22:35:28.0569 0x053c TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57 22:35:33.0897 0x053c ============================================================ 22:35:33.0897 0x053c Current date / time: 2015/08/15 22:35:33.0897 22:35:33.0897 0x053c SystemInfo: 22:35:33.0897 0x053c 22:35:33.0897 0x053c OS Version: 5.1.2600 ServicePack: 3.0 22:35:33.0897 0x053c Product type: Workstation 22:35:33.0897 0x053c ComputerName: M-G 22:35:33.0897 0x053c UserName: Greg 22:35:33.0897 0x053c Windows directory: C:\WINDOWS 22:35:33.0897 0x053c System windows directory: C:\WINDOWS 22:35:33.0897 0x053c Processor architecture: Intel x86 22:35:33.0897 0x053c Number of processors: 2 22:35:33.0897 0x053c Page size: 0x1000 22:35:33.0897 0x053c Boot type: Normal boot 22:35:33.0897 0x053c ============================================================ 22:35:38.0475 0x053c KLMD registered as C:\WINDOWS\system32\drivers\48410814.sys 22:35:38.0850 0x053c System UUID: {A804ABE9-6204-BF31-B6DD-A101DF38832A} 22:35:39.0428 0x053c Drive \Device\Harddisk0\DR0 - Size: 0x7470AFDE00 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 22:35:39.0428 0x053c ============================================================ 22:35:39.0428 0x053c \Device\Harddisk0\DR0: 22:35:39.0428 0x053c MBR partitions: 22:35:39.0428 0x053c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x8C004F3 22:35:39.0444 0x053c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x8C00578, BlocksNum 0x3BFF00D 22:35:39.0459 0x053c \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xC7FF5CB, BlocksNum 0x77FE059 22:35:39.0475 0x053c \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x14001516, BlocksNum 0x77FE059 22:35:39.0475 0x053c \Device\Harddisk0\DR0\Partition5: MBR, Type 0x7, StartLBA 0x1B7FF5B1, BlocksNum 0x50014A4 22:35:39.0490 0x053c \Device\Harddisk0\DR0\Partition6: MBR, Type 0x7, StartLBA 0x20800A97, BlocksNum 0x63FFA7D 22:35:39.0506 0x053c \Device\Harddisk0\DR0\Partition7: MBR, Type 0x7, StartLBA 0x26C0055D, BlocksNum 0xC7FF53F 22:35:39.0522 0x053c \Device\Harddisk0\DR0\Partition8: MBR, Type 0x7, StartLBA 0x33403992, BlocksNum 0x6F7D3EE 22:35:39.0522 0x053c ============================================================ 22:35:39.0553 0x053c C: <-> \Device\Harddisk0\DR0\Partition1 22:35:39.0569 0x053c D: <-> \Device\Harddisk0\DR0\Partition2 22:35:39.0615 0x053c E: <-> \Device\Harddisk0\DR0\Partition3 22:35:39.0631 0x053c T: <-> \Device\Harddisk0\DR0\Partition5 22:35:39.0647 0x053c M: <-> \Device\Harddisk0\DR0\Partition4 22:35:39.0678 0x053c G: <-> \Device\Harddisk0\DR0\Partition6 22:35:39.0725 0x053c R: <-> \Device\Harddisk0\DR0\Partition7 22:35:39.0772 0x053c I: <-> \Device\Harddisk0\DR0\Partition8 22:35:39.0787 0x053c ============================================================ 22:35:39.0787 0x053c Initialize success 22:35:39.0787 0x053c ============================================================ 22:35:42.0537 0x0cac ============================================================ 22:35:42.0537 0x0cac Scan started 22:35:42.0537 0x0cac Mode: Manual; 22:35:42.0537 0x0cac ============================================================ 22:35:42.0537 0x0cac KSN ping started 22:35:45.0006 0x0cac KSN ping finished: true 22:35:46.0459 0x0cac ================ Scan system memory ======================== 22:35:46.0459 0x0cac System memory - ok 22:35:46.0459 0x0cac ================ Scan services ============================= 22:35:46.0506 0x0cac Abiosdsk - ok 22:35:46.0506 0x0cac abp480n5 - ok 22:35:46.0537 0x0cac [ 05118282F5D039595A2B92B4A4AFE197, 390EBD6088E96571636CE0925E4899D58893D9E5DF2389C09BABBD47A5838B52 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 22:35:46.0553 0x0cac ACPI - ok 22:35:46.0615 0x0cac [ 66A42B7DB194E24B973BBCCE840A0F3F, 2550F8E5B5ACD88E4191656194E46FB8EC8CCC65AFD4B5E6D5CED9FE297B573F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 22:35:46.0615 0x0cac ACPIEC - ok 22:35:46.0615 0x0cac adpu160m - ok 22:35:46.0662 0x0cac [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys 22:35:46.0662 0x0cac aec - ok 22:35:46.0709 0x0cac [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD C:\WINDOWS\System32\drivers\afd.sys 22:35:46.0709 0x0cac AFD - ok 22:35:46.0709 0x0cac Aha154x - ok 22:35:46.0709 0x0cac aic78u2 - ok 22:35:46.0709 0x0cac aic78xx - ok 22:35:46.0740 0x0cac [ 27AF056D8C42F0AB3CF1DFDCBBEB3243, 9D893C6C0E8619B0B0DA9EAEB5E470A29C9D730F89EC5632134C3F753DE51AC5 ] Alerter C:\WINDOWS\system32\alrsvc.dll 22:35:46.0740 0x0cac Alerter - ok 22:35:46.0772 0x0cac [ D1738DDDFF196C5CEE6D867C136AF745, DD4780276465CB18D14B4DDBB4E70117B374B3A61C618D68B5290714330DB91F ] ALG C:\WINDOWS\System32\alg.exe 22:35:46.0772 0x0cac ALG - ok 22:35:46.0772 0x0cac AliIde - ok 22:35:46.0865 0x0cac [ 267FC636801EDC5AB28E14036349E3BE, CFEF5DF5F9BE820283376BB86DB3CF6609C02D316A742E17459A2BFA42E724E0 ] Ambfilt C:\WINDOWS\system32\drivers\Ambfilt.sys 22:35:46.0897 0x0cac Ambfilt - ok 22:35:46.0928 0x0cac [ 7677D6E2FEB694866C8D4BC7CAB63028, D2FE522C49379D9D083FF82C793246CD753F1BBCD9F7E5790D094BE29764A78B ] ampa C:\WINDOWS\system32\ampa.sys 22:35:46.0928 0x0cac ampa - ok 22:35:46.0944 0x0cac amsint - ok 22:35:46.0944 0x0cac AppMgmt - ok 22:35:46.0944 0x0cac asc - ok 22:35:46.0944 0x0cac asc3350p - ok 22:35:46.0944 0x0cac asc3550 - ok 22:35:47.0069 0x0cac [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe 22:35:47.0100 0x0cac aspnet_state - ok 22:35:47.0115 0x0cac [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 22:35:47.0131 0x0cac AsyncMac - ok 22:35:47.0147 0x0cac [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 22:35:47.0147 0x0cac atapi - ok 22:35:47.0162 0x0cac Atdisk - ok 22:35:47.0178 0x0cac [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 22:35:47.0178 0x0cac Atmarpc - ok 22:35:47.0194 0x0cac [ 3A28D3E7BAD0EED3810CD918B2525B54, EFC7CEF39D58E846613E419E78ECBD300DFB18630B70110AB2936737EB2B19C1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 22:35:47.0194 0x0cac AudioSrv - ok 22:35:47.0225 0x0cac [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 22:35:47.0225 0x0cac audstub - ok 22:35:47.0334 0x0cac [ 6FA423F957A966A53243F383D213B2B2, 98A8D304FDE16D6464A09A3CE823E1DB0CD3F7866C1FBDD5CE393E42FF60BF37 ] AVKProxy C:\Program Files\Common Files\G Data\AVKProxy\AVKProxy.exe 22:35:47.0381 0x0cac AVKProxy - ok 22:35:47.0506 0x0cac [ 57E9F462DE5ED77574116782BA05AB0F, 611987C8205E113DFA206F50EF4959AA5D6CE252A73EC1E74C043CBFD7172E3D ] AVKService D:\Ochrona\G Data\InternetSecurity\AVK\AVKService.exe 22:35:47.0537 0x0cac AVKService - ok 22:35:47.0647 0x0cac [ B94E78BB23437F673924277F36375199, F82A224BF68B0B10663693231B3C337092D5059820651F397B57B7A8A626B21C ] AVKWCtl D:\Ochrona\G Data\InternetSecurity\AVK\AVKWCtl.exe 22:35:47.0725 0x0cac AVKWCtl - ok 22:35:47.0756 0x0cac [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys 22:35:47.0756 0x0cac Beep - ok 22:35:47.0787 0x0cac [ 78200FAA6FD9C69394134C238C87FB7F, 4E70BD89BB40222CB0647E8F73DBBAB1020594AEC313848C911048D080D0F26A ] BITS C:\WINDOWS\system32\qmgr.dll 22:35:47.0803 0x0cac BITS - ok 22:35:47.0819 0x0cac [ 3B77514728BA0BFE4143FC3A2780B289, 07D8131F5A90798F44566CD21E33314E41F94FEF7303913EB0B54E0AB7EFC0D9 ] BootDefragDriver C:\WINDOWS\system32\drivers\BootDefragDriver.sys 22:35:47.0834 0x0cac BootDefragDriver - ok 22:35:47.0850 0x0cac [ 9D6788EFFB9972C28C38D9C5E67249D5, A4C5FFE40983AD5C781024280F188E4FBA5797334BF331A56FF7E32E90F02081 ] Browser C:\WINDOWS\System32\browser.dll 22:35:47.0850 0x0cac Browser - ok 22:35:47.0865 0x0cac [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 22:35:47.0865 0x0cac cbidf2k - ok 22:35:47.0865 0x0cac cd20xrnt - ok 22:35:47.0865 0x0cac [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 22:35:47.0865 0x0cac Cdaudio - ok 22:35:47.0897 0x0cac [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 22:35:47.0912 0x0cac Cdfs - ok 22:35:47.0928 0x0cac [ 4B0A100EAF5C49EF3CCA8C641431EACC, 88D9C066FFB863910EE1863CE63D38846ACA2DF72D6B5FDFCE0F3379A6DA5EF9 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 22:35:47.0944 0x0cac Cdrom - ok 22:35:47.0944 0x0cac Changer - ok 22:35:47.0959 0x0cac [ 45B63DF2FB498D219FCBB4425CADE676, D58417D5D0E562E2CCBA04C82CF7E176F6F82026CB4877D45F0DC18944B72960 ] CiSvc C:\WINDOWS\system32\cisvc.exe 22:35:47.0959 0x0cac CiSvc - ok 22:35:47.0975 0x0cac [ C94F1B6F61858D6389C0FA06954FB9C4, 832A8BF5D63FD623632823DE7F36636540DAC9192B40A44C2DE6961D2E086320 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 22:35:47.0975 0x0cac ClipSrv - ok 22:35:48.0022 0x0cac [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 22:35:48.0053 0x0cac clr_optimization_v2.0.50727_32 - ok 22:35:48.0084 0x0cac [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 22:35:48.0131 0x0cac clr_optimization_v4.0.30319_32 - ok 22:35:48.0131 0x0cac CmdIde - ok 22:35:48.0131 0x0cac COMSysApp - ok 22:35:48.0131 0x0cac Cpqarray - ok 22:35:48.0147 0x0cac [ 6B105FE95F2E9F0B6346044BA59D41C9, DC41FC89E6C4F4219015856AEE9D9CE365094D3C8012AFFC188C129DC3B6A9A8 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 22:35:48.0147 0x0cac CryptSvc - ok 22:35:48.0162 0x0cac dac2w2k - ok 22:35:48.0162 0x0cac dac960nt - ok 22:35:48.0194 0x0cac [ A37311D9D628C1042A2836731787F0F3, 2A4380021407E84FAD47A2D5B02D37F1F17E8E2B1433710208FFCC70D9ECB5AA ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 22:35:48.0209 0x0cac DcomLaunch - ok 22:35:48.0209 0x0cac [ 6B4AFE7C676CFF3EFF2DC06A4EE945F7, 9771808A033C781758AC1356F9F51B198A0750081424F4F7A937CE0D7408CEE1 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 22:35:48.0225 0x0cac Dhcp - ok 22:35:48.0240 0x0cac [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 22:35:48.0240 0x0cac Disk - ok 22:35:48.0240 0x0cac dmadmin - ok 22:35:48.0272 0x0cac [ BC9219ABC5696942E6F9AC8A9B28670F, DEDD84A5FC12664C7767EC5210E3B4D311664EF8BCE01C9DCF16CC98BE16EDE1 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 22:35:48.0303 0x0cac dmboot - ok 22:35:48.0319 0x0cac [ 5FA232E3BA6E1346F9F5A7E519320CB0, 1C7EEC415C291D3C5FFD479A8454347528AF4FF88F81011EF65EFA8FE8199973 ] dmio C:\WINDOWS\system32\drivers\dmio.sys 22:35:48.0334 0x0cac dmio - ok 22:35:48.0350 0x0cac [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys 22:35:48.0350 0x0cac dmload - ok 22:35:48.0365 0x0cac [ D858920A05076914D34B0388E8D96CC0, A8F231BA9022F6AEBB24C9DCC1898923F85B79DE3C8E90B696CA0B295B9C99B7 ] dmserver C:\WINDOWS\System32\dmserver.dll 22:35:48.0365 0x0cac dmserver - ok 22:35:48.0397 0x0cac [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 22:35:48.0397 0x0cac DMusic - ok 22:35:48.0428 0x0cac [ 082BE13166A3354F25F78E0B2601012B, 881284F659D4D528C96092E79BADE6E6C0C589E4583B3BF3FAC229F50D16C5F0 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 22:35:48.0428 0x0cac Dnscache - ok 22:35:48.0444 0x0cac [ E0B7D66CF29D9ADCCF873C77821CD4CA, 09A3D28585B62FC541EF4F2CB4D749DA119BB5F98739393CFD4D745060217C65 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 22:35:48.0444 0x0cac Dot3svc - ok 22:35:48.0475 0x0cac dpti2o - ok 22:35:48.0490 0x0cac [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 22:35:48.0490 0x0cac drmkaud - ok 22:35:48.0506 0x0cac [ 5F256C1AD50FEFDC442CD5AAB58C7DD8, 0FC1F2590195AE4B7CAA802D84CD391B56D73B99CB100BDEBD4D7C002946D06B ] EapHost C:\WINDOWS\System32\eapsvc.dll 22:35:48.0506 0x0cac EapHost - ok 22:35:48.0522 0x0cac [ ED1B71382C31FD2CF3CDC4672EFAD6EA, AF3CD28B5E6F1ED1D6B7C71C697019B2E2E79AFFE29EB6282253B30BA205F3EA ] ERSvc C:\WINDOWS\System32\ersvc.dll 22:35:48.0553 0x0cac ERSvc - ok 22:35:48.0600 0x0cac [ E5030E34DE21A6818E8586BFB7DD4B60, 20C602B310B70997F502252D2F6FD204462A19B836CD84326A57FB0337BE8456 ] ET5Drv C:\WINDOWS\system32\Drivers\ET5Drv.sys 22:35:48.0600 0x0cac ET5Drv - ok 22:35:48.0631 0x0cac [ 02A467E27AF55F7064C5B251E587315F, 309D6C6ABC9D7786354758C107B89C50AC722AEA3B10631714F326AB2D3BB3DF ] Eventlog C:\WINDOWS\system32\services.exe 22:35:48.0647 0x0cac Eventlog - ok 22:35:48.0662 0x0cac [ 6AFF804839C85859E0247164FBE5F5BB, 91E1FEC83545BC6489E35CD042BBA756FA31C5BEAD51FC5494DD04F6F8C852AB ] EventSystem C:\WINDOWS\system32\es.dll 22:35:48.0678 0x0cac EventSystem - ok 22:35:48.0694 0x0cac [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 22:35:48.0709 0x0cac Fastfat - ok 22:35:48.0740 0x0cac [ 55AAE86C7C2CADF6972ACD1D76C24A98, 25631E05E81E7C9C794DBB26B75F111C211EA22A031159F20B4461EA7EBCDF1C ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 22:35:48.0740 0x0cac FastUserSwitchingCompatibility - ok 22:35:48.0772 0x0cac [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys 22:35:48.0787 0x0cac Fdc - ok 22:35:48.0803 0x0cac [ 09E2A4D33F81A06A8AAB2BA0A0B5D235, D71C2D4212C7ABB1D8EE08B21C59CA25D7195F1A0E92E5BDA1DC5226A0E62CB0 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 22:35:48.0803 0x0cac Fips - ok 22:35:48.0819 0x0cac [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys 22:35:48.0834 0x0cac Flpydisk - ok 22:35:48.0865 0x0cac [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 22:35:48.0865 0x0cac FltMgr - ok 22:35:48.0944 0x0cac [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 22:35:48.0944 0x0cac FontCache3.0.0.0 - ok 22:35:48.0959 0x0cac [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 22:35:48.0959 0x0cac Fs_Rec - ok 22:35:48.0975 0x0cac [ ED6D921D8AB423138FB35BEEE6D6A6CB, CF133B76960207595C44181A235E63B84C5A5A4E7BDDDC2E6A01DA837E55832D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 22:35:48.0975 0x0cac Ftdisk - ok 22:35:49.0006 0x0cac [ C830BED1B2893EDDE17A3C7A36DC3492, 6516497906E877BE8FE14595D55974764941CDBB53B47BD6E4BB024CE0692717 ] GDBehave C:\WINDOWS\system32\drivers\GDBehave.sys 22:35:49.0006 0x0cac GDBehave - ok 22:35:49.0131 0x0cac [ 11B4CD0C60CCF34DB87C3B8C6AD2DA69, A1F8F2AF2D4B80F8D85144F3E62F9DFA0EAE09BC3088E0C8B32B06DB169A2559 ] GDFwSvc D:\Ochrona\G Data\InternetSecurity\Firewall\GDFwSvc.exe 22:35:49.0178 0x0cac GDFwSvc - ok 22:35:49.0194 0x0cac [ 0A68BE0CAA1DA360A5FDD4B6AD24A5F6, 0F31F4E2928CC8BEC663E92DAD466A569DE30964F3F04A0E5A2CDDA6DBCFDF4D ] GDKBFlt C:\WINDOWS\system32\drivers\GDKBFlt32.sys 22:35:49.0194 0x0cac GDKBFlt - ok 22:35:49.0194 0x0cac [ 99FABE6B3C4635F17FD67F87E48A9611, 145DBDF195665298F550A38B778598116204DBEED4BE34F90D115A4A782AC2C6 ] GDMnIcpt C:\WINDOWS\system32\drivers\MiniIcpt.sys 22:35:49.0209 0x0cac GDMnIcpt - ok 22:35:49.0209 0x0cac [ 122A2AA68CEE014AD4CB62979ADA6AE9, 5FE9F64D8BC8392D3C99C6F3E44C82E2868D9F6E97442232CE129F29ECF11B56 ] GDNdisIc C:\WINDOWS\system32\drivers\GDNdisIc.sys 22:35:49.0209 0x0cac GDNdisIc - ok 22:35:49.0240 0x0cac [ D556CB79967E92B5CC69686D16C1D846, F4FF679066269392F6B7C3BA6257FC60DD609E4F9C491B00E1A16E4C405B0B9B ] gdrv C:\WINDOWS\gdrv.sys 22:35:49.0240 0x0cac gdrv - ok 22:35:49.0319 0x0cac [ E9B7AF2C5C7B9AD739718AA7ED5F1911, 52C1B75B97DBCF343A6A7045E1F42C8BB35FF23CC2B463EA1B858FCD5B85678F ] GDScan C:\Program Files\Common Files\G Data\GDScan\GDScan.exe 22:35:49.0334 0x0cac GDScan - ok 22:35:49.0350 0x0cac [ 3CD76E717EDE3B6B1226E8A35D798AB2, E334C4989E4003772D4744BC6730ACAAA081ADF7F04FED5FBCA2DCD625214A41 ] GDTdiInterceptor C:\WINDOWS\system32\drivers\GDTdiIcpt.sys 22:35:49.0350 0x0cac GDTdiInterceptor - ok 22:35:49.0381 0x0cac [ 2DDD5CBB203C3C3FD6F74979EBD8CC92, 71B06C600C1B1FDBE31512732A8376D9CA6CEE826526F7FA56157F7E8BA5EEB3 ] GEST Service C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe 22:35:49.0381 0x0cac GEST Service - ok 22:35:49.0397 0x0cac [ 93CA4D9A0433BE0EDD0B9F2F26D5E54C, ACD6BBB639CAF092809927F84F5693B7BA11080684A4993029D713ACF67D4C79 ] ggflt C:\WINDOWS\system32\DRIVERS\ggflt.sys 22:35:49.0397 0x0cac ggflt - ok 22:35:49.0412 0x0cac [ 17E678AAB82CCDFB80E7614504933895, 43935C8C5C30DA415957B789DC9FA10721C240C603DC8733D9B791A2F58BE1BD ] ggsemc C:\WINDOWS\system32\DRIVERS\ggsemc.sys 22:35:49.0428 0x0cac ggsemc - ok 22:35:49.0428 0x0cac [ 77EBF3E9386DAA51551AF429052D88D0, 94C3294BB9E14B07448734AE65B37801D3FF15BEC987D182A929A017FEF7B276 ] giveio C:\WINDOWS\system32\giveio.sys 22:35:49.0428 0x0cac giveio - ok 22:35:49.0459 0x0cac [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 22:35:49.0459 0x0cac Gpc - ok 22:35:49.0490 0x0cac [ 4C55D592721D9F321EEF4E7170F39E1E, 69CB46D3DFA2E81B65CDE8A7B8159FA935F14092118AAD3A714EC68D51C96973 ] GRD C:\WINDOWS\system32\drivers\GRD.sys 22:35:49.0490 0x0cac GRD - ok 22:35:49.0506 0x0cac [ 05C11D2DA6B396F6AD8C590D32CF81D7, A62E03868A4EEBF3796D36DE8BA472F08091FDC1306E35214429D250CB56175C ] GUBootStartup C:\WINDOWS\System32\drivers\GUBootStartup.sys 22:35:49.0522 0x0cac GUBootStartup - ok 22:35:49.0522 0x0cac [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 22:35:49.0537 0x0cac HDAudBus - ok 22:35:49.0600 0x0cac [ AF752014F7EB61542E3F35B9374D7E76, 8D9F1D1B03D5AF9F592C396C4B6353E17F2E852A2A7F1F468F83763C0731435D ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 22:35:49.0600 0x0cac helpsvc - ok 22:35:49.0631 0x0cac [ 1776C3B6069EEECC8042535296C1866A, 57B516B7E0C12EF16568647B069441731C0484C0D0E87900D1F2E895BD67FF18 ] HidServ C:\WINDOWS\System32\hidserv.dll 22:35:49.0631 0x0cac HidServ - ok 22:35:49.0662 0x0cac [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys 22:35:49.0662 0x0cac hidusb - ok 22:35:49.0678 0x0cac [ F0273916DA6FB64CC88E0BD77619554F, C6E3B5C367CE52174251B1CE548F0DF8708AEDD228D5AD74D3F6F31FC3857460 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 22:35:49.0678 0x0cac hkmsvc - ok 22:35:49.0709 0x0cac [ B7F070562BC121ACA3258F13EC634B5C, 38C02ACC3B6AE3721D83056FA59D5349939BD1D6856A8F69755A636BAE83254F ] HookCentre C:\WINDOWS\system32\drivers\HookCentre.sys 22:35:49.0725 0x0cac HookCentre - ok 22:35:49.0725 0x0cac hpn - ok 22:35:49.0772 0x0cac [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 22:35:49.0772 0x0cac HTTP - ok 22:35:49.0803 0x0cac [ AA268079AC119F3A596E5E27AEE4BD17, 2FD9B52A0627B3ECE618BAC855C19002CA6F5339636D11DF9F998E588027292A ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 22:35:49.0803 0x0cac HTTPFilter - ok 22:35:49.0819 0x0cac i2omgmt - ok 22:35:49.0819 0x0cac i2omp - ok 22:35:49.0850 0x0cac [ 177B372AF55C4460D0968B5F1D02AA1C, 39406139B0D42C650F2C1986D85DB2260107D427963BC2C85A11D71561986DEB ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 22:35:49.0850 0x0cac i8042prt - ok 22:35:49.0928 0x0cac [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 22:35:49.0928 0x0cac IDriverT - ok 22:35:50.0006 0x0cac [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 22:35:50.0022 0x0cac idsvc - ok 22:35:50.0037 0x0cac [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 22:35:50.0037 0x0cac Imapi - ok 22:35:50.0069 0x0cac [ 9125AF650608A921F98A789E5C5BA864, E530C4FE52EB66549D91490B3039EF8DBC6866E4F9B55213F21E3757892B06CE ] ImapiService C:\WINDOWS\system32\imapi.exe 22:35:50.0069 0x0cac ImapiService - ok 22:35:50.0069 0x0cac ini910u - ok 22:35:50.0240 0x0cac [ 1F7C55FC32919644BA9124217A612A64, 7EEDB81C2C0205DE6908955A5E190FD2EE1469F8C966B040593120B7205EF41A ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys 22:35:50.0350 0x0cac IntcAzAudAddService - ok 22:35:50.0365 0x0cac IntelIde - ok 22:35:50.0397 0x0cac [ DA153EDC09DE8C4F846C085CAA39D1CC, 7669572FDCC2B458A8DCBA910D0260806E6DD7845221B81C509E627AB82ED7B4 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 22:35:50.0397 0x0cac intelppm - ok 22:35:50.0412 0x0cac [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 22:35:50.0412 0x0cac Ip6Fw - ok 22:35:50.0444 0x0cac [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 22:35:50.0444 0x0cac IpFilterDriver - ok 22:35:50.0444 0x0cac [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 22:35:50.0444 0x0cac IpInIp - ok 22:35:50.0459 0x0cac [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 22:35:50.0459 0x0cac IpNat - ok 22:35:50.0490 0x0cac [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 22:35:50.0490 0x0cac IPSec - ok 22:35:50.0506 0x0cac [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 22:35:50.0506 0x0cac IRENUM - ok 22:35:50.0537 0x0cac [ C8EEF2E93835B81BD335DE2123121283, DF7CCA1141CE15050D5EA516C75BF677B095EABA9E08828880E8917EBDEB2418 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 22:35:50.0537 0x0cac isapnp - ok 22:35:50.0600 0x0cac [ 45A663489E1A24FE3696F689178C1041, 362C156636EB8E791E4917E345B269E086DE1A69CAF1D12FDFEF90DFF2E19359 ] JavaQuickStarterService D:\Narzędzia\Java\bin\jqs.exe 22:35:50.0600 0x0cac JavaQuickStarterService - ok 22:35:50.0615 0x0cac [ 2AECA45D4AEAACBDCB77AD11184E4601, 58724D00A0D6FA17CCAF69DC069EF59E535F08C870C199BF2C9269BC22273A63 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 22:35:50.0615 0x0cac Kbdclass - ok 22:35:50.0631 0x0cac [ F718DCDDAC2544BC693F22977D06F78B, 8C107E6969DA588E329212F2521A9FFE18B44A38CD1FF38BC0ACE37319C8960E ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 22:35:50.0631 0x0cac kbdhid - ok 22:35:50.0678 0x0cac [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 22:35:50.0678 0x0cac kmixer - ok 22:35:50.0694 0x0cac [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 22:35:50.0709 0x0cac KSecDD - ok 22:35:50.0725 0x0cac [ 061A4BB67C324AC8C176E0D77923B212, C2877FD13FCF7EB422441D08B5BF76D9B1DCE6E9D7A19487E0D7DE14254E0F60 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll 22:35:50.0725 0x0cac LanmanServer - ok 22:35:50.0756 0x0cac [ FA17019DA45C5D6464776A639A5A9ABB, 5654615E6130D344D2D42B59DF2F5CD02C6D3B1128BBC2A14ED0CB8078180B17 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 22:35:50.0756 0x0cac lanmanworkstation - ok 22:35:50.0756 0x0cac lbrtfdc - ok 22:35:50.0787 0x0cac [ 437AA83D68F9FAC234CA68DBD40DB705, 49B4A9E30778FB6D08AA7F9D66AF173572B86F74863477FFE7A66BBF2E6BCE93 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 22:35:50.0787 0x0cac LmHosts - ok 22:35:50.0803 0x0cac [ 8E2E9CCD873ABF180F48BCAEEEBE347D, 35DBBB8E63B480151EA5701D9DB7C90642FA2391D044DB400D3644F3E21BB0C1 ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 22:35:50.0819 0x0cac MBAMSwissArmy - ok 22:35:50.0865 0x0cac [ 11F714F85530A2BD134074DC30E99FCA, BDB5FD3B2DF4ADD19B31965B3E789768B59E872B3EA85912B1FFB32B2AF9D5D8 ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe 22:35:50.0865 0x0cac MDM - ok 22:35:50.0881 0x0cac [ 36F3AB18B1BE303DA51DE90A67DE3942, E364FF831EFBDC5FF026CE620EE951C129D4E0C79DD0FED823BC767F36ED0021 ] Messenger C:\WINDOWS\System32\msgsvc.dll 22:35:50.0897 0x0cac Messenger - ok 22:35:50.0912 0x0cac [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 22:35:50.0912 0x0cac mnmdd - ok 22:35:50.0928 0x0cac [ 845814A8CB9D704D030F076E1BCE83F3, F35FD4B6CE78A06A6FCF207A75EADF5A8315F2254A3E84ED070928F196D32AF4 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 22:35:50.0928 0x0cac mnmsrvc - ok 22:35:50.0944 0x0cac [ 4A068DB7DC37D5AFEDB6512D2931D7B3, 491F58509188054EE35962B66A13F0029BDF66CC59ED3B5E4058393146CE001C ] Modem C:\WINDOWS\system32\drivers\Modem.sys 22:35:50.0944 0x0cac Modem - ok 22:35:51.0037 0x0cac [ C7D9F9717916B34C1B00DD4834AF485C, A9512A03E8142C83534189963F90ADA6FA425BD606928C40C3D724177105A658 ] Monfilt C:\WINDOWS\system32\drivers\Monfilt.sys 22:35:51.0069 0x0cac Monfilt - ok 22:35:51.0100 0x0cac [ FBED3DF6B884F8CF00447B73507F2C48, 2CAA78DF3DB8BB19C10FD046B6EDC34167D8CA67EF137912703FE751D70803A2 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 22:35:51.0100 0x0cac Mouclass - ok 22:35:51.0131 0x0cac [ ECEC1E6CD558AB80F944F31326E9D3B5, E61B7124FDFE36D7C9081ABA7745F87F83592CE683AB49F7C31359D393B2E691 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 22:35:51.0131 0x0cac mouhid - ok 22:35:51.0162 0x0cac [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 22:35:51.0162 0x0cac MountMgr - ok 22:35:51.0225 0x0cac [ 906DD5FE29BC912A87F66C9ACD87C720, 599CEE2D3AF0E52607C6984CE7F745C52BBBE6AE407E817AC25AD4D742098035 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 22:35:51.0225 0x0cac MozillaMaintenance - ok 22:35:51.0240 0x0cac mraid35x - ok 22:35:51.0287 0x0cac [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 22:35:51.0287 0x0cac MRxDAV - ok 22:35:51.0334 0x0cac [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 22:35:51.0350 0x0cac MRxSmb - ok 22:35:51.0350 0x0cac [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 22:35:51.0350 0x0cac Msfs - ok 22:35:51.0350 0x0cac MSIServer - ok 22:35:51.0381 0x0cac [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 22:35:51.0381 0x0cac MSKSSRV - ok 22:35:51.0381 0x0cac [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 22:35:51.0381 0x0cac MSPCLOCK - ok 22:35:51.0397 0x0cac [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 22:35:51.0397 0x0cac MSPQM - ok 22:35:51.0412 0x0cac [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 22:35:51.0412 0x0cac mssmbios - ok 22:35:51.0444 0x0cac [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 22:35:51.0444 0x0cac Mup - ok 22:35:51.0475 0x0cac [ 14CB8528E17D1221C50FC8CA88B1795F, E908EAE9A0E606084926941B1802E9F48AE1AC4AE6C6136345DD5699B8B9B526 ] napagent C:\WINDOWS\System32\qagentrt.dll 22:35:51.0475 0x0cac napagent - ok 22:35:51.0506 0x0cac [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 22:35:51.0506 0x0cac NDIS - ok 22:35:51.0537 0x0cac [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 22:35:51.0537 0x0cac NdisTapi - ok 22:35:51.0569 0x0cac [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 22:35:51.0569 0x0cac Ndisuio - ok 22:35:51.0584 0x0cac [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 22:35:51.0584 0x0cac NdisWan - ok 22:35:51.0615 0x0cac [ 2F597BB467E05B1FE3830EABD821B8E0, 141497F5A49D47CCE3C9289644F4BD838DCB238F6D8E847FC006652E21FE02AC ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 22:35:51.0615 0x0cac NDProxy - ok 22:35:51.0615 0x0cac [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 22:35:51.0631 0x0cac NetBIOS - ok 22:35:51.0662 0x0cac [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 22:35:51.0662 0x0cac NetBT - ok 22:35:51.0678 0x0cac [ CBB409B314309FCFFCE5E682E91338C6, 75BB788E9154D0437A8449B6C88432E27F1EACD9B6FDF27A46DE5147EC59CF6D ] NetDDE C:\WINDOWS\system32\netdde.exe 22:35:51.0678 0x0cac NetDDE - ok 22:35:51.0678 0x0cac [ CBB409B314309FCFFCE5E682E91338C6, 75BB788E9154D0437A8449B6C88432E27F1EACD9B6FDF27A46DE5147EC59CF6D ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 22:35:51.0694 0x0cac NetDDEdsdm - ok 22:35:51.0725 0x0cac [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] Netlogon C:\WINDOWS\system32\lsass.exe 22:35:51.0725 0x0cac Netlogon - ok 22:35:51.0756 0x0cac [ 4FE97D0B1B182DF2A9BDD4C02155EF5E, 46F3F4FEB501E1987B49AB1595AADC06432B70E39CA6E9CC67C6410B13DA7B7A ] Netman C:\WINDOWS\System32\netman.dll 22:35:51.0756 0x0cac Netman - ok 22:35:51.0772 0x0cac [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 22:35:51.0787 0x0cac NetTcpPortSharing - ok 22:35:51.0803 0x0cac [ 9D1F13706FB5F02D0E8795FB2D03971D, E4DD5EA83F57D5C0A6739F753E95D0B1E13CE6F8E49CE27641D6D96B2C9FEE78 ] Nla C:\WINDOWS\System32\mswsock.dll 22:35:51.0803 0x0cac Nla - ok 22:35:51.0803 0x0cac [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 22:35:51.0803 0x0cac Npfs - ok 22:35:51.0834 0x0cac [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 22:35:51.0850 0x0cac Ntfs - ok 22:35:51.0850 0x0cac [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] NtLmSsp C:\WINDOWS\system32\lsass.exe 22:35:51.0850 0x0cac NtLmSsp - ok 22:35:51.0881 0x0cac [ 3FB5399DBB7001A80D58EDAD64C98225, A790DB873DAADB2B241F2C2426B51C0B73D4E13AC4D804B8EBBF5A74B4A41797 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 22:35:51.0897 0x0cac NtmsSvc - ok 22:35:51.0912 0x0cac [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys 22:35:51.0912 0x0cac Null - ok 22:35:52.0303 0x0cac [ 4AC38874925247CF2AE6FD143DD610D7, 319041564CFB18181D421DEE0633B408CBFE4573AA9BCAABDF6E9ECFADE05699 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 22:35:52.0553 0x0cac nv - ok 22:35:52.0615 0x0cac [ 45C80410B652A0D4630780AEBD62A755, E8F57213A1B814ED9EB5E27137E1D3E8BF8AA8025427B5578F78F49376FEA223 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 22:35:52.0615 0x0cac NVSvc - ok 22:35:52.0631 0x0cac [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 22:35:52.0631 0x0cac NwlnkFlt - ok 22:35:52.0647 0x0cac [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 22:35:52.0647 0x0cac NwlnkFwd - ok 22:35:52.0662 0x0cac [ 2D4CDAEBCED17743AA9E25D3016DC229, F5D138644F114861DD045975136904325304081221B85FB2C151CD9A411097CE ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys 22:35:52.0662 0x0cac Parport - ok 22:35:52.0694 0x0cac [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 22:35:52.0694 0x0cac PartMgr - ok 22:35:52.0725 0x0cac [ 453EC2C2A20A1382F564541918520EEB, 797ED3127131BAE255AE793B8327D0E3BB6D054421F8D90511B315937BEBB6B0 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 22:35:52.0725 0x0cac ParVdm - ok 22:35:52.0725 0x0cac [ 6862C69168D787B85A7D95CCD33C694E, 6B7912156A0BAB6AED4F00FE37034488D10646B17435E86DE0D7DBD5951E8FB9 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 22:35:52.0740 0x0cac PCI - ok 22:35:52.0740 0x0cac PCIDump - ok 22:35:52.0756 0x0cac [ 548CF2D6369EAE441A4C6BAA75BC4F0A, C659E9E8A16DD4CBEC97FFB50784D8585E02F20FA360D2280D322D975F00A994 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 22:35:52.0772 0x0cac PCIIde - ok 22:35:52.0787 0x0cac [ 8DB27F1AE9593C94095485305A583862, 4FDB24BA306944743B50C3B0E39EFC75BD196A4DA1B0A3C859B974E8599B5128 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 22:35:52.0803 0x0cac Pcmcia - ok 22:35:52.0803 0x0cac PDCOMP - ok 22:35:52.0803 0x0cac PDFRAME - ok 22:35:52.0803 0x0cac PDRELI - ok 22:35:52.0803 0x0cac PDRFRAME - ok 22:35:52.0834 0x0cac perc2 - ok 22:35:52.0834 0x0cac perc2hib - ok 22:35:52.0865 0x0cac [ 02A467E27AF55F7064C5B251E587315F, 309D6C6ABC9D7786354758C107B89C50AC722AEA3B10631714F326AB2D3BB3DF ] PlugPlay C:\WINDOWS\system32\services.exe 22:35:52.0865 0x0cac PlugPlay - ok 22:35:52.0865 0x0cac [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] PolicyAgent C:\WINDOWS\system32\lsass.exe 22:35:52.0865 0x0cac PolicyAgent - ok 22:35:52.0881 0x0cac [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 22:35:52.0881 0x0cac PptpMiniport - ok 22:35:52.0881 0x0cac [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 22:35:52.0881 0x0cac ProtectedStorage - ok 22:35:52.0912 0x0cac [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 22:35:52.0912 0x0cac PSched - ok 22:35:52.0912 0x0cac [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 22:35:52.0912 0x0cac Ptilink - ok 22:35:52.0912 0x0cac ql1080 - ok 22:35:52.0928 0x0cac Ql10wnt - ok 22:35:52.0928 0x0cac ql12160 - ok 22:35:52.0928 0x0cac ql1240 - ok 22:35:52.0928 0x0cac ql1280 - ok 22:35:52.0944 0x0cac [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 22:35:52.0944 0x0cac RasAcd - ok 22:35:52.0990 0x0cac [ BC22C5E1238D4D36D65679E249C483C3, 9B01F8D9541F3558F7D6A3E079580EC87DC748EFCA43E10682C83953B8885C3B ] RasAuto C:\WINDOWS\System32\rasauto.dll 22:35:52.0990 0x0cac RasAuto - ok 22:35:53.0006 0x0cac [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 22:35:53.0006 0x0cac Rasl2tp - ok 22:35:53.0022 0x0cac [ 0C392E397B8D34AAAF19EC6119CBB788, 843C0B52A92A7F62E0D503A62FE56A020655AD98BC287AE8669ACE93B6A02ECA ] RasMan C:\WINDOWS\System32\rasmans.dll 22:35:53.0037 0x0cac RasMan - ok 22:35:53.0037 0x0cac [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 22:35:53.0037 0x0cac RasPppoe - ok 22:35:53.0037 0x0cac [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 22:35:53.0037 0x0cac Raspti - ok 22:35:53.0069 0x0cac [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 22:35:53.0084 0x0cac Rdbss - ok 22:35:53.0084 0x0cac [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 22:35:53.0084 0x0cac RDPCDD - ok 22:35:53.0100 0x0cac [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 22:35:53.0131 0x0cac RDPWD - ok 22:35:53.0162 0x0cac [ F83907A9A038DB2E35329B039628D293, 683D478C9EC30102BB5A4CB6D200C4772C8BF5DF7BFC757AFA0B5B44DA1F8961 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 22:35:53.0162 0x0cac RDSessMgr - ok 22:35:53.0225 0x0cac [ E0C7BBD18040B58651BAC700C804861D, 91AE8D3C7D9FB391725664996479DAFDA91CB91C31E446BFE9ECF0C4FC86BE2F ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 22:35:53.0225 0x0cac redbook - ok 22:35:53.0256 0x0cac [ B3F57E6115BCD4DBADE9874F300655E3, DFF4D6AEA1B22C531216ED5A94B01C88D2C61D0EC3BB34744B4572C672EF89E6 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 22:35:53.0256 0x0cac RemoteAccess - ok 22:35:53.0319 0x0cac [ 6BC4D5A70F46EA27DDC14E5414C862A5, D78921FF982CFF26A012A413F19331AACA4F66E53D38C626FE712B4108744E31 ] RpcLocator C:\WINDOWS\system32\locator.exe 22:35:53.0319 0x0cac RpcLocator - ok 22:35:53.0428 0x0cac [ A37311D9D628C1042A2836731787F0F3, 2A4380021407E84FAD47A2D5B02D37F1F17E8E2B1433710208FFCC70D9ECB5AA ] RpcSs C:\WINDOWS\system32\rpcss.dll 22:35:53.0444 0x0cac RpcSs - ok 22:35:53.0475 0x0cac [ 9ACEE3313020A01235336C2A483AFD1A, 87DD3B037FB80DC5BB9F3E335C9A0F3926481012EF9A8DE2CEF53C5386F69009 ] RSVP C:\WINDOWS\system32\rsvp.exe 22:35:53.0475 0x0cac RSVP - ok 22:35:53.0569 0x0cac [ 71439E5BF872A91DB450641BE445F51C, 7157CBC9D45CAB0070CEA5F67489E4F9B7360761A8BBA15E5F1E4489E75AFEAE ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys 22:35:53.0569 0x0cac RTLE8023xp - ok 22:35:53.0584 0x0cac RTLVLANMP - ok 22:35:53.0600 0x0cac [ 88296F7943F30A1EE3AF735440B92268, 8ACCF0331EE351EFB1A0F5EF210B92F822343B387D4B8CC29FE3222FDBFA911B ] SamSs C:\WINDOWS\system32\lsass.exe 22:35:53.0600 0x0cac SamSs - ok 22:35:53.0631 0x0cac [ C6F479218E94896738C06AF5BA6AB3D3, 4077BDDE1A44E2A415FF76A8BB3EAD226D7A29696C0218E81381B81E750CD0BA ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 22:35:53.0631 0x0cac SCardSvr - ok 22:35:53.0709 0x0cac [ DD73C11A5C4D14945846384B90A61A4B, C3C6BD62FB976E27C9E2C4C239D01B5458B7D270E9563A90EFBC9801B5DC55EA ] Schedule C:\WINDOWS\system32\schedsvc.dll 22:35:53.0709 0x0cac Schedule - ok 22:35:53.0725 0x0cac [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 22:35:53.0756 0x0cac Secdrv - ok 22:35:53.0787 0x0cac [ 2AAD9026648120FFFE2A8D871BB2BBC7, 8F9B35717CBE8B1C30FF15992DA8A857470A96F1A043CDA42CB89E4C6723B4A4 ] seclogon C:\WINDOWS\System32\seclogon.dll 22:35:53.0803 0x0cac seclogon - ok 22:35:53.0834 0x0cac [ 9D01E29D59723EB73B72107B208DAFE6, D334E807C6B41CF08EB64DCF8B2C8F68FA553971130FAB2E14C3EEE4D3B968F7 ] SENS C:\WINDOWS\system32\sens.dll 22:35:53.0850 0x0cac SENS - ok 22:35:53.0865 0x0cac [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 22:35:53.0881 0x0cac serenum - ok 22:35:53.0897 0x0cac [ D07B02F88165E69B9F17162CF592C8A6, B494941FC05FC2439F54D4D999B1A65F9709BC296D5AC470C8F73ACFC5DC4729 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 22:35:53.0897 0x0cac Serial - ok 22:35:53.0944 0x0cac [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 22:35:53.0944 0x0cac Sfloppy - ok 22:35:53.0990 0x0cac [ DA5C015911F68F22ED821E9EE49AB233, 53694B0E70F77C775CE936F5DB458F724F051314704B6F69E5C2728180F0DC2C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 22:35:53.0990 0x0cac SharedAccess - ok 22:35:54.0022 0x0cac [ 55AAE86C7C2CADF6972ACD1D76C24A98, 25631E05E81E7C9C794DBB26B75F111C211EA22A031159F20B4461EA7EBCDF1C ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 22:35:54.0022 0x0cac ShellHWDetection - ok 22:35:54.0022 0x0cac Simbad - ok 22:35:54.0053 0x0cac [ 5125D501712FBEC12827C3842EE5BE49, A3B01FAE00C92D8117CE151468D1E6B57ACC7C7C725F91739FC9D600BC78CB71 ] SimpTcp C:\WINDOWS\system32\tcpsvcs.exe 22:35:54.0053 0x0cac SimpTcp - ok 22:35:54.0131 0x0cac [ 3A4F2C0BB87A0895ABEBA341AA1E341B, 4DADEEF3C5D181502D6F4A00FBBF3B001FA626E49569FB330D7AE2955CC7DE08 ] Sony PC Companion C:\Program Files\Sony\Sony PC Companion\PCCService.exe 22:35:54.0147 0x0cac Sony PC Companion - ok 22:35:54.0147 0x0cac Sparrow - ok 22:35:54.0194 0x0cac [ DC8D2952FB6FFBAEC67BD1B93A34DF11, 0BD1523A68900B80ED1BCCB967643525CCA55D4FF4622D0128913690E6BB619E ] speedfan C:\WINDOWS\system32\speedfan.sys 22:35:54.0194 0x0cac speedfan - ok 22:35:54.0225 0x0cac [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys 22:35:54.0225 0x0cac splitter - ok 22:35:54.0256 0x0cac [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler C:\WINDOWS\system32\spoolsv.exe 22:35:54.0256 0x0cac Spooler - ok 22:35:54.0287 0x0cac [ EB032822BE406EF220D546DDFFCF0002, 916299B409925AB7326CB5F744799B34FD08CA4C4B447215DA5060FF446FEEBE ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 22:35:54.0303 0x0cac sr - ok 22:35:54.0334 0x0cac [ 316D0E66074AE4CDE641C50D3A1C5148, 8429F815AFB4B39F6C1C56FB1CA009E5338C1467A4A02DD8E7E35BADBB8D5221 ] srservice C:\WINDOWS\system32\srsvc.dll 22:35:54.0334 0x0cac srservice - ok 22:35:54.0381 0x0cac [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 22:35:54.0381 0x0cac Srv - ok 22:35:54.0428 0x0cac [ 2C0B1224AA36B4CA1753302BAA855882, F8C90ECBF5BD7C3984E7C82EB00042DFD85A62F263C0205E6790205B6D64E101 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 22:35:54.0428 0x0cac SSDPSRV - ok 22:35:54.0553 0x0cac [ 41508EA375C97DC2B56E5F1AFC067187, 94D8D49AE3634E861DE501E72813C5320F059C49CC61FA01B2867C99E8B36DB4 ] stisvc C:\WINDOWS\system32\wiaservc.dll 22:35:54.0569 0x0cac stisvc - ok 22:35:54.0569 0x0cac [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 22:35:54.0584 0x0cac swenum - ok 22:35:54.0600 0x0cac [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 22:35:54.0600 0x0cac swmidi - ok 22:35:54.0600 0x0cac SwPrv - ok 22:35:54.0600 0x0cac symc810 - ok 22:35:54.0600 0x0cac symc8xx - ok 22:35:54.0615 0x0cac sym_hi - ok 22:35:54.0615 0x0cac sym_u3 - ok 22:35:54.0631 0x0cac [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 22:35:54.0631 0x0cac sysaudio - ok 22:35:54.0662 0x0cac [ E42048198518F9162027A9984CBB7B5C, 2634DE2B1AE9D856966F40BFB41AD951A41E11C557C4B27E61CFF63288B53D52 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 22:35:54.0662 0x0cac SysmonLog - ok 22:35:54.0725 0x0cac [ 2340E6977548038C88E39A9ECBB3FADC, B8992F5E0689B307B8CC162032B398950FB07C4B4EF997431F7B344351406586 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 22:35:54.0725 0x0cac TapiSrv - ok 22:35:54.0756 0x0cac [ 04E1C782CF14B7282EBC633B0FD3ED16, 427610F0E99C22A374ED83A45E3BE0DE97CE89D5C669E1DC476E04854244ACC8 ] TBPanel C:\WINDOWS\system32\drivers\TBPanel.sys 22:35:54.0756 0x0cac TBPanel - ok 22:35:54.0803 0x0cac [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 22:35:54.0803 0x0cac Tcpip - ok 22:35:54.0834 0x0cac [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 22:35:54.0834 0x0cac TDPIPE - ok 22:35:54.0850 0x0cac [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 22:35:54.0850 0x0cac TDTCP - ok 22:35:54.0928 0x0cac [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 22:35:54.0944 0x0cac TermDD - ok 22:35:54.0959 0x0cac [ 52E0505408EDD4AB5CCC7F83B67B4299, 93DBA3282025C81DC43D4B43861A6CB30C9557CD0108D4D7E0C3B1269699CF22 ] TermService C:\WINDOWS\System32\termsrv.dll 22:35:54.0975 0x0cac TermService - ok 22:35:54.0990 0x0cac [ 55AAE86C7C2CADF6972ACD1D76C24A98, 25631E05E81E7C9C794DBB26B75F111C211EA22A031159F20B4461EA7EBCDF1C ] Themes C:\WINDOWS\System32\shsvcs.dll 22:35:55.0006 0x0cac Themes - ok 22:35:55.0006 0x0cac TosIde - ok 22:35:55.0053 0x0cac [ 9E70EB419D7785C286DC458A019BAB9B, 3901C6B9C9C197FED9C1039F2EBE0C5ACE240512ABBFECB388CAD201CE032760 ] TrkWks C:\WINDOWS\system32\trkwks.dll 22:35:55.0100 0x0cac TrkWks - ok 22:35:55.0147 0x0cac [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 22:35:55.0147 0x0cac Udfs - ok 22:35:55.0147 0x0cac ultra - ok 22:35:55.0178 0x0cac [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 22:35:55.0194 0x0cac Update - ok 22:35:55.0209 0x0cac [ E96A6BAEE0B2A14A38B45830D6E30697, 12314B1D96E025718F965C091E3CAD2865EDDAACA2E60A1A0DAF25630AE66B72 ] upnphost C:\WINDOWS\System32\upnphost.dll 22:35:55.0225 0x0cac upnphost - ok 22:35:55.0240 0x0cac [ EB90E28B28541EC845E5345609355CA7, 60C8DF04EB5839AB1B8625C385F4B2089C63FE613463026F779B331D9BC4D4D6 ] UPS C:\WINDOWS\System32\ups.exe 22:35:55.0240 0x0cac UPS - ok 22:35:55.0272 0x0cac [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 22:35:55.0272 0x0cac usbccgp - ok 22:35:55.0303 0x0cac [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 22:35:55.0303 0x0cac usbehci - ok 22:35:55.0334 0x0cac [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 22:35:55.0334 0x0cac usbhub - ok 22:35:55.0350 0x0cac [ A717C8721046828520C9EDF31288FC00, 1530BBE832EDBB0974AD89D723A03FF7A0094B368992D73C2C3E62A181DF1E0A ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 22:35:55.0350 0x0cac usbprint - ok 22:35:55.0381 0x0cac [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 22:35:55.0381 0x0cac usbscan - ok 22:35:55.0397 0x0cac [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 22:35:55.0397 0x0cac usbstor - ok 22:35:55.0397 0x0cac [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 22:35:55.0397 0x0cac usbuhci - ok 22:35:55.0412 0x0cac [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 22:35:55.0412 0x0cac VgaSave - ok 22:35:55.0412 0x0cac ViaIde - ok 22:35:55.0428 0x0cac [ 56B191AC5FC0DF219949C95A6C87AFE7, 5DCD42BD686869B394CFB9EFD727DCEEEAE239326DDE3D1655C456FCAE949D9F ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 22:35:55.0444 0x0cac VolSnap - ok 22:35:55.0475 0x0cac [ 7F2D7BFFC4554E1C742DD3629FD1FB1B, 4BFFC8A67F98AF69039DF0AFF1FDA11CFAD6464066E8ED92090D48392C43B6ED ] VSS C:\WINDOWS\System32\vssvc.exe 22:35:55.0475 0x0cac VSS - ok 22:35:55.0522 0x0cac [ A672CA3981352F8E9C30FEA056E80A62, 9AD34EFEB11EFEB234A246639FADF036F49FC67E542C4DE78D7C01E75BC62B59 ] W32Time C:\WINDOWS\system32\w32time.dll 22:35:55.0522 0x0cac W32Time - ok 22:35:55.0553 0x0cac [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 22:35:55.0553 0x0cac Wanarp - ok 22:35:55.0584 0x0cac [ 46A247F6617526AFE38B6F12F5512120, 24931910E3D678829A7A6CF1140CFE428E05057A4D3A14086ED66B884E847D2D ] wceusbsh C:\WINDOWS\system32\DRIVERS\wceusbsh.sys 22:35:55.0584 0x0cac wceusbsh - ok 22:35:55.0615 0x0cac [ D918617B46457B9AC28027722E30F647, 407284D3055DC11944D4EE7E4357E7CF9CAF8CA40CA50633AB6FD4A82CB7EEA6 ] Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys 22:35:55.0631 0x0cac Wdf01000 - ok 22:35:55.0647 0x0cac WDICA - ok 22:35:55.0694 0x0cac [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 22:35:55.0694 0x0cac wdmaud - ok 22:35:55.0725 0x0cac [ 81FB88B975E25D76E00B69879D8A434C, 2340CEE200CA3F0A546F88AAD3AFDCFD0805DB027E8480B4280D92E14F6C1F69 ] WebClient C:\WINDOWS\System32\webclnt.dll 22:35:55.0725 0x0cac WebClient - ok 22:35:55.0787 0x0cac [ 70C22297534A88B0AD0568900AB5A6D9, 2457D9B21CD8633D6A59FC053B70B9282A64066789EC020A9F2C937141E95C61 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 22:35:55.0803 0x0cac winmgmt - ok 22:35:55.0834 0x0cac [ 30FC6E5448D0CBAAA95280EEEF7FEDAE, 04374450882504D9031951F4E9317E5A128EBA5A22A3555ACD28BC742861AF9C ] WinUSB C:\WINDOWS\system32\DRIVERS\WinUSB.sys 22:35:55.0850 0x0cac WinUSB - ok 22:35:55.0865 0x0cac [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 22:35:55.0865 0x0cac WmdmPmSN - ok 22:35:55.0881 0x0cac [ A2B12D80A1670511B047A7D8BB647598, BDE141A77034608D926624583D252650D01B64EC2B3E8156A61D735C79E2A0E6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 22:35:55.0881 0x0cac WmiApSrv - ok 22:35:55.0928 0x0cac [ CDFA647AA82FDBA6C9C7A06155AFCB40, 4ACF2E90E4A933A5C662AFECFFB52997BED865953E452C80A772DF1B049060FD ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 22:35:55.0959 0x0cac WMPNetworkSvc - ok 22:35:55.0990 0x0cac [ CF4DEF1BF66F06964DC0D91844239104, CC1D9CECE2056D29A9651D51BB57C3F4F9BF9E90A4808CF7496C683C874FBD51 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys 22:35:55.0990 0x0cac WpdUsb - ok 22:35:56.0084 0x0cac [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe 22:35:56.0100 0x0cac WPFFontCache_v0400 - ok 22:35:56.0131 0x0cac [ B6669F49D42E09BC0F9889FAA0F3336D, B6147A60F763E562E26495A6ACAE759492A52AE3BEFEA4BF40B8874E4CF069F1 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 22:35:56.0131 0x0cac wscsvc - ok 22:35:56.0162 0x0cac [ 04550D5EB7EE82C115DB547C01DF09FD, 6A4D1E5F4E1C641B47BB48489D4205531597E942E02ECD75BCFA856F60A938B0 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 22:35:56.0162 0x0cac wuauserv - ok 22:35:56.0209 0x0cac [ EAA6324F51214D2F6718977EC9CE0DEF, B9DE1521395E09233FE519873702979C3EAF65FEC4B94B12A46CECB16C488543 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 22:35:56.0209 0x0cac WudfPf - ok 22:35:56.0225 0x0cac [ F91FF1E51FCA30B3C3981DB7D5924252, D7052B58F22638CA8B59C6FD7408D6D6DD1C33910912CACC05C133472CE0DDCE ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 22:35:56.0225 0x0cac WudfRd - ok 22:35:56.0272 0x0cac [ DDEE3682FE97037C45F4D7AB467CB8B6, D5A8F07AF4EDD9D7E17FEC6222D187E2981C177A479511E407756E0E5CB8D387 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 22:35:56.0272 0x0cac WudfSvc - ok 22:35:56.0319 0x0cac [ C2842273AAA77AC031EDB87FA19A2147, 8542392E337C543BCD9EDC7A15DC6E8DE8E9B8041CC7A8D707217C9FF0446882 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 22:35:56.0334 0x0cac WZCSVC - ok 22:35:56.0365 0x0cac [ 24ED6935771359A5AEF1FE8BF0C56F39, F0C3B781853714F48DE4F42533A7236CE11076208F190E79500F8A77C9CF9849 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 22:35:56.0381 0x0cac xmlprov - ok 22:35:56.0381 0x0cac ================ Scan global =============================== 22:35:56.0428 0x0cac [ 65C782F8CFC1BEBCC58E1532F44B6408, D5EB7357F37AC9CEF96BC1BCACE765B2897E502D699E64145EFA4DD62BCCE80B ] C:\WINDOWS\system32\basesrv.dll 22:35:56.0444 0x0cac [ F2515CEDFA83C225E126117835D7BF6A, FFDDBC97E0024DF9E05D199CABA0B0A0F0CC7508D477D7C6E2AAD8D505174810 ] C:\WINDOWS\system32\winsrv.dll 22:35:56.0444 0x0cac [ F2515CEDFA83C225E126117835D7BF6A, FFDDBC97E0024DF9E05D199CABA0B0A0F0CC7508D477D7C6E2AAD8D505174810 ] C:\WINDOWS\system32\winsrv.dll 22:35:56.0459 0x0cac [ 02A467E27AF55F7064C5B251E587315F, 309D6C6ABC9D7786354758C107B89C50AC722AEA3B10631714F326AB2D3BB3DF ] C:\WINDOWS\system32\services.exe 22:35:56.0475 0x0cac [ Global ] - ok 22:35:56.0475 0x0cac ================ Scan MBR ================================== 22:35:56.0490 0x0cac [ 32052574BF9F325AE309ABC7BFD04460 ] \Device\Harddisk0\DR0 22:35:56.0662 0x0cac \Device\Harddisk0\DR0 - ok 22:35:56.0662 0x0cac ================ Scan VBR ================================== 22:35:56.0662 0x0cac [ 5C5877534C3C2B3D70FF7159601D3B61 ] \Device\Harddisk0\DR0\Partition1 22:35:56.0709 0x0cac \Device\Harddisk0\DR0\Partition1 - ok 22:35:56.0709 0x0cac [ 8795F6692309D55A775EE67AF5A0E7A3 ] \Device\Harddisk0\DR0\Partition2 22:35:56.0740 0x0cac \Device\Harddisk0\DR0\Partition2 - ok 22:35:56.0772 0x0cac [ 549ED159262FB0DA99AC6ED28FB43003 ] \Device\Harddisk0\DR0\Partition3 22:35:56.0834 0x0cac \Device\Harddisk0\DR0\Partition3 - ok 22:35:56.0865 0x0cac [ B2C74214F594763B3CE5B7EC696F0B43 ] \Device\Harddisk0\DR0\Partition4 22:35:56.0928 0x0cac \Device\Harddisk0\DR0\Partition4 - ok 22:35:56.0944 0x0cac [ E35A1D419740040FFE509D1DAB45A356 ] \Device\Harddisk0\DR0\Partition5 22:35:56.0959 0x0cac \Device\Harddisk0\DR0\Partition5 - ok 22:35:56.0990 0x0cac [ 1A51CF9511733F63FE12CEA5D7DB0A9F ] \Device\Harddisk0\DR0\Partition6 22:35:57.0006 0x0cac \Device\Harddisk0\DR0\Partition6 - ok 22:35:57.0022 0x0cac [ BF4AF1B655DB1ACD44557999CD9C436B ] \Device\Harddisk0\DR0\Partition7 22:35:57.0037 0x0cac \Device\Harddisk0\DR0\Partition7 - ok 22:35:57.0069 0x0cac [ 4C3AA2D290B60B08E8473093DB4C7C75 ] \Device\Harddisk0\DR0\Partition8 22:35:57.0084 0x0cac \Device\Harddisk0\DR0\Partition8 - ok 22:35:57.0084 0x0cac ================ Scan generic autorun ====================== 22:35:57.0303 0x0cac [ 4E373D10060E4B07DF3DC03117D3795E, 391FECB8DC7CA211A9AA31FC770C0C3DF610ACBC3E30F8B855BFA8836D624338 ] D:\Ochrona\G Data\InternetSecurity\DelayLoader\AutorunDelayLoader.exe 22:35:57.0319 0x0cac G Data ASM - ok 22:35:57.0537 0x0cac [ 0DB20318CEB155799880FEC174988933, 3840A7C9DF01F118048E806D71BDC5686A8FCF316FB35E65045988B0271532D8 ] D:\Ochrona\G Data\InternetSecurity\Firewall\GDFirewallTray.exe 22:35:57.0569 0x0cac GDFirewallTray - ok 22:35:57.0584 0x0cac NvCplDaemon - ok 22:35:57.0600 0x0cac [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE 22:35:57.0600 0x0cac CTFMON.EXE - ok 22:35:57.0615 0x0cac [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE 22:35:57.0615 0x0cac CTFMON.EXE - ok 22:35:57.0615 0x0cac [ 1BD41EDA5B869AFC99895C39A8DE36E1, B532692D7E082A8AE60A199951F82C2E0EE0BAEA3A61F9BAE59E955C914FA3F0 ] C:\WINDOWS\system32\CTFMON.EXE 22:35:57.0615 0x0cac CTFMON.EXE - ok 22:35:57.0615 0x0cac Waiting for KSN requests completion. In queue: 158 22:35:58.0615 0x0cac Waiting for KSN requests completion. In queue: 158 22:35:59.0615 0x0cac Waiting for KSN requests completion. In queue: 158 22:36:00.0615 0x0cac Waiting for KSN requests completion. In queue: 158 22:36:01.0678 0x0cac AV detected via SS1: G DATA INTERNET SECURITY, 21.0, enabled, updated 22:36:01.0678 0x0cac FW detected via SS1: G DATA Personal Firewall, 1.0, enabled 22:36:04.0397 0x0cac ============================================================ 22:36:04.0397 0x0cac Scan finished 22:36:04.0397 0x0cac ============================================================ 22:36:04.0397 0x078c Detected object count: 0 22:36:04.0397 0x078c Actual detected object count: 0 22:36:30.0897 0x06a8 Deinitialize success