Virus Ukash et Kaspersky Rescue Disk

Résolu/Fermé
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017 - Modifié par Malekal_morte- le 28/04/2013 à 18:41
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017 - 28 avril 2013 à 23:27
Bonjour à tous.

C'est la première fois que j'écris pour exposer un problème informatique sur un forum, alors si mes infos sont mal données faites le moi savoir et je ferais au mieux pour corriger

J'ai été récemment victime de l'attaque d'un virus assez connu du nom de Ukash avec une fausse annonce de police etc. Depuis mon pc est complètement bloqué...

J'ai trouvé plusieurs solutions pour parer à cela dont l'utilisation de Kaspersky Rescue Disk 10.

Je me suis servi du tuto afin de m'aider à utiliser Kaspersky Rescue Disk, et je n'ai raté aucune étape. Malgré ça lorsque Kaspersky est lancé et que je peux sélectionner les disques à analyser, les partitions de mon ordi ne sont pas proposés dans les objet à analyser et je ne trouve pas comment les ajouter...

J'utilise Kaspersky depuis une clef USB et j'ai pas mal bidouillé dans le BIOS pour pouvoir la lancer et je ne sais pas si j'ai effectuer une fausse manip qui me cacherait mes partitions.

J'espère que vous saurez m'aider

Merci d'avance.
A voir également:

16 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 660
28 avril 2013 à 19:40
OK laisse tomber pour CD Kaspersky.

Essaye ça :
Lance une restauration en invite de commandes en mode sans échec - voir paragraphe Restauration du système en ligne de commandes mode sans échec: https://forum.malekal.com/viewtopic.php?t=20428&start=#p166263

Si tu es sur Windows Seven/8, lance une restauration du système à partir du menu "réparer mon ordinateur".
Voir second paragraphe : https://forum.malekal.com/viewtopic.php?t=20428&start=#p166847

** PRENDRE SON TEMPS ET BIEN LIRE LES INSTRUCTIONS QUI SONT SUR LA PAGE - NE PAS FAIRE UNE RESTAURATION D'USINE **

NB: La restauration du système ne provoque pas de perte de données, il recharge une "image" de Windows précédente.


Si la restauration est impossible :

Utilise le CD Live Malekal : https://www.malekal.com/malekal-live-cd-reparer-depanner-pc-windows/
Le but étant d'arriver sur un système d'exploitation tiers qui permet l'accès à tes fichiers Windows et donc de désinfecter ton ordinateur.

Suis la procédure indiqué sur la page :
- Utilise ISO2Disc pour graver l'ISO ou mettre sur Clef USB.
- Mettre le CD / Clef USB sur le PC infecté
- Redémarre l'ordinateur et changer la séquence de démarrage https://forum.malekal.com/viewtopic.php?t=9447&start= pour faire démarrer sur le CD ou clef USB.
- Une fois sur le CD Live Malekal - Lance RogueKiller
- Fais un scan
- Puis clic à droite sur Suppression (après le scan il doit être dégrisé).
- Le rapport RogueKiller est alors créé sur le bureau, copie/colle dans un nouveau message.
(tu peux poster depuis le Live CD, si tu as fait fonctionner le réseau/internet)
- Redémarre l'ordinateur et vois ce que cela donne.

1
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 660
Modifié par Malekal_morte- le 28/04/2013 à 18:41
Salut,

Pas besoin de faire une analyse.
Faut lancer Windowunlocker => https://forum.malekal.com/viewtopic.php?t=35913&start=

Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 19:36
Alors il y a bien une lueur d'espoir :)

Mais comme kaspersky ne détecte pas mon C: , la commande windowsunlocker n'a eu aucun effet...

Au démarrage de kaspersky au moment de l'assemblage des disques je n'ai pas le même messages d'erreur.

Le mien:

"Attention!
Espace insuffisant sur votre disque pour copier les fichiers requis - il faut 349 Mo de l'espace libre. Les fichiers seront placés dans la mémoire."

Je peux que sélectionner OK

En suite je tombe sur le bureau de kaspersky et mon C: pas visible juste une dossier noté disc
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 19:44
Ok je vais tenter ça et je donnerais des nouvelles une fois qu'une de ces options fonctionnera en espérant qu'une fonctionnera ^^'

Merci :)
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 20:10
Merveilleux ça a fonctionné!!!

La prochaine fois j'attendrai pas une semaine avant de poster sur un forum si j'arrive pas après plusieurs recherches ^^

J'ai donc restauré mon système à une date intérieur à celle où j'ai attrapé le virus, mais je pense qu'un scan complet et recommandé ou tout ce qui c'est passé après la date de restauration a disparu à jamais?

Et encore merci tu m'as retiré une sacré épine du pied ;)
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 660
Modifié par Malekal_morte- le 28/04/2013 à 20:13
:)

Pas besoin de scanner avec ton antivirus.
histoire d'être sûr que t'as pas ZeroAcces ou autres merdouilles :


[*] Télécharger sur le bureau https://www.luanagames.com/index.fr.html (by tigzy)
[*] Sur la page de RogueKiller - "Prendre Lien de téléchargement" - avec les cercles violets. En cliquant sur ces cercles le programme se télécharge.
[*] Quitter tous les programmes
[*] Lancer RogueKiller.exe.
[*] Attendre que le Prescan ait fini ...
[*] Lance un scan afin de débloquer le bouton Suppression à droite.
[*] Clic sur Suppression.
Poste le rapport ici.

!!! Je répète bien faire Suppression à droite et poster le rapport. !!!


puis :


Télécharge http://general-changelog-team.fr/telechargements/logiciels/viewdownload/75-outils-de-xplode/28-adwcleaner AdwCleaner ( d'Xplode ) sur ton bureau.
Lance le, clique sur [Suppression] puis patiente le temps du scan (Pas besoin de faire de Recherche avant).
Une fois le scan fini, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt



Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 21:24
Voilà pour le rapport de RogueKiller:

RogueKiller V8.5.4 [Mar 18 2013] par Tigzy
mail : tigzyRK<at>gmail<dot>com
Remontees : https://www.luanagames.com/index.fr.html
Site Web : https://www.luanagames.com/index.fr.html
Blog : http://tigzyrk.blogspot.com/

Systeme d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Demarrage : Mode normal
Utilisateur : Valentin_Plüer [Droits d'admin]
Mode : Suppression -- Date : 28/04/2013 21:22:54
| ARK || FAK || MBR |

¤¤¤ Processus malicieux : 0 ¤¤¤

¤¤¤ Entrees de registre : 4 ¤¤¤
[TASK][SUSP PATH] {B1480132-2212-4171-B489-B0A0FE39A751} : C:\Users\Valentin_Plüer\Desktop\Travail\HEIG\CAO\Catia V5 R19\01. Catia V5R19 P2 SP2\1-CATIA P2 V5R19 SP2 x86_CD1\setup.exe [x] -> SUPPRIMÉ
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> REMPLACÉ (1)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0)

¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

¤¤¤ Driver : [NON CHARGE] ¤¤¤

¤¤¤ Fichier HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts



¤¤¤ MBR Verif: ¤¤¤

+++++ PhysicalDrive0: OEMRAID0 +++++
--- User ---
[MBR] c372c96895286f4cc97399c41dc0ec14
[BSP] 811029c97be50c033af43a64e56d6873 : MBR Code unknown
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 1500 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 3074048 | Size: 834372 Mo
2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 1711869952 | Size: 100000 Mo
3 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 1916669952 | Size: 18000 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Termine : << RKreport[2]_D_28042013_212254.txt >>
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 21:33
Et voilà pour adwcleaner:

# AdwCleaner v2.300 - Rapport créé le 28/04/2013 à 21:27:51
# Mis à jour le 28/04/2013 par Xplode
# Système d'exploitation : Windows 7 Professional Service Pack 1 (64 bits)
# Nom d'utilisateur : Valentin_Plüer - PLUEER-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\Valentin_Plüer\Desktop\adwcleaner.exe
# Option [Suppression]


***** [Services] *****


***** [Fichiers / Dossiers] *****

Dossier Supprimé : C:\ProgramData\Partner
Dossier Supprimé : C:\Users\Valentin_Plüer\AppData\Roaming\OpenCandy
Dossier Supprimé : C:\Users\Valentin_Plüer\AppData\Roaming\pdfforge

***** [Registre] *****

Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
Clé Supprimée : HKCU\Software\SmartBar
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Clé Supprimée : HKLM\SOFTWARE\Classes\S
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Valeur Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]

***** [Navigateurs] *****

-\\ Internet Explorer v9.0.8112.16476

Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d-b8d3-c560f7c31a96&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} --> hxxp://www.google.com
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d-b8d3-c560f7c31a96&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} --> hxxp://www.google.com
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d-b8d3-c560f7c31a96&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} --> hxxp://www.google.com
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d-b8d3-c560f7c31a96&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} --> hxxp://www.google.com
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\SearchUrl - Default] = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d-b8d3-c560f7c31a96&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl - Default] = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d-b8d3-c560f7c31a96&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} --> hxxp://www.google.com

-\\ Google Chrome v26.0.1410.64

Fichier : C:\Users\Valentin_Plüer\AppData\Local\Google\Chrome\User Data\Default\Preferences

Supprimée [l.49] : keyword = "feed.helperbar.com",
Supprimée [l.53] : search_url = "hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=CH&userid=32433150-2f74-488d[...]

*************************

AdwCleaner[S1].txt - [4602 octets] - [28/04/2013 21:27:51]

########## EOF - C:\AdwCleaner[S1].txt - [4662 octets] ##########
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 21:54
Pendant qu'est y est, vu ce qui c'est passé, j'utilise Avast version gratuit pour l'instant. Est-ce que cet anti-virus et valable ou tu aurais quelque chose de mieux à me conseiller et qui reste gratuit?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 660
Modifié par Malekal_morte- le 28/04/2013 à 22:07
Les mieux sont payants style Kaspersky, Bitdefender ou Norton.
Mais en fait ton problème n'est pas au niveau de l'antivirus.
On verra à la fin pour les conseils :)

J'ai un doute sur un truc.

Télécharge et lance une analyse de BitDefender ZeroAccess removal tool : https://forum.malekal.com/viewtopic.php?t=36424&start=
Fais skup si quelque chose est détecté.
Donne le rapport.


Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 22:30
Ok,

Quand je clique sur le téléchargement je suis redirigé sur hotforsecurity et il me met no download found :/ t'as un autre lien?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 660
28 avril 2013 à 22:45
me suis trompé de trucs :

Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Fais skip si quelque chose est détecté.
Donne le rapport.
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 22:53
22:51:25.0383 10448 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
22:51:25.0579 10448 ============================================================
22:51:25.0579 10448 Current date / time: 2013/04/28 22:51:25.0579
22:51:25.0579 10448 SystemInfo:
22:51:25.0579 10448
22:51:25.0579 10448 OS Version: 6.1.7601 ServicePack: 1.0
22:51:25.0579 10448 Product type: Workstation
22:51:25.0579 10448 ComputerName: PLUEER-PC
22:51:25.0579 10448 UserName: Valentin_Plüer
22:51:25.0579 10448 Windows directory: C:\Windows
22:51:25.0579 10448 System windows directory: C:\Windows
22:51:25.0579 10448 Running under WOW64
22:51:25.0579 10448 Processor architecture: Intel x64
22:51:25.0579 10448 Number of processors: 8
22:51:25.0579 10448 Page size: 0x1000
22:51:25.0579 10448 Boot type: Normal boot
22:51:25.0579 10448 ============================================================
22:51:25.0898 10448 Drive \Device\Harddisk0\DR0 - Size: 0xE8E1300000 (931.52 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:51:25.0902 10448 ============================================================
22:51:25.0902 10448 \Device\Harddisk0\DR0:
22:51:25.0902 10448 MBR partitions:
22:51:25.0902 10448 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x2EE000
22:51:25.0902 10448 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x65DA2000
22:51:25.0928 10448 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x66091800, BlocksNum 0xC34F800
22:51:25.0928 10448 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x723E1000, BlocksNum 0x2328000
22:51:25.0928 10448 ============================================================
22:51:25.0961 10448 C: <-> \Device\Harddisk0\DR0\Partition2
22:51:26.0032 10448 Q: <-> \Device\Harddisk0\DR0\Partition4
22:51:26.0067 10448 D: <-> \Device\Harddisk0\DR0\Partition3
22:51:26.0068 10448 ============================================================
22:51:26.0068 10448 Initialize success
22:51:26.0068 10448 ============================================================
22:51:41.0319 11164 ============================================================
22:51:41.0319 11164 Scan started
22:51:41.0319 11164 Mode: Manual;
22:51:41.0319 11164 ============================================================
22:51:41.0662 11164 ================ Scan system memory ========================
22:51:41.0662 11164 System memory - ok
22:51:41.0663 11164 ================ Scan services =============================
22:51:41.0891 11164 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
22:51:41.0893 11164 1394ohci - ok
22:51:41.0950 11164 [ 144D54704A881047AE1084C6F1163060 ] 5U877 C:\Windows\system32\DRIVERS\5U877.sys
22:51:41.0953 11164 5U877 - ok
22:51:41.0970 11164 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
22:51:41.0973 11164 ACPI - ok
22:51:42.0000 11164 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
22:51:42.0001 11164 AcpiPmi - ok
22:51:42.0116 11164 [ 5ED794DBE47128521AE48E1381042052 ] AcPrfMgrSvc C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe
22:51:42.0117 11164 AcPrfMgrSvc - ok
22:51:42.0184 11164 [ 20C35FE68529406364E79C051D0DAE54 ] AcSvc C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe
22:51:42.0186 11164 AcSvc - ok
22:51:42.0258 11164 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
22:51:42.0259 11164 AdobeARMservice - ok
22:51:42.0343 11164 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
22:51:42.0344 11164 AdobeFlashPlayerUpdateSvc - ok
22:51:42.0377 11164 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
22:51:42.0380 11164 adp94xx - ok
22:51:42.0408 11164 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
22:51:42.0410 11164 adpahci - ok
22:51:42.0430 11164 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
22:51:42.0432 11164 adpu320 - ok
22:51:42.0450 11164 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:51:42.0452 11164 AeLookupSvc - ok
22:51:42.0493 11164 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
22:51:42.0497 11164 AFD - ok
22:51:42.0525 11164 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
22:51:42.0533 11164 agp440 - ok
22:51:42.0564 11164 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
22:51:42.0566 11164 ALG - ok
22:51:42.0575 11164 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
22:51:42.0576 11164 aliide - ok
22:51:42.0578 11164 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
22:51:42.0578 11164 amdide - ok
22:51:42.0589 11164 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
22:51:42.0590 11164 AmdK8 - ok
22:51:42.0593 11164 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
22:51:42.0594 11164 AmdPPM - ok
22:51:42.0607 11164 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:51:42.0609 11164 amdsata - ok
22:51:42.0622 11164 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
22:51:42.0624 11164 amdsbs - ok
22:51:42.0664 11164 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:51:42.0664 11164 amdxata - ok
22:51:42.0681 11164 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
22:51:42.0682 11164 AppID - ok
22:51:42.0709 11164 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:51:42.0710 11164 AppIDSvc - ok
22:51:42.0731 11164 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
22:51:42.0732 11164 Appinfo - ok
22:51:42.0806 11164 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:51:42.0808 11164 Apple Mobile Device - ok
22:51:42.0828 11164 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
22:51:42.0830 11164 AppMgmt - ok
22:51:42.0844 11164 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
22:51:42.0846 11164 arc - ok
22:51:42.0849 11164 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
22:51:42.0850 11164 arcsas - ok
22:51:42.0998 11164 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
22:51:43.0000 11164 aspnet_state - ok
22:51:43.0022 11164 [ B217378ED9A964E15346A67FEF609A17 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
22:51:43.0022 11164 aswFsBlk - ok
22:51:43.0077 11164 [ E92635BB235B03ED03B17CBB59F77FA4 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
22:51:43.0078 11164 aswMonFlt - ok
22:51:43.0149 11164 [ 8F90459AFB7FD4557D935CE639EF6110 ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
22:51:43.0150 11164 aswRdr - ok
22:51:43.0213 11164 [ DE6759B8D8E62BF0FFF2B05F05AFCEE6 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
22:51:43.0214 11164 aswRvrt - ok
22:51:43.0253 11164 [ AB8B4D3136D18A20777036E0F0CFC5E1 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
22:51:43.0257 11164 aswSnx - ok
22:51:43.0274 11164 [ 97D4D725BD32C965119E6C8E252F8C64 ] aswSP C:\Windows\system32\drivers\aswSP.sys
22:51:43.0276 11164 aswSP - ok
22:51:43.0292 11164 [ D62C10D1829C65115111C160EA956260 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
22:51:43.0293 11164 aswTdi - ok
22:51:43.0315 11164 [ 7E44C2684A6CA779B9D07CB4BD3F649D ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
22:51:43.0317 11164 aswVmm - ok
22:51:43.0332 11164 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:51:43.0333 11164 AsyncMac - ok
22:51:43.0379 11164 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
22:51:43.0380 11164 atapi - ok
22:51:43.0430 11164 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:51:43.0434 11164 AudioEndpointBuilder - ok
22:51:43.0438 11164 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
22:51:43.0440 11164 AudioSrv - ok
22:51:43.0507 11164 [ 41735B82DB57E4EBE9504EC400FD120E ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:51:43.0508 11164 avast! Antivirus - ok
22:51:43.0523 11164 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:51:43.0524 11164 AxInstSV - ok
22:51:43.0553 11164 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
22:51:43.0556 11164 b06bdrv - ok
22:51:43.0577 11164 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
22:51:43.0580 11164 b57nd60a - ok
22:51:43.0649 11164 [ F01759FA97126CC69DFA85CEDA0717A1 ] bcbtums C:\Windows\system32\drivers\bcbtums.sys
22:51:43.0649 11164 bcbtums - ok
22:51:43.0700 11164 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
22:51:43.0702 11164 BDESVC - ok
22:51:43.0731 11164 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
22:51:43.0740 11164 Beep - ok
22:51:43.0798 11164 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
22:51:43.0802 11164 BFE - ok
22:51:43.0830 11164 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
22:51:43.0838 11164 BITS - ok
22:51:43.0851 11164 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:51:43.0853 11164 blbdrive - ok
22:51:43.0889 11164 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:51:43.0893 11164 Bonjour Service - ok
22:51:43.0913 11164 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:51:43.0915 11164 bowser - ok
22:51:43.0929 11164 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
22:51:43.0930 11164 BrFiltLo - ok
22:51:43.0933 11164 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
22:51:43.0933 11164 BrFiltUp - ok
22:51:43.0959 11164 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
22:51:43.0960 11164 Browser - ok
22:51:43.0981 11164 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:51:43.0984 11164 Brserid - ok
22:51:43.0986 11164 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:51:43.0987 11164 BrSerWdm - ok
22:51:44.0006 11164 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:51:44.0007 11164 BrUsbMdm - ok
22:51:44.0009 11164 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:51:44.0010 11164 BrUsbSer - ok
22:51:44.0054 11164 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
22:51:44.0055 11164 BthEnum - ok
22:51:44.0073 11164 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
22:51:44.0074 11164 BTHMODEM - ok
22:51:44.0094 11164 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
22:51:44.0097 11164 BthPan - ok
22:51:44.0122 11164 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
22:51:44.0133 11164 BTHPORT - ok
22:51:44.0156 11164 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
22:51:44.0157 11164 bthserv - ok
22:51:44.0175 11164 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
22:51:44.0176 11164 BTHUSB - ok
22:51:44.0223 11164 [ 3AFF6DC496B8A8D12C867E3FC7C86FAC ] btwampfl C:\Windows\system32\drivers\btwampfl.sys
22:51:44.0225 11164 btwampfl - ok
22:51:44.0257 11164 [ 336BBA0909B3636AB7D06A71D7B1C0DC ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
22:51:44.0258 11164 btwaudio - ok
22:51:44.0297 11164 [ 9FF58F76024D25784755B01F926B00BE ] btwavdt C:\Windows\system32\DRIVERS\btwavdt.sys
22:51:44.0298 11164 btwavdt - ok
22:51:44.0373 11164 [ 26A80D7ACA49E03A403806418B5FED46 ] btwdins C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
22:51:44.0378 11164 btwdins - ok
22:51:44.0391 11164 [ B1ACFD00CDD13B48D86F46BFEC153BF9 ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
22:51:44.0391 11164 btwl2cap - ok
22:51:44.0401 11164 [ EDD953D635F3AA89EF902E3F82D60D22 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
22:51:44.0401 11164 btwrchid - ok
22:51:44.0444 11164 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:51:44.0453 11164 cdfs - ok
22:51:44.0487 11164 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:51:44.0489 11164 cdrom - ok
22:51:44.0539 11164 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
22:51:44.0540 11164 CertPropSvc - ok
22:51:44.0555 11164 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
22:51:44.0556 11164 circlass - ok
22:51:44.0583 11164 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
22:51:44.0587 11164 CLFS - ok
22:51:44.0632 11164 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:51:44.0633 11164 clr_optimization_v2.0.50727_32 - ok
22:51:44.0657 11164 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
22:51:44.0658 11164 clr_optimization_v2.0.50727_64 - ok
22:51:44.0729 11164 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:51:44.0730 11164 clr_optimization_v4.0.30319_32 - ok
22:51:44.0757 11164 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
22:51:44.0759 11164 clr_optimization_v4.0.30319_64 - ok
22:51:44.0794 11164 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
22:51:44.0795 11164 CmBatt - ok
22:51:44.0797 11164 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
22:51:44.0797 11164 cmdide - ok
22:51:44.0859 11164 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
22:51:44.0863 11164 CNG - ok
22:51:44.0955 11164 [ 1C15404EA8FC42DAB8A7B3765ED53E58 ] CodeMeter.exe C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
22:51:44.0964 11164 CodeMeter.exe - ok
22:51:45.0026 11164 [ 479A9941C8BE977DD9E4B1CB5AA464CC ] CODESYS Control Win V3 C:\Program Files (x86)\3S CODESYS\GatewayPLC\CODESYSControlService.exe
22:51:45.0029 11164 CODESYS Control Win V3 - ok
22:51:45.0057 11164 [ BD0E7CF190A86D7FBD1537FA305C67BE ] CODESYS Gateway V3 C:\Program Files (x86)\3S CODESYS\GatewayPLC\GatewayService.exe
22:51:45.0060 11164 CODESYS Gateway V3 - ok
22:51:45.0095 11164 [ 4F3AD9EB96F542012793C6BA2B585373 ] CODESYS ServiceControl C:\Program Files (x86)\3S CODESYS\GatewayPLC\ServiceControl.exe
22:51:45.0097 11164 CODESYS ServiceControl - ok
22:51:45.0158 11164 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
22:51:45.0158 11164 Compbatt - ok
22:51:45.0189 11164 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
22:51:45.0190 11164 CompositeBus - ok
22:51:45.0209 11164 COMSysApp - ok
22:51:45.0330 11164 [ A2E0A490F1F49ED6E3B83DB52679B036 ] CoordinatorServiceHost C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
22:51:45.0332 11164 CoordinatorServiceHost - ok
22:51:45.0424 11164 [ BA4EF9EB2FFA3F2DF9D207B8A9A027F5 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe
22:51:45.0427 11164 cphs - ok
22:51:45.0442 11164 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
22:51:45.0444 11164 crcdisk - ok
22:51:45.0487 11164 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:51:45.0490 11164 CryptSvc - ok
22:51:45.0519 11164 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
22:51:45.0526 11164 CSC - ok
22:51:45.0562 11164 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
22:51:45.0566 11164 CscService - ok
22:51:45.0613 11164 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
22:51:45.0617 11164 DcomLaunch - ok
22:51:45.0658 11164 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
22:51:45.0661 11164 defragsvc - ok
22:51:45.0693 11164 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:51:45.0694 11164 DfsC - ok
22:51:45.0711 11164 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
22:51:45.0714 11164 Dhcp - ok
22:51:45.0727 11164 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
22:51:45.0727 11164 discache - ok
22:51:45.0767 11164 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
22:51:45.0768 11164 Disk - ok
22:51:45.0791 11164 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
22:51:45.0793 11164 dmvsc - ok
22:51:45.0815 11164 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:51:45.0817 11164 Dnscache - ok
22:51:45.0832 11164 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
22:51:45.0834 11164 dot3svc - ok
22:51:45.0914 11164 [ 9597BCB69286FF017DB1A0FB8144408D ] DozeSvc C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE
22:51:45.0917 11164 DozeSvc - ok
22:51:45.0929 11164 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
22:51:45.0932 11164 DPS - ok
22:51:46.0029 11164 [ 60E55C7F4D6D719B4FA65B5A2BF14A6D ] DraftSight API Service C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
22:51:46.0033 11164 DraftSight API Service - ok
22:51:46.0078 11164 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:51:46.0079 11164 drmkaud - ok
22:51:46.0107 11164 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
22:51:46.0109 11164 dtsoftbus01 - ok
22:51:46.0134 11164 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:51:46.0138 11164 DXGKrnl - ok
22:51:46.0173 11164 [ 3CE83D7EE95D9C9F03323810A2E747DF ] DzHDD64 C:\Windows\system32\DRIVERS\DzHDD64.sys
22:51:46.0173 11164 DzHDD64 - ok
22:51:46.0234 11164 [ 03F4C5C12FC1C69F838DA723475EF650 ] e1cexpress C:\Windows\system32\DRIVERS\e1c62x64.sys
22:51:46.0236 11164 e1cexpress - ok
22:51:46.0238 11164 EagleX64 - ok
22:51:46.0275 11164 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
22:51:46.0277 11164 EapHost - ok
22:51:46.0335 11164 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
22:51:46.0353 11164 ebdrv - ok
22:51:46.0373 11164 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
22:51:46.0375 11164 EFS - ok
22:51:46.0412 11164 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:51:46.0416 11164 ehRecvr - ok
22:51:46.0427 11164 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
22:51:46.0428 11164 ehSched - ok
22:51:46.0467 11164 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
22:51:46.0470 11164 elxstor - ok
22:51:46.0478 11164 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
22:51:46.0479 11164 ErrDev - ok
22:51:46.0506 11164 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
22:51:46.0509 11164 EventSystem - ok
22:51:46.0569 11164 [ 23D401A43DADED10A153B9F3A7E66C91 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
22:51:46.0574 11164 EvtEng - ok
22:51:46.0607 11164 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
22:51:46.0609 11164 exfat - ok
22:51:46.0642 11164 [ EB3A7D5663ACAC417DF986D4AEE12170 ] Fastboot C:\Windows\system32\DRIVERS\Fastboot.sys
22:51:46.0650 11164 Fastboot - ok
22:51:46.0700 11164 [ 63511240AF70D10343A4AE05F8E2CA12 ] FastbootService C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
22:51:46.0701 11164 FastbootService - ok
22:51:46.0714 11164 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:51:46.0716 11164 fastfat - ok
22:51:46.0760 11164 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
22:51:46.0764 11164 Fax - ok
22:51:46.0804 11164 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
22:51:46.0805 11164 fdc - ok
22:51:46.0819 11164 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
22:51:46.0821 11164 fdPHost - ok
22:51:46.0823 11164 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
22:51:46.0825 11164 FDResPub - ok
22:51:46.0834 11164 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:51:46.0835 11164 FileInfo - ok
22:51:46.0850 11164 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:51:46.0851 11164 Filetrace - ok
22:51:46.0938 11164 [ 73081CF28F0AE20A52CA4F67CEE6E6B0 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
22:51:46.0943 11164 FLEXnet Licensing Service - ok
22:51:47.0011 11164 [ 5CEE6CD43AE5844C49300EA0B1E557EE ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
22:51:47.0017 11164 FLEXnet Licensing Service 64 - ok
22:51:47.0031 11164 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
22:51:47.0032 11164 flpydisk - ok
22:51:47.0050 11164 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:51:47.0052 11164 FltMgr - ok
22:51:47.0100 11164 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
22:51:47.0106 11164 FontCache - ok
22:51:47.0210 11164 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:51:47.0211 11164 FontCache3.0.0.0 - ok
22:51:47.0220 11164 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:51:47.0222 11164 FsDepends - ok
22:51:47.0237 11164 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:51:47.0238 11164 Fs_Rec - ok
22:51:47.0259 11164 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:51:47.0261 11164 fvevol - ok
22:51:47.0278 11164 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
22:51:47.0279 11164 gagp30kx - ok
22:51:47.0310 11164 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:51:47.0311 11164 GEARAspiWDM - ok
22:51:47.0356 11164 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
22:51:47.0362 11164 gpsvc - ok
22:51:47.0421 11164 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:51:47.0422 11164 gupdate - ok
22:51:47.0424 11164 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:51:47.0425 11164 gupdatem - ok
22:51:47.0447 11164 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:51:47.0448 11164 hcw85cir - ok
22:51:47.0485 11164 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:51:47.0489 11164 HdAudAddService - ok
22:51:47.0521 11164 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:51:47.0522 11164 HDAudBus - ok
22:51:47.0548 11164 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
22:51:47.0549 11164 HidBatt - ok
22:51:47.0562 11164 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
22:51:47.0564 11164 HidBth - ok
22:51:47.0578 11164 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
22:51:47.0580 11164 HidIr - ok
22:51:47.0592 11164 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
22:51:47.0594 11164 hidserv - ok
22:51:47.0620 11164 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:51:47.0622 11164 HidUsb - ok
22:51:47.0630 11164 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:51:47.0633 11164 hkmsvc - ok
22:51:47.0670 11164 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:51:47.0673 11164 HomeGroupListener - ok
22:51:47.0698 11164 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:51:47.0701 11164 HomeGroupProvider - ok
22:51:47.0717 11164 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
22:51:47.0718 11164 HpSAMD - ok
22:51:47.0736 11164 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:51:47.0742 11164 HTTP - ok
22:51:47.0754 11164 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:51:47.0754 11164 hwpolicy - ok
22:51:47.0816 11164 [ 16A7CA284629A4D002F7B992C9A49EF9 ] HyperW7Svc C:\Program Files\Lenovo\RapidBoot\HyperW7Svc64.exe
22:51:47.0818 11164 HyperW7Svc - ok
22:51:47.0844 11164 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
22:51:47.0846 11164 i8042prt - ok
22:51:47.0876 11164 [ CCFA835960E35F30D28A868E0B3B8722 ] iaStor C:\Windows\system32\drivers\iaStor.sys
22:51:47.0878 11164 iaStor - ok
22:51:47.0959 11164 [ 1F35EFEC56CD1BF62435EAF97EABC3B3 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
22:51:47.0960 11164 IAStorDataMgrSvc - ok
22:51:48.0009 11164 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:51:48.0012 11164 iaStorV - ok
22:51:48.0053 11164 [ 72B253CDBCAA10E88AAD0BA39CC83BCD ] IBMPMDRV C:\Windows\system32\DRIVERS\ibmpmdrv.sys
22:51:48.0054 11164 IBMPMDRV - ok
22:51:48.0068 11164 [ 4925FFB084C9AD02E8EEF01FB18BF5AC ] IBMPMSVC C:\Windows\system32\ibmpmsvc.exe
22:51:48.0070 11164 IBMPMSVC - ok
22:51:48.0111 11164 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
22:51:48.0116 11164 idsvc - ok
22:51:48.0256 11164 [ 5318D51AC69A9C0FEF67D36CBE8BEA68 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
22:51:48.0339 11164 igfx - ok
22:51:48.0374 11164 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
22:51:48.0375 11164 iirsp - ok
22:51:48.0409 11164 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
22:51:48.0416 11164 IKEEXT - ok
22:51:48.0449 11164 [ 314285071F7117263BD246E35C17FD82 ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
22:51:48.0451 11164 intaud_WaveExtensible - ok
22:51:48.0512 11164 [ 354718FC1DD8498B772E11779173DEAF ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
22:51:48.0526 11164 IntcAzAudAddService - ok
22:51:48.0585 11164 [ 832CE330DD987227B7DEA8C03F22AEFA ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
22:51:48.0588 11164 Intel(R) Capability Licensing Service Interface - ok
22:51:48.0638 11164 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
22:51:48.0639 11164 intelide - ok
22:51:48.0654 11164 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:51:48.0654 11164 intelppm - ok
22:51:48.0677 11164 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:51:48.0680 11164 IPBusEnum - ok
22:51:48.0693 11164 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:51:48.0694 11164 IpFilterDriver - ok
22:51:48.0742 11164 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:51:48.0747 11164 iphlpsvc - ok
22:51:48.0757 11164 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
22:51:48.0759 11164 IPMIDRV - ok
22:51:48.0772 11164 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:51:48.0774 11164 IPNAT - ok
22:51:48.0817 11164 [ 0F261EC4F514926177C70C1832374231 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
22:51:48.0820 11164 iPod Service - ok
22:51:48.0832 11164 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:51:48.0833 11164 IRENUM - ok
22:51:48.0860 11164 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
22:51:48.0861 11164 isapnp - ok
22:51:48.0882 11164 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
22:51:48.0884 11164 iScsiPrt - ok
22:51:48.0928 11164 [ B2381712638B0B714D0EEAB9A1F7C640 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys
22:51:48.0928 11164 iusb3hcs - ok
22:51:48.0940 11164 [ FD2C6457232E95C014DAD21DEBC64867 ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys
22:51:48.0942 11164 iusb3hub - ok
22:51:48.0961 11164 [ F6A2B5D030BE7EDF8ADC12C9A40825A8 ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys
22:51:48.0964 11164 iusb3xhc - ok
22:51:49.0008 11164 [ 4487AD9C070D3973FE28AB4406555FC6 ] iwdbus C:\Windows\system32\DRIVERS\iwdbus.sys
22:51:49.0009 11164 iwdbus - ok
22:51:49.0047 11164 [ 0043D9FB61C35F90886B1E93DD556FAF ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
22:51:49.0049 11164 jhi_service - ok
22:51:49.0087 11164 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:51:49.0088 11164 kbdclass - ok
22:51:49.0115 11164 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
22:51:49.0116 11164 kbdhid - ok
22:51:49.0148 11164 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
22:51:49.0150 11164 KeyIso - ok
22:51:49.0173 11164 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:51:49.0174 11164 KSecDD - ok
22:51:49.0189 11164 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:51:49.0191 11164 KSecPkg - ok
22:51:49.0201 11164 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
22:51:49.0202 11164 ksthunk - ok
22:51:49.0230 11164 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
22:51:49.0233 11164 KtmRm - ok
22:51:49.0291 11164 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
22:51:49.0295 11164 LanmanServer - ok
22:51:49.0320 11164 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:51:49.0323 11164 LanmanWorkstation - ok
22:51:49.0375 11164 [ 4A0235E9822B220339E34D8C122BB6D1 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
22:51:49.0376 11164 LENOVO.CAMMUTE - ok
22:51:49.0433 11164 [ 340288B3B2EDC8AFD5FF127DF85142A7 ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
22:51:49.0434 11164 LENOVO.MICMUTE - ok
22:51:49.0436 11164 [ 93921A19D885755B9751C3744DBCB8FD ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
22:51:49.0437 11164 LENOVO.TPKNRSVC - ok
22:51:49.0451 11164 [ 79F99A4D59825839B7E563B4BCF52C5E ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
22:51:49.0452 11164 LENOVO.TVTVCAM - ok
22:51:49.0483 11164 [ F7DE50781DC4D162C1005EB30D98F931 ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
22:51:49.0484 11164 Lenovo.VIRTSCRLSVC - ok
22:51:49.0522 11164 [ 606DA892A53FA863B67F8D3F8FF016A0 ] LenovoRd C:\Windows\system32\Drivers\LenovoRd.sys
22:51:49.0524 11164 LenovoRd - ok
22:51:49.0555 11164 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:51:49.0556 11164 lltdio - ok
22:51:49.0586 11164 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:51:49.0589 11164 lltdsvc - ok
22:51:49.0612 11164 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
22:51:49.0614 11164 lmhosts - ok
22:51:49.0656 11164 [ 2FB262276D1C689C6886B1C0710342FA ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
22:51:49.0658 11164 LMS - ok
22:51:49.0699 11164 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
22:51:49.0700 11164 LSI_FC - ok
22:51:49.0707 11164 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
22:51:49.0709 11164 LSI_SAS - ok
22:51:49.0717 11164 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
22:51:49.0719 11164 LSI_SAS2 - ok
22:51:49.0726 11164 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
22:51:49.0728 11164 LSI_SCSI - ok
22:51:49.0742 11164 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
22:51:49.0744 11164 luafv - ok
22:51:49.0762 11164 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:51:49.0765 11164 Mcx2Svc - ok
22:51:49.0779 11164 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
22:51:49.0780 11164 megasas - ok
22:51:49.0784 11164 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
22:51:49.0785 11164 MegaSR - ok
22:51:49.0805 11164 [ 6B01B7414A105B9E51652089A03027CF ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
22:51:49.0805 11164 MEIx64 - ok
22:51:49.0862 11164 Microsoft SharePoint Workspace Audit Service - ok
22:51:49.0883 11164 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
22:51:49.0886 11164 MMCSS - ok
22:51:49.0903 11164 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
22:51:49.0904 11164 Modem - ok
22:51:49.0946 11164 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:51:49.0946 11164 monitor - ok
22:51:49.0988 11164 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:51:49.0988 11164 mouclass - ok
22:51:50.0019 11164 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:51:50.0021 11164 mouhid - ok
22:51:50.0051 11164 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:51:50.0052 11164 mountmgr - ok
22:51:50.0068 11164 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
22:51:50.0069 11164 mpio - ok
22:51:50.0072 11164 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:51:50.0074 11164 mpsdrv - ok
22:51:50.0098 11164 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
22:51:50.0102 11164 MpsSvc - ok
22:51:50.0105 11164 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:51:50.0107 11164 MRxDAV - ok
22:51:50.0116 11164 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:51:50.0124 11164 mrxsmb - ok
22:51:50.0142 11164 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:51:50.0144 11164 mrxsmb10 - ok
22:51:50.0154 11164 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:51:50.0156 11164 mrxsmb20 - ok
22:51:50.0191 11164 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
22:51:50.0192 11164 msahci - ok
22:51:50.0195 11164 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
22:51:50.0196 11164 msdsm - ok
22:51:50.0207 11164 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
22:51:50.0209 11164 MSDTC - ok
22:51:50.0239 11164 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:51:50.0240 11164 Msfs - ok
22:51:50.0263 11164 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:51:50.0264 11164 mshidkmdf - ok
22:51:50.0291 11164 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
22:51:50.0291 11164 msisadrv - ok
22:51:50.0324 11164 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:51:50.0326 11164 MSiSCSI - ok
22:51:50.0328 11164 msiserver - ok
22:51:50.0353 11164 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:51:50.0354 11164 MSKSSRV - ok
22:51:50.0388 11164 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:51:50.0389 11164 MSPCLOCK - ok
22:51:50.0403 11164 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:51:50.0404 11164 MSPQM - ok
22:51:50.0420 11164 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:51:50.0423 11164 MsRPC - ok
22:51:50.0435 11164 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
22:51:50.0435 11164 mssmbios - ok
22:51:50.0438 11164 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:51:50.0439 11164 MSTEE - ok
22:51:50.0454 11164 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
22:51:50.0455 11164 MTConfig - ok
22:51:50.0468 11164 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
22:51:50.0468 11164 Mup - ok
22:51:50.0516 11164 [ 48C9BA25EDA90E3DB07ADAC8CD32F5F3 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
22:51:50.0518 11164 MyWiFiDHCPDNS - ok
22:51:50.0541 11164 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
22:51:50.0546 11164 napagent - ok
22:51:50.0577 11164 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:51:50.0580 11164 NativeWifiP - ok
22:51:50.0630 11164 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
22:51:50.0634 11164 NDIS - ok
22:51:50.0671 11164 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:51:50.0672 11164 NdisCap - ok
22:51:50.0700 11164 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:51:50.0702 11164 NdisTapi - ok
22:51:50.0726 11164 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:51:50.0728 11164 Ndisuio - ok
22:51:50.0759 11164 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:51:50.0761 11164 NdisWan - ok
22:51:50.0770 11164 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:51:50.0771 11164 NDProxy - ok
22:51:50.0785 11164 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:51:50.0787 11164 NetBIOS - ok
22:51:50.0802 11164 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:51:50.0804 11164 NetBT - ok
22:51:50.0806 11164 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
22:51:50.0807 11164 Netlogon - ok
22:51:50.0853 11164 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
22:51:50.0858 11164 Netman - ok
22:51:50.0907 11164 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:51:50.0908 11164 NetMsmqActivator - ok
22:51:50.0937 11164 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:51:50.0937 11164 NetPipeActivator - ok
22:51:50.0977 11164 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
22:51:50.0981 11164 netprofm - ok
22:51:50.0983 11164 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:51:50.0983 11164 NetTcpActivator - ok
22:51:50.0985 11164 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:51:50.0986 11164 NetTcpPortSharing - ok
22:51:51.0109 11164 [ FAD6C5610D020534401966CD72A1C306 ] NETwNs64 C:\Windows\system32\DRIVERS\Netwsw00.sys
22:51:51.0166 11164 NETwNs64 - ok
22:51:51.0204 11164 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
22:51:51.0205 11164 nfrd960 - ok
22:51:51.0243 11164 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
22:51:51.0246 11164 NlaSvc - ok
22:51:51.0267 11164 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:51:51.0269 11164 Npfs - ok
22:51:51.0279 11164 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
22:51:51.0281 11164 nsi - ok
22:51:51.0288 11164 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:51:51.0288 11164 nsiproxy - ok
22:51:51.0331 11164 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:51:51.0338 11164 Ntfs - ok
22:51:51.0351 11164 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
22:51:51.0352 11164 Null - ok
22:51:51.0377 11164 [ CE4EE0E09B5FECEA1CE979CF750BCAA4 ] nvkflt C:\Windows\system32\DRIVERS\nvkflt.sys
22:51:51.0378 11164 nvkflt - ok
22:51:51.0540 11164 [ A48BFF12CEBF631DC329FB4223201BFA ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:51:51.0590 11164 nvlddmkm - ok
22:51:51.0603 11164 [ 159D8FDC772133B7D2551A22B14D5263 ] nvpciflt C:\Windows\system32\DRIVERS\nvpciflt.sys
22:51:51.0604 11164 nvpciflt - ok
22:51:51.0632 11164 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:51:51.0637 11164 nvraid - ok
22:51:51.0648 11164 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:51:51.0650 11164 nvstor - ok
22:51:51.0699 11164 [ C4E884D605E12A1F815C89C830873BF7 ] nvsvc C:\Windows\system32\nvvsvc.exe
22:51:51.0704 11164 nvsvc - ok
22:51:51.0762 11164 [ E504A2CB3E7CE879E882D263DF242FC1 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
22:51:51.0771 11164 nvUpdatusService - ok
22:51:51.0783 11164 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
22:51:51.0784 11164 nv_agp - ok
22:51:51.0805 11164 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
22:51:51.0807 11164 ohci1394 - ok
22:51:51.0879 11164 [ BB7B0F4BE49BF461CED8103B000D20D5 ] OpcEnum C:\Windows\SysWOW64\OpcEnum.exe
22:51:51.0882 11164 OpcEnum - ok
22:51:51.0964 11164 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:51:51.0966 11164 ose - ok
22:51:52.0058 11164 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
22:51:52.0084 11164 osppsvc - ok
22:51:52.0110 11164 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:51:52.0114 11164 p2pimsvc - ok
22:51:52.0134 11164 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
22:51:52.0138 11164 p2psvc - ok
22:51:52.0159 11164 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
22:51:52.0189 11164 Parport - ok
22:51:52.0239 11164 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:51:52.0240 11164 partmgr - ok
22:51:52.0266 11164 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
22:51:52.0269 11164 PcaSvc - ok
22:51:52.0285 11164 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
22:51:52.0287 11164 pci - ok
22:51:52.0308 11164 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
22:51:52.0317 11164 pciide - ok
22:51:52.0335 11164 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
22:51:52.0337 11164 pcmcia - ok
22:51:52.0349 11164 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
22:51:52.0350 11164 pcw - ok
22:51:52.0412 11164 [ A1688A4FB2EC49D040C027EF6DC7A87B ] PDF Architect Helper Service C:\Program Files (x86)\PDF Architect\HelperService.exe
22:51:52.0417 11164 PDF Architect Helper Service - ok
22:51:52.0449 11164 [ E23FF9B2F8EEAB2BDDA681C21C48E843 ] PDF Architect Service C:\Program Files (x86)\PDF Architect\ConversionService.exe
22:51:52.0452 11164 PDF Architect Service - ok
22:51:52.0471 11164 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:51:52.0474 11164 PEAUTH - ok
22:51:52.0513 11164 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
22:51:52.0521 11164 PeerDistSvc - ok
22:51:52.0546 11164 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
22:51:52.0548 11164 PerfHost - ok
22:51:52.0569 11164 [ B4C1BF666DBD6899EC4A9A499DAA040B ] PHCORE C:\Program Files\Lenovo\RapidBoot\PHCORE64.SYS
22:51:52.0570 11164 PHCORE - ok
22:51:52.0603 11164 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
22:51:52.0615 11164 pla - ok
22:51:52.0657 11164 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:51:52.0661 11164 PlugPlay - ok
22:51:52.0669 11164 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:51:52.0672 11164 PNRPAutoReg - ok
22:51:52.0680 11164 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:51:52.0683 11164 PNRPsvc - ok
22:51:52.0704 11164 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:51:52.0708 11164 PolicyAgent - ok
22:51:52.0735 11164 [ A2CCA4FB273E6050F17A0A416CFF2FCD ] Power C:\Windows\system32\umpo.dll
22:51:52.0739 11164 Power - ok
22:51:52.0793 11164 [ 9D1F6EAD9EC4F2B1FBC87194E0AB37E2 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
22:51:52.0800 11164 Power Manager DBC Service - ok
22:51:52.0833 11164 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:51:52.0840 11164 PptpMiniport - ok
22:51:52.0863 11164 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
22:51:52.0865 11164 Processor - ok
22:51:52.0893 11164 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
22:51:52.0896 11164 ProfSvc - ok
22:51:52.0907 11164 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:51:52.0908 11164 ProtectedStorage - ok
22:51:52.0939 11164 [ 05A4779E4994B21473EDBE85AABE8030 ] psadd C:\Windows\system32\DRIVERS\psadd.sys
22:51:52.0940 11164 psadd - ok
22:51:52.0954 11164 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:51:52.0956 11164 Psched - ok
22:51:52.0989 11164 [ 4751E1872446CE21207E43AE4C0EC52A ] PwmEWSvc C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE
22:51:52.0996 11164 PwmEWSvc - ok
22:51:53.0042 11164 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
22:51:53.0049 11164 ql2300 - ok
22:51:53.0085 11164 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
22:51:53.0088 11164 ql40xx - ok
22:51:53.0106 11164 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
22:51:53.0110 11164 QWAVE - ok
22:51:53.0122 11164 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:51:53.0122 11164 QWAVEdrv - ok
22:51:53.0144 11164 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:51:53.0145 11164 RasAcd - ok
22:51:53.0182 11164 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:51:53.0183 11164 RasAgileVpn - ok
22:51:53.0195 11164 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
22:51:53.0198 11164 RasAuto - ok
22:51:53.0208 11164 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:51:53.0210 11164 Rasl2tp - ok
22:51:53.0252 11164 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
22:51:53.0257 11164 RasMan - ok
22:51:53.0271 11164 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:51:53.0273 11164 RasPppoe - ok
22:51:53.0284 11164 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:51:53.0286 11164 RasSstp - ok
22:51:53.0307 11164 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:51:53.0310 11164 rdbss - ok
22:51:53.0317 11164 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
22:51:53.0318 11164 rdpbus - ok
22:51:53.0348 11164 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:51:53.0348 11164 RDPCDD - ok
22:51:53.0387 11164 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
22:51:53.0388 11164 RDPDR - ok
22:51:53.0390 11164 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:51:53.0391 11164 RDPENCDD - ok
22:51:53.0406 11164 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:51:53.0407 11164 RDPREFMP - ok
22:51:53.0436 11164 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:51:53.0437 11164 RDPWD - ok
22:51:53.0467 11164 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:51:53.0469 11164 rdyboost - ok
22:51:53.0521 11164 [ 0C2B4C3B10D183BE116A38353E937F62 ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
22:51:53.0521 11164 RegSrvc - ok
22:51:53.0617 11164 [ 6713253B37D6DCFC442A286F1D7B5350 ] Remote Solver for Flow Simulation 2012 C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe
22:51:53.0619 11164 Remote Solver for Flow Simulation 2012 - ok
22:51:53.0647 11164 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
22:51:53.0649 11164 RemoteAccess - ok
22:51:53.0668 11164 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:51:53.0671 11164 RemoteRegistry - ok
22:51:53.0707 11164 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
22:51:53.0708 11164 RFCOMM - ok
22:51:53.0734 11164 [ 5A227511ED22DDFEDF7EF7323C8F7D2F ] risdxc C:\Windows\system32\DRIVERS\risdxc64.sys
22:51:53.0736 11164 risdxc - ok
22:51:53.0750 11164 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:51:53.0753 11164 RpcEptMapper - ok
22:51:53.0774 11164 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
22:51:53.0775 11164 RpcLocator - ok
22:51:53.0792 11164 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
22:51:53.0796 11164 RpcSs - ok
22:51:53.0828 11164 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:51:53.0830 11164 rspndr - ok
22:51:53.0856 11164 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
22:51:53.0857 11164 s3cap - ok
22:51:53.0859 11164 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
22:51:53.0860 11164 SamSs - ok
22:51:53.0874 11164 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
22:51:53.0875 11164 sbp2port - ok
22:51:53.0900 11164 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:51:53.0903 11164 SCardSvr - ok
22:51:53.0915 11164 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:51:53.0916 11164 scfilter - ok
22:51:53.0941 11164 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
22:51:53.0948 11164 Schedule - ok
22:51:53.0965 11164 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
22:51:53.0966 11164 SCPolicySvc - ok
22:51:53.0982 11164 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:51:53.0985 11164 SDRSVC - ok
22:51:54.0087 11164 [ 206387AB881E93A1A6EB89966C8651F1 ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
22:51:54.0092 11164 SDScannerService - ok
22:51:54.0151 11164 [ A529CFE32565C0B145578FFB2B32C9A5 ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
22:51:54.0157 11164 SDUpdateService - ok
22:51:54.0202 11164 [ CB63BDB77BB86549FC3303C2F11EDC18 ] SDWSCService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
22:51:54.0203 11164 SDWSCService - ok
22:51:54.0246 11164 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:51:54.0247 11164 secdrv - ok
22:51:54.0267 11164 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
22:51:54.0271 11164 seclogon - ok
22:51:54.0281 11164 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
22:51:54.0283 11164 SENS - ok
22:51:54.0317 11164 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:51:54.0320 11164 SensrSvc - ok
22:51:54.0363 11164 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
22:51:54.0364 11164 Serenum - ok
22:51:54.0393 11164 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
22:51:54.0394 11164 Serial - ok
22:51:54.0410 11164 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
22:51:54.0412 11164 sermouse - ok
22:51:54.0434 11164 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
22:51:54.0437 11164 SessionEnv - ok
22:51:54.0440 11164 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
22:51:54.0441 11164 sffdisk - ok
22:51:54.0454 11164 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
22:51:54.0455 11164 sffp_mmc - ok
22:51:54.0457 11164 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
22:51:54.0458 11164 sffp_sd - ok
22:51:54.0464 11164 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
22:51:54.0465 11164 sfloppy - ok
22:51:54.0498 11164 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:51:54.0502 11164 SharedAccess - ok
22:51:54.0529 11164 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:51:54.0533 11164 ShellHWDetection - ok
22:51:54.0585 11164 [ 7AC6FBFC13ABA3F15B05986412D10E10 ] Shockprf C:\Windows\system32\DRIVERS\Apsx64.sys
22:51:54.0587 11164 Shockprf - ok
22:51:54.0612 11164 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
22:51:54.0613 11164 SiSRaid2 - ok
22:51:54.0625 11164 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
22:51:54.0626 11164 SiSRaid4 - ok
22:51:54.0678 11164 [ 8C4F0DCC6A5100D48F9B2F950CDD220F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
22:51:54.0679 11164 SkypeUpdate - ok
22:51:54.0695 11164 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:51:54.0697 11164 Smb - ok
22:51:54.0799 11164 [ 3BC2844AF786CA422CC31D505ACFA9F2 ] smihlp C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys
22:51:54.0799 11164 smihlp - ok
22:51:54.0841 11164 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:51:54.0843 11164 SNMPTRAP - ok
22:51:54.0871 11164 [ 4945020BC094C322571184A6E8056B3A ] SolidWorks Licensing Service C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
22:51:54.0873 11164 SolidWorks Licensing Service - ok
22:51:54.0888 11164 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 22:55
22:51:54.0888 11164 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
22:51:54.0888 11164 spldr - ok
22:51:54.0915 11164 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
22:51:54.0920 11164 Spooler - ok
22:51:54.0971 11164 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
22:51:54.0987 11164 sppsvc - ok
22:51:54.0994 11164 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:51:54.0997 11164 sppuinotify - ok
22:51:55.0011 11164 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
22:51:55.0014 11164 srv - ok
22:51:55.0027 11164 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:51:55.0030 11164 srv2 - ok
22:51:55.0041 11164 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:51:55.0043 11164 srvnet - ok
22:51:55.0081 11164 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:51:55.0084 11164 SSDPSRV - ok
22:51:55.0096 11164 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:51:55.0099 11164 SstpSvc - ok
22:51:55.0145 11164 Steam Client Service - ok
22:51:55.0186 11164 [ 5166A8690D912B0B9F29FBB028EA9FE7 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
22:51:55.0188 11164 Stereo Service - ok
22:51:55.0200 11164 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
22:51:55.0202 11164 stexstor - ok
22:51:55.0248 11164 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
22:51:55.0253 11164 stisvc - ok
22:51:55.0269 11164 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
22:51:55.0270 11164 storflt - ok
22:51:55.0291 11164 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
22:51:55.0294 11164 StorSvc - ok
22:51:55.0314 11164 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
22:51:55.0315 11164 storvsc - ok
22:51:55.0392 11164 [ 5D8B9129DA2EB060BC9346FD9724632E ] SUService C:\Program Files (x86)\Lenovo\System Update\SUService.exe
22:51:55.0393 11164 SUService - ok
22:51:55.0401 11164 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
22:51:55.0401 11164 swenum - ok
22:51:55.0427 11164 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
22:51:55.0432 11164 swprv - ok
22:51:55.0480 11164 [ 883D2880144FD3ED9F1C04B5B5B9B562 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
22:51:55.0482 11164 SynTP - ok
22:51:55.0512 11164 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
22:51:55.0521 11164 SysMain - ok
22:51:55.0546 11164 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:51:55.0550 11164 TabletInputService - ok
22:51:55.0566 11164 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
22:51:55.0570 11164 TapiSrv - ok
22:51:55.0583 11164 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
22:51:55.0586 11164 TBS - ok
22:51:55.0640 11164 [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:51:55.0649 11164 Tcpip - ok
22:51:55.0684 11164 [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:51:55.0691 11164 TCPIP6 - ok
22:51:55.0724 11164 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:51:55.0726 11164 tcpipreg - ok
22:51:55.0750 11164 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:51:55.0751 11164 TDPIPE - ok
22:51:55.0768 11164 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:51:55.0769 11164 TDTCP - ok
22:51:55.0779 11164 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:51:55.0781 11164 tdx - ok
22:51:55.0813 11164 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
22:51:55.0813 11164 TermDD - ok
22:51:55.0836 11164 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
22:51:55.0847 11164 TermService - ok
22:51:55.0855 11164 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
22:51:55.0858 11164 Themes - ok
22:51:55.0876 11164 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
22:51:55.0878 11164 THREADORDER - ok
22:51:55.0890 11164 [ BC148E3415BF8A9DE83364966F75044F ] TPDIGIMN C:\Windows\system32\DRIVERS\ApsHM64.sys
22:51:55.0890 11164 TPDIGIMN - ok
22:51:55.0915 11164 [ BBD91008BEC4A2BA5D383BC9A15D6F9E ] TPHDEXLGSVC C:\Windows\system32\TPHDEXLG64.exe
22:51:55.0918 11164 TPHDEXLGSVC - ok
22:51:55.0955 11164 [ 83415782D47F8064FCAFEA308ABB2246 ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
22:51:55.0956 11164 TPHKLOAD - ok
22:51:55.0963 11164 [ 046A7B412E4E6C4A7B426441E143F0F2 ] TPHKSVC C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
22:51:55.0963 11164 TPHKSVC - ok
22:51:55.0977 11164 [ DBCC20C02E8A3E43B03C304A4E40A84F ] TPM C:\Windows\system32\drivers\tpm.sys
22:51:55.0978 11164 TPM - ok
22:51:56.0010 11164 [ 6EE437A872E0184D6D09F65C5EA0AABA ] TPPWRIF C:\Windows\system32\drivers\Tppwr64v.sys
22:51:56.0011 11164 TPPWRIF - ok
22:51:56.0019 11164 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
22:51:56.0023 11164 TrkWks - ok
22:51:56.0069 11164 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:51:56.0070 11164 TrustedInstaller - ok
22:51:56.0083 11164 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:51:56.0084 11164 tssecsrv - ok
22:51:56.0112 11164 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
22:51:56.0121 11164 TsUsbFlt - ok
22:51:56.0141 11164 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
22:51:56.0142 11164 TsUsbGD - ok
22:51:56.0197 11164 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:51:56.0201 11164 tunnel - ok
22:51:56.0254 11164 [ D4915DB03B19F9FD50EC084CC0ED15FC ] TVTI2C C:\Windows\system32\DRIVERS\Tvti2c.sys
22:51:56.0254 11164 TVTI2C - ok
22:51:56.0275 11164 [ 760B34088C2AD8D634CC3784EF3A2CA2 ] tvtvcamd C:\Windows\system32\DRIVERS\tvtvcamd.sys
22:51:56.0275 11164 tvtvcamd - ok
22:51:56.0299 11164 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
22:51:56.0300 11164 uagp35 - ok
22:51:56.0335 11164 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:51:56.0339 11164 udfs - ok
22:51:56.0355 11164 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:51:56.0358 11164 UI0Detect - ok
22:51:56.0360 11164 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
22:51:56.0361 11164 uliagpkx - ok
22:51:56.0380 11164 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
22:51:56.0381 11164 umbus - ok
22:51:56.0391 11164 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
22:51:56.0392 11164 UmPass - ok
22:51:56.0425 11164 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
22:51:56.0429 11164 UmRdpService - ok
22:51:56.0527 11164 [ CABEC311CEA77EAEA3DC04A1ADFC0459 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
22:51:56.0530 11164 UNS - ok
22:51:56.0557 11164 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
22:51:56.0561 11164 upnphost - ok
22:51:56.0603 11164 [ 43228F8EDD1B0BCDD3145AD246E63D39 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
22:51:56.0605 11164 USBAAPL64 - ok
22:51:56.0646 11164 [ 6CC0985C3BB5931F73FF0846E06A9483 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:51:56.0654 11164 usbccgp - ok
22:51:56.0688 11164 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
22:51:56.0690 11164 usbcir - ok
22:51:56.0721 11164 [ 6B3D5E6A9DA786EC755B00BC180C700B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
22:51:56.0722 11164 usbehci - ok
22:51:56.0753 11164 [ 94ABE9DA48E466BBE84C73E0C6652ED1 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:51:56.0756 11164 usbhub - ok
22:51:56.0777 11164 [ 660B2C08CE7103E71EAA26F85B0B0A56 ] usbohci C:\Windows\system32\drivers\usbohci.sys
22:51:56.0778 11164 usbohci - ok
22:51:56.0800 11164 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
22:51:56.0802 11164 usbprint - ok
22:51:56.0816 11164 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
22:51:56.0817 11164 usbscan - ok
22:51:56.0826 11164 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:51:56.0828 11164 USBSTOR - ok
22:51:56.0838 11164 [ 1529632FC96032D337B298F8A285D640 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:51:56.0839 11164 usbuhci - ok
22:51:56.0858 11164 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
22:51:56.0859 11164 usbvideo - ok
22:51:56.0880 11164 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
22:51:56.0883 11164 UxSms - ok
22:51:56.0898 11164 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
22:51:56.0900 11164 VaultSvc - ok
22:51:56.0932 11164 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
22:51:56.0932 11164 vdrvroot - ok
22:51:56.0954 11164 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
22:51:56.0959 11164 vds - ok
22:51:56.0993 11164 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:51:56.0994 11164 vga - ok
22:51:57.0003 11164 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
22:51:57.0004 11164 VgaSave - ok
22:51:57.0016 11164 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
22:51:57.0018 11164 vhdmp - ok
22:51:57.0060 11164 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
22:51:57.0061 11164 viaide - ok
22:51:57.0094 11164 [ 49C122513203B98B0B2C10211F23450B ] VIPAppService C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe
22:51:57.0095 11164 VIPAppService - ok
22:51:57.0137 11164 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
22:51:57.0139 11164 vmbus - ok
22:51:57.0154 11164 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
22:51:57.0156 11164 VMBusHID - ok
22:51:57.0195 11164 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
22:51:57.0197 11164 volmgr - ok
22:51:57.0222 11164 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:51:57.0225 11164 volmgrx - ok
22:51:57.0245 11164 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
22:51:57.0247 11164 volsnap - ok
22:51:57.0257 11164 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
22:51:57.0259 11164 vsmraid - ok
22:51:57.0294 11164 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
22:51:57.0307 11164 VSS - ok
22:51:57.0309 11164 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:51:57.0310 11164 vwifibus - ok
22:51:57.0338 11164 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:51:57.0339 11164 vwififlt - ok
22:51:57.0353 11164 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
22:51:57.0354 11164 vwifimp - ok
22:51:57.0385 11164 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
22:51:57.0388 11164 W32Time - ok
22:51:57.0402 11164 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
22:51:57.0403 11164 WacomPen - ok
22:51:57.0431 11164 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:51:57.0432 11164 WANARP - ok
22:51:57.0434 11164 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:51:57.0435 11164 Wanarpv6 - ok
22:51:57.0515 11164 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:51:57.0521 11164 WatAdminSvc - ok
22:51:57.0573 11164 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
22:51:57.0586 11164 wbengine - ok
22:51:57.0597 11164 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:51:57.0601 11164 WbioSrvc - ok
22:51:57.0620 11164 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:51:57.0624 11164 wcncsvc - ok
22:51:57.0633 11164 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:51:57.0636 11164 WcsPlugInService - ok
22:51:57.0650 11164 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
22:51:57.0651 11164 Wd - ok
22:51:57.0687 11164 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:51:57.0691 11164 Wdf01000 - ok
22:51:57.0702 11164 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:51:57.0706 11164 WdiServiceHost - ok
22:51:57.0708 11164 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:51:57.0710 11164 WdiSystemHost - ok
22:51:57.0722 11164 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
22:51:57.0726 11164 WebClient - ok
22:51:57.0748 11164 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:51:57.0752 11164 Wecsvc - ok
22:51:57.0766 11164 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:51:57.0769 11164 wercplsupport - ok
22:51:57.0814 11164 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
22:51:57.0818 11164 WerSvc - ok
22:51:57.0844 11164 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:51:57.0845 11164 WfpLwf - ok
22:51:57.0852 11164 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:51:57.0853 11164 WIMMount - ok
22:51:57.0873 11164 WinDefend - ok
22:51:57.0877 11164 WinHttpAutoProxySvc - ok
22:51:57.0922 11164 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:51:57.0924 11164 Winmgmt - ok
22:51:57.0965 11164 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
22:51:57.0979 11164 WinRM - ok
22:51:58.0026 11164 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUSB.sys
22:51:58.0028 11164 WinUsb - ok
22:51:58.0061 11164 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
22:51:58.0070 11164 Wlansvc - ok
22:51:58.0119 11164 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:51:58.0120 11164 wlcrasvc - ok
22:51:58.0223 11164 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:51:58.0233 11164 wlidsvc - ok
22:51:58.0264 11164 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
22:51:58.0264 11164 WmiAcpi - ok
22:51:58.0298 11164 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:51:58.0300 11164 wmiApSrv - ok
22:51:58.0311 11164 WMPNetworkSvc - ok
22:51:58.0352 11164 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:51:58.0354 11164 WPCSvc - ok
22:51:58.0369 11164 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:51:58.0372 11164 WPDBusEnum - ok
22:51:58.0384 11164 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:51:58.0385 11164 ws2ifsl - ok
22:51:58.0397 11164 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
22:51:58.0399 11164 wscsvc - ok
22:51:58.0401 11164 WSearch - ok
22:51:58.0458 11164 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
22:51:58.0472 11164 wuauserv - ok
22:51:58.0498 11164 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:51:58.0500 11164 WudfPf - ok
22:51:58.0535 11164 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:51:58.0537 11164 WUDFRd - ok
22:51:58.0571 11164 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:51:58.0574 11164 wudfsvc - ok
22:51:58.0592 11164 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
22:51:58.0596 11164 WwanSvc - ok
22:51:58.0642 11164 [ 2F3393C91F0C753E33047A06087DDB00 ] xrdd.exe C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe
22:51:58.0643 11164 xrdd.exe - ok
22:51:58.0739 11164 [ D2FE4103450E52CB248D842501F84B90 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
22:51:58.0749 11164 ZeroConfigService - ok
22:51:58.0784 11164 ================ Scan global ===============================
22:51:58.0809 11164 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
22:51:58.0843 11164 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
22:51:58.0849 11164 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
22:51:58.0870 11164 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
22:51:58.0895 11164 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
22:51:58.0899 11164 [Global] - ok
22:51:58.0900 11164 ================ Scan MBR ==================================
22:51:58.0907 11164 [ 48EFBE34196C397B41958A1C4D91D5D9 ] \Device\Harddisk0\DR0
22:51:59.0025 11164 \Device\Harddisk0\DR0 - ok
22:51:59.0025 11164 ================ Scan VBR ==================================
22:51:59.0027 11164 [ D159CDE4D94E35384CCE60A0A5B0C428 ] \Device\Harddisk0\DR0\Partition1
22:51:59.0027 11164 \Device\Harddisk0\DR0\Partition1 - ok
22:51:59.0040 11164 [ ECA86BF8DBD9F3E88D5521A71C986439 ] \Device\Harddisk0\DR0\Partition2
22:51:59.0041 11164 \Device\Harddisk0\DR0\Partition2 - ok
22:51:59.0062 11164 [ 417AB4CA21A13E0250D4C68879401DE1 ] \Device\Harddisk0\DR0\Partition3
22:51:59.0063 11164 \Device\Harddisk0\DR0\Partition3 - ok
22:51:59.0079 11164 [ 82C86382319B336EA65BACDD213339B7 ] \Device\Harddisk0\DR0\Partition4
22:51:59.0080 11164 \Device\Harddisk0\DR0\Partition4 - ok
22:51:59.0080 11164 ============================================================
22:51:59.0080 11164 Scan finished
22:51:59.0080 11164 ============================================================
22:51:59.0086 8952 Detected object count: 0
22:51:59.0086 8952 Actual detected object count: 0
0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 23:00
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 660
28 avril 2013 à 23:18
c'est bon :)

Sécurise ton PC !

Important - ton infection est venue par un exploit sur site web :

Un exploit sur site WEB permet l'infection de ton ordinateur de manière automatiquement à la visite d'un site WEB qui a été hacké, il tire partie du fait que tu as des logiciels (Java, Adobe Reader etc) qui sont pas à jour et possèdent des vulnérabilités qui permettent l'execution de code (malicieux dans notre cas) à ton insu.
Le fait de ne pas avoir des logiciels à jour et qui ont potentiellement des vulnérabilités permettent donc d'infecter ton système.
Exemple avec : Exploit Java

Il faut donc impérativement maintenir tes logiciels à jour afin de ne pas voir ces portes d'entrée sur ton système.
Tant que ces logiciels ne seront pas à jour, ton PC est vulnérable et les infections peuvent s'installer facilement.

IMPORTANT : mettre à jour tes programmes notamment Java/Adobe Reader et Flash :
/faq/13362-mettre-a-jour-son-pc-contre-les-failles-de-securite
https://forum.malekal.com/viewtopic.php?t=15960&start=

Désactive Java de tes navigateurs WEB : https://www.commentcamarche.net/faq/35621-desactiver-java-sur-ses-navigateurs-web


Passe le mot à tes amis !

~~

Filtrer les PUPs/Adwares les plus fréquents avec HOSTS Anti-PUPs/Adwares : http://www.malekal.com/2012/01/10/hosts-anti-pupsadware/

~~

Le reste de la sécurité : http://forum.malekal.com/comment-securiser-son-ordinateur.html

0
Pelur Messages postés 17 Date d'inscription dimanche 28 avril 2013 Statut Membre Dernière intervention 6 septembre 2017
28 avril 2013 à 23:27
Ok c'est noté pour tout ce qui est de la sécurité.

Et MERCI milles fois sans toi je n'en serais pas encore sorti :)

Bonne soirée.
0