Pc lento, virus tr/agent scasioni con avira e rogue killer

Risolto/Chiuso
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016 - 11 set 2014 alle 21:52
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 - 16 set 2014 alle 12:47
Ciao,
ho il computer lentissimo,
ho fatto scansioni con avira che trova virus e lo mette in quarantena ma poi questo torna sempre!

C:\Users\F550c\AppData\Roaming\Microsoft\Windows\IEUpdate\JETCOMP.exe
[RILEVAMENTO] Si tratta del cavallo di Troia TR/Agent.ahhiv

ho fatto delle scasioni con rogue killer e questo è il log:

RogueKiller V9.2.9.0 (x64) [Jul 11 2014] by Adlice Software
mail : https://www.adlice.com/contact/
Feedback : https://forum.adlice.com/
Website : https://www.adlice.com/roguekiller/
Blog : https://www.adlice.com/

Operating System : Windows 8.1 (6.3.9200 ) 64 bits version
Started in : Normal mode
User : F550c [Admin rights]
Mode : Remove -- Date : 09/11/2014 18:57:18

¤¤¤ Bad processes : 1 ¤¤¤
[Proc.Hidden] -- [x] -> Chiuso [TermThr]

¤¤¤ Registry Entries : 6 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-130126266-3837534747-1370213360-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.msn.com/fr-fr/?cobrand=asus13.msn.com&ocid=ASUDHP&pc=ASU2JS -> NON SELEZIONATO
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-130126266-3837534747-1370213360-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.msn.com/fr-fr/?cobrand=asus13.msn.com&ocid=ASUDHP&pc=ASU2JS -> NON SELEZIONATO
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-130126266-3837534747-1370213360-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.msn.com/fr-fr/?cobrand=asus13.msn.com&ocid=ASUDHP&pc=ASU2JS -> Sostituito (https://www.msn.com/fr-fr/?ocid=iehp
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-130126266-3837534747-1370213360-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.msn.com/fr-fr/?cobrand=asus13.msn.com&ocid=ASUDHP&pc=ASU2JS -> Sostituito (https://www.msn.com/fr-fr/?ocid=iehp
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-130126266-3837534747-1370213360-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.msn.com/fr-fr/?cobrand=asus13.msn.com&ocid=ASUDHP&pc=ASU2JS -> Sostituito (https://www.msn.com/fr-fr/?ocid=iehp
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-130126266-3837534747-1370213360-501-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.msn.com/fr-fr/?cobrand=asus13.msn.com&ocid=ASUDHP&pc=ASU2JS -> Sostituito (https://www.msn.com/fr-fr/?ocid=iehp

¤¤¤ Le attività pianificate : 0 ¤¤¤

¤¤¤ Files : 0 ¤¤¤

¤¤¤ HOSTS File : 2 ¤¤¤
[C:\WINDOWS\System32\drivers\etc\hosts] 127.0.0.1 localhost
[C:\WINDOWS\System32\drivers\etc\hosts] ::1 localhost


AIUTO!
¤¤¤ Antirootkit : 0 (Driver: LOADED) ¤¤¤

¤¤¤ I browser Web : 0 ¤¤¤

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: HGST HTS545050A7E680 +++++
--- User ---
[MBR] 79dde02c62ccb3198f48838cfc02a4b3
[BSP] d28e338c2261577215d19a426d664c81 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x0) [VISIBLE] Offset (sectors): 1 | Size: 2097152 MB
User = LL1 ... OK
User = LL2 ... OK


============================================
RKreport_DEL_09012014_130857.log - RKreport_DEL_09012014_144052.log - RKreport_DEL_09012014_171104.log - RKreport_DEL_09012014_183351.log
RKreport_DEL_09102014_082353.log - RKreport_DEL_09112014_164337.log - RKreport_SCN_08302014_164941.log - RKreport_SCN_08312014_104834.log
RKreport_SCN_09012014_130627.log - RKreport_SCN_09012014_143729.log - RKreport_SCN_09012014_163003.log - RKreport_SCN_09012014_172727.log
RKreport_SCN_09012014_183343.log - RKreport_SCN_09012014_183817.log - RKreport_SCN_09012014_185311.log - RKreport_SCN_09022014_082027.log
RKreport_SCN_09102014_075254.log - RKreport_SCN_09102014_080548.log - RKreport_SCN_09102014_081658.log - RKreport_SCN_09102014_083659.log
RKreport_SCN_09112014_161401.log - RKreport_SCN_09112014_164252.log - RKreport_SCN_09112014_185656.log





Potrebbe anche interessarti:

22 risposte

Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
12 set 2014 alle 11:32
ciao,

RK non ha rilevato infezioni

usa il servizio virustotal per analizzare il file JETCOMP.exe
https://www.virustotal.com/gui/#file

poi fa una scansione con un antivirus online (http://it.ccm.net/faq/2907-antivirus-online)
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
12 set 2014 alle 12:25
buongiorno n00r!!!

non riesco ad analizzare il file con virustotal in quanto seguendo la directory rilevata da avira non riesco a trovare il file!
eppure ho messo la spunta sulla visualizzazione dei file nascosti.
Ho quindi cercato il file in C e l'ho trovato in questa directory: C:\Windows\SysWOW64
, l' ho quindi analizzato con virus total e la spunta è verde in tutte le voci.

ho fatto una scansione con f secure e non rileva nulla.

ora sto facendo un scansione con kaspersky on line e ci sta mettendo parecchio tempo, poi darò il risultato.
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
12 set 2014 alle 12:39
buongiorno susanna tutto bene! (oltre questi vermi che ti stanno infestando da per tutto :-P )

il file potrebbe essere un falso-positivo
avira lo rileva a torto come dannoso
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
12 set 2014 alle 14:37
Eh sì qui tutto bene anche se nel mio pc c'è sempre una gran confusione!

Pensavo fosse un virus e non un falso positivo perchè lo rileva anche malwarebytes e il pc ieri era davvero lentissimo, e credo sia successo dopo che ho inserito una usb infetta.

Adesso sta funzionando bene e non so se il problema sia stato risolto con i miei vari esperimenti di scansione ecc o se sia solo un'illusione!

In ogni caso ho fatto ora la scansione anche con kaspersky, che mi riporta il nome del problema della discussione precedente!

file:///C:/ProgramData/Kaspersky%20Lab/KSS2/DataRoot/HtmlReport/index.html

a questo punto aspetto a vedere se il problema si ripresenta.
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
12 set 2014 alle 14:55
file:///C:/ProgramData/Kaspersky%20Lab/KSS2/DataRoot/HtmlReport/index.html

questo è il percorso al file report nel tuo PC (salvato in locale)

dici lo rileva anche malwarebytes ! non riesce a eliminarlo ?

esegui una scansione con malwarebytes e mandaci il report
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
12 set 2014 alle 15:05
ookkkkkkk
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
12 set 2014 alle 20:01
eccomi!
dunque, di seguito metterò la scansione con kaspersky e quella con malwarebytes ( che trova sempre lo stesso problema, lo mette in qurantena ma questo torna sempre).


Rapporto dettagliato
Problemi rilevati
Data scansione:

Data aggiornamento database anti-virus:


Versione del prodotto: 12/09/2014 01:50 PM

12/09/2014 07:41 AM


12.0.1.881

Protezione del computer (1)

Informazioni sul software anti-virus e i firewall installati nel computer.
Kaspersky Lab consiglia
L'anti-virus è disabilitato.

Malware (960)

Informazioni sul malware rilevato nel computer.
Kaspersky Lab consiglia

HEUR:Trojan.Win32.Generic
33a269377c77d150404109e7e6ba497b
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
3791ac81a628706b51de027c2fa9f8b6
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
5967635a4f95898a6d048aecabc2f7f4
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
6a250455d127e82b1a95552e0d75524d
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
718a1f7ba4a262b8bc67a369c9f119b6
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
3204edc895da6e8c9ea8e5a190aaaa66
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
9f85fcc49fe63b666464d0e8042c30eb
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
86280f845b22ea5b92656442586bbba9
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
876a42cc70de4aef9481884c73777aa4
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
a10b9178a9cba2998cce15b41bef45ec
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
ae220b6601c232282f2dbfdb7f1e2b94
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
d9b61a37e51ba3f55f60f45605701509
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
b62724352da97595a198c263d2e6a1f4
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
e1a9ee7b9ec03f3a2551d83093299b7a
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
cfde3c3b53f8c5ba62d45b628e8cbacb
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
f8123e446a0dae8dab3b659dfe49b449
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
RCXAAB7.tmp
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
f6fec3bb1bf032b77db45bcf0c6acdbd
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
f46f224bb41ea6622071255718248bf5
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys
HEUR:Trojan.Win32.Generic
PDF to DWG Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\006176314211e0855cbcb3a47bd30e5b
HEUR:Trojan.Win32.Generic
ImTOO Audio Encoder.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\002d12502e13d0f9beb200d65e9f28de
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\005b840e90011161cc54291ece9eb150
HEUR:Trojan.Win32.Generic
TwonkyMedia Server.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0078f3b7e0e73b8a7a180c60a76e26d9
HEUR:Trojan.Win32.Generic
Torrent Ratio Keeper Monster.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\00824ff79d4571454c6a1f658fa1dba6
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\016597a9c0d63bfab5f5768f13dc729c
HEUR:Trojan.Win32.Generic
MakBit Virtual CD DVD.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\01b9eb60024a35fde9780f70796287c5
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0222218a851fe0d546ad534e218c1e0f
HEUR:Trojan.Win32.Generic
realMYST.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\02651de937fa43b9065f90dda6ded240
HEUR:Trojan.Win32.Generic
Editstudio.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\02bb4ad7d52422cbf37c60c604dabc86
HEUR:Trojan.Win32.Generic
Chromas.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\02d4806271eb8f239eb1de0dda269a65
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\02ff440ba9a407b0fa1ccd9a8f21ea15
HEUR:Trojan.Win32.Generic
RemoteScan.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0336440044424e8892d4b3dd4d1d8816
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\03589c5c4b9ae83b376b5ea433e650a6
HEUR:Trojan.Win32.Generic
Virtual Audio Cable.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0359519f83147d686ab1d4a908f27ba9
HEUR:Trojan.Win32.Generic
ZIP Password Recovery Magic.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0469a235d951f72cbdb6a1366d9b6cd4
HEUR:Trojan.Win32.Generic
Duplicate Finder.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\04a15d2348e9ab1cc7a5b470d2abd5fd
HEUR:Trojan.Win32.Generic
eXceed.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\04ffe6708c501cded730aa2533b5d6ba
HEUR:Trojan.Win32.Generic
Pro Tools M-Powered.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0550dda765ad1ad1817b31e01bb1f3ad
HEUR:Trojan.Win32.Generic
Flash Catcher.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0558ca7a47e11e0e4da68499fce54484
HEUR:Trojan.Win32.Generic
AVS Audio Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0375fe30b0743764648ad8ca2f9c04c6
HEUR:Trojan.Win32.Generic
Elemental War of Magic.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\05e800d8e9ccbce7ae80f8cd9a8ae708
HEUR:Trojan.Win32.Generic
AKVIS Sketch.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\031f5a6f6ed4d08174464e3e0c217001
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\05e875e77e1d2ba75b628f7f3a1d016c
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0651d7e32315d67253655ade7ffb97c0
HEUR:Trojan.Win32.Generic
DFX Audio Enhancer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\06cf6a8e8c9bdc0ccf314b980094d002
HEUR:Trojan.Win32.Generic
Action Script Viewer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\076195a356aa2863cb7bdd7c89103a12
HEUR:Trojan.Win32.Generic
maComfort.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\07d212f68deb71c2ea8529bbc3f6ecf9
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\080b2a9f37eedbbea3da90e6074d1ffe
HEUR:Trojan.Win32.Generic
Microsoft Access 2010.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\083efe9fcffad279aa2a4144d07fb06b
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0897f7583dc0be15045af2cbe5be636c
HEUR:Trojan.Win32.Generic
Tom Clancys Rainbow Six Bundle.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\092340ba280dd3e5a4cf9771c8008643
HEUR:Trojan.Win32.Generic
Dungeonland.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\098937636a5637167a728661ffb12678
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\09924fcc261beb58f5e95ceae8c79c01
HEUR:Trojan.Win32.Generic
Magic Photo Recovery.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\09de51ab33a3beda77925e79307844ce
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\09f29ba82e791fe5e56d91db4b185d01
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0a643a24a32647e18befbb6738b3f964
HEUR:Trojan.Win32.Generic
BPM-Studio Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0a7755a9973eb9dc9c01fd7e38418998
HEUR:Trojan.Win32.Generic
Virtual Plastic Surgery Software - VPSS.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0b74a63c03101cbd421f362359cab182
HEUR:Trojan.Win32.Generic
DriveScrubber [ DISCOUNT 50% OFF! ].exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0baed48f5e4d7554cf3882608275af8f
HEUR:Trojan.Win32.Generic
IDA (formerly IDA PRO).exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\05c61e3b99024232c583aa358fc10d00
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0baed6f2820441f7471cbad0b5446966
HEUR:Trojan.Win32.Generic
Shell and Tube Heat Exchanger Design.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0bfd97f29daa370a82b34f894628708a
HEUR:Trojan.Win32.Generic
Journey to Center of Moon.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0c6ed38d4bfa4709a671a2d7d5a02668
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0d0aec8cceaca18daae6859509f7a862
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0c81a3aadde5b079a08a8a9605d91a26
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0d2061acc1f89efe4ae3abee6e46b9f7
HEUR:Trojan.Win32.Generic
18 Wheels of Steel American Long Haul.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0d92b19dcdf079f803cbca5e37c28d85
HEUR:Trojan.Win32.Generic
CPUFSB.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0e95e0f9c699fc7a7b7a660c3e5caade
HEUR:Trojan.Win32.Generic
DDR - Pen Drive Recovery (formerly Pen Drive Data Doctor Recovery).exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\0f958a735806b0374add034fed4f2363
HEUR:Trojan.Win32.Generic
Full Convert Enterprise.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1010632dd9fb060345c0c873f6062d4f
HEUR:Trojan.Win32.Generic
Themida.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1030e084d7cd741880397baf4b9a0739
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\11384f18df142eafcee58d064a356462
HEUR:Trojan.Win32.Generic
Orcs Must Die! Game of Year.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\114130454af5450f15ceb0e8c7384a11
HEUR:Trojan.Win32.Generic
EXIFeditor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\115cbcb123e25ad4e448a249a3dc961e
HEUR:Trojan.Win32.Generic
World TV and Radio Tuner.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\11a04a1dc588b7b2c5dcfdebc3dc56d4
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1196bc5bed482435d35f3d8115ff31de
HEUR:Trojan.Win32.Generic
Folder Vault.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\11c336f3df6c143a4239b68287c7a039
HEUR:Trojan.Win32.Generic
CrystalMaker.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\11cbee364a487f530dcb747b85d376ed
HEUR:Trojan.Win32.Generic
VCE Testing System.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\11e2bfc86225cc214caf701a7f9d49b5
HEUR:Trojan.Win32.Generic
Bad CD DVD Recovery.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\12e5d5482f6436101fc8638c9d51d4b8
HEUR:Trojan.Win32.Generic
Alligator Flash Designer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1414ae29b20fd3693ed570a1d8b7c4b1
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1336ebf8cb8032a7a4d2965a63d87279
HEUR:Trojan.Win32.Generic
EML to PST Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\149ac7c4981306aa9eba37b4c8d0bd77
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\14f6279860d2ebd4c60ad464ea4f9e31
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\14bb9af42ad105fd7883b5f6e24432e9
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\14ffb7329e594768ab9c8e23d9be0ac7
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\153445bd93efabd0bf06ff6078ea433c
HEUR:Trojan.Win32.Generic
Total Commander POWER PACK.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\15049f79d23ba252a55cb8211b5969ad
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\15449da89fb4f7b4f57b71960ee4673f
HEUR:Trojan.Win32.Generic
Aurora MPEG To DVD Burner.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1587f1c58957a1a716ab313ac8448f51
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\15929e2f88e7f5242c728ccf28bdc7ff
HEUR:Trojan.Win32.Generic
MING Network Monitor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\15a735affa7c4acc1646dc7aef722a4f
HEUR:Trojan.Win32.Generic
Mouse Clicker.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\16209dc5e60413d984c9b846362e9d01
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\15ca3db2320248df543bdd7425d58f32
HEUR:Trojan.Win32.Generic
File Scavenger Floppy Install.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\16780e1f079d9b537bba7d4941b836f9
HEUR:Trojan.Win32.Generic
My Screen Recorder Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\16b1251bfb61e78a08ae48fd67ff6401
HEUR:Trojan.Win32.Generic
Business Card Designer Plus.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\16e7043ef48585b96a2f720aec8b8c25
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\171e9223068ed3fb4ccf4a8bec2b474d
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\175c5a7e5fc7356fabd3b1b33417a42f
HEUR:Trojan.Win32.Generic
Any Code Counter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1799771a0acf7a4bb8d3fa625b32d573
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1846231e2172ace112c9308305b0a55b
HEUR:Trojan.Win32.Generic
CoffeeCup HTML Editor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\15c2514d9fd6fa0b1a0d04a9938bccef
HEUR:Trojan.Win32.Generic
Nero 9 Free.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\165f537fca89029a06d0e5aafebd91df
HEUR:Trojan.Win32.Generic
RaidenFTPD.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\185d2a2e98680f0500c73593897c133c
HEUR:Trojan.Win32.Generic
DriverAgent.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\18665cad2b98c12e2ea41363974d72e2
HEUR:Trojan.Win32.Generic
VirtualDrive Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\187b14593423e648ef8acb2a424ba6bb
HEUR:Trojan.Win32.Generic
SpeedBit Video Accelerator.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\187f3cd264ac7c2c2468f022837eab62
HEUR:Trojan.Win32.Generic
SAM DJ (formerly SAM Party DJ).exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\18a5131959fd07b715ba618e27b208e1
HEUR:Trojan.Win32.Generic
Acala DVD Copy.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\18bc5bc014fbcde448997d5d274209ca
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\18e1cd83034c18bc475346c7d1120010
HEUR:Trojan.Win32.Generic
Winamp Playlist Copy 10.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\18ee0259ad83d05dab2c3617c7ce7d1a
HEUR:Trojan.Win32.Generic
Tera Online.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1940cee359402e7b93e6c593a580d6cd
HEUR:Trojan.Win32.Generic
CDCheck.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\19f48cdb18b871a17d70dd07b05281a7
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1a6e68e6a3a451c2d8d862f0679a9d1e
HEUR:Trojan.Win32.Generic
Command And Conquer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1b1db6e88a9e3e7753f1440624119dc2
HEUR:Trojan.Win32.Generic
Lite x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1b3b68529e3808eb5ee05516d30f4698
HEUR:Trojan.Win32.Generic
98lite.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1b9428bc8ae0b572168e00f14bdeda78
HEUR:Trojan.Win32.Generic
Gilly Messenger.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1be01c05c56d55b51418182ac2a9f421
HEUR:Trojan.Win32.Generic
Witcher Directors.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1be6fd4d96e1227fc94af99563538acb
HEUR:Trojan.Win32.Generic
Killing Floor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1bfb12f1a828e6d75d6a03d5554d078c
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1c08f21ed97dc0a434d8158c73677324
HEUR:Trojan.Win32.Generic
Circuit Wizard Professional Edition.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1c2d0fb0f666aed965a87a91d9dee2d3
HEUR:Trojan.Win32.Generic
SoundTap Streaming Audio Recorder.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1cb48f741fe8a047f30f72182ca8df78
HEUR:Trojan.Win32.Generic
Macro Scheduler Automation Tool.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1cb94c05e17d7df6027f4661bc534743
HEUR:Trojan.Win32.Generic
vitaero (SkypeHeadset).exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1cd339bdb232dcf641b6e16b660e7827
HEUR:Trojan.Win32.Generic
G DATA InternetSecurity 2014.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1ce4a366448c061d2e10ab251f280d8b
HEUR:Trojan.Win32.Generic
Hunted Demons Forge.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1d93fd954117f4c4afeafa5b370328bc
HEUR:Trojan.Win32.Generic
Recover My Files.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\18474902db40b9986a3eb37c55dd8702
HEUR:Trojan.Win32.Generic
BareTail.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1dd72b9e92af042792c67ecfadc6ac36
HEUR:Trojan.Win32.Generic
KMZ - KML converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1ea60ba2f6d5464709cf17253ff21f18
HEUR:Trojan.Win32.Generic
MPEG4 Direct Maker.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1ed33e51be059b9ff01560b52093a549
HEUR:Trojan.Win32.Generic
DVD XViD X264 DivX AVI Ripper.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1f1be30848b57be548f9bdeea21a6f22
HEUR:Trojan.Win32.Generic
Far Cry 3.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1fd34a856fbc4d9c9a708018911db6d8
HEUR:Trojan.Win32.Generic
Cool Edit Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\1fdc5dace0f740a8ec16ed16cb70c50d
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2065b3375d7fb6ba1c346b45923ebdc8
HEUR:Trojan.Win32.Generic
SecurityKISS Tunnel.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2110821f2e623d60d57bd3df5a7149f5
HEUR:Trojan.Win32.Generic
USB Guard Zone Protection.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\20c1c2cb454b5b7d4427535ccba2f9bf
HEUR:Trojan.Win32.Generic
Password Reveal Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2137bf0656617def373ba60f44ccbd2e
HEUR:Trojan.Win32.Generic
Binary Browser.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\214078b43a0c414232c3235f198e1823
HEUR:Trojan.Win32.Generic
AD Stream Recorder.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\219a9ca14c3d3336caf3f9ac3c7738be
HEUR:Trojan.Win32.Generic
AlbumPlayer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\220b0434e7563c949cc1fd8dd17536ac
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\21ef28cf4c0f84e199e8c729130a8bf4
HEUR:Trojan.Win32.Generic
Pianoteq.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\221acc24042ca1210daa1a9add486906
HEUR:Trojan.Win32.Generic
LANView.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\23330c6876e634469b9da7c87f4c07fc
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2336703243bdc96fd95ab1027f2785ee
HEUR:Trojan.Win32.Generic
Kiwi Syslog Server.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\22c5a059d6ed480fdc5acb52653650be
HEUR:Trojan.Win32.Generic
F-Secure Anti-Virus for Windows Servers.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2259b9a15286bcd8079d2d764b0b319c
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\23acb5cd8360e4be68e851a0cacd3ebd
HEUR:Trojan.Win32.Generic
Puzzle Agent.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\23f9cfda8e99d169ed0ae737669d17e5
HEUR:Trojan.Win32.Generic
Adobe Acrobat Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\24be19f69bf157aa7f6290b83926a8ac
HEUR:Trojan.Win32.Generic
Acoustica Standard Edition.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\258c04c683196e67f8c9fbfcc7904017
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\25a2f40a78cbf2dc7d05485658b08d35
HEUR:Trojan.Win32.Generic
AutoKrypt.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\24a41b59020f0f8d5c79b46cb92f8129
HEUR:Trojan.Win32.Generic
CpuIdle Extreme.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\25bdb353b37d5ea145ca04b4bcf21587
HEUR:Trojan.Win32.Generic
X-Fonter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\25d855d3e5bf5715a040cefe8a8bb584
HEUR:Trojan.Win32.Generic
3D Invigorator Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2530fdd20e129a3f00ca1e6dd90aa629
HEUR:Trojan.Win32.Generic
ReValver Mk IIIV.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\25ad06c5251e070185514337836a5d15
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\267232990aacdbfc4cb633abed4c3020
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\26c4bcf74e3a05420f945780021ee639
HEUR:Trojan.Win32.Generic
Cucusoft AVI to VCD AVI to DVD Converter Lite.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\273e3141aaec4329ee85e51559bce6a3
HEUR:Trojan.Win32.Generic
DOWNLOAD BOOSTER.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2761b9f3387efb71ef5ea00069b5ef4f
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\274d06a2a2e9c0b6e5921dbeedcfbcd2
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\27871749642b703586c33672d9746779
HEUR:Trojan.Win32.Generic
Recovery Toolbox for Word.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2819b2ba9df9f1413bcb4653cdc6b2e7
HEUR:Trojan.Win32.Generic
ClipGrab.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\283a6e30dcc89571e17d5f11d5e85bff
HEUR:Trojan.Win32.Generic
WFilter Enterprise.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\27e37fa4bf0d7d2ee7c4dd301db40242
HEUR:Trojan.Win32.Generic
Zero-X BeatCreator.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\28b6ecdf97e92afe489943f958d6e3fb
HEUR:Trojan.Win32.Generic
Big Rig Europe.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\289b98d0905a4f66ed7cfd9cd3d053e5
HEUR:Trojan.Win32.Generic
Victoria II A House Divided.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2886dacd9fb0fcc7eadd2782098cb506
HEUR:Trojan.Win32.Generic
Hanes T-ShirtMaker Plus Deluxe.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2981c80fb2d0812dd09c3b85530901b8
HEUR:Trojan.Win32.Generic
Adobe Flash Professional.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\28d89fa8defcad229e103375e58ea0e9
HEUR:Trojan.Win32.Generic
Lite x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2a5043bd1b7b306139bcc8531c871a16
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2a8906b18347c8efbb89e6f9641af422
HEUR:Trojan.Win32.Generic
Game Maker Lite.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2acf058103e01641b193ec64deb601da
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2b44870d387875f531d81baa3d5e9707
HEUR:Trojan.Win32.Generic
Tom Clancys Ghost Recon Advanced Warfighter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2b4eafe74d2c0273ac53ab02a4026d13
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2b6c5d616235cd3e7e45d04c6158c681
HEUR:Trojan.Win32.Generic
HT TV Plus.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\29a65b2d7ab2314d9a3b658329dc9940
HEUR:Trojan.Win32.Generic
TubeDigger.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2b6d72d1087bc6116b37fbbc18ebbeb9
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2b7bd7799a3dfe33b0912d9e32638e74
HEUR:Trojan.Win32.Generic
DiskPatch.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2c496010f20452070d6b1db6626673f5
HEUR:Trojan.Win32.Generic
FreeTrim MP3.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2c6abe0c38f49ffccb9bcce0c16bbaab
HEUR:Trojan.Win32.Generic
Xilisoft Video to Audio Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2c3595d3f7f9c91072d2707140beb332
HEUR:Trojan.Win32.Generic
SlimDrivers.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2c848be2298ca9839ffc8907b98acbee
HEUR:Trojan.Win32.Generic
XCOM Enemy Within.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2ca59ec07088a5bf2f0342fc9a4dd6ef
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2d3ca6b8b811a60d8438375e5ab2f255
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2d417a212dc93c3af4614927c9a7be78
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2dba1c2392297ec9a0be428179193eda
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2df2a1b15b9512293928598c5845bf3b
HEUR:Trojan.Win32.Generic
WebDrive.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2e5a5649266389ff47125dd436a8ca26
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2eb6f0cdaccad7b5bc3c0b8eee9ebec4
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2e96bfbd529ae91b915bcca04bb59863
HEUR:Trojan.Win32.Generic
DJ Mix Master.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2ebbb9136a472194f228ac39f759d39e
HEUR:Trojan.Win32.Generic
Image Converter EXE.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2f4a55ebebf7c66e9155c36175be565c
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2f8c75cf0f37c080e168fb0779476aad
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2feb303ec9676494b3cbc8464b0aaa75
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\304ec5a802b5584d54972cc82ecf8403
HEUR:Trojan.Win32.Generic
M Autorun Killer Smart.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3102dc94d5974189a1f4d2de4b23bfd0
HEUR:Trojan.Win32.Generic
ZIP RAR ACE Password Recovery.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\310b69f1134143fff69f5418c78c3e67
HEUR:Trojan.Win32.Generic
Ipswitch WS_FTP Professional.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3126b52369ec47668c4f8742cdbe6fd3
HEUR:Trojan.Win32.Generic
FaceGen Modeller.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\2d4adfe6463ef4d1244f4cecad58d51b
HEUR:Trojan.Win32.Generic
Bad CD DVD Recovery.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3164af7a1f649eb625af701b196024b0
HEUR:Trojan.Win32.Generic
Nice PDF Compressor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3155c310b00ac7c2c8c1908051f2d735
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\326601d189060fe4af73b04833a07cd1
HEUR:Trojan.Win32.Generic
Total Screen Recorder Gold.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3244a0a28975f9038e5e4ffddf3f0dd0
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32147408defec33387d2543c89ea8b36
HEUR:Trojan.Win32.Generic
Fidelizer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32b3508d3674f0c649ee19d838c4e346
HEUR:Trojan.Win32.Generic
RegCure Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32917b27939f9c09dc1f216fb3cffcd2
HEUR:Trojan.Win32.Generic
AVI DivX MPEG to DVD Converter And Burner Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32b3c8e620a0ee4ffb643842d3881344
HEUR:Trojan.Win32.Generic
1CLICK DVD Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32dfb6f36849836363976b684e592dd8
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32e208296fd9dbe3d2906789cef49d3e
HEUR:Trojan.Win32.Generic
Gamma Control.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32f4f4b478483800e5850a6dfaab27b8
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\335fb25d71319cee42107de3174e7d77
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\336b6894ffa0bc148ec726b8329e196d
HEUR:Trojan.Win32.Generic
Any DWG to PDF Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\339c0285ef98b23597f093e05aeca40d
HEUR:Trojan.Win32.Generic
Microsoft SQL Server.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\33ce042b390eb7f4d335b93012d05c74
HEUR:Trojan.Win32.Generic
Carambis Driver Updater.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3437928ff704e2d1a3cec6893444d374
HEUR:Trojan.Win32.Generic
Podium.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\32c319bbbf17c87ab5265c8068a7e434
HEUR:Trojan.Win32.Generic
F-Secure Internet Security.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3453f9b18f35825181783b68a2b2af60
HEUR:Trojan.Win32.Generic
Mobiola WebCam for UIQ3 phones.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\348c32b06b6fa82a8a387ee7a6cc2b0f
HEUR:Trojan.Win32.Generic
Plagiarism Detector.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3333d087000e215c5cbf7f03829821a5
HEUR:Trojan.Win32.Generic
Digital Ear.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\34b213f1bbeda83f0fb91d557e1565b3
HEUR:Trojan.Win32.Generic
X-Men Origins Wolverine.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\34954918b8a46649a652fa8dce2e281f
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\34ca5e9652610e4f4b6d56124b2b039a
HEUR:Trojan.Win32.Generic
Marmalade SDK.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3541e1efd5ac4ee87d5e697d2414aa1a
HEUR:Trojan.Win32.Generic
Hide IP NG.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\35526ea1e91c805e9636ad271b88cab8
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\354b6fee71b4bb51251e2c1ce69910bd
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3586ad2a5380c39305cb2bfe40b8f871
HEUR:Trojan.Win32.Generic
Luxor 3.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\35ccb9c2ceee97bf78f4635f555f9a9b
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\35a00029d6228bf63dc8e34a2452c45a
HEUR:Trojan.Win32.Generic
AVG LinkScanner.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\35d979e674a17f0a474610fd0ce61ba0
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\36029a684827b02bd43ab67db57f57b3
HEUR:Trojan.Win32.Generic
Prezi Desktop.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3659bb0412b6010358880e6f5bb279f4
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\380f536bdda9c3462644840e3189aaff
HEUR:Trojan.Win32.Generic
ABC Amber Text Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\383988ad11c10a352ae73d5d6c1b67b1
HEUR:Trojan.Win32.Generic
Web Page Maker.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\386c204d32ec2bbf0af9b6392ad9a31c
HEUR:Trojan.Win32.Generic
PDF Password Cracker Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\38cf5f219c7f1d78ed214d039a685aff
HEUR:Trojan.Win32.Generic
WMP xMPG Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\390a37a5700b3ef97405edcb4626944c
HEUR:Trojan.Win32.Generic
Lite x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3997f93230978e6b6e8f4962c11646f9
HEUR:Trojan.Win32.Generic
Train Simulator London Faversham.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3a18465dbee29b93161fe91a8d4e4226
HEUR:Trojan.Win32.Generic
Free PDF to Image Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3a28903c1e806445eccdccf566eaf131
HEUR:Trojan.Win32.Generic
JProfiler.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\35f30eca3f813e33c5acb320059efa04
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3aa1f95a86a05aadb82793c173fa5525
HEUR:Trojan.Win32.Generic
iCloner.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3ab259aeb5a15878af737ae5c21f197f
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3ab2a89c16077865bb03c2f45749cd32
HEUR:Trojan.Win32.Generic
Wireless Network Ignition.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3b05f428bde050a3b39c3d1d4dec90f4
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3b9642e09e0244e6c2bf77baa365b9e6
HEUR:Trojan.Win32.Generic
DJ Music Mixer.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3bdbe0db67d2dda698bda1ca560b6352
HEUR:Trojan.Win32.Generic
Constructor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\38e2d3ded9bebf019c2992ce2f8e54ce
HEUR:Trojan.Win32.Generic
Win2PDF.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3c32d3a1af3164cfbb95e595a0c3c089
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3cfa1236bdc9e7219754dab1a26a32ff
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3d2813e35744ce033639bd0287958d25
HEUR:Trojan.Win32.Generic
Infix Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3ba81e376c38bc6a0fc0675789e91152
HEUR:Trojan.Win32.Generic
ABSYNTH.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3db03e6d2a092e35ca4fdab3991ad920
HEUR:Trojan.Win32.Generic
MSN webcam recorder.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3de775609ec84c6ba32a02c71ea285aa
HEUR:Trojan.Win32.Generic
ClamWin Free Antivirus.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3c3afa272e2b47cee8fc6f9a4f9c1f59
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3e25671b8f4e64c33583cd542dadb042
HEUR:Trojan.Win32.Generic
Virtual Drive Creator.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3ea576ea4c7880d670ee88cc95e068c4
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3ef216577f4d1da26618e460a4cc0159
HEUR:Trojan.Win32.Generic
HCFA-1500 Fill And Print.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3f1d5edda6e5de94dfd8f3dc825b4027
HEUR:Trojan.Win32.Generic
Virtual Desktop Assist.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3fa807460cbdb4b8f9a7aa5969f1e7dd
HEUR:Trojan.Win32.Generic
Stop Motion Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3fc2ddcb79b64d4298a28b8fdcd216fc
HEUR:Trojan.Win32.Generic
Daniusoft DVD Copy.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3ffb31f4850dc1160c3c9f139eb5399b
HEUR:Trojan.Win32.Generic
Lite x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4091548adb696c08f82e7f790c625ad2
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\41283aa2f27a03db8ac6e1d1365f013e
HEUR:Trojan.Win32.Generic
Img2CAD.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\41c26244e0185be08be9412226a7ea3f
HEUR:Trojan.Win32.Generic
gPhotoShow Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\41eaf13c79a4e69d457d0492c351420b
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\41eb39c57328b294e6f4a80a4e2a392c
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\42158990051baca1b6bff793900b81f7
HEUR:Trojan.Win32.Generic
Embird.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\3d89f4708c6dceb5c5fc171a52e8f87a
HEUR:Trojan.Win32.Generic
IGT Slots Cleopatra II.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\42303201102ee210bb66d3ea9dc7d8b2
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4232f6809bf02d1a9e836157a032cae5
HEUR:Trojan.Win32.Generic
Talisman Desktop.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\42f3fc9f16d140fb75b5fd4284db6007
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\43098bb75809c17d3dd0688edc52188c
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4318e53302e1320fa3df84cadb6df08b
HEUR:Trojan.Win32.Generic
iClone.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\433198b59edb8d79f3e30db3a2ee51a9
HEUR:Trojan.Win32.Generic
Top MP3 Cutter Joiner.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4335006c0207f5e729976708231a0f15
HEUR:Trojan.Win32.Generic
Easy File Sharing Web Server.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4393db90579dd06b7bf030c1e70def4a
HEUR:Trojan.Win32.Generic
Alcohol 120%.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\43b1ea53558172eca7e4237577d51994
HEUR:Trojan.Win32.Generic
HD Tune Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\43c88261e74fdfae7c237adf09f74a13
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4457aa4b2444c6e3405d9f80bf19859d
HEUR:Trojan.Win32.Generic
Evil Within.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\44c64e5e72e06db04ae8322e05a2c510
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\452dbed9096f176dbce987077aff9cbd
HEUR:Trojan.Win32.Generic
WorldUnlock Codes Calculator.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\453fcdd2ab8b8ec0e6d7a02abfb60c08
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\45c3a6f6bdb0531de792538fe38ee79b
HEUR:Trojan.Win32.Generic
ESF Database Migration Toolkit Standard.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4276e0c108cce6452e2b96cab30ce480
HEUR:Trojan.Win32.Generic
Araxis Merge.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4486ce0b21cec234bac1dc90a49fc796
HEUR:Trojan.Win32.Generic
Drumsite.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\462b1d7f45ee1c5eff2b2f080e29335a
HEUR:Trojan.Win32.Generic
HindiPad.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\463ece85bdfe7b864a5aade64da66181
HEUR:Trojan.Win32.Generic
PLC Training.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\46ebf580fb360766fa2c23c335df22b9
HEUR:Trojan.Win32.Generic
Kerio Control.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\47b0d9bf309a6e775fd4eef872ebe2a0
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4885b0eb1f9cb58ba34d042641916379
HEUR:Trojan.Win32.Generic
PC Helper Utilities 2007.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\45e8c28338edff8296cadc3695966522
HEUR:Trojan.Win32.Generic
WinINSTALL Desktop Availability Suite.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4974bc74ef3c9352a7e34070b04f9df4
HEUR:Trojan.Win32.Generic
Singing Tutor.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\49a6cb32e6f08ae7dd05f2ff1b34626a
HEUR:Trojan.Win32.Generic
Basketball Playbook.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\49cb640ba2c96eee0b9c12fe58885155
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\49deaa2254adcda61fc2914db9b59da1
HEUR:Trojan.Win32.Generic
AVG Anti-Virus Definitions.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\493de7d9f9af0427edbb05c3c183d813
HEUR:Trojan.Win32.Generic
Total Defense Internet Security Suite Plus.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4a29fd2b9b5f425fbbabb9b6b37c8a25
HEUR:Trojan.Win32.Generic
Media Convert Master.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\48fb681b80594ba977debf7bb0819e08
HEUR:Trojan.Win32.Generic
Bandoo.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4a4b5a025af4c10b39b05fc55448036d
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4a401155971c5096478871d7508769b4
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4a76d9e15fad8db2f7182ef73a285015
HEUR:Trojan.Win32.Generic
LabVIEW.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4b57201ee16d88bd488843d6e553af8e
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4b6c6fe03d3728d337679bd5fe2e3b42
HEUR:Trojan.Win32.Generic
PC Live Player.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4bdae111fd3a2c5707110fbdd20c810e
HEUR:Trojan.Win32.Generic
DriverFinder.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4be16bb3edf052f556fc8fe9dd25940b
HEUR:Trojan.Win32.Generic
Easy PDF to Word Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4c0e017362ac54d451279b6a99f505d8
HEUR:Trojan.Win32.Generic
iPhone PC Suite.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4c24fec64767e97fd66e122d9d5e3bb4
HEUR:Trojan.Win32.Generic
Lite x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4d33c685f43271932a5516615fee3ebb
HEUR:Trojan.Win32.Generic
ASX to MP3 Converter.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4d98563afa7516df4876e417cd4b77fe
HEUR:Trojan.Win32.Generic
Trapcode Shine.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4dbf82557773d89c1cbc54c60b08851b
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4e5c21b5436901d8bc0d84ed7f44dc36
HEUR:Trojan.Win32.Generic
DVD2AVI Ripper.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4e9ec0595b18b3a49fb23dc8d53e447b
HEUR:Trojan.Win32.Generic
CloneDVD Mobile.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4ee02ff57b17191eadc7a0931eaeec76
HEUR:Trojan.Win32.Generic
ShadowProtect Desktop Edition.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4a539c02f2b553240554eca7c61e29d2
HEUR:Trojan.Win32.Generic
Mini-stream RM-MP3 Converter (formerly Easy RM to MP3 Converter).exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4feaa1948db42d74e4b768b191a60598
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\4ff2fcfc0e31017d673ba28979f796cd
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\5032a8787bf81fb7dd659d1abe14b9c6
HEUR:Trojan.Win32.Generic
Security Monitor Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\5064543d7dd89fda6c03452b15bd6042
HEUR:Trojan.Win32.Generic
DVD-lab Authoring.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\50d09cd2f832a4ebb4e999cd136631b6
HEUR:Trojan.Win32.Generic
1st Email Address Spider.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\504ee897b04e4152dadacee49519adb8
HEUR:Trojan.Win32.Generic
TrustPort Total Protection.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\514b3a762ab840c2732de85d7441a388
HEUR:Trojan.Win32.Generic
3DMark Vantage.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\51572b8d64cbddc674c27f884a2d8680
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\520175f9d578a04e1eb598c530e58736
HEUR:Trojan.Win32.Generic
Easy Photo Movie Maker.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\53156e60e85410719ca630ad97be3fae
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\5316d433b648c9f6934fa426d488f6e4
HEUR:Trojan.Win32.Generic
WiNc.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\532f5e63153365e6eaf956d49b53f808
HEUR:Trojan.Win32.Generic
RiffMaster Pro.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\541e61c77cc2ca1bab8504b5385f945f
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\547c84c255de461241b9f50c4842426f
HEUR:Trojan.Win32.Generic
Endless Space Gold.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\549bbf7af59ab85695c74cf53c1e038a
HEUR:Trojan.Win32.Generic
Gangland.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\54087d8657a3a70d11b235ae59df5396
HEUR:Trojan.Win32.Generic
Patrician III.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\54ed183fa814c129ec68da2d0425879f
HEUR:Trojan.Win32.Generic
W32DASM.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\54b9141e6ec500c7570c6bc92c13d584
HEUR:Trojan.Win32.Generic
Total Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\5518035624d7fb9394a773ab14371720
HEUR:Trojan.Win32.Generic
WMP x264 Codec Pack.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\54fe1d21057718fad29eb2d052e4b818
HEUR:Trojan.Win32.Generic
Sims 3 Dragon Valley.exe
C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\data\5554d7d9929eed40ee7eb401ba8db0f3
HEUR:Trojan.Win32.Generic
WMP x264 Codec P
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
12 set 2014 alle 21:55
avvia malwarebytes controlla che la database delle infezioni è aggiornata
poi chiudilo ed avvia il PC in modalità provvisoria
apri Malwarebytes e fa la pulizia

Scarica USBFix
attacca tutte le tue chiavette e dischi USB
fa la scansione

mandami entrambi i report (1 post per report)
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
13 set 2014 alle 16:31
000000kkkk

report di malwzrebytes

Malwarebytes Anti-Malware
www.malwarebytes.org

Data scansione: 13/09/2014
Ora scansione: 09.29.38
File di log: mbsabato.txt
Amministratore: Si

Versione: 2.00.2.1012
Database malware: v2014.09.13.01
Database rootkit: v2014.09.12.01
Licenza: Free
Protezione da malware: Disattivata
Protezione da siti web nocivi: Disattivata
Self-protection: Disattivata

SO: Windows 8.1
CPU: x64
File system: NTFS
Utente: F550c

Tipo di scansione: Scansione personalizzata
Risultati: Completata
Elementi analizzati: 759031
Tempo impiegato: 2 ore, 51 min, 56 sec

Memoria: Attivata
Esecuzioni automatiche: Attivata
File system: Attivata
Archivi compressi: Attivata
Rootkit: Attivata
Heuristics: Attivata
PUP: Attivata
PUM: Attivata

Processi: 0
(No malicious items detected)

Moduli: 0
(No malicious items detected)

Chiavi di registro: 0
(No malicious items detected)

Valori di registro: 0
(No malicious items detected)

Dati di registro: 0
(No malicious items detected)

Cartelle: 0
(No malicious items detected)

File: 1
Trojan.Agent, C:\Users\F550c\AppData\Roaming\Microsoft\Windows\IEUpdate\JETCOMP.exe, , [20a421cbc2b9e94db2ed219140c153ad],

Settori fisici: 0
(No malicious items detected)


(end)
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
13 set 2014 alle 16:36
usbfix.....

[b]############################## | UsbFix V 7.181 | [Cerca][/b]

Utente: F550c (Amministratore) # SUSY
Aggiornato il 31/08/2014 di El Desaparecido - SosVirus
Avviato alle 16:34:52 | 13/09/2014

Sito : [url=http://www.it.usbfix.net/]http://www.it.usbfix.net/[/url]
Changelog : [url=http://www.usbfix.net/maj/]https://www.usb-antivirus.com/fr/maj/[/url]
Assistenza : [url=http://www.sosvirus.net/]https://www.sosvirus.net/[/url]
Upload Malware : [url=http://www.sosvirus.net/upload_malware.php]http://www.sosvirus.net/upload_malware.php[/url]
Contatto : [url=http://www.it.usbfix.net/contattaci/]http://www.it.usbfix.net/contattaci/[/url]

[b]################## | System information |[/b]

MB: ASUSTeK COMPUTER INC. (X550CC)
CPU: Intel(R) Core(TM) i7-3537U CPU @ 2.00GHz
RAM -> [Total : 3982 Mo | Free : 2548 Mo]
Bios: American Megatrends Inc.
Boot: SafeMode with network

OS: Microsoft(TM) Windows 8.1 (6.3.9600 64-Bit)
WB: Internet Explorer : 11.00.9600.16384
WB: Google Chrome : 37.0.2062.120
WB: Mozilla Firefox : 31.0

[b]################## | Security Information |[/b]

AV: Avira Desktop [Attivo |Aggiornamento]
AV: Windows Defender [[b](!) Spento[/b] |Aggiornamento]
AS: Avira Desktop [Attivo |Aggiornamento]
AS: Windows Defender [[b](!) Spento[/b] |Aggiornamento]
AS: Malwarebytes Anti-Malware : 2.0.2.1012
FW: Windows Firewall [Attivo]
SC: Security Center [Attivo]
WU: Windows Update [Attivo]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Disco fisso # 186 GB (35 GB libri - 19%) [OS] # NTFS
D:\ -> Disco fisso # 258 GB (164 GB libri - 64%) [DATA] # NTFS
F:\ -> Disco rimovibile # 8 GB (7 GB libri - 89%) [] # FAT32
G:\ -> Disco rimovibile # 7 GB (2 GB libri - 29%) [SP UFD U2] # FAT32

[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\WINDOWS\System32\Userinit.exe,
04 - HKCU\..\Run : [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
04 - HKCU\..\Run : [KSS] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe" /autorun
04 - HKLM\..\Run : [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
04 - HKLM\..\Run : [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
04 - HKLM\..\Run : [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
04 - HKLM\..\Run : [MobileConnect] %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent
04 - HKLM\..\Run : [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
04 - HKLM\..\RunOnce : [Malwarebytes Anti-Malware (cleanup)] "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware"
04 - HKLM\..\Policies\Explorer\run : [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
04 - [x64] HKLM\..\Run : [IgfxTray] "C:\WINDOWS\system32\igfxtray.exe"
04 - [x64] HKLM\..\Run : [HotKeysCmds] "C:\WINDOWS\system32\hkcmd.exe"
04 - [x64] HKLM\..\Run : [Persistence] "C:\WINDOWS\system32\igfxpers.exe"
04 - [x64] HKLM\..\Run : [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
04 - [x64] HKLM\..\Run : [RtHDVBg] "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
04 - [x64] HKLM\..\Run : [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
04 - [x64] HKLM\..\Policies\Explorer\run : [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
04 - HKU\S-1-5-21-130126266-3837534747-1370213360-1002\..\Run : [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
04 - HKU\S-1-5-21-130126266-3837534747-1370213360-1002\..\Run : [KSS] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe" /autorun

[b]################## | Ricerca generica |[/b]

Trovato! F:\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx
Trovato! F:\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665
Trovato! F:\Autorun.inf

[b]################## | Registro sistema |[/b]


[b]################## | UsbFix - Informazioni |[/b]

Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]Come rimuovere il virus collegamento di su disco flash (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Virus collegamento sul disco flash, cos'è?[/url]

[b]################## | Hijack |[/b]

Hijacked! [RSH] F:\autorun.inf

[b]################## | E.O.F | [url=http://www.sosvirus.net/]https://www.sosvirus.net/[/url] | [url=http://www.it.usbfix.net/]http://www.it.usbfix.net/[/url] |[/b]
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
15 set 2014 alle 13:11
ciao,

continuiamo ?

Scarica TDSSKiller e salvalo sul desktop

- Clic destro su TDSSKiller.exe poi Esegui come amministratore
- Accetta la licenza
- Clic su Change Parameters
- Spunta le opzioni Verify driver digital signatures & Detect TDLFS File System
- Click su Start Scan
- Finito lo scan, se viene rilevata un'infezione, nel menu a tendina cambia Cure in Skip
- Un report verrà salvato sul disco (C:\) nel formato TDSSKiller.3.0.0.40_15.09.2014_12.54.32_log
- Copia il contenuto del file nella tua risposta
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
15 set 2014 alle 14:22
Ciao!
Certo continuiamo.... sembra un gioco da ragazzi...(?)
Ti faccio sapere... grazie intanto :)
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
15 set 2014 alle 18:12
Spero di aver fatto giusto...

18:08:53.0683 0x03fc TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
18:08:53.0683 0x03fc UEFI system
18:08:56.0012 0x03fc ============================================================
18:08:56.0012 0x03fc Current date / time: 2014/09/15 18:08:56.0012
18:08:56.0012 0x03fc SystemInfo:
18:08:56.0012 0x03fc
18:08:56.0012 0x03fc OS Version: 6.3.9600 ServicePack: 0.0
18:08:56.0012 0x03fc Product type: Workstation
18:08:56.0012 0x03fc ComputerName: SUSY
18:08:56.0012 0x03fc UserName: F550c
18:08:56.0012 0x03fc Windows directory: C:\WINDOWS
18:08:56.0012 0x03fc System windows directory: C:\WINDOWS
18:08:56.0012 0x03fc Running under WOW64
18:08:56.0012 0x03fc Processor architecture: Intel x64
18:08:56.0012 0x03fc Number of processors: 4
18:08:56.0012 0x03fc Page size: 0x1000
18:08:56.0012 0x03fc Boot type: Normal boot
18:08:56.0012 0x03fc ============================================================
18:08:56.0609 0x03fc System UUID: {ABC77DCF-5C67-2F88-88D1-BD5D4173191D}
18:08:57.0242 0x03fc Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:08:57.0261 0x03fc ============================================================
18:08:57.0261 0x03fc \Device\Harddisk0\DR0:
18:08:57.0265 0x03fc GPT partitions:
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {C1223879-9ED5-4DD7-98A5-3BBE87DE0300}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {58FA7EF7-1D60-4EDF-B905-AC3848736E2F}, Name: Basic data partition, StartLBA 0x32800, BlocksNum 0x1C2000
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {4757782B-C8C7-42C3-B5D1-5EACDFF5A295}, Name: Microsoft reserved partition, StartLBA 0x1F4800, BlocksNum 0x40000
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {ACC52C4D-EEF3-457F-81DE-2E6899C0DB64}, Name: Basic data partition, StartLBA 0x234800, BlocksNum 0x173ED000
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {46025F29-B359-4A5C-851D-C4D9D767014F}, Name: , StartLBA 0x17621800, BlocksNum 0xAF000
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {51D8070B-C155-4AE1-82EC-E34C74E85B9D}, Name: Basic data partition, StartLBA 0x176D0800, BlocksNum 0x204B0800
18:08:57.0265 0x03fc \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {122D0591-5CAE-47D8-B5DF-94764B00401D}, Name: Basic data partition, StartLBA 0x37B81000, BlocksNum 0x2805000
18:08:57.0265 0x03fc MBR partitions:
18:08:57.0265 0x03fc ============================================================
18:08:57.0345 0x03fc C: <-> \Device\Harddisk0\DR0\Partition4
18:08:57.0427 0x03fc D: <-> \Device\Harddisk0\DR0\Partition6
18:08:57.0427 0x03fc ============================================================
18:08:57.0427 0x03fc Initialize success
18:08:57.0427 0x03fc ============================================================
18:09:02.0828 0x009c ============================================================
18:09:02.0828 0x009c Scan started
18:09:02.0828 0x009c Mode: Manual; SigCheck; TDLFS;
18:09:02.0828 0x009c ============================================================
18:09:02.0828 0x009c KSN ping started
18:09:05.0302 0x009c KSN ping finished: true
18:09:09.0051 0x009c ================ Scan system memory ========================
18:09:09.0051 0x009c System memory - ok
18:09:09.0051 0x009c ================ Scan services =============================
18:09:09.0356 0x009c [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
18:09:09.0432 0x009c 1394ohci - ok
18:09:09.0520 0x009c [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
18:09:09.0539 0x009c 3ware - ok
18:09:09.0644 0x009c [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
18:09:09.0672 0x009c ACPI - ok
18:09:09.0685 0x009c [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
18:09:09.0703 0x009c acpiex - ok
18:09:09.0767 0x009c [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
18:09:09.0777 0x009c acpipagr - ok
18:09:09.0806 0x009c [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
18:09:09.0818 0x009c AcpiPmi - ok
18:09:09.0878 0x009c [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
18:09:09.0890 0x009c acpitime - ok
18:09:10.0000 0x009c [ B1EA9681502EE57F87DB71D726288A5B, D17BD2CFAE72E92C77D183331D5CBA0FEA893BF54875920870E271940F40A8BB ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:09:10.0008 0x009c AdobeARMservice - ok
18:09:10.0354 0x009c [ FBB312C9DA3863673EC18F4AE4101778, 4E9AAE7C700E485C17FDFCC9100A79784673B006D00D4D4CE8F1DB617D25C864 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:09:10.0373 0x009c AdobeFlashPlayerUpdateSvc - ok
18:09:10.0462 0x009c [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
18:09:10.0494 0x009c ADP80XX - ok
18:09:10.0571 0x009c [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
18:09:10.0585 0x009c AeLookupSvc - ok
18:09:10.0641 0x009c [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD C:\WINDOWS\system32\drivers\afd.sys
18:09:10.0666 0x009c AFD - ok
18:09:10.0714 0x009c [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
18:09:10.0722 0x009c agp440 - ok
18:09:10.0750 0x009c [ 8E8E34B7BA059050EED827410D0697A2, 85B6684709F24729A6497563812A90A54068AC2DD9EEA03037CB1EEF5C85AAA9 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
18:09:10.0763 0x009c ahcache - ok
18:09:10.0801 0x009c [ 16F6F6B7903B913AB41AB848C8BB5658, 7304257048CB42E5274B3F6400F4A053A38E3B70A157662FE9D2B7C5979DE851 ] AiCharger C:\WINDOWS\system32\DRIVERS\AiCharger.sys
18:09:10.0814 0x009c AiCharger - ok
18:09:10.0869 0x009c [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG C:\WINDOWS\System32\alg.exe
18:09:10.0885 0x009c ALG - ok
18:09:11.0016 0x009c [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
18:09:11.0029 0x009c AmdK8 - ok
18:09:11.0084 0x009c [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
18:09:11.0099 0x009c AmdPPM - ok
18:09:11.0174 0x009c [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
18:09:11.0187 0x009c amdsata - ok
18:09:11.0321 0x009c [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
18:09:11.0335 0x009c amdsbs - ok
18:09:11.0369 0x009c [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
18:09:11.0380 0x009c amdxata - ok
18:09:11.0709 0x009c [ 0327A6CE0934C324E3E82920E9EC0EE4, B4A1E6A77032F7DF97FED3C01E76E2BD3270A3FFC500C7C9A118C0E2EB675D75 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
18:09:11.0726 0x009c AntiVirSchedulerService - ok
18:09:11.0832 0x009c [ 0327A6CE0934C324E3E82920E9EC0EE4, B4A1E6A77032F7DF97FED3C01E76E2BD3270A3FFC500C7C9A118C0E2EB675D75 ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
18:09:11.0849 0x009c AntiVirService - ok
18:09:11.0892 0x009c [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID C:\WINDOWS\system32\drivers\appid.sys
18:09:11.0905 0x009c AppID - ok
18:09:12.0027 0x009c [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
18:09:12.0040 0x009c AppIDSvc - ok
18:09:12.0126 0x009c [ 8D6F535461F6CFF75A8ADDF83024C904, F2A97EC4A6284F28B685A3CE2D450F61E75EE8692D718A6AA352D5734BBBAD7B ] Appinfo C:\WINDOWS\System32\appinfo.dll
18:09:12.0136 0x009c Appinfo - ok
18:09:12.0191 0x009c [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
18:09:12.0214 0x009c AppReadiness - ok
18:09:12.0319 0x009c [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
18:09:12.0358 0x009c AppXSvc - ok
18:09:12.0437 0x009c [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
18:09:12.0451 0x009c arcsas - ok
18:09:12.0586 0x009c [ E40AF754F43E3B44E2D6DE829267AD52, 5F9427E595A56464807D071205FB4DFD6BB21B68058E67529DC1727D32FAB0AD ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
18:09:12.0598 0x009c ASLDRService - ok
18:09:12.0651 0x009c [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
18:09:12.0658 0x009c ASMMAP64 - ok
18:09:12.0745 0x009c [ 6A122B4F0E5293CACFA8A5F2CBA9B356, 9D69076B697BEE8742E32EBEF1802D829DEA6B1D93AF485D11CC89A08CA4D809 ] ASUS InstantOn C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
18:09:12.0756 0x009c ASUS InstantOn - ok
18:09:12.0799 0x009c [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
18:09:12.0812 0x009c AsyncMac - ok
18:09:12.0877 0x009c [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
18:09:12.0885 0x009c atapi - ok
18:09:12.0935 0x009c [ 1E71A166547A110CD66EA44326DB4552, F66502ACBB50760EB0A676CB2560A539511935F016CBA2747C554F709D3FA1FE ] AthBTPort C:\WINDOWS\system32\DRIVERS\btath_flt.sys
18:09:12.0942 0x009c AthBTPort - ok
18:09:13.0107 0x009c [ FD4D06946EA00B28D09624E345D46374, 2CB9E7C3BB5E49C17BAB13633F27B48CB03DF8E06A2CE64C3E9E5D965DDC7B9D ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
18:09:13.0121 0x009c AtherosSvc - ok
18:09:13.0727 0x009c [ 688941322FB20DB0407B6F149607517D, 53ABFCE11485E307D56598BF03121DDCD8D3E75FE2D85E513252C5A649D7EBAD ] athr C:\WINDOWS\system32\DRIVERS\athwbx.sys
18:09:13.0805 0x009c athr - ok
18:09:13.0847 0x009c [ DBC598E47E7A382E60E2A4745D41FEF9, A810AC197CA456B0285E2CAE6986D38B31F4ADA32BEB47EC7A48A2B2196BA639 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
18:09:13.0858 0x009c ATKGFNEXSrv - ok
18:09:13.0929 0x009c [ 41CEAFFCF3550785E59E3EC9BEE8D97A, 89FE604088B65B82AA794E1DA8429033CD2F05FFB2D7EFAAC7B967C7A83D1B1E ] ATKWMIACPIIO C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
18:09:13.0937 0x009c ATKWMIACPIIO - ok
18:09:14.0015 0x009c [ 74D09AC81A7BD9E5361B3F623F78608A, D97271ED81F7408892CDDFC00168FF0000E6507B46A0197B1FB81F86B9034C9F ] ATP C:\WINDOWS\System32\drivers\AsusTP.sys
18:09:14.0026 0x009c ATP - ok
18:09:14.0133 0x009c [ 886767FD022213F7885416134E9082E5, E248D82210FBEBF62C23EBEC74A976B2D1A4E62D3B7638D95B2574B77BA05DD0 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
18:09:14.0150 0x009c AudioEndpointBuilder - ok
18:09:14.0205 0x009c [ 79B134ECE836B406B212E28C24011538, 1B875DD23CCAD8A2759DCDBCDCF3DE14231B9DB5EEC8E84FE081E41A52A047A1 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
18:09:14.0229 0x009c Audiosrv - ok
18:09:14.0287 0x009c [ 4663C5AD76FE8E19592DE808156FA07D, 605827B4A9D6930BC752D124BF75D55D4927B0ABEF881CDE66F3C5CC1DB215FE ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
18:09:14.0294 0x009c avgntflt - ok
18:09:14.0327 0x009c [ 8902AEC2382A37E9E99A4E0D52DBD42B, 138F2D7E7430132B2C527D413BC845CC467F084F39C232EC3A17DD2A74EE401E ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
18:09:14.0343 0x009c avipbb - ok
18:09:14.0393 0x009c [ 05ABC09DC0DFA5DF79A0BB39F60636B7, FEDE900D991F1FB40BA0A44E05181A6A506DC8B5F365E78E523CB6DF2CDACC15 ] Avira.OE.ServiceHost C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
18:09:14.0401 0x009c Avira.OE.ServiceHost - ok
18:09:14.0441 0x009c [ 390184FAD8FCC1B6DA25AEBAE928C3B6, 537B0E0FAE080B55D70E990BBA0F7F22903CA340F6A42039BAD617A8ECF59119 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
18:09:14.0450 0x009c avkmgr - ok
18:09:14.0482 0x009c [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
18:09:14.0494 0x009c AxInstSV - ok
18:09:14.0594 0x009c [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
18:09:14.0621 0x009c b06bdrv - ok
18:09:14.0680 0x009c [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
18:09:14.0691 0x009c BasicDisplay - ok
18:09:14.0777 0x009c [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
18:09:14.0789 0x009c BasicRender - ok
18:09:14.0834 0x009c [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
18:09:14.0844 0x009c bcmfn2 - ok
18:09:14.0914 0x009c [ E07C80468D0C599BFF01D9D4EC7AEDC3, F675F455924DEC3FF69AD816DFEB6E74C804AEC3D3BFF7515953DB9D79C9B2D0 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
18:09:14.0928 0x009c BDESVC - ok
18:09:14.0972 0x009c [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys
18:09:14.0981 0x009c Beep - ok
18:09:15.0046 0x009c [ 20FB137ADDE1255F15F265A7BD9579BE, 87B4D5C91EFEAD987AAC3491A4360F82824C46AFF958B6F4CAED7C12224EF159 ] BFE C:\WINDOWS\System32\bfe.dll
18:09:15.0077 0x009c BFE - ok
18:09:15.0194 0x009c [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS C:\WINDOWS\System32\qmgr.dll
18:09:15.0225 0x009c BITS - ok
18:09:15.0283 0x009c [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
18:09:15.0296 0x009c bowser - ok
18:09:15.0349 0x009c [ F2559A492AF8D653D1F47ADABA4C3E97, 77347915FB433023769699DFC9511F54E69C7FC7AB75F57FDC1A58E64A7126DE ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
18:09:15.0368 0x009c BrokerInfrastructure - ok
18:09:15.0451 0x009c [ 041A999E4FF9A7CDBE67357751881FB8, 356C52637EA715D6FA2B65BD311C9BF1635A582023434902EC2DE4A2448961F8 ] Browser C:\WINDOWS\System32\browser.dll
18:09:15.0462 0x009c Browser - ok
18:09:15.0596 0x009c [ 5ED7B1EE371751CF2ACAE89E7FC566FA, 965A4A754D8418F1DCF421277799754D55D78F8AD6652C56879D22208F5B5DCA ] BTATH_A2DP C:\WINDOWS\system32\drivers\btath_a2dp.sys
18:09:15.0611 0x009c BTATH_A2DP - ok
18:09:15.0652 0x009c [ 31BDF24D1C9213A0E891568FE643C79C, DA6C06A282934E87D4BB8E4356C76898B5AAC79C1634440CE09514F22EE3112B ] btath_avdt C:\WINDOWS\system32\drivers\btath_avdt.sys
18:09:15.0663 0x009c btath_avdt - ok
18:09:15.0673 0x009c [ 4AF7C20F94DAC343C01ED671C82DCB99, 2AABD85D9D76461DE883E0F13F61C391BA81E6198FF88268B319474E25A196C8 ] BTATH_HCRP C:\WINDOWS\System32\drivers\btath_hcrp.sys
18:09:15.0688 0x009c BTATH_HCRP - ok
18:09:15.0703 0x009c [ 785C38070043BEEE9E9D591DE4067244, 1C8D15B8A9E80A2799E7094C4AE111FEA9FBC6EAA4A61B13EFE59314C9794949 ] BTATH_LWFLT C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys
18:09:15.0711 0x009c BTATH_LWFLT - ok
18:09:15.0742 0x009c [ 31EC5FC3FC5CB273F2709AAF4AD88ED4, 804401CEBBB24443AE0A304FCF5CB6B0D7679BA7FC5DC3BFF968B0B44FE34EC1 ] BTATH_RCP C:\WINDOWS\System32\drivers\btath_rcp.sys
18:09:15.0755 0x009c BTATH_RCP - ok
18:09:15.0925 0x009c [ B4A748101F8A06EFD0BF89AA7220B6EE, E36BA3EE483E3FBF45C2E97FA682D94EEA02856D3B4171A1A3507EDCF9B16A87 ] BtFilter C:\WINDOWS\system32\DRIVERS\btfilter.sys
18:09:15.0942 0x009c BtFilter - ok
18:09:16.0014 0x009c [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
18:09:16.0023 0x009c BthAvrcpTg - ok
18:09:16.0106 0x009c [ 131F1C8573E7BFB41C54FBF5309CCD94, DAFE51E3BADBD82A33B580F212B2D6520A120877C23F6D675521FEA2F4BA5A1F ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
18:09:16.0115 0x009c BthEnum - ok
18:09:16.0203 0x009c [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
18:09:16.0216 0x009c BthHFEnum - ok
18:09:16.0233 0x009c [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
18:09:16.0245 0x009c bthhfhid - ok
18:09:16.0336 0x009c [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys
18:09:16.0350 0x009c BthLEEnum - ok
18:09:16.0453 0x009c [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
18:09:16.0465 0x009c BTHMODEM - ok
18:09:16.0520 0x009c [ 25BB93167DEF270188072603F92A1EF5, CE4637CE4B63420E218F53CAF89A8C85D036B879B80456FEF3C7C395590E26BB ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys
18:09:16.0533 0x009c BthPan - ok
18:09:16.0591 0x009c [ 97B9076611291AE4C4C107BC915BD026, 0A77873AAF1ADB76CAB98A84D2242781E34E2699632E45EB92ED7DB20B2BE0C1 ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys
18:09:16.0636 0x009c BTHPORT - ok
18:09:16.0706 0x009c [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv C:\WINDOWS\system32\bthserv.dll
18:09:16.0720 0x009c bthserv - ok
18:09:16.0914 0x009c [ 23E75BED9076F856B36F5F934BBD5795, CCEB72B788522B7D52A6C07646005EBC68F9599D3714ECACF3A194CA47A1BE85 ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys
18:09:16.0927 0x009c BTHUSB - ok
18:09:16.0975 0x009c [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
18:09:16.0990 0x009c cdfs - ok
18:09:17.0078 0x009c [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
18:09:17.0093 0x009c cdrom - ok
18:09:17.0127 0x009c [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
18:09:17.0144 0x009c CertPropSvc - ok
18:09:17.0223 0x009c [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
18:09:17.0235 0x009c circlass - ok
18:09:17.0333 0x009c [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
18:09:17.0362 0x009c CLFS - ok
18:09:17.0428 0x009c [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
18:09:17.0440 0x009c CmBatt - ok
18:09:17.0612 0x009c [ 1CD3A907D64D08F49208DA00B69BF35E, ABBD70FFCA0DE2274D855AFC08BF7BC0AA6D44EFC9FDBF7DF44B73CD5C210E28 ] CNG C:\WINDOWS\system32\Drivers\cng.sys
18:09:17.0647 0x009c CNG - ok
18:09:17.0708 0x009c [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
18:09:17.0717 0x009c CompositeBus - ok
18:09:17.0721 0x009c COMSysApp - ok
18:09:17.0794 0x009c [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys
18:09:17.0811 0x009c condrv - ok
18:09:18.0188 0x009c [ F9693D45B0F1B346CCDEEC1F341AD389, 342C81EFB434EAC29865F8BB049051635C644D7EF355D0F5FB3ADD9DDCE55D82 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
18:09:18.0208 0x009c cphs - ok
18:09:18.0270 0x009c [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
18:09:18.0288 0x009c CryptSvc - ok
18:09:18.0324 0x009c [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys
18:09:18.0337 0x009c dam - ok
18:09:18.0494 0x009c [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
18:09:18.0527 0x009c DcomLaunch - ok
18:09:18.0634 0x009c [ D249C3A58A4FCF755EF4C94F7047E015, 68C044CE2DB93FB502F85F6E081EA164F6E6DCBA6B3EE2A5CBDA122065E522F8 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
18:09:18.0659 0x009c defragsvc - ok
18:09:18.0856 0x009c [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\WINDOWS\system32\das.dll
18:09:18.0878 0x009c DeviceAssociationService - ok
18:09:18.0953 0x009c [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
18:09:18.0973 0x009c DeviceInstall - ok
18:09:19.0029 0x009c [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
18:09:19.0044 0x009c Dfsc - ok
18:09:19.0111 0x009c [ 73BDD44A6088916964945886F9025409, 8E2ECC9AAEF3C6EBA2E61D25F657FDFCC72AB517CC4FD5FFF992E1F9EB942662 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
18:09:19.0127 0x009c dg_ssudbus - ok
18:09:19.0169 0x009c [ 05DE04005CE0D84D0E6AD21CAEB369C6, E6704A2A685BCFD560796D7C328F8E53DF0793DBDA590598A492D9070D109298 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
18:09:19.0187 0x009c Dhcp - ok
18:09:19.0237 0x009c [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys
18:09:19.0251 0x009c disk - ok
18:09:19.0276 0x009c [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
18:09:19.0287 0x009c dmvsc - ok
18:09:19.0357 0x009c [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
18:09:19.0370 0x009c Dnscache - ok
18:09:19.0441 0x009c [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc C:\WINDOWS\System32\dot3svc.dll
18:09:19.0459 0x009c dot3svc - ok
18:09:19.0510 0x009c [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4 C:\WINDOWS\system32\DRIVERS\Dot4.sys
18:09:19.0521 0x009c dot4 - ok
18:09:19.0557 0x009c [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys
18:09:19.0565 0x009c Dot4Print - ok
18:09:19.0599 0x009c [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb C:\WINDOWS\system32\DRIVERS\dot4usb.sys
18:09:19.0608 0x009c dot4usb - ok
18:09:19.0695 0x009c [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS C:\WINDOWS\system32\dps.dll
18:09:19.0710 0x009c DPS - ok
18:09:19.0782 0x009c [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
18:09:19.0789 0x009c drmkaud - ok
18:09:19.0839 0x009c [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
18:09:19.0860 0x009c DsmSvc - ok
18:09:20.0015 0x009c [ 313DCE665B57000B18CB26C6B6A10DFE, 6C332D4AD13A316C192321AB7E7597E66AF8E1688101FFD851E06C52128DBA52 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
18:09:20.0061 0x009c DXGKrnl - ok
18:09:20.0092 0x009c [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost C:\WINDOWS\System32\eapsvc.dll
18:09:20.0108 0x009c Eaphost - ok
18:09:20.0361 0x009c [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
18:09:20.0446 0x009c ebdrv - ok
18:09:20.0577 0x009c [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS C:\WINDOWS\System32\lsass.exe
18:09:20.0589 0x009c EFS - ok
18:09:20.0639 0x009c [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
18:09:20.0651 0x009c EhStorClass - ok
18:09:20.0673 0x009c [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
18:09:20.0684 0x009c EhStorTcgDrv - ok
18:09:20.0783 0x009c [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
18:09:20.0793 0x009c ErrDev - ok
18:09:20.0923 0x009c [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem C:\WINDOWS\system32\es.dll
18:09:20.0942 0x009c EventSystem - ok
18:09:20.0975 0x009c [ 0B8880F8D9A781670557307E2BCA6BD6, C7B2055F0B9767CD3350F9A60FF071E849AF1964C0F228388C015FEEB54B9CC9 ] ewusbnet C:\WINDOWS\system32\DRIVERS\ewusbnet.sys
18:09:20.0991 0x009c ewusbnet - ok
18:09:21.0045 0x009c [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
18:09:21.0065 0x009c exfat - ok
18:09:21.0089 0x009c [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
18:09:21.0108 0x009c fastfat - ok
18:09:21.0219 0x009c [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax C:\WINDOWS\system32\fxssvc.exe
18:09:21.0246 0x009c Fax - ok
18:09:21.0268 0x009c [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
18:09:21.0280 0x009c fdc - ok
18:09:21.0330 0x009c [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost C:\WINDOWS\system32\fdPHost.dll
18:09:21.0348 0x009c fdPHost - ok
18:09:21.0434 0x009c [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub C:\WINDOWS\system32\fdrespub.dll
18:09:21.0450 0x009c FDResPub - ok
18:09:21.0473 0x009c [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc C:\WINDOWS\system32\fhsvc.dll
18:09:21.0488 0x009c fhsvc - ok
18:09:21.0606 0x009c [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
18:09:21.0618 0x009c FileInfo - ok
18:09:21.0670 0x009c [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
18:09:21.0685 0x009c Filetrace - ok
18:09:21.0703 0x009c [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
18:09:21.0718 0x009c flpydisk - ok
18:09:21.0839 0x009c [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
18:09:21.0860 0x009c FltMgr - ok
18:09:22.0111 0x009c [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache C:\WINDOWS\system32\FntCache.dll
18:09:22.0142 0x009c FontCache - ok
18:09:22.0414 0x009c [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:09:22.0425 0x009c FontCache3.0.0.0 - ok
18:09:22.0532 0x009c [ F59F2C574AA5D84477EB89F87C938F16, 0F3905D56440F9216911F7338061CFB8BEF243DDF9DC1E5D57254874EBBFA629 ] fsbts C:\WINDOWS\system32\Drivers\fsbts.sys
18:09:22.0544 0x009c fsbts - ok
18:09:22.0598 0x009c [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
18:09:22.0610 0x009c FsDepends - ok
18:09:22.0683 0x009c [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
18:09:22.0693 0x009c Fs_Rec - ok
18:09:22.0875 0x009c [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
18:09:22.0896 0x009c fvevol - ok
18:09:22.0969 0x009c [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
18:09:22.0980 0x009c FxPPM - ok
18:09:23.0010 0x009c [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
18:09:23.0018 0x009c gagp30kx - ok
18:09:23.0083 0x009c [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
18:09:23.0095 0x009c gencounter - ok
18:09:23.0223 0x009c [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
18:09:23.0233 0x009c GPIOClx0101 - ok
18:09:23.0449 0x009c [ 69DB09F0263C637DA8568D404842466A, D042194266978AAD31E04DAF7018CD50754077212DC74A4D8AFF6BFEE80CDD20 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
18:09:23.0479 0x009c gpsvc - ok
18:09:23.0743 0x009c [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:09:23.0749 0x009c gupdatem - ok
18:09:23.0799 0x009c [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
18:09:23.0807 0x009c HDAudBus - ok
18:09:23.0890 0x009c [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
18:09:23.0901 0x009c HidBatt - ok
18:09:23.0996 0x009c [ 1EA1B4FABB8CC348E73CA90DBA22E104, 5C18C6BD499272F216DD4626B5E8D38181AEAC9AD917FBEB614A75B70467B258 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
18:09:24.0006 0x009c HidBth - ok
18:09:24.0042 0x009c [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
18:09:24.0054 0x009c hidi2c - ok
18:09:24.0087 0x009c [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
18:09:24.0100 0x009c HidIr - ok
18:09:24.0154 0x009c [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv C:\WINDOWS\system32\hidserv.dll
18:09:24.0166 0x009c hidserv - ok
18:09:24.0241 0x009c [ 894D982CEAB8CD45A56AE2C9988E86C0, AA2DEB62CB69FF1AEF772989342F2CF77CA48F212C9489A92A4FF97FD46D3866 ] HIDSwitch C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys
18:09:24.0247 0x009c HIDSwitch - ok
18:09:24.0319 0x009c [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
18:09:24.0328 0x009c HidUsb - ok
18:09:24.0409 0x009c [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
18:09:24.0426 0x009c hkmsvc - ok
18:09:24.0566 0x009c [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
18:09:24.0585 0x009c HomeGroupListener - ok
18:09:24.0695 0x009c [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
18:09:24.0715 0x009c HomeGroupProvider - ok
18:09:24.0783 0x009c [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
18:09:24.0792 0x009c HpSAMD - ok
18:09:25.0081 0x009c [ C995EA1C6915D897E06D41AF95B9312C, 65DE6599F1C735BBDCCE4728F7F98167BCA0BF1B8D4218BBF7546B025C9A38BD ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
18:09:25.0103 0x009c HPSLPSVC - detected UnsignedFile.Multi.Generic ( 1 )
18:09:25.0157 0x009c HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning
18:09:27.0850 0x009c [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
18:09:27.0880 0x009c HTTP - ok
18:09:27.0935 0x009c [ 3E31C1470ABA81BA2DCB956F8504C037, 605420F038901EA180F1139241513AD62C5FEC0CB5E568A2EF50618C8C348DE9 ] hwdatacard C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys
18:09:27.0947 0x009c hwdatacard - ok
18:09:27.0973 0x009c [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
18:09:27.0984 0x009c hwpolicy - ok
18:09:28.0044 0x009c [ B45B3647BA32749B94FA689175EC8C26, F0876ECA6FA66A296DB7E11FA9E4094D96064AE87EC21CC752C9B7E6A7DFEDD2 ] hwusbfake C:\WINDOWS\system32\DRIVERS\ewusbfake.sys
18:09:28.0053 0x009c hwusbfake - ok
18:09:28.0113 0x009c [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
18:09:28.0121 0x009c hyperkbd - ok
18:09:28.0159 0x009c [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
18:09:28.0171 0x009c HyperVideo - ok
18:09:28.0210 0x009c [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
18:09:28.0221 0x009c i8042prt - ok
18:09:28.0267 0x009c [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
18:09:28.0275 0x009c iaLPSSi_GPIO - ok
18:09:28.0298 0x009c [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
18:09:28.0305 0x009c iaLPSSi_I2C - ok
18:09:28.0348 0x009c [ 6C91E425ACE29594BD574DE38AC9B76D, 697784E4C7AF08B1F35662D8AD871E6890CECE22B6E64985B7C1A66C10DA390D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
18:09:28.0372 0x009c iaStorA - ok
18:09:28.0418 0x009c [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
18:09:28.0439 0x009c iaStorAV - ok
18:09:28.0564 0x009c [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
18:09:28.0585 0x009c iaStorV - ok
18:09:28.0715 0x009c [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
18:09:28.0728 0x009c ICCS - ok
18:09:28.0874 0x009c [ ACD1812E8A531E1CEA09BA3991371E48, 87CAE32D26A36B0AEF8EC884CDFE3E6A572C9330206E004BD63423ED00BB5A62 ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
18:09:28.0932 0x009c IconMan_R - ok
18:09:28.0936 0x009c IEEtwCollectorService - ok
18:09:29.0345 0x009c [ 16D939A13CFB82DEE0B9DB12E45C7B4E, D09C57DE3EF7F6BEDD354FEEDB46260FDCF9F9A0F2D096FFD518509AD041AAC5 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
18:09:29.0438 0x009c igfx - ok
18:09:29.0654 0x009c [ DEA76F90F9777E3427D70E380222B23B, B917BA423896A12E45623E3D494CA03317A6FC612CA433C62C897524DC3E756B ] IKEEXT C:\WINDOWS\System32\ikeext.dll
18:09:29.0686 0x009c IKEEXT - ok
18:09:29.0741 0x009c [ DB65573521AB51941F4FA799D0968136, 418F5E3FE725B7B114F3DAEBDCEBCE7F4AD8ECAAFF572C02BA9ACCE86D55BFD8 ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
18:09:29.0750 0x009c intaud_WaveExtensible - ok
18:09:30.0124 0x009c [ 6C7970A8E0546A4D9466E0045C7DB199, 70F2D58514C8E1A1E10B833236213F87F34AEB06ACC0D4C0DF61FCD69F8F1E07 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
18:09:30.0217 0x009c IntcAzAudAddService - ok
18:09:30.0365 0x009c [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
18:09:30.0384 0x009c IntcDAud - ok
18:09:30.0564 0x009c [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
18:09:30.0590 0x009c Intel(R) Capability Licensing Service Interface - ok
18:09:30.0680 0x009c [ 9656F8E29F6C3161A3E99BCD3A472FF9, 30AD00B53CCB2E4121508729F3471D3C0568F1C32324C398382C97E8BC43ECF0 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
18:09:30.0696 0x009c Intel(R) ME Service - ok
18:09:30.0736 0x009c [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
18:09:30.0748 0x009c intelide - ok
18:09:30.0859 0x009c [ 139CFCDCD36B1B1782FD8C0014AC9B0E, E0D7E0E9B46A8CECE138D689820023BFA650FB689E4FD62855BED37E04F2D9FF ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
18:09:30.0872 0x009c intelpep - ok
18:09:30.0921 0x009c [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
18:09:30.0934 0x009c intelppm - ok
18:09:30.0980 0x009c [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
18:09:30.0998 0x009c IpFilterDriver - ok
18:09:31.0075 0x009c [ 1670A274ED1A815311BA33CD27B0D0E8, 28378D3908DCFA2C0E8FCF83E5AFEF643C89BBB285FA0F1692FE576AEA2F4E45 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
18:09:31.0104 0x009c iphlpsvc - ok
18:09:31.0132 0x009c [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
18:09:31.0148 0x009c IPMIDRV - ok
18:09:31.0198 0x009c [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
18:09:31.0215 0x009c IPNAT - ok
18:09:31.0246 0x009c [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
18:09:31.0262 0x009c IRENUM - ok
18:09:31.0307 0x009c [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
18:09:31.0318 0x009c isapnp - ok
18:09:31.0360 0x009c [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
18:09:31.0374 0x009c iScsiPrt - ok
18:09:31.0415 0x009c [ 2C04ACF9070282AC9AA837C52CA3C128, 2C68FE2E876E5089F27021038E868E21288F694F3ED0390AED5B4712CC7567EC ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
18:09:31.0424 0x009c iwdbus - ok
18:09:31.0488 0x009c [ 78ABBE558F57144047F10A0F50FE4B2F, 6BE608F7697D83FD6C7E6EA422AC5637933BDC96B1044C12DE9A419CE7D6F6CE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
18:09:31.0501 0x009c jhi_service - ok
18:09:31.0539 0x009c [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
18:09:31.0547 0x009c kbdclass - ok
18:09:31.0596 0x009c [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
18:09:31.0608 0x009c kbdhid - ok
18:09:31.0663 0x009c [ A8080BEBCDB7A16495CE1205921DCAC5, D4B0EF97B75BF75934A0BEEE48CACD20E8F505600C3A07243DF7627680EE8552 ] kbfiltr C:\WINDOWS\System32\drivers\kbfiltr.sys
18:09:31.0667 0x009c kbfiltr - ok
18:09:31.0697 0x009c [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
18:09:31.0707 0x009c kdnic - ok
18:09:31.0721 0x009c [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso C:\WINDOWS\system32\lsass.exe
18:09:31.0733 0x009c KeyIso - ok
18:09:31.0766 0x009c [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
18:09:31.0779 0x009c KSecDD - ok
18:09:31.0888 0x009c [ F88CC88F4A6D8476F1664E805CA18CC2, 2C61EE5EEA4FD45AA3FA927CC16E34EF90BD44324EAB14198AF65C3A27617991 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
18:09:31.0924 0x009c KSecPkg - ok
18:09:32.0082 0x009c [ EFB2614E9142FA4427CE82EE6DC0CA7B, DE67CED09EA1A3B10BF0F3B22B2675844122783AE2523CE01E0BDE2691FC684A ] KSS C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe
18:09:32.0096 0x009c KSS - ok
18:09:32.0134 0x009c [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
18:09:32.0144 0x009c ksthunk - ok
18:09:32.0267 0x009c [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
18:09:32.0285 0x009c KtmRm - ok
18:09:32.0450 0x009c [ 793EACA6BAE9F481C2059BCB3743EB4A, 2624905C6B6A1227BD1CAC7D4FE55A5F6543E1278DAB31EC553748472D180D1D ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
18:09:32.0470 0x009c LanmanServer - ok
18:09:32.0707 0x009c [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
18:09:32.0721 0x009c LanmanWorkstation - ok
18:09:33.0018 0x009c [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
18:09:33.0034 0x009c lfsvc - ok
18:09:33.0087 0x009c [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
18:09:33.0102 0x009c lltdio - ok
18:09:33.0258 0x009c [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
18:09:33.0278 0x009c lltdsvc - ok
18:09:33.0379 0x009c [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
18:09:33.0391 0x009c lmhosts - ok
18:09:33.0594 0x009c [ 2C24DC448DBE8DB9BE1441B824C57E79, DA2257EEC964A47D03C2BB13317FD788E51D4685E2395B303ED7B2575FEF3B19 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
18:09:33.0611 0x009c LMS - ok
18:09:33.0654 0x009c [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
18:09:33.0667 0x009c LSI_SAS - ok
18:09:33.0688 0x009c [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
18:09:33.0698 0x009c LSI_SAS2 - ok
18:09:33.0718 0x009c [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
18:09:33.0732 0x009c LSI_SAS3 - ok
18:09:33.0767 0x009c [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
18:09:33.0779 0x009c LSI_SSS - ok
18:09:33.0875 0x009c [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM C:\WINDOWS\System32\lsm.dll
18:09:33.0895 0x009c LSM - ok
18:09:33.0945 0x009c [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
18:09:33.0958 0x009c luafv - ok
18:09:34.0018 0x009c [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys
18:09:34.0026 0x009c megasas - ok
18:09:34.0138 0x009c [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
18:09:34.0161 0x009c megasr - ok
18:09:34.0225 0x009c [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
18:09:34.0235 0x009c MEIx64 - ok
18:09:34.0351 0x009c [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
18:09:34.0362 0x009c Microsoft Office Groove Audit Service - ok
18:09:34.0412 0x009c [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS C:\WINDOWS\system32\mmcss.dll
18:09:34.0424 0x009c MMCSS - ok
18:09:34.0495 0x009c [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys
18:09:34.0508 0x009c Modem - ok
18:09:34.0549 0x009c [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
18:09:34.0559 0x009c monitor - ok
18:09:34.0581 0x009c [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
18:09:34.0593 0x009c mouclass - ok
18:09:34.0607 0x009c [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
18:09:34.0619 0x009c mouhid - ok
18:09:34.0632 0x009c [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
18:09:34.0645 0x009c mountmgr - ok
18:09:34.0731 0x009c [ 817EFA0406E506784AB734CFB7DBD28E, 301C14DFCFE9AA27E93A5161E3BA74A8139EA8778FC9C4AA16623B673B6DD58F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:09:34.0744 0x009c MozillaMaintenance - ok
18:09:34.0828 0x009c [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
18:09:34.0842 0x009c mpsdrv - ok
18:09:35.0078 0x009c [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
18:09:35.0104 0x009c MpsSvc - ok
18:09:35.0162 0x009c [ 1D55DADC22D21883A2F80297F5A5AE48, B79DF4AFC2A9CBC54E74233596544D6E41C8CAA0516BD57CA695D051EC780265 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
18:09:35.0176 0x009c MRxDAV - ok
18:09:35.0218 0x009c [ 7A1A3F213CDB3363D179D5014272025D, 6756F5B7D9FBF6839DB1FF4E94EA45B5499D7DF925E75581C96FBBA4BE131542 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
18:09:35.0240 0x009c mrxsmb - ok
18:09:35.0309 0x009c [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
18:09:35.0325 0x009c mrxsmb10 - ok
18:09:35.0360 0x009c [ C910E5D18958914A66F0E45689D0B40A, AD7C91DD8A60A511E580DD56BACC97F85075A539E7C5D95040A8F870A621DAF4 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
18:09:35.0376 0x009c mrxsmb20 - ok
18:09:35.0412 0x009c [ E0927EFA25D473367C3341B9F5969779, B77A162BD3334557623674373D8EC2BE7CC0B359DF06304E467ABFFEE0530271 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
18:09:35.0424 0x009c MsBridge - ok
18:09:35.0499 0x009c [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC C:\WINDOWS\System32\msdtc.exe
18:09:35.0509 0x009c MSDTC - ok
18:09:35.0544 0x009c [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
18:09:35.0553 0x009c Msfs - ok
18:09:35.0618 0x009c [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
18:09:35.0626 0x009c msgpiowin32 - ok
18:09:35.0672 0x009c [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
18:09:35.0680 0x009c mshidkmdf - ok
18:09:35.0757 0x009c [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
18:09:35.0766 0x009c mshidumdf - ok
18:09:35.0812 0x009c [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
18:09:35.0819 0x009c msisadrv - ok
18:09:35.0885 0x009c [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
18:09:35.0899 0x009c MSiSCSI - ok
18:09:35.0903 0x009c msiserver - ok
18:09:35.0972 0x009c [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
18:09:35.0982 0x009c MSKSSRV - ok
18:09:36.0019 0x009c [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
18:09:36.0031 0x009c MsLldp - ok
18:09:36.0081 0x009c [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
18:09:36.0091 0x009c MSPCLOCK - ok
18:09:36.0140 0x009c [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
18:09:36.0150 0x009c MSPQM - ok
18:09:36.0305 0x009c [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
18:09:36.0323 0x009c MsRPC - ok
18:09:36.0364 0x009c [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
18:09:36.0375 0x009c mssmbios - ok
18:09:36.0392 0x009c [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
18:09:36.0402 0x009c MSTEE - ok
18:09:36.0425 0x009c [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
18:09:36.0436 0x009c MTConfig - ok
18:09:36.0461 0x009c [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys
18:09:36.0473 0x009c Mup - ok
18:09:36.0488 0x009c [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
18:09:36.0534 0x009c mvumis - ok
18:09:36.0732 0x009c [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent C:\WINDOWS\system32\qagentRT.dll
18:09:36.0753 0x009c napagent - ok
18:09:36.0807 0x009c [ 26ACA481FAFEC59FE311D719E3027BBA, 16A24CCA95A38BDFE970580159F6ACAA13FF1B74CF2290B1B020D909F90D3347 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
18:09:36.0823 0x009c NativeWifiP - ok
18:09:36.0976 0x009c [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
18:09:37.0001 0x009c NcaSvc - ok
18:09:37.0082 0x009c [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService C:\WINDOWS\System32\ncbservice.dll
18:09:37.0098 0x009c NcbService - ok
18:09:37.0133 0x009c [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
18:09:37.0152 0x009c NcdAutoSetup - ok
18:09:37.0524 0x009c [ E4B4BE2D7750849C07589DA0B0AABA01, BB5AA727BA018A94B5DE2C4E0B594DD2E7A2B3457885446EE568F3A1E18AB3B0 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
18:09:37.0556 0x009c NDIS - ok
18:09:37.0611 0x009c [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
18:09:37.0624 0x009c NdisCap - ok
18:09:37.0648 0x009c [ B1AA3B19A2E596A59224F893E01A5A75, E08696CA5E087E51AC3E64D4FB8490EEADD612DDF30C9A94DD1BD1BA124B71B7 ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
18:09:37.0662 0x009c NdisImPlatform - ok
18:09:37.0693 0x009c [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
18:09:37.0704 0x009c NdisTapi - ok
18:09:37.0762 0x009c [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
18:09:37.0774 0x009c Ndisuio - ok
18:09:37.0789 0x009c [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
18:09:37.0802 0x009c NdisVirtualBus - ok
18:09:37.0871 0x009c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
18:09:37.0893 0x009c NdisWan - ok
18:09:37.0899 0x009c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
18:09:37.0916 0x009c NdisWanLegacy - ok
18:09:37.0970 0x009c [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
18:09:37.0984 0x009c NDProxy - ok
18:09:38.0018 0x009c [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
18:09:38.0034 0x009c Ndu - ok
18:09:38.0059 0x009c [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\System32\HPZinw12.dll
18:09:38.0064 0x009c Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
18:09:38.0064 0x009c Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
18:09:40.0586 0x009c [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
18:09:40.0601 0x009c NetBIOS - ok
18:09:40.0649 0x009c [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
18:09:40.0667 0x009c NetBT - ok
18:09:40.0688 0x009c [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon C:\WINDOWS\system32\lsass.exe
18:09:40.0696 0x009c Netlogon - ok
18:09:40.0761 0x009c [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman C:\WINDOWS\System32\netman.dll
18:09:40.0775 0x009c Netman - ok
18:09:40.0994 0x009c [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
18:09:41.0019 0x009c netprofm - ok
18:09:41.0174 0x009c [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:09:41.0183 0x009c NetTcpPortSharing - ok
18:09:41.0246 0x009c [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] ne
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
15 set 2014 alle 18:36
mi sembra che non abbia copiato tutto....

18:09:41.0183 0x009c NetTcpPortSharing - ok
18:09:41.0246 0x009c [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc C:\WINDOWS\system32\DRIVERS\netvsc63.sys
18:09:41.0255 0x009c netvsc - ok
18:09:41.0371 0x009c [ 3A280F3B3C7A46E29C404ACD46ECBF5E, 81C3367A2A212DBCC65B8A0166FD092E3205AB31A146B4B737061335CEC51F9D ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
18:09:41.0396 0x009c NlaSvc - ok
18:09:41.0486 0x009c [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
18:09:41.0499 0x009c Npfs - ok
18:09:41.0590 0x009c [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
18:09:41.0600 0x009c npsvctrig - ok
18:09:41.0681 0x009c [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi C:\WINDOWS\system32\nsisvc.dll
18:09:41.0690 0x009c nsi - ok
18:09:41.0750 0x009c [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
18:09:41.0763 0x009c nsiproxy - ok
18:09:42.0027 0x009c [ 038C77D577900EE39410662478BB0D50, A33AAFD5750245C17A47EC71F3C6EAD2E0925CAD34C65AB3E6CEE44756C668E6 ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
18:09:42.0105 0x009c Ntfs - ok
18:09:42.0188 0x009c [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys
18:09:42.0200 0x009c Null - ok
18:09:43.0983 0x009c [ E71E299FF15390E585BACF2C18F55078, 7A51D989DA55349B1761839DEAFD593B6E6F88C433B132E7B027467E050FBA67 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
18:09:44.0233 0x009c nvlddmkm - ok
18:09:44.0346 0x009c [ FCC3A3F875C8CF258F71BE2F2CAA2355, BD174C47329F0A15D821E51997E4CDAA68FB9BFD72A89A2F2A85A8603625EB18 ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys
18:09:44.0354 0x009c nvpciflt - ok
18:09:44.0420 0x009c [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
18:09:44.0435 0x009c nvraid - ok
18:09:44.0477 0x009c [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
18:09:44.0487 0x009c nvstor - ok
18:09:44.0546 0x009c [ 9661A7615FAFFC253458B17FA849DA5A, 386BE2E45D27B36E79491C8E7CB1DA977BC253751ADDC6A18DCF75459A33D05F ] nvsvc C:\Windows\system32\nvvsvc.exe
18:09:44.0576 0x009c nvsvc - ok
18:09:44.0849 0x009c [ A9AFE5B0648C8D7A411A72D8222F7F6E, A58AF8C615D97C769DA778D56F7E6999AAEB577C82C65455D3B2A8ED5B742777 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
18:09:44.0886 0x009c nvUpdatusService - ok
18:09:44.0908 0x009c [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
18:09:44.0922 0x009c nv_agp - ok
18:09:45.0086 0x009c [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
18:09:45.0106 0x009c odserv - ok
18:09:45.0188 0x009c [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:09:45.0201 0x009c ose - ok
18:09:45.0262 0x009c [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
18:09:45.0280 0x009c p2pimsvc - ok
18:09:45.0498 0x009c [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
18:09:45.0513 0x009c p2psvc - ok
18:09:45.0550 0x009c [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys
18:09:45.0565 0x009c Parport - ok
18:09:45.0603 0x009c [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
18:09:45.0612 0x009c partmgr - ok
18:09:45.0726 0x009c [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
18:09:45.0747 0x009c PcaSvc - ok
18:09:45.0834 0x009c [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\WINDOWS\system32\drivers\pci.sys
18:09:45.0854 0x009c pci - ok
18:09:45.0937 0x009c [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
18:09:45.0947 0x009c pciide - ok
18:09:45.0981 0x009c [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
18:09:45.0995 0x009c pcmcia - ok
18:09:46.0057 0x009c [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
18:09:46.0065 0x009c pcw - ok
18:09:46.0099 0x009c [ B9D968D8E2B0F9C6301CEB39CFC9B9E4, 83F32831B0727F18B56DC3CAF37E45A3523D2BBCD54D1421F0DE5A0179D8A404 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
18:09:46.0111 0x009c pdc - ok
18:09:46.0312 0x009c [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
18:09:46.0341 0x009c PEAUTH - ok
18:09:46.0969 0x009c [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
18:09:46.0981 0x009c PerfHost - ok
18:09:47.0166 0x009c [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla C:\WINDOWS\system32\pla.dll
18:09:47.0205 0x009c pla - ok
18:09:47.0242 0x009c [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
18:09:47.0258 0x009c PlugPlay - ok
18:09:47.0320 0x009c [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\System32\HPZipm12.dll
18:09:47.0329 0x009c Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
18:09:47.0329 0x009c Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
18:09:49.0997 0x009c [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
18:09:50.0008 0x009c PNRPAutoReg - ok
18:09:50.0196 0x009c [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
18:09:50.0214 0x009c PNRPsvc - ok
18:09:50.0412 0x009c [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
18:09:50.0433 0x009c PolicyAgent - ok
18:09:50.0509 0x009c [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power C:\WINDOWS\system32\umpo.dll
18:09:50.0522 0x009c Power - ok
18:09:50.0555 0x009c [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
18:09:50.0571 0x009c PptpMiniport - ok
18:09:51.0478 0x009c [ C0B3AD50136FE57C2548BD75CAC49DA2, B5661CE7631C5D1B1C50F36EE66AF6DF2E9E69DA1D9BA7C852E74D206F72D8DB ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
18:09:51.0536 0x009c PrintNotify - ok
18:09:51.0710 0x009c [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys
18:09:51.0722 0x009c Processor - ok
18:09:51.0870 0x009c [ EF1F8B57323E5D3FC6A0A25F98F90DBC, F50E81151604DCD59BB647FD6767C1631AE48B5FCA6D3423C4E32535C94D6369 ] ProfSvc C:\WINDOWS\system32\profsvc.dll
18:09:51.0887 0x009c ProfSvc - ok
18:09:52.0000 0x009c [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
18:09:52.0020 0x009c Psched - ok
18:09:52.0079 0x009c [ 07D57B890DD5693A6AB660CBAE8F91B4, 934895A41C116056E22FE3298418332A9F4280F96E96EEE06C977A4925395674 ] PxHlpa64 C:\WINDOWS\system32\Drivers\PxHlpa64.sys
18:09:52.0089 0x009c PxHlpa64 - ok
18:09:52.0169 0x009c [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE C:\WINDOWS\system32\qwave.dll
18:09:52.0188 0x009c QWAVE - ok
18:09:52.0232 0x009c [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
18:09:52.0245 0x009c QWAVEdrv - ok
18:09:52.0301 0x009c [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
18:09:52.0314 0x009c RasAcd - ok
18:09:52.0401 0x009c [ 674A4702E4E144E8710ED1A2EC6DD049, 613A921101A6815C9185D5EF3E251A592604E56FADE945BB7E256885CAD473BC ] RasAgileVpn C:\WINDOWS\system32\DRIVERS\AgileVpn.sys
18:09:52.0410 0x009c RasAgileVpn - ok
18:09:52.0466 0x009c [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto C:\WINDOWS\System32\rasauto.dll
18:09:52.0481 0x009c RasAuto - ok
18:09:52.0506 0x009c [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
18:09:52.0522 0x009c Rasl2tp - ok
18:09:52.0592 0x009c [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan C:\WINDOWS\System32\rasmans.dll
18:09:52.0615 0x009c RasMan - ok
18:09:52.0662 0x009c [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
18:09:52.0672 0x009c RasPppoe - ok
18:09:52.0700 0x009c [ 2B0F1677CDD08967005F34488559BC6F, FFF168EBD171C0B85A448AD1A04F66534E889AE1DC128F68EA3F35D5996C8D39 ] RasSstp C:\WINDOWS\system32\DRIVERS\rassstp.sys
18:09:52.0714 0x009c RasSstp - ok
18:09:52.0790 0x009c [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
18:09:52.0805 0x009c rdbss - ok
18:09:52.0867 0x009c [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
18:09:52.0877 0x009c rdpbus - ok
18:09:52.0910 0x009c [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
18:09:52.0925 0x009c RDPDR - ok
18:09:52.0957 0x009c [ 858776908AF838E3790F3261B799CDA6, 5BE4658540382D1B2F46E503CE175D74E3870FE492B8B8F37C3CFB34FF8E2DA8 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
18:09:52.0967 0x009c RdpVideoMiniport - ok
18:09:53.0085 0x009c [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
18:09:53.0102 0x009c rdyboost - ok
18:09:53.0206 0x009c [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
18:09:53.0238 0x009c ReFS - ok
18:09:53.0366 0x009c [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
18:09:53.0385 0x009c RemoteAccess - ok
18:09:53.0515 0x009c [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
18:09:53.0534 0x009c RemoteRegistry - ok
18:09:53.0614 0x009c [ 0527EF6E23B9FAB37DDCBC479C6CFA28, C004CE600074AC434F8B24A3383F8C0ACFA5476D9E3B1493B40911C78B028D64 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
18:09:53.0628 0x009c RFCOMM - ok
18:09:53.0661 0x009c [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
18:09:53.0674 0x009c RpcEptMapper - ok
18:09:53.0728 0x009c [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator C:\WINDOWS\system32\locator.exe
18:09:53.0740 0x009c RpcLocator - ok
18:09:53.0835 0x009c [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs C:\WINDOWS\system32\rpcss.dll
18:09:53.0864 0x009c RpcSs - ok
18:09:53.0932 0x009c [ C648C1FC380D17CB1D6CEEBA168CB15F, 88BC4626353D54D1A2ABC144585DD7E6EDF24BBAF7677C27E6CFAA477329E83E ] RSBASTOR C:\WINDOWS\system32\DRIVERS\RtsBaStor.sys
18:09:53.0947 0x009c RSBASTOR - ok
18:09:54.0041 0x009c [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
18:09:54.0053 0x009c rspndr - ok
18:09:54.0113 0x009c [ D9C5260772FDA64AB729C0B4822F11E3, D52B79C4D30D18AD5DE60EFE68BFAF4221C0F4D226F5067312CE546EDE4E89CE ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
18:09:54.0143 0x009c RTL8168 - ok
18:09:54.0195 0x009c [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
18:09:54.0205 0x009c s3cap - ok
18:09:54.0266 0x009c [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs C:\WINDOWS\system32\lsass.exe
18:09:54.0280 0x009c SamSs - ok
18:09:54.0312 0x009c [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
18:09:54.0325 0x009c sbp2port - ok
18:09:54.0383 0x009c [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
18:09:54.0407 0x009c SCardSvr - ok
18:09:54.0438 0x009c [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
18:09:54.0455 0x009c ScDeviceEnum - ok
18:09:54.0511 0x009c [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
18:09:54.0526 0x009c scfilter - ok
18:09:54.0631 0x009c [ D3AE5DB16EAF913860EC28654CE00E6B, AD76B6044F7247C6E86F6DCB7CFD6B25BCA2B9F09A97A419F043A999E66726A2 ] Schedule C:\WINDOWS\system32\schedsvc.dll
18:09:54.0674 0x009c Schedule - ok
18:09:54.0828 0x009c [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
18:09:54.0847 0x009c SCPolicySvc - ok
18:09:55.0101 0x009c [ FDEC5799BA499D18AFA3A540538866E7, 551EE0945FE4EC213FFF623E524500B57531EFEA2D76FA7ED1D2D605E7E2168F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
18:09:55.0118 0x009c sdbus - ok
18:09:55.0175 0x009c [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
18:09:55.0188 0x009c sdstor - ok
18:09:55.0230 0x009c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
18:09:55.0244 0x009c secdrv - ok
18:09:55.0390 0x009c [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon C:\WINDOWS\system32\seclogon.dll
18:09:55.0402 0x009c seclogon - ok
18:09:55.0558 0x009c [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS C:\WINDOWS\System32\sens.dll
18:09:55.0576 0x009c SENS - ok
18:09:55.0664 0x009c [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
18:09:55.0676 0x009c SensrSvc - ok
18:09:55.0729 0x009c [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
18:09:55.0742 0x009c SerCx - ok
18:09:55.0828 0x009c [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
18:09:55.0845 0x009c SerCx2 - ok
18:09:55.0889 0x009c [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
18:09:55.0900 0x009c Serenum - ok
18:09:55.0946 0x009c [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys
18:09:55.0960 0x009c Serial - ok
18:09:55.0985 0x009c [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
18:09:56.0020 0x009c sermouse - ok
18:09:56.0093 0x009c [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
18:09:56.0111 0x009c SessionEnv - ok
18:09:56.0148 0x009c [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
18:09:56.0158 0x009c sfloppy - ok
18:09:56.0331 0x009c [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
18:09:56.0357 0x009c SharedAccess - ok
18:09:56.0453 0x009c [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
18:09:56.0485 0x009c ShellHWDetection - ok
18:09:56.0537 0x009c [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
18:09:56.0545 0x009c SiSRaid2 - ok
18:09:56.0560 0x009c [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
18:09:56.0569 0x009c SiSRaid4 - ok
18:09:56.0607 0x009c [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost C:\WINDOWS\System32\smphost.dll
18:09:56.0618 0x009c smphost - ok
18:09:56.0662 0x009c [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
18:09:56.0676 0x009c SNMPTRAP - ok
18:09:56.0755 0x009c [ 240C5C3793206725AA05665851E8C214, 96ADFB85EB1623EB00C251C1C6A1F441A1795F0EBFD10B17DD1CA58E3AE8A90D ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
18:09:56.0776 0x009c spaceport - ok
18:09:56.0843 0x009c [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
18:09:56.0855 0x009c SpbCx - ok
18:09:57.0044 0x009c [ 42FEA9E0BA9761D9E65A4F167D91515B, 9A34CE83F3ACD50608671BDABE5E475F8E0C8335D3B8B7B3D7E84B2A319FA29F ] Spooler C:\WINDOWS\System32\spoolsv.exe
18:09:57.0072 0x009c Spooler - ok
18:09:57.0835 0x009c [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe
18:09:57.0994 0x009c sppsvc - ok
18:09:58.0057 0x009c [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
18:09:58.0074 0x009c srv - ok
18:09:58.0122 0x009c [ 5BED3AB69797C8786EF70AEA8C33748B, 0474EE6C43D437CBA9848BCF25D1341B122D7E9F371A0FF3C62C83D14B2CB095 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
18:09:58.0141 0x009c srv2 - ok
18:09:58.0201 0x009c [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
18:09:58.0221 0x009c srvnet - ok
18:09:58.0276 0x009c [ ED161B91FDF7EAA39469D72D463D5F4E, FC793E378FB709313D0AC44F59BF5C9488D73235AA2B1A21C50C3DED91C6BE62 ] sscdbus C:\WINDOWS\System32\drivers\sscdbus.sys
18:09:58.0287 0x009c sscdbus - ok
18:09:58.0316 0x009c [ 4CB09E77593DBD8D7AF33B37375CA715, 7B14851A8EDAA996D28335FD4DA812C6114DD5012E1E929F4813797CDC77E5BC ] sscdmdfl C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys
18:09:58.0321 0x009c sscdmdfl - ok
18:09:58.0351 0x009c [ C7B4CF53497A6E5363F3439427663882, 993278ADAAC18F12FE00CCF76681461451DA335F67BB581FC7326045048EC085 ] sscdmdm C:\WINDOWS\system32\DRIVERS\sscdmdm.sys
18:09:58.0362 0x009c sscdmdm - ok
18:09:58.0412 0x009c [ 05FFA552F578E27AB2D41B6828DB477F, F3292A431D656C039F4300AA584FA13F26A69B351C2F903B3E47CEF464A6233A ] sscdserd C:\WINDOWS\system32\DRIVERS\sscdserd.sys
18:09:58.0419 0x009c sscdserd - ok
18:09:58.0488 0x009c [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
18:09:58.0507 0x009c SSDPSRV - ok
18:09:58.0578 0x009c [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
18:09:58.0596 0x009c SstpSvc - ok
18:09:58.0659 0x009c [ 5252D7BC56E5E0ED715AEA8FE173A455, 1408B3E98B35A449434718777EE70595F0D306197A428279C6281D2F1953F259 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
18:09:58.0671 0x009c ssudmdm - ok
18:09:58.0725 0x009c [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
18:09:58.0736 0x009c stexstor - ok
18:09:58.0826 0x009c [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc C:\WINDOWS\System32\wiaservc.dll
18:09:58.0849 0x009c stisvc - ok
18:09:58.0902 0x009c [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
18:09:58.0915 0x009c storahci - ok
18:09:58.0951 0x009c [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
18:09:58.0962 0x009c storflt - ok
18:09:59.0003 0x009c [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
18:09:59.0015 0x009c stornvme - ok
18:09:59.0091 0x009c [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc C:\WINDOWS\system32\storsvc.dll
18:09:59.0099 0x009c StorSvc - ok
18:09:59.0192 0x009c [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
18:09:59.0203 0x009c storvsc - ok
18:09:59.0285 0x009c [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc C:\WINDOWS\system32\svsvc.dll
18:09:59.0300 0x009c svsvc - ok
18:09:59.0443 0x009c [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
18:09:59.0451 0x009c swenum - ok
18:09:59.0536 0x009c [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv C:\WINDOWS\System32\swprv.dll
18:09:59.0556 0x009c swprv - ok
18:09:59.0792 0x009c [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain C:\WINDOWS\system32\sysmain.dll
18:09:59.0827 0x009c SysMain - ok
18:09:59.0982 0x009c [ D65B1C952AEB864C2BAC7A770B17ECCE, 3EFAAFFF73390D9CB660E0F42B305512396CF66ED06E4A20ED67E8722FB4355B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
18:09:59.0999 0x009c SystemEventsBroker - ok
18:10:00.0125 0x009c [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
18:10:00.0143 0x009c TabletInputService - ok
18:10:00.0219 0x009c [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
18:10:00.0236 0x009c TapiSrv - ok
18:10:00.0613 0x009c [ FEBAA7D782E30882FFF1CBCBBE8AD467, B54333F52CF901CADB3B71334BFAFA63C508A0F7EA7E700C5578FC20D780403E ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
18:10:00.0686 0x009c Tcpip - ok
18:10:01.0065 0x009c [ FEBAA7D782E30882FFF1CBCBBE8AD467, B54333F52CF901CADB3B71334BFAFA63C508A0F7EA7E700C5578FC20D780403E ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
18:10:01.0126 0x009c TCPIP6 - ok
18:10:01.0183 0x009c [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
18:10:01.0195 0x009c tcpipreg - ok
18:10:01.0235 0x009c [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
18:10:01.0248 0x009c tdx - ok
18:10:01.0295 0x009c [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
18:10:01.0306 0x009c terminpt - ok
18:10:01.0425 0x009c [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService C:\WINDOWS\System32\termsrv.dll
18:10:01.0457 0x009c TermService - ok
18:10:01.0534 0x009c [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes C:\WINDOWS\system32\themeservice.dll
18:10:01.0553 0x009c Themes - ok
18:10:01.0668 0x009c [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
18:10:01.0681 0x009c THREADORDER - ok
18:10:01.0776 0x009c [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
18:10:01.0795 0x009c TimeBroker - ok
18:10:01.0855 0x009c [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\WINDOWS\system32\drivers\tpm.sys
18:10:01.0871 0x009c TPM - ok
18:10:01.0926 0x009c [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks C:\WINDOWS\System32\trkwks.dll
18:10:01.0938 0x009c TrkWks - ok
18:10:02.0079 0x009c [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
18:10:02.0091 0x009c TrustedInstaller - ok
18:10:02.0157 0x009c [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
18:10:02.0169 0x009c TsUsbFlt - ok
18:10:02.0214 0x009c [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
18:10:02.0227 0x009c TsUsbGD - ok
18:10:02.0286 0x009c [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
18:10:02.0302 0x009c tunnel - ok
18:10:02.0375 0x009c [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
18:10:02.0384 0x009c uagp35 - ok
18:10:02.0434 0x009c [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
18:10:02.0447 0x009c UASPStor - ok
18:10:02.0521 0x009c [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
18:10:02.0537 0x009c UCX01000 - ok
18:10:02.0618 0x009c [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
18:10:02.0640 0x009c udfs - ok
18:10:02.0669 0x009c [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
18:10:02.0679 0x009c UEFI - ok
18:10:02.0753 0x009c [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
18:10:02.0764 0x009c UI0Detect - ok
18:10:02.0838 0x009c [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
18:10:02.0846 0x009c uliagpkx - ok
18:10:02.0870 0x009c [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
18:10:02.0881 0x009c umbus - ok
18:10:02.0900 0x009c [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
18:10:02.0909 0x009c UmPass - ok
18:10:03.0083 0x009c [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
18:10:03.0095 0x009c UmRdpService - ok
18:10:03.0620 0x009c [ E1A119AD21F5AFE22EB516C549306D3D, 48769D5E7A78B7A2C00F1F6798AC133CF3E0B2C76F71D3719BD741DDD8F2D229 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
18:10:03.0638 0x009c UNS - ok
18:10:03.0704 0x009c [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost C:\WINDOWS\System32\upnphost.dll
18:10:03.0731 0x009c upnphost - ok
18:10:03.0800 0x009c [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
18:10:03.0815 0x009c usbccgp - ok
18:10:03.0907 0x009c [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
18:10:03.0921 0x009c usbcir - ok
18:10:03.0983 0x009c [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
18:10:04.0006 0x009c usbehci - ok
18:10:04.0120 0x009c [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
18:10:04.0144 0x009c usbhub - ok
18:10:04.0263 0x009c [ 65392F3F3F65E4C6CC82A0F4F8A0B051, C11B662A28D95820717DFFC6B76DBB755E4876009A2342E5E3992DE32D6BFF61 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
18:10:04.0289 0x009c USBHUB3 - ok
18:10:04.0375 0x009c [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
18:10:04.0387 0x009c usbohci - ok
18:10:04.0405 0x009c [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
18:10:04.0429 0x009c usbprint - ok
18:10:04.0528 0x009c [ F04D164C4168701A4E7835607722E5F1, 6F743CF2CF73945B4A4B1C4402744BC2FE1624F1346C194493AD2F7110F9EB35 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
18:10:04.0539 0x009c usbscan - ok
18:10:04.0588 0x009c [ EA23453240137F6773174E0D93F61A69, 579AD09FB428C2BB8B4055128620A7AADD1B606C1EA44B87A01D69A84232A5D9 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
18:10:04.0600 0x009c USBSTOR - ok
18:10:04.0674 0x009c [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
18:10:04.0685 0x009c usbuhci - ok
18:10:04.0734 0x009c [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys
18:10:04.0749 0x009c usbvideo - ok
18:10:04.0858 0x009c [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
18:10:04.0877 0x009c USBXHCI - ok
18:10:04.0921 0x009c [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc C:\WINDOWS\system32\lsass.exe
18:10:04.0930 0x009c VaultSvc - ok
18:10:05.0003 0x009c [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
18:10:05.0015 0x009c vdrvroot - ok
18:10:05.0112 0x009c [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds C:\WINDOWS\System32\vds.exe
18:10:05.0143 0x009c vds - ok
18:10:05.0218 0x009c [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
18:10:05.0234 0x009c VerifierExt - ok
18:10:05.0294 0x009c [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
18:10:05.0319 0x009c vhdmp - ok
18:10:05.0377 0x009c [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
18:10:05.0387 0x009c viaide - ok
18:10:05.0416 0x009c [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
18:10:05.0430 0x009c vmbus - ok
18:10:05.0451 0x009c [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
18:10:05.0461 0x009c VMBusHID - ok
18:10:05.0560 0x009c [ 0A4605BA46C73B50E3F4A2F0D4BB4210, BA4A924E2F45EDBDA761131190E01DE0B3FCBF4627B753C1D787F32BFF326722 ] VMCService C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
18:10:05.0566 0x009c VMCService - detected UnsignedFile.Multi.Generic ( 1 )
18:10:05.0566 0x009c VMCService ( UnsignedFile.Multi.Generic ) - warning
18:10:08.0211 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
18:10:08.0236 0x009c vmicguestinterface - ok
18:10:08.0303 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
18:10:08.0322 0x009c vmicheartbeat - ok
18:10:08.0336 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
18:10:08.0354 0x009c vmickvpexchange - ok
18:10:08.0402 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
18:10:08.0420 0x009c vmicrdv - ok
18:10:08.0553 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
18:10:08.0570 0x009c vmicshutdown - ok
18:10:08.0646 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
18:10:08.0662 0x009c vmictimesync - ok
18:10:08.0727 0x009c [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
18:10:08.0744 0x009c vmicvss - ok
18:10:08.0874 0x009c [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
18:10:08.0889 0x009c volmgr - ok
18:10:08.0950 0x009c [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
18:10:08.0971 0x009c volmgrx - ok
18:10:09.0059 0x009c [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
18:10:09.0079 0x009c volsnap - ok
18:10:09.0119 0x009c [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
18:10:09.0128 0x009c vpci - ok
18:10:09.0232 0x009c [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
18:10:09.0246 0x009c vsmraid - ok
18:10:09.0423 0x009c [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS C:\WINDOWS\system32\vssvc.exe
18:10:09.0462 0x009c VSS - ok
18:10:09.0521 0x009c [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
18:10:09.0539 0x009c VSTXRAID - ok
18:10:09.0706 0x009c [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
18:10:09.0716 0x009c vwifibus - ok
18:10:09.0749 0x009c [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt C:\WINDOWS\system32\DRIVERS\vwififlt.sys
18:10:09.0760 0x009c vwififlt - ok
18:10:09.0788 0x009c [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp C:\WINDOWS\system32\DRIVERS\vwifimp.sys
18:10:09.0799 0x009c vwifimp - ok
18:10:09.0875 0x009c [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time C:\WINDOWS\system32\w32time.dll
18:10:09.0894 0x009c W32Time - ok
18:10:10.0052 0x009c [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
18:10:10.0224 0x009c WacomPen - ok
18:10:10.0248 0x009c [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
18:10:10.0264 0x009c Wanarp - ok
18:10:10.0291 0x009c [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
18:10:10.0302 0x009c Wanarpv6 - ok
18:10:10.0437 0x009c [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine C:\WINDOWS\system32\wbengine.exe
18:10:10.0480 0x009c wbengine - ok
18:10:10.0747 0x009c [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
18:10:10.0764 0x009c WbioSrvc - ok
18:10:10.0824 0x009c [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
18:10:10.0838 0x009c Wcmsvc - ok
18:10:10.0951 0x009c [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
18:10:10.0971 0x009c wcncsvc - ok
18:10:11.0040 0x009c [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
18:10:11.0052 0x009c WcsPlugInService - ok
18:10:11.0114 0x009c [ F5D4FA3E1F4879C361FFF3855259D2C2, 48C60FE4AAB011E2250157506FF0624031BFA346F8F2F8C6DFDF6F3CAA4F3F42 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
18:10:11.0125 0x009c WdBoot - ok
18:10:11.0200 0x009c [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
18:10:11.0229 0x009c Wdf01000 - ok
18:10:11.0311 0x009c [ 019CC610AD95FF47EAD7C08B7A683B96, BB9D42F8ED90ECA2E7B8C906E06A1EA859FAD9BD1B3492BB1E28C0D00004812A ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
18:10:11.0328 0x009c WdFilter - ok
18:10:11.0398 0x009c [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
18:10:11.0416 0x009c WdiServiceHost - ok
18:10:11.0421 0x009c [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
18:10:11.0437 0x009c WdiSystemHost - ok
18:10:11.0484 0x009c [ 6CC1BB8F6851A262E2E824F0E92D5EEF, 45A88A984179BBA38C1F4434C4D6C2823C1FE6AFBE8CB0F656DAE0092D1D5611 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
18:10:11.0494 0x009c WdNisDrv - ok
18:10:11.0546 0x009c WdNisSvc - ok
18:10:11.0623 0x009c [ 91B18D7A1702ED589E67C6C81052B955, 5D1DA8B86106A28E50BBCCB36527CC130D41201F5BE1D3DC5F1D6F7ECCF807BA ] WebClient C:\WINDOWS\System32\webclnt.dll
18:10:11.0635 0x009c WebClient - ok
18:10:11.0725 0x009c [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
18:10:11.0743 0x009c Wecsvc - ok
18:10:11.0760 0x009c [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
18:10:11.0772 0x009c WEPHOSTSVC - ok
18:10:11.0843 0x009c [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
18:10:11.0857 0x009c wercplsupport - ok
18:10:11.0908 0x009c [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
18:10:11.0919 0x009c WerSvc - ok
18:10:11.0965 0x009c [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
18:10:11.0979 0x009c WFPLWFS - ok
18:10:12.0024 0x009c [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
18:10:12.0037 0x009c WiaRpc - ok
18:10:12.0094 0x009c [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
18:10:12.0104 0x009c WIMMount - ok
18:10:12.0107 0x009c WinDefend - ok
18:10:12.0190 0x009c [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
18:10:12.0217 0x009c WinHttpAutoProxySvc - ok
18:10:12.0387 0x009c [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
18:10:12.0400 0x009c Winmgmt - ok
18:10:12.0753 0x009c [ C8D6344BDE2691A196E61C0D3372EAB7, FF8EB79D8A7E298343C22B83276FF68293D08A9DA438BB22600BEFC4CA93A91D ] WinRM C:\WINDOWS\system32\WsmSvc.dll
18:10:12.0811 0x009c WinRM - ok
18:10:12.0909 0x009c [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS
18:10:12.0919 0x009c WINUSB - ok
18:10:13.0061 0x009c [ 3F5EF31C6AA204B099EE76497DF80A26, CBE648A4E7E1D98A3D8C72582C1CB3C2FD2329EAA24EE4DCAD271AAA6F4D82CE ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
18:10:13.0095 0x009c WlanSvc - ok
18:10:13.0310 0x009c [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
18:10:13.0352 0x009c wlidsvc - ok
18:10:13.0403 0x009c [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
18:10:13.0412 0x009c WmiAcpi - ok
18:10:13.0455 0x009c [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
18:10:13.0469 0x009c wmiApSrv - ok
18:10:13.0674 0x009c WMPNetworkSvc - ok
18:10:13.0751 0x009c [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys
18:10:13.0765 0x009c Wof - ok
18:10:13.0965 0x009c [ 61BF52E9FFAB27A0B6D621BE26088373, 81291D52C381360E69D51E7DEB05CFAC651A7E9EF781CA23062C0583D0C94708 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
18:10:14.0008 0x009c workfolderssvc - ok
18:10:14.0059 0x009c [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
18:10:14.0071 0x009c wpcfltr - ok
18:10:14.0152 0x009c [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
18:10:14.0162 0x009c WPCSvc - ok
18:10:14.0199 0x009c [ 618A19EB31ECA7B7F2AA0207BAF598A5, CB18CF9B781EAB3D775F8201F294A7135E058D6C963D2CC759DCA14D95EED538 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
18:10:14.0215 0x009c WPDBusEnum - ok
18:10:14.0293 0x009c [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
18:10:14.0303 0x009c WpdUpFltr - ok
18:10:14.0358 0x009c [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
18:10:14.0371 0x009c ws2ifsl - ok
18:10:14.0460 0x009c [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc C:\WINDOWS\System32\wscsvc.dll
18:10:14.0470 0x009c wscsvc - ok
18:10:14.0473 0x009c WSearch - ok
18:10:14.0950 0x009c [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService C:\WINDOWS\System32\WSService.dll
18:10:15.0042 0x009c WSService - ok
18:10:15.0275 0x009c [ D24002EB2F4A8A04897703067E81CC5D, 03806198D26DD7BA3E27EFE0911B49E5B48CAD8A05EC4F56AF45CF1E3FAD6916 ] wuauserv C:\WINDOWS\system32\wuaueng.dll
18:10:15.0352 0x009c wuauserv - ok
18:10:15.0388 0x009c [ D537815E450A149752C15868392AD1F3, 8788CE493349299DB36E409C8CC3C6EA08301FA492C95D9D556E00BC13A05F13 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
18:10:15.0401 0x009c WudfPf - ok
18:10:15.0425 0x009c [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
18:10:15.0436 0x009c WUDFRd - ok
18:10:15.0443 0x009c [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFSensorLP C:\WINDOWS\System32\drivers\WUDFRd.sys
18:10:15.0455 0x009c WUDFSensorLP - ok
18:10:15.0500 0x009c [ 9CDC2059A23E3C9B57696178508777E7, B680A2E2EDA5C8C6A547E7D9B2F2F8E6407C3EA0A01B82A4B88D48A27913A597 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
18:10:15.0514 0x009c wudfsvc - ok
18:10:15.0587 0x009c [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
18:10:15.0598 0x009c WUDFWpdFs - ok
18:10:15.0708 0x009c [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
18:10:15.0719 0x009c WUDFWpdMtp - ok
18:10:15.0848 0x009c [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
18:10:15.0874 0x009c WwanSvc - ok
18:10:16.0368 0x009c [ 86B8B1F5C1189D68B07666784BE882FE, 0DD8C627F3DDBDB61B1910540C465C0D62C9F8D84C7CBB6C80782DB02D535AF0 ] ZAtheros Bt and Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
18:10:16.0377 0x009c ZAtheros Bt and Wlan Coex Agent - detected UnsignedFile.Multi.Generic ( 1 )
18:10:16.0377 0x009c ZAtheros Bt and Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - warning
18:10:18.0864 0x009c ================ Scan global ===============================
18:10:18.0914 0x009c [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\WINDOWS\system32\basesrv.dll
18:10:19.0034 0x009c [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\WINDOWS\system32\winsrv.dll
18:10:19.0108 0x009c [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\WINDOWS\system32\sxssrv.dll
18:10:19.0270 0x009c [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\WINDOWS\system32\services.exe
18:10:19.0284 0x009c [ Global ] - ok
18:10:19.0285 0x009c ================ Scan MBR ==================================
18:10:19.0312 0x009c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
18:10:20.0663 0x009c \Device\Harddisk0\DR0 - ok
18:10:20.0664 0x009c ================ Scan VBR ==================================
18:10:20.0742 0x009c [ F9B2B8681C379E7ACF0C26AE2764B2EC ] \Device\Harddisk0\DR0\Partition1
18:10:20.0750 0x009c \Device\Harddisk0\DR0\Partition1 - ok
18:10:20.0813 0x009c [ 7B5B2F16EDAEA096D82DEDA3B6DA0576 ] \Device\Harddisk0\DR0\Partition2
18:10:20.0854 0x009c \Device\Harddisk0\DR0\Partition2 - ok
18:10:20.0891 0x009c [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
18:10:20.0892 0x009c \Device\Harddisk0\DR0\Partition3 - ok
18:10:20.0961 0x009c [ AA4678BB9115DB49DEC344718D655BDF ] \Device\Harddisk0\DR0\Partition4
18:10:20.0997 0x009c \Device\Harddisk0\DR0\Partition4 - ok
18:10:21.0032 0x009c [ 79C0CE7C8E5FFFEA88AABFA97C11B4C7 ] \Device\Harddisk0\DR0\Partition5
18:10:21.0083 0x009c \Device\Harddisk0\DR0\Partition5 - ok
18:10:21.0108 0x009c [ 5C6B37103EB4A00E1FE4722A915FBA32 ] \Device\Harddisk0\DR0\Partition6
18:10:21.0176 0x009c \Device\Harddisk0\DR0\Partition6 - ok
18:10:21.0247 0x009c [ 96FBF9571B12CB477DBFD46EBFE446A4 ] \Device\Harddisk0\DR0\Partition7
18:10:21.0361 0x009c \Device\Harddisk0\DR0\Partition7 - ok
18:10:21.0362 0x009c ================ Scan generic autorun ======================
18:10:21.0475 0x009c [ CFF4C979AA720C73EC93918D9730B9E9, 0DC04ACD258DD5FC4A7EA81AC3F8876675424EC35F7ECB996B7C132BAB430A33 ] C:\WINDOWS\system32\igfxtray.exe
18:10:21.0495 0x009c IgfxTray - ok
18:10:21.0622 0x009c [ 4B9D449ED9880477DEFBA85D512E05F9, B50C589A1F8953617FAD961363CA3538F6C0539FA06D7FAA2EA88320410C7F43 ] C:\WINDOWS\system32\hkcmd.exe
18:10:21.0640 0x009c HotKeysCmds - ok
18:10:21.0691 0x009c [ 2498449B5CA65A640125164EE0019B14, F4EF4EA34A656984C83DB3BFCD8390ACD76C922A1C253335104C31D371EEDA17 ] C:\WINDOWS\system32\igfxpers.exe
18:10:21.0718 0x009c Persistence - ok
18:10:22.0982 0x009c [ 637C513A8A3FFBB3AA05FAFAC3F9174D, 5BFE633BE091A1BCED55AB2E99A6FEB92B7166921249BFB4B05386EA3856B735 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
18:10:23.0245 0x009c RTHDVCPL - ok
18:10:23.0405 0x009c [ F66CE44D86EA704B31BED2BF2BEDDF75, EC0B3AB0B2011B718299BFF743A28117A3436E9431B6F31CF34416D68AAF1B56 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
18:10:23.0439 0x009c RtHDVBg - ok
18:10:23.0678 0x009c [ BDBF2A7AD6CF18F2A7FBC431692B7B96, 73A91EC0E78773B4138132D5D6D4C8A702116C4BF7D1D986B52BE0070F19E5FC ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
18:10:23.0723 0x009c AdobeAAMUpdater-1.0 - ok
18:10:24.0105 0x009c [ 2362B857693DA580E04ECE28F7D67E7E, EABF4B6502A06B94D07E25D78D8CEF8862B7FE5D117F7F145268B95688A02E62 ] C:\Program Files (x86)\ASUS\APRP\APRP.EXE
18:10:24.0176 0x009c ASUSPRP - ok
18:10:24.0295 0x009c [ B7995C675014EEBE77A0BEB7AFCCFC08, 41D186C63273301CF0A1C1EE7B6EB0BB75A251DD441532C5CEB7A4095FB103CD ] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
18:10:24.0306 0x009c RemoteControl10 - ok
18:10:24.0441 0x009c [ 0E34B7BB1FCF22BCC1E394D16F9E992B, 382CA8E6BAC301E2F277F8EDA03D263FF71272796A8EED582C36294EEE9191F9 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe
18:10:24.0447 0x009c GrooveMonitor - ok
18:10:24.0615 0x009c [ FE821F6FA60E9DF9FDEE69A23488BBAB, 98D9926152FDA45705F5E208D7236E467CAEEF83D756A14B4104EBF804644B29 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
18:10:24.0643 0x009c Adobe ARM - ok
18:10:25.0084 0x009c [ 2AA5DD75EA1281432C40D22B5FD87D3A, 9868D4176C8F08EB72B0B992D3E2A480C587930CA025B4FDF3212F99B79C3017 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
18:10:25.0100 0x009c avgnt - ok
18:10:25.0648 0x009c [ 6E0BC8E65DCCEB1B2C709AA9A0B29042, 03099AB0D2513B092431609DA272BE77DCD9A4F6FF3BD09F91F0B5BB271B386A ] C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe
18:10:25.0701 0x009c MobileConnect - detected UnsignedFile.Multi.Generic ( 1 )
18:10:25.0701 0x009c MobileConnect ( UnsignedFile.Multi.Generic ) - warning
18:10:28.0393 0x009c [ 845EB283583BD3C89F09636A10114EF3, BCB3002B867052FB381B1E44D31E381200751E1AD3F991EB4233B73E3E034A0E ] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
18:10:28.0405 0x009c Avira Systray - ok
18:10:28.0591 0x009c [ 2A65AE735E0C439762072787AD61FA07, 19E4A96924BBD51F45DD5D34D18B16D614779F508B3DF5895DF2218043BEF0E0 ] C:\Program Files (x86)\Windows Mail\wab.exe
18:10:28.0612 0x009c WAB Migrate - ok
18:10:29.0139 0x009c [ 83617B22205AE74AA31FF3CC145E2132, 5684D6523922A662799B408D8BC26FFC7D2212F633B82045919562F30C224F1E ] C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
18:10:29.0224 0x009c msnmsgr - ok
18:10:29.0362 0x009c [ EFB2614E9142FA4427CE82EE6DC0CA7B, DE67CED09EA1A3B10BF0F3B22B2675844122783AE2523CE01E0BDE2691FC684A ] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe
18:10:29.0401 0x009c KSS - ok
18:10:29.0429 0x009c AV detected via SS2: Avira Desktop, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 14.0.6.548 ), 0x41000 ( enabled : updated )
18:10:29.0436 0x009c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x60100 ( disabled : updated )
18:10:29.0447 0x009c Win FW state via NFP2: enabled
18:10:31.0933 0x009c ============================================================
18:10:31.0933 0x009c Scan finished
18:10:31.0933 0x009c ============================================================
18:10:31.0940 0x09a4 Detected object count: 6
18:10:31.0940 0x09a4 Actual detected object count: 6
18:10:37.0496 0x09a4 HPSLPSVC ( UnsignedFile.Multi.Generic ) - skipped by user
18:10:37.0496 0x09a4 HPSLPSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip
18:10:37.0496 0x09a4 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
18:10:37.0496 0x09a4 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
18:10:37.0498 0x09a4 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
18:10:37.0498 0x09a4 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
18:10:37.0499 0x09a4 VMCService ( UnsignedFile.Multi.Generic ) - skipped by user
18:10:37.0499 0x09a4 VMCService ( UnsignedFile.Multi.Generic ) - User select action: Skip
18:10:37.0501 0x09a4 ZAtheros Bt and Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - skipped by user
18:10:37.0501 0x09a4 ZAtheros Bt and Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - User select action: Skip
18:10:37.0502 0x09a4 MobileConnect ( UnsignedFile.Multi.Generic ) - skipped by user
18:10:37.0502 0x09a4 MobileConnect ( UnsignedFile.Multi.Generic ) - User select action: Skip
18:18:44.0849 0x0b20 Deinitialize success
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
15 set 2014 alle 19:24
senti... i file rilevati mi sembrano non infetti (ma possono esserlo)... eliminarli potrebbe causare problemi alla connessione vodafone, alla stampante, e magari rende il sistema instabile... dato il report dello scan online di kaspersky e il tipo di infezione (rootkit) ti suggerisco formattare e reinstallare il sistema, secondo me è il migliore modo di agire in questi casi.
se non desideri formattare proveremmo una disinfezione ma non posso garantire il risultato... fammi sapere.

Nota:
1) Se decidi di formattare asicurati di fare il backup dei tuoi file e dati più importanti
2) Nel tuo caso ripristinare il sistema alle impostazioni di fabbrica è assai semplice con il recovery di Asus. basta avviare premendo F9. più informazioni nel manuale del tuo PC Utilizzare il System Image Recovery: Pagina89
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
16 set 2014 alle 08:45
Capisco,
ma se provassi prima a eliminare solo i dati vodafone?
io di solito uso connessione di alice e il problema potrebbe essere nato quando ho usato la chiavetta vodafone di un amico.

???
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
16 set 2014 alle 11:31
certo puoi disinstallare il software della chiavetta vodafone.. però questo non elimina l'infezione.. kaspersky ha rilevato dei file sospetti tra i quali uno sarebbe stato installato con la chiavetta... forse anche era sano ma poi infettato dal virus...

la scansione online che hai fatto nel sito kaspersky rileva un problema stranissimo che non riesco a capire, il numero dei file nella cartella "MachineKeys" e i loro nomi, non penso che tu abbia utilizzato tutti questi tipi di programmi e non mi spiego chi e come sono stati salvati lì

puoi dirmi qual'è la dimensione della cartella C:\Documents and Settings\All Users\Microsoft\Crypto\RSA64\MachineKeys\
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
16 set 2014 alle 11:54
Dunque...

quella cartella non la trovo seguendo la directory che indica Kaespersky, ma in questa

C:\ProgramData\Microsoft\Crypto\RSA64\MachineKeys

376 GIGA!

questo file è quello che mi dava problemi nella nostra discussione precedente , ma dopo aver seguito le tue procedure il problema che avevo in quel momento era risolto, e cioè le cartelle non si chiudono più da sole e i miei antivirus non mi rilevavano più il problema CRYPTO.

https://it.ccm.net/forum/affich-76066-cartelle-che-si-chiudono-rogue-killer#p76189

Il pc funzionava , poi dopo qualche giorno, di nuovo problemi sotto altro nome.
Ovviamente se dovrò formattare lo farò , ma avrei preferito evitarlo.. tu puoi capire!
Noureddine Bouzidi Posti 22674 Data di registrazione giovedì 19 marzo 2009 Stato Moderatore Ultimo intervento giovedì 7 gennaio 2021 15.404
16 set 2014 alle 12:12
si so che è legato alle cartelle che si chiudono... il problema è il tipo di virus, che non conosco e non sono in grado di dirti (anche se facciamo la pulizia) se il tuo PC è sano o meno.. perché un rootkit (bootkit) si può nascondersi per puoi tornare di nuovo

se vuoi fa la pulizia con TDSSKiller come spiegato prima tranne per:

- Finito lo scan, se viene rilevata un'infezione, nel menu a tendina cambia Cure in Skip

lascialo su Cure per eliminare le infezioni
susanna76 Posti 51 Data di registrazione sabato 30 agosto 2014 Stato Membri Ultimo intervento giovedì 28 aprile 2016
16 set 2014 alle 12:19
Allora intanto provo con selezionare solo una voce (vodafone) e vedo cosa succede.
Se non mi vedi più .... ma no dai ce la farò! :)