jste doporučila. Ještě jednou díky moc za pomoc. Jak můžu podpořit Vaše fórum, odvádíte skvělou práci a zadarmo, klobouk dolů, jste FRAJEŘI

Odpovědět