Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
RK-----pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Prosím o kontrolu Vyřešeno
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
# AdwCleaner v3.208 - Report created 17/05/2014 at 12:15:47
# Updated 11/05/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Vojtěch - BARBAR
# Running from : C:\Users\Vojtěch\Desktop\adwcleaner_3.208.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17037
-\\ Mozilla Firefox v28.0 (cs)
[ File : C:\Users\Vojtěch\AppData\Roaming\Mozilla\Firefox\Profiles\3nlzeatc.default\prefs.js ]
-\\ Google Chrome v31.0.1650.63
[ File : C:\Users\Guest1\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ File : C:\Users\Vojtěch\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [5596 octets] - [08/01/2014 18:36:52]
AdwCleaner[R1].txt - [7953 octets] - [15/05/2014 22:19:45]
AdwCleaner[R2].txt - [8011 octets] - [15/05/2014 22:21:37]
AdwCleaner[R3].txt - [8128 octets] - [15/05/2014 22:29:44]
AdwCleaner[R4].txt - [8188 octets] - [16/05/2014 12:35:13]
AdwCleaner[R5].txt - [1391 octets] - [17/05/2014 12:14:36]
AdwCleaner[S0].txt - [5497 octets] - [08/01/2014 18:38:33]
AdwCleaner[S1].txt - [8004 octets] - [16/05/2014 12:37:40]
AdwCleaner[S2].txt - [1312 octets] - [17/05/2014 12:15:47]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1372 octets] ##########
# Updated 11/05/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Vojtěch - BARBAR
# Running from : C:\Users\Vojtěch\Desktop\adwcleaner_3.208.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17037
-\\ Mozilla Firefox v28.0 (cs)
[ File : C:\Users\Vojtěch\AppData\Roaming\Mozilla\Firefox\Profiles\3nlzeatc.default\prefs.js ]
-\\ Google Chrome v31.0.1650.63
[ File : C:\Users\Guest1\AppData\Local\Google\Chrome\User Data\Default\preferences ]
[ File : C:\Users\Vojtěch\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [5596 octets] - [08/01/2014 18:36:52]
AdwCleaner[R1].txt - [7953 octets] - [15/05/2014 22:19:45]
AdwCleaner[R2].txt - [8011 octets] - [15/05/2014 22:21:37]
AdwCleaner[R3].txt - [8128 octets] - [15/05/2014 22:29:44]
AdwCleaner[R4].txt - [8188 octets] - [16/05/2014 12:35:13]
AdwCleaner[R5].txt - [1391 octets] - [17/05/2014 12:14:36]
AdwCleaner[S0].txt - [5497 octets] - [08/01/2014 18:38:33]
AdwCleaner[S1].txt - [8004 octets] - [16/05/2014 12:37:40]
AdwCleaner[S2].txt - [1312 octets] - [17/05/2014 12:15:47]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1372 octets] ##########
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by VojtŘch on so 17. 05. 2014 at 12:22:29,13
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 17. 05. 2014 at 12:26:35,51
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by VojtŘch on so 17. 05. 2014 at 12:22:29,13
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 17. 05. 2014 at 12:26:35,51
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Malwarebytes Anti-Malware --- NIC NENASEL
PP
www.malwarebytes.org
Datum skenování: 17. 5. 2014
Čas skenování: 12:48:26
Protokol: nic to nenaslo.txt
Správce: Ano
Verze: 2.00.1.1004
Databáze malwaru: v2014.05.17.05
Databáze rootkitů: v2014.03.27.01
Licence: Premium
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Chameleon: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: VojtÄ?ch
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 453247
Uplynulý čas: 20 min, 41 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Shuriken: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 0
(No malicious items detected)
Hodnoty registru: 0
(No malicious items detected)
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 0
(No malicious items detected)
Fyzické sektory: 0
(No malicious items detected)
(end)

www.malwarebytes.org
Datum skenování: 17. 5. 2014
Čas skenování: 12:48:26
Protokol: nic to nenaslo.txt
Správce: Ano
Verze: 2.00.1.1004
Databáze malwaru: v2014.05.17.05
Databáze rootkitů: v2014.03.27.01
Licence: Premium
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Chameleon: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: VojtÄ?ch
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 453247
Uplynulý čas: 20 min, 41 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Shuriken: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 0
(No malicious items detected)
Hodnoty registru: 0
(No malicious items detected)
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 0
(No malicious items detected)
Fyzické sektory: 0
(No malicious items detected)
(end)
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Rouge killer
RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vojtěch [Práva správce]
Mód : Kontrola -- Datum : 05/17/2014 12:53:32
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP UNIC] vntldr.exe -- C:\Users\Vojtěch\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 17 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> NALEZENO
[RUN][SUSP UNIC] HKLM\[...]\Wow6432Node\[...]\Run : GPUTemp ("C:\Users\VOJTCH~1\AppData\Local\Temp\GPUTemp.exe" [x]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 3 ¤¤¤
[V1][ROGUE ST] GS.Enabler-S-4560858878.job : c:\programdata\quickset\gs.enabler\GS.Enabler.exe - /schedule /profile "c:\programdata\quickset\gs.enabler\4560858878.ini" [x][x] -> NALEZENO
[V1][ROGUE ST] Sk-Enabler-S-245486970.job : c:\programdata\quickset\sk-enabler\Sk-Enabler.exe - /schedule /profile "c:\programdata\quickset\sk-enabler\245486970.ini" [x][x] -> NALEZENO
[V2][SUSP PATH] OFFICE2010ACT : C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [-] -> NALEZENO
¤¤¤ spuštění položky : 3 ¤¤¤
[Vojtěch][SUSP UNIC] Curse.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk @C:\Users\VOJTCH~1\AppData\Roaming\CURSEC~1\Bin\Curse.exe /startup [-][7] -> NALEZENO
[Vojtěch][SUSP UNIC] PdaNet Desktop.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk @C:\PROGRA~2\PDANET~1\PdaNetPC.exe [-][7] -> NALEZENO
[Vojtěch][SUSP UNIC] wandoujia_helper.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wandoujia_helper.lnk @C:\Users\VOJTCH~1\AppData\Roaming\WANDOU~1\APPLIC~1\2690~1.545\WANDOU~2.EXE [-][7] -> NALEZENO
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A274C)
[Address] EAT @explorer.exe (DllGetClassObject) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A4984)
[Address] EAT @explorer.exe (DwmAttachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmDefWindowProc) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2C30)
[Address] EAT @explorer.exe (DwmDetachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmEnableBlurBehindWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2A70)
[Address] EAT @explorer.exe (DwmEnableComposition) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AC60C)
[Address] EAT @explorer.exe (DwmEnableMMCSS) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3788)
[Address] EAT @explorer.exe (DwmExtendFrameIntoClientArea) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2DC0)
[Address] EAT @explorer.exe (DwmFlush) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A26C0)
[Address] EAT @explorer.exe (DwmGetColorizationColor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AC118)
[Address] EAT @explorer.exe (DwmGetCompositionTimingInfo) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A1D40)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamClient) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamTransformHint) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmGetTransportAttributes) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AC8B0)
[Address] EAT @explorer.exe (DwmGetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A1010)
[Address] EAT @explorer.exe (DwmInvalidateIconicBitmaps) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A6308)
[Address] EAT @explorer.exe (DwmIsCompositionEnabled) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A11B0)
[Address] EAT @explorer.exe (DwmModifyPreviousDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD050)
[Address] EAT @explorer.exe (DwmQueryThumbnailSourceSize) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A6F34)
[Address] EAT @explorer.exe (DwmRegisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A69A8)
[Address] EAT @explorer.exe (DwmRenderGesture) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A7CEC)
[Address] EAT @explorer.exe (DwmSetDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD050)
[Address] EAT @explorer.exe (DwmSetIconicLivePreviewBitmap) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD1CC)
[Address] EAT @explorer.exe (DwmSetIconicThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD558)
[Address] EAT @explorer.exe (DwmSetPresentParameters) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD050)
[Address] EAT @explorer.exe (DwmSetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A10E8)
[Address] EAT @explorer.exe (DwmShowContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3A90)
[Address] EAT @explorer.exe (DwmTetherContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670ACB1C)
[Address] EAT @explorer.exe (DwmTransitionOwnedWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670ADBD8)
[Address] EAT @explorer.exe (DwmUnregisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A677C)
[Address] EAT @explorer.exe (DwmUpdateThumbnailProperties) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3A10)
[Address] EAT @explorer.exe (DwmpAllocateSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2320)
[Address] EAT @explorer.exe (DwmpDxGetWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A5FE0)
[Address] EAT @explorer.exe (DwmpDxUpdateWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A7710)
[Address] EAT @explorer.exe (DwmpDxgiIsThreadDesktopComposited) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3760)
[Address] EAT @explorer.exe (DwmpFreeSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A22E4)
[Address] EAT @explorer.exe (DwmpRenderFlick) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670ACE70)
[Address] EAT @explorer.exe (AccConvertAccessMaskToActrlAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FA0C)
[Address] EAT @explorer.exe (AccConvertAccessToSD) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FB80)
[Address] EAT @explorer.exe (AccConvertAccessToSecurityDescriptor) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FD3C)
[Address] EAT @explorer.exe (AccConvertAclToAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FE90)
[Address] EAT @explorer.exe (AccConvertSDToAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FF2C)
[Address] EAT @explorer.exe (AccFreeIndexArray) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65590D80)
[Address] EAT @explorer.exe (AccGetAccessForTrustee) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A01A8)
[Address] EAT @explorer.exe (AccGetExplicitEntries) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0288)
[Address] EAT @explorer.exe (AccGetInheritanceSource) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65590EA0)
[Address] EAT @explorer.exe (AccLookupAccountName) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0348)
[Address] EAT @explorer.exe (AccLookupAccountSid) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0648)
[Address] EAT @explorer.exe (AccLookupAccountTrustee) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A09CC)
[Address] EAT @explorer.exe (AccProvCancelOperation) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CAFC)
[Address] EAT @explorer.exe (AccProvGetAccessInfoPerObjectType) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CB74)
[Address] EAT @explorer.exe (AccProvGetAllRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CC1C)
[Address] EAT @explorer.exe (AccProvGetCapabilities) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65588100)
[Address] EAT @explorer.exe (AccProvGetOperationResults) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CDF8)
[Address] EAT @explorer.exe (AccProvGetTrusteesAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CF38)
[Address] EAT @explorer.exe (AccProvGrantAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D040)
[Address] EAT @explorer.exe (AccProvHandleGetAccessInfoPerObjectType) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D1B0)
[Address] EAT @explorer.exe (AccProvHandleGetAllRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D298)
[Address] EAT @explorer.exe (AccProvHandleGetTrusteesAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D410)
[Address] EAT @explorer.exe (AccProvHandleGrantAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559C4D0)
[Address] EAT @explorer.exe (AccProvHandleIsAccessAudited) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D48C)
[Address] EAT @explorer.exe (AccProvHandleIsObjectAccessible) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D524)
[Address] EAT @explorer.exe (AccProvHandleRevokeAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D660)
[Address] EAT @explorer.exe (AccProvHandleRevokeAuditRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D738)
[Address] EAT @explorer.exe (AccProvHandleSetAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D810)
[Address] EAT @explorer.exe (AccProvIsAccessAudited) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D910)
[Address] EAT @explorer.exe (AccProvIsObjectAccessible) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559DA24)
[Address] EAT @explorer.exe (AccProvRevokeAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559DE74)
[Address] EAT @explorer.exe (AccProvRevokeAuditRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559DFB0)
[Address] EAT @explorer.exe (AccProvSetAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559E0EC)
[Address] EAT @explorer.exe (AccRewriteGetExplicitEntriesFromAcl) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65587BD4)
[Address] EAT @explorer.exe (AccRewriteGetHandleRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65591510)
[Address] EAT @explorer.exe (AccRewriteGetNamedRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65591680)
[Address] EAT @explorer.exe (AccRewriteSetEntriesInAcl) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583070)
[Address] EAT @explorer.exe (AccRewriteSetHandleRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65582270)
[Address] EAT @explorer.exe (AccRewriteSetNamedRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583BA0)
[Address] EAT @explorer.exe (AccSetEntriesInAList) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0AD4)
[Address] EAT @explorer.exe (AccTreeResetNamedSecurityInfo) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655858A0)
[Address] EAT @explorer.exe (EventGuidToName) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6558DE68)
[Address] EAT @explorer.exe (EventNameFree) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6558DEF4)
[Address] EAT @explorer.exe (GetExplicitEntriesFromAclW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65587BCC)
[Address] EAT @explorer.exe (GetMartaExtensionInterface) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583600)
[Address] EAT @explorer.exe (GetNamedSecurityInfoW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65582680)
[Address] EAT @explorer.exe (GetSecurityInfo) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65581390)
[Address] EAT @explorer.exe (SetEntriesInAclW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583060)
[Address] EAT @explorer.exe (SetNamedSecurityInfoW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583E64)
[Address] EAT @explorer.exe (SetSecurityInfo) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655821B0)
[Address] EAT @explorer.exe (AppCacheCheckManifest) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE85828)
[Address] EAT @explorer.exe (AppCacheCloseHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE817E0)
[Address] EAT @explorer.exe (AppCacheDeleteGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91320)
[Address] EAT @explorer.exe (AppCacheDeleteIEGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91378)
[Address] EAT @explorer.exe (AppCacheDuplicateHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE81950)
[Address] EAT @explorer.exe (AppCacheFinalize) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF913D0)
[Address] EAT @explorer.exe (AppCacheFreeDownloadList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91428)
[Address] EAT @explorer.exe (AppCacheFreeGroupList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED97C0)
[Address] EAT @explorer.exe (AppCacheFreeIESpace) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE57548)
[Address] EAT @explorer.exe (AppCacheFreeSpace) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91510)
[Address] EAT @explorer.exe (AppCacheGetDownloadList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91568)
[Address] EAT @explorer.exe (AppCacheGetFallbackUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEEBB94)
[Address] EAT @explorer.exe (AppCacheGetGroupList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED979C)
[Address] EAT @explorer.exe (AppCacheGetIEGroupList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF915C0)
[Address] EAT @explorer.exe (AppCacheGetInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91618)
[Address] EAT @explorer.exe (AppCacheGetManifestUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE840B0)
[Address] EAT @explorer.exe (AppCacheLookup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA6FF8)
[Address] EAT @explorer.exe (CommitUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6B2C0)
[Address] EAT @explorer.exe (CommitUrlCacheEntryBinaryBlob) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9C888)
[Address] EAT @explorer.exe (CommitUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9E4C0)
[Address] EAT @explorer.exe (CreateMD5SSOHash) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF68690)
[Address] EAT @explorer.exe (CreateUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5322C)
[Address] EAT @explorer.exe (CreateUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE53388)
[Address] EAT @explorer.exe (CreateUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6B450)
[Address] EAT @explorer.exe (CreateUrlCacheEntryExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED9E7C)
[Address] EAT @explorer.exe (CreateUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED9E58)
[Address] EAT @explorer.exe (CreateUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9252C)
[Address] EAT @explorer.exe (DeleteIE3Cache) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF96A34)
[Address] EAT @explorer.exe (DeleteUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE57A00)
[Address] EAT @explorer.exe (DeleteUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE883B0)
[Address] EAT @explorer.exe (DeleteUrlCacheEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE65494)
[Address] EAT @explorer.exe (DeleteUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE65494)
[Address] EAT @explorer.exe (DeleteUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE57B70)
[Address] EAT @explorer.exe (DeleteUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9262C)
[Address] EAT @explorer.exe (DeleteWpadCacheForNetworks) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF4F270)
[Address] EAT @explorer.exe (DetectAutoProxyUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF4F76C)
[Address] EAT @explorer.exe (DispatchAPICall) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE21B28)
[Address] EAT @explorer.exe (DllCanUnloadNow) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE99CC0)
[Address] EAT @explorer.exe (DllGetClassObject) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE95990)
[Address] EAT @explorer.exe (DllInstall) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2A544)
[Address] EAT @explorer.exe (DllRegisterServer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF322D0)
[Address] EAT @explorer.exe (DllUnregisterServer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF32310)
[Address] EAT @explorer.exe (FindCloseUrlCache) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2A0C0)
[Address] EAT @explorer.exe (FindFirstUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9E16C)
[Address] EAT @explorer.exe (FindFirstUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE52CB4)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2BA6C)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE97DA8)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE597E0)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE97570)
[Address] EAT @explorer.exe (FindFirstUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92730)
[Address] EAT @explorer.exe (FindNextUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9E044)
[Address] EAT @explorer.exe (FindNextUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE52F48)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2BED0)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92878)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92A48)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE59400)
[Address] EAT @explorer.exe (FindNextUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92C18)
[Address] EAT @explorer.exe (ForceNexusLookup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF6889C)
[Address] EAT @explorer.exe (ForceNexusLookupExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF688F0)
[Address] EAT @explorer.exe (FreeUrlCacheSpaceA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92D34)
[Address] EAT @explorer.exe (FreeUrlCacheSpaceW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE566F0)
[Address] EAT @explorer.exe (FtpCommandA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D388)
[Address] EAT @explorer.exe (FtpCommandW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF40D4C)
[Address] EAT @explorer.exe (FtpCreateDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D46C)
[Address] EAT @explorer.exe (FtpCreateDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF40EE8)
[Address] EAT @explorer.exe (FtpDeleteFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D50C)
[Address] EAT @explorer.exe (FtpDeleteFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41050)
[Address] EAT @explorer.exe (FtpFindFirstFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D5AC)
[Address] EAT @explorer.exe (FtpFindFirstFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF411B8)
[Address] EAT @explorer.exe (FtpGetCurrentDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D818)
[Address] EAT @explorer.exe (FtpGetCurrentDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41390)
[Address] EAT @explorer.exe (FtpGetFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D8D8)
[Address] EAT @explorer.exe (FtpGetFileEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41518)
[Address] EAT @explorer.exe (FtpGetFileSize) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3DAFC)
[Address] EAT @explorer.exe (FtpGetFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF416AC)
[Address] EAT @explorer.exe (FtpOpenFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3DD70)
[Address] EAT @explorer.exe (FtpOpenFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF417B0)
[Address] EAT @explorer.exe (FtpPutFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3DE50)
[Address] EAT @explorer.exe (FtpPutFileEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41840)
[Address] EAT @explorer.exe (FtpPutFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF419A4)
[Address] EAT @explorer.exe (FtpRemoveDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3E1D0)
[Address] EAT @explorer.exe (FtpRemoveDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41A78)
[Address] EAT @explorer.exe (FtpRenameFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3E270)
[Address] EAT @explorer.exe (FtpRenameFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41BD4)
[Address] EAT @explorer.exe (FtpSetCurrentDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3E324)
[Address] EAT @explorer.exe (FtpSetCurrentDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41DF4)
[Address] EAT @explorer.exe (GetProxyDllInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF27C00)
[Address] EAT @explorer.exe (GetUrlCacheConfigInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92F54)
[Address] EAT @explorer.exe (GetUrlCacheConfigInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE562C8)
[Address] EAT @explorer.exe (GetUrlCacheEntryBinaryBlob) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2ACF0)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF931F0)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF933A8)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9F540)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE27824)
[Address] EAT @explorer.exe (GetUrlCacheGroupAttributeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF935F0)
[Address] EAT @explorer.exe (GetUrlCacheGroupAttributeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93858)
[Address] EAT @explorer.exe (GetUrlCacheHeaderData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE3BDE0)
[Address] EAT @explorer.exe (GopherCreateLocatorA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherCreateLocatorW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherFindFirstFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherFindFirstFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetAttributeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetAttributeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetLocatorTypeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetLocatorTypeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherOpenFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherOpenFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (HttpAddRequestHeadersA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE34140)
[Address] EAT @explorer.exe (HttpAddRequestHeadersW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE47A30)
[Address] EAT @explorer.exe (HttpCheckDavCompliance) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF545C8)
[Address] EAT @explorer.exe (HttpCloseDependencyHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA30E0)
[Address] EAT @explorer.exe (HttpDuplicateDependencyHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA3240)
[Address] EAT @explorer.exe (HttpEndRequestA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE68A68)
[Address] EAT @explorer.exe (HttpEndRequestW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF54C64)
[Address] EAT @explorer.exe (HttpGetServerCredentials) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF6CBCC)
[Address] EAT @explorer.exe (HttpGetTunnelSocket) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37058)
[Address] EAT @explorer.exe (HttpOpenDependencyHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA63C0)
[Address] EAT @explorer.exe (HttpOpenRequestA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF552C0)
[Address] EAT @explorer.exe (HttpOpenRequestW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE32EE0)
[Address] EAT @explorer.exe (HttpPushClose) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37D94)
[Address] EAT @explorer.exe (HttpPushEnable) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37E44)
[Address] EAT @explorer.exe (HttpPushWait) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37E9C)
[Address] EAT @explorer.exe (HttpQueryInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE38B60)
[Address] EAT @explorer.exe (HttpQueryInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE3A090)
[Address] EAT @explorer.exe (HttpSendRequestA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED40D0)
[Address] EAT @explorer.exe (HttpSendRequestExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF54D64)
[Address] EAT @explorer.exe (HttpSendRequestExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE68880)
[Address] EAT @explorer.exe (HttpSendRequestW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE47634)
[Address] EAT @explorer.exe (HttpWebSocketClose) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF65350)
[Address] EAT @explorer.exe (HttpWebSocketCompleteUpgrade) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF658DC)
[Address] EAT @explorer.exe (HttpWebSocketQueryCloseStatus) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF65498)
[Address] EAT @explorer.exe (HttpWebSocketReceive) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF65D7C)
[Address] EAT @explorer.exe (HttpWebSocketSend) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF662C0)
[Address] EAT @explorer.exe (HttpWebSocketShutdown) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF66580)
[Address] EAT @explorer.exe (IncrementUrlCacheHeaderData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE674F4)
[Address] EAT @explorer.exe (InternetAlgIdToStringA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71ABC)
[Address] EAT @explorer.exe (InternetAlgIdToStringW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71CA0)
[Address] EAT @explorer.exe (InternetAttemptConnect) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2BF9C)
[Address] EAT @explorer.exe (InternetAutodial) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31148)
[Address] EAT @explorer.exe (InternetAutodialCallback) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2844C)
[Address] EAT @explorer.exe (InternetAutodialHangup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF311E0)
[Address] EAT @explorer.exe (InternetCanonicalizeUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C004)
[Address] EAT @explorer.exe (InternetCanonicalizeUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED7A50)
[Address] EAT @explorer.exe (InternetCheckConnectionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C110)
[Address] EAT @explorer.exe (InternetCheckConnectionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D40C)
[Address] EAT @explorer.exe (InternetClearAllPerSiteCookieDecisions) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55D68)
[Address] EAT @explorer.exe (InternetCloseHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE371F4)
[Address] EAT @explorer.exe (InternetCombineUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C5B8)
[Address] EAT @explorer.exe (InternetCombineUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE8C930)
[Address] EAT @explorer.exe (InternetConfirmZoneCrossing) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72A6C)
[Address] EAT @explorer.exe (InternetConfirmZoneCrossingA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72A6C)
[Address] EAT @explorer.exe (InternetConfirmZoneCrossingW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED1BD0)
[Address] EAT @explorer.exe (InternetConnectA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C6D0)
[Address] EAT @explorer.exe (InternetConnectW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE365EC)
[Address] EAT @explorer.exe (InternetCrackUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE630E4)
[Address] EAT @explorer.exe (InternetCrackUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA9760)
[Address] EAT @explorer.exe (InternetCreateUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C800)
[Address] EAT @explorer.exe (InternetCreateUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE8BEC8)
[Address] EAT @explorer.exe (InternetDial) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31270)
[Address] EAT @explorer.exe (InternetDialA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31270)
[Address] EAT @explorer.exe (InternetDialW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3131C)
[Address] EAT @explorer.exe (InternetEnumPerSiteCookieDecisionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55D74)
[Address] EAT @explorer.exe (InternetEnumPerSiteCookieDecisionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55DE0)
[Address] EAT @explorer.exe (InternetErrorDlg) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72B24)
[Address] EAT @explorer.exe (InternetFindNextFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF406A8)
[Address] EAT @explorer.exe (InternetFindNextFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF429E8)
[Address] EAT @explorer.exe (InternetFortezzaCommand) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37EF4)
[Address] EAT @explorer.exe (InternetFreeCookies) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE66AC8)
[Address] EAT @explorer.exe (InternetFreeProxyInfoList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED762C)
[Address] EAT @explorer.exe (InternetGetCertByURL) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE24D80)
[Address] EAT @explorer.exe (InternetGetCertByURLA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE24D80)
[Address] EAT @explorer.exe (InternetGetConnectedState) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9EE28)
[Address] EAT @explorer.exe (InternetGetConnectedStateEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED82A0)
[Address] EAT @explorer.exe (InternetGetConnectedStateExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED82A0)
[Address] EAT @explorer.exe (InternetGetConnectedStateExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE7AD90)
[Address] EAT @explorer.exe (InternetGetCookieA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF570B0)
[Address] EAT @explorer.exe (InternetGetCookieEx2) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE66A98)
[Address] EAT @explorer.exe (InternetGetCookieExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF570E0)
[Address] EAT @explorer.exe (InternetGetCookieExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE66B34)
[Address] EAT @explorer.exe (InternetGetCookieW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF573E4)
[Address] EAT @explorer.exe (InternetGetLastResponseInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C898)
[Address] EAT @explorer.exe (InternetGetLastResponseInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D500)
[Address] EAT @explorer.exe (InternetGetPerSiteCookieDecisionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55EC4)
[Address] EAT @explorer.exe (InternetGetPerSiteCookieDecisionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55F14)
[Address] EAT @explorer.exe (InternetGetProxyForUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED7374)
[Address] EAT @explorer.exe (InternetGetSecurityInfoByURL) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CA38)
[Address] EAT @explorer.exe (InternetGetSecurityInfoByURLA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CA38)
[Address] EAT @explorer.exe (InternetGetSecurityInfoByURLW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D6BC)
[Address] EAT @explorer.exe (InternetGoOnline) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF313D0)
[Address] EAT @explorer.exe (InternetGoOnlineA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF313D0)
[Address] EAT @explorer.exe (InternetGoOnlineW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31468)
[Address] EAT @explorer.exe (InternetHangUp) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31500)
[Address] EAT @explorer.exe (InternetInitializeAutoProxyDll) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE8C574)
[Address] EAT @explorer.exe (InternetLockRequestFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA02BC)
[Address] EAT @explorer.exe (InternetOpenA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5D55C)
[Address] EAT @explorer.exe (InternetOpenUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CB50)
[Address] EAT @explorer.exe (InternetOpenUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D7B8)
[Address] EAT @explorer.exe (InternetOpenW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5D3D4)
[Address] EAT @explorer.exe (InternetQueryDataAvailable) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE4AB70)
[Address] EAT @explorer.exe (InternetQueryFortezzaStatus) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37F54)
[Address] EAT @explorer.exe (InternetQueryOptionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE30D50)
[Address] EAT @explorer.exe (InternetQueryOptionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE31220)
[Address] EAT @explorer.exe (InternetReadFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE48430)
[Address] EAT @explorer.exe (InternetReadFileExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6DF90)
[Address] EAT @explorer.exe (InternetReadFileExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6DF00)
[Address] EAT @explorer.exe (InternetSecurityProtocolToStringA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71E78)
[Address] EAT @explorer.exe (InternetSecurityProtocolToStringW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71FE8)
[Address] EAT @explorer.exe (InternetSetCookieA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF57404)
[Address] EAT @explorer.exe (InternetSetCookieEx2) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF5742C)
[Address] EAT @explorer.exe (InternetSetCookieExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF5748C)
[Address] EAT @explorer.exe (InternetSetCookieExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE62BB0)
[Address] EAT @explorer.exe (InternetSetCookieW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF57530)
[Address] EAT @explorer.exe (InternetSetDialState) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31580)
[Address] EAT @explorer.exe (InternetSetDialStateA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31580)
[Address] EAT @explorer.exe (InternetSetDialStateW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF315D8)
[Address] EAT @explorer.exe (InternetSetFilePointer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDA07C)
[Address] EAT @explorer.exe (InternetSetOptionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2DF30)
[Address] EAT @explorer.exe (InternetSetOptionExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2DDE0)
[Address] EAT @explorer.exe (InternetSetOptionExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2DED4)
[Address] EAT @explorer.exe (InternetSetOptionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2E3F0)
[Address] EAT @explorer.exe (InternetSetPerSiteCookieDecisionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55FAC)
[Address] EAT @explorer.exe (InternetSetPerSiteCookieDecisionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF56044)
[Address] EAT @explorer.exe (InternetSetStatusCallback) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5E178)
[Address] EAT @explorer.exe (InternetSetStatusCallbackA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5E178)
[Address] EAT @explorer.exe (InternetSetStatusCallbackW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6EF08)
[Address] EAT @explorer.exe (InternetShowSecurityInfoByURL) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CBE4)
[Address] EAT @explorer.exe (InternetShowSecurityInfoByURLA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CBE4)
[Address] EAT @explorer.exe (InternetShowSecurityInfoByURLW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D970)
[Address] EAT @explorer.exe (InternetTimeFromSystemTime) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA18FC)
[Address] EAT @explorer.exe (InternetTimeFromSystemTimeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA18FC)
[Address] EAT @explorer.exe (InternetTimeFromSystemTimeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDAD7C)
[Address] EAT @explorer.exe (InternetTimeToSystemTime) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED4760)
[Address] EAT @explorer.exe (InternetTimeToSystemTimeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED4760)
[Address] EAT @explorer.exe (InternetTimeToSystemTimeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED468C)
[Address] EAT @explorer.exe (InternetUnlockRequestFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9FFF0)
[Address] EAT @explorer.exe (InternetWriteFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE68B08)
[Address] EAT @explorer.exe (InternetWriteFileExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (InternetWriteFileExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (IsHostInProxyBypassList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE7BC50)
[Address] EAT @explorer.exe (IsUrlCacheEntryExpiredA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93A8C)
[Address] EAT @explorer.exe (IsUrlCacheEntryExpiredW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDA290)
[Address] EAT @explorer.exe (LoadUrlCacheContent) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (ParseX509EncodedCertificateForListBoxEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72158)
[Address] EAT @explorer.exe (PrivacyGetZonePreferenceW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE646B8)
[Address] EAT @explorer.exe (PrivacySetZonePreferenceW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF54318)
[Address] EAT @explorer.exe (ReadUrlCacheEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6CBBC)
[Address] EAT @explorer.exe (ReadUrlCacheEntryStreamEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93BDC)
[Address] EAT @explorer.exe (RegisterUrlCacheNotification) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE99ED8)
[Address] EAT @explorer.exe (ResumeSuspendedDownload) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF30670)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93CEC)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93EC8)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryStreamA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF940A0)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryStreamW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED80B8)
[Address] EAT @explorer.exe (RunOnceUrlCache) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE24D80)
[Address] EAT @explorer.exe (SetUrlCacheConfigInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF942A4)
[Address] EAT @explorer.exe (SetUrlCacheConfigInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF943D8)
[Address] EAT @explorer.exe (SetUrlCacheEntryGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF944D8)
[Address] EAT @explorer.exe (SetUrlCacheEntryGroupA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF944D8)
[Address] EAT @explorer.exe (SetUrlCacheEntryGroupW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE61278)
[Address] EAT @explorer.exe (SetUrlCacheEntryInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6C1EC)
[Address] EAT @explorer.exe (SetUrlCacheEntryInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF946A4)
[Address] EAT @explorer.exe (SetUrlCacheGroupAttributeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94860)
[Address] EAT @explorer.exe (SetUrlCacheGroupAttributeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94A50)
[Address] EAT @explorer.exe (SetUrlCacheHeaderData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94C10)
[Address] EAT @explorer.exe (ShowCertificate) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72158)
[Address] EAT @explorer.exe (ShowClientAuthCerts) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72158)
[Address] EAT @explorer.exe (ShowSecurityInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72178)
[Address] EAT @explorer.exe (ShowX509EncodedCertificate) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72310)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94D30)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94D30)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94E68)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA2364)
[Address] EAT @explorer.exe (UpdateUrlCacheContentPath) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94FA8)
[Address] EAT @explorer.exe (UrlCacheCheckEntriesExist) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF950C8)
[Address] EAT @explorer.exe (UrlCacheCloseEntryHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF95120)
[Address] EAT @explorer.exe (UrlCacheContainerSetEntryMaximumAge) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9516C)
[Address] EAT @explorer.exe (UrlCacheCreateContainer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE52630)
[Address] EAT @explorer.exe (UrlCacheFindFirstEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE577A0)
[Address] EAT @explorer.exe (UrlCacheFindNextEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDBA04)
[Address] EAT @explorer.exe (UrlCacheFreeEntryInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA89A8)
[Address] EAT @explorer.exe (UrlCacheGetContentPaths) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF951C4)
[Address] EAT @explorer.exe (UrlCacheGetEntryInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2A5B0)
[Address] EAT @explorer.exe (UrlCacheGetGlobalLimit) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9521C)
[Address] EAT @explorer.exe (UrlCacheReadEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF95274)
[Address] EAT @explorer.exe (UrlCacheReloadSettings) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF952D4)
[Address] EAT @explorer.exe (UrlCacheRetrieveEntryFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9532C)
[Address] EAT @explorer.exe (UrlCacheRetrieveEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF95384)
[Address] EAT @explorer.exe (UrlCacheSetGlobalLimit) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF953E4)
[Address] EAT @explorer.exe (UrlCacheUpdateEntryExtraData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA8FF4)
[Address] EAT @explorer.exe (UrlZonesDetach) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF6D000)
[Address] EAT @explorer.exe (CscNetApiGetInterface) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B1530)
[Address] EAT @explorer.exe (CscSearchApiGetInterface) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B3CB8)
[Address] EAT @explorer.exe (OfflineFilesEnable) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B6FA0)
[Address] EAT @explorer.exe (OfflineFilesGetShareCachingMode) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B7434)
[Address] EAT @explorer.exe (OfflineFilesQueryStatus) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B2F50)
[Address] EAT @explorer.exe (OfflineFilesQueryStatusEx) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B2D50)
[Address] EAT @explorer.exe (OfflineFilesStart) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B74F0)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM024 HN-M101MBB +++++
--- User ---
[MBR] e4d7045a7d8cecf13bb4224fd0e224f8
[BSP] 1c4ec37e03d84b24c5ac7b1851c5ac5d : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_05172014_125332.txt >>
RKreport[0]_S_05162014_134002.txt
RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vojtěch [Práva správce]
Mód : Kontrola -- Datum : 05/17/2014 12:53:32
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP UNIC] vntldr.exe -- C:\Users\Vojtěch\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 17 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> NALEZENO
[RUN][SUSP UNIC] HKLM\[...]\Wow6432Node\[...]\Run : GPUTemp ("C:\Users\VOJTCH~1\AppData\Local\Temp\GPUTemp.exe" [x]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 3 ¤¤¤
[V1][ROGUE ST] GS.Enabler-S-4560858878.job : c:\programdata\quickset\gs.enabler\GS.Enabler.exe - /schedule /profile "c:\programdata\quickset\gs.enabler\4560858878.ini" [x][x] -> NALEZENO
[V1][ROGUE ST] Sk-Enabler-S-245486970.job : c:\programdata\quickset\sk-enabler\Sk-Enabler.exe - /schedule /profile "c:\programdata\quickset\sk-enabler\245486970.ini" [x][x] -> NALEZENO
[V2][SUSP PATH] OFFICE2010ACT : C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [-] -> NALEZENO
¤¤¤ spuštění položky : 3 ¤¤¤
[Vojtěch][SUSP UNIC] Curse.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk @C:\Users\VOJTCH~1\AppData\Roaming\CURSEC~1\Bin\Curse.exe /startup [-][7] -> NALEZENO
[Vojtěch][SUSP UNIC] PdaNet Desktop.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk @C:\PROGRA~2\PDANET~1\PdaNetPC.exe [-][7] -> NALEZENO
[Vojtěch][SUSP UNIC] wandoujia_helper.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wandoujia_helper.lnk @C:\Users\VOJTCH~1\AppData\Roaming\WANDOU~1\APPLIC~1\2690~1.545\WANDOU~2.EXE [-][7] -> NALEZENO
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A274C)
[Address] EAT @explorer.exe (DllGetClassObject) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A4984)
[Address] EAT @explorer.exe (DwmAttachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmDefWindowProc) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2C30)
[Address] EAT @explorer.exe (DwmDetachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmEnableBlurBehindWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2A70)
[Address] EAT @explorer.exe (DwmEnableComposition) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AC60C)
[Address] EAT @explorer.exe (DwmEnableMMCSS) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3788)
[Address] EAT @explorer.exe (DwmExtendFrameIntoClientArea) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2DC0)
[Address] EAT @explorer.exe (DwmFlush) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A26C0)
[Address] EAT @explorer.exe (DwmGetColorizationColor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AC118)
[Address] EAT @explorer.exe (DwmGetCompositionTimingInfo) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A1D40)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamClient) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamTransformHint) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A8180)
[Address] EAT @explorer.exe (DwmGetTransportAttributes) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AC8B0)
[Address] EAT @explorer.exe (DwmGetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A1010)
[Address] EAT @explorer.exe (DwmInvalidateIconicBitmaps) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A6308)
[Address] EAT @explorer.exe (DwmIsCompositionEnabled) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A11B0)
[Address] EAT @explorer.exe (DwmModifyPreviousDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD050)
[Address] EAT @explorer.exe (DwmQueryThumbnailSourceSize) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A6F34)
[Address] EAT @explorer.exe (DwmRegisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A69A8)
[Address] EAT @explorer.exe (DwmRenderGesture) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A7CEC)
[Address] EAT @explorer.exe (DwmSetDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD050)
[Address] EAT @explorer.exe (DwmSetIconicLivePreviewBitmap) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD1CC)
[Address] EAT @explorer.exe (DwmSetIconicThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD558)
[Address] EAT @explorer.exe (DwmSetPresentParameters) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670AD050)
[Address] EAT @explorer.exe (DwmSetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A10E8)
[Address] EAT @explorer.exe (DwmShowContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3A90)
[Address] EAT @explorer.exe (DwmTetherContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670ACB1C)
[Address] EAT @explorer.exe (DwmTransitionOwnedWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670ADBD8)
[Address] EAT @explorer.exe (DwmUnregisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A677C)
[Address] EAT @explorer.exe (DwmUpdateThumbnailProperties) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3A10)
[Address] EAT @explorer.exe (DwmpAllocateSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A2320)
[Address] EAT @explorer.exe (DwmpDxGetWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A5FE0)
[Address] EAT @explorer.exe (DwmpDxUpdateWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A7710)
[Address] EAT @explorer.exe (DwmpDxgiIsThreadDesktopComposited) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A3760)
[Address] EAT @explorer.exe (DwmpFreeSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670A22E4)
[Address] EAT @explorer.exe (DwmpRenderFlick) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x670ACE70)
[Address] EAT @explorer.exe (AccConvertAccessMaskToActrlAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FA0C)
[Address] EAT @explorer.exe (AccConvertAccessToSD) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FB80)
[Address] EAT @explorer.exe (AccConvertAccessToSecurityDescriptor) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FD3C)
[Address] EAT @explorer.exe (AccConvertAclToAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FE90)
[Address] EAT @explorer.exe (AccConvertSDToAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559FF2C)
[Address] EAT @explorer.exe (AccFreeIndexArray) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65590D80)
[Address] EAT @explorer.exe (AccGetAccessForTrustee) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A01A8)
[Address] EAT @explorer.exe (AccGetExplicitEntries) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0288)
[Address] EAT @explorer.exe (AccGetInheritanceSource) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65590EA0)
[Address] EAT @explorer.exe (AccLookupAccountName) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0348)
[Address] EAT @explorer.exe (AccLookupAccountSid) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0648)
[Address] EAT @explorer.exe (AccLookupAccountTrustee) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A09CC)
[Address] EAT @explorer.exe (AccProvCancelOperation) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CAFC)
[Address] EAT @explorer.exe (AccProvGetAccessInfoPerObjectType) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CB74)
[Address] EAT @explorer.exe (AccProvGetAllRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CC1C)
[Address] EAT @explorer.exe (AccProvGetCapabilities) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65588100)
[Address] EAT @explorer.exe (AccProvGetOperationResults) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CDF8)
[Address] EAT @explorer.exe (AccProvGetTrusteesAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559CF38)
[Address] EAT @explorer.exe (AccProvGrantAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D040)
[Address] EAT @explorer.exe (AccProvHandleGetAccessInfoPerObjectType) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D1B0)
[Address] EAT @explorer.exe (AccProvHandleGetAllRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D298)
[Address] EAT @explorer.exe (AccProvHandleGetTrusteesAccess) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D410)
[Address] EAT @explorer.exe (AccProvHandleGrantAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559C4D0)
[Address] EAT @explorer.exe (AccProvHandleIsAccessAudited) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D48C)
[Address] EAT @explorer.exe (AccProvHandleIsObjectAccessible) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D524)
[Address] EAT @explorer.exe (AccProvHandleRevokeAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D660)
[Address] EAT @explorer.exe (AccProvHandleRevokeAuditRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D738)
[Address] EAT @explorer.exe (AccProvHandleSetAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D810)
[Address] EAT @explorer.exe (AccProvIsAccessAudited) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559D910)
[Address] EAT @explorer.exe (AccProvIsObjectAccessible) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559DA24)
[Address] EAT @explorer.exe (AccProvRevokeAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559DE74)
[Address] EAT @explorer.exe (AccProvRevokeAuditRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559DFB0)
[Address] EAT @explorer.exe (AccProvSetAccessRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6559E0EC)
[Address] EAT @explorer.exe (AccRewriteGetExplicitEntriesFromAcl) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65587BD4)
[Address] EAT @explorer.exe (AccRewriteGetHandleRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65591510)
[Address] EAT @explorer.exe (AccRewriteGetNamedRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65591680)
[Address] EAT @explorer.exe (AccRewriteSetEntriesInAcl) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583070)
[Address] EAT @explorer.exe (AccRewriteSetHandleRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65582270)
[Address] EAT @explorer.exe (AccRewriteSetNamedRights) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583BA0)
[Address] EAT @explorer.exe (AccSetEntriesInAList) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655A0AD4)
[Address] EAT @explorer.exe (AccTreeResetNamedSecurityInfo) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655858A0)
[Address] EAT @explorer.exe (EventGuidToName) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6558DE68)
[Address] EAT @explorer.exe (EventNameFree) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x6558DEF4)
[Address] EAT @explorer.exe (GetExplicitEntriesFromAclW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65587BCC)
[Address] EAT @explorer.exe (GetMartaExtensionInterface) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583600)
[Address] EAT @explorer.exe (GetNamedSecurityInfoW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65582680)
[Address] EAT @explorer.exe (GetSecurityInfo) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65581390)
[Address] EAT @explorer.exe (SetEntriesInAclW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583060)
[Address] EAT @explorer.exe (SetNamedSecurityInfoW) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x65583E64)
[Address] EAT @explorer.exe (SetSecurityInfo) : nvumdshimx.dll -> HOOKED (C:\WINDOWS\SYSTEM32\ntmarta.dll @ 0x655821B0)
[Address] EAT @explorer.exe (AppCacheCheckManifest) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE85828)
[Address] EAT @explorer.exe (AppCacheCloseHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE817E0)
[Address] EAT @explorer.exe (AppCacheDeleteGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91320)
[Address] EAT @explorer.exe (AppCacheDeleteIEGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91378)
[Address] EAT @explorer.exe (AppCacheDuplicateHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE81950)
[Address] EAT @explorer.exe (AppCacheFinalize) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF913D0)
[Address] EAT @explorer.exe (AppCacheFreeDownloadList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91428)
[Address] EAT @explorer.exe (AppCacheFreeGroupList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED97C0)
[Address] EAT @explorer.exe (AppCacheFreeIESpace) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE57548)
[Address] EAT @explorer.exe (AppCacheFreeSpace) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91510)
[Address] EAT @explorer.exe (AppCacheGetDownloadList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91568)
[Address] EAT @explorer.exe (AppCacheGetFallbackUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEEBB94)
[Address] EAT @explorer.exe (AppCacheGetGroupList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED979C)
[Address] EAT @explorer.exe (AppCacheGetIEGroupList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF915C0)
[Address] EAT @explorer.exe (AppCacheGetInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF91618)
[Address] EAT @explorer.exe (AppCacheGetManifestUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE840B0)
[Address] EAT @explorer.exe (AppCacheLookup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA6FF8)
[Address] EAT @explorer.exe (CommitUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6B2C0)
[Address] EAT @explorer.exe (CommitUrlCacheEntryBinaryBlob) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9C888)
[Address] EAT @explorer.exe (CommitUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9E4C0)
[Address] EAT @explorer.exe (CreateMD5SSOHash) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF68690)
[Address] EAT @explorer.exe (CreateUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5322C)
[Address] EAT @explorer.exe (CreateUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE53388)
[Address] EAT @explorer.exe (CreateUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6B450)
[Address] EAT @explorer.exe (CreateUrlCacheEntryExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED9E7C)
[Address] EAT @explorer.exe (CreateUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED9E58)
[Address] EAT @explorer.exe (CreateUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9252C)
[Address] EAT @explorer.exe (DeleteIE3Cache) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF96A34)
[Address] EAT @explorer.exe (DeleteUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE57A00)
[Address] EAT @explorer.exe (DeleteUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE883B0)
[Address] EAT @explorer.exe (DeleteUrlCacheEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE65494)
[Address] EAT @explorer.exe (DeleteUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE65494)
[Address] EAT @explorer.exe (DeleteUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE57B70)
[Address] EAT @explorer.exe (DeleteUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9262C)
[Address] EAT @explorer.exe (DeleteWpadCacheForNetworks) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF4F270)
[Address] EAT @explorer.exe (DetectAutoProxyUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF4F76C)
[Address] EAT @explorer.exe (DispatchAPICall) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE21B28)
[Address] EAT @explorer.exe (DllCanUnloadNow) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE99CC0)
[Address] EAT @explorer.exe (DllGetClassObject) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE95990)
[Address] EAT @explorer.exe (DllInstall) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2A544)
[Address] EAT @explorer.exe (DllRegisterServer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF322D0)
[Address] EAT @explorer.exe (DllUnregisterServer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF32310)
[Address] EAT @explorer.exe (FindCloseUrlCache) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2A0C0)
[Address] EAT @explorer.exe (FindFirstUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9E16C)
[Address] EAT @explorer.exe (FindFirstUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE52CB4)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2BA6C)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE97DA8)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE597E0)
[Address] EAT @explorer.exe (FindFirstUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE97570)
[Address] EAT @explorer.exe (FindFirstUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92730)
[Address] EAT @explorer.exe (FindNextUrlCacheContainerA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9E044)
[Address] EAT @explorer.exe (FindNextUrlCacheContainerW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE52F48)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2BED0)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92878)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92A48)
[Address] EAT @explorer.exe (FindNextUrlCacheEntryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE59400)
[Address] EAT @explorer.exe (FindNextUrlCacheGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92C18)
[Address] EAT @explorer.exe (ForceNexusLookup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF6889C)
[Address] EAT @explorer.exe (ForceNexusLookupExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF688F0)
[Address] EAT @explorer.exe (FreeUrlCacheSpaceA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92D34)
[Address] EAT @explorer.exe (FreeUrlCacheSpaceW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE566F0)
[Address] EAT @explorer.exe (FtpCommandA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D388)
[Address] EAT @explorer.exe (FtpCommandW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF40D4C)
[Address] EAT @explorer.exe (FtpCreateDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D46C)
[Address] EAT @explorer.exe (FtpCreateDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF40EE8)
[Address] EAT @explorer.exe (FtpDeleteFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D50C)
[Address] EAT @explorer.exe (FtpDeleteFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41050)
[Address] EAT @explorer.exe (FtpFindFirstFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D5AC)
[Address] EAT @explorer.exe (FtpFindFirstFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF411B8)
[Address] EAT @explorer.exe (FtpGetCurrentDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D818)
[Address] EAT @explorer.exe (FtpGetCurrentDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41390)
[Address] EAT @explorer.exe (FtpGetFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3D8D8)
[Address] EAT @explorer.exe (FtpGetFileEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41518)
[Address] EAT @explorer.exe (FtpGetFileSize) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3DAFC)
[Address] EAT @explorer.exe (FtpGetFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF416AC)
[Address] EAT @explorer.exe (FtpOpenFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3DD70)
[Address] EAT @explorer.exe (FtpOpenFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF417B0)
[Address] EAT @explorer.exe (FtpPutFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3DE50)
[Address] EAT @explorer.exe (FtpPutFileEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41840)
[Address] EAT @explorer.exe (FtpPutFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF419A4)
[Address] EAT @explorer.exe (FtpRemoveDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3E1D0)
[Address] EAT @explorer.exe (FtpRemoveDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41A78)
[Address] EAT @explorer.exe (FtpRenameFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3E270)
[Address] EAT @explorer.exe (FtpRenameFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41BD4)
[Address] EAT @explorer.exe (FtpSetCurrentDirectoryA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3E324)
[Address] EAT @explorer.exe (FtpSetCurrentDirectoryW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF41DF4)
[Address] EAT @explorer.exe (GetProxyDllInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF27C00)
[Address] EAT @explorer.exe (GetUrlCacheConfigInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF92F54)
[Address] EAT @explorer.exe (GetUrlCacheConfigInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE562C8)
[Address] EAT @explorer.exe (GetUrlCacheEntryBinaryBlob) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2ACF0)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF931F0)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF933A8)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9F540)
[Address] EAT @explorer.exe (GetUrlCacheEntryInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE27824)
[Address] EAT @explorer.exe (GetUrlCacheGroupAttributeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF935F0)
[Address] EAT @explorer.exe (GetUrlCacheGroupAttributeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93858)
[Address] EAT @explorer.exe (GetUrlCacheHeaderData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE3BDE0)
[Address] EAT @explorer.exe (GopherCreateLocatorA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherCreateLocatorW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherFindFirstFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherFindFirstFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetAttributeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetAttributeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetLocatorTypeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherGetLocatorTypeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherOpenFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (GopherOpenFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (HttpAddRequestHeadersA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE34140)
[Address] EAT @explorer.exe (HttpAddRequestHeadersW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE47A30)
[Address] EAT @explorer.exe (HttpCheckDavCompliance) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF545C8)
[Address] EAT @explorer.exe (HttpCloseDependencyHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA30E0)
[Address] EAT @explorer.exe (HttpDuplicateDependencyHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA3240)
[Address] EAT @explorer.exe (HttpEndRequestA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE68A68)
[Address] EAT @explorer.exe (HttpEndRequestW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF54C64)
[Address] EAT @explorer.exe (HttpGetServerCredentials) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF6CBCC)
[Address] EAT @explorer.exe (HttpGetTunnelSocket) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37058)
[Address] EAT @explorer.exe (HttpOpenDependencyHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA63C0)
[Address] EAT @explorer.exe (HttpOpenRequestA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF552C0)
[Address] EAT @explorer.exe (HttpOpenRequestW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE32EE0)
[Address] EAT @explorer.exe (HttpPushClose) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37D94)
[Address] EAT @explorer.exe (HttpPushEnable) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37E44)
[Address] EAT @explorer.exe (HttpPushWait) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37E9C)
[Address] EAT @explorer.exe (HttpQueryInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE38B60)
[Address] EAT @explorer.exe (HttpQueryInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE3A090)
[Address] EAT @explorer.exe (HttpSendRequestA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED40D0)
[Address] EAT @explorer.exe (HttpSendRequestExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF54D64)
[Address] EAT @explorer.exe (HttpSendRequestExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE68880)
[Address] EAT @explorer.exe (HttpSendRequestW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE47634)
[Address] EAT @explorer.exe (HttpWebSocketClose) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF65350)
[Address] EAT @explorer.exe (HttpWebSocketCompleteUpgrade) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF658DC)
[Address] EAT @explorer.exe (HttpWebSocketQueryCloseStatus) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF65498)
[Address] EAT @explorer.exe (HttpWebSocketReceive) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF65D7C)
[Address] EAT @explorer.exe (HttpWebSocketSend) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF662C0)
[Address] EAT @explorer.exe (HttpWebSocketShutdown) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF66580)
[Address] EAT @explorer.exe (IncrementUrlCacheHeaderData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE674F4)
[Address] EAT @explorer.exe (InternetAlgIdToStringA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71ABC)
[Address] EAT @explorer.exe (InternetAlgIdToStringW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71CA0)
[Address] EAT @explorer.exe (InternetAttemptConnect) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2BF9C)
[Address] EAT @explorer.exe (InternetAutodial) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31148)
[Address] EAT @explorer.exe (InternetAutodialCallback) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2844C)
[Address] EAT @explorer.exe (InternetAutodialHangup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF311E0)
[Address] EAT @explorer.exe (InternetCanonicalizeUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C004)
[Address] EAT @explorer.exe (InternetCanonicalizeUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED7A50)
[Address] EAT @explorer.exe (InternetCheckConnectionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C110)
[Address] EAT @explorer.exe (InternetCheckConnectionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D40C)
[Address] EAT @explorer.exe (InternetClearAllPerSiteCookieDecisions) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55D68)
[Address] EAT @explorer.exe (InternetCloseHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE371F4)
[Address] EAT @explorer.exe (InternetCombineUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C5B8)
[Address] EAT @explorer.exe (InternetCombineUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE8C930)
[Address] EAT @explorer.exe (InternetConfirmZoneCrossing) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72A6C)
[Address] EAT @explorer.exe (InternetConfirmZoneCrossingA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72A6C)
[Address] EAT @explorer.exe (InternetConfirmZoneCrossingW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED1BD0)
[Address] EAT @explorer.exe (InternetConnectA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C6D0)
[Address] EAT @explorer.exe (InternetConnectW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE365EC)
[Address] EAT @explorer.exe (InternetCrackUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE630E4)
[Address] EAT @explorer.exe (InternetCrackUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA9760)
[Address] EAT @explorer.exe (InternetCreateUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C800)
[Address] EAT @explorer.exe (InternetCreateUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE8BEC8)
[Address] EAT @explorer.exe (InternetDial) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31270)
[Address] EAT @explorer.exe (InternetDialA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31270)
[Address] EAT @explorer.exe (InternetDialW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF3131C)
[Address] EAT @explorer.exe (InternetEnumPerSiteCookieDecisionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55D74)
[Address] EAT @explorer.exe (InternetEnumPerSiteCookieDecisionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55DE0)
[Address] EAT @explorer.exe (InternetErrorDlg) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72B24)
[Address] EAT @explorer.exe (InternetFindNextFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF406A8)
[Address] EAT @explorer.exe (InternetFindNextFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF429E8)
[Address] EAT @explorer.exe (InternetFortezzaCommand) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37EF4)
[Address] EAT @explorer.exe (InternetFreeCookies) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE66AC8)
[Address] EAT @explorer.exe (InternetFreeProxyInfoList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED762C)
[Address] EAT @explorer.exe (InternetGetCertByURL) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE24D80)
[Address] EAT @explorer.exe (InternetGetCertByURLA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE24D80)
[Address] EAT @explorer.exe (InternetGetConnectedState) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9EE28)
[Address] EAT @explorer.exe (InternetGetConnectedStateEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED82A0)
[Address] EAT @explorer.exe (InternetGetConnectedStateExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED82A0)
[Address] EAT @explorer.exe (InternetGetConnectedStateExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE7AD90)
[Address] EAT @explorer.exe (InternetGetCookieA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF570B0)
[Address] EAT @explorer.exe (InternetGetCookieEx2) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE66A98)
[Address] EAT @explorer.exe (InternetGetCookieExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF570E0)
[Address] EAT @explorer.exe (InternetGetCookieExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE66B34)
[Address] EAT @explorer.exe (InternetGetCookieW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF573E4)
[Address] EAT @explorer.exe (InternetGetLastResponseInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2C898)
[Address] EAT @explorer.exe (InternetGetLastResponseInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D500)
[Address] EAT @explorer.exe (InternetGetPerSiteCookieDecisionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55EC4)
[Address] EAT @explorer.exe (InternetGetPerSiteCookieDecisionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55F14)
[Address] EAT @explorer.exe (InternetGetProxyForUrl) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED7374)
[Address] EAT @explorer.exe (InternetGetSecurityInfoByURL) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CA38)
[Address] EAT @explorer.exe (InternetGetSecurityInfoByURLA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CA38)
[Address] EAT @explorer.exe (InternetGetSecurityInfoByURLW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D6BC)
[Address] EAT @explorer.exe (InternetGoOnline) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF313D0)
[Address] EAT @explorer.exe (InternetGoOnlineA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF313D0)
[Address] EAT @explorer.exe (InternetGoOnlineW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31468)
[Address] EAT @explorer.exe (InternetHangUp) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31500)
[Address] EAT @explorer.exe (InternetInitializeAutoProxyDll) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE8C574)
[Address] EAT @explorer.exe (InternetLockRequestFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA02BC)
[Address] EAT @explorer.exe (InternetOpenA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5D55C)
[Address] EAT @explorer.exe (InternetOpenUrlA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CB50)
[Address] EAT @explorer.exe (InternetOpenUrlW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D7B8)
[Address] EAT @explorer.exe (InternetOpenW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5D3D4)
[Address] EAT @explorer.exe (InternetQueryDataAvailable) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE4AB70)
[Address] EAT @explorer.exe (InternetQueryFortezzaStatus) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF37F54)
[Address] EAT @explorer.exe (InternetQueryOptionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE30D50)
[Address] EAT @explorer.exe (InternetQueryOptionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE31220)
[Address] EAT @explorer.exe (InternetReadFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE48430)
[Address] EAT @explorer.exe (InternetReadFileExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6DF90)
[Address] EAT @explorer.exe (InternetReadFileExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6DF00)
[Address] EAT @explorer.exe (InternetSecurityProtocolToStringA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71E78)
[Address] EAT @explorer.exe (InternetSecurityProtocolToStringW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF71FE8)
[Address] EAT @explorer.exe (InternetSetCookieA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF57404)
[Address] EAT @explorer.exe (InternetSetCookieEx2) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF5742C)
[Address] EAT @explorer.exe (InternetSetCookieExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF5748C)
[Address] EAT @explorer.exe (InternetSetCookieExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE62BB0)
[Address] EAT @explorer.exe (InternetSetCookieW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF57530)
[Address] EAT @explorer.exe (InternetSetDialState) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31580)
[Address] EAT @explorer.exe (InternetSetDialStateA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF31580)
[Address] EAT @explorer.exe (InternetSetDialStateW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF315D8)
[Address] EAT @explorer.exe (InternetSetFilePointer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDA07C)
[Address] EAT @explorer.exe (InternetSetOptionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2DF30)
[Address] EAT @explorer.exe (InternetSetOptionExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2DDE0)
[Address] EAT @explorer.exe (InternetSetOptionExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2DED4)
[Address] EAT @explorer.exe (InternetSetOptionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2E3F0)
[Address] EAT @explorer.exe (InternetSetPerSiteCookieDecisionA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF55FAC)
[Address] EAT @explorer.exe (InternetSetPerSiteCookieDecisionW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF56044)
[Address] EAT @explorer.exe (InternetSetStatusCallback) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5E178)
[Address] EAT @explorer.exe (InternetSetStatusCallbackA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE5E178)
[Address] EAT @explorer.exe (InternetSetStatusCallbackW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6EF08)
[Address] EAT @explorer.exe (InternetShowSecurityInfoByURL) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CBE4)
[Address] EAT @explorer.exe (InternetShowSecurityInfoByURLA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2CBE4)
[Address] EAT @explorer.exe (InternetShowSecurityInfoByURLW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF2D970)
[Address] EAT @explorer.exe (InternetTimeFromSystemTime) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA18FC)
[Address] EAT @explorer.exe (InternetTimeFromSystemTimeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA18FC)
[Address] EAT @explorer.exe (InternetTimeFromSystemTimeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDAD7C)
[Address] EAT @explorer.exe (InternetTimeToSystemTime) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED4760)
[Address] EAT @explorer.exe (InternetTimeToSystemTimeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED4760)
[Address] EAT @explorer.exe (InternetTimeToSystemTimeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED468C)
[Address] EAT @explorer.exe (InternetUnlockRequestFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE9FFF0)
[Address] EAT @explorer.exe (InternetWriteFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE68B08)
[Address] EAT @explorer.exe (InternetWriteFileExA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (InternetWriteFileExW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (IsHostInProxyBypassList) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE7BC50)
[Address] EAT @explorer.exe (IsUrlCacheEntryExpiredA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93A8C)
[Address] EAT @explorer.exe (IsUrlCacheEntryExpiredW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDA290)
[Address] EAT @explorer.exe (LoadUrlCacheContent) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF49C6C)
[Address] EAT @explorer.exe (ParseX509EncodedCertificateForListBoxEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72158)
[Address] EAT @explorer.exe (PrivacyGetZonePreferenceW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE646B8)
[Address] EAT @explorer.exe (PrivacySetZonePreferenceW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF54318)
[Address] EAT @explorer.exe (ReadUrlCacheEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6CBBC)
[Address] EAT @explorer.exe (ReadUrlCacheEntryStreamEx) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93BDC)
[Address] EAT @explorer.exe (RegisterUrlCacheNotification) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE99ED8)
[Address] EAT @explorer.exe (ResumeSuspendedDownload) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF30670)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93CEC)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF93EC8)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryStreamA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF940A0)
[Address] EAT @explorer.exe (RetrieveUrlCacheEntryStreamW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FED80B8)
[Address] EAT @explorer.exe (RunOnceUrlCache) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE24D80)
[Address] EAT @explorer.exe (SetUrlCacheConfigInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF942A4)
[Address] EAT @explorer.exe (SetUrlCacheConfigInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF943D8)
[Address] EAT @explorer.exe (SetUrlCacheEntryGroup) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF944D8)
[Address] EAT @explorer.exe (SetUrlCacheEntryGroupA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF944D8)
[Address] EAT @explorer.exe (SetUrlCacheEntryGroupW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE61278)
[Address] EAT @explorer.exe (SetUrlCacheEntryInfoA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE6C1EC)
[Address] EAT @explorer.exe (SetUrlCacheEntryInfoW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF946A4)
[Address] EAT @explorer.exe (SetUrlCacheGroupAttributeA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94860)
[Address] EAT @explorer.exe (SetUrlCacheGroupAttributeW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94A50)
[Address] EAT @explorer.exe (SetUrlCacheHeaderData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94C10)
[Address] EAT @explorer.exe (ShowCertificate) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72158)
[Address] EAT @explorer.exe (ShowClientAuthCerts) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72158)
[Address] EAT @explorer.exe (ShowSecurityInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72178)
[Address] EAT @explorer.exe (ShowX509EncodedCertificate) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF72310)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94D30)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryFileA) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94D30)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryFileW) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94E68)
[Address] EAT @explorer.exe (UnlockUrlCacheEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA2364)
[Address] EAT @explorer.exe (UpdateUrlCacheContentPath) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF94FA8)
[Address] EAT @explorer.exe (UrlCacheCheckEntriesExist) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF950C8)
[Address] EAT @explorer.exe (UrlCacheCloseEntryHandle) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF95120)
[Address] EAT @explorer.exe (UrlCacheContainerSetEntryMaximumAge) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9516C)
[Address] EAT @explorer.exe (UrlCacheCreateContainer) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE52630)
[Address] EAT @explorer.exe (UrlCacheFindFirstEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE577A0)
[Address] EAT @explorer.exe (UrlCacheFindNextEntry) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEDBA04)
[Address] EAT @explorer.exe (UrlCacheFreeEntryInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA89A8)
[Address] EAT @explorer.exe (UrlCacheGetContentPaths) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF951C4)
[Address] EAT @explorer.exe (UrlCacheGetEntryInfo) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FE2A5B0)
[Address] EAT @explorer.exe (UrlCacheGetGlobalLimit) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9521C)
[Address] EAT @explorer.exe (UrlCacheReadEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF95274)
[Address] EAT @explorer.exe (UrlCacheReloadSettings) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF952D4)
[Address] EAT @explorer.exe (UrlCacheRetrieveEntryFile) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF9532C)
[Address] EAT @explorer.exe (UrlCacheRetrieveEntryStream) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF95384)
[Address] EAT @explorer.exe (UrlCacheSetGlobalLimit) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF953E4)
[Address] EAT @explorer.exe (UrlCacheUpdateEntryExtraData) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FEA8FF4)
[Address] EAT @explorer.exe (UrlZonesDetach) : Windows.UI.dll -> HOOKED (C:\WINDOWS\system32\WININET.dll @ 0x5FF6D000)
[Address] EAT @explorer.exe (CscNetApiGetInterface) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B1530)
[Address] EAT @explorer.exe (CscSearchApiGetInterface) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B3CB8)
[Address] EAT @explorer.exe (OfflineFilesEnable) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B6FA0)
[Address] EAT @explorer.exe (OfflineFilesGetShareCachingMode) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B7434)
[Address] EAT @explorer.exe (OfflineFilesQueryStatus) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B2F50)
[Address] EAT @explorer.exe (OfflineFilesQueryStatusEx) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B2D50)
[Address] EAT @explorer.exe (OfflineFilesStart) : sfc.dll -> HOOKED (C:\WINDOWS\SYSTEM32\cscapi.dll @ 0x5F0B74F0)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM024 HN-M101MBB +++++
--- User ---
[MBR] e4d7045a7d8cecf13bb4224fd0e224f8
[BSP] 1c4ec37e03d84b24c5ac7b1851c5ac5d : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_05172014_125332.txt >>
RKreport[0]_S_05162014_134002.txt
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
<><><><><><><>><><><><><><><><><><><><>><><><><><><<<>>>
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vojtěch [Práva správce]
Mód : Odebrat -- Datum : 05/18/2014 10:54:35
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP UNIC] vntldr.exe -- C:\Users\Vojtěch\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 17 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP UNIC] HKLM\[...]\Wow6432Node\[...]\Run : GPUTemp ("C:\Users\VOJTCH~1\AppData\Local\Temp\GPUTemp.exe" [x]) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 3 ¤¤¤
[V1][ROGUE ST] GS.Enabler-S-4560858878.job : c:\programdata\quickset\gs.enabler\GS.Enabler.exe - /schedule /profile "c:\programdata\quickset\gs.enabler\4560858878.ini" [x][x] -> VYMAZÁNO
[V1][ROGUE ST] Sk-Enabler-S-245486970.job : c:\programdata\quickset\sk-enabler\Sk-Enabler.exe - /schedule /profile "c:\programdata\quickset\sk-enabler\245486970.ini" [x][x] -> VYMAZÁNO
[V2][SUSP PATH] OFFICE2010ACT : C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [-] -> VYMAZÁNO
¤¤¤ spuštění položky : 3 ¤¤¤
[Vojtěch][SUSP UNIC] Curse.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk @C:\Users\VOJTCH~1\AppData\Roaming\CURSEC~1\Bin\Curse.exe /startup [-][7] -> VYMAZÁNO
[Vojtěch][SUSP UNIC] PdaNet Desktop.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk @C:\PROGRA~2\PDANET~1\PdaNetPC.exe [-][7] -> VYMAZÁNO
[Vojtěch][SUSP UNIC] wandoujia_helper.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wandoujia_helper.lnk @C:\Users\VOJTCH~1\AppData\Roaming\WANDOU~1\APPLIC~1\2690~1.545\WANDOU~2.EXE [-][7] -> VYMAZÁNO
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097274C)
[Address] EAT @explorer.exe (DllGetClassObject) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70974984)
[Address] EAT @explorer.exe (DwmAttachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmDefWindowProc) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972C30)
[Address] EAT @explorer.exe (DwmDetachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmEnableBlurBehindWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972A70)
[Address] EAT @explorer.exe (DwmEnableComposition) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097C60C)
[Address] EAT @explorer.exe (DwmEnableMMCSS) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973788)
[Address] EAT @explorer.exe (DwmExtendFrameIntoClientArea) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972DC0)
[Address] EAT @explorer.exe (DwmFlush) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709726C0)
[Address] EAT @explorer.exe (DwmGetColorizationColor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097C118)
[Address] EAT @explorer.exe (DwmGetCompositionTimingInfo) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70971D40)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamClient) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamTransformHint) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmGetTransportAttributes) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097C8B0)
[Address] EAT @explorer.exe (DwmGetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70971010)
[Address] EAT @explorer.exe (DwmInvalidateIconicBitmaps) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70976308)
[Address] EAT @explorer.exe (DwmIsCompositionEnabled) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709711B0)
[Address] EAT @explorer.exe (DwmModifyPreviousDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D050)
[Address] EAT @explorer.exe (DwmQueryThumbnailSourceSize) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70976F34)
[Address] EAT @explorer.exe (DwmRegisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709769A8)
[Address] EAT @explorer.exe (DwmRenderGesture) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70977CEC)
[Address] EAT @explorer.exe (DwmSetDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D050)
[Address] EAT @explorer.exe (DwmSetIconicLivePreviewBitmap) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D1CC)
[Address] EAT @explorer.exe (DwmSetIconicThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D558)
[Address] EAT @explorer.exe (DwmSetPresentParameters) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D050)
[Address] EAT @explorer.exe (DwmSetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709710E8)
[Address] EAT @explorer.exe (DwmShowContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973A90)
[Address] EAT @explorer.exe (DwmTetherContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097CB1C)
[Address] EAT @explorer.exe (DwmTransitionOwnedWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097DBD8)
[Address] EAT @explorer.exe (DwmUnregisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097677C)
[Address] EAT @explorer.exe (DwmUpdateThumbnailProperties) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973A10)
[Address] EAT @explorer.exe (DwmpAllocateSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972320)
[Address] EAT @explorer.exe (DwmpDxGetWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70975FE0)
[Address] EAT @explorer.exe (DwmpDxUpdateWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70977710)
[Address] EAT @explorer.exe (DwmpDxgiIsThreadDesktopComposited) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973760)
[Address] EAT @explorer.exe (DwmpFreeSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709722E4)
[Address] EAT @explorer.exe (DwmpRenderFlick) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097CE70)
[Address] EAT @explorer.exe (AsyncGetClassBits) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696670B0)
[Address] EAT @explorer.exe (AsyncInstallDistributionUnit) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667210)
[Address] EAT @explorer.exe (BindAsyncMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F90)
[Address] EAT @explorer.exe (CDLGetLongPathNameA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696678D0)
[Address] EAT @explorer.exe (CDLGetLongPathNameW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696678E8)
[Address] EAT @explorer.exe (CORPolicyProvider) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651674)
[Address] EAT @explorer.exe (CoGetClassObjectFromURL) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696673FC)
[Address] EAT @explorer.exe (CoInstall) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667460)
[Address] EAT @explorer.exe (CoInternetCanonicalizeIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69615660)
[Address] EAT @explorer.exe (CoInternetCombineIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696180A0)
[Address] EAT @explorer.exe (CoInternetCombineUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696046A4)
[Address] EAT @explorer.exe (CoInternetCombineUrlEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696043C0)
[Address] EAT @explorer.exe (CoInternetCompareUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655280)
[Address] EAT @explorer.exe (CoInternetCreateSecurityManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D1EE0)
[Address] EAT @explorer.exe (CoInternetCreateZoneManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695E0810)
[Address] EAT @explorer.exe (CoInternetFeatureSettingsChanged) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69690284)
[Address] EAT @explorer.exe (CoInternetGetProtocolFlags) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965537C)
[Address] EAT @explorer.exe (CoInternetGetSecurityUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696553D0)
[Address] EAT @explorer.exe (CoInternetGetSecurityUrlEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69619CD0)
[Address] EAT @explorer.exe (CoInternetGetSession) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D2460)
[Address] EAT @explorer.exe (CoInternetIsFeatureEnabled) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69618DC0)
[Address] EAT @explorer.exe (CoInternetIsFeatureEnabledForIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696151B8)
[Address] EAT @explorer.exe (CoInternetIsFeatureEnabledForUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69611820)
[Address] EAT @explorer.exe (CoInternetIsFeatureZoneElevationEnabled) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965586C)
[Address] EAT @explorer.exe (CoInternetParseIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696056A8)
[Address] EAT @explorer.exe (CoInternetParseUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695E1490)
[Address] EAT @explorer.exe (CoInternetQueryInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69617C50)
[Address] EAT @explorer.exe (CoInternetSetFeatureEnabled) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655AF4)
[Address] EAT @explorer.exe (CompareSecurityIds) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695ED1A4)
[Address] EAT @explorer.exe (CompatFlagsFromClsid) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69614044)
[Address] EAT @explorer.exe (CopyBindInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69663020)
[Address] EAT @explorer.exe (CopyStgMedium) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695DBA0C)
[Address] EAT @explorer.exe (CreateAsyncBindCtx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696286C0)
[Address] EAT @explorer.exe (CreateAsyncBindCtxEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69613D14)
[Address] EAT @explorer.exe (CreateFormatEnumerator) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695F68E0)
[Address] EAT @explorer.exe (CreateIUriBuilder) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D3660)
[Address] EAT @explorer.exe (CreateURLMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962CCF4)
[Address] EAT @explorer.exe (CreateURLMonikerEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D78D0)
[Address] EAT @explorer.exe (CreateURLMonikerEx2) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696140F0)
[Address] EAT @explorer.exe (CreateUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D16F0)
[Address] EAT @explorer.exe (CreateUriFromMultiByteString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EE4)
[Address] EAT @explorer.exe (CreateUriPriv) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EF8)
[Address] EAT @explorer.exe (CreateUriWithFragment) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F40)
[Address] EAT @explorer.exe (DllCanUnloadNow) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D1600)
[Address] EAT @explorer.exe (DllGetClassObject) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6961AB3C)
[Address] EAT @explorer.exe (DllInstall) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652458)
[Address] EAT @explorer.exe (DllRegisterServer) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652464)
[Address] EAT @explorer.exe (DllRegisterServerEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962E070)
[Address] EAT @explorer.exe (DllUnregisterServer) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652470)
[Address] EAT @explorer.exe (Extract) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667F74)
[Address] EAT @explorer.exe (FaultInIEFeature) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69668FE8)
[Address] EAT @explorer.exe (FileBearsMarkOfTheWeb) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69606B60)
[Address] EAT @explorer.exe (FindMediaType) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652E9C)
[Address] EAT @explorer.exe (FindMediaTypeClass) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695F6080)
[Address] EAT @explorer.exe (FindMimeFromData) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696150BC)
[Address] EAT @explorer.exe (GetAddSitesFileUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696902B0)
[Address] EAT @explorer.exe (GetClassFileOrMime) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962B8EC)
[Address] EAT @explorer.exe (GetClassURL) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652074)
[Address] EAT @explorer.exe (GetComponentIDFromCLSSPEC) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696692E8)
[Address] EAT @explorer.exe (GetIDNFlagsForUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695EC7F0)
[Address] EAT @explorer.exe (GetIUriPriv) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F60)
[Address] EAT @explorer.exe (GetIUriPriv2) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F50)
[Address] EAT @explorer.exe (GetLabelsFromNamedHost) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69698B54)
[Address] EAT @explorer.exe (GetMarkOfTheWeb) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69689390)
[Address] EAT @explorer.exe (GetPortFromUrlScheme) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651E94)
[Address] EAT @explorer.exe (GetPropertyFromName) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EA4)
[Address] EAT @explorer.exe (GetPropertyName) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EB4)
[Address] EAT @explorer.exe (GetSoftwareUpdateInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962E070)
[Address] EAT @explorer.exe (GetUrlmonThreadNotificationHwnd) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962DEB4)
[Address] EAT @explorer.exe (GetZoneFromAlternateDataStreamEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D6D90)
[Address] EAT @explorer.exe (HlinkGoBack) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69686E78)
[Address] EAT @explorer.exe (HlinkGoForward) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69686F24)
[Address] EAT @explorer.exe (HlinkNavigateMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69686FD0)
[Address] EAT @explorer.exe (HlinkNavigateString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687004)
[Address] EAT @explorer.exe (HlinkSimpleNavigateToMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687038)
[Address] EAT @explorer.exe (HlinkSimpleNavigateToString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696875E8)
[Address] EAT @explorer.exe (IECompatLogCSSFix) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696612FC)
[Address] EAT @explorer.exe (IEDllLoader) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696526F0)
[Address] EAT @explorer.exe (IEGetUserPrivateNamespaceName) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69663244)
[Address] EAT @explorer.exe (IEInstallScope) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667554)
[Address] EAT @explorer.exe (IntlPercentEncodeNormalize) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F70)
[Address] EAT @explorer.exe (IsAsyncMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696121FC)
[Address] EAT @explorer.exe (IsDWORDProperty) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EC4)
[Address] EAT @explorer.exe (IsIntranetAvailable) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69690668)
[Address] EAT @explorer.exe (IsJITInProgress) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695EB328)
[Address] EAT @explorer.exe (IsLoggingEnabledA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6968855C)
[Address] EAT @explorer.exe (IsLoggingEnabledW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688688)
[Address] EAT @explorer.exe (IsStringProperty) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651ED4)
[Address] EAT @explorer.exe (IsValidURL) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69607610)
[Address] EAT @explorer.exe (MkParseDisplayNameEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696292F0)
[Address] EAT @explorer.exe (ObtainUserAgentString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965DCE0)
[Address] EAT @explorer.exe (PrivateCoInstall) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667560)
[Address] EAT @explorer.exe (QueryAssociations) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695EE9C0)
[Address] EAT @explorer.exe (QueryClsidAssociation) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69660A8C)
[Address] EAT @explorer.exe (RegisterBindStatusCallback) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6960F600)
[Address] EAT @explorer.exe (RegisterFormatEnumerator) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69611C6C)
[Address] EAT @explorer.exe (RegisterMediaTypeClass) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696520C0)
[Address] EAT @explorer.exe (RegisterMediaTypes) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652210)
[Address] EAT @explorer.exe (RegisterWebPlatformPermanentSecurityManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69608C54)
[Address] EAT @explorer.exe (ReleaseBindInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D7D40)
[Address] EAT @explorer.exe (RevokeBindStatusCallback) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6960FBF0)
[Address] EAT @explorer.exe (RevokeFormatEnumerator) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696522CC)
[Address] EAT @explorer.exe (SetAccessForIEAppContainer) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69663258)
[Address] EAT @explorer.exe (SetSoftwareUpdateAdvertisementState) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962E070)
[Address] EAT @explorer.exe (ShouldDisplayPunycodeForUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965DE50)
[Address] EAT @explorer.exe (ShouldShowIntranetWarningSecband) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69613A3C)
[Address] EAT @explorer.exe (ShowTrustAlertDialog) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69690820)
[Address] EAT @explorer.exe (URLDownloadA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655CC4)
[Address] EAT @explorer.exe (URLDownloadToCacheFileA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687D9C)
[Address] EAT @explorer.exe (URLDownloadToCacheFileW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695FA0C4)
[Address] EAT @explorer.exe (URLDownloadToFileA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687F10)
[Address] EAT @explorer.exe (URLDownloadToFileW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695FEFD0)
[Address] EAT @explorer.exe (URLDownloadW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655D78)
[Address] EAT @explorer.exe (URLOpenBlockingStreamA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688058)
[Address] EAT @explorer.exe (URLOpenBlockingStreamW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688138)
[Address] EAT @explorer.exe (URLOpenPullStreamA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6968821C)
[Address] EAT @explorer.exe (URLOpenPullStreamW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696882E0)
[Address] EAT @explorer.exe (URLOpenStreamA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688408)
[Address] EAT @explorer.exe (URLOpenStreamW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696884D0)
[Address] EAT @explorer.exe (UnregisterWebPlatformPermanentSecurityManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962C9B4)
[Address] EAT @explorer.exe (UrlMkBuildVersion) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652804)
[Address] EAT @explorer.exe (UrlMkGetSessionOption) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695E3E60)
[Address] EAT @explorer.exe (UrlMkSetSessionOption) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6960D0E4)
[Address] EAT @explorer.exe (UrlmonCleanupCurrentThread) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695FA27C)
[Address] EAT @explorer.exe (WriteHitLogging) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696885D0)
[Address] EAT @explorer.exe (ZonesReInit) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69689C30)
[Address] EAT @explorer.exe (DllCanUnloadNow) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C081010)
[Address] EAT @explorer.exe (DllGetClassObject) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C081E60)
[Address] EAT @explorer.exe (DllRegisterServer) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C0C30B0)
[Address] EAT @explorer.exe (DllUnregisterServer) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C0C3114)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM024 HN-M101MBB +++++
--- User ---
[MBR] e4d7045a7d8cecf13bb4224fd0e224f8
[BSP] 1c4ec37e03d84b24c5ac7b1851c5ac5d : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_05182014_105435.txt >>
RKreport[0]_S_05162014_134002.txt;RKreport[0]_S_05172014_125332.txt;RKreport[0]_S_05182014_105425.txt
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Vojtěch [Práva správce]
Mód : Odebrat -- Datum : 05/18/2014 10:54:35
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP UNIC] vntldr.exe -- C:\Users\Vojtěch\AppData\Local\VNT\vntldr.exe [7] -> SMAZÁNO [TermProc]
¤¤¤ ¤¤¤ Záznamy Registrů: : 17 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP UNIC] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Vojtěch\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-1794452355-3008535236-331506316-1002\[...]\Run : GSplay.exe (C:\Users\Vojt%c4%9bch\Desktop\GSplay.exe [x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP UNIC] HKLM\[...]\Wow6432Node\[...]\Run : GPUTemp ("C:\Users\VOJTCH~1\AppData\Local\Temp\GPUTemp.exe" [x]) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 3 ¤¤¤
[V1][ROGUE ST] GS.Enabler-S-4560858878.job : c:\programdata\quickset\gs.enabler\GS.Enabler.exe - /schedule /profile "c:\programdata\quickset\gs.enabler\4560858878.ini" [x][x] -> VYMAZÁNO
[V1][ROGUE ST] Sk-Enabler-S-245486970.job : c:\programdata\quickset\sk-enabler\Sk-Enabler.exe - /schedule /profile "c:\programdata\quickset\sk-enabler\245486970.ini" [x][x] -> VYMAZÁNO
[V2][SUSP PATH] OFFICE2010ACT : C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [-] -> VYMAZÁNO
¤¤¤ spuštění položky : 3 ¤¤¤
[Vojtěch][SUSP UNIC] Curse.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk @C:\Users\VOJTCH~1\AppData\Roaming\CURSEC~1\Bin\Curse.exe /startup [-][7] -> VYMAZÁNO
[Vojtěch][SUSP UNIC] PdaNet Desktop.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk @C:\PROGRA~2\PDANET~1\PdaNetPC.exe [-][7] -> VYMAZÁNO
[Vojtěch][SUSP UNIC] wandoujia_helper.lnk : C:\Users\Vojtěch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wandoujia_helper.lnk @C:\Users\VOJTCH~1\AppData\Roaming\WANDOU~1\APPLIC~1\2690~1.545\WANDOU~2.EXE [-][7] -> VYMAZÁNO
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097274C)
[Address] EAT @explorer.exe (DllGetClassObject) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70974984)
[Address] EAT @explorer.exe (DwmAttachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmDefWindowProc) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972C30)
[Address] EAT @explorer.exe (DwmDetachMilContent) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmEnableBlurBehindWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972A70)
[Address] EAT @explorer.exe (DwmEnableComposition) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097C60C)
[Address] EAT @explorer.exe (DwmEnableMMCSS) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973788)
[Address] EAT @explorer.exe (DwmExtendFrameIntoClientArea) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972DC0)
[Address] EAT @explorer.exe (DwmFlush) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709726C0)
[Address] EAT @explorer.exe (DwmGetColorizationColor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097C118)
[Address] EAT @explorer.exe (DwmGetCompositionTimingInfo) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70971D40)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamClient) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmGetGraphicsStreamTransformHint) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70978180)
[Address] EAT @explorer.exe (DwmGetTransportAttributes) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097C8B0)
[Address] EAT @explorer.exe (DwmGetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70971010)
[Address] EAT @explorer.exe (DwmInvalidateIconicBitmaps) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70976308)
[Address] EAT @explorer.exe (DwmIsCompositionEnabled) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709711B0)
[Address] EAT @explorer.exe (DwmModifyPreviousDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D050)
[Address] EAT @explorer.exe (DwmQueryThumbnailSourceSize) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70976F34)
[Address] EAT @explorer.exe (DwmRegisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709769A8)
[Address] EAT @explorer.exe (DwmRenderGesture) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70977CEC)
[Address] EAT @explorer.exe (DwmSetDxFrameDuration) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D050)
[Address] EAT @explorer.exe (DwmSetIconicLivePreviewBitmap) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D1CC)
[Address] EAT @explorer.exe (DwmSetIconicThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D558)
[Address] EAT @explorer.exe (DwmSetPresentParameters) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097D050)
[Address] EAT @explorer.exe (DwmSetWindowAttribute) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709710E8)
[Address] EAT @explorer.exe (DwmShowContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973A90)
[Address] EAT @explorer.exe (DwmTetherContact) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097CB1C)
[Address] EAT @explorer.exe (DwmTransitionOwnedWindow) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097DBD8)
[Address] EAT @explorer.exe (DwmUnregisterThumbnail) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097677C)
[Address] EAT @explorer.exe (DwmUpdateThumbnailProperties) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973A10)
[Address] EAT @explorer.exe (DwmpAllocateSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70972320)
[Address] EAT @explorer.exe (DwmpDxGetWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70975FE0)
[Address] EAT @explorer.exe (DwmpDxUpdateWindowSharedSurface) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70977710)
[Address] EAT @explorer.exe (DwmpDxgiIsThreadDesktopComposited) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x70973760)
[Address] EAT @explorer.exe (DwmpFreeSecurityDescriptor) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x709722E4)
[Address] EAT @explorer.exe (DwmpRenderFlick) : DUI70.dll -> HOOKED (C:\WINDOWS\SYSTEM32\dwmapi.dll @ 0x7097CE70)
[Address] EAT @explorer.exe (AsyncGetClassBits) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696670B0)
[Address] EAT @explorer.exe (AsyncInstallDistributionUnit) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667210)
[Address] EAT @explorer.exe (BindAsyncMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F90)
[Address] EAT @explorer.exe (CDLGetLongPathNameA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696678D0)
[Address] EAT @explorer.exe (CDLGetLongPathNameW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696678E8)
[Address] EAT @explorer.exe (CORPolicyProvider) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651674)
[Address] EAT @explorer.exe (CoGetClassObjectFromURL) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696673FC)
[Address] EAT @explorer.exe (CoInstall) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667460)
[Address] EAT @explorer.exe (CoInternetCanonicalizeIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69615660)
[Address] EAT @explorer.exe (CoInternetCombineIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696180A0)
[Address] EAT @explorer.exe (CoInternetCombineUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696046A4)
[Address] EAT @explorer.exe (CoInternetCombineUrlEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696043C0)
[Address] EAT @explorer.exe (CoInternetCompareUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655280)
[Address] EAT @explorer.exe (CoInternetCreateSecurityManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D1EE0)
[Address] EAT @explorer.exe (CoInternetCreateZoneManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695E0810)
[Address] EAT @explorer.exe (CoInternetFeatureSettingsChanged) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69690284)
[Address] EAT @explorer.exe (CoInternetGetProtocolFlags) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965537C)
[Address] EAT @explorer.exe (CoInternetGetSecurityUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696553D0)
[Address] EAT @explorer.exe (CoInternetGetSecurityUrlEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69619CD0)
[Address] EAT @explorer.exe (CoInternetGetSession) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D2460)
[Address] EAT @explorer.exe (CoInternetIsFeatureEnabled) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69618DC0)
[Address] EAT @explorer.exe (CoInternetIsFeatureEnabledForIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696151B8)
[Address] EAT @explorer.exe (CoInternetIsFeatureEnabledForUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69611820)
[Address] EAT @explorer.exe (CoInternetIsFeatureZoneElevationEnabled) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965586C)
[Address] EAT @explorer.exe (CoInternetParseIUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696056A8)
[Address] EAT @explorer.exe (CoInternetParseUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695E1490)
[Address] EAT @explorer.exe (CoInternetQueryInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69617C50)
[Address] EAT @explorer.exe (CoInternetSetFeatureEnabled) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655AF4)
[Address] EAT @explorer.exe (CompareSecurityIds) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695ED1A4)
[Address] EAT @explorer.exe (CompatFlagsFromClsid) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69614044)
[Address] EAT @explorer.exe (CopyBindInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69663020)
[Address] EAT @explorer.exe (CopyStgMedium) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695DBA0C)
[Address] EAT @explorer.exe (CreateAsyncBindCtx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696286C0)
[Address] EAT @explorer.exe (CreateAsyncBindCtxEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69613D14)
[Address] EAT @explorer.exe (CreateFormatEnumerator) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695F68E0)
[Address] EAT @explorer.exe (CreateIUriBuilder) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D3660)
[Address] EAT @explorer.exe (CreateURLMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962CCF4)
[Address] EAT @explorer.exe (CreateURLMonikerEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D78D0)
[Address] EAT @explorer.exe (CreateURLMonikerEx2) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696140F0)
[Address] EAT @explorer.exe (CreateUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D16F0)
[Address] EAT @explorer.exe (CreateUriFromMultiByteString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EE4)
[Address] EAT @explorer.exe (CreateUriPriv) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EF8)
[Address] EAT @explorer.exe (CreateUriWithFragment) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F40)
[Address] EAT @explorer.exe (DllCanUnloadNow) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D1600)
[Address] EAT @explorer.exe (DllGetClassObject) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6961AB3C)
[Address] EAT @explorer.exe (DllInstall) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652458)
[Address] EAT @explorer.exe (DllRegisterServer) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652464)
[Address] EAT @explorer.exe (DllRegisterServerEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962E070)
[Address] EAT @explorer.exe (DllUnregisterServer) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652470)
[Address] EAT @explorer.exe (Extract) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667F74)
[Address] EAT @explorer.exe (FaultInIEFeature) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69668FE8)
[Address] EAT @explorer.exe (FileBearsMarkOfTheWeb) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69606B60)
[Address] EAT @explorer.exe (FindMediaType) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652E9C)
[Address] EAT @explorer.exe (FindMediaTypeClass) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695F6080)
[Address] EAT @explorer.exe (FindMimeFromData) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696150BC)
[Address] EAT @explorer.exe (GetAddSitesFileUrl) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696902B0)
[Address] EAT @explorer.exe (GetClassFileOrMime) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962B8EC)
[Address] EAT @explorer.exe (GetClassURL) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652074)
[Address] EAT @explorer.exe (GetComponentIDFromCLSSPEC) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696692E8)
[Address] EAT @explorer.exe (GetIDNFlagsForUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695EC7F0)
[Address] EAT @explorer.exe (GetIUriPriv) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F60)
[Address] EAT @explorer.exe (GetIUriPriv2) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F50)
[Address] EAT @explorer.exe (GetLabelsFromNamedHost) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69698B54)
[Address] EAT @explorer.exe (GetMarkOfTheWeb) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69689390)
[Address] EAT @explorer.exe (GetPortFromUrlScheme) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651E94)
[Address] EAT @explorer.exe (GetPropertyFromName) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EA4)
[Address] EAT @explorer.exe (GetPropertyName) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EB4)
[Address] EAT @explorer.exe (GetSoftwareUpdateInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962E070)
[Address] EAT @explorer.exe (GetUrlmonThreadNotificationHwnd) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962DEB4)
[Address] EAT @explorer.exe (GetZoneFromAlternateDataStreamEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D6D90)
[Address] EAT @explorer.exe (HlinkGoBack) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69686E78)
[Address] EAT @explorer.exe (HlinkGoForward) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69686F24)
[Address] EAT @explorer.exe (HlinkNavigateMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69686FD0)
[Address] EAT @explorer.exe (HlinkNavigateString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687004)
[Address] EAT @explorer.exe (HlinkSimpleNavigateToMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687038)
[Address] EAT @explorer.exe (HlinkSimpleNavigateToString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696875E8)
[Address] EAT @explorer.exe (IECompatLogCSSFix) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696612FC)
[Address] EAT @explorer.exe (IEDllLoader) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696526F0)
[Address] EAT @explorer.exe (IEGetUserPrivateNamespaceName) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69663244)
[Address] EAT @explorer.exe (IEInstallScope) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667554)
[Address] EAT @explorer.exe (IntlPercentEncodeNormalize) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651F70)
[Address] EAT @explorer.exe (IsAsyncMoniker) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696121FC)
[Address] EAT @explorer.exe (IsDWORDProperty) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651EC4)
[Address] EAT @explorer.exe (IsIntranetAvailable) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69690668)
[Address] EAT @explorer.exe (IsJITInProgress) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695EB328)
[Address] EAT @explorer.exe (IsLoggingEnabledA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6968855C)
[Address] EAT @explorer.exe (IsLoggingEnabledW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688688)
[Address] EAT @explorer.exe (IsStringProperty) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69651ED4)
[Address] EAT @explorer.exe (IsValidURL) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69607610)
[Address] EAT @explorer.exe (MkParseDisplayNameEx) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696292F0)
[Address] EAT @explorer.exe (ObtainUserAgentString) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965DCE0)
[Address] EAT @explorer.exe (PrivateCoInstall) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69667560)
[Address] EAT @explorer.exe (QueryAssociations) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695EE9C0)
[Address] EAT @explorer.exe (QueryClsidAssociation) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69660A8C)
[Address] EAT @explorer.exe (RegisterBindStatusCallback) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6960F600)
[Address] EAT @explorer.exe (RegisterFormatEnumerator) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69611C6C)
[Address] EAT @explorer.exe (RegisterMediaTypeClass) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696520C0)
[Address] EAT @explorer.exe (RegisterMediaTypes) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652210)
[Address] EAT @explorer.exe (RegisterWebPlatformPermanentSecurityManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69608C54)
[Address] EAT @explorer.exe (ReleaseBindInfo) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695D7D40)
[Address] EAT @explorer.exe (RevokeBindStatusCallback) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6960FBF0)
[Address] EAT @explorer.exe (RevokeFormatEnumerator) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696522CC)
[Address] EAT @explorer.exe (SetAccessForIEAppContainer) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69663258)
[Address] EAT @explorer.exe (SetSoftwareUpdateAdvertisementState) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962E070)
[Address] EAT @explorer.exe (ShouldDisplayPunycodeForUri) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6965DE50)
[Address] EAT @explorer.exe (ShouldShowIntranetWarningSecband) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69613A3C)
[Address] EAT @explorer.exe (ShowTrustAlertDialog) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69690820)
[Address] EAT @explorer.exe (URLDownloadA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655CC4)
[Address] EAT @explorer.exe (URLDownloadToCacheFileA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687D9C)
[Address] EAT @explorer.exe (URLDownloadToCacheFileW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695FA0C4)
[Address] EAT @explorer.exe (URLDownloadToFileA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69687F10)
[Address] EAT @explorer.exe (URLDownloadToFileW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695FEFD0)
[Address] EAT @explorer.exe (URLDownloadW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69655D78)
[Address] EAT @explorer.exe (URLOpenBlockingStreamA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688058)
[Address] EAT @explorer.exe (URLOpenBlockingStreamW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688138)
[Address] EAT @explorer.exe (URLOpenPullStreamA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6968821C)
[Address] EAT @explorer.exe (URLOpenPullStreamW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696882E0)
[Address] EAT @explorer.exe (URLOpenStreamA) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69688408)
[Address] EAT @explorer.exe (URLOpenStreamW) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696884D0)
[Address] EAT @explorer.exe (UnregisterWebPlatformPermanentSecurityManager) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6962C9B4)
[Address] EAT @explorer.exe (UrlMkBuildVersion) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69652804)
[Address] EAT @explorer.exe (UrlMkGetSessionOption) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695E3E60)
[Address] EAT @explorer.exe (UrlMkSetSessionOption) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x6960D0E4)
[Address] EAT @explorer.exe (UrlmonCleanupCurrentThread) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x695FA27C)
[Address] EAT @explorer.exe (WriteHitLogging) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x696885D0)
[Address] EAT @explorer.exe (ZonesReInit) : MrmCoreR.dll -> HOOKED (C:\WINDOWS\system32\urlmon.dll @ 0x69689C30)
[Address] EAT @explorer.exe (DllCanUnloadNow) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C081010)
[Address] EAT @explorer.exe (DllGetClassObject) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C081E60)
[Address] EAT @explorer.exe (DllRegisterServer) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C0C30B0)
[Address] EAT @explorer.exe (DllUnregisterServer) : samcli.dll -> HOOKED (C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll @ 0x6C0C3114)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST1000LM024 HN-M101MBB +++++
--- User ---
[MBR] e4d7045a7d8cecf13bb4224fd0e224f8
[BSP] 1c4ec37e03d84b24c5ac7b1851c5ac5d : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_05182014_105435.txt >>
RKreport[0]_S_05162014_134002.txt;RKreport[0]_S_05172014_125332.txt;RKreport[0]_S_05182014_105425.txt
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
11:02:59.0375 0x0a34 TDSS rootkit removing tool 3.0.0.34 Apr 29 2014 18:20:10
11:02:59.0375 0x0a34 UEFI system
11:03:02.0602 0x0a34 ============================================================
11:03:02.0602 0x0a34 Current date / time: 2014/05/18 11:03:02.0602
11:03:02.0602 0x0a34 SystemInfo:
11:03:02.0602 0x0a34
11:03:02.0602 0x0a34 OS Version: 6.3.9600 ServicePack: 0.0
11:03:02.0602 0x0a34 Product type: Workstation
11:03:02.0602 0x0a34 ComputerName: BARBAR
11:03:02.0602 0x0a34 UserName: Vojtěch
11:03:02.0602 0x0a34 Windows directory: C:\WINDOWS
11:03:02.0602 0x0a34 System windows directory: C:\WINDOWS
11:03:02.0602 0x0a34 Running under WOW64
11:03:02.0602 0x0a34 Processor architecture: Intel x64
11:03:02.0602 0x0a34 Number of processors: 4
11:03:02.0602 0x0a34 Page size: 0x1000
11:03:02.0602 0x0a34 Boot type: Normal boot
11:03:02.0602 0x0a34 ============================================================
11:03:03.0415 0x0a34 KLMD registered as C:\WINDOWS\system32\drivers\61668747.sys
11:03:03.0853 0x0a34 System UUID: {E491A662-F29C-47DE-7787-0F76A581C0CA}
11:03:04.0821 0x0a34 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:03:04.0837 0x0a34 ============================================================
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0:
11:03:04.0837 0x0a34 GPT partitions:
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {329FC1BF-5770-49E4-8F70-03CB06D028BC}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {BD532C03-945D-4C2B-A28E-4A7EF17E5BFD}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {ECDE6C6C-A5C3-4899-9ACD-BED4DC181C1D}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {CCF8B719-616A-4593-A08B-F441C7E56592}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {54791E5A-F414-4D66-93A3-B584A1DD8226}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x6E7AD000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {61FCE521-6A8F-4B20-9D70-E4581EE8E932}, Name: , StartLBA 0x6EC57800, BlocksNum 0xAF000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {8A53C3B7-9DDD-4F0E-9555-3E8862FEAC5C}, Name: Basic data partition, StartLBA 0x6ED06800, BlocksNum 0x3200000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {0262B12B-368A-45D6-8329-3FCB4A1D679A}, Name: Basic data partition, StartLBA 0x71F06800, BlocksNum 0x2800000
11:03:04.0837 0x0a34 MBR partitions:
11:03:04.0837 0x0a34 ============================================================
11:03:04.0837 0x0a34 C: <-> \Device\Harddisk0\DR0\Partition5
11:03:04.0900 0x0a34 D: <-> \Device\Harddisk0\DR0\Partition7
11:03:04.0900 0x0a34 ============================================================
11:03:04.0900 0x0a34 Initialize success
11:03:04.0900 0x0a34 ============================================================
11:03:08.0244 0x11d8 ============================================================
11:03:08.0244 0x11d8 Scan started
11:03:08.0244 0x11d8 Mode: Manual;
11:03:08.0244 0x11d8 ============================================================
11:03:08.0244 0x11d8 KSN ping started
11:03:10.0682 0x11d8 KSN ping finished: true
11:03:11.0072 0x11d8 ================ Scan system memory ========================
11:03:11.0072 0x11d8 System memory - ok
11:03:11.0072 0x11d8 ================ Scan services =============================
11:03:11.0354 0x11d8 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
11:03:11.0369 0x11d8 1394ohci - ok
11:03:11.0416 0x11d8 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
11:03:11.0416 0x11d8 3ware - ok
11:03:11.0526 0x11d8 [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
11:03:11.0541 0x11d8 ACPI - ok
11:03:11.0588 0x11d8 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
11:03:11.0588 0x11d8 acpiex - ok
11:03:11.0604 0x11d8 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
11:03:11.0604 0x11d8 acpipagr - ok
11:03:11.0635 0x11d8 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
11:03:11.0635 0x11d8 AcpiPmi - ok
11:03:11.0651 0x11d8 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
11:03:11.0651 0x11d8 acpitime - ok
11:03:11.0713 0x11d8 [ 3B42D95D20CD2AACDB0564471AE43ED7, BF49568D7060159F61D5F6DE7ECDECCCD1F920A2881544BA83CF420C822F6653 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
11:03:11.0713 0x11d8 ACPIVPC - ok
11:03:11.0947 0x11d8 [ 43118867666AF8AF7929BF7BF4BFEF35, 2B1F8B246238032145C7C645988390A4B2A6D4C9C8E289137BEEE286024FD6E1 ] AdAppMgrSvc C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
11:03:11.0994 0x11d8 AdAppMgrSvc - ok
11:03:12.0151 0x11d8 [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:03:12.0182 0x11d8 AdobeFlashPlayerUpdateSvc - ok
11:03:12.0260 0x11d8 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
11:03:12.0276 0x11d8 ADP80XX - ok
11:03:12.0338 0x11d8 [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
11:03:12.0338 0x11d8 AeLookupSvc - ok
11:03:12.0354 0x11d8 [ 239268BAB58EAE9A3FF4E08334C00451, 13F927730DF9BAEDB3A7AB6F7238270A20E4CDEB3D5324A1C471DF2209F3D239 ] AFD C:\WINDOWS\system32\drivers\afd.sys
11:03:12.0369 0x11d8 AFD - ok
11:03:12.0416 0x11d8 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
11:03:12.0416 0x11d8 agp440 - ok
11:03:12.0479 0x11d8 [ 8E8E34B7BA059050EED827410D0697A2, 85B6684709F24729A6497563812A90A54068AC2DD9EEA03037CB1EEF5C85AAA9 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
11:03:12.0479 0x11d8 ahcache - ok
11:03:12.0526 0x11d8 [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG C:\WINDOWS\System32\alg.exe
11:03:12.0526 0x11d8 ALG - ok
11:03:12.0541 0x11d8 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
11:03:12.0541 0x11d8 AmdK8 - ok
11:03:12.0572 0x11d8 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
11:03:12.0572 0x11d8 AmdPPM - ok
11:03:12.0588 0x11d8 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
11:03:12.0588 0x11d8 amdsata - ok
11:03:12.0619 0x11d8 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
11:03:12.0619 0x11d8 amdsbs - ok
11:03:12.0635 0x11d8 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
11:03:12.0635 0x11d8 amdxata - ok
11:03:12.0651 0x11d8 [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID C:\WINDOWS\system32\drivers\appid.sys
11:03:12.0651 0x11d8 AppID - ok
11:03:12.0713 0x11d8 [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
11:03:12.0713 0x11d8 AppIDSvc - ok
11:03:12.0760 0x11d8 [ 8D6F535461F6CFF75A8ADDF83024C904, F2A97EC4A6284F28B685A3CE2D450F61E75EE8692D718A6AA352D5734BBBAD7B ] Appinfo C:\WINDOWS\System32\appinfo.dll
11:03:12.0760 0x11d8 Appinfo - ok
11:03:12.0791 0x11d8 [ F518545E5B7623AD49ABE7F8776EFA46, CD39B6EC0D80C6DB857F34D4AC5C31085271B51B8851A56FEFC052B20B7CC40C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:03:12.0791 0x11d8 Apple Mobile Device - ok
11:03:12.0869 0x11d8 [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
11:03:12.0885 0x11d8 AppReadiness - ok
11:03:12.0963 0x11d8 [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
11:03:12.0979 0x11d8 AppXSvc - ok
11:03:13.0010 0x11d8 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
11:03:13.0010 0x11d8 arcsas - ok
11:03:13.0057 0x11d8 [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:03:13.0057 0x11d8 AsyncMac - ok
11:03:13.0073 0x11d8 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
11:03:13.0073 0x11d8 atapi - ok
11:03:13.0119 0x11d8 [ F83D49F4B10E813A1F9AC8B92F16592D, E7B2F508D33861A9826F2C7B2087F14F6937C9B8F660D6363F737BAC60BD4578 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
11:03:13.0119 0x11d8 AudioEndpointBuilder - ok
11:03:13.0182 0x11d8 [ 9A71BD2E4B8EB550D0022AFDF8616014, 34D595684624114F23265CE8031ADC9E03AD374A5AFEEBB794AC57796A3CDA2F ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
11:03:13.0197 0x11d8 Audiosrv - ok
11:03:13.0244 0x11d8 [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
11:03:13.0244 0x11d8 AxInstSV - ok
11:03:13.0307 0x11d8 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
11:03:13.0307 0x11d8 b06bdrv - ok
11:03:13.0338 0x11d8 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
11:03:13.0338 0x11d8 BasicDisplay - ok
11:03:13.0432 0x11d8 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
11:03:13.0432 0x11d8 BasicRender - ok
11:03:13.0479 0x11d8 [ 70433F7A216BD0B5EC7DA1202EE53E65, 12F3210EC5546714B34225770242F5CF4AC36032BB49A8E8989620BA274AC505 ] bcbtums C:\WINDOWS\system32\drivers\bcbtums.sys
11:03:13.0494 0x11d8 bcbtums - ok
11:03:13.0604 0x11d8 [ 18B186BCC56EC611DE519CBA7D4F65B0, 6F2520AAFDAA4208717DCD121527911D580727C5A6B8C4C7F07C4155C4D8662D ] BcmBtRSupport C:\WINDOWS\system32\BtwRSupportService.exe
11:03:13.0635 0x11d8 BcmBtRSupport - ok
11:03:13.0682 0x11d8 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
11:03:13.0682 0x11d8 bcmfn2 - ok
11:03:13.0744 0x11d8 [ 5BD3A2351BEFCAC8757626271F8EFA89, 6508673210129CF7EFCA93EC7874208FAD361E37814EB4FE9E0EC034E73D5F16 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
11:03:13.0744 0x11d8 BDESVC - ok
11:03:13.0791 0x11d8 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys
11:03:13.0791 0x11d8 Beep - ok
11:03:13.0838 0x11d8 [ BBE15881FE11BE37112F8320C41DAFB9, 5CE92563628812FF6E00556D8E2DAD6ADCAAF0F4C3B90123F1D98ED6E3BB6DAD ] BFE C:\WINDOWS\System32\bfe.dll
11:03:13.0854 0x11d8 BFE - ok
11:03:13.0916 0x11d8 [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS C:\WINDOWS\System32\qmgr.dll
11:03:13.0932 0x11d8 BITS - ok
11:03:14.0026 0x11d8 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:03:14.0026 0x11d8 Bonjour Service - ok
11:03:14.0041 0x11d8 [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
11:03:14.0041 0x11d8 bowser - ok
11:03:14.0104 0x11d8 [ F2559A492AF8D653D1F47ADABA4C3E97, 77347915FB433023769699DFC9511F54E69C7FC7AB75F57FDC1A58E64A7126DE ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
11:03:14.0104 0x11d8 BrokerInfrastructure - ok
11:03:14.0151 0x11d8 [ D528D6A92D187777691993DD757AF19A, 2C79978310193431E5FC462368424A172858D5351C92D4815C2A7E35B5DDE50C ] Browser C:\WINDOWS\System32\browser.dll
11:03:14.0166 0x11d8 Browser - ok
11:03:14.0307 0x11d8 [ 6DAA0ACBB6775343BD61D3B225FA40D0, CD4D5FF9ABE3A2DDBF16A9E05651676AAE04E4769D99B1E0A8C41E81AC5F18A9 ] BRSptSvc C:\ProgramData\BitRaider\BRSptSvc.exe
11:03:14.0338 0x11d8 BRSptSvc - ok
11:03:14.0401 0x11d8 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
11:03:14.0401 0x11d8 BthAvrcpTg - ok
11:03:14.0417 0x11d8 [ 131F1C8573E7BFB41C54FBF5309CCD94, DAFE51E3BADBD82A33B580F212B2D6520A120877C23F6D675521FEA2F4BA5A1F ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
11:03:14.0417 0x11d8 BthEnum - ok
11:03:14.0432 0x11d8 [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
11:03:14.0432 0x11d8 BthHFEnum - ok
11:03:14.0448 0x11d8 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
11:03:14.0448 0x11d8 bthhfhid - ok
11:03:14.0510 0x11d8 [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys
11:03:14.0510 0x11d8 BthLEEnum - ok
11:03:14.0526 0x11d8 [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
11:03:14.0526 0x11d8 BTHMODEM - ok
11:03:14.0542 0x11d8 [ 3AFE71D80EDF5D4DE0C5731352905669, 3E370169B8C5D301954D1F1DA302F7A0DB2A034990E10B3D64458C48E5693205 ] BthPan C:\WINDOWS\system32\DRIVERS\bthpan.sys
11:03:14.0542 0x11d8 BthPan - ok
11:03:14.0635 0x11d8 [ AB8CD3914AD779C15B27DDD9F53F7434, 6E9911C146A038192B95916387FA9D94D952BEFE158E6CBA44F1500A304221A3 ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys
11:03:14.0651 0x11d8 BTHPORT - ok
11:03:14.0698 0x11d8 [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv C:\WINDOWS\system32\bthserv.dll
11:03:14.0698 0x11d8 bthserv - ok
11:03:14.0760 0x11d8 [ 23E75BED9076F856B36F5F934BBD5795, CCEB72B788522B7D52A6C07646005EBC68F9599D3714ECACF3A194CA47A1BE85 ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys
11:03:14.0760 0x11d8 BTHUSB - ok
11:03:14.0807 0x11d8 [ 20C8EB70C0B179DF06A01CA503F4A824, 1C2DADCBC5D85C1D4F6A28B7F374C829E6DCE0EB720EBDA43CF6AC0AC934AA5E ] btwampfl C:\WINDOWS\system32\DRIVERS\btwampfl.sys
11:03:14.0807 0x11d8 btwampfl - ok
11:03:14.0854 0x11d8 [ C2BA449FB70F7BEB1F925DB10462AB89, 5A99910A4C521550E0D4AE149CAC831A657CCFD234544720EA3CA3931EDB9976 ] btwaudio C:\WINDOWS\system32\drivers\btwaudio.sys
11:03:14.0870 0x11d8 btwaudio - ok
11:03:14.0885 0x11d8 [ CDFEEADA67476655E1FE4B96AD1ECCA4, 8B4511C4754FB75E481D52E6441DB96280BB72BE507AB5235782FCC505CBB5B0 ] btwavdt C:\WINDOWS\System32\drivers\btwavdt.sys
11:03:14.0885 0x11d8 btwavdt - ok
11:03:14.0963 0x11d8 [ 4FF165C44BDE69701BC1DBEB357895CA, D063331D8F756682E097ACE40428428A54706D578C1CDC81AD5C122DC6690A96 ] btwdins C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
11:03:14.0979 0x11d8 btwdins - ok
11:03:14.0979 0x11d8 [ C3C8974D99F976C927165363855690CD, 2B73E11FE341DE581CFF655E58C5671B83F4331529C30DADCAA9B6BE615D5E1F ] btwl2cap C:\WINDOWS\system32\DRIVERS\btwl2cap.sys
11:03:14.0979 0x11d8 btwl2cap - ok
11:03:14.0995 0x11d8 [ 962CD553C7E25C1D96FF6B12A9A61D43, DC786A2E70624F3A1E3CD75F62FF8986ABAD2F602E632F5F42A6D5CA16458851 ] btwrchid C:\WINDOWS\System32\drivers\btwrchid.sys
11:03:14.0995 0x11d8 btwrchid - ok
11:03:15.0010 0x11d8 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
11:03:15.0010 0x11d8 cdfs - ok
11:03:15.0073 0x11d8 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
11:03:15.0073 0x11d8 cdrom - ok
11:03:15.0120 0x11d8 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
11:03:15.0135 0x11d8 CertPropSvc - ok
11:03:15.0182 0x11d8 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
11:03:15.0182 0x11d8 circlass - ok
11:03:15.0229 0x11d8 [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
11:03:15.0245 0x11d8 CLFS - ok
11:03:15.0260 0x11d8 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
11:03:15.0260 0x11d8 CmBatt - ok
11:03:15.0323 0x11d8 [ 4627C1FBF2802425A408A2D2AF28CF85, 8B91C1BE1104BE93C0D689A20315FD106D89A076267493319B104EE73A90CDCB ] CNG C:\WINDOWS\system32\Drivers\cng.sys
11:03:15.0323 0x11d8 CNG - ok
11:03:15.0354 0x11d8 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
11:03:15.0354 0x11d8 CompositeBus - ok
11:03:15.0354 0x11d8 COMSysApp - ok
11:03:15.0385 0x11d8 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys
11:03:15.0385 0x11d8 condrv - ok
11:03:15.0542 0x11d8 [ 034643AFE2973A175E782AE530A0683C, C488572B971144D8A10F6EC8480175868913942896144D38BF49E3D8D1BC54F3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
11:03:15.0542 0x11d8 cphs - ok
11:03:15.0604 0x11d8 [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
11:03:15.0604 0x11d8 CryptSvc - ok
11:03:15.0620 0x11d8 [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys
11:03:15.0620 0x11d8 dam - ok
11:03:15.0698 0x11d8 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
11:03:15.0698 0x11d8 DcomLaunch - ok
11:03:15.0760 0x11d8 [ 78089FCDE082FD4FA471C30A7C2DC736, C4816D7125C39290C3B0B1F580CEE8BB7FFC004F727EA9E9767671D3EDB946AE ] defragsvc C:\WINDOWS\System32\defragsvc.dll
11:03:15.0760 0x11d8 defragsvc - ok
11:03:15.0823 0x11d8 [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\WINDOWS\system32\das.dll
11:03:15.0823 0x11d8 DeviceAssociationService - ok
11:03:15.0870 0x11d8 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
11:03:15.0870 0x11d8 DeviceInstall - ok
11:03:15.0885 0x11d8 [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
11:03:15.0885 0x11d8 Dfsc - ok
11:03:15.0932 0x11d8 [ 8B107F55FD61654A6C9F1B819AEC5FC4, 773B1B9D3583F17B7C89BDE1EC4487ABB0AE039DF4583F8746460425443DA291 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
11:03:15.0932 0x11d8 Dhcp - ok
11:03:15.0979 0x11d8 [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys
11:03:15.0979 0x11d8 disk - ok
11:03:16.0042 0x11d8 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
11:03:16.0042 0x11d8 dmvsc - ok
11:03:16.0120 0x11d8 [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
11:03:16.0120 0x11d8 Dnscache - ok
11:03:16.0198 0x11d8 [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc C:\WINDOWS\System32\dot3svc.dll
11:03:16.0198 0x11d8 dot3svc - ok
11:03:16.0229 0x11d8 [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS C:\WINDOWS\system32\dps.dll
11:03:16.0229 0x11d8 DPS - ok
11:03:16.0276 0x11d8 [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
11:03:16.0276 0x11d8 drmkaud - ok
11:03:16.0339 0x11d8 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
11:03:16.0339 0x11d8 DsmSvc - ok
11:03:16.0417 0x11d8 [ C7D252742946DD395670649742FBD73D, 333CC984CF318D36EA8C5867077A1732A214445EB6B7CF7AC2E8F1C8259CD9C7 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
11:03:16.0448 0x11d8 DXGKrnl - ok
11:03:16.0511 0x11d8 [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] e9f32388 C:\WINDOWS\system32\rundll32.exe
11:03:16.0511 0x11d8 e9f32388 - ok
11:03:16.0557 0x11d8 [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost C:\WINDOWS\System32\eapsvc.dll
11:03:16.0557 0x11d8 Eaphost - ok
11:03:16.0698 0x11d8 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
11:03:16.0745 0x11d8 ebdrv - ok
11:03:16.0792 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS C:\WINDOWS\System32\lsass.exe
11:03:16.0792 0x11d8 EFS - ok
11:03:16.0854 0x11d8 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
11:03:16.0854 0x11d8 EhStorClass - ok
11:03:16.0870 0x11d8 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
11:03:16.0870 0x11d8 EhStorTcgDrv - ok
11:03:16.0886 0x11d8 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
11:03:16.0886 0x11d8 ErrDev - ok
11:03:16.0964 0x11d8 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem C:\WINDOWS\system32\es.dll
11:03:16.0964 0x11d8 EventSystem - ok
11:03:17.0136 0x11d8 [ E2EAAD4A81DE29B6D37D70F083746F0B, FD400057970528FFB9BE98CA4DE6BE83C03132F9EEC6ECD2C433DA74A8A21A93 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
11:03:17.0167 0x11d8 EvtEng - ok
11:03:17.0198 0x11d8 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
11:03:17.0214 0x11d8 exfat - ok
11:03:17.0229 0x11d8 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
11:03:17.0229 0x11d8 fastfat - ok
11:03:17.0292 0x11d8 [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax C:\WINDOWS\system32\fxssvc.exe
11:03:17.0308 0x11d8 Fax - ok
11:03:17.0323 0x11d8 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
11:03:17.0323 0x11d8 fdc - ok
11:03:17.0386 0x11d8 [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost C:\WINDOWS\system32\fdPHost.dll
11:03:17.0386 0x11d8 fdPHost - ok
11:03:17.0401 0x11d8 [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub C:\WINDOWS\system32\fdrespub.dll
11:03:17.0401 0x11d8 FDResPub - ok
11:03:17.0464 0x11d8 [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc C:\WINDOWS\system32\fhsvc.dll
11:03:17.0479 0x11d8 fhsvc - ok
11:03:17.0526 0x11d8 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
11:03:17.0542 0x11d8 FileInfo - ok
11:03:17.0573 0x11d8 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
11:03:17.0573 0x11d8 Filetrace - ok
11:03:17.0651 0x11d8 [ 8645F91F40B8D022C9AC3DABDF360A6B, 4F83080B1273C92470EB90D80B32056C913240DCC9C4C50B7BE85254066D654D ] FlexNet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
11:03:17.0714 0x11d8 FlexNet Licensing Service 64 - ok
11:03:17.0745 0x11d8 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
11:03:17.0745 0x11d8 flpydisk - ok
11:03:17.0808 0x11d8 [ 46D1DF775FFF14585218BBE16E5B2C9A, F39EF615B18CEC7BA3F68C7639B636C06812AD9DBEDE90EB7B2C04C64396FC9E ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
11:03:17.0808 0x11d8 FltMgr - ok
11:03:17.0886 0x11d8 [ 183CA7699474FDE235853967D1DA4D9B, 8FBD5997F1E39AFFD8C4322520DF4D2227279B5149017D825C188D7411BA99AF ] FontCache C:\WINDOWS\system32\FntCache.dll
11:03:17.0901 0x11d8 FontCache - ok
11:03:18.0073 0x11d8 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:03:18.0073 0x11d8 FontCache3.0.0.0 - ok
11:03:18.0136 0x11d8 [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
11:03:18.0136 0x11d8 FsDepends - ok
11:03:18.0151 0x11d8 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:03:18.0151 0x11d8 Fs_Rec - ok
11:03:18.0214 0x11d8 [ B2BD017231836DA9F63F41E3A075D73E, 31B1DD677FE8B4F90B8AB5A131DA0105439AC2D91BC0CEDC972D2D87E595A686 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
11:03:18.0229 0x11d8 fvevol - ok
11:03:18.0245 0x11d8 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
11:03:18.0245 0x11d8 FxPPM - ok
11:03:18.0261 0x11d8 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
11:03:18.0261 0x11d8 gagp30kx - ok
11:03:18.0292 0x11d8 [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
11:03:18.0292 0x11d8 GEARAspiWDM - ok
11:03:18.0339 0x11d8 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
11:03:18.0339 0x11d8 gencounter - ok
11:03:18.0354 0x11d8 [ EF3AE7773394DF49CE74AF78A1C8D23D, CB12FF004C460A89F12AFF2467512B479A07CA10D4280CD4E624A5A9CDAB9C1B ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
11:03:18.0354 0x11d8 GPIOClx0101 - ok
11:03:18.0433 0x11d8 [ 58C11DCCC6241CC13861A559E31A69F0, 78B38BBC362C9209B06849CC79301EC595AFCE3E2BDE402A0B1F2725D3EDEFA3 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
11:03:18.0448 0x11d8 gpsvc - ok
11:03:18.0542 0x11d8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:03:18.0542 0x11d8 gupdate - ok
11:03:18.0542 0x11d8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:03:18.0542 0x11d8 gupdatem - ok
11:03:18.0589 0x11d8 [ 4DBF4C90A50C105A80EACD9B2FCCBC96, 967937AA35AF26BFD2F3B857B82DA0352096389C34D478075DE22CDC1FAB3F33 ] Hamachi C:\WINDOWS\system32\DRIVERS\Hamdrv.sys
11:03:18.0589 0x11d8 Hamachi - ok
11:03:18.0651 0x11d8 [ 3CC07DAD48FA53193AE2F85DD8200B5E, 1982E674EC144EC63AB2B7C668EA5AC6FEDA97AD775E50F74CC2B4C16DDB19B2 ] hcmon C:\windows\system32\drivers\hcmon.sys
11:03:18.0651 0x11d8 hcmon - ok
11:03:18.0667 0x11d8 [ 03909BDBFF0DCACCABF2B2D4ADEE44DC, 42E631B23BB004F5C2128BAD334C21AB20FAD08AFED9E8191AE9373531BC73DD ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
11:03:18.0667 0x11d8 HDAudBus - ok
11:03:18.0729 0x11d8 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
11:03:18.0729 0x11d8 HidBatt - ok
11:03:18.0776 0x11d8 [ 1EA1B4FABB8CC348E73CA90DBA22E104, 5C18C6BD499272F216DD4626B5E8D38181AEAC9AD917FBEB614A75B70467B258 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
11:03:18.0776 0x11d8 HidBth - ok
11:03:18.0933 0x11d8 [ 1FDE827F2B511D41B6FB99FD1BCFA659, A5D8D3D983F278C6C1C58F7FA8A90BE3D98AF1C85F1873D6536E1F0778DC1B14 ] HideMyIpSRV C:\Program Files (x86)\Hide My IP\HideMyIpSrv.exe
11:03:19.0152 0x11d8 HideMyIpSRV - ok
11:03:19.0183 0x11d8 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
11:03:19.0183 0x11d8 hidi2c - ok
11:03:19.0214 0x11d8 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
11:03:19.0214 0x11d8 HidIr - ok
11:03:19.0261 0x11d8 [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv C:\WINDOWS\system32\hidserv.dll
11:03:19.0261 0x11d8 hidserv - ok
11:03:19.0308 0x11d8 [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
11:03:19.0308 0x11d8 HidUsb - ok
11:03:19.0355 0x11d8 [ 40D4080D722AE8E163FAE3508DC692A2, A2331085EF20B83C01F04D58952728C2E1D1F3BF0A303DBD1588293C90D3E9CF ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
11:03:19.0355 0x11d8 HiPatchService - ok
11:03:19.0417 0x11d8 [ A894FB2CAE6A29F5D9C8EDA47B074623, F39014379B6F546CF3D3F56A343A7173B600A350715638040AE93E03EAB81CAC ] HipShieldK C:\WINDOWS\system32\drivers\HipShieldK.sys
11:03:19.0433 0x11d8 HipShieldK - ok
11:03:19.0480 0x11d8 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
11:03:19.0480 0x11d8 hkmsvc - ok
11:03:19.0511 0x11d8 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
11:03:19.0511 0x11d8 HomeGroupListener - ok
11:03:19.0573 0x11d8 [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
11:03:19.0573 0x11d8 HomeGroupProvider - ok
11:03:19.0620 0x11d8 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
11:03:19.0620 0x11d8 HpSAMD - ok
11:03:19.0636 0x11d8 [ AFA58B8A623CD458EF40CFB398AC28E2, 3D82091777BFEBFD431CEFB14C4697888606DEA26D356862B951936975F7CAC1 ] HssDRV6 C:\WINDOWS\system32\DRIVERS\hssdrv6.sys
11:03:19.0636 0x11d8 HssDRV6 - ok
11:03:19.0683 0x11d8 [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
11:03:19.0698 0x11d8 HTTP - ok
11:03:19.0745 0x11d8 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
11:03:19.0745 0x11d8 hwpolicy - ok
11:03:19.0761 0x11d8 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
11:03:19.0761 0x11d8 hyperkbd - ok
11:03:19.0777 0x11d8 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
11:03:19.0777 0x11d8 HyperVideo - ok
11:03:19.0792 0x11d8 [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
11:03:19.0792 0x11d8 i8042prt - ok
11:03:19.0808 0x11d8 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
11:03:19.0808 0x11d8 iaLPSSi_GPIO - ok
11:03:19.0823 0x11d8 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
11:03:19.0823 0x11d8 iaLPSSi_I2C - ok
11:03:19.0886 0x11d8 [ 6C024B3AE192D72B216166802AF345DD, 67AEDBEF4A1C1EE1DA9B684BDEB3DB07715E12B766AA72B6684CC6C583A8DCC5 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
11:03:19.0902 0x11d8 iaStorA - ok
11:03:19.0948 0x11d8 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
11:03:19.0964 0x11d8 iaStorAV - ok
11:03:20.0058 0x11d8 [ 7F7A03D03FA18A0DB2DAC37A8D620E7F, B867A6B38EB81B6FE2501441D4CB69A2488A1F13BA558AB2B728A7507AB1BAC3 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
11:03:20.0058 0x11d8 IAStorDataMgrSvc - ok
11:03:20.0089 0x11d8 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
11:03:20.0089 0x11d8 iaStorV - ok
11:03:20.0089 0x11d8 IEEtwCollectorService - ok
11:03:20.0230 0x11d8 [ 7A5A61997B5404C8EDDFCC62378164DC, C2BCA8A2AA2DFCCF3489FC7F0F366ABBDC8606CFC6397CD7B17C8CD4A28DD17F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
11:03:20.0292 0x11d8 igfx - ok
11:03:20.0355 0x11d8 [ CFE7F0267B0C3077042FF291949B5546, 7B8C432632D0210119BFF57D4994F2B8F75307A9D6867353AF93BBA3F561595B ] IKEEXT C:\WINDOWS\System32\ikeext.dll
11:03:20.0370 0x11d8 IKEEXT - ok
11:03:20.0433 0x11d8 [ 4011430BC9DA46ADFAE9915EFEC312FB, 925DDDA187AE7C46C94FBBFA18FC602260957B6BA891D65DFC09385B6DDEAB58 ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
11:03:20.0433 0x11d8 intaud_WaveExtensible - ok
11:03:20.0589 0x11d8 [ F1A3ECE3809AF333810ED0A872200226, BF1CC3EE64A9BDE41A5139A56016DE79DB87212D130B6024A03206CFCF65AC72 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
11:03:20.0636 0x11d8 IntcAzAudAddService - ok
11:03:20.0699 0x11d8 [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
11:03:20.0699 0x11d8 IntcDAud - ok
11:03:20.0745 0x11d8 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
11:03:21.0324 0x11d8 Intel(R) Capability Licensing Service Interface - ok
11:03:21.0339 0x11d8 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
11:03:21.0355 0x11d8 intelide - ok
11:03:21.0402 0x11d8 [ 139CFCDCD36B1B1782FD8C0014AC9B0E, E0D7E0E9B46A8CECE138D689820023BFA650FB689E4FD62855BED37E04F2D9FF ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
11:03:21.0402 0x11d8 intelpep - ok
11:03:21.0449 0x11d8 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
11:03:21.0449 0x11d8 intelppm - ok
11:03:21.0496 0x11d8 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:03:21.0496 0x11d8 IpFilterDriver - ok
11:03:21.0558 0x11d8 [ DFC4050D58565ADBEE793A8D4AEBDAE6, 89B900408F030CD45753A11D6AE6CBAB87E8B0E3F8401402D2D8713C045BF488 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
11:03:21.0574 0x11d8 iphlpsvc - ok
11:03:21.0621 0x11d8 [ FD9C9E9E3F0ED51502C7E8C066BE26B9, 290E74380F1543DD22C9F3821513B3E2FB42E995724238D8779CBBCB4FC386C8 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
11:03:21.0621 0x11d8 IPMIDRV - ok
11:03:21.0652 0x11d8 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
11:03:21.0667 0x11d8 IPNAT - ok
11:03:21.0714 0x11d8 [ F7ED08D4BC89D7AC6135C1556A89157F, 8F15F1E528F6513FCEF5D966880CBA8A2C7A4816393393F4B201CDD6227F36A3 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
11:03:21.0714 0x11d8 iPod Service - ok
11:03:21.0761 0x11d8 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
11:03:21.0761 0x11d8 IRENUM - ok
11:03:21.0777 0x11d8 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
11:03:21.0777 0x11d8 isapnp - ok
11:03:21.0839 0x11d8 [ 034D4BD9DC67C64F3A4C8A049B5173BF, C68AF5A5AD4092AA1C871BD38473AEF84EC3ECF4D06FBEB5F6C09972EF1B8A81 ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
11:03:21.0839 0x11d8 iScsiPrt - ok
11:03:21.0886 0x11d8 [ EE03564B7FAFE2E44EDA33D52E83B4A3, 53C917EEC92B813EB0C86B225E9887C9CDFDD7708AEA71BFAC0A3039E26D7BEB ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
11:03:21.0886 0x11d8 iwdbus - ok
11:03:21.0949 0x11d8 [ 78ABBE558F57144047F10A0F50FE4B2F, 6BE608F7697D83FD6C7E6EA422AC5637933BDC96B1044C12DE9A419CE7D6F6CE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
11:03:21.0949 0x11d8 jhi_service - ok
11:03:21.0996 0x11d8 [ 38515AF94AC56161F24AEE3F3681EC69, 20115363EA040641C04C75B6890A7CCDE9A65F57EB437BE28DF7AD5200EC4608 ] JMCR C:\WINDOWS\System32\drivers\jmcr.sys
11:03:21.0996 0x11d8 JMCR - ok
11:03:22.0027 0x11d8 [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
11:03:22.0027 0x11d8 kbdclass - ok
11:03:22.0027 0x11d8 [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
11:03:22.0027 0x11d8 kbdhid - ok
11:03:22.0042 0x11d8 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
11:03:22.0058 0x11d8 kdnic - ok
11:03:22.0058 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso C:\WINDOWS\system32\lsass.exe
11:03:22.0074 0x11d8 KeyIso - ok
11:03:22.0121 0x11d8 [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
11:03:22.0121 0x11d8 KSecDD - ok
11:03:22.0167 0x11d8 [ F88CC88F4A6D8476F1664E805CA18CC2, 2C61EE5EEA4FD45AA3FA927CC16E34EF90BD44324EAB14198AF65C3A27617991 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
11:03:22.0167 0x11d8 KSecPkg - ok
11:03:22.0183 0x11d8 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
11:03:22.0183 0x11d8 ksthunk - ok
11:03:22.0246 0x11d8 [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
11:03:22.0246 0x11d8 KtmRm - ok
11:03:22.0292 0x11d8 [ 50AECF8C21AB2A6428A6E1E10549D8E5, 6BC7C60CF5E8AFB9972619EE1C78357756E9C0A3EC783C3056CEB600DCBB1555 ] L1C C:\WINDOWS\system32\DRIVERS\L1C63x64.sys
11:03:22.0308 0x11d8 L1C - ok
11:03:22.0371 0x11d8 [ 27B58E16CF895AC1F1A97C04814C2239, D4336155331DDBF91952CDC6C446C68FF524F979099BA8D9B3A578758F97B2BE ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
11:03:22.0371 0x11d8 LanmanServer - ok
11:03:22.0449 0x11d8 [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
11:03:22.0449 0x11d8 LanmanWorkstation - ok
11:03:22.0511 0x11d8 [ EE289BD147FDFF95EF1B9BD65D3B974A, EFD9D0F6C73E7D2D52DBE2E2A8D3009BFB6AB24776A100CA528A8365002C6105 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
11:03:22.0511 0x11d8 lfsvc - ok
11:03:22.0542 0x11d8 [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr C:\WINDOWS\system32\DRIVERS\LhdX64.sys
11:03:22.0542 0x11d8 LHDmgr - ok
11:03:22.0542 0x11d8 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
11:03:22.0558 0x11d8 lltdio - ok
11:03:22.0605 0x11d8 [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
11:03:22.0621 0x11d8 lltdsvc - ok
11:03:22.0652 0x11d8 [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
11:03:22.0652 0x11d8 lmhosts - ok
11:03:22.0683 0x11d8 [ 2C24DC448DBE8DB9BE1441B824C57E79, DA2257EEC964A47D03C2BB13317FD788E51D4685E2395B303ED7B2575FEF3B19 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:03:22.0699 0x11d8 LMS - ok
11:03:22.0746 0x11d8 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
11:03:22.0746 0x11d8 LSI_SAS - ok
11:03:22.0761 0x11d8 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
11:03:22.0761 0x11d8 LSI_SAS2 - ok
11:03:22.0777 0x11d8 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
11:03:22.0777 0x11d8 LSI_SAS3 - ok
11:03:22.0808 0x11d8 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
11:03:22.0808 0x11d8 LSI_SSS - ok
11:03:22.0871 0x11d8 [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM C:\WINDOWS\System32\lsm.dll
11:03:22.0886 0x11d8 LSM - ok
11:03:22.0949 0x11d8 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
11:03:22.0949 0x11d8 luafv - ok
11:03:23.0011 0x11d8 [ DE585D1D266805E5EEDAE911FDD16F38, D954C1795D98653F1FB0AE8650FF0DEDDAA730B98C9449E6F608154D573DAB27 ] ManyCam C:\WINDOWS\system32\DRIVERS\mcvidrv_x64.sys
11:03:23.0011 0x11d8 ManyCam - ok
11:03:23.0042 0x11d8 [ FD5465B876D55534117963FAAA4B9DFC, 63A822A1EEEC42C30CCC9477431E310E3D360489A68BBCD805124681F21C0B6B ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
11:03:23.0042 0x11d8 MBAMProtector - ok
11:03:23.0105 0x11d8 [ 0E08BDD7326E657D59DB40BAD23D8169, 428C6CCCC0BB540DFD35847776140D60C186B9D2D14F0ACCD1A4D42A8877BD98 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
11:03:23.0121 0x11d8 MBAMScheduler - ok
11:03:23.0152 0x11d8 [ A8E7F3DB083EB0839DFC1C763CDD2594, BDF416E360A52130B23B029C89E6406A97FB0516C52C7E63B94CAECEEB431A2E ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
11:03:23.0168 0x11d8 MBAMService - ok
11:03:23.0215 0x11d8 [ 5858C4ABE87D0A842A941D6BD08038F1, FA082135752ECE107AC5E94066541F07FC1D56CE070CE8476A30375308F290A9 ] mcaudrv_simple C:\WINDOWS\system32\drivers\mcaudrv_x64.sys
11:03:23.0215 0x11d8 mcaudrv_simple - ok
11:03:23.0261 0x11d8 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys
11:03:23.0261 0x11d8 megasas - ok
11:03:23.0293 0x11d8 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
11:03:23.0308 0x11d8 megasr - ok
11:03:23.0355 0x11d8 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
11:03:23.0355 0x11d8 MEIx64 - ok
11:03:23.0402 0x11d8 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS C:\WINDOWS\system32\mmcss.dll
11:03:23.0402 0x11d8 MMCSS - ok
11:03:23.0449 0x11d8 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys
11:03:23.0449 0x11d8 Modem - ok
11:02:59.0375 0x0a34 UEFI system
11:03:02.0602 0x0a34 ============================================================
11:03:02.0602 0x0a34 Current date / time: 2014/05/18 11:03:02.0602
11:03:02.0602 0x0a34 SystemInfo:
11:03:02.0602 0x0a34
11:03:02.0602 0x0a34 OS Version: 6.3.9600 ServicePack: 0.0
11:03:02.0602 0x0a34 Product type: Workstation
11:03:02.0602 0x0a34 ComputerName: BARBAR
11:03:02.0602 0x0a34 UserName: Vojtěch
11:03:02.0602 0x0a34 Windows directory: C:\WINDOWS
11:03:02.0602 0x0a34 System windows directory: C:\WINDOWS
11:03:02.0602 0x0a34 Running under WOW64
11:03:02.0602 0x0a34 Processor architecture: Intel x64
11:03:02.0602 0x0a34 Number of processors: 4
11:03:02.0602 0x0a34 Page size: 0x1000
11:03:02.0602 0x0a34 Boot type: Normal boot
11:03:02.0602 0x0a34 ============================================================
11:03:03.0415 0x0a34 KLMD registered as C:\WINDOWS\system32\drivers\61668747.sys
11:03:03.0853 0x0a34 System UUID: {E491A662-F29C-47DE-7787-0F76A581C0CA}
11:03:04.0821 0x0a34 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:03:04.0837 0x0a34 ============================================================
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0:
11:03:04.0837 0x0a34 GPT partitions:
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {329FC1BF-5770-49E4-8F70-03CB06D028BC}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {BD532C03-945D-4C2B-A28E-4A7EF17E5BFD}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {ECDE6C6C-A5C3-4899-9ACD-BED4DC181C1D}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {CCF8B719-616A-4593-A08B-F441C7E56592}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {54791E5A-F414-4D66-93A3-B584A1DD8226}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x6E7AD000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {61FCE521-6A8F-4B20-9D70-E4581EE8E932}, Name: , StartLBA 0x6EC57800, BlocksNum 0xAF000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {8A53C3B7-9DDD-4F0E-9555-3E8862FEAC5C}, Name: Basic data partition, StartLBA 0x6ED06800, BlocksNum 0x3200000
11:03:04.0837 0x0a34 \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {0262B12B-368A-45D6-8329-3FCB4A1D679A}, Name: Basic data partition, StartLBA 0x71F06800, BlocksNum 0x2800000
11:03:04.0837 0x0a34 MBR partitions:
11:03:04.0837 0x0a34 ============================================================
11:03:04.0837 0x0a34 C: <-> \Device\Harddisk0\DR0\Partition5
11:03:04.0900 0x0a34 D: <-> \Device\Harddisk0\DR0\Partition7
11:03:04.0900 0x0a34 ============================================================
11:03:04.0900 0x0a34 Initialize success
11:03:04.0900 0x0a34 ============================================================
11:03:08.0244 0x11d8 ============================================================
11:03:08.0244 0x11d8 Scan started
11:03:08.0244 0x11d8 Mode: Manual;
11:03:08.0244 0x11d8 ============================================================
11:03:08.0244 0x11d8 KSN ping started
11:03:10.0682 0x11d8 KSN ping finished: true
11:03:11.0072 0x11d8 ================ Scan system memory ========================
11:03:11.0072 0x11d8 System memory - ok
11:03:11.0072 0x11d8 ================ Scan services =============================
11:03:11.0354 0x11d8 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
11:03:11.0369 0x11d8 1394ohci - ok
11:03:11.0416 0x11d8 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
11:03:11.0416 0x11d8 3ware - ok
11:03:11.0526 0x11d8 [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
11:03:11.0541 0x11d8 ACPI - ok
11:03:11.0588 0x11d8 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
11:03:11.0588 0x11d8 acpiex - ok
11:03:11.0604 0x11d8 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
11:03:11.0604 0x11d8 acpipagr - ok
11:03:11.0635 0x11d8 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
11:03:11.0635 0x11d8 AcpiPmi - ok
11:03:11.0651 0x11d8 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
11:03:11.0651 0x11d8 acpitime - ok
11:03:11.0713 0x11d8 [ 3B42D95D20CD2AACDB0564471AE43ED7, BF49568D7060159F61D5F6DE7ECDECCCD1F920A2881544BA83CF420C822F6653 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
11:03:11.0713 0x11d8 ACPIVPC - ok
11:03:11.0947 0x11d8 [ 43118867666AF8AF7929BF7BF4BFEF35, 2B1F8B246238032145C7C645988390A4B2A6D4C9C8E289137BEEE286024FD6E1 ] AdAppMgrSvc C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
11:03:11.0994 0x11d8 AdAppMgrSvc - ok
11:03:12.0151 0x11d8 [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:03:12.0182 0x11d8 AdobeFlashPlayerUpdateSvc - ok
11:03:12.0260 0x11d8 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
11:03:12.0276 0x11d8 ADP80XX - ok
11:03:12.0338 0x11d8 [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll
11:03:12.0338 0x11d8 AeLookupSvc - ok
11:03:12.0354 0x11d8 [ 239268BAB58EAE9A3FF4E08334C00451, 13F927730DF9BAEDB3A7AB6F7238270A20E4CDEB3D5324A1C471DF2209F3D239 ] AFD C:\WINDOWS\system32\drivers\afd.sys
11:03:12.0369 0x11d8 AFD - ok
11:03:12.0416 0x11d8 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys
11:03:12.0416 0x11d8 agp440 - ok
11:03:12.0479 0x11d8 [ 8E8E34B7BA059050EED827410D0697A2, 85B6684709F24729A6497563812A90A54068AC2DD9EEA03037CB1EEF5C85AAA9 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
11:03:12.0479 0x11d8 ahcache - ok
11:03:12.0526 0x11d8 [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG C:\WINDOWS\System32\alg.exe
11:03:12.0526 0x11d8 ALG - ok
11:03:12.0541 0x11d8 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
11:03:12.0541 0x11d8 AmdK8 - ok
11:03:12.0572 0x11d8 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
11:03:12.0572 0x11d8 AmdPPM - ok
11:03:12.0588 0x11d8 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
11:03:12.0588 0x11d8 amdsata - ok
11:03:12.0619 0x11d8 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
11:03:12.0619 0x11d8 amdsbs - ok
11:03:12.0635 0x11d8 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
11:03:12.0635 0x11d8 amdxata - ok
11:03:12.0651 0x11d8 [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID C:\WINDOWS\system32\drivers\appid.sys
11:03:12.0651 0x11d8 AppID - ok
11:03:12.0713 0x11d8 [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
11:03:12.0713 0x11d8 AppIDSvc - ok
11:03:12.0760 0x11d8 [ 8D6F535461F6CFF75A8ADDF83024C904, F2A97EC4A6284F28B685A3CE2D450F61E75EE8692D718A6AA352D5734BBBAD7B ] Appinfo C:\WINDOWS\System32\appinfo.dll
11:03:12.0760 0x11d8 Appinfo - ok
11:03:12.0791 0x11d8 [ F518545E5B7623AD49ABE7F8776EFA46, CD39B6EC0D80C6DB857F34D4AC5C31085271B51B8851A56FEFC052B20B7CC40C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:03:12.0791 0x11d8 Apple Mobile Device - ok
11:03:12.0869 0x11d8 [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
11:03:12.0885 0x11d8 AppReadiness - ok
11:03:12.0963 0x11d8 [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
11:03:12.0979 0x11d8 AppXSvc - ok
11:03:13.0010 0x11d8 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
11:03:13.0010 0x11d8 arcsas - ok
11:03:13.0057 0x11d8 [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:03:13.0057 0x11d8 AsyncMac - ok
11:03:13.0073 0x11d8 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
11:03:13.0073 0x11d8 atapi - ok
11:03:13.0119 0x11d8 [ F83D49F4B10E813A1F9AC8B92F16592D, E7B2F508D33861A9826F2C7B2087F14F6937C9B8F660D6363F737BAC60BD4578 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
11:03:13.0119 0x11d8 AudioEndpointBuilder - ok
11:03:13.0182 0x11d8 [ 9A71BD2E4B8EB550D0022AFDF8616014, 34D595684624114F23265CE8031ADC9E03AD374A5AFEEBB794AC57796A3CDA2F ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
11:03:13.0197 0x11d8 Audiosrv - ok
11:03:13.0244 0x11d8 [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
11:03:13.0244 0x11d8 AxInstSV - ok
11:03:13.0307 0x11d8 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
11:03:13.0307 0x11d8 b06bdrv - ok
11:03:13.0338 0x11d8 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
11:03:13.0338 0x11d8 BasicDisplay - ok
11:03:13.0432 0x11d8 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
11:03:13.0432 0x11d8 BasicRender - ok
11:03:13.0479 0x11d8 [ 70433F7A216BD0B5EC7DA1202EE53E65, 12F3210EC5546714B34225770242F5CF4AC36032BB49A8E8989620BA274AC505 ] bcbtums C:\WINDOWS\system32\drivers\bcbtums.sys
11:03:13.0494 0x11d8 bcbtums - ok
11:03:13.0604 0x11d8 [ 18B186BCC56EC611DE519CBA7D4F65B0, 6F2520AAFDAA4208717DCD121527911D580727C5A6B8C4C7F07C4155C4D8662D ] BcmBtRSupport C:\WINDOWS\system32\BtwRSupportService.exe
11:03:13.0635 0x11d8 BcmBtRSupport - ok
11:03:13.0682 0x11d8 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
11:03:13.0682 0x11d8 bcmfn2 - ok
11:03:13.0744 0x11d8 [ 5BD3A2351BEFCAC8757626271F8EFA89, 6508673210129CF7EFCA93EC7874208FAD361E37814EB4FE9E0EC034E73D5F16 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
11:03:13.0744 0x11d8 BDESVC - ok
11:03:13.0791 0x11d8 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys
11:03:13.0791 0x11d8 Beep - ok
11:03:13.0838 0x11d8 [ BBE15881FE11BE37112F8320C41DAFB9, 5CE92563628812FF6E00556D8E2DAD6ADCAAF0F4C3B90123F1D98ED6E3BB6DAD ] BFE C:\WINDOWS\System32\bfe.dll
11:03:13.0854 0x11d8 BFE - ok
11:03:13.0916 0x11d8 [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS C:\WINDOWS\System32\qmgr.dll
11:03:13.0932 0x11d8 BITS - ok
11:03:14.0026 0x11d8 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:03:14.0026 0x11d8 Bonjour Service - ok
11:03:14.0041 0x11d8 [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
11:03:14.0041 0x11d8 bowser - ok
11:03:14.0104 0x11d8 [ F2559A492AF8D653D1F47ADABA4C3E97, 77347915FB433023769699DFC9511F54E69C7FC7AB75F57FDC1A58E64A7126DE ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
11:03:14.0104 0x11d8 BrokerInfrastructure - ok
11:03:14.0151 0x11d8 [ D528D6A92D187777691993DD757AF19A, 2C79978310193431E5FC462368424A172858D5351C92D4815C2A7E35B5DDE50C ] Browser C:\WINDOWS\System32\browser.dll
11:03:14.0166 0x11d8 Browser - ok
11:03:14.0307 0x11d8 [ 6DAA0ACBB6775343BD61D3B225FA40D0, CD4D5FF9ABE3A2DDBF16A9E05651676AAE04E4769D99B1E0A8C41E81AC5F18A9 ] BRSptSvc C:\ProgramData\BitRaider\BRSptSvc.exe
11:03:14.0338 0x11d8 BRSptSvc - ok
11:03:14.0401 0x11d8 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
11:03:14.0401 0x11d8 BthAvrcpTg - ok
11:03:14.0417 0x11d8 [ 131F1C8573E7BFB41C54FBF5309CCD94, DAFE51E3BADBD82A33B580F212B2D6520A120877C23F6D675521FEA2F4BA5A1F ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
11:03:14.0417 0x11d8 BthEnum - ok
11:03:14.0432 0x11d8 [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
11:03:14.0432 0x11d8 BthHFEnum - ok
11:03:14.0448 0x11d8 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
11:03:14.0448 0x11d8 bthhfhid - ok
11:03:14.0510 0x11d8 [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys
11:03:14.0510 0x11d8 BthLEEnum - ok
11:03:14.0526 0x11d8 [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
11:03:14.0526 0x11d8 BTHMODEM - ok
11:03:14.0542 0x11d8 [ 3AFE71D80EDF5D4DE0C5731352905669, 3E370169B8C5D301954D1F1DA302F7A0DB2A034990E10B3D64458C48E5693205 ] BthPan C:\WINDOWS\system32\DRIVERS\bthpan.sys
11:03:14.0542 0x11d8 BthPan - ok
11:03:14.0635 0x11d8 [ AB8CD3914AD779C15B27DDD9F53F7434, 6E9911C146A038192B95916387FA9D94D952BEFE158E6CBA44F1500A304221A3 ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys
11:03:14.0651 0x11d8 BTHPORT - ok
11:03:14.0698 0x11d8 [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv C:\WINDOWS\system32\bthserv.dll
11:03:14.0698 0x11d8 bthserv - ok
11:03:14.0760 0x11d8 [ 23E75BED9076F856B36F5F934BBD5795, CCEB72B788522B7D52A6C07646005EBC68F9599D3714ECACF3A194CA47A1BE85 ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys
11:03:14.0760 0x11d8 BTHUSB - ok
11:03:14.0807 0x11d8 [ 20C8EB70C0B179DF06A01CA503F4A824, 1C2DADCBC5D85C1D4F6A28B7F374C829E6DCE0EB720EBDA43CF6AC0AC934AA5E ] btwampfl C:\WINDOWS\system32\DRIVERS\btwampfl.sys
11:03:14.0807 0x11d8 btwampfl - ok
11:03:14.0854 0x11d8 [ C2BA449FB70F7BEB1F925DB10462AB89, 5A99910A4C521550E0D4AE149CAC831A657CCFD234544720EA3CA3931EDB9976 ] btwaudio C:\WINDOWS\system32\drivers\btwaudio.sys
11:03:14.0870 0x11d8 btwaudio - ok
11:03:14.0885 0x11d8 [ CDFEEADA67476655E1FE4B96AD1ECCA4, 8B4511C4754FB75E481D52E6441DB96280BB72BE507AB5235782FCC505CBB5B0 ] btwavdt C:\WINDOWS\System32\drivers\btwavdt.sys
11:03:14.0885 0x11d8 btwavdt - ok
11:03:14.0963 0x11d8 [ 4FF165C44BDE69701BC1DBEB357895CA, D063331D8F756682E097ACE40428428A54706D578C1CDC81AD5C122DC6690A96 ] btwdins C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
11:03:14.0979 0x11d8 btwdins - ok
11:03:14.0979 0x11d8 [ C3C8974D99F976C927165363855690CD, 2B73E11FE341DE581CFF655E58C5671B83F4331529C30DADCAA9B6BE615D5E1F ] btwl2cap C:\WINDOWS\system32\DRIVERS\btwl2cap.sys
11:03:14.0979 0x11d8 btwl2cap - ok
11:03:14.0995 0x11d8 [ 962CD553C7E25C1D96FF6B12A9A61D43, DC786A2E70624F3A1E3CD75F62FF8986ABAD2F602E632F5F42A6D5CA16458851 ] btwrchid C:\WINDOWS\System32\drivers\btwrchid.sys
11:03:14.0995 0x11d8 btwrchid - ok
11:03:15.0010 0x11d8 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
11:03:15.0010 0x11d8 cdfs - ok
11:03:15.0073 0x11d8 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
11:03:15.0073 0x11d8 cdrom - ok
11:03:15.0120 0x11d8 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
11:03:15.0135 0x11d8 CertPropSvc - ok
11:03:15.0182 0x11d8 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
11:03:15.0182 0x11d8 circlass - ok
11:03:15.0229 0x11d8 [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
11:03:15.0245 0x11d8 CLFS - ok
11:03:15.0260 0x11d8 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
11:03:15.0260 0x11d8 CmBatt - ok
11:03:15.0323 0x11d8 [ 4627C1FBF2802425A408A2D2AF28CF85, 8B91C1BE1104BE93C0D689A20315FD106D89A076267493319B104EE73A90CDCB ] CNG C:\WINDOWS\system32\Drivers\cng.sys
11:03:15.0323 0x11d8 CNG - ok
11:03:15.0354 0x11d8 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys
11:03:15.0354 0x11d8 CompositeBus - ok
11:03:15.0354 0x11d8 COMSysApp - ok
11:03:15.0385 0x11d8 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys
11:03:15.0385 0x11d8 condrv - ok
11:03:15.0542 0x11d8 [ 034643AFE2973A175E782AE530A0683C, C488572B971144D8A10F6EC8480175868913942896144D38BF49E3D8D1BC54F3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
11:03:15.0542 0x11d8 cphs - ok
11:03:15.0604 0x11d8 [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
11:03:15.0604 0x11d8 CryptSvc - ok
11:03:15.0620 0x11d8 [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys
11:03:15.0620 0x11d8 dam - ok
11:03:15.0698 0x11d8 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
11:03:15.0698 0x11d8 DcomLaunch - ok
11:03:15.0760 0x11d8 [ 78089FCDE082FD4FA471C30A7C2DC736, C4816D7125C39290C3B0B1F580CEE8BB7FFC004F727EA9E9767671D3EDB946AE ] defragsvc C:\WINDOWS\System32\defragsvc.dll
11:03:15.0760 0x11d8 defragsvc - ok
11:03:15.0823 0x11d8 [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\WINDOWS\system32\das.dll
11:03:15.0823 0x11d8 DeviceAssociationService - ok
11:03:15.0870 0x11d8 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
11:03:15.0870 0x11d8 DeviceInstall - ok
11:03:15.0885 0x11d8 [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
11:03:15.0885 0x11d8 Dfsc - ok
11:03:15.0932 0x11d8 [ 8B107F55FD61654A6C9F1B819AEC5FC4, 773B1B9D3583F17B7C89BDE1EC4487ABB0AE039DF4583F8746460425443DA291 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
11:03:15.0932 0x11d8 Dhcp - ok
11:03:15.0979 0x11d8 [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys
11:03:15.0979 0x11d8 disk - ok
11:03:16.0042 0x11d8 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
11:03:16.0042 0x11d8 dmvsc - ok
11:03:16.0120 0x11d8 [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
11:03:16.0120 0x11d8 Dnscache - ok
11:03:16.0198 0x11d8 [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc C:\WINDOWS\System32\dot3svc.dll
11:03:16.0198 0x11d8 dot3svc - ok
11:03:16.0229 0x11d8 [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS C:\WINDOWS\system32\dps.dll
11:03:16.0229 0x11d8 DPS - ok
11:03:16.0276 0x11d8 [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
11:03:16.0276 0x11d8 drmkaud - ok
11:03:16.0339 0x11d8 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
11:03:16.0339 0x11d8 DsmSvc - ok
11:03:16.0417 0x11d8 [ C7D252742946DD395670649742FBD73D, 333CC984CF318D36EA8C5867077A1732A214445EB6B7CF7AC2E8F1C8259CD9C7 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
11:03:16.0448 0x11d8 DXGKrnl - ok
11:03:16.0511 0x11d8 [ 6E0BDFBEEED65B017F2E4C2C910B0520, 54D798C2E2804DCDB84E9650EA4A032C669B10C586B396D5505F16235D83882C ] e9f32388 C:\WINDOWS\system32\rundll32.exe
11:03:16.0511 0x11d8 e9f32388 - ok
11:03:16.0557 0x11d8 [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost C:\WINDOWS\System32\eapsvc.dll
11:03:16.0557 0x11d8 Eaphost - ok
11:03:16.0698 0x11d8 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
11:03:16.0745 0x11d8 ebdrv - ok
11:03:16.0792 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS C:\WINDOWS\System32\lsass.exe
11:03:16.0792 0x11d8 EFS - ok
11:03:16.0854 0x11d8 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
11:03:16.0854 0x11d8 EhStorClass - ok
11:03:16.0870 0x11d8 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
11:03:16.0870 0x11d8 EhStorTcgDrv - ok
11:03:16.0886 0x11d8 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
11:03:16.0886 0x11d8 ErrDev - ok
11:03:16.0964 0x11d8 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem C:\WINDOWS\system32\es.dll
11:03:16.0964 0x11d8 EventSystem - ok
11:03:17.0136 0x11d8 [ E2EAAD4A81DE29B6D37D70F083746F0B, FD400057970528FFB9BE98CA4DE6BE83C03132F9EEC6ECD2C433DA74A8A21A93 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
11:03:17.0167 0x11d8 EvtEng - ok
11:03:17.0198 0x11d8 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys
11:03:17.0214 0x11d8 exfat - ok
11:03:17.0229 0x11d8 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
11:03:17.0229 0x11d8 fastfat - ok
11:03:17.0292 0x11d8 [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax C:\WINDOWS\system32\fxssvc.exe
11:03:17.0308 0x11d8 Fax - ok
11:03:17.0323 0x11d8 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
11:03:17.0323 0x11d8 fdc - ok
11:03:17.0386 0x11d8 [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost C:\WINDOWS\system32\fdPHost.dll
11:03:17.0386 0x11d8 fdPHost - ok
11:03:17.0401 0x11d8 [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub C:\WINDOWS\system32\fdrespub.dll
11:03:17.0401 0x11d8 FDResPub - ok
11:03:17.0464 0x11d8 [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc C:\WINDOWS\system32\fhsvc.dll
11:03:17.0479 0x11d8 fhsvc - ok
11:03:17.0526 0x11d8 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
11:03:17.0542 0x11d8 FileInfo - ok
11:03:17.0573 0x11d8 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
11:03:17.0573 0x11d8 Filetrace - ok
11:03:17.0651 0x11d8 [ 8645F91F40B8D022C9AC3DABDF360A6B, 4F83080B1273C92470EB90D80B32056C913240DCC9C4C50B7BE85254066D654D ] FlexNet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
11:03:17.0714 0x11d8 FlexNet Licensing Service 64 - ok
11:03:17.0745 0x11d8 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
11:03:17.0745 0x11d8 flpydisk - ok
11:03:17.0808 0x11d8 [ 46D1DF775FFF14585218BBE16E5B2C9A, F39EF615B18CEC7BA3F68C7639B636C06812AD9DBEDE90EB7B2C04C64396FC9E ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
11:03:17.0808 0x11d8 FltMgr - ok
11:03:17.0886 0x11d8 [ 183CA7699474FDE235853967D1DA4D9B, 8FBD5997F1E39AFFD8C4322520DF4D2227279B5149017D825C188D7411BA99AF ] FontCache C:\WINDOWS\system32\FntCache.dll
11:03:17.0901 0x11d8 FontCache - ok
11:03:18.0073 0x11d8 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:03:18.0073 0x11d8 FontCache3.0.0.0 - ok
11:03:18.0136 0x11d8 [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
11:03:18.0136 0x11d8 FsDepends - ok
11:03:18.0151 0x11d8 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:03:18.0151 0x11d8 Fs_Rec - ok
11:03:18.0214 0x11d8 [ B2BD017231836DA9F63F41E3A075D73E, 31B1DD677FE8B4F90B8AB5A131DA0105439AC2D91BC0CEDC972D2D87E595A686 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
11:03:18.0229 0x11d8 fvevol - ok
11:03:18.0245 0x11d8 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys
11:03:18.0245 0x11d8 FxPPM - ok
11:03:18.0261 0x11d8 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys
11:03:18.0261 0x11d8 gagp30kx - ok
11:03:18.0292 0x11d8 [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
11:03:18.0292 0x11d8 GEARAspiWDM - ok
11:03:18.0339 0x11d8 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
11:03:18.0339 0x11d8 gencounter - ok
11:03:18.0354 0x11d8 [ EF3AE7773394DF49CE74AF78A1C8D23D, CB12FF004C460A89F12AFF2467512B479A07CA10D4280CD4E624A5A9CDAB9C1B ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
11:03:18.0354 0x11d8 GPIOClx0101 - ok
11:03:18.0433 0x11d8 [ 58C11DCCC6241CC13861A559E31A69F0, 78B38BBC362C9209B06849CC79301EC595AFCE3E2BDE402A0B1F2725D3EDEFA3 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
11:03:18.0448 0x11d8 gpsvc - ok
11:03:18.0542 0x11d8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:03:18.0542 0x11d8 gupdate - ok
11:03:18.0542 0x11d8 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:03:18.0542 0x11d8 gupdatem - ok
11:03:18.0589 0x11d8 [ 4DBF4C90A50C105A80EACD9B2FCCBC96, 967937AA35AF26BFD2F3B857B82DA0352096389C34D478075DE22CDC1FAB3F33 ] Hamachi C:\WINDOWS\system32\DRIVERS\Hamdrv.sys
11:03:18.0589 0x11d8 Hamachi - ok
11:03:18.0651 0x11d8 [ 3CC07DAD48FA53193AE2F85DD8200B5E, 1982E674EC144EC63AB2B7C668EA5AC6FEDA97AD775E50F74CC2B4C16DDB19B2 ] hcmon C:\windows\system32\drivers\hcmon.sys
11:03:18.0651 0x11d8 hcmon - ok
11:03:18.0667 0x11d8 [ 03909BDBFF0DCACCABF2B2D4ADEE44DC, 42E631B23BB004F5C2128BAD334C21AB20FAD08AFED9E8191AE9373531BC73DD ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
11:03:18.0667 0x11d8 HDAudBus - ok
11:03:18.0729 0x11d8 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
11:03:18.0729 0x11d8 HidBatt - ok
11:03:18.0776 0x11d8 [ 1EA1B4FABB8CC348E73CA90DBA22E104, 5C18C6BD499272F216DD4626B5E8D38181AEAC9AD917FBEB614A75B70467B258 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
11:03:18.0776 0x11d8 HidBth - ok
11:03:18.0933 0x11d8 [ 1FDE827F2B511D41B6FB99FD1BCFA659, A5D8D3D983F278C6C1C58F7FA8A90BE3D98AF1C85F1873D6536E1F0778DC1B14 ] HideMyIpSRV C:\Program Files (x86)\Hide My IP\HideMyIpSrv.exe
11:03:19.0152 0x11d8 HideMyIpSRV - ok
11:03:19.0183 0x11d8 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
11:03:19.0183 0x11d8 hidi2c - ok
11:03:19.0214 0x11d8 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
11:03:19.0214 0x11d8 HidIr - ok
11:03:19.0261 0x11d8 [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv C:\WINDOWS\system32\hidserv.dll
11:03:19.0261 0x11d8 hidserv - ok
11:03:19.0308 0x11d8 [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
11:03:19.0308 0x11d8 HidUsb - ok
11:03:19.0355 0x11d8 [ 40D4080D722AE8E163FAE3508DC692A2, A2331085EF20B83C01F04D58952728C2E1D1F3BF0A303DBD1588293C90D3E9CF ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
11:03:19.0355 0x11d8 HiPatchService - ok
11:03:19.0417 0x11d8 [ A894FB2CAE6A29F5D9C8EDA47B074623, F39014379B6F546CF3D3F56A343A7173B600A350715638040AE93E03EAB81CAC ] HipShieldK C:\WINDOWS\system32\drivers\HipShieldK.sys
11:03:19.0433 0x11d8 HipShieldK - ok
11:03:19.0480 0x11d8 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc C:\WINDOWS\system32\kmsvc.dll
11:03:19.0480 0x11d8 hkmsvc - ok
11:03:19.0511 0x11d8 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
11:03:19.0511 0x11d8 HomeGroupListener - ok
11:03:19.0573 0x11d8 [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
11:03:19.0573 0x11d8 HomeGroupProvider - ok
11:03:19.0620 0x11d8 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
11:03:19.0620 0x11d8 HpSAMD - ok
11:03:19.0636 0x11d8 [ AFA58B8A623CD458EF40CFB398AC28E2, 3D82091777BFEBFD431CEFB14C4697888606DEA26D356862B951936975F7CAC1 ] HssDRV6 C:\WINDOWS\system32\DRIVERS\hssdrv6.sys
11:03:19.0636 0x11d8 HssDRV6 - ok
11:03:19.0683 0x11d8 [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
11:03:19.0698 0x11d8 HTTP - ok
11:03:19.0745 0x11d8 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
11:03:19.0745 0x11d8 hwpolicy - ok
11:03:19.0761 0x11d8 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
11:03:19.0761 0x11d8 hyperkbd - ok
11:03:19.0777 0x11d8 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
11:03:19.0777 0x11d8 HyperVideo - ok
11:03:19.0792 0x11d8 [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
11:03:19.0792 0x11d8 i8042prt - ok
11:03:19.0808 0x11d8 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
11:03:19.0808 0x11d8 iaLPSSi_GPIO - ok
11:03:19.0823 0x11d8 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
11:03:19.0823 0x11d8 iaLPSSi_I2C - ok
11:03:19.0886 0x11d8 [ 6C024B3AE192D72B216166802AF345DD, 67AEDBEF4A1C1EE1DA9B684BDEB3DB07715E12B766AA72B6684CC6C583A8DCC5 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
11:03:19.0902 0x11d8 iaStorA - ok
11:03:19.0948 0x11d8 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
11:03:19.0964 0x11d8 iaStorAV - ok
11:03:20.0058 0x11d8 [ 7F7A03D03FA18A0DB2DAC37A8D620E7F, B867A6B38EB81B6FE2501441D4CB69A2488A1F13BA558AB2B728A7507AB1BAC3 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
11:03:20.0058 0x11d8 IAStorDataMgrSvc - ok
11:03:20.0089 0x11d8 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
11:03:20.0089 0x11d8 iaStorV - ok
11:03:20.0089 0x11d8 IEEtwCollectorService - ok
11:03:20.0230 0x11d8 [ 7A5A61997B5404C8EDDFCC62378164DC, C2BCA8A2AA2DFCCF3489FC7F0F366ABBDC8606CFC6397CD7B17C8CD4A28DD17F ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
11:03:20.0292 0x11d8 igfx - ok
11:03:20.0355 0x11d8 [ CFE7F0267B0C3077042FF291949B5546, 7B8C432632D0210119BFF57D4994F2B8F75307A9D6867353AF93BBA3F561595B ] IKEEXT C:\WINDOWS\System32\ikeext.dll
11:03:20.0370 0x11d8 IKEEXT - ok
11:03:20.0433 0x11d8 [ 4011430BC9DA46ADFAE9915EFEC312FB, 925DDDA187AE7C46C94FBBFA18FC602260957B6BA891D65DFC09385B6DDEAB58 ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
11:03:20.0433 0x11d8 intaud_WaveExtensible - ok
11:03:20.0589 0x11d8 [ F1A3ECE3809AF333810ED0A872200226, BF1CC3EE64A9BDE41A5139A56016DE79DB87212D130B6024A03206CFCF65AC72 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
11:03:20.0636 0x11d8 IntcAzAudAddService - ok
11:03:20.0699 0x11d8 [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
11:03:20.0699 0x11d8 IntcDAud - ok
11:03:20.0745 0x11d8 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
11:03:21.0324 0x11d8 Intel(R) Capability Licensing Service Interface - ok
11:03:21.0339 0x11d8 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
11:03:21.0355 0x11d8 intelide - ok
11:03:21.0402 0x11d8 [ 139CFCDCD36B1B1782FD8C0014AC9B0E, E0D7E0E9B46A8CECE138D689820023BFA650FB689E4FD62855BED37E04F2D9FF ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
11:03:21.0402 0x11d8 intelpep - ok
11:03:21.0449 0x11d8 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
11:03:21.0449 0x11d8 intelppm - ok
11:03:21.0496 0x11d8 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:03:21.0496 0x11d8 IpFilterDriver - ok
11:03:21.0558 0x11d8 [ DFC4050D58565ADBEE793A8D4AEBDAE6, 89B900408F030CD45753A11D6AE6CBAB87E8B0E3F8401402D2D8713C045BF488 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
11:03:21.0574 0x11d8 iphlpsvc - ok
11:03:21.0621 0x11d8 [ FD9C9E9E3F0ED51502C7E8C066BE26B9, 290E74380F1543DD22C9F3821513B3E2FB42E995724238D8779CBBCB4FC386C8 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
11:03:21.0621 0x11d8 IPMIDRV - ok
11:03:21.0652 0x11d8 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
11:03:21.0667 0x11d8 IPNAT - ok
11:03:21.0714 0x11d8 [ F7ED08D4BC89D7AC6135C1556A89157F, 8F15F1E528F6513FCEF5D966880CBA8A2C7A4816393393F4B201CDD6227F36A3 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
11:03:21.0714 0x11d8 iPod Service - ok
11:03:21.0761 0x11d8 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
11:03:21.0761 0x11d8 IRENUM - ok
11:03:21.0777 0x11d8 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
11:03:21.0777 0x11d8 isapnp - ok
11:03:21.0839 0x11d8 [ 034D4BD9DC67C64F3A4C8A049B5173BF, C68AF5A5AD4092AA1C871BD38473AEF84EC3ECF4D06FBEB5F6C09972EF1B8A81 ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
11:03:21.0839 0x11d8 iScsiPrt - ok
11:03:21.0886 0x11d8 [ EE03564B7FAFE2E44EDA33D52E83B4A3, 53C917EEC92B813EB0C86B225E9887C9CDFDD7708AEA71BFAC0A3039E26D7BEB ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
11:03:21.0886 0x11d8 iwdbus - ok
11:03:21.0949 0x11d8 [ 78ABBE558F57144047F10A0F50FE4B2F, 6BE608F7697D83FD6C7E6EA422AC5637933BDC96B1044C12DE9A419CE7D6F6CE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
11:03:21.0949 0x11d8 jhi_service - ok
11:03:21.0996 0x11d8 [ 38515AF94AC56161F24AEE3F3681EC69, 20115363EA040641C04C75B6890A7CCDE9A65F57EB437BE28DF7AD5200EC4608 ] JMCR C:\WINDOWS\System32\drivers\jmcr.sys
11:03:21.0996 0x11d8 JMCR - ok
11:03:22.0027 0x11d8 [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
11:03:22.0027 0x11d8 kbdclass - ok
11:03:22.0027 0x11d8 [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
11:03:22.0027 0x11d8 kbdhid - ok
11:03:22.0042 0x11d8 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys
11:03:22.0058 0x11d8 kdnic - ok
11:03:22.0058 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso C:\WINDOWS\system32\lsass.exe
11:03:22.0074 0x11d8 KeyIso - ok
11:03:22.0121 0x11d8 [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
11:03:22.0121 0x11d8 KSecDD - ok
11:03:22.0167 0x11d8 [ F88CC88F4A6D8476F1664E805CA18CC2, 2C61EE5EEA4FD45AA3FA927CC16E34EF90BD44324EAB14198AF65C3A27617991 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
11:03:22.0167 0x11d8 KSecPkg - ok
11:03:22.0183 0x11d8 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
11:03:22.0183 0x11d8 ksthunk - ok
11:03:22.0246 0x11d8 [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
11:03:22.0246 0x11d8 KtmRm - ok
11:03:22.0292 0x11d8 [ 50AECF8C21AB2A6428A6E1E10549D8E5, 6BC7C60CF5E8AFB9972619EE1C78357756E9C0A3EC783C3056CEB600DCBB1555 ] L1C C:\WINDOWS\system32\DRIVERS\L1C63x64.sys
11:03:22.0308 0x11d8 L1C - ok
11:03:22.0371 0x11d8 [ 27B58E16CF895AC1F1A97C04814C2239, D4336155331DDBF91952CDC6C446C68FF524F979099BA8D9B3A578758F97B2BE ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
11:03:22.0371 0x11d8 LanmanServer - ok
11:03:22.0449 0x11d8 [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
11:03:22.0449 0x11d8 LanmanWorkstation - ok
11:03:22.0511 0x11d8 [ EE289BD147FDFF95EF1B9BD65D3B974A, EFD9D0F6C73E7D2D52DBE2E2A8D3009BFB6AB24776A100CA528A8365002C6105 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll
11:03:22.0511 0x11d8 lfsvc - ok
11:03:22.0542 0x11d8 [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr C:\WINDOWS\system32\DRIVERS\LhdX64.sys
11:03:22.0542 0x11d8 LHDmgr - ok
11:03:22.0542 0x11d8 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys
11:03:22.0558 0x11d8 lltdio - ok
11:03:22.0605 0x11d8 [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
11:03:22.0621 0x11d8 lltdsvc - ok
11:03:22.0652 0x11d8 [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
11:03:22.0652 0x11d8 lmhosts - ok
11:03:22.0683 0x11d8 [ 2C24DC448DBE8DB9BE1441B824C57E79, DA2257EEC964A47D03C2BB13317FD788E51D4685E2395B303ED7B2575FEF3B19 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:03:22.0699 0x11d8 LMS - ok
11:03:22.0746 0x11d8 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
11:03:22.0746 0x11d8 LSI_SAS - ok
11:03:22.0761 0x11d8 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys
11:03:22.0761 0x11d8 LSI_SAS2 - ok
11:03:22.0777 0x11d8 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys
11:03:22.0777 0x11d8 LSI_SAS3 - ok
11:03:22.0808 0x11d8 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
11:03:22.0808 0x11d8 LSI_SSS - ok
11:03:22.0871 0x11d8 [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM C:\WINDOWS\System32\lsm.dll
11:03:22.0886 0x11d8 LSM - ok
11:03:22.0949 0x11d8 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
11:03:22.0949 0x11d8 luafv - ok
11:03:23.0011 0x11d8 [ DE585D1D266805E5EEDAE911FDD16F38, D954C1795D98653F1FB0AE8650FF0DEDDAA730B98C9449E6F608154D573DAB27 ] ManyCam C:\WINDOWS\system32\DRIVERS\mcvidrv_x64.sys
11:03:23.0011 0x11d8 ManyCam - ok
11:03:23.0042 0x11d8 [ FD5465B876D55534117963FAAA4B9DFC, 63A822A1EEEC42C30CCC9477431E310E3D360489A68BBCD805124681F21C0B6B ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
11:03:23.0042 0x11d8 MBAMProtector - ok
11:03:23.0105 0x11d8 [ 0E08BDD7326E657D59DB40BAD23D8169, 428C6CCCC0BB540DFD35847776140D60C186B9D2D14F0ACCD1A4D42A8877BD98 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
11:03:23.0121 0x11d8 MBAMScheduler - ok
11:03:23.0152 0x11d8 [ A8E7F3DB083EB0839DFC1C763CDD2594, BDF416E360A52130B23B029C89E6406A97FB0516C52C7E63B94CAECEEB431A2E ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
11:03:23.0168 0x11d8 MBAMService - ok
11:03:23.0215 0x11d8 [ 5858C4ABE87D0A842A941D6BD08038F1, FA082135752ECE107AC5E94066541F07FC1D56CE070CE8476A30375308F290A9 ] mcaudrv_simple C:\WINDOWS\system32\drivers\mcaudrv_x64.sys
11:03:23.0215 0x11d8 mcaudrv_simple - ok
11:03:23.0261 0x11d8 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys
11:03:23.0261 0x11d8 megasas - ok
11:03:23.0293 0x11d8 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys
11:03:23.0308 0x11d8 megasr - ok
11:03:23.0355 0x11d8 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys
11:03:23.0355 0x11d8 MEIx64 - ok
11:03:23.0402 0x11d8 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS C:\WINDOWS\system32\mmcss.dll
11:03:23.0402 0x11d8 MMCSS - ok
11:03:23.0449 0x11d8 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys
11:03:23.0449 0x11d8 Modem - ok
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
11:03:23.0465 0x11d8 [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys
11:03:23.0465 0x11d8 monitor - ok
11:03:23.0480 0x11d8 [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
11:03:23.0480 0x11d8 mouclass - ok
11:03:23.0527 0x11d8 [ 21B7ACEA1BB49C3371DD5427BF309D6A, 39055A4D9BC293BD5DE5519FC6B95E7345089B32027E1799FA642606E6298856 ] moufiltr C:\WINDOWS\System32\drivers\moufiltr.sys
11:03:23.0527 0x11d8 moufiltr - ok
11:03:23.0543 0x11d8 [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
11:03:23.0543 0x11d8 mouhid - ok
11:03:23.0558 0x11d8 [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
11:03:23.0558 0x11d8 mountmgr - ok
11:03:23.0605 0x11d8 [ AEE4E9CC59CDEB55B1ECB0E596E796BE, 674F6F38D86D238AFD6223E03A862F8B43DD8499FBC2D4B7A04E510EC5EACF3B ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:03:23.0605 0x11d8 MozillaMaintenance - ok
11:03:23.0636 0x11d8 [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
11:03:23.0636 0x11d8 mpsdrv - ok
11:03:23.0715 0x11d8 [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
11:03:23.0730 0x11d8 MpsSvc - ok
11:03:23.0777 0x11d8 [ 1D55DADC22D21883A2F80297F5A5AE48, B79DF4AFC2A9CBC54E74233596544D6E41C8CAA0516BD57CA695D051EC780265 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
11:03:23.0777 0x11d8 MRxDAV - ok
11:03:23.0824 0x11d8 [ C997E6A37BA8915224B3FB5024A34F69, 43E1B83072DF9E878151D276DDB6EB7B3801D72494C43E9B9ABECA4B2DCFD606 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:03:23.0824 0x11d8 mrxsmb - ok
11:03:23.0886 0x11d8 [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
11:03:23.0886 0x11d8 mrxsmb10 - ok
11:03:23.0933 0x11d8 [ AAF56E4E84D35411B4E446C445732DFE, 7AC41CAA0842AE4DA4EEF976202C58D7923DAA367F0D7E800D432323D5E7DE1A ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
11:03:23.0949 0x11d8 mrxsmb20 - ok
11:03:23.0965 0x11d8 [ 4E888019078AC363076A5433E89AA4F8, 3DEBDA290230B3E83F956C902C960E39463B7EFE86439199521356762769FD91 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
11:03:23.0965 0x11d8 MsBridge - ok
11:03:24.0011 0x11d8 [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC C:\WINDOWS\System32\msdtc.exe
11:03:24.0011 0x11d8 MSDTC - ok
11:03:24.0027 0x11d8 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
11:03:24.0027 0x11d8 Msfs - ok
11:03:24.0043 0x11d8 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
11:03:24.0043 0x11d8 msgpiowin32 - ok
11:03:24.0058 0x11d8 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
11:03:24.0058 0x11d8 mshidkmdf - ok
11:03:24.0074 0x11d8 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
11:03:24.0074 0x11d8 mshidumdf - ok
11:03:24.0090 0x11d8 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
11:03:24.0090 0x11d8 msisadrv - ok
11:03:24.0136 0x11d8 [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
11:03:24.0136 0x11d8 MSiSCSI - ok
11:03:24.0136 0x11d8 msiserver - ok
11:03:24.0183 0x11d8 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:03:24.0183 0x11d8 MSKSSRV - ok
11:03:24.0199 0x11d8 [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
11:03:24.0199 0x11d8 MsLldp - ok
11:03:24.0246 0x11d8 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:03:24.0246 0x11d8 MSPCLOCK - ok
11:03:24.0308 0x11d8 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
11:03:24.0308 0x11d8 MSPQM - ok
11:03:24.0371 0x11d8 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
11:03:24.0371 0x11d8 MsRPC - ok
11:03:24.0386 0x11d8 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
11:03:24.0386 0x11d8 mssmbios - ok
11:03:24.0418 0x11d8 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
11:03:24.0433 0x11d8 MSTEE - ok
11:03:24.0465 0x11d8 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
11:03:24.0465 0x11d8 MTConfig - ok
11:03:24.0496 0x11d8 [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys
11:03:24.0496 0x11d8 Mup - ok
11:03:24.0527 0x11d8 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
11:03:24.0527 0x11d8 mvumis - ok
11:03:24.0558 0x11d8 [ 91D84C98D8C500E4F207D9C241A1ED5D, 2F4AAC60CC2572BEDE16C760156A6CF7D59FA95AB636B3A12B1F6AE444CC222A ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
11:03:24.0574 0x11d8 MyWiFiDHCPDNS - ok
11:03:24.0699 0x11d8 [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent C:\WINDOWS\system32\qagentRT.dll
11:03:24.0699 0x11d8 napagent - ok
11:03:24.0793 0x11d8 [ 647C7652FA19F98CADF2BFDA2164BFEC, 711A4A06309393922A70D7FBE5684938CD634F5DED158D847BFADDD5ACF9E44C ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
11:03:24.0808 0x11d8 NativeWifiP - ok
11:03:24.0855 0x11d8 [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
11:03:24.0871 0x11d8 NcaSvc - ok
11:03:24.0887 0x11d8 [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService C:\WINDOWS\System32\ncbservice.dll
11:03:24.0887 0x11d8 NcbService - ok
11:03:24.0902 0x11d8 [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
11:03:24.0902 0x11d8 NcdAutoSetup - ok
11:03:25.0027 0x11d8 [ F21B77B4D74092A543807D3CEB711A88, 5C3C17A10E990070FAB317C0C5333DE768E408CAF43EC4FA9D18116C6EE3B3DC ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
11:03:25.0043 0x11d8 NDIS - ok
11:03:25.0105 0x11d8 [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
11:03:25.0105 0x11d8 NdisCap - ok
11:03:25.0152 0x11d8 [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37, CCD99962917BBE256F64AE14CCC9FD12433C72B5DB98E0E57CA8F212A11B3C8F ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
11:03:25.0152 0x11d8 NdisImPlatform - ok
11:03:25.0199 0x11d8 [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:03:25.0199 0x11d8 NdisTapi - ok
11:03:25.0215 0x11d8 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:03:25.0215 0x11d8 Ndisuio - ok
11:03:25.0262 0x11d8 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
11:03:25.0262 0x11d8 NdisVirtualBus - ok
11:03:25.0340 0x11d8 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:03:25.0340 0x11d8 NdisWan - ok
11:03:25.0355 0x11d8 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:03:25.0355 0x11d8 NdisWanLegacy - ok
11:03:25.0371 0x11d8 [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
11:03:25.0371 0x11d8 NDProxy - ok
11:03:25.0387 0x11d8 [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
11:03:25.0402 0x11d8 Ndu - ok
11:03:25.0402 0x11d8 [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
11:03:25.0402 0x11d8 NetBIOS - ok
11:03:25.0433 0x11d8 [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
11:03:25.0433 0x11d8 NetBT - ok
11:03:25.0465 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon C:\WINDOWS\system32\lsass.exe
11:03:25.0465 0x11d8 Netlogon - ok
11:03:25.0558 0x11d8 [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman C:\WINDOWS\System32\netman.dll
11:03:25.0574 0x11d8 Netman - ok
11:03:25.0715 0x11d8 [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
11:03:25.0715 0x11d8 netprofm - ok
11:03:25.0949 0x11d8 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:03:26.0012 0x11d8 NetTcpPortSharing - ok
11:03:26.0059 0x11d8 [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc C:\WINDOWS\system32\DRIVERS\netvsc63.sys
11:03:26.0059 0x11d8 netvsc - ok
11:03:26.0324 0x11d8 [ 688987077129A8823A8A77C41BE3ABDD, 1F7DF4C459CDB01EB895EE501762C64038DC62826D9EAA7C89448BCC078F4DB0 ] NETwNe64 C:\WINDOWS\system32\DRIVERS\NETwew00.sys
11:03:26.0371 0x11d8 NETwNe64 - ok
11:03:26.0449 0x11d8 [ 3A280F3B3C7A46E29C404ACD46ECBF5E, 81C3367A2A212DBCC65B8A0166FD092E3205AB31A146B4B737061335CEC51F9D ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
11:03:26.0465 0x11d8 NlaSvc - ok
11:03:26.0496 0x11d8 [ DE7FCC77F4A503AF4CA6A47D49B3713D, 4BFAA99393F635CD05D91A64DE73EDB5639412C129E049F0FE34F88517A10FC6 ] NPF C:\WINDOWS\system32\drivers\npf.sys
11:03:26.0512 0x11d8 NPF - ok
11:03:26.0559 0x11d8 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
11:03:26.0559 0x11d8 Npfs - ok
11:03:26.0605 0x11d8 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
11:03:26.0605 0x11d8 npsvctrig - ok
11:03:26.0637 0x11d8 [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi C:\WINDOWS\system32\nsisvc.dll
11:03:26.0637 0x11d8 nsi - ok
11:03:26.0699 0x11d8 [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
11:03:26.0715 0x11d8 nsiproxy - ok
11:03:26.0918 0x11d8 [ 1C80517BE6836A812F6A9B99B8321351, 7DBED4633820E201C9C242D961EF6F25BA2B1D5593BA60F707CC71A4014C2D4B ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
11:03:26.0949 0x11d8 Ntfs - ok
11:03:26.0965 0x11d8 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys
11:03:26.0965 0x11d8 Null - ok
11:03:28.0496 0x11d8 [ 5A81DCCDA60D41BAC26C00B650D8769D, 47B8D349F6AA01BB019920761BCC92583EF15057E19B7AEFECB512D4EF24B92C ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
11:03:28.0668 0x11d8 nvlddmkm - ok
11:03:28.0746 0x11d8 [ 17902FF6CAD1BA9B4E362CB7D7C9CBD6, D0A2B2D4CBF1D9A180E30280D2B5419C802F5B090D5C383352EC04265649B5CB ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys
11:03:28.0746 0x11d8 nvpciflt - ok
11:03:28.0793 0x11d8 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
11:03:28.0793 0x11d8 nvraid - ok
11:03:28.0871 0x11d8 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
11:03:28.0871 0x11d8 nvstor - ok
11:03:30.0200 0x11d8 [ 270BB71F24296AEB33920CCED516A25A, 3A90A6A3CF797CA0FB6939B741FAAACE466A1EE491C295B9EC234F8394B10F7A ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
11:03:30.0403 0x11d8 NvStreamSvc - ok
11:03:30.0512 0x11d8 [ A81B621DDD83D3D016C32E6C6D45C898, 6ECB12A21B64E80E90788342120D56B8FC185A8B748B814DF07BD34B113931A4 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
11:03:30.0528 0x11d8 nvsvc - ok
11:03:30.0668 0x11d8 [ 3F7FDF38D5F9E59B7ADF1C9E90CAEB1F, 997BEDC453394C0A3F30051F003557FE9719314B3948E2870D6B028E51C26C79 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:03:30.0700 0x11d8 nvUpdatusService - ok
11:03:30.0762 0x11d8 [ 220B120EF4C36B4A3E23FAEC91E2FCE3, 84F34F8CF0B7040F0C6DCF3AF70533E9E2D7CBA5E422CD21A7BF831135E42453 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
11:03:30.0778 0x11d8 nvvad_WaveExtensible - ok
11:03:30.0840 0x11d8 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
11:03:30.0840 0x11d8 nv_agp - ok
11:03:31.0012 0x11d8 [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:03:31.0043 0x11d8 ose64 - ok
11:03:31.0872 0x11d8 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:03:32.0028 0x11d8 osppsvc - ok
11:03:32.0247 0x11d8 [ AB1979984D04F122A1DAE528E36F4741, F45E10F75C763C05B1BDFA8607425A23DC385F2FC17E81B793F12332C18FF198 ] OverwolfUpdaterService C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
11:03:32.0247 0x11d8 OverwolfUpdaterService - ok
11:03:32.0372 0x11d8 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
11:03:32.0387 0x11d8 p2pimsvc - ok
11:03:32.0528 0x11d8 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
11:03:32.0559 0x11d8 p2psvc - ok
11:03:32.0637 0x11d8 [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys
11:03:32.0637 0x11d8 Parport - ok
11:03:32.0669 0x11d8 [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
11:03:32.0684 0x11d8 partmgr - ok
11:03:32.0700 0x11d8 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
11:03:32.0700 0x11d8 PcaSvc - ok
11:03:32.0778 0x11d8 [ 275AFE3FA35E8D78BE97695DF49817C6, 447CEBB16285AE073B4251D2DA71399306EF2DCB7F56286ABE2F0BD6C83EB489 ] pci C:\WINDOWS\system32\drivers\pci.sys
11:03:32.0794 0x11d8 pci - ok
11:03:32.0841 0x11d8 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
11:03:32.0841 0x11d8 pciide - ok
11:03:32.0856 0x11d8 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
11:03:32.0872 0x11d8 pcmcia - ok
11:03:32.0872 0x11d8 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
11:03:32.0872 0x11d8 pcw - ok
11:03:32.0934 0x11d8 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4, 83F32831B0727F18B56DC3CAF37E45A3523D2BBCD54D1421F0DE5A0179D8A404 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
11:03:32.0934 0x11d8 pdc - ok
11:03:33.0012 0x11d8 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
11:03:33.0028 0x11d8 PEAUTH - ok
11:03:33.0153 0x11d8 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
11:03:33.0169 0x11d8 PerfHost - ok
11:03:33.0325 0x11d8 [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla C:\WINDOWS\system32\pla.dll
11:03:33.0372 0x11d8 pla - ok
11:03:33.0434 0x11d8 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
11:03:33.0434 0x11d8 PlugPlay - ok
11:03:33.0497 0x11d8 [ A010F13D27C1033A8BE09D5FA9BF348B, 5536A233554C469F270046ADEE12A158F70E2D8BE776BAD0925235B015567D46 ] pneteth C:\WINDOWS\system32\DRIVERS\pneteth.sys
11:03:33.0497 0x11d8 pneteth - ok
11:03:33.0497 0x11d8 PnkBstrA - ok
11:03:33.0591 0x11d8 [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
11:03:33.0606 0x11d8 PNRPAutoReg - ok
11:03:33.0653 0x11d8 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
11:03:33.0653 0x11d8 PNRPsvc - ok
11:03:33.0731 0x11d8 [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
11:03:33.0747 0x11d8 PolicyAgent - ok
11:03:33.0809 0x11d8 [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power C:\WINDOWS\system32\umpo.dll
11:03:33.0825 0x11d8 Power - ok
11:03:33.0872 0x11d8 [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:03:33.0872 0x11d8 PptpMiniport - ok
11:03:34.0372 0x11d8 [ B7DB57A000D46D4DE75BC0C563E58072, 8183EB09DC4D44DFF027CA0AAA8C09921A14F088C1BC427B6ACA42340AAF69E6 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
11:03:34.0434 0x11d8 PrintNotify - ok
11:03:34.0544 0x11d8 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys
11:03:34.0544 0x11d8 Processor - ok
11:03:34.0638 0x11d8 [ B2A890D96C05E33FDD2BF3F3D4D0DF92, 3A29E17424429A5654D906E420D938148F09F57457356EFA72DA003B73F2D81E ] ProfSvc C:\WINDOWS\system32\profsvc.dll
11:03:34.0638 0x11d8 ProfSvc - ok
11:03:34.0731 0x11d8 [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
11:03:34.0731 0x11d8 Psched - ok
11:03:34.0825 0x11d8 [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE C:\WINDOWS\system32\qwave.dll
11:03:34.0825 0x11d8 QWAVE - ok
11:03:34.0841 0x11d8 [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
11:03:34.0841 0x11d8 QWAVEdrv - ok
11:03:34.0872 0x11d8 [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:03:34.0872 0x11d8 RasAcd - ok
11:03:34.0919 0x11d8 [ 55FE43112F61836D0581D615C72AA113, 35665E09BD74BD078A0BC49BF98102B5F3679A3FA2AC25FB629D448652D9938F ] RasAgileVpn C:\WINDOWS\system32\DRIVERS\AgileVpn.sys
11:03:34.0919 0x11d8 RasAgileVpn - ok
11:03:34.0981 0x11d8 [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto C:\WINDOWS\System32\rasauto.dll
11:03:34.0981 0x11d8 RasAuto - ok
11:03:35.0013 0x11d8 [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:03:35.0013 0x11d8 Rasl2tp - ok
11:03:35.0122 0x11d8 [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan C:\WINDOWS\System32\rasmans.dll
11:03:35.0153 0x11d8 RasMan - ok
11:03:35.0185 0x11d8 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:03:35.0185 0x11d8 RasPppoe - ok
11:03:35.0200 0x11d8 [ 2B0F1677CDD08967005F34488559BC6F, FFF168EBD171C0B85A448AD1A04F66534E889AE1DC128F68EA3F35D5996C8D39 ] RasSstp C:\WINDOWS\system32\DRIVERS\rassstp.sys
11:03:35.0200 0x11d8 RasSstp - ok
11:03:35.0310 0x11d8 [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:03:35.0310 0x11d8 rdbss - ok
11:03:35.0356 0x11d8 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
11:03:35.0356 0x11d8 rdpbus - ok
11:03:35.0419 0x11d8 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
11:03:35.0419 0x11d8 RDPDR - ok
11:03:35.0481 0x11d8 [ 858776908AF838E3790F3261B799CDA6, 5BE4658540382D1B2F46E503CE175D74E3870FE492B8B8F37C3CFB34FF8E2DA8 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
11:03:35.0481 0x11d8 RdpVideoMiniport - ok
11:03:35.0528 0x11d8 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
11:03:35.0528 0x11d8 rdyboost - ok
11:03:35.0778 0x11d8 [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
11:03:35.0778 0x11d8 ReFS - ok
11:03:35.0966 0x11d8 [ 73023176A5708728CAA341A63D5567A1, 47B529A6A8D4B348B5D5D0E253003C5181060664E98B309F777829BC074DC55C ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
11:03:35.0981 0x11d8 RegSrvc - ok
11:03:36.0028 0x11d8 [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
11:03:36.0028 0x11d8 RemoteAccess - ok
11:03:36.0091 0x11d8 [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
11:03:36.0091 0x11d8 RemoteRegistry - ok
11:03:36.0138 0x11d8 [ 0527EF6E23B9FAB37DDCBC479C6CFA28, C004CE600074AC434F8B24A3383F8C0ACFA5476D9E3B1493B40911C78B028D64 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
11:03:36.0153 0x11d8 RFCOMM - ok
11:03:36.0216 0x11d8 [ 83A6C2CAFE236652D1559640594A0EA8, 52360F17C9C70C9CEA3316560B40C4D89FD705ED7E6B6088C99FC54D4CC35EB5 ] rpcapd C:\Program Files (x86)\WinPcap\rpcapd.exe
11:03:36.0231 0x11d8 rpcapd - ok
11:03:36.0294 0x11d8 [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
11:03:36.0310 0x11d8 RpcEptMapper - ok
11:03:36.0356 0x11d8 [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator C:\WINDOWS\system32\locator.exe
11:03:36.0356 0x11d8 RpcLocator - ok
11:03:36.0481 0x11d8 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs C:\WINDOWS\system32\rpcss.dll
11:03:36.0497 0x11d8 RpcSs - ok
11:03:36.0560 0x11d8 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
11:03:36.0560 0x11d8 rspndr - ok
11:03:36.0950 0x11d8 [ D70FB1C2AA34C69EAA4C68198630B89C, D28C82AD6BA46C3714B73BB72497B0E24B35CC80B5E0BF238A13CEB5A2107076 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
11:03:37.0060 0x11d8 rtsuvc - ok
11:03:37.0122 0x11d8 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
11:03:37.0122 0x11d8 s3cap - ok
11:03:37.0185 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs C:\WINDOWS\system32\lsass.exe
11:03:37.0185 0x11d8 SamSs - ok
11:03:37.0279 0x11d8 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
11:03:37.0279 0x11d8 sbp2port - ok
11:03:37.0372 0x11d8 [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
11:03:37.0388 0x11d8 SCardSvr - ok
11:03:37.0419 0x11d8 [ 0E3B268357B750D93584981766FA0816, CCDFF71FF75D6E062952E677290CDC98C56BE921B2B9B6B2B388F07A8A5AEC1F ] SCDEmu C:\WINDOWS\system32\drivers\SCDEmu.sys
11:03:37.0435 0x11d8 SCDEmu - ok
11:03:37.0450 0x11d8 [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
11:03:37.0466 0x11d8 ScDeviceEnum - ok
11:03:37.0513 0x11d8 [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
11:03:37.0513 0x11d8 scfilter - ok
11:03:37.0638 0x11d8 [ A95838FFFAEAA7500263D491575F7E0C, FEB79ECAE6D9AB0C29D9AFE12F60502A8357B3A382C0FACF4C6DA4852B6ECFA4 ] Schedule C:\WINDOWS\system32\schedsvc.dll
11:03:37.0654 0x11d8 Schedule - ok
11:03:37.0732 0x11d8 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
11:03:37.0732 0x11d8 SCPolicySvc - ok
11:03:37.0794 0x11d8 [ 490B0B68BB938D5C628EC4A67277BE75, F1883EED0ECCE43B1AB3A1AF67BCE5AB44F42282D8774D5F5CA71494927A3B91 ] ScreamBAudioSvc C:\WINDOWS\system32\drivers\ScreamingBAudio64.sys
11:03:37.0794 0x11d8 ScreamBAudioSvc - ok
11:03:37.0857 0x11d8 [ FDEC5799BA499D18AFA3A540538866E7, 551EE0945FE4EC213FFF623E524500B57531EFEA2D76FA7ED1D2D605E7E2168F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
11:03:37.0872 0x11d8 sdbus - ok
11:03:37.0935 0x11d8 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
11:03:37.0935 0x11d8 sdstor - ok
11:03:38.0013 0x11d8 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
11:03:38.0013 0x11d8 secdrv - ok
11:03:38.0075 0x11d8 [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon C:\WINDOWS\system32\seclogon.dll
11:03:38.0075 0x11d8 seclogon - ok
11:03:38.0107 0x11d8 [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS C:\WINDOWS\System32\sens.dll
11:03:38.0138 0x11d8 SENS - ok
11:03:38.0185 0x11d8 [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
11:03:38.0185 0x11d8 SensrSvc - ok
11:03:38.0247 0x11d8 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
11:03:38.0247 0x11d8 SerCx - ok
11:03:38.0310 0x11d8 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
11:03:38.0310 0x11d8 SerCx2 - ok
11:03:38.0341 0x11d8 [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
11:03:38.0341 0x11d8 Serenum - ok
11:03:38.0388 0x11d8 [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys
11:03:38.0404 0x11d8 Serial - ok
11:03:38.0419 0x11d8 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
11:03:38.0435 0x11d8 sermouse - ok
11:03:38.0497 0x11d8 [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
11:03:38.0513 0x11d8 SessionEnv - ok
11:03:38.0544 0x11d8 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
11:03:38.0544 0x11d8 sfloppy - ok
11:03:38.0591 0x11d8 [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
11:03:38.0622 0x11d8 SharedAccess - ok
11:03:38.0732 0x11d8 [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
11:03:38.0747 0x11d8 ShellHWDetection - ok
11:03:38.0779 0x11d8 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
11:03:38.0779 0x11d8 SiSRaid2 - ok
11:03:38.0841 0x11d8 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
11:03:38.0841 0x11d8 SiSRaid4 - ok
11:03:38.0950 0x11d8 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
11:03:38.0950 0x11d8 SkypeUpdate - ok
11:03:39.0013 0x11d8 [ F31763D30E14B6B16B4AC8E27E7FCB72, 67FF06B8ECB170A539032FFA40640609E94A7130A5753F6E00DE94A6D0359B8B ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
11:03:39.0013 0x11d8 SmbDrvI - ok
11:03:39.0091 0x11d8 [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost C:\WINDOWS\System32\smphost.dll
11:03:39.0091 0x11d8 smphost - ok
11:03:39.0122 0x11d8 [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
11:03:39.0122 0x11d8 SNMPTRAP - ok
11:03:39.0169 0x11d8 [ 87765EF43C33BE342F4ACB0E3FBF89A6, 3C1DDED7F96F796702F1BC73D5CEE5251DD16011AA349FE4EE1D9C002E0171C6 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
11:03:39.0185 0x11d8 spaceport - ok
11:03:39.0216 0x11d8 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
11:03:39.0216 0x11d8 SpbCx - ok
11:03:39.0325 0x11d8 [ FE0CB40F36D3FCDD3A1B312EF72C38D5, 42EA50869752164764DFE8CE7E1C247BE8342A0C15F39158DC808E8A692C460F ] Spooler C:\WINDOWS\System32\spoolsv.exe
11:03:39.0341 0x11d8 Spooler - ok
11:03:40.0576 0x11d8 [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe
11:03:40.0654 0x11d8 sppsvc - ok
11:03:40.0748 0x11d8 [ 2B78788A1485F9B99A578A299DF42C02, A87183A9B13585C9E850437A45237105D39D7F3212ADB079D6AB430B67A59643 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
11:03:40.0748 0x11d8 srv - ok
11:03:40.0857 0x11d8 [ E62EAEF0BAC9DD61BF22D4A7F2F18571, 910D85FDDBAF0E003A0CA0C23D27615F1B7D6145FB9E3A1661E93498196B303A ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
11:03:40.0873 0x11d8 srv2 - ok
11:03:40.0966 0x11d8 [ 466BDC0006103F2547D308DD3CD64398, 334E0729B369C7F7CBB9878F423B53E05476D1288A8ECEB18240318ABF2370C1 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
11:03:40.0966 0x11d8 srvnet - ok
11:03:41.0091 0x11d8 [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
11:03:41.0107 0x11d8 SSDPSRV - ok
11:03:41.0169 0x11d8 [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
11:03:41.0169 0x11d8 SstpSvc - ok
11:03:41.0373 0x11d8 [ 706080AD43599D4AB04F1676A3A62CC1, BD9A645163501E2234CAB2B99DB297A634526786D2CDC55FE1C18F5019623E34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
11:03:41.0669 0x11d8 Steam Client Service - ok
11:03:41.0701 0x11d8 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
11:03:41.0716 0x11d8 stexstor - ok
11:03:41.0841 0x11d8 [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc C:\WINDOWS\System32\wiaservc.dll
11:03:41.0873 0x11d8 stisvc - ok
11:03:41.0888 0x11d8 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
11:03:41.0888 0x11d8 storahci - ok
11:03:41.0966 0x11d8 [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
11:03:41.0966 0x11d8 storflt - ok
11:03:42.0044 0x11d8 [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
11:03:42.0044 0x11d8 stornvme - ok
11:03:42.0138 0x11d8 [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc C:\WINDOWS\system32\storsvc.dll
11:03:42.0138 0x11d8 StorSvc - ok
11:03:42.0201 0x11d8 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
11:03:42.0201 0x11d8 storvsc - ok
11:03:42.0263 0x11d8 [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc C:\WINDOWS\system32\svsvc.dll
11:03:42.0263 0x11d8 svsvc - ok
11:03:42.0279 0x11d8 [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
11:03:42.0279 0x11d8 swenum - ok
11:03:42.0451 0x11d8 [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
11:03:42.0466 0x11d8 SwitchBoard - ok
11:03:42.0560 0x11d8 [ E3C92D60F6AD7763961D1E7628002844, A33EED7CB3EE0EF4890AAD095F989FCA7F44CA1055E03D3892AB543DEE74C9B6 ] swprv C:\WINDOWS\System32\swprv.dll
11:03:42.0576 0x11d8 swprv - ok
11:03:42.0701 0x11d8 [ B4EEA29C648A3153C4CD760EC70D0E21, 7737886F8A7EAEADDF6CBC3E3B56D8679ED879687A6293E6606B286EC240B246 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
11:03:42.0701 0x11d8 SynTP - ok
11:03:42.0795 0x11d8 [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain C:\WINDOWS\system32\sysmain.dll
11:03:42.0826 0x11d8 SysMain - ok
11:03:42.0857 0x11d8 [ D65B1C952AEB864C2BAC7A770B17ECCE, 3EFAAFFF73390D9CB660E0F42B305512396CF66ED06E4A20ED67E8722FB4355B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
11:03:42.0873 0x11d8 SystemEventsBroker - ok
11:03:42.0966 0x11d8 [ BEA3093F9E89F8C835A31DFC35B4F6D6, FD781C7A2A8538A8BC21F5F2BD3B622733661CF84D56328CF9791ECBAE304503 ] TabletFilter C:\WINDOWS\System32\drivers\TabletFilter.sys
11:03:42.0966 0x11d8 TabletFilter - ok
11:03:43.0045 0x11d8 [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
11:03:43.0045 0x11d8 TabletInputService - ok
11:03:23.0465 0x11d8 monitor - ok
11:03:23.0480 0x11d8 [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
11:03:23.0480 0x11d8 mouclass - ok
11:03:23.0527 0x11d8 [ 21B7ACEA1BB49C3371DD5427BF309D6A, 39055A4D9BC293BD5DE5519FC6B95E7345089B32027E1799FA642606E6298856 ] moufiltr C:\WINDOWS\System32\drivers\moufiltr.sys
11:03:23.0527 0x11d8 moufiltr - ok
11:03:23.0543 0x11d8 [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
11:03:23.0543 0x11d8 mouhid - ok
11:03:23.0558 0x11d8 [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
11:03:23.0558 0x11d8 mountmgr - ok
11:03:23.0605 0x11d8 [ AEE4E9CC59CDEB55B1ECB0E596E796BE, 674F6F38D86D238AFD6223E03A862F8B43DD8499FBC2D4B7A04E510EC5EACF3B ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:03:23.0605 0x11d8 MozillaMaintenance - ok
11:03:23.0636 0x11d8 [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
11:03:23.0636 0x11d8 mpsdrv - ok
11:03:23.0715 0x11d8 [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
11:03:23.0730 0x11d8 MpsSvc - ok
11:03:23.0777 0x11d8 [ 1D55DADC22D21883A2F80297F5A5AE48, B79DF4AFC2A9CBC54E74233596544D6E41C8CAA0516BD57CA695D051EC780265 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
11:03:23.0777 0x11d8 MRxDAV - ok
11:03:23.0824 0x11d8 [ C997E6A37BA8915224B3FB5024A34F69, 43E1B83072DF9E878151D276DDB6EB7B3801D72494C43E9B9ABECA4B2DCFD606 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:03:23.0824 0x11d8 mrxsmb - ok
11:03:23.0886 0x11d8 [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
11:03:23.0886 0x11d8 mrxsmb10 - ok
11:03:23.0933 0x11d8 [ AAF56E4E84D35411B4E446C445732DFE, 7AC41CAA0842AE4DA4EEF976202C58D7923DAA367F0D7E800D432323D5E7DE1A ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
11:03:23.0949 0x11d8 mrxsmb20 - ok
11:03:23.0965 0x11d8 [ 4E888019078AC363076A5433E89AA4F8, 3DEBDA290230B3E83F956C902C960E39463B7EFE86439199521356762769FD91 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys
11:03:23.0965 0x11d8 MsBridge - ok
11:03:24.0011 0x11d8 [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC C:\WINDOWS\System32\msdtc.exe
11:03:24.0011 0x11d8 MSDTC - ok
11:03:24.0027 0x11d8 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
11:03:24.0027 0x11d8 Msfs - ok
11:03:24.0043 0x11d8 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
11:03:24.0043 0x11d8 msgpiowin32 - ok
11:03:24.0058 0x11d8 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
11:03:24.0058 0x11d8 mshidkmdf - ok
11:03:24.0074 0x11d8 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
11:03:24.0074 0x11d8 mshidumdf - ok
11:03:24.0090 0x11d8 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
11:03:24.0090 0x11d8 msisadrv - ok
11:03:24.0136 0x11d8 [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
11:03:24.0136 0x11d8 MSiSCSI - ok
11:03:24.0136 0x11d8 msiserver - ok
11:03:24.0183 0x11d8 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:03:24.0183 0x11d8 MSKSSRV - ok
11:03:24.0199 0x11d8 [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys
11:03:24.0199 0x11d8 MsLldp - ok
11:03:24.0246 0x11d8 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:03:24.0246 0x11d8 MSPCLOCK - ok
11:03:24.0308 0x11d8 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
11:03:24.0308 0x11d8 MSPQM - ok
11:03:24.0371 0x11d8 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
11:03:24.0371 0x11d8 MsRPC - ok
11:03:24.0386 0x11d8 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
11:03:24.0386 0x11d8 mssmbios - ok
11:03:24.0418 0x11d8 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
11:03:24.0433 0x11d8 MSTEE - ok
11:03:24.0465 0x11d8 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
11:03:24.0465 0x11d8 MTConfig - ok
11:03:24.0496 0x11d8 [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys
11:03:24.0496 0x11d8 Mup - ok
11:03:24.0527 0x11d8 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
11:03:24.0527 0x11d8 mvumis - ok
11:03:24.0558 0x11d8 [ 91D84C98D8C500E4F207D9C241A1ED5D, 2F4AAC60CC2572BEDE16C760156A6CF7D59FA95AB636B3A12B1F6AE444CC222A ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
11:03:24.0574 0x11d8 MyWiFiDHCPDNS - ok
11:03:24.0699 0x11d8 [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent C:\WINDOWS\system32\qagentRT.dll
11:03:24.0699 0x11d8 napagent - ok
11:03:24.0793 0x11d8 [ 647C7652FA19F98CADF2BFDA2164BFEC, 711A4A06309393922A70D7FBE5684938CD634F5DED158D847BFADDD5ACF9E44C ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
11:03:24.0808 0x11d8 NativeWifiP - ok
11:03:24.0855 0x11d8 [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
11:03:24.0871 0x11d8 NcaSvc - ok
11:03:24.0887 0x11d8 [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService C:\WINDOWS\System32\ncbservice.dll
11:03:24.0887 0x11d8 NcbService - ok
11:03:24.0902 0x11d8 [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
11:03:24.0902 0x11d8 NcdAutoSetup - ok
11:03:25.0027 0x11d8 [ F21B77B4D74092A543807D3CEB711A88, 5C3C17A10E990070FAB317C0C5333DE768E408CAF43EC4FA9D18116C6EE3B3DC ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
11:03:25.0043 0x11d8 NDIS - ok
11:03:25.0105 0x11d8 [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys
11:03:25.0105 0x11d8 NdisCap - ok
11:03:25.0152 0x11d8 [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37, CCD99962917BBE256F64AE14CCC9FD12433C72B5DB98E0E57CA8F212A11B3C8F ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
11:03:25.0152 0x11d8 NdisImPlatform - ok
11:03:25.0199 0x11d8 [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:03:25.0199 0x11d8 NdisTapi - ok
11:03:25.0215 0x11d8 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:03:25.0215 0x11d8 Ndisuio - ok
11:03:25.0262 0x11d8 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
11:03:25.0262 0x11d8 NdisVirtualBus - ok
11:03:25.0340 0x11d8 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:03:25.0340 0x11d8 NdisWan - ok
11:03:25.0355 0x11d8 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:03:25.0355 0x11d8 NdisWanLegacy - ok
11:03:25.0371 0x11d8 [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
11:03:25.0371 0x11d8 NDProxy - ok
11:03:25.0387 0x11d8 [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
11:03:25.0402 0x11d8 Ndu - ok
11:03:25.0402 0x11d8 [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
11:03:25.0402 0x11d8 NetBIOS - ok
11:03:25.0433 0x11d8 [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
11:03:25.0433 0x11d8 NetBT - ok
11:03:25.0465 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon C:\WINDOWS\system32\lsass.exe
11:03:25.0465 0x11d8 Netlogon - ok
11:03:25.0558 0x11d8 [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman C:\WINDOWS\System32\netman.dll
11:03:25.0574 0x11d8 Netman - ok
11:03:25.0715 0x11d8 [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
11:03:25.0715 0x11d8 netprofm - ok
11:03:25.0949 0x11d8 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:03:26.0012 0x11d8 NetTcpPortSharing - ok
11:03:26.0059 0x11d8 [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc C:\WINDOWS\system32\DRIVERS\netvsc63.sys
11:03:26.0059 0x11d8 netvsc - ok
11:03:26.0324 0x11d8 [ 688987077129A8823A8A77C41BE3ABDD, 1F7DF4C459CDB01EB895EE501762C64038DC62826D9EAA7C89448BCC078F4DB0 ] NETwNe64 C:\WINDOWS\system32\DRIVERS\NETwew00.sys
11:03:26.0371 0x11d8 NETwNe64 - ok
11:03:26.0449 0x11d8 [ 3A280F3B3C7A46E29C404ACD46ECBF5E, 81C3367A2A212DBCC65B8A0166FD092E3205AB31A146B4B737061335CEC51F9D ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
11:03:26.0465 0x11d8 NlaSvc - ok
11:03:26.0496 0x11d8 [ DE7FCC77F4A503AF4CA6A47D49B3713D, 4BFAA99393F635CD05D91A64DE73EDB5639412C129E049F0FE34F88517A10FC6 ] NPF C:\WINDOWS\system32\drivers\npf.sys
11:03:26.0512 0x11d8 NPF - ok
11:03:26.0559 0x11d8 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
11:03:26.0559 0x11d8 Npfs - ok
11:03:26.0605 0x11d8 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
11:03:26.0605 0x11d8 npsvctrig - ok
11:03:26.0637 0x11d8 [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi C:\WINDOWS\system32\nsisvc.dll
11:03:26.0637 0x11d8 nsi - ok
11:03:26.0699 0x11d8 [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
11:03:26.0715 0x11d8 nsiproxy - ok
11:03:26.0918 0x11d8 [ 1C80517BE6836A812F6A9B99B8321351, 7DBED4633820E201C9C242D961EF6F25BA2B1D5593BA60F707CC71A4014C2D4B ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
11:03:26.0949 0x11d8 Ntfs - ok
11:03:26.0965 0x11d8 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys
11:03:26.0965 0x11d8 Null - ok
11:03:28.0496 0x11d8 [ 5A81DCCDA60D41BAC26C00B650D8769D, 47B8D349F6AA01BB019920761BCC92583EF15057E19B7AEFECB512D4EF24B92C ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
11:03:28.0668 0x11d8 nvlddmkm - ok
11:03:28.0746 0x11d8 [ 17902FF6CAD1BA9B4E362CB7D7C9CBD6, D0A2B2D4CBF1D9A180E30280D2B5419C802F5B090D5C383352EC04265649B5CB ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys
11:03:28.0746 0x11d8 nvpciflt - ok
11:03:28.0793 0x11d8 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
11:03:28.0793 0x11d8 nvraid - ok
11:03:28.0871 0x11d8 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
11:03:28.0871 0x11d8 nvstor - ok
11:03:30.0200 0x11d8 [ 270BB71F24296AEB33920CCED516A25A, 3A90A6A3CF797CA0FB6939B741FAAACE466A1EE491C295B9EC234F8394B10F7A ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
11:03:30.0403 0x11d8 NvStreamSvc - ok
11:03:30.0512 0x11d8 [ A81B621DDD83D3D016C32E6C6D45C898, 6ECB12A21B64E80E90788342120D56B8FC185A8B748B814DF07BD34B113931A4 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
11:03:30.0528 0x11d8 nvsvc - ok
11:03:30.0668 0x11d8 [ 3F7FDF38D5F9E59B7ADF1C9E90CAEB1F, 997BEDC453394C0A3F30051F003557FE9719314B3948E2870D6B028E51C26C79 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:03:30.0700 0x11d8 nvUpdatusService - ok
11:03:30.0762 0x11d8 [ 220B120EF4C36B4A3E23FAEC91E2FCE3, 84F34F8CF0B7040F0C6DCF3AF70533E9E2D7CBA5E422CD21A7BF831135E42453 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
11:03:30.0778 0x11d8 nvvad_WaveExtensible - ok
11:03:30.0840 0x11d8 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
11:03:30.0840 0x11d8 nv_agp - ok
11:03:31.0012 0x11d8 [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:03:31.0043 0x11d8 ose64 - ok
11:03:31.0872 0x11d8 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:03:32.0028 0x11d8 osppsvc - ok
11:03:32.0247 0x11d8 [ AB1979984D04F122A1DAE528E36F4741, F45E10F75C763C05B1BDFA8607425A23DC385F2FC17E81B793F12332C18FF198 ] OverwolfUpdaterService C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
11:03:32.0247 0x11d8 OverwolfUpdaterService - ok
11:03:32.0372 0x11d8 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
11:03:32.0387 0x11d8 p2pimsvc - ok
11:03:32.0528 0x11d8 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
11:03:32.0559 0x11d8 p2psvc - ok
11:03:32.0637 0x11d8 [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys
11:03:32.0637 0x11d8 Parport - ok
11:03:32.0669 0x11d8 [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
11:03:32.0684 0x11d8 partmgr - ok
11:03:32.0700 0x11d8 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
11:03:32.0700 0x11d8 PcaSvc - ok
11:03:32.0778 0x11d8 [ 275AFE3FA35E8D78BE97695DF49817C6, 447CEBB16285AE073B4251D2DA71399306EF2DCB7F56286ABE2F0BD6C83EB489 ] pci C:\WINDOWS\system32\drivers\pci.sys
11:03:32.0794 0x11d8 pci - ok
11:03:32.0841 0x11d8 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
11:03:32.0841 0x11d8 pciide - ok
11:03:32.0856 0x11d8 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
11:03:32.0872 0x11d8 pcmcia - ok
11:03:32.0872 0x11d8 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
11:03:32.0872 0x11d8 pcw - ok
11:03:32.0934 0x11d8 [ B9D968D8E2B0F9C6301CEB39CFC9B9E4, 83F32831B0727F18B56DC3CAF37E45A3523D2BBCD54D1421F0DE5A0179D8A404 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
11:03:32.0934 0x11d8 pdc - ok
11:03:33.0012 0x11d8 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
11:03:33.0028 0x11d8 PEAUTH - ok
11:03:33.0153 0x11d8 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
11:03:33.0169 0x11d8 PerfHost - ok
11:03:33.0325 0x11d8 [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla C:\WINDOWS\system32\pla.dll
11:03:33.0372 0x11d8 pla - ok
11:03:33.0434 0x11d8 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
11:03:33.0434 0x11d8 PlugPlay - ok
11:03:33.0497 0x11d8 [ A010F13D27C1033A8BE09D5FA9BF348B, 5536A233554C469F270046ADEE12A158F70E2D8BE776BAD0925235B015567D46 ] pneteth C:\WINDOWS\system32\DRIVERS\pneteth.sys
11:03:33.0497 0x11d8 pneteth - ok
11:03:33.0497 0x11d8 PnkBstrA - ok
11:03:33.0591 0x11d8 [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
11:03:33.0606 0x11d8 PNRPAutoReg - ok
11:03:33.0653 0x11d8 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
11:03:33.0653 0x11d8 PNRPsvc - ok
11:03:33.0731 0x11d8 [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
11:03:33.0747 0x11d8 PolicyAgent - ok
11:03:33.0809 0x11d8 [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power C:\WINDOWS\system32\umpo.dll
11:03:33.0825 0x11d8 Power - ok
11:03:33.0872 0x11d8 [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:03:33.0872 0x11d8 PptpMiniport - ok
11:03:34.0372 0x11d8 [ B7DB57A000D46D4DE75BC0C563E58072, 8183EB09DC4D44DFF027CA0AAA8C09921A14F088C1BC427B6ACA42340AAF69E6 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
11:03:34.0434 0x11d8 PrintNotify - ok
11:03:34.0544 0x11d8 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys
11:03:34.0544 0x11d8 Processor - ok
11:03:34.0638 0x11d8 [ B2A890D96C05E33FDD2BF3F3D4D0DF92, 3A29E17424429A5654D906E420D938148F09F57457356EFA72DA003B73F2D81E ] ProfSvc C:\WINDOWS\system32\profsvc.dll
11:03:34.0638 0x11d8 ProfSvc - ok
11:03:34.0731 0x11d8 [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys
11:03:34.0731 0x11d8 Psched - ok
11:03:34.0825 0x11d8 [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE C:\WINDOWS\system32\qwave.dll
11:03:34.0825 0x11d8 QWAVE - ok
11:03:34.0841 0x11d8 [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
11:03:34.0841 0x11d8 QWAVEdrv - ok
11:03:34.0872 0x11d8 [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:03:34.0872 0x11d8 RasAcd - ok
11:03:34.0919 0x11d8 [ 55FE43112F61836D0581D615C72AA113, 35665E09BD74BD078A0BC49BF98102B5F3679A3FA2AC25FB629D448652D9938F ] RasAgileVpn C:\WINDOWS\system32\DRIVERS\AgileVpn.sys
11:03:34.0919 0x11d8 RasAgileVpn - ok
11:03:34.0981 0x11d8 [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto C:\WINDOWS\System32\rasauto.dll
11:03:34.0981 0x11d8 RasAuto - ok
11:03:35.0013 0x11d8 [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:03:35.0013 0x11d8 Rasl2tp - ok
11:03:35.0122 0x11d8 [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan C:\WINDOWS\System32\rasmans.dll
11:03:35.0153 0x11d8 RasMan - ok
11:03:35.0185 0x11d8 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:03:35.0185 0x11d8 RasPppoe - ok
11:03:35.0200 0x11d8 [ 2B0F1677CDD08967005F34488559BC6F, FFF168EBD171C0B85A448AD1A04F66534E889AE1DC128F68EA3F35D5996C8D39 ] RasSstp C:\WINDOWS\system32\DRIVERS\rassstp.sys
11:03:35.0200 0x11d8 RasSstp - ok
11:03:35.0310 0x11d8 [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:03:35.0310 0x11d8 rdbss - ok
11:03:35.0356 0x11d8 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
11:03:35.0356 0x11d8 rdpbus - ok
11:03:35.0419 0x11d8 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
11:03:35.0419 0x11d8 RDPDR - ok
11:03:35.0481 0x11d8 [ 858776908AF838E3790F3261B799CDA6, 5BE4658540382D1B2F46E503CE175D74E3870FE492B8B8F37C3CFB34FF8E2DA8 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
11:03:35.0481 0x11d8 RdpVideoMiniport - ok
11:03:35.0528 0x11d8 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
11:03:35.0528 0x11d8 rdyboost - ok
11:03:35.0778 0x11d8 [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys
11:03:35.0778 0x11d8 ReFS - ok
11:03:35.0966 0x11d8 [ 73023176A5708728CAA341A63D5567A1, 47B529A6A8D4B348B5D5D0E253003C5181060664E98B309F777829BC074DC55C ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
11:03:35.0981 0x11d8 RegSrvc - ok
11:03:36.0028 0x11d8 [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
11:03:36.0028 0x11d8 RemoteAccess - ok
11:03:36.0091 0x11d8 [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
11:03:36.0091 0x11d8 RemoteRegistry - ok
11:03:36.0138 0x11d8 [ 0527EF6E23B9FAB37DDCBC479C6CFA28, C004CE600074AC434F8B24A3383F8C0ACFA5476D9E3B1493B40911C78B028D64 ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
11:03:36.0153 0x11d8 RFCOMM - ok
11:03:36.0216 0x11d8 [ 83A6C2CAFE236652D1559640594A0EA8, 52360F17C9C70C9CEA3316560B40C4D89FD705ED7E6B6088C99FC54D4CC35EB5 ] rpcapd C:\Program Files (x86)\WinPcap\rpcapd.exe
11:03:36.0231 0x11d8 rpcapd - ok
11:03:36.0294 0x11d8 [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
11:03:36.0310 0x11d8 RpcEptMapper - ok
11:03:36.0356 0x11d8 [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator C:\WINDOWS\system32\locator.exe
11:03:36.0356 0x11d8 RpcLocator - ok
11:03:36.0481 0x11d8 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs C:\WINDOWS\system32\rpcss.dll
11:03:36.0497 0x11d8 RpcSs - ok
11:03:36.0560 0x11d8 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
11:03:36.0560 0x11d8 rspndr - ok
11:03:36.0950 0x11d8 [ D70FB1C2AA34C69EAA4C68198630B89C, D28C82AD6BA46C3714B73BB72497B0E24B35CC80B5E0BF238A13CEB5A2107076 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
11:03:37.0060 0x11d8 rtsuvc - ok
11:03:37.0122 0x11d8 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
11:03:37.0122 0x11d8 s3cap - ok
11:03:37.0185 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs C:\WINDOWS\system32\lsass.exe
11:03:37.0185 0x11d8 SamSs - ok
11:03:37.0279 0x11d8 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
11:03:37.0279 0x11d8 sbp2port - ok
11:03:37.0372 0x11d8 [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
11:03:37.0388 0x11d8 SCardSvr - ok
11:03:37.0419 0x11d8 [ 0E3B268357B750D93584981766FA0816, CCDFF71FF75D6E062952E677290CDC98C56BE921B2B9B6B2B388F07A8A5AEC1F ] SCDEmu C:\WINDOWS\system32\drivers\SCDEmu.sys
11:03:37.0435 0x11d8 SCDEmu - ok
11:03:37.0450 0x11d8 [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
11:03:37.0466 0x11d8 ScDeviceEnum - ok
11:03:37.0513 0x11d8 [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
11:03:37.0513 0x11d8 scfilter - ok
11:03:37.0638 0x11d8 [ A95838FFFAEAA7500263D491575F7E0C, FEB79ECAE6D9AB0C29D9AFE12F60502A8357B3A382C0FACF4C6DA4852B6ECFA4 ] Schedule C:\WINDOWS\system32\schedsvc.dll
11:03:37.0654 0x11d8 Schedule - ok
11:03:37.0732 0x11d8 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
11:03:37.0732 0x11d8 SCPolicySvc - ok
11:03:37.0794 0x11d8 [ 490B0B68BB938D5C628EC4A67277BE75, F1883EED0ECCE43B1AB3A1AF67BCE5AB44F42282D8774D5F5CA71494927A3B91 ] ScreamBAudioSvc C:\WINDOWS\system32\drivers\ScreamingBAudio64.sys
11:03:37.0794 0x11d8 ScreamBAudioSvc - ok
11:03:37.0857 0x11d8 [ FDEC5799BA499D18AFA3A540538866E7, 551EE0945FE4EC213FFF623E524500B57531EFEA2D76FA7ED1D2D605E7E2168F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
11:03:37.0872 0x11d8 sdbus - ok
11:03:37.0935 0x11d8 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
11:03:37.0935 0x11d8 sdstor - ok
11:03:38.0013 0x11d8 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys
11:03:38.0013 0x11d8 secdrv - ok
11:03:38.0075 0x11d8 [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon C:\WINDOWS\system32\seclogon.dll
11:03:38.0075 0x11d8 seclogon - ok
11:03:38.0107 0x11d8 [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS C:\WINDOWS\System32\sens.dll
11:03:38.0138 0x11d8 SENS - ok
11:03:38.0185 0x11d8 [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
11:03:38.0185 0x11d8 SensrSvc - ok
11:03:38.0247 0x11d8 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
11:03:38.0247 0x11d8 SerCx - ok
11:03:38.0310 0x11d8 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
11:03:38.0310 0x11d8 SerCx2 - ok
11:03:38.0341 0x11d8 [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
11:03:38.0341 0x11d8 Serenum - ok
11:03:38.0388 0x11d8 [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys
11:03:38.0404 0x11d8 Serial - ok
11:03:38.0419 0x11d8 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
11:03:38.0435 0x11d8 sermouse - ok
11:03:38.0497 0x11d8 [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
11:03:38.0513 0x11d8 SessionEnv - ok
11:03:38.0544 0x11d8 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
11:03:38.0544 0x11d8 sfloppy - ok
11:03:38.0591 0x11d8 [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
11:03:38.0622 0x11d8 SharedAccess - ok
11:03:38.0732 0x11d8 [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
11:03:38.0747 0x11d8 ShellHWDetection - ok
11:03:38.0779 0x11d8 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
11:03:38.0779 0x11d8 SiSRaid2 - ok
11:03:38.0841 0x11d8 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
11:03:38.0841 0x11d8 SiSRaid4 - ok
11:03:38.0950 0x11d8 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
11:03:38.0950 0x11d8 SkypeUpdate - ok
11:03:39.0013 0x11d8 [ F31763D30E14B6B16B4AC8E27E7FCB72, 67FF06B8ECB170A539032FFA40640609E94A7130A5753F6E00DE94A6D0359B8B ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
11:03:39.0013 0x11d8 SmbDrvI - ok
11:03:39.0091 0x11d8 [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost C:\WINDOWS\System32\smphost.dll
11:03:39.0091 0x11d8 smphost - ok
11:03:39.0122 0x11d8 [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
11:03:39.0122 0x11d8 SNMPTRAP - ok
11:03:39.0169 0x11d8 [ 87765EF43C33BE342F4ACB0E3FBF89A6, 3C1DDED7F96F796702F1BC73D5CEE5251DD16011AA349FE4EE1D9C002E0171C6 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
11:03:39.0185 0x11d8 spaceport - ok
11:03:39.0216 0x11d8 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
11:03:39.0216 0x11d8 SpbCx - ok
11:03:39.0325 0x11d8 [ FE0CB40F36D3FCDD3A1B312EF72C38D5, 42EA50869752164764DFE8CE7E1C247BE8342A0C15F39158DC808E8A692C460F ] Spooler C:\WINDOWS\System32\spoolsv.exe
11:03:39.0341 0x11d8 Spooler - ok
11:03:40.0576 0x11d8 [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe
11:03:40.0654 0x11d8 sppsvc - ok
11:03:40.0748 0x11d8 [ 2B78788A1485F9B99A578A299DF42C02, A87183A9B13585C9E850437A45237105D39D7F3212ADB079D6AB430B67A59643 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
11:03:40.0748 0x11d8 srv - ok
11:03:40.0857 0x11d8 [ E62EAEF0BAC9DD61BF22D4A7F2F18571, 910D85FDDBAF0E003A0CA0C23D27615F1B7D6145FB9E3A1661E93498196B303A ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
11:03:40.0873 0x11d8 srv2 - ok
11:03:40.0966 0x11d8 [ 466BDC0006103F2547D308DD3CD64398, 334E0729B369C7F7CBB9878F423B53E05476D1288A8ECEB18240318ABF2370C1 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
11:03:40.0966 0x11d8 srvnet - ok
11:03:41.0091 0x11d8 [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
11:03:41.0107 0x11d8 SSDPSRV - ok
11:03:41.0169 0x11d8 [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
11:03:41.0169 0x11d8 SstpSvc - ok
11:03:41.0373 0x11d8 [ 706080AD43599D4AB04F1676A3A62CC1, BD9A645163501E2234CAB2B99DB297A634526786D2CDC55FE1C18F5019623E34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
11:03:41.0669 0x11d8 Steam Client Service - ok
11:03:41.0701 0x11d8 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
11:03:41.0716 0x11d8 stexstor - ok
11:03:41.0841 0x11d8 [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc C:\WINDOWS\System32\wiaservc.dll
11:03:41.0873 0x11d8 stisvc - ok
11:03:41.0888 0x11d8 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
11:03:41.0888 0x11d8 storahci - ok
11:03:41.0966 0x11d8 [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
11:03:41.0966 0x11d8 storflt - ok
11:03:42.0044 0x11d8 [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
11:03:42.0044 0x11d8 stornvme - ok
11:03:42.0138 0x11d8 [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc C:\WINDOWS\system32\storsvc.dll
11:03:42.0138 0x11d8 StorSvc - ok
11:03:42.0201 0x11d8 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
11:03:42.0201 0x11d8 storvsc - ok
11:03:42.0263 0x11d8 [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc C:\WINDOWS\system32\svsvc.dll
11:03:42.0263 0x11d8 svsvc - ok
11:03:42.0279 0x11d8 [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
11:03:42.0279 0x11d8 swenum - ok
11:03:42.0451 0x11d8 [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
11:03:42.0466 0x11d8 SwitchBoard - ok
11:03:42.0560 0x11d8 [ E3C92D60F6AD7763961D1E7628002844, A33EED7CB3EE0EF4890AAD095F989FCA7F44CA1055E03D3892AB543DEE74C9B6 ] swprv C:\WINDOWS\System32\swprv.dll
11:03:42.0576 0x11d8 swprv - ok
11:03:42.0701 0x11d8 [ B4EEA29C648A3153C4CD760EC70D0E21, 7737886F8A7EAEADDF6CBC3E3B56D8679ED879687A6293E6606B286EC240B246 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
11:03:42.0701 0x11d8 SynTP - ok
11:03:42.0795 0x11d8 [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain C:\WINDOWS\system32\sysmain.dll
11:03:42.0826 0x11d8 SysMain - ok
11:03:42.0857 0x11d8 [ D65B1C952AEB864C2BAC7A770B17ECCE, 3EFAAFFF73390D9CB660E0F42B305512396CF66ED06E4A20ED67E8722FB4355B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
11:03:42.0873 0x11d8 SystemEventsBroker - ok
11:03:42.0966 0x11d8 [ BEA3093F9E89F8C835A31DFC35B4F6D6, FD781C7A2A8538A8BC21F5F2BD3B622733661CF84D56328CF9791ECBAE304503 ] TabletFilter C:\WINDOWS\System32\drivers\TabletFilter.sys
11:03:42.0966 0x11d8 TabletFilter - ok
11:03:43.0045 0x11d8 [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
11:03:43.0045 0x11d8 TabletInputService - ok
-
- Level 2
- Příspěvky: 169
- Registrován: duben 12
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
11:03:43.0076 0x11d8 [ F3D42D407F5152BD3F4FD797A80B3205, 36AB0CF1AF75477DEB5ED3A85A64287303FADAE3394864FE1055B36AE46B868B ] taphss6 C:\WINDOWS\system32\DRIVERS\taphss6.sys
11:03:43.0076 0x11d8 taphss6 - ok
11:03:43.0091 0x11d8 [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
11:03:43.0107 0x11d8 TapiSrv - ok
11:03:43.0201 0x11d8 [ FEEFE783D87C9063CDAC6DBDCF95F533, EBD00EEE90AC657823A88190BBBED6DA47AF597510C201F3392F4325069D2669 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
11:03:43.0232 0x11d8 Tcpip - ok
11:03:43.0295 0x11d8 [ FEEFE783D87C9063CDAC6DBDCF95F533, EBD00EEE90AC657823A88190BBBED6DA47AF597510C201F3392F4325069D2669 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:03:43.0341 0x11d8 TCPIP6 - ok
11:03:43.0404 0x11d8 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
11:03:43.0404 0x11d8 tcpipreg - ok
11:03:43.0467 0x11d8 [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
11:03:43.0467 0x11d8 tdx - ok
11:03:43.0513 0x11d8 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
11:03:43.0513 0x11d8 terminpt - ok
11:03:43.0592 0x11d8 [ 2C77831737491F4D684D315B95C62883, 90A2574A281F19646CFCDA5FDF40063220058290D2D5523AD91B7E709EC36D3D ] TermService C:\WINDOWS\System32\termsrv.dll
11:03:43.0607 0x11d8 TermService - ok
11:03:43.0623 0x11d8 [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes C:\WINDOWS\system32\themeservice.dll
11:03:43.0623 0x11d8 Themes - ok
11:03:43.0685 0x11d8 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
11:03:43.0685 0x11d8 THREADORDER - ok
11:03:43.0685 0x11d8 [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
11:03:43.0685 0x11d8 TimeBroker - ok
11:03:43.0748 0x11d8 [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\WINDOWS\system32\drivers\tpm.sys
11:03:43.0748 0x11d8 TPM - ok
11:03:43.0795 0x11d8 [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks C:\WINDOWS\System32\trkwks.dll
11:03:43.0795 0x11d8 TrkWks - ok
11:03:43.0888 0x11d8 [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
11:03:43.0888 0x11d8 TrustedInstaller - ok
11:03:44.0170 0x11d8 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
11:03:44.0170 0x11d8 TsUsbFlt - ok
11:03:44.0217 0x11d8 [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
11:03:44.0217 0x11d8 TsUsbGD - ok
11:03:44.0248 0x11d8 [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
11:03:44.0248 0x11d8 tunnel - ok
11:03:44.0279 0x11d8 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
11:03:44.0279 0x11d8 uagp35 - ok
11:03:44.0310 0x11d8 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
11:03:44.0310 0x11d8 UASPStor - ok
11:03:44.0326 0x11d8 [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
11:03:44.0342 0x11d8 UCX01000 - ok
11:03:44.0342 0x11d8 [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
11:03:44.0357 0x11d8 udfs - ok
11:03:44.0373 0x11d8 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
11:03:44.0373 0x11d8 UEFI - ok
11:03:44.0420 0x11d8 [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
11:03:44.0420 0x11d8 UI0Detect - ok
11:03:44.0435 0x11d8 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
11:03:44.0435 0x11d8 uliagpkx - ok
11:03:44.0467 0x11d8 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
11:03:44.0467 0x11d8 umbus - ok
11:03:44.0482 0x11d8 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
11:03:44.0482 0x11d8 UmPass - ok
11:03:44.0529 0x11d8 [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
11:03:44.0545 0x11d8 UmRdpService - ok
11:03:44.0638 0x11d8 [ E1A119AD21F5AFE22EB516C549306D3D, 48769D5E7A78B7A2C00F1F6798AC133CF3E0B2C76F71D3719BD741DDD8F2D229 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
11:03:44.0654 0x11d8 UNS - ok
11:03:44.0810 0x11d8 [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost C:\WINDOWS\System32\upnphost.dll
11:03:44.0810 0x11d8 upnphost - ok
11:03:44.0857 0x11d8 [ 8047D8AFA070A4C3B9FCBDBF77A84C45, D8B47716EE57391E3B9CBE3B35FF1F933F08E40B1C8C12EB5BE2438D9E409FF0 ] usb3Hub C:\WINDOWS\System32\drivers\usb3Hub.sys
11:03:44.0857 0x11d8 usb3Hub - ok
11:03:44.0888 0x11d8 [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys
11:03:44.0888 0x11d8 USBAAPL64 - ok
11:03:44.0967 0x11d8 [ DF355EB0199198728027962DCFCDE5FB, 9E158BD07389B4CFF99674716647FA3AABEECBD1A98EDF20E544E099A99A8768 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
11:03:44.0967 0x11d8 usbaudio - ok
11:03:45.0060 0x11d8 [ 433ECDE01A52691FA7ACA51C10C09B70, B896296A3F8EF2AF3AC5F0091B9848156608586F1E10A95D70700BAB51E8062A ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
11:03:45.0060 0x11d8 usbccgp - ok
11:03:45.0170 0x11d8 [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
11:03:45.0170 0x11d8 usbcir - ok
11:03:45.0263 0x11d8 [ 5477D6E27C7D266EF8C152B9A25ADE5E, FEE81677D284A78A0C0FB60F887A952CFC759AE78B01206D73F59FE33612C519 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
11:03:45.0263 0x11d8 usbehci - ok
11:03:45.0295 0x11d8 [ DF56C2C04EFA328D7A66B69007130266, 719316EB25A8C7B82C7941D1C5B964CC4EDA4A997732F481526DE7356F6FC0D8 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
11:03:45.0310 0x11d8 usbhub - ok
11:03:45.0467 0x11d8 [ CFC52C49BEFE4D70D87FFA900EAB9777, 09A2F5D8AB07C3AE3F2B092F4DD7AE5838736CDC263016F188B442B32EC928F8 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
11:03:45.0482 0x11d8 USBHUB3 - ok
11:03:45.0513 0x11d8 [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
11:03:45.0513 0x11d8 usbohci - ok
11:03:45.0592 0x11d8 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
11:03:45.0592 0x11d8 usbprint - ok
11:03:45.0685 0x11d8 [ EA23453240137F6773174E0D93F61A69, 579AD09FB428C2BB8B4055128620A7AADD1B606C1EA44B87A01D69A84232A5D9 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
11:03:45.0685 0x11d8 USBSTOR - ok
11:03:45.0717 0x11d8 [ BA4FA655E0FC577DB7436FC963932CE4, 3336FDECD4AEC6B316D4C0803E22A12719EBEDD1A9427C0DF5D3B263BE600EE6 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
11:03:45.0717 0x11d8 usbuhci - ok
11:03:45.0795 0x11d8 [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
11:03:45.0810 0x11d8 USBXHCI - ok
11:03:45.0810 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc C:\WINDOWS\system32\lsass.exe
11:03:45.0810 0x11d8 VaultSvc - ok
11:03:45.0873 0x11d8 [ 68EF855725F65A5C3C24F78D33388F30, FC419009627BF80CD806FD475ABA17D9F1A1907FDB58D75041307E70EACFEFEC ] VBoxDrv C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys
11:03:45.0873 0x11d8 VBoxDrv - ok
11:03:45.0920 0x11d8 [ 7FFC48B516856FD40B9F55687C8D70A2, F805CF5C709C01270C3AE7C82C3DDB21CF17C1B085CDF4452C0462EA39878693 ] VBoxNetAdp C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys
11:03:45.0935 0x11d8 VBoxNetAdp - ok
11:03:45.0967 0x11d8 [ F3CF9F56C2A8AEB50EB679DC76902BE0, 8E56107C4984E23FD8FF9428EBE0189F24CB9CD460E1110991011FD005E81C26 ] VBoxUSBMon C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys
11:03:45.0967 0x11d8 VBoxUSBMon - ok
11:03:45.0998 0x11d8 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
11:03:45.0998 0x11d8 vdrvroot - ok
11:03:46.0076 0x11d8 [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds C:\WINDOWS\System32\vds.exe
11:03:46.0107 0x11d8 vds - ok
11:03:46.0154 0x11d8 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
11:03:46.0154 0x11d8 VerifierExt - ok
11:03:46.0217 0x11d8 [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
11:03:46.0217 0x11d8 vhdmp - ok
11:03:46.0264 0x11d8 [ C2C95D62C90CA809240112B41C1765F2, FAFBA11CE7D273D28D1C27D01BEB4E62AB4ADA7517183F46E505D335E1117CA0 ] vhidmini C:\WINDOWS\System32\drivers\walvhid.sys
11:03:46.0264 0x11d8 vhidmini - ok
11:03:46.0326 0x11d8 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
11:03:46.0326 0x11d8 viaide - ok
11:03:46.0420 0x11d8 [ A942813405C51998DD2C2B86A08394D5, 7882BBBE2279945879B6136281CCD7035D173AD2D5EBFC17F6126B231C7EDF89 ] VMAuthdService C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
11:03:46.0436 0x11d8 VMAuthdService - ok
11:03:46.0436 0x11d8 [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
11:03:46.0451 0x11d8 vmbus - ok
11:03:46.0467 0x11d8 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
11:03:46.0467 0x11d8 VMBusHID - ok
11:03:46.0514 0x11d8 [ 6203C901DEFF10631AAD919B3BD1489B, 2CF99A56EEBB444A30736982647FBECC037D03F4EC3A7B06C147FF62876F438B ] vmci C:\WINDOWS\system32\drivers\vmci.sys
11:03:46.0514 0x11d8 vmci - ok
11:03:46.0576 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
11:03:46.0576 0x11d8 vmicguestinterface - ok
11:03:46.0592 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
11:03:46.0607 0x11d8 vmicheartbeat - ok
11:03:46.0623 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
11:03:46.0623 0x11d8 vmickvpexchange - ok
11:03:46.0639 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
11:03:46.0654 0x11d8 vmicrdv - ok
11:03:46.0670 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
11:03:46.0670 0x11d8 vmicshutdown - ok
11:03:46.0686 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
11:03:46.0686 0x11d8 vmictimesync - ok
11:03:46.0717 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
11:03:46.0732 0x11d8 vmicvss - ok
11:03:46.0748 0x11d8 [ AEF53B47E960F227BF7638A6A1A9D5C6, 21280177B404F27A5C9725AE50D6E8595CFFED59837741C9FEEF6013CE7C8CF6 ] VMnetAdapter C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
11:03:46.0748 0x11d8 VMnetAdapter - ok
11:03:46.0811 0x11d8 [ C234A1DC2F06A15B9210787F54253810, B1A25D9F84752294BEE643EB9E17CC0538E5C26B7C741E32F7AEFE6514B1F5C6 ] VMnetBridge C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
11:03:46.0811 0x11d8 VMnetBridge - ok
11:03:46.0811 0x11d8 [ 36EDBFE2C2405081620ADEF7B691ED89, 15483F80DD8197A1EAC1D7E8AB0BBE1624287A750F3E9CC9E42BF8F3E6A12D1B ] VMnetuserif C:\windows\system32\drivers\vmnetuserif.sys
11:03:46.0811 0x11d8 VMnetuserif - ok
11:03:46.0936 0x11d8 [ B55A8DADA1D825B73C811101B06E012F, BF529432E87FEE648C931FA6EFE7DCF9F87A7608265E0635D54B66EB57967A51 ] VMUSBArbService C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
11:03:46.0951 0x11d8 VMUSBArbService - ok
11:03:47.0326 0x11d8 [ 5661E99CC628C53530B7A500930DF984, 5A6E31A83BB96492A3A364128C90A5DD5440B4731411EB5767A838B9B525DB04 ] VMwareHostd C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
11:03:47.0748 0x11d8 VMwareHostd - ok
11:03:47.0811 0x11d8 [ 0E6ACC0257C6EFBB41E9FF4CD2A88B7F, B1ACAACDD6807039095C89CAEA6F2A3A2BCA0F95AB87F52B62D0DC87555F0DEC ] vmx86 C:\windows\system32\drivers\vmx86.sys
11:03:47.0811 0x11d8 vmx86 - ok
11:03:47.0826 0x11d8 [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
11:03:47.0826 0x11d8 volmgr - ok
11:03:47.0889 0x11d8 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
11:03:47.0889 0x11d8 volmgrx - ok
11:03:47.0951 0x11d8 [ 3595FBDF25F8BA6256072D103937D7D6, 547AA103804790E31F6E5658923627945948B48F36354EEA2FC0FE09098F9FD5 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
11:03:47.0951 0x11d8 volsnap - ok
11:03:47.0998 0x11d8 [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
11:03:47.0998 0x11d8 vpci - ok
11:03:48.0014 0x11d8 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
11:03:48.0014 0x11d8 vsmraid - ok
11:03:48.0045 0x11d8 [ EF1E48D431223F670CFFD6169B1A136F, 7DEF32CA45019DD79438B93626C4F31BB903093D605F18F71E055319BF4BB41E ] vsock C:\WINDOWS\system32\drivers\vsock.sys
11:03:48.0045 0x11d8 vsock - ok
11:03:48.0155 0x11d8 [ 4957B27219515B93A508B91068B87BF5, 5B6B37A57FC8F4FC8B119C013338292550C63AB5295A596D382D8DCF26D751A2 ] VSS C:\WINDOWS\system32\vssvc.exe
11:03:48.0186 0x11d8 VSS - ok
11:03:48.0342 0x11d8 [ 65EFAEC68FA234F36880533A79D7B1C1, CFACFC5F90F6C7910232209A133FB75FF112DEE68BB5EB2FF2F9B228BC93C55C ] vstor2-mntapi10-shared C:\WINDOWS\syswow64\drivers\vstor2-mntapi10-shared.sys
11:03:48.0342 0x11d8 vstor2-mntapi10-shared - ok
11:03:48.0389 0x11d8 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
11:03:48.0389 0x11d8 VSTXRAID - ok
11:03:48.0436 0x11d8 [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
11:03:48.0436 0x11d8 vwifibus - ok
11:03:48.0451 0x11d8 [ 6B26AD573CCDD5209DF4397438B76354, 2C8AC314EC471F6D8B0B12D49D621360A10DCADA7C52E73596730C954FF89FCF ] vwififlt C:\WINDOWS\system32\DRIVERS\vwififlt.sys
11:03:48.0451 0x11d8 vwififlt - ok
11:03:48.0467 0x11d8 [ 0B48E0DFB44EE475F4FD8A8EE599AF30, 28271D4CA0C642304CD8826A3D514F44E3391F9D6D07A1595BB30CE65E7E3494 ] vwifimp C:\WINDOWS\system32\DRIVERS\vwifimp.sys
11:03:48.0467 0x11d8 vwifimp - ok
11:03:48.0530 0x11d8 [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time C:\WINDOWS\system32\w32time.dll
11:03:48.0530 0x11d8 W32Time - ok
11:03:48.0545 0x11d8 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
11:03:48.0561 0x11d8 WacomPen - ok
11:03:48.0576 0x11d8 [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:03:48.0576 0x11d8 Wanarp - ok
11:03:48.0576 0x11d8 [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:03:48.0576 0x11d8 Wanarpv6 - ok
11:03:48.0670 0x11d8 [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine C:\WINDOWS\system32\wbengine.exe
11:03:48.0686 0x11d8 wbengine - ok
11:03:48.0733 0x11d8 [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
11:03:48.0748 0x11d8 WbioSrvc - ok
11:03:48.0811 0x11d8 [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
11:03:48.0811 0x11d8 Wcmsvc - ok
11:03:48.0889 0x11d8 [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
11:03:48.0889 0x11d8 wcncsvc - ok
11:03:48.0905 0x11d8 [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
11:03:48.0905 0x11d8 WcsPlugInService - ok
11:03:48.0951 0x11d8 [ F5D4FA3E1F4879C361FFF3855259D2C2, 48C60FE4AAB011E2250157506FF0624031BFA346F8F2F8C6DFDF6F3CAA4F3F42 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
11:03:48.0967 0x11d8 WdBoot - ok
11:03:49.0030 0x11d8 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
11:03:49.0045 0x11d8 Wdf01000 - ok
11:03:49.0061 0x11d8 [ 019CC610AD95FF47EAD7C08B7A683B96, BB9D42F8ED90ECA2E7B8C906E06A1EA859FAD9BD1B3492BB1E28C0D00004812A ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
11:03:49.0061 0x11d8 WdFilter - ok
11:03:49.0092 0x11d8 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
11:03:49.0092 0x11d8 WdiServiceHost - ok
11:03:49.0108 0x11d8 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
11:03:49.0108 0x11d8 WdiSystemHost - ok
11:03:49.0123 0x11d8 [ 6CC1BB8F6851A262E2E824F0E92D5EEF, 45A88A984179BBA38C1F4434C4D6C2823C1FE6AFBE8CB0F656DAE0092D1D5611 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
11:03:49.0123 0x11d8 WdNisDrv - ok
11:03:49.0217 0x11d8 WdNisSvc - ok
11:03:49.0248 0x11d8 [ 6588A957873326361AB1CAC4E76F8394, BE17880CEDCAE5ED3B983443E3777842646A3E48B661422A717656E11F6DBA94 ] WebClient C:\WINDOWS\System32\webclnt.dll
11:03:49.0248 0x11d8 WebClient - ok
11:03:49.0311 0x11d8 [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
11:03:49.0311 0x11d8 Wecsvc - ok
11:03:49.0327 0x11d8 [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
11:03:49.0342 0x11d8 WEPHOSTSVC - ok
11:03:49.0374 0x11d8 [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
11:03:49.0374 0x11d8 wercplsupport - ok
11:03:49.0420 0x11d8 [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
11:03:49.0436 0x11d8 WerSvc - ok
11:03:49.0483 0x11d8 [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
11:03:49.0483 0x11d8 WFPLWFS - ok
11:03:49.0498 0x11d8 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
11:03:49.0514 0x11d8 WiaRpc - ok
11:03:49.0545 0x11d8 [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
11:03:49.0545 0x11d8 WIMMount - ok
11:03:49.0561 0x11d8 WinDefend - ok
11:03:49.0624 0x11d8 [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
11:03:49.0639 0x11d8 WinHttpAutoProxySvc - ok
11:03:49.0717 0x11d8 [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
11:03:49.0717 0x11d8 Winmgmt - ok
11:03:49.0842 0x11d8 [ C8D6344BDE2691A196E61C0D3372EAB7, FF8EB79D8A7E298343C22B83276FF68293D08A9DA438BB22600BEFC4CA93A91D ] WinRM C:\WINDOWS\system32\WsmSvc.dll
11:03:49.0889 0x11d8 WinRM - ok
11:03:49.0952 0x11d8 [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUSB C:\WINDOWS\System32\drivers\WinUSB.sys
11:03:49.0952 0x11d8 WinUSB - ok
11:03:50.0030 0x11d8 [ 5A917027826D759CC3238C7D3CEC3438, A8FFA28B6D8A314692AA08788FC9E2E0F03D8AD1FCD662826ABA71DB39C3605A ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
11:03:50.0045 0x11d8 WlanSvc - ok
11:03:50.0124 0x11d8 [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
11:03:50.0155 0x11d8 wlidsvc - ok
11:03:50.0171 0x11d8 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
11:03:50.0171 0x11d8 WmiAcpi - ok
11:03:50.0217 0x11d8 [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
11:03:50.0217 0x11d8 wmiApSrv - ok
11:03:50.0264 0x11d8 WMPNetworkSvc - ok
11:03:50.0311 0x11d8 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys
11:03:50.0311 0x11d8 Wof - ok
11:03:50.0421 0x11d8 [ 65C65F3BD784158C456E721DDC9F0EA2, CBD3ADFD960456BD4B9557BF691E12D31153499549F5D3D08258BD62013952ED ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
11:03:50.0452 0x11d8 workfolderssvc - ok
11:03:50.0499 0x11d8 [ C1F564F324685C088ECAB1933576CF91, 022F0EC160352AB73AF7DA557D1A5798964231B82C556F22F4163E8B3E4088B2 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
11:03:50.0499 0x11d8 wpcfltr - ok
11:03:50.0546 0x11d8 [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
11:03:50.0546 0x11d8 WPCSvc - ok
11:03:50.0561 0x11d8 [ D27491CFCE452C154CECFA155AD0EBC8, 1F3F74C253E3B07DE7EFE27C34DD9AF08617C7B03BB44C2902F69BA9DA3F21F2 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
11:03:50.0561 0x11d8 WPDBusEnum - ok
11:03:50.0624 0x11d8 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
11:03:50.0624 0x11d8 WpdUpFltr - ok
11:03:50.0655 0x11d8 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
11:03:50.0655 0x11d8 ws2ifsl - ok
11:03:50.0717 0x11d8 [ 515583507D3828E827FF6352C9ACCEFA, D0C42020FA787804DA26FE07D67C8880FE027A230BD9EB6A706862D89181F2BE ] wscsvc C:\WINDOWS\System32\wscsvc.dll
11:03:50.0717 0x11d8 wscsvc - ok
11:03:50.0717 0x11d8 WSearch - ok
11:03:50.0967 0x11d8 [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService C:\WINDOWS\System32\WSService.dll
11:03:51.0014 0x11d8 WSService - ok
11:03:51.0061 0x11d8 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
11:03:51.0061 0x11d8 wsvd - ok
11:03:51.0061 0x11d8 WTService - ok
11:03:51.0186 0x11d8 [ 7E609FBF50774CC5A239420FE34EBB9C, 69B643B11717D51BC5D3F1CDE47D4C9E198AB8D9160C852DBE9B940E40AD8A57 ] wuauserv C:\WINDOWS\system32\wuaueng.dll
11:03:51.0233 0x11d8 wuauserv - ok
11:03:51.0280 0x11d8 [ 2FEAE33E9B2B56104596E1BA444405A9, 0A142F50E06F6224B9CB36B3CE62BE0B36DE8B8DB9F9E05D287DFB884CC7826E ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
11:03:51.0296 0x11d8 WudfPf - ok
11:03:51.0296 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
11:03:51.0296 0x11d8 WUDFRd - ok
11:03:51.0311 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFSensorLP C:\WINDOWS\System32\drivers\WUDFRd.sys
11:03:51.0311 0x11d8 WUDFSensorLP - ok
11:03:51.0358 0x11d8 [ BB73CBC65AABC4EA0A5C6A1474A0A743, D644B3C6A7202CADDADB3B68FE1B2A7C76B023FE58F667EED4D538C1F4A65D64 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
11:03:51.0358 0x11d8 wudfsvc - ok
11:03:51.0358 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
11:03:51.0358 0x11d8 WUDFWpdFs - ok
11:03:51.0374 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
11:03:51.0374 0x11d8 WUDFWpdMtp - ok
11:03:51.0421 0x11d8 [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
11:03:51.0421 0x11d8 WwanSvc - ok
11:03:51.0483 0x11d8 [ 24E57041608ED6A9D7FDAD0D9EC214E2, 895A16072F5EFFF57A7DCA21917540726BF816A2746EC47A066AAD363F69E5D7 ] XHCIPort C:\WINDOWS\System32\drivers\XHCIPort.sys
11:03:51.0483 0x11d8 XHCIPort - ok
11:03:51.0483 0x11d8 xhunter1 - ok
11:03:51.0764 0x11d8 [ 823302D012F67DA0E76EBA3C3A885AA5, 031471C4B67654817254D4E19F94705333FF53184E0803CF111F7DC15FD75F8C ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
11:03:51.0827 0x11d8 ZeroConfigService - ok
11:03:51.0889 0x11d8 [ CC42E4BB308C4C7487E95E8B7FC28996, 5AAA9B70FCCD71DCB12880BD6473DCB30A639B2A961751B1BB47AD3653EB9718 ] {3de9eb9c-a833-42cb-b66f-841b954aebef}Gw64 C:\WINDOWS\system32\drivers\{3de9eb9c-a833-42cb-b66f-841b954aebef}Gw64.sys
11:03:51.0889 0x11d8 {3de9eb9c-a833-42cb-b66f-841b954aebef}Gw64 - ok
11:03:51.0889 0x11d8 ================ Scan global ===============================
11:03:51.0967 0x11d8 [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\WINDOWS\system32\basesrv.dll
11:03:52.0030 0x11d8 [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\WINDOWS\system32\winsrv.dll
11:03:52.0077 0x11d8 [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\WINDOWS\system32\sxssrv.dll
11:03:52.0124 0x11d8 [ B4B610BBCB002EC478C6FD80CF915697, CE22B87A7C7C0D325CE66FB97E7318B4A41EE0BD14D902A410126A1EBBEAA6FB ] C:\WINDOWS\system32\services.exe
11:03:52.0139 0x11d8 [ Global ] - ok
11:03:52.0139 0x11d8 ================ Scan MBR ==================================
11:03:52.0139 0x11d8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
11:03:52.0155 0x11d8 \Device\Harddisk0\DR0 - ok
11:03:52.0155 0x11d8 ================ Scan VBR ==================================
11:03:52.0171 0x11d8 [ B0307A26A606F2B6B8ABB1373D4D8AE6 ] \Device\Harddisk0\DR0\Partition1
11:03:52.0233 0x11d8 \Device\Harddisk0\DR0\Partition1 - ok
11:03:52.0264 0x11d8 [ E111F0B36D7F16DA5AAF2DFB91164D1E ] \Device\Harddisk0\DR0\Partition2
11:03:52.0311 0x11d8 \Device\Harddisk0\DR0\Partition2 - ok
11:03:52.0311 0x11d8 [ 45985AF471F0FD1C6C4B76E38FD4B97F ] \Device\Harddisk0\DR0\Partition3
11:03:52.0389 0x11d8 \Device\Harddisk0\DR0\Partition3 - ok
11:03:52.0405 0x11d8 [ B7F2090610BF55279B3C0F0DFE2E3ACA ] \Device\Harddisk0\DR0\Partition4
11:03:52.0405 0x11d8 \Device\Harddisk0\DR0\Partition4 - ok
11:03:52.0421 0x11d8 [ E467F8CB10FBB837BD22CE01C11C1CC7 ] \Device\Harddisk0\DR0\Partition5
11:03:52.0483 0x11d8 \Device\Harddisk0\DR0\Partition5 - ok
11:03:52.0499 0x11d8 [ 39F4BE2F575B114FCB45F15608F68576 ] \Device\Harddisk0\DR0\Partition6
11:03:52.0499 0x11d8 \Device\Harddisk0\DR0\Partition6 - ok
11:03:52.0530 0x11d8 [ 6F3F2B6DDB51E712C0E04E5BF9386035 ] \Device\Harddisk0\DR0\Partition7
11:03:52.0530 0x11d8 \Device\Harddisk0\DR0\Partition7 - ok
11:03:52.0546 0x11d8 [ 9FB57EEDAE9A188415CA9B0A920148EB ] \Device\Harddisk0\DR0\Partition8
11:03:52.0546 0x11d8 \Device\Harddisk0\DR0\Partition8 - ok
11:03:52.0546 0x11d8 Waiting for KSN requests completion. In queue: 155
11:03:53.0561 0x11d8 Waiting for KSN requests completion. In queue: 155
11:03:54.0562 0x11d8 Waiting for KSN requests completion. In queue: 155
11:03:55.0624 0x11d8 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x61100 ( enabled : updated )
11:03:55.0640 0x11d8 Win FW state via NFP2: enabled
11:03:58.0015 0x11d8 ============================================================
11:03:58.0015 0x11d8 Scan finished
11:03:58.0015 0x11d8 ============================================================
11:03:58.0015 0x0d04 Detected object count: 0
11:03:58.0015 0x0d04 Actual detected object count: 0
11:03:43.0076 0x11d8 taphss6 - ok
11:03:43.0091 0x11d8 [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
11:03:43.0107 0x11d8 TapiSrv - ok
11:03:43.0201 0x11d8 [ FEEFE783D87C9063CDAC6DBDCF95F533, EBD00EEE90AC657823A88190BBBED6DA47AF597510C201F3392F4325069D2669 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
11:03:43.0232 0x11d8 Tcpip - ok
11:03:43.0295 0x11d8 [ FEEFE783D87C9063CDAC6DBDCF95F533, EBD00EEE90AC657823A88190BBBED6DA47AF597510C201F3392F4325069D2669 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:03:43.0341 0x11d8 TCPIP6 - ok
11:03:43.0404 0x11d8 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
11:03:43.0404 0x11d8 tcpipreg - ok
11:03:43.0467 0x11d8 [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
11:03:43.0467 0x11d8 tdx - ok
11:03:43.0513 0x11d8 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
11:03:43.0513 0x11d8 terminpt - ok
11:03:43.0592 0x11d8 [ 2C77831737491F4D684D315B95C62883, 90A2574A281F19646CFCDA5FDF40063220058290D2D5523AD91B7E709EC36D3D ] TermService C:\WINDOWS\System32\termsrv.dll
11:03:43.0607 0x11d8 TermService - ok
11:03:43.0623 0x11d8 [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes C:\WINDOWS\system32\themeservice.dll
11:03:43.0623 0x11d8 Themes - ok
11:03:43.0685 0x11d8 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER C:\WINDOWS\system32\mmcss.dll
11:03:43.0685 0x11d8 THREADORDER - ok
11:03:43.0685 0x11d8 [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
11:03:43.0685 0x11d8 TimeBroker - ok
11:03:43.0748 0x11d8 [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\WINDOWS\system32\drivers\tpm.sys
11:03:43.0748 0x11d8 TPM - ok
11:03:43.0795 0x11d8 [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks C:\WINDOWS\System32\trkwks.dll
11:03:43.0795 0x11d8 TrkWks - ok
11:03:43.0888 0x11d8 [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
11:03:43.0888 0x11d8 TrustedInstaller - ok
11:03:44.0170 0x11d8 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
11:03:44.0170 0x11d8 TsUsbFlt - ok
11:03:44.0217 0x11d8 [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
11:03:44.0217 0x11d8 TsUsbGD - ok
11:03:44.0248 0x11d8 [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys
11:03:44.0248 0x11d8 tunnel - ok
11:03:44.0279 0x11d8 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
11:03:44.0279 0x11d8 uagp35 - ok
11:03:44.0310 0x11d8 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
11:03:44.0310 0x11d8 UASPStor - ok
11:03:44.0326 0x11d8 [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys
11:03:44.0342 0x11d8 UCX01000 - ok
11:03:44.0342 0x11d8 [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
11:03:44.0357 0x11d8 udfs - ok
11:03:44.0373 0x11d8 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
11:03:44.0373 0x11d8 UEFI - ok
11:03:44.0420 0x11d8 [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
11:03:44.0420 0x11d8 UI0Detect - ok
11:03:44.0435 0x11d8 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
11:03:44.0435 0x11d8 uliagpkx - ok
11:03:44.0467 0x11d8 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
11:03:44.0467 0x11d8 umbus - ok
11:03:44.0482 0x11d8 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
11:03:44.0482 0x11d8 UmPass - ok
11:03:44.0529 0x11d8 [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
11:03:44.0545 0x11d8 UmRdpService - ok
11:03:44.0638 0x11d8 [ E1A119AD21F5AFE22EB516C549306D3D, 48769D5E7A78B7A2C00F1F6798AC133CF3E0B2C76F71D3719BD741DDD8F2D229 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
11:03:44.0654 0x11d8 UNS - ok
11:03:44.0810 0x11d8 [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost C:\WINDOWS\System32\upnphost.dll
11:03:44.0810 0x11d8 upnphost - ok
11:03:44.0857 0x11d8 [ 8047D8AFA070A4C3B9FCBDBF77A84C45, D8B47716EE57391E3B9CBE3B35FF1F933F08E40B1C8C12EB5BE2438D9E409FF0 ] usb3Hub C:\WINDOWS\System32\drivers\usb3Hub.sys
11:03:44.0857 0x11d8 usb3Hub - ok
11:03:44.0888 0x11d8 [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys
11:03:44.0888 0x11d8 USBAAPL64 - ok
11:03:44.0967 0x11d8 [ DF355EB0199198728027962DCFCDE5FB, 9E158BD07389B4CFF99674716647FA3AABEECBD1A98EDF20E544E099A99A8768 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
11:03:44.0967 0x11d8 usbaudio - ok
11:03:45.0060 0x11d8 [ 433ECDE01A52691FA7ACA51C10C09B70, B896296A3F8EF2AF3AC5F0091B9848156608586F1E10A95D70700BAB51E8062A ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
11:03:45.0060 0x11d8 usbccgp - ok
11:03:45.0170 0x11d8 [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
11:03:45.0170 0x11d8 usbcir - ok
11:03:45.0263 0x11d8 [ 5477D6E27C7D266EF8C152B9A25ADE5E, FEE81677D284A78A0C0FB60F887A952CFC759AE78B01206D73F59FE33612C519 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
11:03:45.0263 0x11d8 usbehci - ok
11:03:45.0295 0x11d8 [ DF56C2C04EFA328D7A66B69007130266, 719316EB25A8C7B82C7941D1C5B964CC4EDA4A997732F481526DE7356F6FC0D8 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
11:03:45.0310 0x11d8 usbhub - ok
11:03:45.0467 0x11d8 [ CFC52C49BEFE4D70D87FFA900EAB9777, 09A2F5D8AB07C3AE3F2B092F4DD7AE5838736CDC263016F188B442B32EC928F8 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
11:03:45.0482 0x11d8 USBHUB3 - ok
11:03:45.0513 0x11d8 [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
11:03:45.0513 0x11d8 usbohci - ok
11:03:45.0592 0x11d8 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
11:03:45.0592 0x11d8 usbprint - ok
11:03:45.0685 0x11d8 [ EA23453240137F6773174E0D93F61A69, 579AD09FB428C2BB8B4055128620A7AADD1B606C1EA44B87A01D69A84232A5D9 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
11:03:45.0685 0x11d8 USBSTOR - ok
11:03:45.0717 0x11d8 [ BA4FA655E0FC577DB7436FC963932CE4, 3336FDECD4AEC6B316D4C0803E22A12719EBEDD1A9427C0DF5D3B263BE600EE6 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
11:03:45.0717 0x11d8 usbuhci - ok
11:03:45.0795 0x11d8 [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
11:03:45.0810 0x11d8 USBXHCI - ok
11:03:45.0810 0x11d8 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc C:\WINDOWS\system32\lsass.exe
11:03:45.0810 0x11d8 VaultSvc - ok
11:03:45.0873 0x11d8 [ 68EF855725F65A5C3C24F78D33388F30, FC419009627BF80CD806FD475ABA17D9F1A1907FDB58D75041307E70EACFEFEC ] VBoxDrv C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys
11:03:45.0873 0x11d8 VBoxDrv - ok
11:03:45.0920 0x11d8 [ 7FFC48B516856FD40B9F55687C8D70A2, F805CF5C709C01270C3AE7C82C3DDB21CF17C1B085CDF4452C0462EA39878693 ] VBoxNetAdp C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys
11:03:45.0935 0x11d8 VBoxNetAdp - ok
11:03:45.0967 0x11d8 [ F3CF9F56C2A8AEB50EB679DC76902BE0, 8E56107C4984E23FD8FF9428EBE0189F24CB9CD460E1110991011FD005E81C26 ] VBoxUSBMon C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys
11:03:45.0967 0x11d8 VBoxUSBMon - ok
11:03:45.0998 0x11d8 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
11:03:45.0998 0x11d8 vdrvroot - ok
11:03:46.0076 0x11d8 [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds C:\WINDOWS\System32\vds.exe
11:03:46.0107 0x11d8 vds - ok
11:03:46.0154 0x11d8 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
11:03:46.0154 0x11d8 VerifierExt - ok
11:03:46.0217 0x11d8 [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
11:03:46.0217 0x11d8 vhdmp - ok
11:03:46.0264 0x11d8 [ C2C95D62C90CA809240112B41C1765F2, FAFBA11CE7D273D28D1C27D01BEB4E62AB4ADA7517183F46E505D335E1117CA0 ] vhidmini C:\WINDOWS\System32\drivers\walvhid.sys
11:03:46.0264 0x11d8 vhidmini - ok
11:03:46.0326 0x11d8 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys
11:03:46.0326 0x11d8 viaide - ok
11:03:46.0420 0x11d8 [ A942813405C51998DD2C2B86A08394D5, 7882BBBE2279945879B6136281CCD7035D173AD2D5EBFC17F6126B231C7EDF89 ] VMAuthdService C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
11:03:46.0436 0x11d8 VMAuthdService - ok
11:03:46.0436 0x11d8 [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
11:03:46.0451 0x11d8 vmbus - ok
11:03:46.0467 0x11d8 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
11:03:46.0467 0x11d8 VMBusHID - ok
11:03:46.0514 0x11d8 [ 6203C901DEFF10631AAD919B3BD1489B, 2CF99A56EEBB444A30736982647FBECC037D03F4EC3A7B06C147FF62876F438B ] vmci C:\WINDOWS\system32\drivers\vmci.sys
11:03:46.0514 0x11d8 vmci - ok
11:03:46.0576 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
11:03:46.0576 0x11d8 vmicguestinterface - ok
11:03:46.0592 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
11:03:46.0607 0x11d8 vmicheartbeat - ok
11:03:46.0623 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
11:03:46.0623 0x11d8 vmickvpexchange - ok
11:03:46.0639 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
11:03:46.0654 0x11d8 vmicrdv - ok
11:03:46.0670 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
11:03:46.0670 0x11d8 vmicshutdown - ok
11:03:46.0686 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
11:03:46.0686 0x11d8 vmictimesync - ok
11:03:46.0717 0x11d8 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss C:\WINDOWS\System32\ICSvc.dll
11:03:46.0732 0x11d8 vmicvss - ok
11:03:46.0748 0x11d8 [ AEF53B47E960F227BF7638A6A1A9D5C6, 21280177B404F27A5C9725AE50D6E8595CFFED59837741C9FEEF6013CE7C8CF6 ] VMnetAdapter C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys
11:03:46.0748 0x11d8 VMnetAdapter - ok
11:03:46.0811 0x11d8 [ C234A1DC2F06A15B9210787F54253810, B1A25D9F84752294BEE643EB9E17CC0538E5C26B7C741E32F7AEFE6514B1F5C6 ] VMnetBridge C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys
11:03:46.0811 0x11d8 VMnetBridge - ok
11:03:46.0811 0x11d8 [ 36EDBFE2C2405081620ADEF7B691ED89, 15483F80DD8197A1EAC1D7E8AB0BBE1624287A750F3E9CC9E42BF8F3E6A12D1B ] VMnetuserif C:\windows\system32\drivers\vmnetuserif.sys
11:03:46.0811 0x11d8 VMnetuserif - ok
11:03:46.0936 0x11d8 [ B55A8DADA1D825B73C811101B06E012F, BF529432E87FEE648C931FA6EFE7DCF9F87A7608265E0635D54B66EB57967A51 ] VMUSBArbService C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
11:03:46.0951 0x11d8 VMUSBArbService - ok
11:03:47.0326 0x11d8 [ 5661E99CC628C53530B7A500930DF984, 5A6E31A83BB96492A3A364128C90A5DD5440B4731411EB5767A838B9B525DB04 ] VMwareHostd C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
11:03:47.0748 0x11d8 VMwareHostd - ok
11:03:47.0811 0x11d8 [ 0E6ACC0257C6EFBB41E9FF4CD2A88B7F, B1ACAACDD6807039095C89CAEA6F2A3A2BCA0F95AB87F52B62D0DC87555F0DEC ] vmx86 C:\windows\system32\drivers\vmx86.sys
11:03:47.0811 0x11d8 vmx86 - ok
11:03:47.0826 0x11d8 [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
11:03:47.0826 0x11d8 volmgr - ok
11:03:47.0889 0x11d8 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
11:03:47.0889 0x11d8 volmgrx - ok
11:03:47.0951 0x11d8 [ 3595FBDF25F8BA6256072D103937D7D6, 547AA103804790E31F6E5658923627945948B48F36354EEA2FC0FE09098F9FD5 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
11:03:47.0951 0x11d8 volsnap - ok
11:03:47.0998 0x11d8 [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
11:03:47.0998 0x11d8 vpci - ok
11:03:48.0014 0x11d8 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
11:03:48.0014 0x11d8 vsmraid - ok
11:03:48.0045 0x11d8 [ EF1E48D431223F670CFFD6169B1A136F, 7DEF32CA45019DD79438B93626C4F31BB903093D605F18F71E055319BF4BB41E ] vsock C:\WINDOWS\system32\drivers\vsock.sys
11:03:48.0045 0x11d8 vsock - ok
11:03:48.0155 0x11d8 [ 4957B27219515B93A508B91068B87BF5, 5B6B37A57FC8F4FC8B119C013338292550C63AB5295A596D382D8DCF26D751A2 ] VSS C:\WINDOWS\system32\vssvc.exe
11:03:48.0186 0x11d8 VSS - ok
11:03:48.0342 0x11d8 [ 65EFAEC68FA234F36880533A79D7B1C1, CFACFC5F90F6C7910232209A133FB75FF112DEE68BB5EB2FF2F9B228BC93C55C ] vstor2-mntapi10-shared C:\WINDOWS\syswow64\drivers\vstor2-mntapi10-shared.sys
11:03:48.0342 0x11d8 vstor2-mntapi10-shared - ok
11:03:48.0389 0x11d8 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
11:03:48.0389 0x11d8 VSTXRAID - ok
11:03:48.0436 0x11d8 [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
11:03:48.0436 0x11d8 vwifibus - ok
11:03:48.0451 0x11d8 [ 6B26AD573CCDD5209DF4397438B76354, 2C8AC314EC471F6D8B0B12D49D621360A10DCADA7C52E73596730C954FF89FCF ] vwififlt C:\WINDOWS\system32\DRIVERS\vwififlt.sys
11:03:48.0451 0x11d8 vwififlt - ok
11:03:48.0467 0x11d8 [ 0B48E0DFB44EE475F4FD8A8EE599AF30, 28271D4CA0C642304CD8826A3D514F44E3391F9D6D07A1595BB30CE65E7E3494 ] vwifimp C:\WINDOWS\system32\DRIVERS\vwifimp.sys
11:03:48.0467 0x11d8 vwifimp - ok
11:03:48.0530 0x11d8 [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time C:\WINDOWS\system32\w32time.dll
11:03:48.0530 0x11d8 W32Time - ok
11:03:48.0545 0x11d8 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
11:03:48.0561 0x11d8 WacomPen - ok
11:03:48.0576 0x11d8 [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:03:48.0576 0x11d8 Wanarp - ok
11:03:48.0576 0x11d8 [ AFCD4054D61BD708B82991348ED1C763, EBDAC0E218F1DFC405DB3C8A2F014D20A17B0690EA381C750BED5C2AFCDFEBE3 ] Wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:03:48.0576 0x11d8 Wanarpv6 - ok
11:03:48.0670 0x11d8 [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine C:\WINDOWS\system32\wbengine.exe
11:03:48.0686 0x11d8 wbengine - ok
11:03:48.0733 0x11d8 [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
11:03:48.0748 0x11d8 WbioSrvc - ok
11:03:48.0811 0x11d8 [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
11:03:48.0811 0x11d8 Wcmsvc - ok
11:03:48.0889 0x11d8 [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
11:03:48.0889 0x11d8 wcncsvc - ok
11:03:48.0905 0x11d8 [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
11:03:48.0905 0x11d8 WcsPlugInService - ok
11:03:48.0951 0x11d8 [ F5D4FA3E1F4879C361FFF3855259D2C2, 48C60FE4AAB011E2250157506FF0624031BFA346F8F2F8C6DFDF6F3CAA4F3F42 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
11:03:48.0967 0x11d8 WdBoot - ok
11:03:49.0030 0x11d8 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
11:03:49.0045 0x11d8 Wdf01000 - ok
11:03:49.0061 0x11d8 [ 019CC610AD95FF47EAD7C08B7A683B96, BB9D42F8ED90ECA2E7B8C906E06A1EA859FAD9BD1B3492BB1E28C0D00004812A ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
11:03:49.0061 0x11d8 WdFilter - ok
11:03:49.0092 0x11d8 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
11:03:49.0092 0x11d8 WdiServiceHost - ok
11:03:49.0108 0x11d8 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
11:03:49.0108 0x11d8 WdiSystemHost - ok
11:03:49.0123 0x11d8 [ 6CC1BB8F6851A262E2E824F0E92D5EEF, 45A88A984179BBA38C1F4434C4D6C2823C1FE6AFBE8CB0F656DAE0092D1D5611 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
11:03:49.0123 0x11d8 WdNisDrv - ok
11:03:49.0217 0x11d8 WdNisSvc - ok
11:03:49.0248 0x11d8 [ 6588A957873326361AB1CAC4E76F8394, BE17880CEDCAE5ED3B983443E3777842646A3E48B661422A717656E11F6DBA94 ] WebClient C:\WINDOWS\System32\webclnt.dll
11:03:49.0248 0x11d8 WebClient - ok
11:03:49.0311 0x11d8 [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
11:03:49.0311 0x11d8 Wecsvc - ok
11:03:49.0327 0x11d8 [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
11:03:49.0342 0x11d8 WEPHOSTSVC - ok
11:03:49.0374 0x11d8 [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
11:03:49.0374 0x11d8 wercplsupport - ok
11:03:49.0420 0x11d8 [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
11:03:49.0436 0x11d8 WerSvc - ok
11:03:49.0483 0x11d8 [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
11:03:49.0483 0x11d8 WFPLWFS - ok
11:03:49.0498 0x11d8 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
11:03:49.0514 0x11d8 WiaRpc - ok
11:03:49.0545 0x11d8 [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
11:03:49.0545 0x11d8 WIMMount - ok
11:03:49.0561 0x11d8 WinDefend - ok
11:03:49.0624 0x11d8 [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
11:03:49.0639 0x11d8 WinHttpAutoProxySvc - ok
11:03:49.0717 0x11d8 [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
11:03:49.0717 0x11d8 Winmgmt - ok
11:03:49.0842 0x11d8 [ C8D6344BDE2691A196E61C0D3372EAB7, FF8EB79D8A7E298343C22B83276FF68293D08A9DA438BB22600BEFC4CA93A91D ] WinRM C:\WINDOWS\system32\WsmSvc.dll
11:03:49.0889 0x11d8 WinRM - ok
11:03:49.0952 0x11d8 [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUSB C:\WINDOWS\System32\drivers\WinUSB.sys
11:03:49.0952 0x11d8 WinUSB - ok
11:03:50.0030 0x11d8 [ 5A917027826D759CC3238C7D3CEC3438, A8FFA28B6D8A314692AA08788FC9E2E0F03D8AD1FCD662826ABA71DB39C3605A ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
11:03:50.0045 0x11d8 WlanSvc - ok
11:03:50.0124 0x11d8 [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
11:03:50.0155 0x11d8 wlidsvc - ok
11:03:50.0171 0x11d8 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
11:03:50.0171 0x11d8 WmiAcpi - ok
11:03:50.0217 0x11d8 [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
11:03:50.0217 0x11d8 wmiApSrv - ok
11:03:50.0264 0x11d8 WMPNetworkSvc - ok
11:03:50.0311 0x11d8 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys
11:03:50.0311 0x11d8 Wof - ok
11:03:50.0421 0x11d8 [ 65C65F3BD784158C456E721DDC9F0EA2, CBD3ADFD960456BD4B9557BF691E12D31153499549F5D3D08258BD62013952ED ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
11:03:50.0452 0x11d8 workfolderssvc - ok
11:03:50.0499 0x11d8 [ C1F564F324685C088ECAB1933576CF91, 022F0EC160352AB73AF7DA557D1A5798964231B82C556F22F4163E8B3E4088B2 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
11:03:50.0499 0x11d8 wpcfltr - ok
11:03:50.0546 0x11d8 [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll
11:03:50.0546 0x11d8 WPCSvc - ok
11:03:50.0561 0x11d8 [ D27491CFCE452C154CECFA155AD0EBC8, 1F3F74C253E3B07DE7EFE27C34DD9AF08617C7B03BB44C2902F69BA9DA3F21F2 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
11:03:50.0561 0x11d8 WPDBusEnum - ok
11:03:50.0624 0x11d8 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
11:03:50.0624 0x11d8 WpdUpFltr - ok
11:03:50.0655 0x11d8 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
11:03:50.0655 0x11d8 ws2ifsl - ok
11:03:50.0717 0x11d8 [ 515583507D3828E827FF6352C9ACCEFA, D0C42020FA787804DA26FE07D67C8880FE027A230BD9EB6A706862D89181F2BE ] wscsvc C:\WINDOWS\System32\wscsvc.dll
11:03:50.0717 0x11d8 wscsvc - ok
11:03:50.0717 0x11d8 WSearch - ok
11:03:50.0967 0x11d8 [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService C:\WINDOWS\System32\WSService.dll
11:03:51.0014 0x11d8 WSService - ok
11:03:51.0061 0x11d8 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
11:03:51.0061 0x11d8 wsvd - ok
11:03:51.0061 0x11d8 WTService - ok
11:03:51.0186 0x11d8 [ 7E609FBF50774CC5A239420FE34EBB9C, 69B643B11717D51BC5D3F1CDE47D4C9E198AB8D9160C852DBE9B940E40AD8A57 ] wuauserv C:\WINDOWS\system32\wuaueng.dll
11:03:51.0233 0x11d8 wuauserv - ok
11:03:51.0280 0x11d8 [ 2FEAE33E9B2B56104596E1BA444405A9, 0A142F50E06F6224B9CB36B3CE62BE0B36DE8B8DB9F9E05D287DFB884CC7826E ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
11:03:51.0296 0x11d8 WudfPf - ok
11:03:51.0296 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
11:03:51.0296 0x11d8 WUDFRd - ok
11:03:51.0311 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFSensorLP C:\WINDOWS\System32\drivers\WUDFRd.sys
11:03:51.0311 0x11d8 WUDFSensorLP - ok
11:03:51.0358 0x11d8 [ BB73CBC65AABC4EA0A5C6A1474A0A743, D644B3C6A7202CADDADB3B68FE1B2A7C76B023FE58F667EED4D538C1F4A65D64 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
11:03:51.0358 0x11d8 wudfsvc - ok
11:03:51.0358 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
11:03:51.0358 0x11d8 WUDFWpdFs - ok
11:03:51.0374 0x11d8 [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
11:03:51.0374 0x11d8 WUDFWpdMtp - ok
11:03:51.0421 0x11d8 [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
11:03:51.0421 0x11d8 WwanSvc - ok
11:03:51.0483 0x11d8 [ 24E57041608ED6A9D7FDAD0D9EC214E2, 895A16072F5EFFF57A7DCA21917540726BF816A2746EC47A066AAD363F69E5D7 ] XHCIPort C:\WINDOWS\System32\drivers\XHCIPort.sys
11:03:51.0483 0x11d8 XHCIPort - ok
11:03:51.0483 0x11d8 xhunter1 - ok
11:03:51.0764 0x11d8 [ 823302D012F67DA0E76EBA3C3A885AA5, 031471C4B67654817254D4E19F94705333FF53184E0803CF111F7DC15FD75F8C ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
11:03:51.0827 0x11d8 ZeroConfigService - ok
11:03:51.0889 0x11d8 [ CC42E4BB308C4C7487E95E8B7FC28996, 5AAA9B70FCCD71DCB12880BD6473DCB30A639B2A961751B1BB47AD3653EB9718 ] {3de9eb9c-a833-42cb-b66f-841b954aebef}Gw64 C:\WINDOWS\system32\drivers\{3de9eb9c-a833-42cb-b66f-841b954aebef}Gw64.sys
11:03:51.0889 0x11d8 {3de9eb9c-a833-42cb-b66f-841b954aebef}Gw64 - ok
11:03:51.0889 0x11d8 ================ Scan global ===============================
11:03:51.0967 0x11d8 [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\WINDOWS\system32\basesrv.dll
11:03:52.0030 0x11d8 [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\WINDOWS\system32\winsrv.dll
11:03:52.0077 0x11d8 [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\WINDOWS\system32\sxssrv.dll
11:03:52.0124 0x11d8 [ B4B610BBCB002EC478C6FD80CF915697, CE22B87A7C7C0D325CE66FB97E7318B4A41EE0BD14D902A410126A1EBBEAA6FB ] C:\WINDOWS\system32\services.exe
11:03:52.0139 0x11d8 [ Global ] - ok
11:03:52.0139 0x11d8 ================ Scan MBR ==================================
11:03:52.0139 0x11d8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
11:03:52.0155 0x11d8 \Device\Harddisk0\DR0 - ok
11:03:52.0155 0x11d8 ================ Scan VBR ==================================
11:03:52.0171 0x11d8 [ B0307A26A606F2B6B8ABB1373D4D8AE6 ] \Device\Harddisk0\DR0\Partition1
11:03:52.0233 0x11d8 \Device\Harddisk0\DR0\Partition1 - ok
11:03:52.0264 0x11d8 [ E111F0B36D7F16DA5AAF2DFB91164D1E ] \Device\Harddisk0\DR0\Partition2
11:03:52.0311 0x11d8 \Device\Harddisk0\DR0\Partition2 - ok
11:03:52.0311 0x11d8 [ 45985AF471F0FD1C6C4B76E38FD4B97F ] \Device\Harddisk0\DR0\Partition3
11:03:52.0389 0x11d8 \Device\Harddisk0\DR0\Partition3 - ok
11:03:52.0405 0x11d8 [ B7F2090610BF55279B3C0F0DFE2E3ACA ] \Device\Harddisk0\DR0\Partition4
11:03:52.0405 0x11d8 \Device\Harddisk0\DR0\Partition4 - ok
11:03:52.0421 0x11d8 [ E467F8CB10FBB837BD22CE01C11C1CC7 ] \Device\Harddisk0\DR0\Partition5
11:03:52.0483 0x11d8 \Device\Harddisk0\DR0\Partition5 - ok
11:03:52.0499 0x11d8 [ 39F4BE2F575B114FCB45F15608F68576 ] \Device\Harddisk0\DR0\Partition6
11:03:52.0499 0x11d8 \Device\Harddisk0\DR0\Partition6 - ok
11:03:52.0530 0x11d8 [ 6F3F2B6DDB51E712C0E04E5BF9386035 ] \Device\Harddisk0\DR0\Partition7
11:03:52.0530 0x11d8 \Device\Harddisk0\DR0\Partition7 - ok
11:03:52.0546 0x11d8 [ 9FB57EEDAE9A188415CA9B0A920148EB ] \Device\Harddisk0\DR0\Partition8
11:03:52.0546 0x11d8 \Device\Harddisk0\DR0\Partition8 - ok
11:03:52.0546 0x11d8 Waiting for KSN requests completion. In queue: 155
11:03:53.0561 0x11d8 Waiting for KSN requests completion. In queue: 155
11:03:54.0562 0x11d8 Waiting for KSN requests completion. In queue: 155
11:03:55.0624 0x11d8 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x61100 ( enabled : updated )
11:03:55.0640 0x11d8 Win FW state via NFP2: enabled
11:03:58.0015 0x11d8 ============================================================
11:03:58.0015 0x11d8 Scan finished
11:03:58.0015 0x11d8 ============================================================
11:03:58.0015 0x0d04 Detected object count: 0
11:03:58.0015 0x0d04 Actual detected object count: 0
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
TDSS čistý. Co problémy?
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 83 hostů