Tried to install mbam, errors, ran a scan:
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/24/18
Scan Time: 4:36 PM
Log File: d6129dd6-0167-11e8-ad78-bc5ff4d7cc8c.json
Administrator: Yes
-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.236
Update Package Version: 1.0.3778
License: Free
-System Information-
OS: Windows 10 (Build 16299.192)
CPU: x64
File System: NTFS
User: GLH-DESKTOP-I7\garyh
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 420411
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 1 min, 46 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 0
(No malicious items detected)
Physical Sector: 0
(No malicious items detected)
(end)
Scan only tok 51 seconds, should take on this computer 20 minutes plus.
ran as an administrator. same result
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/24/18
Scan Time: 4:59 PM
Log File: f622885e-016a-11e8-bacd-bc5ff4d7cc8c.json
Administrator: Yes
-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.236
Update Package Version: 1.0.3778
License: Free
-System Information-
OS: Windows 10 (Build 16299.192)
CPU: x64
File System: NTFS
User: GLH-DESKTOP-I7\garyh
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 420506
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 0 min, 51 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 0
(No malicious items detected)
Physical Sector: 0
(No malicious items detected)
(end)
Prior to that ran a windows defender scan, it was clean also.
tried to run FRST64 as administrator. ended up in an endless loop, program box appeared, with another box: "update complete, the tool is ready to use". only way to stop was to use Task Manager.
Tried FSS, won't run.
Kaspersky TDSSKiller:
17:16:56.0556 0x2e34 TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02
17:17:00.0754 0x2e34 ============================================================
17:17:00.0755 0x2e34 Current date / time: 2018/01/24 17:17:00.0754
17:17:00.0755 0x2e34 SystemInfo:
17:17:00.0757 0x2e34
17:17:00.0757 0x2e34 OS Version: 10.0.16299 ServicePack: 0.0
17:17:00.0757 0x2e34 Product type: Workstation
17:17:00.0757 0x2e34 ComputerName: GLH-DESKTOP-I7
17:17:00.0757 0x2e34 UserName: garyh
17:17:00.0757 0x2e34 Windows directory: C:\WINDOWS
17:17:00.0757 0x2e34 System windows directory: C:\WINDOWS
17:17:00.0757 0x2e34 Running under WOW64
17:17:00.0757 0x2e34 Processor architecture: Intel x64
17:17:00.0757 0x2e34 Number of processors: 8
17:17:00.0757 0x2e34 Page size: 0x1000
17:17:00.0757 0x2e34 Boot type: Normal boot
17:17:00.0757 0x2e34 CodeIntegrityOptions = 0x00000001
17:17:00.0757 0x2e34 ============================================================
17:17:00.0795 0x2e34 KLMD registered as C:\WINDOWS\system32\drivers\32644288.sys
17:17:00.0795 0x2e34 KLMD ARK init status: drvProperties = 0xF0F02, osBuild = 16299.0, osProperties = 0x1D
17:17:01.0207 0x2e34 System UUID: {BBDB1914-2208-E8F6-E26E-88F033C222C2}
17:17:01.0608 0x2e34 !crdlk
17:17:01.0615 0x2e34 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 ( 111.79 Gb ), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A'
17:17:01.0617 0x2e34 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A'
17:17:05.0030 0x2e34 Drive \Device\Harddisk3\DR3 - Size: 0x7470C05E00 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
17:17:05.0031 0x2e34 ============================================================
17:17:05.0031 0x2e34 \Device\Harddisk0\DR0:
17:17:05.0033 0x2e34 MBR partitions:
17:17:05.0033 0x2e34 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:17:05.0034 0x2e34 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xDE80800
17:17:05.0034 0x2e34 \Device\Harddisk1\DR1:
17:17:05.0034 0x2e34 MBR partitions:
17:17:05.0034 0x2e34 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
17:17:05.0034 0x2e34 \Device\Harddisk3\DR3:
17:17:05.0034 0x2e34 MBR partitions:
17:17:05.0034 0x2e34 \Device\Harddisk3\DR3\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A384C02
17:17:05.0034 0x2e34 ============================================================
17:17:05.0035 0x2e34 C: <-> \Device\Harddisk0\DR0\Partition2
17:17:05.0054 0x2e34 E: <-> \Device\Harddisk1\DR1\Partition1
17:17:05.0282 0x2e34 F: <-> \Device\Harddisk3\DR3\Partition1
17:17:05.0282 0x2e34 ============================================================
17:17:05.0282 0x2e34 Initialize success
17:17:05.0282 0x2e34 ============================================================
17:17:08.0825 0x3184 ============================================================
17:17:08.0825 0x3184 Scan started
17:17:08.0825 0x3184 Mode: Manual;
17:17:08.0825 0x3184 ============================================================
17:17:08.0825 0x3184 KSN ping started
17:17:09.0000 0x3184 KSN ping finished: true
17:17:09.0955 0x3184 ================ Scan system memory ========================
17:17:09.0955 0x3184 System memory - ok
17:17:09.0955 0x3184 ================ Scan services =============================
17:17:10.0043 0x3184 [ 08312DEEF0D3F8647AA53AD90A69094E, E32620323E7EDD3CAB5B04B9E37DDE7CA87B45C2CB17520D69D03C17E1D5F65A ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
17:17:10.0058 0x3184 1394ohci - ok
17:17:10.0074 0x3184 [ 645009E711BBF117CCEE917A03FB0CDD, B531951443D961C08428CB0F77F57D9F33C37C0637F919A9DA9DB5DA18479F70 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
17:17:10.0074 0x3184 3ware - ok
17:17:10.0091 0x3184 ACPI - ok
17:17:10.0094 0x3184 [ 44EA35A4B397898A83BF1B9B4B8DAE35, 023E3BC5CE47518269A812F156EFF1BD4CB14F1F5DD3FCC317DE046A519E20CE ] AcpiDev C:\WINDOWS\System32\drivers\AcpiDev.sys
17:17:10.0095 0x3184 AcpiDev - ok
17:17:10.0100 0x3184 [ 91D113A1532B8AB1E25B7DE5AB3C2F83, 43134DB92D522FCF537FFA8E829021F43BDD90006D7F096BA483DA1DAD3D1CC3 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
17:17:10.0102 0x3184 acpiex - ok
17:17:10.0105 0x3184 [ 620BB2682BA625DF037072D89F44F6EE, A1A72F663C75DC65B1BA278CD7F43FAE6D1BDAE2F3F1D8269F508DECB555FFF9 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
17:17:10.0106 0x3184 acpipagr - ok
17:17:10.0110 0x3184 [ B9805A3C479390CEAEA5AEF5E4A90A2E, D9256734BC46EA43133873BDDE56B9A3597F74CFE82500FFB374A8EE6293ADD3 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
17:17:10.0110 0x3184 AcpiPmi - ok
17:17:10.0113 0x3184 [ ABD4EB55C661143B015BD0B9B47B235C, 5F109BA04010E634D547E86AF67659EA06BD05FCF78A493DB190790C4D7E13EA ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
17:17:10.0114 0x3184 acpitime - ok
17:17:10.0120 0x3184 [ 38622FFE9369D3EC01C0097235BD9279, 021BC514F61B3874892809981572AF9A29DE7445E56CF8BC09EBC7C6C68E5AB2 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:17:10.0121 0x3184 AdobeARMservice - ok
17:17:10.0142 0x3184 [ 9B3355B29942AF67F014EA90CE1EA960, FBB155F72984045BCD99CC2059B9EDAABD3A52104C3864A290D8A355991F94D3 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
17:17:10.0142 0x3184 AdobeFlashPlayerUpdateSvc - ok
17:17:10.0158 0x3184 [ 8C58BD711FAD5F11E8CFDBC5CED973A5, 340FCD2C492009D5D7732FBF94198C4767125A77E0C71BB20E5CB2BDA5AB57CF ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
17:17:10.0174 0x3184 ADP80XX - ok
17:17:10.0174 0x3184 AFD - ok
17:17:10.0189 0x3184 [ 56166D110D3ECFFC595E5FA02D9BA491, E8B08A07C06C7A3FA1996A0B027F316ACBDD2A21933DAD5CFFA9872C209DB79B ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
17:17:10.0189 0x3184 ahcache - ok
17:17:10.0189 0x3184 [ 84FFB4AC2BA923364DF13F73751E05D1, EBD054282D93F290408A2343C0CBF98CEF7619A8252DC04E15322E51505D45AF ] AJRouter C:\WINDOWS\System32\AJRouter.dll
17:17:10.0189 0x3184 AJRouter - ok
17:17:10.0189 0x3184 [ 084101AB03969D8ED00D5FFBE5F4C3DF, 6425FA16F0CBF5F3008780095364830EBF1F073BD5109764FE9E88245AFB9367 ] ALG C:\WINDOWS\System32\alg.exe
17:17:10.0189 0x3184 ALG - ok
17:17:10.0205 0x3184 [ 62619E31AFF88F906A7E793AC4A9FF51, 2532FAD310036CC3A5A7C8276EDABA6F0705EEE46B61288856CEC0DF6CBA50C6 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
17:17:10.0205 0x3184 AmdK8 - ok
17:17:10.0205 0x3184 [ 735142DD039BEB35632765C41FC6E397, 915373D15B9CCCFBC3DC46582C8EA1251E268DA8E535F2CC407546FE10662341 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
17:17:10.0205 0x3184 AmdPPM - ok
17:17:10.0205 0x3184 [ F1C16AABA27E9E153AEC7BD2AB853F30, 7CFDBD218E6C161747A21BBACC78BF1061F2427ED1247F1AE0879BE155C504E7 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
17:17:10.0205 0x3184 amdsata - ok
17:17:10.0220 0x3184 [ C834D0F1ECB8473E9E6D18EE1BCEECB2, C9B7B9279F96DE4DA1EE096B6463591B3A718F87CD75E544C5A07C3639D1F188 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
17:17:10.0220 0x3184 amdsbs - ok
17:17:10.0220 0x3184 [ 49203D2FFE30CBB36BE66A0E70F3D954, E5B5A3B3B4A8FF03B5C902642C776CECD554CA1DB25419111EDA83602986CCCE ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
17:17:10.0220 0x3184 amdxata - ok
17:17:10.0236 0x3184 [ 4EB4D11F563FBEBDE8DE4E74B8851715, 0F6FF3C5C999990501277AAC5A33DF8194CEE6975347C2D1D2319BB86D54867C ] AppHostSvc C:\WINDOWS\system32\inetsrv\apphostsvc.dll
17:17:10.0237 0x3184 AppHostSvc - ok
17:17:10.0242 0x3184 [ 3692C75C47285D388C886D162F54C430, C38263F070F6F9CC5BBE458460BD3715CAC6E0C5E53AF2486289396CE5557673 ] AppID C:\WINDOWS\system32\drivers\appid.sys
17:17:10.0244 0x3184 AppID - ok
17:17:10.0244 0x3184 [ A78F24AF599EA536C6028D80E4037664, 0FE73CAFAE336D8831225BDCC0158BEEEED2E9E6086109974BE7F1982A79C9CA ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
17:17:10.0244 0x3184 AppIDSvc - ok
17:17:10.0244 0x3184 Appinfo - ok
17:17:10.0244 0x3184 [ E0CBB79ADB89A233928AF60FB2B729DE, CA2C2660686A9D8BD9DB940469221FCD70379AC9837B8620B074C0ED683BEC41 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
17:17:10.0260 0x3184 Apple Mobile Device Service - ok
17:17:10.0260 0x3184 [ 1E085E2302D568F0CE041732B3E887B0, 0D2A3675FDD04C800B302C84A43F233F0217EB4B1AD44B11AADDB0D5D8FA0DB2 ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys
17:17:10.0260 0x3184 applockerfltr - ok
17:17:10.0260 0x3184 [ 043786FF3A1B6A066613E0B166F28F07, CB248FA46D3798487A543344095F8EC5ACD8A4A5B9FCC7C374CAFE9DB04C6281 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
17:17:10.0260 0x3184 AppMgmt - ok
17:17:10.0275 0x3184 [ 1D123729F547EEDFBE3F510346848C38, B170860348FBAC054203A7B858866A12944D7046C01BA3A14AC0860D8C288770 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
17:17:10.0275 0x3184 AppReadiness - ok
17:17:10.0275 0x3184 AppVClient - ok
17:17:10.0296 0x3184 [ 05B19AD776D80FF0FADB44608896C16F, B7DDDF06C0E525774DA3AE3EA718E0CCC2D6C27F7430103B578859FAAAF2941F ] AppvStrm C:\WINDOWS\system32\drivers\AppvStrm.sys
17:17:10.0297 0x3184 AppvStrm - ok
17:17:10.0301 0x3184 [ 3EA678F2C70083FB1588772FE7FAFFE1, 8B236563E285352DE9DC056DC87872412D3A756E82DA9D0191931A19714B4078 ] AppvVemgr C:\WINDOWS\system32\drivers\AppvVemgr.sys
17:17:10.0303 0x3184 AppvVemgr - ok
17:17:10.0308 0x3184 [ ADD72B1FFE20B37A13A5A861724ECA05, D48515E1CF9B6317031B1151AEB8C7042D5FD63ABAD755749FE4660979F4E20B ] AppvVfs C:\WINDOWS\system32\drivers\AppvVfs.sys
17:17:10.0309 0x3184 AppvVfs - ok
17:17:10.0312 0x3184 AppXSvc - ok
17:17:10.0317 0x3184 [ B42C83DE28776B80DBA1310C56DD4F74, 8E017B73D5AD644EC1D46BC1DC2CAF465A6793E2AD6DC35A2E3AB907E7719C40 ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
17:17:10.0319 0x3184 arcsas - ok
17:17:10.0330 0x3184 [ 9CDC69DDFDC91DC628F7515809329798, 2D202B3992A834A04C81834B0AC39E8B953410A24B929CB97D81F9CB546296D4 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
17:17:10.0331 0x3184 aspnet_state - ok
17:17:10.0338 0x3184 [ 0D51FFDAE7C906C308369EAB87358304, 684E0405D82C67285FA1586426EA6792BBE796524C10DD24C2AF48FEF4E3D92E ] AssignedAccessManagerSvc C:\WINDOWS\System32\assignedaccessmanagersvc.dll
17:17:10.0344 0x3184 AssignedAccessManagerSvc - ok
17:17:10.0344 0x3184 [ C2151380227CD1F7DDA2401C1F151367, 0E76DCD69CAB960DC65942269081436A9DDA255E908E71A29E72DFCFC5CDCC7C ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys
17:17:10.0344 0x3184 AsyncMac - ok
17:17:10.0344 0x3184 [ 6191B9B2EE0E8CB957C683B9B341CC86, E60ACC6E9C6E90F2E1DA0DE220C890B50887FD97E7884F8F4301FF2C9A2F408A ] atapi C:\WINDOWS\system32\drivers\atapi.sys
17:17:10.0344 0x3184 atapi - ok
17:17:10.0360 0x3184 [ 225FB1C90CF88CD478D25940B3930873, E11AC067D58B82F9838EB1B641C6FEA9A209C2AF57220DCFFE1B25A6E61C4C55 ] ATSwpWDF C:\WINDOWS\system32\DRIVERS\ATSwpWDF.sys
17:17:10.0375 0x3184 ATSwpWDF - ok
17:17:10.0375 0x3184 AudioEndpointBuilder - ok
17:17:10.0375 0x3184 Audiosrv - ok
17:17:10.0375 0x3184 [ 947FF5992E26AFD4CAA34506678B70BC, 0B125EDBD6E740375E45AAA465DC83740F5CD43A55CDA404F7A81F37EE3BC57C ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
17:17:10.0375 0x3184 AxInstSV - ok
17:17:10.0391 0x3184 [ A921805C1ED3253DF48FCA4D724173EB, 7DB6A13228812550F066C76273ECA6B3FC12E7CC98C245D16B5A13FBCF6A509D ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
17:17:10.0391 0x3184 b06bdrv - ok
17:17:10.0391 0x3184 bam - ok
17:17:10.0407 0x3184 [ 2A7267AA15E508F6D05A5B562F1FD1CE, 7070123619A3F08864844FF89C9DEA1D4ED48D05D2B93E305774BE715583DD51 ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
17:17:10.0407 0x3184 BasicDisplay - ok
17:17:10.0407 0x3184 [ 2E1EE0F10FAF1250D1AC05BFB0E6BD3D, 036821D6EE71AFF59B9DCA28F7F9678E68FD246CB1C4368B11B4447B389D394F ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
17:17:10.0407 0x3184 BasicRender - ok
17:17:10.0407 0x3184 [ 739D089777D2B66DBE7201E5EA4BA2D7, 9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
17:17:10.0407 0x3184 bcmfn2 - ok
17:17:10.0422 0x3184 [ 72963E0676003016B431306A6F4951BF, 3442A7C1AC1EE8E68F15C78CEBAC237D7535F834AA13F8BB602645DD183A73D3 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
17:17:10.0422 0x3184 BDESVC - ok
17:17:10.0422 0x3184 [ 5AB9A3B14D7ACAB4DE8D4FEDB4CDBFAE, 1484A6E4D08B626C961F9809799FC472107E8692D04915267D0435D0DBAF673C ] becldr3Service C:\Program Files\BCL Technologies\easyConverter SDK 3\Common\becldr.exe
17:17:10.0438 0x3184 becldr3Service - ok
17:17:10.0442 0x3184 [ EDDAA3A563E7EB71C991FE91249C7D81, C095F7DDFB06C73AE28359A9DF2AFF69E715A8890864610EAE07750BE5AF48CA ] Beep C:\WINDOWS\system32\drivers\Beep.sys
17:17:10.0443 0x3184 Beep - ok
17:17:10.0445 0x3184 [ 86CAB4060251D418B6449D6CBCC852A6, BF4FB8B1DC542CED79AE30A26071F1DA0D1029284150F99A7C4D2CB9DE732861 ] BFE C:\WINDOWS\System32\bfe.dll
17:17:10.0461 0x3184 BFE - ok
17:17:10.0477 0x3184 [ E223918B4E0B28CF7BE132C30D1E161A, 6F7A88CE04B56C6EE1C8BE1675645B1D730CA2B069A8D521768542AC4EBF2E77 ] BITS C:\WINDOWS\System32\qmgr.dll
17:17:10.0501 0x3184 BITS - ok
17:17:10.0511 0x3184 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
17:17:10.0516 0x3184 Bonjour Service - ok
17:17:10.0521 0x3184 [ 55A8E1BA0B0737F8957F8C22EE8B9E7D, 9480E09BC713A6089320B4DB8A8696C9C6E8AD18A6575AA0DE1E41E8BD06D226 ] BOT4Service C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
17:17:10.0521 0x3184 BOT4Service - ok
17:17:10.0526 0x3184 [ D030A1203680D66716F4E74053468627, C227F266AB7630D03E8ED19695E074B5182E4112E4931FB9552257EE2BE82848 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
17:17:10.0527 0x3184 bowser - ok
17:17:10.0529 0x3184 BrokerInfrastructure - ok
17:17:10.0533 0x3184 [ 2BA1BED8E8168C301522AC7CFBFA2141, 07000BEF5ABCF7795B474B69B1113F7EE5C22CF0F8CAF4A3D5D872B0D452CDD0 ] Browser C:\WINDOWS\System32\browser.dll
17:17:10.0535 0x3184 Browser - ok
17:17:10.0538 0x3184 [ A4863B7B1F0DB513D6E34547BACC211A, 41E74A60721CCBE0A4D487B3EE01BAC3108D9BA819BF58A64E963478C43828E9 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
17:17:10.0538 0x3184 BthAvrcpTg - ok
17:17:10.0545 0x3184 [ 9C9EE272C11252C651C5DE6A1AC1EDAA, DED378E894FA07B75F2E93490075879A50879CACACCF09F3F9EF37EDFA159233 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
17:17:10.0547 0x3184 BthHFEnum - ok
17:17:10.0550 0x3184 [ 69734E386826ED857C889330F35B4D9C, F0804D41D4BA6C9022B70D5092C4F14128D33F66C5D85DE10115A37C36927B70 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
17:17:10.0551 0x3184 bthhfhid - ok
17:17:10.0559 0x3184 [ BC58294295CBAD6637A526470305B5EA, FAA1A1C85D418B063D8A6E93558BA74D766081268354D63E28D372BD55D523DD ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll
17:17:10.0565 0x3184 BthHFSrv - ok
17:17:10.0568 0x3184 [ A94AFAEA86F5F792BB4ECA095B231464, 588256D53CD50B8299FCABF624E8EF29761B16DE1999896DC647FBF8E2BAEA68 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
17:17:10.0569 0x3184 BTHMODEM - ok
17:17:10.0574 0x3184 [ 572BCA61B7E026E057AF7DF456AC7E0B, CA35DCC02BFE2D34C40449E47F0C8BA4AD709F01A952B9354332560CE72A1E4F ] bthserv C:\WINDOWS\system32\bthserv.dll
17:17:10.0577 0x3184 bthserv - ok
17:17:10.0579 0x3184 [ 39E7437FC59CDD7A303ABD514E462E8B, 9DCACFC12090BA03E3DD8E0EFE02382E3D42B528BDF6DD77318CAFACBA9EBA09 ] bttflt C:\WINDOWS\system32\drivers\bttflt.sys
17:17:10.0580 0x3184 bttflt - ok
17:17:10.0582 0x3184 [ 522888590B0C19BC8128119060AE7901, 9C979FD442E7B189FD156BD5E5E4A3D10FDABB3C38094B9C67A702103D39B00F ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
17:17:10.0582 0x3184 buttonconverter - ok
17:17:10.0582 0x3184 [ 2AB01CE5E233A6FBA3E91BD57772AA4B, DC241810B774BCE651B525885480F05D15AE0E623D53E4CB02562A8424C067E2 ] CAD C:\WINDOWS\System32\drivers\CAD.sys
17:17:10.0582 0x3184 CAD - ok
17:17:10.0582 0x3184 [ E2C8EE32C053892E685A989071AAE333, 842228C315BBD5FA802A81833BB0158774969FED4C5A706F9B904F7C70DB80A3 ] camsvc C:\WINDOWS\system32\CapabilityAccessManager.dll
17:17:10.0582 0x3184 camsvc - ok
17:17:10.0598 0x3184 [ F6F97879F53AD57194C6BC8272FD73EA, C11CB040CC64ABC0A6EAD6D6985659896FBB5911D2E10B6584E0F90FE6813C57 ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
17:17:10.0598 0x3184 CapImg - ok
17:17:10.0598 0x3184 [ 9E82A95D77AC78C84BA75FF896B060BF, 87905E55724ADE5149D3BBC2DB76A7275580DE204BB561B8E1FCD631DEF3D9F9 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
17:17:10.0598 0x3184 cdfs - ok
17:17:10.0614 0x3184 [ 147CEBE0C5F7A80135C54715521AD9E1, 99ACF25165C0C17822B0FC06F662848CA0DFAD51B3E3B440005C2E033BFE4840 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll
17:17:10.0614 0x3184 CDPSvc - ok
17:17:10.0634 0x3184 [ C2F158F11391F21C7D3FEB572D11C2D2, 5F5E7A1A4E9A8C6AB0C4735BCE9175AE92870410ACFB2376F950DACE22E075D7 ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll
17:17:10.0640 0x3184 CDPUserSvc - ok
17:17:10.0647 0x3184 [ 6D83565C1652E80447EDEA6947FA89D7, A84A3EA45304A9E3F53DA9F4CB9F2D9FF8A2AD69A36AEA366D35A2F5C9FDF851 ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
17:17:10.0647 0x3184 cdrom - ok
17:17:10.0647 0x3184 [ 200A5398C0E7E78DBDF6C0D9E811F366, 91BED3876FCA06AF551939720C0088BD195AF64C11C6EAD8970EDE8E037A71AA ] CertPropSvc C:\WINDOWS\System32\certprop.dll
17:17:10.0647 0x3184 CertPropSvc - ok
17:17:10.0663 0x3184 [ D81954CE5E016FD716EDDB2B2FD9BA58, C47FF6D6527605238EF46E9BDF4544E2B2F4F9C5BCE13881F569F996541D7FF7 ] cht4iscsi C:\WINDOWS\system32\drivers\cht4sx64.sys
17:17:10.0663 0x3184 cht4iscsi - ok
17:17:10.0679 0x3184 [ F9A8570805807FFD66488F0A858E1308, 5D8363C5EEB7B92CFA219C466D04D8C625CACAFBDEA5857C5C9FA0C391AC2FEB ] cht4vbd C:\WINDOWS\System32\drivers\cht4vx64.sys
17:17:10.0710 0x3184 cht4vbd - ok
17:17:10.0714 0x3184 [ 9798D58461706930190F1F2F6BF21D80, BD7552297A636E19F5D544BDBF3490DA544E76002F62B227FA5BDA7A11760040 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
17:17:10.0715 0x3184 circlass - ok
17:17:10.0717 0x3184 CldFlt - ok
17:17:10.0719 0x3184 CLFS - ok
17:17:10.0825 0x3184 [ BD3B484568382B13D624B9A8B2D67FA0, ADCCD6F17583DF8ADEDFBBB2DF829F6B21599C4D3089729DCAC62F2005588F42 ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
17:17:10.0907 0x3184 ClickToRunSvc - ok
17:17:10.0929 0x3184 [ BE9FA79096DD2CB43E7066897AB52E50, FB7AEE5996BF5115EF1DCEF315A37226A31454073EF60564061A2DB0A4FAD9F1 ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll
17:17:10.0938 0x3184 ClipSVC - ok
17:17:10.0945 0x3184 [ 2BA3BA38B5A6A667B0EAEC477276707B, 80AD05C5C7E0398EB7320A82878700C6588B7411F3DEA02E5784CA599CB548C2 ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
17:17:10.0945 0x3184 CmBatt - ok
17:17:10.0948 0x3184 CNG - ok
17:17:10.0951 0x3184 [ C65AF00EF12A1755E7CA370B0C71935D, C03315A5B999EB9AA5B5F1F000BD8A1C68DFC151B23AA2F29F69F7129407AA11 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
17:17:10.0951 0x3184 cnghwassist - ok
17:17:10.0967 0x3184 [ A50300498D56B2448F3593D25478D508, 841D66D4AB9749EE64802611157A9AAED1117B6B2C411B3DA272CE439E69AE45 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_9c1fb8f4db31c348\CompositeBus.sys
17:17:10.0968 0x3184 CompositeBus - ok
17:17:10.0970 0x3184 COMSysApp - ok
17:17:10.0973 0x3184 [ 65602B0DB49199647FECB2D1212147BE, DC25D2DED7C31B4691B61FC69BB12E50CA5EDA9705339CCC82BE145EFD6D47C5 ] condrv C:\WINDOWS\system32\drivers\condrv.sys
17:17:10.0974 0x3184 condrv - ok
17:17:10.0976 0x3184 CoreMessagingRegistrar - ok
17:17:10.0982 0x3184 [ D64EF74FC6DA47EC2E460076F299E77D, 1F77E9F777FA6996222DE45B3AB2C01CD94C80A4A7F5CA092DDF1F18D74F93AA ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
17:17:10.0982 0x3184 CryptSvc - ok
17:17:10.0982 0x3184 [ 0AAC6E3138AB83C466281642D1A48F15, 31AEBAE422BFDC9EBE0B8CBAEE5ABAA27E8EA47387D4A24C91A3CE92EF7E0C92 ] CSC C:\WINDOWS\system32\drivers\csc.sys
17:17:10.0998 0x3184 CSC - ok
17:17:10.0998 0x3184 [ 9D4FA712339A09110809A4CC270AF4F0, 6403633EB0061CE3E4665E7A757EB697FD47DEE540EEDEC035CC13184FC62947 ] CscService C:\WINDOWS\System32\cscsvc.dll
17:17:11.0014 0x3184 CscService - ok
17:17:11.0014 0x3184 [ 72BE43ABD786E86AAE7EA2193201E100, A013CF10AA4158082B5D0D7F885969C5C92710A6084E57E9DDBDA84420D97367 ] dam C:\WINDOWS\system32\drivers\dam.sys
17:17:11.0014 0x3184 dam - ok
17:17:11.0029 0x3184 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
17:17:11.0031 0x3184 dbupdate - ok
17:17:11.0034 0x3184 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
17:17:11.0036 0x3184 dbupdatem - ok
17:17:11.0038 0x3184 [ B9A3585BD8C1F086BD3FE153B47B7BC8, 4D125DAA110C3BBDEDEB7E3DA282659041AA058D05E5D6F96AE2160ED194FA44 ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe
17:17:11.0040 0x3184 DbxSvc - ok
17:17:11.0043 0x3184 [ A4700D1F78539C0ED32FA50E64F9C692, 5CB03B5F36307BA152245BAD29CB2AC703BBE8197ABC0338A7092ADEA1C3221A ] dc3d C:\WINDOWS\System32\drivers\dc3d.sys
17:17:11.0045 0x3184 dc3d - ok
17:17:11.0063 0x3184 [ 79BDBB684629A526CCD958F06B9D6FAD, 489A85A5F63E5F012740B538878D6DAEBBB474D64F27A6847D3E387A704E5297 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
17:17:11.0077 0x3184 DcomLaunch - ok
17:17:11.0086 0x3184 [ F7FB921F438C3566CEC55657EA4E7D9C, 17FA956E3B89F9B6C154975E7E1AAFB204F5EDEACC14A8424827DE13440A9299 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
17:17:11.0092 0x3184 defragsvc - ok
17:17:11.0101 0x3184 [ B5F9123D6537856EA698386ABA27A232, C60DD499254B4A3741ECE71AF1685763BD6A6F828F879D54E175A6198C89ABF0 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
17:17:11.0106 0x3184 DeviceAssociationService - ok
17:17:11.0111 0x3184 [ 64A80A746FC460126FA4124AA2D93848, 851ECA69489FF9A834B6A5ACF9D51283FD3796E21316D8A22E57DED2F415782C ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
17:17:11.0114 0x3184 DeviceInstall - ok
17:17:11.0125 0x3184 [ A19F51A044B62C994144ED87A7A5A887, 91ECE0E067E138817CD46A876B2D28CB47A2CCBE9C924EA91A1966FDF69AF7DF ] DevicesFlowUserSvc C:\WINDOWS\System32\DevicesFlowBroker.dll
17:17:11.0133 0x3184 DevicesFlowUserSvc - ok
17:17:11.0138 0x3184 [ 0D2A4CA81D1F7B5E5FBFE1E4F60246B8, EF425C2FB1191720F9B53EB26EC904F53851D296B222E20B0733615575D4B7E5 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll
17:17:11.0139 0x3184 DevQueryBroker - ok
17:17:11.0144 0x3184 [ 9910E9CFF5ECDCB225F82E72CE9DE459, BF38E53FC993C4F8170341C7798E2FC18BDB540E7543979581ABCA9E24B4494E ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
17:17:11.0146 0x3184 Dfsc - ok
17:17:11.0154 0x3184 [ 309F4FBA6AC2CA70663C99690AE900C2, D38E3A5AD818DBB165C8C141236AE0C684E67FA1ACCD2914EEA1E6A771B06C33 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
17:17:11.0159 0x3184 Dhcp - ok
17:17:11.0163 0x3184 [ 8C46ADC4354DDE94CA459CB4BA822073, 8B0597866B6BAD22641B70836B29FC01433A00AFDABF31E5672DD5DF6ADCC3BB ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
17:17:11.0164 0x3184 diagnosticshub.standardcollector.service - ok
17:17:11.0169 0x3184 [ E2BF09B816393AF73EDCB8ECF9BBDB2D, DBDFFC2450E4EC684DD59383799ACF1D207B0882C301B8D562FB76307AFCC553 ] diagsvc C:\WINDOWS\system32\DiagSvc.dll
17:17:11.0172 0x3184 diagsvc - ok
17:17:11.0176 0x3184 DiagTrack - ok
17:17:11.0179 0x3184 [ 811173C821171BB910219E53C7FD97AD, F915F90A39F99F6E38082B8077874791BBF21FF271351A4976494C6708C43E56 ] Disk C:\WINDOWS\system32\drivers\disk.sys
17:17:11.0180 0x3184 Disk - ok
17:17:11.0182 0x3184 [ 133E5277C2A50770EADFAC4AF2232D69, E24933DD2440BA8DBDFD3A583301A9BE56A4ED699134242DB52E1AB5721C53D4 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
17:17:11.0198 0x3184 DmEnrollmentSvc - ok
17:17:11.0198 0x3184 [ 569FE16775E15A49DC904DE20BF8CAA0, 18C1734AC5D6C4FE1944916B710450F18FAA7F3594E4EFB8CCEA140FC03A78BE ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
17:17:11.0198 0x3184 dmvsc - ok
17:17:11.0198 0x3184 [ 10E72E3315305461D3F0C7560AE98CA5, 702B5C056DB6B4E337231BBEA48E106FA95F26B48CDE91857305E4C6E4EE6A12 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
17:17:11.0198 0x3184 dmwappushservice - ok
17:17:11.0213 0x3184 [ 4ACA3CE75B4C2243299C24A715E9B3CE, 043610E57C6D87F12D98C1A663B5CA415F64742D30434863073BD902BAE2EAC0 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
17:17:11.0213 0x3184 Dnscache - ok
17:17:11.0213 0x3184 [ 24F0CF56DF2725291937B32597BA8D51, 810D4B43A4FB4B1738BFDAE51A49FD1725483BA686C6A3FA1DC1341D08AC743A ] dot3svc C:\WINDOWS\System32\dot3svc.dll
17:17:11.0230 0x3184 dot3svc - ok
17:17:11.0236 0x3184 [ 6D8971C942FEE43A0AB6B3192534AFB4, 44D437DD32E1FDD7922B352CA6C19C83C1ADD825FB704B8E07BEF01E866E2B99 ] DPS C:\WINDOWS\system32\dps.dll
17:17:11.0239 0x3184 DPS - ok
17:17:11.0241 0x3184 [ F4800922F4ABA619585CE320A72E6389, CA83BCAA8B37F303E89598F8C93B201A3F000A09F4A9963E370D7E59BD79D448 ] drmkaud C:\WINDOWS\System32\drivers\drmkaud.sys
17:17:11.0242 0x3184 drmkaud - ok
17:17:11.0244 0x3184 DsmSvc - ok
17:17:11.0249 0x3184 [ C7DC50CC0C6B0948A0C040622FCD70EA, F9C6B8F27E3DED8F7A681D0F652CCB6B1AE6D5E6CA8654E33EFDCF32A2D294EB ] DsSvc C:\WINDOWS\System32\DsSvc.dll
17:17:11.0251 0x3184 DsSvc - ok
17:17:11.0254 0x3184 DusmSvc - ok
17:17:11.0255 0x3184 DXGKrnl - ok
17:17:11.0259 0x3184 [ FA94398748930D840FE35A44F1D225A7, E2D48460413904AAFB50E18A24471157D2A235F5CCDF89EE49BB139D1CA3B9F6 ] Eaphost C:\WINDOWS\System32\eapsvc.dll
17:17:11.0262 0x3184 Eaphost - ok
17:17:11.0306 0x3184 [ C99D40C97841E0A7F0F90B8629593A97, 2DE7FB6E3CD7B06079C2B05D8C10AD0EDF187684ED1DE5BEE98FAB9A4B331824 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
17:17:11.0343 0x3184 ebdrv - ok
17:17:11.0351 0x3184 [ 94E06D509D50807774F35BEE3163E806, ADADFA0D533944579BA0E5FE31A68D4D1395E7B9DB75E58D47E0ADC0DA5AD16C ] EFS C:\WINDOWS\System32\lsass.exe
17:17:11.0353 0x3184 EFS - ok
17:17:11.0356 0x3184 [ 260BBD6B1ED06298E509B452354EDB91, CF794D5AC62C6DBF356BC717910FD2B106A8BD90C3C03BA43859FD876F8820BC ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
17:17:11.0358 0x3184 EhStorClass - ok
17:17:11.0362 0x3184 [ F3BEBDC1B9DBA32F183079EAE6244837, 5DE0DA8D2A13BFA852355619C6DE5AC2FDFAB314A619A4F209842581E4D82DE1 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
17:17:11.0363 0x3184 EhStorTcgDrv - ok
17:17:11.0367 0x3184 [ A75880A9192B9DA69F46867B06276746, 53856262A5BD4BE93CB45D1F43B87F45CB01C02B7D94231CF05346B9BDF1F18D ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll
17:17:11.0370 0x3184 embeddedmode - ok
17:17:11.0376 0x3184 [ 9E6CB1D3F6AD67AA7A2C831FB9B7E496, EB9AEC7E780B6FDA8B6082D8F4F88C9393B4E6BB49ACE324C882DFB9AF8D0C78 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
17:17:11.0381 0x3184 EntAppSvc - ok
17:17:11.0382 0x3184 [ 1B63CA857FD03FD0A5A1379F2996784F, 9EE5205DCFADAFC62D36528087FA4E023F7E48FF0D2A8333D8A6111AE09D21B8 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
17:17:11.0382 0x3184 ErrDev - ok
17:17:11.0382 0x3184 [ 6A5FA501A2D96001391FF3CBA32935AB, 018DB01ADE957A1A1FF5B168A2EC0EFEF8BFBE036079791FDF0C6AA6C12295BA ] EventSystem C:\WINDOWS\system32\es.dll
17:17:11.0398 0x3184 EventSystem - ok
17:17:11.0398 0x3184 [ F1ACA42D448E3986565EA54275EEEA65, C85101D6E7A2204FD73AAACD972F610B6A4BCF7EB7512412FD34660DCB5E8C5C ] exfat C:\WINDOWS\system32\drivers\exfat.sys
17:17:11.0398 0x3184 exfat - ok
17:17:11.0414 0x3184 [ 0AF4B36754A6EAE794EE4398E219A9E1, A818763D7AE6E7F4BC57294BB4D80FE9E04387BB3EBE8A6088D2AF746FF548A6 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
17:17:11.0414 0x3184 fastfat - ok
17:17:11.0436 0x3184 [ B1A38C0D977D8738779CA3EFEBDFCA8C, EDD852EF89AFBDDBBBE002E6675EAFCC46742B6136EB22428C84D737C6229FEA ] Fax C:\WINDOWS\system32\fxssvc.exe
17:17:11.0445 0x3184 Fax - ok
17:17:11.0448 0x3184 [ 7CD8426A33F06EB72BFEC51F7C264AF8, 4FDD5F6A8BDF25D965CE52132DD0EA77D335C1C5F77A7758F3F6E22DFC12BDF5 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
17:17:11.0449 0x3184 fdc - ok
17:17:11.0452 0x3184 [ 21EB16C5DDFBC19DEBE9EEC10EA423FB, 514327DA987793AFE1DFB4F2C0F033C349432E6F1F6AACBAE23E24E63EFA51B9 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
17:17:11.0454 0x3184 fdPHost - ok
17:17:11.0456 0x3184 [ 57F98EFE6CB82AE5400BA99C705AF45C, 7AB83C7AF4CA49BFC2976FB707B251C181279B7E16EBDD43AD0E1A4AB8C4DFC9 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
17:17:11.0458 0x3184 FDResPub - ok
17:17:11.0462 0x3184 [ 02F93E4B9EC2821B6670208044FF5332, 2D947C8AE51E749029B3180751E4486E27A19471A7A98087076103D307B5CE64 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
17:17:11.0464 0x3184 fhsvc - ok
17:17:11.0468 0x3184 [ DE51BBBCF358188F9736F031546F9908, E2B80DF63C039663085FA9D63F3F30736EC20C49BC678CBD7D7C7231107C3635 ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys
17:17:11.0469 0x3184 FileCrypt - ok
17:17:11.0472 0x3184 [ 822F664952B0F8D11BB6BD2F11779602, B7E9908A305942194E64E834819186CBBF9DD4469B300DCC8D31E1E5674D6600 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
17:17:11.0473 0x3184 FileInfo - ok
17:17:11.0476 0x3184 [ 5A4935682A0D47A4EAC4BE3C2ACF74D6, 0DCF2E7928D11F49EBF906233894E81CFFE938ADFCA802CE0207CA58B4A02AAD ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
17:17:11.0477 0x3184 Filetrace - ok
17:17:11.0718 0x3184 [ 494F167530B08FBB0BF0924242FDD071, D1AC16908B189FCB0BCE0154BD56F958E87C6ACB757FC5918B1690214DEAB6F4 ] Fitbit Connect E:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
17:17:11.0771 0x3184 Fitbit Connect - ok
17:17:11.0787 0x3184 [ 60641F22D1D38EAD197C25F0339C9712, 110ACEADAE92C384C80356C9DE88E3A94141881E8544DB65736875FFA2716F68 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
17:17:11.0787 0x3184 flpydisk - ok
17:17:11.0792 0x3184 FltMgr - ok
17:17:11.0820 0x3184 [ 9DCB91239DE1FE05F870AE3471E70559, 1EA360023B926F4024B602010AFD168A6C615632B05900427D765CD228280EEF ] FontCache C:\WINDOWS\system32\FntCache.dll
17:17:11.0841 0x3184 FontCache - ok
17:17:11.0841 0x3184 [ A7C6894FFF261C0FEFDCB41BE83CF430, C3DB55140E4848873BC0004030933402CD396112C14F432258D875DB1608700E ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
17:17:11.0841 0x3184 FontCache3.0.0.0 - ok
17:17:11.0856 0x3184 [ 6793F7AE8442C487C55352C78739E77A, EA9FE762B8A339183DB3523CD8E8736B6BEF8489EC11380EF7F1530D10631500 ] FrameServer C:\WINDOWS\system32\FrameServer.dll
17:17:11.0856 0x3184 FrameServer - ok
17:17:11.0856 0x3184 FsDepends - ok
17:17:11.0872 0x3184 [ BB82CC2F51F7C3D5DCD13FA3B040D8F8, 24B9735D8E4BC0416AFDEEE534118D98AF363CFE8AEFE8AB23827DC67FC4239B ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:17:11.0872 0x3184 Fs_Rec - ok
17:17:11.0872 0x3184 fvevol - ok
17:17:11.0872 0x3184 [ 3B5DDF1061930A0A891FA63DB0CB878B, BB48865CFAD8299E96AFBC2993A34FB47B52466C897FF0875836BD48A14B78C7 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
17:17:11.0872 0x3184 gencounter - ok
17:17:11.0872 0x3184 [ 8B34E3F794F652082D7E8AF112F71681, C6CFA239BDF46827BFC89DC9A9BF45B0EBCE3EF1BB7DCA33980A632E549B37F5 ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys
17:17:11.0872 0x3184 genericusbfn - ok
17:17:11.0888 0x3184 [ 127C23F4720C8902A3AB0FEE12205317, E3BF55D81B04572D11B41CDA2DB4509FD252561EB29ED22CC6F616E856E3D86E ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
17:17:11.0890 0x3184 GPIOClx0101 - ok
17:17:11.0908 0x3184 [ A7A85B505944F99CB55C8669E4F7FC0F, AE2B11A0309907949D4BACF32BA487C9A7732D647F00ED428102C380F53465A8 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
17:17:11.0923 0x3184 gpsvc - ok
17:17:11.0924 0x3184 [ C7DEA3458E50B691E69EFF0B47CBCCDB, E33330473BDA2025503B2E65DA03C83C884F56B9E684F90695D4AF1AFB922832 ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys
17:17:11.0924 0x3184 GpuEnergyDrv - ok
17:17:11.0924 0x3184 [ 141904F0581468B39B579EA33CA57549, 1D947A6079CED7840B0FF4720C36D873F5A69EA6C94E4C15ADF1A7C0CD0CD0EA ] GraphicsPerfSvc C:\WINDOWS\System32\GraphicsPerfSvc.dll
17:17:11.0924 0x3184 GraphicsPerfSvc - ok
17:17:11.0924 0x3184 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:17:11.0924 0x3184 gupdate - ok
17:17:11.0940 0x3184 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:17:11.0940 0x3184 gupdatem - ok
17:17:11.0971 0x3184 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc E:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
17:17:11.0971 0x3184 gusvc - ok
17:17:11.0971 0x3184 [ 99A34FD1F6431A10D8C3BB50E170D0F2, 14BFF99BBF9ED53D3A157B096CDE0394824260021BA96E1F2C7B1CFB598DD850 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
17:17:11.0987 0x3184 HDAudBus - ok
17:17:12.0038 0x3184 [ E00BA58A741FEE0209367E79B0FF3F47, FF79C90E87EBEC04207A4B70EE42E86A8C6533725AF40B18668B514404394EB3 ] HDRExpress3Service e:\Program Files\UCT\HDR Express 3\HDRExpress3Service.exe
17:17:12.0038 0x3184 HDRExpress3Service - ok
17:17:12.0057 0x3184 [ 2443FC6EEB9CF092B62127D867901B02, ABD5E907FF066B95C5697C4E470B4EA19976DEC90C8159B963A82EDA218AB114 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
17:17:12.0060 0x3184 HidBatt - ok
17:17:12.0071 0x3184 [ 205043CDC16ADE85E252DD54AE925161, F377F046EFEE53C7786AF15C0BB5BADE36511427575A712B0098A883F3715DB3 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
17:17:12.0074 0x3184 HidBth - ok
17:17:12.0082 0x3184 [ B521DDDC9038C066B1B957BF063A531A, C5FE68FB22C28C4D06A0792FD5AC9A1F0EC01EF26E1D37B9DF05F22D8B7DFF8C ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
17:17:12.0082 0x3184 hidi2c - ok
17:17:12.0082 0x3184 [ 5AC0EBFA76E93273A806176D3178E986, 679BFEFF9F4172EBB14A6C2E8381F54FBDC9E8705E8B0F306723DDF48B6E5143 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys
17:17:12.0082 0x3184 hidinterrupt - ok
17:17:12.0082 0x3184 [ 366AC0E05EBF5D5C375F65CD8BC7F0DF, A6B751864E33EBB5DE2E09403A8C26E72DD5510F3A380FA502393FC11A14A433 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
17:17:12.0082 0x3184 HidIr - ok
17:17:12.0104 0x3184 [ 75F4CCB7FF03603E91DD0C7FF83DAABF, 10508A6C36163C9D40C16A47AB4CA8C03C89BB7795690818E5C562E3FF828D5B ] hidserv C:\WINDOWS\system32\hidserv.dll
17:17:12.0107 0x3184 hidserv - ok
17:17:12.0112 0x3184 [ 7CB54D02746024648FCE184FC3F941FF, 6C7B8E6AD3C05D66868D0268C9C8183021AB241E576184FAD0BD50ED4E18E9ED ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
17:17:12.0113 0x3184 HidUsb - ok
17:17:12.0125 0x3184 [ B5E3F4730F2471C76946E04645203690, D31C45C2BC7554A8B865620A5C7C4E0FF4D31E609D92D760B762955AC7FDB0BF ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
17:17:12.0125 0x3184 HomeGroupListener - ok
17:17:12.0141 0x3184 [ 24C900B7296AA9867FB761A5801AFBD1, 4A765E905D0F7C4B450A28FB85F413F4EAD2B53240E804FA531626ABB0518381 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
17:17:12.0141 0x3184 HomeGroupProvider - ok
17:17:12.0156 0x3184 [ 835FB95D85D362057A72D21A48C2C7F8, 06A57F9E459E52DAA7B27F232DBC1E0ED0E04759D34AF3E15A645D11DFDD6A58 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
17:17:12.0156 0x3184 HpSAMD - ok
17:17:12.0156 0x3184 [ 1878A79551F2EDAE7EBD110AAE6D33AD, 1F409360B44AEB3A6023E953EAB350FFB3EB8322F589E2422AB312288B33A2DA ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
17:17:12.0156 0x3184 HPSupportSolutionsFrameworkService - ok
17:17:12.0156 0x3184 HTTP - ok
17:17:12.0156 0x3184 [ AD930879F319969EB09449C015A32104, 3C33CFA1D3452EAB689178D09311DFF84C4A2D5854837DA75B1D7CC57CE6FB5F ] HvHost C:\WINDOWS\System32\hvhostsvc.dll
17:17:12.0172 0x3184 HvHost - ok
17:17:12.0172 0x3184 [ 9F2CFC90306532866C62BDCDFD2532AA, F27B1087B1E3E06FB49092BBF2DD8CF5B6ADD4CE061FE10C3ED44C58B92BE007 ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys
17:17:12.0172 0x3184 hvservice - ok
17:17:12.0172 0x3184 [ 3737FE486929AFC48F1D10677B698E52, 9E8792F3A494AE3E7CDA65E93B561B6FFFB9C781606F5863D524DDD24CFEB9C3 ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys
17:17:12.0172 0x3184 HwNClx0101 - ok
17:17:12.0172 0x3184 [ 3C65EBF7F1BFD98426C355D66876ECEE, CA1DC462C4D96176C81EF3448238B76B4CDA3C521533973B281359D7F436B8A5 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
17:17:12.0172 0x3184 hwpolicy - ok
17:17:12.0172 0x3184 [ 7E00234C67A322988AFEA717D5609C9E, 9210E400200B1313426792A67C27ECA4DBA9872111DC3C217195FC5DEAC4614D ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
17:17:12.0172 0x3184 hyperkbd - ok
17:17:12.0189 0x3184 [ FBF5BB641DE99AE1DF4835E88D4F8993, 55250C1FCCDA74249D5EE15B2502A68DB1EB60C7AC24500B9FB2DF2E3319CDAB ] HyperVideo C:\WINDOWS\System32\drivers\HyperVideo.sys
17:17:12.0189 0x3184 HyperVideo - ok
17:17:12.0194 0x3184 [ 56FF074E50F9042FD2856AB3418F4B18, 239C9BF23DE2E36FD7112C425CDF18F29B751D75EF3551AEFB048FAD2B0A55E2 ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
17:17:12.0195 0x3184 i8042prt - ok
17:17:12.0197 0x3184 [ B5EC43755E62591197DE5CBBDAA9FEB7, 1B4E0EAB677B09A050925879ECDA311404270DCF020AAD390692427198C73C9F ] iagpio C:\WINDOWS\System32\drivers\iagpio.sys
17:17:12.0198 0x3184 iagpio - ok
17:17:12.0201 0x3184 [ D8CA23F9C5FEF44296FDE1E005C06EC0, 0D7B03EF9E19B9B2A28C3318560488B3F9573CF364A533A9B4A2CD0A7FFA4F84 ] iai2c C:\WINDOWS\System32\drivers\iai2c.sys
17:17:12.0203 0x3184 iai2c - ok
17:17:12.0206 0x3184 [ 7B769C9D19C013F94874C4B15D59A005, 53A15F0480AEC43B5A01CFB17360188885B6ECBFFF6E566D27E5B6D4C7737243 ] iaLPSS2i_GPIO2 C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys
17:17:12.0207 0x3184 iaLPSS2i_GPIO2 - ok
17:17:12.0210 0x3184 [ E0F1B3A2A70FABE3BE1C9140BB55E607, 34E5B055619F3A26B7BB6054EA49D40B7D6DAFE234F57F358FE7C8EE83E10618 ] iaLPSS2i_GPIO2_BXT_P C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys
17:17:12.0211 0x3184 iaLPSS2i_GPIO2_BXT_P - ok
17:17:12.0215 0x3184 [ 89A869BCC0588A3009ECB875B09ECD39, 5ECC2C6E661B326511682D8EA1C82F942C63835890687285FEF455C5C9DC2476 ] iaLPSS2i_I2C C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
17:17:12.0218 0x3184 iaLPSS2i_I2C - ok
17:17:12.0223 0x3184 [ 2E693DF3C02A0859DB8DE25772751100, 3EFFDA44B247E04258429ADC85E88E23F926FD487A3A85BF879E6E5802197B3F ] iaLPSS2i_I2C_BXT_P C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys
17:17:12.0224 0x3184 iaLPSS2i_I2C_BXT_P - ok
17:17:12.0224 0x3184 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
17:17:12.0224 0x3184 iaLPSSi_GPIO - ok
17:17:12.0224 0x3184 [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
17:17:12.0224 0x3184 iaLPSSi_I2C - ok
17:17:12.0240 0x3184 [ 435883A27A376B125BD4DF888417C85F, 091F9285FCF1D5605D03CB68C062A2DE6FF2D705FF43E983A8A7B5DFA0872A96 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
17:17:12.0240 0x3184 iaStorAV - ok
17:17:12.0256 0x3184 [ 7118E4390C4ACDE61E280CE52BCAF44E, 11123C1555344A191283187BF1F4A8D731E29EE27C7A7A7916873E8D2E95D978 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
17:17:12.0256 0x3184 iaStorV - ok
17:17:12.0271 0x3184 [ 9DBE8C359ABACE1BE1BBAB687D114506, D2E5CB2BFC42627C1BB38A68F925DD534AEFFF9354AFD184005EC338E8E6B232 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys
17:17:12.0271 0x3184 ibbus - ok
17:17:12.0288 0x3184 [ 113F3C05CE9B41144E6BF5FEDA4F09B7, 8A0610558DAEEAD81D32456FF8E03463F430ADB84457ED12C34CB76AC3EA407A ] icssvc C:\WINDOWS\System32\tetheringservice.dll
17:17:12.0292 0x3184 icssvc - ok
17:17:12.0308 0x3184 [ 72AB18B50053FA57B08FD4065C11B16B, 4D0CDAEF3C168539BEE22F28CBFEA380535FD78863965EAC6421B9E26048D1F5 ] IKEEXT C:\WINDOWS\System32\ikeext.dll
17:17:12.0319 0x3184 IKEEXT - ok
17:17:12.0323 0x3184 [ 42CAF6216A6E516DC56BA319ACC7EEC5, DF60FF41F06D1101E4A81F7416DB5A34D7BA885CBA874BC15AD43FB4080F2958 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys
17:17:12.0324 0x3184 IndirectKmd - ok
17:17:12.0326 0x3184 InstallService - ok
17:17:12.0358 0x3184 [ CCEDD47ABD068C58C8513DEB785093BB, 2B5571688655265037ACB44D2F2E0CD646EC0567D823C32CA09F13A1814C241B ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
17:17:12.0407 0x3184 IntcAzAudAddService - ok
17:17:12.0415 0x3184 [ 40943C1CD031ACE06A8374AD56B9E5EA, 05E5AD4330F272C421A8726E9E6555115D8717DC5AFDE3CC1DB53A3D7518BF62 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
17:17:12.0415 0x3184 intelide - ok
17:17:12.0419 0x3184 [ 327D9CCF5492543AEF3979F9EEAD02BE, 1C6CD9ECB785D022A38DF683FACCA737469BF72E42365CD6DB8C2675F2ED1F1C ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
17:17:12.0421 0x3184 intelpep - ok
17:17:12.0426 0x3184 [ 10F2757836F41BFAEA2AE19F6FE869B2, 487863EEAEDDC80E39A04030D69950BB58A8BF81EEFBC667398F9F4C238DE007 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
17:17:12.0426 0x3184 intelppm - ok
17:17:12.0426 0x3184 [ E7E63F634298F3033B90B988A038698E, 0C1BAAB2B2D15D89B4479EAC6465349AF021DFDF479DA72844C54726EA369C78 ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
17:17:12.0426 0x3184 IntuitUpdateServiceV4 - ok
17:17:12.0426 0x3184 [ 8387E90B551B9B7F32EDC69909591E9E, 7086B6F2B728D7C46F0A1E7E4F81B3D33C25BD5F8A2A4ECEBA55F8C68F164500 ] invdimm C:\WINDOWS\System32\drivers\invdimm.sys
17:17:12.0426 0x3184 invdimm - ok
17:17:12.0426 0x3184 [ E207078E0E1BB3524277DB9077E4148E, 309320950095AF83DCBE08BFDD4BFE4EBADBF48CA255871A6B37BAAA7B4A5B38 ] iorate C:\WINDOWS\system32\drivers\iorate.sys
17:17:12.0426 0x3184 iorate - ok
17:17:12.0441 0x3184 [ FD8F64B7B345E539F2EA7F72846F83B4, 95F232BC2454D68F1A154C9BD8FCCF60D36F5424B798661D6F1DD8E052ED0D04 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:17:12.0441 0x3184 IpFilterDriver - ok
17:17:12.0441 0x3184 [ 0076CE11539416052A7A79B2DCC53E6D, 0FBBC0948B096922333B54E4DB98BD716CF95340CF699BD3D4EC31B0BA7897CB ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
17:17:12.0457 0x3184 iphlpsvc - ok
17:17:12.0457 0x3184 [ 8AAB863E72A4F9C578FED2EE3541545B, B3278B790DF9F77F8FDDBECAD22E0D2E080D74B8E61EFF112055478B3B0B2329 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
17:17:12.0457 0x3184 IPMIDRV - ok
17:17:12.0473 0x3184 [ 7BEC2AF23F586EFF0DB4DBF4331B0C70, D02506CAB19AD1D3ABBB35FCC569ED613EB9D6828E9BC0389EC8A8DFC548334B ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
17:17:12.0473 0x3184 IPNAT - ok
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/24/18
Scan Time: 4:36 PM
Log File: d6129dd6-0167-11e8-ad78-bc5ff4d7cc8c.json
Administrator: Yes
-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.236
Update Package Version: 1.0.3778
License: Free
-System Information-
OS: Windows 10 (Build 16299.192)
CPU: x64
File System: NTFS
User: GLH-DESKTOP-I7\garyh
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 420411
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 1 min, 46 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 0
(No malicious items detected)
Physical Sector: 0
(No malicious items detected)
(end)
Scan only tok 51 seconds, should take on this computer 20 minutes plus.
ran as an administrator. same result
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 1/24/18
Scan Time: 4:59 PM
Log File: f622885e-016a-11e8-bacd-bc5ff4d7cc8c.json
Administrator: Yes
-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.236
Update Package Version: 1.0.3778
License: Free
-System Information-
OS: Windows 10 (Build 16299.192)
CPU: x64
File System: NTFS
User: GLH-DESKTOP-I7\garyh
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 420506
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 0 min, 51 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 0
(No malicious items detected)
Physical Sector: 0
(No malicious items detected)
(end)
Prior to that ran a windows defender scan, it was clean also.
tried to run FRST64 as administrator. ended up in an endless loop, program box appeared, with another box: "update complete, the tool is ready to use". only way to stop was to use Task Manager.
Tried FSS, won't run.
Kaspersky TDSSKiller:
17:16:56.0556 0x2e34 TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02
17:17:00.0754 0x2e34 ============================================================
17:17:00.0755 0x2e34 Current date / time: 2018/01/24 17:17:00.0754
17:17:00.0755 0x2e34 SystemInfo:
17:17:00.0757 0x2e34
17:17:00.0757 0x2e34 OS Version: 10.0.16299 ServicePack: 0.0
17:17:00.0757 0x2e34 Product type: Workstation
17:17:00.0757 0x2e34 ComputerName: GLH-DESKTOP-I7
17:17:00.0757 0x2e34 UserName: garyh
17:17:00.0757 0x2e34 Windows directory: C:\WINDOWS
17:17:00.0757 0x2e34 System windows directory: C:\WINDOWS
17:17:00.0757 0x2e34 Running under WOW64
17:17:00.0757 0x2e34 Processor architecture: Intel x64
17:17:00.0757 0x2e34 Number of processors: 8
17:17:00.0757 0x2e34 Page size: 0x1000
17:17:00.0757 0x2e34 Boot type: Normal boot
17:17:00.0757 0x2e34 CodeIntegrityOptions = 0x00000001
17:17:00.0757 0x2e34 ============================================================
17:17:00.0795 0x2e34 KLMD registered as C:\WINDOWS\system32\drivers\32644288.sys
17:17:00.0795 0x2e34 KLMD ARK init status: drvProperties = 0xF0F02, osBuild = 16299.0, osProperties = 0x1D
17:17:01.0207 0x2e34 System UUID: {BBDB1914-2208-E8F6-E26E-88F033C222C2}
17:17:01.0608 0x2e34 !crdlk
17:17:01.0615 0x2e34 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 ( 111.79 Gb ), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A'
17:17:01.0617 0x2e34 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A'
17:17:05.0030 0x2e34 Drive \Device\Harddisk3\DR3 - Size: 0x7470C05E00 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
17:17:05.0031 0x2e34 ============================================================
17:17:05.0031 0x2e34 \Device\Harddisk0\DR0:
17:17:05.0033 0x2e34 MBR partitions:
17:17:05.0033 0x2e34 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:17:05.0034 0x2e34 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xDE80800
17:17:05.0034 0x2e34 \Device\Harddisk1\DR1:
17:17:05.0034 0x2e34 MBR partitions:
17:17:05.0034 0x2e34 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
17:17:05.0034 0x2e34 \Device\Harddisk3\DR3:
17:17:05.0034 0x2e34 MBR partitions:
17:17:05.0034 0x2e34 \Device\Harddisk3\DR3\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A384C02
17:17:05.0034 0x2e34 ============================================================
17:17:05.0035 0x2e34 C: <-> \Device\Harddisk0\DR0\Partition2
17:17:05.0054 0x2e34 E: <-> \Device\Harddisk1\DR1\Partition1
17:17:05.0282 0x2e34 F: <-> \Device\Harddisk3\DR3\Partition1
17:17:05.0282 0x2e34 ============================================================
17:17:05.0282 0x2e34 Initialize success
17:17:05.0282 0x2e34 ============================================================
17:17:08.0825 0x3184 ============================================================
17:17:08.0825 0x3184 Scan started
17:17:08.0825 0x3184 Mode: Manual;
17:17:08.0825 0x3184 ============================================================
17:17:08.0825 0x3184 KSN ping started
17:17:09.0000 0x3184 KSN ping finished: true
17:17:09.0955 0x3184 ================ Scan system memory ========================
17:17:09.0955 0x3184 System memory - ok
17:17:09.0955 0x3184 ================ Scan services =============================
17:17:10.0043 0x3184 [ 08312DEEF0D3F8647AA53AD90A69094E, E32620323E7EDD3CAB5B04B9E37DDE7CA87B45C2CB17520D69D03C17E1D5F65A ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
17:17:10.0058 0x3184 1394ohci - ok
17:17:10.0074 0x3184 [ 645009E711BBF117CCEE917A03FB0CDD, B531951443D961C08428CB0F77F57D9F33C37C0637F919A9DA9DB5DA18479F70 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
17:17:10.0074 0x3184 3ware - ok
17:17:10.0091 0x3184 ACPI - ok
17:17:10.0094 0x3184 [ 44EA35A4B397898A83BF1B9B4B8DAE35, 023E3BC5CE47518269A812F156EFF1BD4CB14F1F5DD3FCC317DE046A519E20CE ] AcpiDev C:\WINDOWS\System32\drivers\AcpiDev.sys
17:17:10.0095 0x3184 AcpiDev - ok
17:17:10.0100 0x3184 [ 91D113A1532B8AB1E25B7DE5AB3C2F83, 43134DB92D522FCF537FFA8E829021F43BDD90006D7F096BA483DA1DAD3D1CC3 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
17:17:10.0102 0x3184 acpiex - ok
17:17:10.0105 0x3184 [ 620BB2682BA625DF037072D89F44F6EE, A1A72F663C75DC65B1BA278CD7F43FAE6D1BDAE2F3F1D8269F508DECB555FFF9 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
17:17:10.0106 0x3184 acpipagr - ok
17:17:10.0110 0x3184 [ B9805A3C479390CEAEA5AEF5E4A90A2E, D9256734BC46EA43133873BDDE56B9A3597F74CFE82500FFB374A8EE6293ADD3 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
17:17:10.0110 0x3184 AcpiPmi - ok
17:17:10.0113 0x3184 [ ABD4EB55C661143B015BD0B9B47B235C, 5F109BA04010E634D547E86AF67659EA06BD05FCF78A493DB190790C4D7E13EA ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
17:17:10.0114 0x3184 acpitime - ok
17:17:10.0120 0x3184 [ 38622FFE9369D3EC01C0097235BD9279, 021BC514F61B3874892809981572AF9A29DE7445E56CF8BC09EBC7C6C68E5AB2 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:17:10.0121 0x3184 AdobeARMservice - ok
17:17:10.0142 0x3184 [ 9B3355B29942AF67F014EA90CE1EA960, FBB155F72984045BCD99CC2059B9EDAABD3A52104C3864A290D8A355991F94D3 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
17:17:10.0142 0x3184 AdobeFlashPlayerUpdateSvc - ok
17:17:10.0158 0x3184 [ 8C58BD711FAD5F11E8CFDBC5CED973A5, 340FCD2C492009D5D7732FBF94198C4767125A77E0C71BB20E5CB2BDA5AB57CF ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
17:17:10.0174 0x3184 ADP80XX - ok
17:17:10.0174 0x3184 AFD - ok
17:17:10.0189 0x3184 [ 56166D110D3ECFFC595E5FA02D9BA491, E8B08A07C06C7A3FA1996A0B027F316ACBDD2A21933DAD5CFFA9872C209DB79B ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
17:17:10.0189 0x3184 ahcache - ok
17:17:10.0189 0x3184 [ 84FFB4AC2BA923364DF13F73751E05D1, EBD054282D93F290408A2343C0CBF98CEF7619A8252DC04E15322E51505D45AF ] AJRouter C:\WINDOWS\System32\AJRouter.dll
17:17:10.0189 0x3184 AJRouter - ok
17:17:10.0189 0x3184 [ 084101AB03969D8ED00D5FFBE5F4C3DF, 6425FA16F0CBF5F3008780095364830EBF1F073BD5109764FE9E88245AFB9367 ] ALG C:\WINDOWS\System32\alg.exe
17:17:10.0189 0x3184 ALG - ok
17:17:10.0205 0x3184 [ 62619E31AFF88F906A7E793AC4A9FF51, 2532FAD310036CC3A5A7C8276EDABA6F0705EEE46B61288856CEC0DF6CBA50C6 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
17:17:10.0205 0x3184 AmdK8 - ok
17:17:10.0205 0x3184 [ 735142DD039BEB35632765C41FC6E397, 915373D15B9CCCFBC3DC46582C8EA1251E268DA8E535F2CC407546FE10662341 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
17:17:10.0205 0x3184 AmdPPM - ok
17:17:10.0205 0x3184 [ F1C16AABA27E9E153AEC7BD2AB853F30, 7CFDBD218E6C161747A21BBACC78BF1061F2427ED1247F1AE0879BE155C504E7 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
17:17:10.0205 0x3184 amdsata - ok
17:17:10.0220 0x3184 [ C834D0F1ECB8473E9E6D18EE1BCEECB2, C9B7B9279F96DE4DA1EE096B6463591B3A718F87CD75E544C5A07C3639D1F188 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
17:17:10.0220 0x3184 amdsbs - ok
17:17:10.0220 0x3184 [ 49203D2FFE30CBB36BE66A0E70F3D954, E5B5A3B3B4A8FF03B5C902642C776CECD554CA1DB25419111EDA83602986CCCE ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
17:17:10.0220 0x3184 amdxata - ok
17:17:10.0236 0x3184 [ 4EB4D11F563FBEBDE8DE4E74B8851715, 0F6FF3C5C999990501277AAC5A33DF8194CEE6975347C2D1D2319BB86D54867C ] AppHostSvc C:\WINDOWS\system32\inetsrv\apphostsvc.dll
17:17:10.0237 0x3184 AppHostSvc - ok
17:17:10.0242 0x3184 [ 3692C75C47285D388C886D162F54C430, C38263F070F6F9CC5BBE458460BD3715CAC6E0C5E53AF2486289396CE5557673 ] AppID C:\WINDOWS\system32\drivers\appid.sys
17:17:10.0244 0x3184 AppID - ok
17:17:10.0244 0x3184 [ A78F24AF599EA536C6028D80E4037664, 0FE73CAFAE336D8831225BDCC0158BEEEED2E9E6086109974BE7F1982A79C9CA ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
17:17:10.0244 0x3184 AppIDSvc - ok
17:17:10.0244 0x3184 Appinfo - ok
17:17:10.0244 0x3184 [ E0CBB79ADB89A233928AF60FB2B729DE, CA2C2660686A9D8BD9DB940469221FCD70379AC9837B8620B074C0ED683BEC41 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
17:17:10.0260 0x3184 Apple Mobile Device Service - ok
17:17:10.0260 0x3184 [ 1E085E2302D568F0CE041732B3E887B0, 0D2A3675FDD04C800B302C84A43F233F0217EB4B1AD44B11AADDB0D5D8FA0DB2 ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys
17:17:10.0260 0x3184 applockerfltr - ok
17:17:10.0260 0x3184 [ 043786FF3A1B6A066613E0B166F28F07, CB248FA46D3798487A543344095F8EC5ACD8A4A5B9FCC7C374CAFE9DB04C6281 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
17:17:10.0260 0x3184 AppMgmt - ok
17:17:10.0275 0x3184 [ 1D123729F547EEDFBE3F510346848C38, B170860348FBAC054203A7B858866A12944D7046C01BA3A14AC0860D8C288770 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
17:17:10.0275 0x3184 AppReadiness - ok
17:17:10.0275 0x3184 AppVClient - ok
17:17:10.0296 0x3184 [ 05B19AD776D80FF0FADB44608896C16F, B7DDDF06C0E525774DA3AE3EA718E0CCC2D6C27F7430103B578859FAAAF2941F ] AppvStrm C:\WINDOWS\system32\drivers\AppvStrm.sys
17:17:10.0297 0x3184 AppvStrm - ok
17:17:10.0301 0x3184 [ 3EA678F2C70083FB1588772FE7FAFFE1, 8B236563E285352DE9DC056DC87872412D3A756E82DA9D0191931A19714B4078 ] AppvVemgr C:\WINDOWS\system32\drivers\AppvVemgr.sys
17:17:10.0303 0x3184 AppvVemgr - ok
17:17:10.0308 0x3184 [ ADD72B1FFE20B37A13A5A861724ECA05, D48515E1CF9B6317031B1151AEB8C7042D5FD63ABAD755749FE4660979F4E20B ] AppvVfs C:\WINDOWS\system32\drivers\AppvVfs.sys
17:17:10.0309 0x3184 AppvVfs - ok
17:17:10.0312 0x3184 AppXSvc - ok
17:17:10.0317 0x3184 [ B42C83DE28776B80DBA1310C56DD4F74, 8E017B73D5AD644EC1D46BC1DC2CAF465A6793E2AD6DC35A2E3AB907E7719C40 ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
17:17:10.0319 0x3184 arcsas - ok
17:17:10.0330 0x3184 [ 9CDC69DDFDC91DC628F7515809329798, 2D202B3992A834A04C81834B0AC39E8B953410A24B929CB97D81F9CB546296D4 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
17:17:10.0331 0x3184 aspnet_state - ok
17:17:10.0338 0x3184 [ 0D51FFDAE7C906C308369EAB87358304, 684E0405D82C67285FA1586426EA6792BBE796524C10DD24C2AF48FEF4E3D92E ] AssignedAccessManagerSvc C:\WINDOWS\System32\assignedaccessmanagersvc.dll
17:17:10.0344 0x3184 AssignedAccessManagerSvc - ok
17:17:10.0344 0x3184 [ C2151380227CD1F7DDA2401C1F151367, 0E76DCD69CAB960DC65942269081436A9DDA255E908E71A29E72DFCFC5CDCC7C ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys
17:17:10.0344 0x3184 AsyncMac - ok
17:17:10.0344 0x3184 [ 6191B9B2EE0E8CB957C683B9B341CC86, E60ACC6E9C6E90F2E1DA0DE220C890B50887FD97E7884F8F4301FF2C9A2F408A ] atapi C:\WINDOWS\system32\drivers\atapi.sys
17:17:10.0344 0x3184 atapi - ok
17:17:10.0360 0x3184 [ 225FB1C90CF88CD478D25940B3930873, E11AC067D58B82F9838EB1B641C6FEA9A209C2AF57220DCFFE1B25A6E61C4C55 ] ATSwpWDF C:\WINDOWS\system32\DRIVERS\ATSwpWDF.sys
17:17:10.0375 0x3184 ATSwpWDF - ok
17:17:10.0375 0x3184 AudioEndpointBuilder - ok
17:17:10.0375 0x3184 Audiosrv - ok
17:17:10.0375 0x3184 [ 947FF5992E26AFD4CAA34506678B70BC, 0B125EDBD6E740375E45AAA465DC83740F5CD43A55CDA404F7A81F37EE3BC57C ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
17:17:10.0375 0x3184 AxInstSV - ok
17:17:10.0391 0x3184 [ A921805C1ED3253DF48FCA4D724173EB, 7DB6A13228812550F066C76273ECA6B3FC12E7CC98C245D16B5A13FBCF6A509D ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
17:17:10.0391 0x3184 b06bdrv - ok
17:17:10.0391 0x3184 bam - ok
17:17:10.0407 0x3184 [ 2A7267AA15E508F6D05A5B562F1FD1CE, 7070123619A3F08864844FF89C9DEA1D4ED48D05D2B93E305774BE715583DD51 ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
17:17:10.0407 0x3184 BasicDisplay - ok
17:17:10.0407 0x3184 [ 2E1EE0F10FAF1250D1AC05BFB0E6BD3D, 036821D6EE71AFF59B9DCA28F7F9678E68FD246CB1C4368B11B4447B389D394F ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
17:17:10.0407 0x3184 BasicRender - ok
17:17:10.0407 0x3184 [ 739D089777D2B66DBE7201E5EA4BA2D7, 9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
17:17:10.0407 0x3184 bcmfn2 - ok
17:17:10.0422 0x3184 [ 72963E0676003016B431306A6F4951BF, 3442A7C1AC1EE8E68F15C78CEBAC237D7535F834AA13F8BB602645DD183A73D3 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
17:17:10.0422 0x3184 BDESVC - ok
17:17:10.0422 0x3184 [ 5AB9A3B14D7ACAB4DE8D4FEDB4CDBFAE, 1484A6E4D08B626C961F9809799FC472107E8692D04915267D0435D0DBAF673C ] becldr3Service C:\Program Files\BCL Technologies\easyConverter SDK 3\Common\becldr.exe
17:17:10.0438 0x3184 becldr3Service - ok
17:17:10.0442 0x3184 [ EDDAA3A563E7EB71C991FE91249C7D81, C095F7DDFB06C73AE28359A9DF2AFF69E715A8890864610EAE07750BE5AF48CA ] Beep C:\WINDOWS\system32\drivers\Beep.sys
17:17:10.0443 0x3184 Beep - ok
17:17:10.0445 0x3184 [ 86CAB4060251D418B6449D6CBCC852A6, BF4FB8B1DC542CED79AE30A26071F1DA0D1029284150F99A7C4D2CB9DE732861 ] BFE C:\WINDOWS\System32\bfe.dll
17:17:10.0461 0x3184 BFE - ok
17:17:10.0477 0x3184 [ E223918B4E0B28CF7BE132C30D1E161A, 6F7A88CE04B56C6EE1C8BE1675645B1D730CA2B069A8D521768542AC4EBF2E77 ] BITS C:\WINDOWS\System32\qmgr.dll
17:17:10.0501 0x3184 BITS - ok
17:17:10.0511 0x3184 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
17:17:10.0516 0x3184 Bonjour Service - ok
17:17:10.0521 0x3184 [ 55A8E1BA0B0737F8957F8C22EE8B9E7D, 9480E09BC713A6089320B4DB8A8696C9C6E8AD18A6575AA0DE1E41E8BD06D226 ] BOT4Service C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
17:17:10.0521 0x3184 BOT4Service - ok
17:17:10.0526 0x3184 [ D030A1203680D66716F4E74053468627, C227F266AB7630D03E8ED19695E074B5182E4112E4931FB9552257EE2BE82848 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
17:17:10.0527 0x3184 bowser - ok
17:17:10.0529 0x3184 BrokerInfrastructure - ok
17:17:10.0533 0x3184 [ 2BA1BED8E8168C301522AC7CFBFA2141, 07000BEF5ABCF7795B474B69B1113F7EE5C22CF0F8CAF4A3D5D872B0D452CDD0 ] Browser C:\WINDOWS\System32\browser.dll
17:17:10.0535 0x3184 Browser - ok
17:17:10.0538 0x3184 [ A4863B7B1F0DB513D6E34547BACC211A, 41E74A60721CCBE0A4D487B3EE01BAC3108D9BA819BF58A64E963478C43828E9 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
17:17:10.0538 0x3184 BthAvrcpTg - ok
17:17:10.0545 0x3184 [ 9C9EE272C11252C651C5DE6A1AC1EDAA, DED378E894FA07B75F2E93490075879A50879CACACCF09F3F9EF37EDFA159233 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
17:17:10.0547 0x3184 BthHFEnum - ok
17:17:10.0550 0x3184 [ 69734E386826ED857C889330F35B4D9C, F0804D41D4BA6C9022B70D5092C4F14128D33F66C5D85DE10115A37C36927B70 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
17:17:10.0551 0x3184 bthhfhid - ok
17:17:10.0559 0x3184 [ BC58294295CBAD6637A526470305B5EA, FAA1A1C85D418B063D8A6E93558BA74D766081268354D63E28D372BD55D523DD ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll
17:17:10.0565 0x3184 BthHFSrv - ok
17:17:10.0568 0x3184 [ A94AFAEA86F5F792BB4ECA095B231464, 588256D53CD50B8299FCABF624E8EF29761B16DE1999896DC647FBF8E2BAEA68 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
17:17:10.0569 0x3184 BTHMODEM - ok
17:17:10.0574 0x3184 [ 572BCA61B7E026E057AF7DF456AC7E0B, CA35DCC02BFE2D34C40449E47F0C8BA4AD709F01A952B9354332560CE72A1E4F ] bthserv C:\WINDOWS\system32\bthserv.dll
17:17:10.0577 0x3184 bthserv - ok
17:17:10.0579 0x3184 [ 39E7437FC59CDD7A303ABD514E462E8B, 9DCACFC12090BA03E3DD8E0EFE02382E3D42B528BDF6DD77318CAFACBA9EBA09 ] bttflt C:\WINDOWS\system32\drivers\bttflt.sys
17:17:10.0580 0x3184 bttflt - ok
17:17:10.0582 0x3184 [ 522888590B0C19BC8128119060AE7901, 9C979FD442E7B189FD156BD5E5E4A3D10FDABB3C38094B9C67A702103D39B00F ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
17:17:10.0582 0x3184 buttonconverter - ok
17:17:10.0582 0x3184 [ 2AB01CE5E233A6FBA3E91BD57772AA4B, DC241810B774BCE651B525885480F05D15AE0E623D53E4CB02562A8424C067E2 ] CAD C:\WINDOWS\System32\drivers\CAD.sys
17:17:10.0582 0x3184 CAD - ok
17:17:10.0582 0x3184 [ E2C8EE32C053892E685A989071AAE333, 842228C315BBD5FA802A81833BB0158774969FED4C5A706F9B904F7C70DB80A3 ] camsvc C:\WINDOWS\system32\CapabilityAccessManager.dll
17:17:10.0582 0x3184 camsvc - ok
17:17:10.0598 0x3184 [ F6F97879F53AD57194C6BC8272FD73EA, C11CB040CC64ABC0A6EAD6D6985659896FBB5911D2E10B6584E0F90FE6813C57 ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
17:17:10.0598 0x3184 CapImg - ok
17:17:10.0598 0x3184 [ 9E82A95D77AC78C84BA75FF896B060BF, 87905E55724ADE5149D3BBC2DB76A7275580DE204BB561B8E1FCD631DEF3D9F9 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
17:17:10.0598 0x3184 cdfs - ok
17:17:10.0614 0x3184 [ 147CEBE0C5F7A80135C54715521AD9E1, 99ACF25165C0C17822B0FC06F662848CA0DFAD51B3E3B440005C2E033BFE4840 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll
17:17:10.0614 0x3184 CDPSvc - ok
17:17:10.0634 0x3184 [ C2F158F11391F21C7D3FEB572D11C2D2, 5F5E7A1A4E9A8C6AB0C4735BCE9175AE92870410ACFB2376F950DACE22E075D7 ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll
17:17:10.0640 0x3184 CDPUserSvc - ok
17:17:10.0647 0x3184 [ 6D83565C1652E80447EDEA6947FA89D7, A84A3EA45304A9E3F53DA9F4CB9F2D9FF8A2AD69A36AEA366D35A2F5C9FDF851 ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
17:17:10.0647 0x3184 cdrom - ok
17:17:10.0647 0x3184 [ 200A5398C0E7E78DBDF6C0D9E811F366, 91BED3876FCA06AF551939720C0088BD195AF64C11C6EAD8970EDE8E037A71AA ] CertPropSvc C:\WINDOWS\System32\certprop.dll
17:17:10.0647 0x3184 CertPropSvc - ok
17:17:10.0663 0x3184 [ D81954CE5E016FD716EDDB2B2FD9BA58, C47FF6D6527605238EF46E9BDF4544E2B2F4F9C5BCE13881F569F996541D7FF7 ] cht4iscsi C:\WINDOWS\system32\drivers\cht4sx64.sys
17:17:10.0663 0x3184 cht4iscsi - ok
17:17:10.0679 0x3184 [ F9A8570805807FFD66488F0A858E1308, 5D8363C5EEB7B92CFA219C466D04D8C625CACAFBDEA5857C5C9FA0C391AC2FEB ] cht4vbd C:\WINDOWS\System32\drivers\cht4vx64.sys
17:17:10.0710 0x3184 cht4vbd - ok
17:17:10.0714 0x3184 [ 9798D58461706930190F1F2F6BF21D80, BD7552297A636E19F5D544BDBF3490DA544E76002F62B227FA5BDA7A11760040 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
17:17:10.0715 0x3184 circlass - ok
17:17:10.0717 0x3184 CldFlt - ok
17:17:10.0719 0x3184 CLFS - ok
17:17:10.0825 0x3184 [ BD3B484568382B13D624B9A8B2D67FA0, ADCCD6F17583DF8ADEDFBBB2DF829F6B21599C4D3089729DCAC62F2005588F42 ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
17:17:10.0907 0x3184 ClickToRunSvc - ok
17:17:10.0929 0x3184 [ BE9FA79096DD2CB43E7066897AB52E50, FB7AEE5996BF5115EF1DCEF315A37226A31454073EF60564061A2DB0A4FAD9F1 ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll
17:17:10.0938 0x3184 ClipSVC - ok
17:17:10.0945 0x3184 [ 2BA3BA38B5A6A667B0EAEC477276707B, 80AD05C5C7E0398EB7320A82878700C6588B7411F3DEA02E5784CA599CB548C2 ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
17:17:10.0945 0x3184 CmBatt - ok
17:17:10.0948 0x3184 CNG - ok
17:17:10.0951 0x3184 [ C65AF00EF12A1755E7CA370B0C71935D, C03315A5B999EB9AA5B5F1F000BD8A1C68DFC151B23AA2F29F69F7129407AA11 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
17:17:10.0951 0x3184 cnghwassist - ok
17:17:10.0967 0x3184 [ A50300498D56B2448F3593D25478D508, 841D66D4AB9749EE64802611157A9AAED1117B6B2C411B3DA272CE439E69AE45 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_9c1fb8f4db31c348\CompositeBus.sys
17:17:10.0968 0x3184 CompositeBus - ok
17:17:10.0970 0x3184 COMSysApp - ok
17:17:10.0973 0x3184 [ 65602B0DB49199647FECB2D1212147BE, DC25D2DED7C31B4691B61FC69BB12E50CA5EDA9705339CCC82BE145EFD6D47C5 ] condrv C:\WINDOWS\system32\drivers\condrv.sys
17:17:10.0974 0x3184 condrv - ok
17:17:10.0976 0x3184 CoreMessagingRegistrar - ok
17:17:10.0982 0x3184 [ D64EF74FC6DA47EC2E460076F299E77D, 1F77E9F777FA6996222DE45B3AB2C01CD94C80A4A7F5CA092DDF1F18D74F93AA ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
17:17:10.0982 0x3184 CryptSvc - ok
17:17:10.0982 0x3184 [ 0AAC6E3138AB83C466281642D1A48F15, 31AEBAE422BFDC9EBE0B8CBAEE5ABAA27E8EA47387D4A24C91A3CE92EF7E0C92 ] CSC C:\WINDOWS\system32\drivers\csc.sys
17:17:10.0998 0x3184 CSC - ok
17:17:10.0998 0x3184 [ 9D4FA712339A09110809A4CC270AF4F0, 6403633EB0061CE3E4665E7A757EB697FD47DEE540EEDEC035CC13184FC62947 ] CscService C:\WINDOWS\System32\cscsvc.dll
17:17:11.0014 0x3184 CscService - ok
17:17:11.0014 0x3184 [ 72BE43ABD786E86AAE7EA2193201E100, A013CF10AA4158082B5D0D7F885969C5C92710A6084E57E9DDBDA84420D97367 ] dam C:\WINDOWS\system32\drivers\dam.sys
17:17:11.0014 0x3184 dam - ok
17:17:11.0029 0x3184 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
17:17:11.0031 0x3184 dbupdate - ok
17:17:11.0034 0x3184 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
17:17:11.0036 0x3184 dbupdatem - ok
17:17:11.0038 0x3184 [ B9A3585BD8C1F086BD3FE153B47B7BC8, 4D125DAA110C3BBDEDEB7E3DA282659041AA058D05E5D6F96AE2160ED194FA44 ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe
17:17:11.0040 0x3184 DbxSvc - ok
17:17:11.0043 0x3184 [ A4700D1F78539C0ED32FA50E64F9C692, 5CB03B5F36307BA152245BAD29CB2AC703BBE8197ABC0338A7092ADEA1C3221A ] dc3d C:\WINDOWS\System32\drivers\dc3d.sys
17:17:11.0045 0x3184 dc3d - ok
17:17:11.0063 0x3184 [ 79BDBB684629A526CCD958F06B9D6FAD, 489A85A5F63E5F012740B538878D6DAEBBB474D64F27A6847D3E387A704E5297 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
17:17:11.0077 0x3184 DcomLaunch - ok
17:17:11.0086 0x3184 [ F7FB921F438C3566CEC55657EA4E7D9C, 17FA956E3B89F9B6C154975E7E1AAFB204F5EDEACC14A8424827DE13440A9299 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
17:17:11.0092 0x3184 defragsvc - ok
17:17:11.0101 0x3184 [ B5F9123D6537856EA698386ABA27A232, C60DD499254B4A3741ECE71AF1685763BD6A6F828F879D54E175A6198C89ABF0 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
17:17:11.0106 0x3184 DeviceAssociationService - ok
17:17:11.0111 0x3184 [ 64A80A746FC460126FA4124AA2D93848, 851ECA69489FF9A834B6A5ACF9D51283FD3796E21316D8A22E57DED2F415782C ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
17:17:11.0114 0x3184 DeviceInstall - ok
17:17:11.0125 0x3184 [ A19F51A044B62C994144ED87A7A5A887, 91ECE0E067E138817CD46A876B2D28CB47A2CCBE9C924EA91A1966FDF69AF7DF ] DevicesFlowUserSvc C:\WINDOWS\System32\DevicesFlowBroker.dll
17:17:11.0133 0x3184 DevicesFlowUserSvc - ok
17:17:11.0138 0x3184 [ 0D2A4CA81D1F7B5E5FBFE1E4F60246B8, EF425C2FB1191720F9B53EB26EC904F53851D296B222E20B0733615575D4B7E5 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll
17:17:11.0139 0x3184 DevQueryBroker - ok
17:17:11.0144 0x3184 [ 9910E9CFF5ECDCB225F82E72CE9DE459, BF38E53FC993C4F8170341C7798E2FC18BDB540E7543979581ABCA9E24B4494E ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
17:17:11.0146 0x3184 Dfsc - ok
17:17:11.0154 0x3184 [ 309F4FBA6AC2CA70663C99690AE900C2, D38E3A5AD818DBB165C8C141236AE0C684E67FA1ACCD2914EEA1E6A771B06C33 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
17:17:11.0159 0x3184 Dhcp - ok
17:17:11.0163 0x3184 [ 8C46ADC4354DDE94CA459CB4BA822073, 8B0597866B6BAD22641B70836B29FC01433A00AFDABF31E5672DD5DF6ADCC3BB ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
17:17:11.0164 0x3184 diagnosticshub.standardcollector.service - ok
17:17:11.0169 0x3184 [ E2BF09B816393AF73EDCB8ECF9BBDB2D, DBDFFC2450E4EC684DD59383799ACF1D207B0882C301B8D562FB76307AFCC553 ] diagsvc C:\WINDOWS\system32\DiagSvc.dll
17:17:11.0172 0x3184 diagsvc - ok
17:17:11.0176 0x3184 DiagTrack - ok
17:17:11.0179 0x3184 [ 811173C821171BB910219E53C7FD97AD, F915F90A39F99F6E38082B8077874791BBF21FF271351A4976494C6708C43E56 ] Disk C:\WINDOWS\system32\drivers\disk.sys
17:17:11.0180 0x3184 Disk - ok
17:17:11.0182 0x3184 [ 133E5277C2A50770EADFAC4AF2232D69, E24933DD2440BA8DBDFD3A583301A9BE56A4ED699134242DB52E1AB5721C53D4 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
17:17:11.0198 0x3184 DmEnrollmentSvc - ok
17:17:11.0198 0x3184 [ 569FE16775E15A49DC904DE20BF8CAA0, 18C1734AC5D6C4FE1944916B710450F18FAA7F3594E4EFB8CCEA140FC03A78BE ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
17:17:11.0198 0x3184 dmvsc - ok
17:17:11.0198 0x3184 [ 10E72E3315305461D3F0C7560AE98CA5, 702B5C056DB6B4E337231BBEA48E106FA95F26B48CDE91857305E4C6E4EE6A12 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
17:17:11.0198 0x3184 dmwappushservice - ok
17:17:11.0213 0x3184 [ 4ACA3CE75B4C2243299C24A715E9B3CE, 043610E57C6D87F12D98C1A663B5CA415F64742D30434863073BD902BAE2EAC0 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
17:17:11.0213 0x3184 Dnscache - ok
17:17:11.0213 0x3184 [ 24F0CF56DF2725291937B32597BA8D51, 810D4B43A4FB4B1738BFDAE51A49FD1725483BA686C6A3FA1DC1341D08AC743A ] dot3svc C:\WINDOWS\System32\dot3svc.dll
17:17:11.0230 0x3184 dot3svc - ok
17:17:11.0236 0x3184 [ 6D8971C942FEE43A0AB6B3192534AFB4, 44D437DD32E1FDD7922B352CA6C19C83C1ADD825FB704B8E07BEF01E866E2B99 ] DPS C:\WINDOWS\system32\dps.dll
17:17:11.0239 0x3184 DPS - ok
17:17:11.0241 0x3184 [ F4800922F4ABA619585CE320A72E6389, CA83BCAA8B37F303E89598F8C93B201A3F000A09F4A9963E370D7E59BD79D448 ] drmkaud C:\WINDOWS\System32\drivers\drmkaud.sys
17:17:11.0242 0x3184 drmkaud - ok
17:17:11.0244 0x3184 DsmSvc - ok
17:17:11.0249 0x3184 [ C7DC50CC0C6B0948A0C040622FCD70EA, F9C6B8F27E3DED8F7A681D0F652CCB6B1AE6D5E6CA8654E33EFDCF32A2D294EB ] DsSvc C:\WINDOWS\System32\DsSvc.dll
17:17:11.0251 0x3184 DsSvc - ok
17:17:11.0254 0x3184 DusmSvc - ok
17:17:11.0255 0x3184 DXGKrnl - ok
17:17:11.0259 0x3184 [ FA94398748930D840FE35A44F1D225A7, E2D48460413904AAFB50E18A24471157D2A235F5CCDF89EE49BB139D1CA3B9F6 ] Eaphost C:\WINDOWS\System32\eapsvc.dll
17:17:11.0262 0x3184 Eaphost - ok
17:17:11.0306 0x3184 [ C99D40C97841E0A7F0F90B8629593A97, 2DE7FB6E3CD7B06079C2B05D8C10AD0EDF187684ED1DE5BEE98FAB9A4B331824 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
17:17:11.0343 0x3184 ebdrv - ok
17:17:11.0351 0x3184 [ 94E06D509D50807774F35BEE3163E806, ADADFA0D533944579BA0E5FE31A68D4D1395E7B9DB75E58D47E0ADC0DA5AD16C ] EFS C:\WINDOWS\System32\lsass.exe
17:17:11.0353 0x3184 EFS - ok
17:17:11.0356 0x3184 [ 260BBD6B1ED06298E509B452354EDB91, CF794D5AC62C6DBF356BC717910FD2B106A8BD90C3C03BA43859FD876F8820BC ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
17:17:11.0358 0x3184 EhStorClass - ok
17:17:11.0362 0x3184 [ F3BEBDC1B9DBA32F183079EAE6244837, 5DE0DA8D2A13BFA852355619C6DE5AC2FDFAB314A619A4F209842581E4D82DE1 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
17:17:11.0363 0x3184 EhStorTcgDrv - ok
17:17:11.0367 0x3184 [ A75880A9192B9DA69F46867B06276746, 53856262A5BD4BE93CB45D1F43B87F45CB01C02B7D94231CF05346B9BDF1F18D ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll
17:17:11.0370 0x3184 embeddedmode - ok
17:17:11.0376 0x3184 [ 9E6CB1D3F6AD67AA7A2C831FB9B7E496, EB9AEC7E780B6FDA8B6082D8F4F88C9393B4E6BB49ACE324C882DFB9AF8D0C78 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
17:17:11.0381 0x3184 EntAppSvc - ok
17:17:11.0382 0x3184 [ 1B63CA857FD03FD0A5A1379F2996784F, 9EE5205DCFADAFC62D36528087FA4E023F7E48FF0D2A8333D8A6111AE09D21B8 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
17:17:11.0382 0x3184 ErrDev - ok
17:17:11.0382 0x3184 [ 6A5FA501A2D96001391FF3CBA32935AB, 018DB01ADE957A1A1FF5B168A2EC0EFEF8BFBE036079791FDF0C6AA6C12295BA ] EventSystem C:\WINDOWS\system32\es.dll
17:17:11.0398 0x3184 EventSystem - ok
17:17:11.0398 0x3184 [ F1ACA42D448E3986565EA54275EEEA65, C85101D6E7A2204FD73AAACD972F610B6A4BCF7EB7512412FD34660DCB5E8C5C ] exfat C:\WINDOWS\system32\drivers\exfat.sys
17:17:11.0398 0x3184 exfat - ok
17:17:11.0414 0x3184 [ 0AF4B36754A6EAE794EE4398E219A9E1, A818763D7AE6E7F4BC57294BB4D80FE9E04387BB3EBE8A6088D2AF746FF548A6 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
17:17:11.0414 0x3184 fastfat - ok
17:17:11.0436 0x3184 [ B1A38C0D977D8738779CA3EFEBDFCA8C, EDD852EF89AFBDDBBBE002E6675EAFCC46742B6136EB22428C84D737C6229FEA ] Fax C:\WINDOWS\system32\fxssvc.exe
17:17:11.0445 0x3184 Fax - ok
17:17:11.0448 0x3184 [ 7CD8426A33F06EB72BFEC51F7C264AF8, 4FDD5F6A8BDF25D965CE52132DD0EA77D335C1C5F77A7758F3F6E22DFC12BDF5 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
17:17:11.0449 0x3184 fdc - ok
17:17:11.0452 0x3184 [ 21EB16C5DDFBC19DEBE9EEC10EA423FB, 514327DA987793AFE1DFB4F2C0F033C349432E6F1F6AACBAE23E24E63EFA51B9 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
17:17:11.0454 0x3184 fdPHost - ok
17:17:11.0456 0x3184 [ 57F98EFE6CB82AE5400BA99C705AF45C, 7AB83C7AF4CA49BFC2976FB707B251C181279B7E16EBDD43AD0E1A4AB8C4DFC9 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
17:17:11.0458 0x3184 FDResPub - ok
17:17:11.0462 0x3184 [ 02F93E4B9EC2821B6670208044FF5332, 2D947C8AE51E749029B3180751E4486E27A19471A7A98087076103D307B5CE64 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
17:17:11.0464 0x3184 fhsvc - ok
17:17:11.0468 0x3184 [ DE51BBBCF358188F9736F031546F9908, E2B80DF63C039663085FA9D63F3F30736EC20C49BC678CBD7D7C7231107C3635 ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys
17:17:11.0469 0x3184 FileCrypt - ok
17:17:11.0472 0x3184 [ 822F664952B0F8D11BB6BD2F11779602, B7E9908A305942194E64E834819186CBBF9DD4469B300DCC8D31E1E5674D6600 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
17:17:11.0473 0x3184 FileInfo - ok
17:17:11.0476 0x3184 [ 5A4935682A0D47A4EAC4BE3C2ACF74D6, 0DCF2E7928D11F49EBF906233894E81CFFE938ADFCA802CE0207CA58B4A02AAD ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
17:17:11.0477 0x3184 Filetrace - ok
17:17:11.0718 0x3184 [ 494F167530B08FBB0BF0924242FDD071, D1AC16908B189FCB0BCE0154BD56F958E87C6ACB757FC5918B1690214DEAB6F4 ] Fitbit Connect E:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe
17:17:11.0771 0x3184 Fitbit Connect - ok
17:17:11.0787 0x3184 [ 60641F22D1D38EAD197C25F0339C9712, 110ACEADAE92C384C80356C9DE88E3A94141881E8544DB65736875FFA2716F68 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
17:17:11.0787 0x3184 flpydisk - ok
17:17:11.0792 0x3184 FltMgr - ok
17:17:11.0820 0x3184 [ 9DCB91239DE1FE05F870AE3471E70559, 1EA360023B926F4024B602010AFD168A6C615632B05900427D765CD228280EEF ] FontCache C:\WINDOWS\system32\FntCache.dll
17:17:11.0841 0x3184 FontCache - ok
17:17:11.0841 0x3184 [ A7C6894FFF261C0FEFDCB41BE83CF430, C3DB55140E4848873BC0004030933402CD396112C14F432258D875DB1608700E ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
17:17:11.0841 0x3184 FontCache3.0.0.0 - ok
17:17:11.0856 0x3184 [ 6793F7AE8442C487C55352C78739E77A, EA9FE762B8A339183DB3523CD8E8736B6BEF8489EC11380EF7F1530D10631500 ] FrameServer C:\WINDOWS\system32\FrameServer.dll
17:17:11.0856 0x3184 FrameServer - ok
17:17:11.0856 0x3184 FsDepends - ok
17:17:11.0872 0x3184 [ BB82CC2F51F7C3D5DCD13FA3B040D8F8, 24B9735D8E4BC0416AFDEEE534118D98AF363CFE8AEFE8AB23827DC67FC4239B ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:17:11.0872 0x3184 Fs_Rec - ok
17:17:11.0872 0x3184 fvevol - ok
17:17:11.0872 0x3184 [ 3B5DDF1061930A0A891FA63DB0CB878B, BB48865CFAD8299E96AFBC2993A34FB47B52466C897FF0875836BD48A14B78C7 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
17:17:11.0872 0x3184 gencounter - ok
17:17:11.0872 0x3184 [ 8B34E3F794F652082D7E8AF112F71681, C6CFA239BDF46827BFC89DC9A9BF45B0EBCE3EF1BB7DCA33980A632E549B37F5 ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys
17:17:11.0872 0x3184 genericusbfn - ok
17:17:11.0888 0x3184 [ 127C23F4720C8902A3AB0FEE12205317, E3BF55D81B04572D11B41CDA2DB4509FD252561EB29ED22CC6F616E856E3D86E ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
17:17:11.0890 0x3184 GPIOClx0101 - ok
17:17:11.0908 0x3184 [ A7A85B505944F99CB55C8669E4F7FC0F, AE2B11A0309907949D4BACF32BA487C9A7732D647F00ED428102C380F53465A8 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
17:17:11.0923 0x3184 gpsvc - ok
17:17:11.0924 0x3184 [ C7DEA3458E50B691E69EFF0B47CBCCDB, E33330473BDA2025503B2E65DA03C83C884F56B9E684F90695D4AF1AFB922832 ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys
17:17:11.0924 0x3184 GpuEnergyDrv - ok
17:17:11.0924 0x3184 [ 141904F0581468B39B579EA33CA57549, 1D947A6079CED7840B0FF4720C36D873F5A69EA6C94E4C15ADF1A7C0CD0CD0EA ] GraphicsPerfSvc C:\WINDOWS\System32\GraphicsPerfSvc.dll
17:17:11.0924 0x3184 GraphicsPerfSvc - ok
17:17:11.0924 0x3184 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:17:11.0924 0x3184 gupdate - ok
17:17:11.0940 0x3184 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:17:11.0940 0x3184 gupdatem - ok
17:17:11.0971 0x3184 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc E:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
17:17:11.0971 0x3184 gusvc - ok
17:17:11.0971 0x3184 [ 99A34FD1F6431A10D8C3BB50E170D0F2, 14BFF99BBF9ED53D3A157B096CDE0394824260021BA96E1F2C7B1CFB598DD850 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
17:17:11.0987 0x3184 HDAudBus - ok
17:17:12.0038 0x3184 [ E00BA58A741FEE0209367E79B0FF3F47, FF79C90E87EBEC04207A4B70EE42E86A8C6533725AF40B18668B514404394EB3 ] HDRExpress3Service e:\Program Files\UCT\HDR Express 3\HDRExpress3Service.exe
17:17:12.0038 0x3184 HDRExpress3Service - ok
17:17:12.0057 0x3184 [ 2443FC6EEB9CF092B62127D867901B02, ABD5E907FF066B95C5697C4E470B4EA19976DEC90C8159B963A82EDA218AB114 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
17:17:12.0060 0x3184 HidBatt - ok
17:17:12.0071 0x3184 [ 205043CDC16ADE85E252DD54AE925161, F377F046EFEE53C7786AF15C0BB5BADE36511427575A712B0098A883F3715DB3 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
17:17:12.0074 0x3184 HidBth - ok
17:17:12.0082 0x3184 [ B521DDDC9038C066B1B957BF063A531A, C5FE68FB22C28C4D06A0792FD5AC9A1F0EC01EF26E1D37B9DF05F22D8B7DFF8C ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
17:17:12.0082 0x3184 hidi2c - ok
17:17:12.0082 0x3184 [ 5AC0EBFA76E93273A806176D3178E986, 679BFEFF9F4172EBB14A6C2E8381F54FBDC9E8705E8B0F306723DDF48B6E5143 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys
17:17:12.0082 0x3184 hidinterrupt - ok
17:17:12.0082 0x3184 [ 366AC0E05EBF5D5C375F65CD8BC7F0DF, A6B751864E33EBB5DE2E09403A8C26E72DD5510F3A380FA502393FC11A14A433 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
17:17:12.0082 0x3184 HidIr - ok
17:17:12.0104 0x3184 [ 75F4CCB7FF03603E91DD0C7FF83DAABF, 10508A6C36163C9D40C16A47AB4CA8C03C89BB7795690818E5C562E3FF828D5B ] hidserv C:\WINDOWS\system32\hidserv.dll
17:17:12.0107 0x3184 hidserv - ok
17:17:12.0112 0x3184 [ 7CB54D02746024648FCE184FC3F941FF, 6C7B8E6AD3C05D66868D0268C9C8183021AB241E576184FAD0BD50ED4E18E9ED ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
17:17:12.0113 0x3184 HidUsb - ok
17:17:12.0125 0x3184 [ B5E3F4730F2471C76946E04645203690, D31C45C2BC7554A8B865620A5C7C4E0FF4D31E609D92D760B762955AC7FDB0BF ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
17:17:12.0125 0x3184 HomeGroupListener - ok
17:17:12.0141 0x3184 [ 24C900B7296AA9867FB761A5801AFBD1, 4A765E905D0F7C4B450A28FB85F413F4EAD2B53240E804FA531626ABB0518381 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
17:17:12.0141 0x3184 HomeGroupProvider - ok
17:17:12.0156 0x3184 [ 835FB95D85D362057A72D21A48C2C7F8, 06A57F9E459E52DAA7B27F232DBC1E0ED0E04759D34AF3E15A645D11DFDD6A58 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
17:17:12.0156 0x3184 HpSAMD - ok
17:17:12.0156 0x3184 [ 1878A79551F2EDAE7EBD110AAE6D33AD, 1F409360B44AEB3A6023E953EAB350FFB3EB8322F589E2422AB312288B33A2DA ] HPSupportSolutionsFrameworkService C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
17:17:12.0156 0x3184 HPSupportSolutionsFrameworkService - ok
17:17:12.0156 0x3184 HTTP - ok
17:17:12.0156 0x3184 [ AD930879F319969EB09449C015A32104, 3C33CFA1D3452EAB689178D09311DFF84C4A2D5854837DA75B1D7CC57CE6FB5F ] HvHost C:\WINDOWS\System32\hvhostsvc.dll
17:17:12.0172 0x3184 HvHost - ok
17:17:12.0172 0x3184 [ 9F2CFC90306532866C62BDCDFD2532AA, F27B1087B1E3E06FB49092BBF2DD8CF5B6ADD4CE061FE10C3ED44C58B92BE007 ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys
17:17:12.0172 0x3184 hvservice - ok
17:17:12.0172 0x3184 [ 3737FE486929AFC48F1D10677B698E52, 9E8792F3A494AE3E7CDA65E93B561B6FFFB9C781606F5863D524DDD24CFEB9C3 ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys
17:17:12.0172 0x3184 HwNClx0101 - ok
17:17:12.0172 0x3184 [ 3C65EBF7F1BFD98426C355D66876ECEE, CA1DC462C4D96176C81EF3448238B76B4CDA3C521533973B281359D7F436B8A5 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
17:17:12.0172 0x3184 hwpolicy - ok
17:17:12.0172 0x3184 [ 7E00234C67A322988AFEA717D5609C9E, 9210E400200B1313426792A67C27ECA4DBA9872111DC3C217195FC5DEAC4614D ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
17:17:12.0172 0x3184 hyperkbd - ok
17:17:12.0189 0x3184 [ FBF5BB641DE99AE1DF4835E88D4F8993, 55250C1FCCDA74249D5EE15B2502A68DB1EB60C7AC24500B9FB2DF2E3319CDAB ] HyperVideo C:\WINDOWS\System32\drivers\HyperVideo.sys
17:17:12.0189 0x3184 HyperVideo - ok
17:17:12.0194 0x3184 [ 56FF074E50F9042FD2856AB3418F4B18, 239C9BF23DE2E36FD7112C425CDF18F29B751D75EF3551AEFB048FAD2B0A55E2 ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
17:17:12.0195 0x3184 i8042prt - ok
17:17:12.0197 0x3184 [ B5EC43755E62591197DE5CBBDAA9FEB7, 1B4E0EAB677B09A050925879ECDA311404270DCF020AAD390692427198C73C9F ] iagpio C:\WINDOWS\System32\drivers\iagpio.sys
17:17:12.0198 0x3184 iagpio - ok
17:17:12.0201 0x3184 [ D8CA23F9C5FEF44296FDE1E005C06EC0, 0D7B03EF9E19B9B2A28C3318560488B3F9573CF364A533A9B4A2CD0A7FFA4F84 ] iai2c C:\WINDOWS\System32\drivers\iai2c.sys
17:17:12.0203 0x3184 iai2c - ok
17:17:12.0206 0x3184 [ 7B769C9D19C013F94874C4B15D59A005, 53A15F0480AEC43B5A01CFB17360188885B6ECBFFF6E566D27E5B6D4C7737243 ] iaLPSS2i_GPIO2 C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys
17:17:12.0207 0x3184 iaLPSS2i_GPIO2 - ok
17:17:12.0210 0x3184 [ E0F1B3A2A70FABE3BE1C9140BB55E607, 34E5B055619F3A26B7BB6054EA49D40B7D6DAFE234F57F358FE7C8EE83E10618 ] iaLPSS2i_GPIO2_BXT_P C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys
17:17:12.0211 0x3184 iaLPSS2i_GPIO2_BXT_P - ok
17:17:12.0215 0x3184 [ 89A869BCC0588A3009ECB875B09ECD39, 5ECC2C6E661B326511682D8EA1C82F942C63835890687285FEF455C5C9DC2476 ] iaLPSS2i_I2C C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
17:17:12.0218 0x3184 iaLPSS2i_I2C - ok
17:17:12.0223 0x3184 [ 2E693DF3C02A0859DB8DE25772751100, 3EFFDA44B247E04258429ADC85E88E23F926FD487A3A85BF879E6E5802197B3F ] iaLPSS2i_I2C_BXT_P C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys
17:17:12.0224 0x3184 iaLPSS2i_I2C_BXT_P - ok
17:17:12.0224 0x3184 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
17:17:12.0224 0x3184 iaLPSSi_GPIO - ok
17:17:12.0224 0x3184 [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
17:17:12.0224 0x3184 iaLPSSi_I2C - ok
17:17:12.0240 0x3184 [ 435883A27A376B125BD4DF888417C85F, 091F9285FCF1D5605D03CB68C062A2DE6FF2D705FF43E983A8A7B5DFA0872A96 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
17:17:12.0240 0x3184 iaStorAV - ok
17:17:12.0256 0x3184 [ 7118E4390C4ACDE61E280CE52BCAF44E, 11123C1555344A191283187BF1F4A8D731E29EE27C7A7A7916873E8D2E95D978 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
17:17:12.0256 0x3184 iaStorV - ok
17:17:12.0271 0x3184 [ 9DBE8C359ABACE1BE1BBAB687D114506, D2E5CB2BFC42627C1BB38A68F925DD534AEFFF9354AFD184005EC338E8E6B232 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys
17:17:12.0271 0x3184 ibbus - ok
17:17:12.0288 0x3184 [ 113F3C05CE9B41144E6BF5FEDA4F09B7, 8A0610558DAEEAD81D32456FF8E03463F430ADB84457ED12C34CB76AC3EA407A ] icssvc C:\WINDOWS\System32\tetheringservice.dll
17:17:12.0292 0x3184 icssvc - ok
17:17:12.0308 0x3184 [ 72AB18B50053FA57B08FD4065C11B16B, 4D0CDAEF3C168539BEE22F28CBFEA380535FD78863965EAC6421B9E26048D1F5 ] IKEEXT C:\WINDOWS\System32\ikeext.dll
17:17:12.0319 0x3184 IKEEXT - ok
17:17:12.0323 0x3184 [ 42CAF6216A6E516DC56BA319ACC7EEC5, DF60FF41F06D1101E4A81F7416DB5A34D7BA885CBA874BC15AD43FB4080F2958 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys
17:17:12.0324 0x3184 IndirectKmd - ok
17:17:12.0326 0x3184 InstallService - ok
17:17:12.0358 0x3184 [ CCEDD47ABD068C58C8513DEB785093BB, 2B5571688655265037ACB44D2F2E0CD646EC0567D823C32CA09F13A1814C241B ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
17:17:12.0407 0x3184 IntcAzAudAddService - ok
17:17:12.0415 0x3184 [ 40943C1CD031ACE06A8374AD56B9E5EA, 05E5AD4330F272C421A8726E9E6555115D8717DC5AFDE3CC1DB53A3D7518BF62 ] intelide C:\WINDOWS\system32\drivers\intelide.sys
17:17:12.0415 0x3184 intelide - ok
17:17:12.0419 0x3184 [ 327D9CCF5492543AEF3979F9EEAD02BE, 1C6CD9ECB785D022A38DF683FACCA737469BF72E42365CD6DB8C2675F2ED1F1C ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
17:17:12.0421 0x3184 intelpep - ok
17:17:12.0426 0x3184 [ 10F2757836F41BFAEA2AE19F6FE869B2, 487863EEAEDDC80E39A04030D69950BB58A8BF81EEFBC667398F9F4C238DE007 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
17:17:12.0426 0x3184 intelppm - ok
17:17:12.0426 0x3184 [ E7E63F634298F3033B90B988A038698E, 0C1BAAB2B2D15D89B4479EAC6465349AF021DFDF479DA72844C54726EA369C78 ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
17:17:12.0426 0x3184 IntuitUpdateServiceV4 - ok
17:17:12.0426 0x3184 [ 8387E90B551B9B7F32EDC69909591E9E, 7086B6F2B728D7C46F0A1E7E4F81B3D33C25BD5F8A2A4ECEBA55F8C68F164500 ] invdimm C:\WINDOWS\System32\drivers\invdimm.sys
17:17:12.0426 0x3184 invdimm - ok
17:17:12.0426 0x3184 [ E207078E0E1BB3524277DB9077E4148E, 309320950095AF83DCBE08BFDD4BFE4EBADBF48CA255871A6B37BAAA7B4A5B38 ] iorate C:\WINDOWS\system32\drivers\iorate.sys
17:17:12.0426 0x3184 iorate - ok
17:17:12.0441 0x3184 [ FD8F64B7B345E539F2EA7F72846F83B4, 95F232BC2454D68F1A154C9BD8FCCF60D36F5424B798661D6F1DD8E052ED0D04 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:17:12.0441 0x3184 IpFilterDriver - ok
17:17:12.0441 0x3184 [ 0076CE11539416052A7A79B2DCC53E6D, 0FBBC0948B096922333B54E4DB98BD716CF95340CF699BD3D4EC31B0BA7897CB ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
17:17:12.0457 0x3184 iphlpsvc - ok
17:17:12.0457 0x3184 [ 8AAB863E72A4F9C578FED2EE3541545B, B3278B790DF9F77F8FDDBECAD22E0D2E080D74B8E61EFF112055478B3B0B2329 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
17:17:12.0457 0x3184 IPMIDRV - ok
17:17:12.0473 0x3184 [ 7BEC2AF23F586EFF0DB4DBF4331B0C70, D02506CAB19AD1D3ABBB35FCC569ED613EB9D6828E9BC0389EC8A8DFC548334B ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
17:17:12.0473 0x3184 IPNAT - ok