Google won't work because of Virus Re-Direct?

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7041

    #16
    I do not feel I can turn you loose just yet, with these scans we should be able to mop anything up that remains on the machine.

    Scan with TDSSKiller


    Please download TDSSKiller by Kaspersky and save it to your desktop.

    [ul]
    [li]Right-click on https://sites.google.com/site/canned..._Kaspersky.png icon and select https://sites.google.com/site/cannedfixes/home/hosted-images-tools/RunAsAdmin.jpg Run as Administrator to start the tool.[/li][li]Click on Change parameters and put a checkmark beside Loaded modules. A reboot will be needed to apply the changes, allow it to do so.[/li][li]Your machine may appear very slow and unusable after that - it’s normal.[/li][li]TDSSKiller will run automaticaly. Click on Change parameters and click OK.[/li][li]Click the Start Scan button and wait patiently.[/li][/ul]
    If anything will be found follow this guidelines:

    [ul]
    [li]If a suspicious object is detected, the default action will be Skip, click on Continue.[/li][li]If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.[/li]Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    If Cure is not available, please choose Skip instead.
    [li]Do not choose Delete unless instructed![/li][/ul]
    A report will be created in your root directory, (usually C:\ drive) in the form of TDSSKiller.[Version][Date][Time]_log.txt. Please include the contents of that file in your next post.

    Step 2: ESET Online Scanner

    Important note:
    This scan may take an extended amount of time, make certain your machine does not go to sleep.

    [ul]
    [li]Click here to download the installer for ESET Online Scanner and save it to your Desktop.[/li][li]Disable all your antivirus and antimalware software [/li]
    [li]Right click on esetsmartinstaller_enu.exe and select Run as Administrator.[/li][li]Place a checkmark in YES, I accept the Terms of Use, then click Start. Wait for ESET Online Scanner to load its components.[/li][li]Select Enable detection of potentially unwanted applications.[/li][li]Click Advanced Settings, then place a checkmark in the following:[/li]
    • [li]Remove found threats[/li][li]Scan archives[/li][li]Scan for potentially unsafe applications[/li][li]Enable Anti-Stealth technology[/li][/ul]
      [li]Click Start to begin scanning.[/li][li]ESET Online Scanner will start downloading signatures and scan. Please be patient, as this scan can take quite some time.[/li][li]When the scan is done, click List threats (only available if ESET Online Scanner found something).[/li][li]Click Export, then save the file to your desktop.[/li][li]Click Back, then Finish to exit ESET Online Scanner.[/li]


    ZHP Diag Scan to get a more in depth look into your machine.

    Download ZHP Diag to your desktop.
    1. Right Click Run as Admin.
      2. Click the Scanner button.



    When complete please push the report button.
    A notepad will open… copy and paste the report in your next reply.

    Comment

    • Kriller
      PCHF Member
      • Jan 2017
      • 12

      #17
      Alright. Here are my last three reports! Should I run the DNS thing again?

      ~ ZHPCleaner v2017.1.5.3 by Nicolas Coolman (2017/01/05)
      ~ Run by Clint (Administrator) (06/01/2017 17:26:46)
      ~ Web: https://www.nicolascoolman.com
      ~ Blog: https://www.anti-malware.top
      ~ Facebook : ZHP
      ~ State version : Version OK
      ~ Type : Repair
      ~ Report : C:\Users\Clint\Desktop\ZHPCleaner.txt
      ~ Quarantine : C:\Users\Clint\AppData\Roaming\ZHP\ZHPCleaner_Quar antine.txt
      ~ UAC : Activate
      ~ Boot Mode : Normal (Normal boot)
      Windows 10 Home, 64-bit (Build 14393)

      —\ Services (0)
      ~ No malicious or unnecessary items found.

      —\ Browser internet (1)
      REPLACED Google Chrome Preferences: " https://d31qbv1cthcecs.cloudfront.net/ " =>.Superfluous.CloudfrontNet

      —\ Hosts file (0)
      ~ No malicious or unnecessary items found.

      —\ Scheduled automatic tasks. (0)
      ~ No malicious or unnecessary items found.

      —\ Explorer ( File, Folder) (40)
      MOVED file: C:\Windows\Prefetch\ANONYMIZERGADGETSETUP.1.000.1-CC2CF404.pf =>.Superfluous.AnonymizerGadget
      MOVED file: C:\Windows\Prefetch\ANONYMIZERLAUNCHER.EXE-B80B0BEF.pf =>.Superfluous.AnonymizerGadget
      MOVED file: C:\Windows\Prefetch\DAILYBEE.EXE-BE5BE7DC.pf =>.Superfluous.DailyBee
      MOVED file: C:\Windows\Prefetch\ONESYSTEMCARE.EXE-E3FA0840.pf =>PUP.Optional.OneSystemCare
      MOVED file: C:\Windows\Installer\wix{1B444AF9-1DBE-4884-8F35-969BEFCF69A8}.SchedServiceConfig.rmi =>.Superfluous.Empty
      MOVED file: C:\Windows\Installer\wix{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}.SchedServiceConfig.rmi =>.Superfluous.Empty
      MOVED file: C:\Windows\Installer\wix{3540181E-340A-4E7A-B409-31663472B2F7}.SchedServiceConfig.rmi =>.Superfluous.Empty
      MOVED file: C:\Windows\Installer\wix{7774002B-60B3-4146-BF82-5BF767D468B8}.SchedServiceConfig.rmi =>.Superfluous.Empty
      MOVED file: C:\Users\Clint\Downloads\The Wheels on the Bus - Mother Goose Club Playhouse Kid Song.mp3 =>.Superfluous.MaxStart
      MOVED file: C:\Users\Clint\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.at.atwola.com_0.localstorage =>.Superfluous.Atwola
      MOVED file: C:\Users\Clint\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.at.atwola.com_0.localstorage-journal =>.Superfluous.Atwola
      MOVED folder: C:\Program Files (x86)\Lavasoft =>.Superfluous.Empty
      MOVED folder: C:\Program Files (x86)\Syllabic =>.Superfluous.Empty
      MOVED folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit =>.Superfluous.SHAREit
      MOVED folder: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
      MOVED folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime
      MOVED folder: C:\WINDOWS\Installer\MSI4093.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI4598.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI4C74.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI57E1.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI59AB.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI5A0.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI5AA6.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI5B72.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI5ECF.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI5EC1.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI5FEA.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI61BF.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI63C4.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI64FD.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI6656.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI67D8.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI7B04.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI86E2.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI89E0.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI8B49.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI8C82.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSI907C.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSIF217.tmp- =>.Superfluous.Empty
      MOVED folder: C:\WINDOWS\Installer\MSIFFA.tmp- =>.Superfluous.Empty

      —\ Registry ( Key, Value, Data) (2)
      DELETED key*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\atwola.com =>.Superfluous.Atwola
      DELETED key*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\ol.at.atwola.com [83] =>.Superfluous.Atwola

      —\ Summary of the elements found (9)
      Redirecting... =>.Superfluous.CloudfrontNet
      Redirecting... =>.Superfluous.AnonymizerGadget
      Blog - Nicolas Coolman =>.Superfluous.DailyBee
      https://www.nicolascoolman.com/fr/re...et_infections/ =>PUP.Optional.OneSystemCare
      Blog - Nicolas Coolman =>.Superfluous.Empty
      Redirecting... =>.Superfluous.MaxStart
      Redirecting... =>.Superfluous.Atwola
      Blog - Nicolas Coolman =>.Superfluous.SHAREit
      Redirecting... =>Riskware.QuickTime

      —\ Other deletions. (14)
      ~ Registry Keys Tracing deleted (14)
      ~ Remove the old reports ZHPCleaner. (0)

      —\ Result of repair
      ~ Repair carried out successfully
      ~ Browser not found (Opera Software)

      —\ Statistics
      ~ Items scanned : 878
      ~ Items found : 0
      ~ Items cancelled : 0
      ~ Items repaired : 43

      ~ End of clean in 00h00mn25s
      ~====================
      ZHPCleaner-[R]-06012017-17_27_11.txt
      ZHPCleaner–06012017-17_25_45.txt


      21:06:59.0887 0x1b20 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
      [/quote]

      21:06:59.0887 0x1b20 UEFI system
      21:07:01.0891 0x1b20 ================================================== ==========
      21:07:01.0891 0x1b20 Current date / time: 2017/01/06 21:07:01.0891
      21:07:01.0891 0x1b20 SystemInfo:
      21:07:01.0891 0x1b20
      21:07:01.0891 0x1b20 OS Version: 10.0.14393 ServicePack: 0.0
      21:07:01.0891 0x1b20 Product type: Workstation
      21:07:01.0891 0x1b20 ComputerName: FCLINT
      21:07:01.0891 0x1b20 UserName: Clint
      21:07:01.0891 0x1b20 Windows directory: C:\WINDOWS
      21:07:01.0891 0x1b20 System windows directory: C:\WINDOWS
      21:07:01.0891 0x1b20 Running under WOW64
      21:07:01.0891 0x1b20 Processor architecture: Intel x64
      21:07:01.0891 0x1b20 Number of processors: 4
      21:07:01.0891 0x1b20 Page size: 0x1000
      21:07:01.0891 0x1b20 Boot type: Normal boot
      21:07:01.0891 0x1b20 CodeIntegrityOptions = 0x00000001
      21:07:01.0891 0x1b20 ================================================== ==========
      21:07:01.0891 0x1b20 KLMD ARK init status: drvProperties = 0xFFFF00, osBuild = 14393.576, osProperties = 0x19
      21:07:01.0891 0x1b20 KLMD BG init status: drvProperties = 0xFFFF00, osBuild = 14393.576, osProperties = 0x19
      21:07:01.0891 0x1b20 BG loaded
      21:07:03.0985 0x1b20 System UUID: {79A44638-245E-3B13-C762-9AFBCDF60348}
      21:07:05.0548 0x1b20 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000040
      21:07:05.0579 0x1b20 ================================================== ==========
      21:07:05.0579 0x1b20 \Device\Harddisk0\DR0:
      21:07:05.0626 0x1b20 GPT partitions:
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {CF525503-494A-44EA-BEB8-9EE2905BD308}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {73BA0439-133E-4FE8-A300-BAC4D6046C33}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {71F5C239-4118-42C9-BBBF-707ECFDE43A5}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {4667090D-B518-44E0-BB6D-334750BD2E63}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {6890AA60-1655-45E0-8541-B362B4C3715B}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x6F7047A1
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {C3061797-F097-41BF-B48C-7D9BAB027E9B}, Name: , StartLBA 0x6FBAF000, BlocksNum 0xEB800
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {D4C22392-8925-4342-A5A6-84B25C2081F5}, Name: Basic data partition, StartLBA 0x6FC9A800, BlocksNum 0x3200000
      21:07:05.0642 0x1b20 \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {0FDAA012-146F-4651-BD1B-1E19B39896FA}, Name: Basic data partition, StartLBA 0x72E9A800, BlocksNum 0x186C000
      21:07:05.0642 0x1b20 MBR partitions:
      21:07:05.0642 0x1b20 ================================================== ==========
      21:07:05.0876 0x1b20 C: ↔ \Device\Harddisk0\DR0\Partition5
      21:07:06.0142 0x1b20 N: ↔ \Device\Harddisk0\DR0\Partition7
      21:07:06.0142 0x1b20 ================================================== ==========
      21:07:06.0142 0x1b20 Initialize success
      21:07:06.0142 0x1b20 ================================================== ==========
      21:07:31.0069 0x1cd4 ================================================== ==========
      21:07:31.0069 0x1cd4 Scan started
      21:07:31.0069 0x1cd4 Mode: Manual;
      21:07:31.0069 0x1cd4 ================================================== ==========
      21:07:31.0069 0x1cd4 KSN ping started
      21:07:31.0335 0x1cd4 KSN ping finished: true
      21:07:37.0429 0x1cd4 ================ Scan system memory ========================
      21:07:37.0429 0x1cd4 System memory - ok
      21:07:37.0429 0x1cd4 ================ Scan services =============================
      21:07:37.0867 0x1cd4 [ A7901875F89D011C38CF52C98ACF5B29, 782141AB1DD7ACDE6EA08B5BAFDE8BADD05B81D38C18E097D6 D9C46102056EB1 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys
      21:07:37.0867 0x1cd4 1394ohci - ok
      21:07:37.0898 0x1cd4 [ EE1CCC54F75C24727A218F98FC5349DA, 0B0D26640BFA0F551B7087027E572D0BF2C5EAF50A4187C5A7 D839180B7FF589 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys
      21:07:37.0898 0x1cd4 3ware - ok
      21:07:37.0992 0x1cd4 [ 73C73E1AA0D4D727A04AAAB120B7F56A, 5D311F11022994410DF5C67914D38B1F0D813EFD181EA23475 0286A272D67A1A ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys
      21:07:38.0023 0x1cd4 ACPI - ok
      21:07:38.0023 0x1cd4 [ 0935496EF9624B46B935CB35ECE1F205, A22A2A29195505A65E8626D60B00C86C23E0CABC1EB8345EA5 ED523516CC21C0 ] AcpiDev C:\WINDOWS\System32\drivers\AcpiDev.sys
      21:07:38.0039 0x1cd4 AcpiDev - ok
      21:07:38.0054 0x1cd4 [ D6794C31F4077B71433988787BAA926E, F16365C2F195AAE94D4740E6C3DF4C0CECEC6393CAD65425DC CD28CDBA6EC51A ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys
      21:07:38.0054 0x1cd4 acpiex - ok
      21:07:38.0086 0x1cd4 [ FE5F656D6B35089DA39112E74EC6A85A, 5D81EE63998232A5B36DE47FE15B9D04D5BD02234CA133A246 2AECA8C60A22ED ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys
      21:07:38.0086 0x1cd4 acpipagr - ok
      21:07:38.0117 0x1cd4 [ 2F242941E4DFF69B883D77A16F039557, 45C388365317C720654A659A9326B2BC0E9D84929C70465498 5597D5D620101C ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
      21:07:38.0117 0x1cd4 AcpiPmi - ok
      21:07:38.0156 0x1cd4 [ C247E35A21682DA8D0DC3AF9F025FCC5, 455415EE3166B3043AD8A4DD50B688DB74242267FB55564244 1251EFA823E971 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys
      21:07:38.0157 0x1cd4 acpitime - ok
      21:07:38.0215 0x1cd4 [ E5D1706CE2BFC9127655B194839BEDB5, 742AB5BF63314DF6156523039E442F6F174FF2A57C5FA31835 E368D2C5485C63 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys
      21:07:38.0215 0x1cd4 ACPIVPC - ok
      21:07:38.0402 0x1cd4 [ B79750091FC0842182FE49D263791294, 32FC260A74C9C45CD1E8998523642C285866378FCD9478FEFD 15A0CC42EC0E0B ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpda teService.exe
      21:07:38.0402 0x1cd4 AdobeFlashPlayerUpdateSvc - ok
      21:07:38.0652 0x1cd4 [ 73933F0BBD77436D14959A0BA5DAE3C4, 2EB79868AD9C052EC801E3F44715492E9CE7E5C63B6640BEC3 1F83FB2DBC0D7D ] AdobeUpdateService C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
      21:07:38.0715 0x1cd4 AdobeUpdateService - ok
      21:07:38.0933 0x1cd4 [ 49B9DB97AFC85DCCBDACDAB2E90085B7, 2A6C2A09F74EA15044F442CCFB54A0F24F105ADB915E5C78F0 2F59652DC29152 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS
      21:07:39.0029 0x1cd4 ADP80XX - ok
      21:07:39.0170 0x1cd4 [ 323AA1953ED9C01E23F740FA891FE064, 4CED6E3D61749316CDE28965C913E7ED462539DAAD637A2948 4F62AF47AD650D ] AFD C:\WINDOWS\system32\drivers\afd.sys
      21:07:39.0186 0x1cd4 AFD - ok
      21:07:39.0357 0x1cd4 [ 840E0468368EB5FD87371EF508D72ACF, 7E05854D29C24E9BBB27B038620C345E063FF3B8F1AE0FDA05 4BEDF842FB29A9 ] AGSService C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
      21:07:39.0404 0x1cd4 AGSService - ok
      21:07:39.0701 0x1cd4 [ 23522E5D581F7722B1B5B86737CAE39C, FB81ABD304376A1E87B65F5E1B34477B628CEDB2091C5D754D E97464B6050C5B ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
      21:07:39.0701 0x1cd4 ahcache - ok
      21:07:39.0811 0x1cd4 [ D0905D4A945D01D4B28DB9E1BD5985F7, CF389CBCD3B99D1BAE34A42F723F1005C32213A394F6919780 76D3DF1727715C ] AJRouter C:\WINDOWS\System32\AJRouter.dll
      21:07:39.0811 0x1cd4 AJRouter - ok
      21:07:39.0889 0x1cd4 [ 8FD51B3B35707A66080D7C8CB05E792D, FE52F3DC280D208FDDC75F6E3294B8D601E0D86F9BD3DB1ACC 8FC296AC74C23B ] ALG C:\WINDOWS\System32\alg.exe
      21:07:39.0889 0x1cd4 ALG - ok
      21:07:39.0936 0x1cd4 [ DF21E05E41E5AC3F13F304D91457649A, 7F48F2AD1DBE89A261113C76D7C23AD7D87D5599BCC31F8A55 8A8A10B81BF521 ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys
      21:07:39.0951 0x1cd4 AmdK8 - ok
      21:07:39.0982 0x1cd4 [ 45D0AA4BB90B821DF92E8F19ABED0C5E, EA87A6E98DB3C5A88A844C04C6934E870B7004E783AA521172 2115382A211B90 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys
      21:07:39.0998 0x1cd4 AmdPPM - ok
      21:07:40.0029 0x1cd4 [ 74FFBC43B4B899C9A8CA06A892F2CE73, 8D599363C7F3D373F1859BAA4D06DD0F40BE78B56BE52B74DE 6EA6EF99452004 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys
      21:07:40.0045 0x1cd4 amdsata - ok
      21:07:40.0092 0x1cd4 [ AAB0F1D8D7E54761ABAB13AF161F1680, CF847990EFFA2828F5B1DB1A68F08A6C2C918E9612EDFFCF95 C36BCABBBEA272 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys
      21:07:40.0092 0x1cd4 amdsbs - ok
      21:07:40.0123 0x1cd4 [ F91BAAC4237C40352A807000F3B716F9, F7EFA08E5067C3D419C9D21EDB880BA08883A80DDF35F8B42E C3AB293FE5E03E ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys
      21:07:40.0123 0x1cd4 amdxata - ok
      21:07:40.0186 0x1cd4 [ BC121C099C6C659126AD2102AFDFF8CF, 42B5EE293BDD7ADCE48173A01B30D8452564B9DA225EAF25E9 292FE77C0FCF3E ] AppID C:\WINDOWS\system32\drivers\appid.sys
      21:07:40.0186 0x1cd4 AppID - ok
      21:07:40.0232 0x1cd4 [ 74A24CF946279111D7F203B36569EC02, FD67D36804744B4FE3E20BA891852575E6C2DA6515643B2F4B 4210118B0FCCDA ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
      21:07:40.0248 0x1cd4 AppIDSvc - ok
      21:07:40.0295 0x1cd4 [ 73FAA5517CCD1332F00192A303CF2026, 75636222BFF381A3EECA010752DF7DC1603A395B91FF7FBF92 127B5CA8EFFEE5 ] Appinfo C:\WINDOWS\System32\appinfo.dll
      21:07:40.0295 0x1cd4 Appinfo - ok
      21:07:40.0514 0x1cd4 [ 7D811EA7A2AAA49B0446D42CBC1CD338, AFECE5E44E48F756C7EB81D95C9237552AF8A9C02CBE756E0F 3D3C6524DE49AD ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      21:07:40.0514 0x1cd4 Apple Mobile Device Service - ok
      21:07:40.0545 0x1cd4 [ 68190E2BADF23BD782344970E5B5DE9E, 95D30EC12C7FDF5822CED8BC2F17669A6687A2FB262B4F0D15 C8DCFF4E9AB33D ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys
      21:07:40.0545 0x1cd4 applockerfltr - ok
      21:07:40.0733 0x1cd4 [ A0746EF6C5AB7A17A67BC167167499C1, 1D2154D3AFC5219293EDD508C7726E7756FB72BF04F73861C5 75D1FE5C553411 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll
      21:07:40.0748 0x1cd4 AppReadiness - ok
      21:07:40.0951 0x1cd4 [ 2C1CEC25F6D92871F38960E2E84CC3EE, 979DB74192644A71F3031EB29480ECEFE014B916636D85AACD 64292CB58494A5 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll
      21:07:41.0030 0x1cd4 AppXSvc - ok
      21:07:41.0108 0x1cd4 [ E6AB1F0B4C3D4E0D2A88332D76FECD03, 0D3003EB979DA4546DCDD055011E24F13E34F683F02C9801CA C564D1809F11D2 ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys
      21:07:41.0123 0x1cd4 arcsas - ok
      21:07:41.0155 0x1cd4 [ 61C5A480C43E7E8E49C42869F49D0D3E, E610F0E4315ABA1D90AD4A1D7A68ABA2ACBB7FCA89E9D17984 70365D52592D55 ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys
      21:07:41.0201 0x1cd4 AsyncMac - ok
      21:07:41.0311 0x1cd4 [ A10F989A812B57B9695F6C305907C9C6, E2B292610079AA1A10696138DE8130905A8A834B75A8DED7EB F8B6732B77A0F4 ] atapi C:\WINDOWS\system32\drivers\atapi.sys
      21:07:41.0326 0x1cd4 atapi - ok
      21:07:41.0483 0x1cd4 [ 59F44051BCD479E70446506B7E4E78BB, CB58E55196EC702DC85916F963A3C16D429C141391F9AA7F41 5BD63E7328C4C6 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
      21:07:41.0561 0x1cd4 AudioEndpointBuilder - ok
      21:07:41.0842 0x1cd4 [ 1C986DC8F4FDA1B040AC1176FB24467F, DEDA2FF4D0369348C2A74D29FB08AC86219BBCFDF44C59339B C39A25AE0727EB ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll
      21:07:41.0873 0x1cd4 Audiosrv - ok
      21:07:42.0280 0x1cd4 [ E42BCCE03A0A4CECC0C5A86600DF5070, 0DB3C32CA8373CE744C90DD3B37D91BE706A2D4AE5041731D7 3B4EAC076228EF ] AVControlCenter C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
      21:07:42.0295 0x1cd4 AVControlCenter - ok
      21:07:42.0342 0x1cd4 [ 6D90FDA2DC364B8EA1420F2F81585CC3, 10E6F23A213CFE49BE04BB7D366ADD4028D61D7114FEC67C30 B5467DF6B36D4F ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
      21:07:42.0342 0x1cd4 AxInstSV - ok
      21:07:42.0451 0x1cd4 [ 61BAC67048CA5C1D08C48FCC8012B613, 71B2A466FC38DA1029B471FBD2541D8FE359751A7B212AE0F4 20DB3645916450 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys
      21:07:42.0451 0x1cd4 b06bdrv - ok
      21:07:42.0592 0x1cd4 [ 68F72B05EBC6D1779C0D60A147C7CA0B, AA1C857BEE34865C6B901157FC22570D4CF45D950708BAD7AA 333F120F2B474C ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys
      21:07:42.0592 0x1cd4 BasicDisplay - ok
      21:07:42.0623 0x1cd4 [ 23156E7EDAF613D839E2839746B168D3, CAEF8F9C7D3A338BD747AC9D5BFBE730D77B911E87BCF532EB B75E1F80916AFA ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys
      21:07:42.0623 0x1cd4 BasicRender - ok
      21:07:42.0717 0x1cd4 [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCF C028D76DEFE52D ] bcmfn C:\WINDOWS\System32\drivers\bcmfn.sys
      21:07:42.0717 0x1cd4 bcmfn - ok
      21:07:42.0811 0x1cd4 [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09 559462DF30939F ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys
      21:07:42.0811 0x1cd4 bcmfn2 - ok
      21:07:42.0983 0x1cd4 [ 2B4D3AEAAD02954F8C191BC2D67949AD, 8237C9AD556CFAF7442FF60F78608104BC17CE3134C89D986D 49C38CC60B1518 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
      21:07:42.0998 0x1cd4 BDESVC - ok
      21:07:43.0077 0x1cd4 [ 0A508274355745EEF01C6BE3198D02C4, E2DB08AEE2368FA95FDB357BB31EA4EBF31679C3E72E109DB3 D7CD1B5F7B828E ] Beep C:\WINDOWS\system32\drivers\Beep.sys
      21:07:43.0077 0x1cd4 Beep - ok
      21:07:43.0248 0x1cd4 [ 5125CBB61AC81168366BEB290399CB8E, B2A3095D45E2114DE2BD0E5A3AE20B3CE95EE517A35B9E1EAD 05E231F38DBDCF ] BFE C:\WINDOWS\System32\bfe.dll
      21:07:43.0264 0x1cd4 BFE - ok
      21:07:44.0202 0x1cd4 [ CE27F2268497E57A94A48F8D1B47A1B6, 459A2A5C7E1CA27E720AFA95B342CDFD52224467DC4FC54AF8 70BA5781643F88 ] BHDrvx64 C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\BASHDefs \20170105.001\BHDrvx64.sys
      21:07:44.0233 0x1cd4 BHDrvx64 - ok
      21:07:44.0311 0x1cd4 [ D876C567AB767258036F05E4766189FD, DE8BA67325CB64495BD454B8F9DDCAE82636253844FC68B360 C7E1CF5D51DD0E ] BITS C:\WINDOWS\System32\qmgr.dll
      21:07:44.0545 0x1cd4 BITS - ok
      21:07:44.0764 0x1cd4 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95 008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
      21:07:44.0764 0x1cd4 Bonjour Service - ok
      21:07:45.0420 0x1cd4 [ 9CD2A4821DE379305CACB2E99AD8953A, 89D700DFC3C59ACBBADB48954A28C0EBF8D6A11A9E63837689 DD891868E43188 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys
      21:07:45.0420 0x1cd4 bowser - ok
      21:07:45.0702 0x1cd4 [ 2447BD15B41298622CC662249CD0F496, 013A326D2E3BF68D654BBABE2F1E5DF0FF0A153A4B95D570EE 28F9BC0F5A78C3 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
      21:07:45.0717 0x1cd4 BrokerInfrastructure - ok
      21:07:45.0858 0x1cd4 [ B3F32C630DD3F2F6A6091B89CFF13641, 7A9C53EF9AB9FF1DC392FD711B194A101DB36CA5BC799E817B EB446741089B76 ] Browser C:\WINDOWS\System32\browser.dll
      21:07:45.0858 0x1cd4 Browser - ok
      21:07:45.0983 0x1cd4 [ A70E09FD082BFA67BE085D41C8B6A85F, 1711163E7BE0DE83701A0293BF5D4D37AAD124D88F6FFA3FCC 6CF0F3A7D3B78D ] BthA2DP C:\WINDOWS\system32\drivers\BthA2DP.sys
      21:07:45.0983 0x1cd4 BthA2DP - ok
      21:07:46.0061 0x1cd4 [ 722036C26D2C4E50EC2A2EC5FD678846, 999468038AE01F0FF6881F4B2A2CB67BC636641188E95F1072 9E08ADBC3CB3DE ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
      21:07:46.0061 0x1cd4 BthAvrcpTg - ok
      21:07:46.0218 0x1cd4 [ 77630A51FAF6A07922FEE835F4DED8F6, E096A9DC12885FD19575346A9693A66D0DDFF96C3155AD2040 F2BF4249D1D609 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
      21:07:46.0218 0x1cd4 BthEnum - ok
      21:07:46.0296 0x1cd4 [ 20C63A9CC92CEA8D284C6EA36FED68DC, DA7669CCCA6838269297DD45EDB48149898B3E14648B5DB3B9 3AF82A3279B411 ] BthHFAud C:\WINDOWS\system32\DRIVERS\BthHfAud.sys
      21:07:46.0296 0x1cd4 BthHFAud - ok
      21:07:46.0327 0x1cd4 [ C2E31BE025D46D189E38DD1EDF07837A, 656528DCAAAF485EC57EE5C3021E96736634DE3B9C39CBCD27 28E055ABD4C0A5 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
      21:07:46.0327 0x1cd4 BthHFEnum - ok
      21:07:46.0374 0x1cd4 [ F7CD605FC0B0B22F3F6F247595E3A655, 1CD9140DE5415DDBEACD8667E63E5C95FD64D693B56302A047 4E693E578BEAB0 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys
      21:07:46.0374 0x1cd4 bthhfhid - ok
      21:07:46.0452 0x1cd4 [ B157D72BDA6A6DD6E9DC6BF338CD0CF8, B2AC26AE214151E5AD93DED78256BC0295DBF0133C854E7DEE 4CD776D9C9A349 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll
      21:07:46.0468 0x1cd4 BthHFSrv - ok
      21:07:46.0530 0x1cd4 [ 0AB691736D4D4029444AF62DE59CFD37, C1C22EFBF67331B87AB261BBF9813009257437BA02F728EC2D FA1A49ECC5FABF ] BthLEEnum C:\WINDOWS\System32\drivers\BthLEEnum.sys
      21:07:46.0530 0x1cd4 BthLEEnum - ok
      21:07:46.0577 0x1cd4 [ 535DC41A33630AE4C262406F9E981C03, 599332589AA28D04189E19B87A4AE6FEEB60B40A7BC6E3B112 40DA363A981C29 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
      21:07:46.0577 0x1cd4 BTHMODEM - ok
      21:07:46.0608 0x1cd4 [ 224BA1CB1F3C702F0D001D2AFC9793B1, F139F6F78C716E1167E16530AE31E4A26C2A69467BCB08A9A5 2A101B31DF7771 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys
      21:07:46.0608 0x1cd4 BthPan - ok
      21:07:46.0740 0x1cd4 [ 851ED52AE3E62CD5374BD4BBFF7A9DAB, 381281CB7D8FC4026092330B06E24BC84EEF79EE3C97E21900 D950D7D9AB2FC3 ] BTHPORT C:\WINDOWS\System32\drivers\BTHport.sys
      21:07:46.0740 0x1cd4 BTHPORT - ok
      21:07:46.0834 0x1cd4 [ 96932F631F5CB9F5D1C8F99A71568EF3, 5E4C8955A2EE9DC76B4EBC383653EB753D76D6B017E1A5DD55 3AC16094D7F12A ] bthserv C:\WINDOWS\system32\bthserv.dll
      21:07:46.0850 0x1cd4 bthserv - ok
      21:07:46.0944 0x1cd4 [ DC5955E589C55E2313D69B64E1A183F3, 06D703246D0813DE53D62885C8B7381135783673FF4BDDD5CC 38FEB54901BB76 ] BTHUSB C:\WINDOWS\System32\drivers\BTHUSB.sys
      21:07:46.0944 0x1cd4 BTHUSB - ok
      21:07:46.0975 0x1cd4 [ 23F9EF739F685E07482116425E7879AA, 0EBDF96A49A319C0BCF6F51FB6C8C392C017E1738B950C19C9 1FF43E14D73143 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
      21:07:46.0975 0x1cd4 buttonconverter - ok
      21:07:47.0069 0x1cd4 [ 60EB6A4CE3E21887D302350631C16F26, 4270EFA22285C1A9336CF1220761E416950D2DA9C6A40D1D84 52686CD5040DAB ] CapImg C:\WINDOWS\System32\drivers\capimg.sys
      21:07:47.0069 0x1cd4 CapImg - ok
      21:07:47.0381 0x1cd4 [ 01E4118E5850159F988EB4C54069B4CC, 980773022D70440FBEF5D8B747C5D40E6496F1CBCD886DE9F4 41E171507A48C5 ] CCSDK C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe
      21:07:47.0397 0x1cd4 CCSDK - ok
      21:07:47.0537 0x1cd4 [ 03427B8FF618BE50EB5027B4E549C0D8, 3C3815FE3C847B992E794B1BB0FDB87B8D18AEC95BA9E91659 1CF43EB8169D15 ] ccSet_NS C:\WINDOWS\system32\drivers\NSx64\1608010.00E\ccSe tx64.sys
      21:07:47.0553 0x1cd4 ccSet_NS - ok
      21:07:47.0584 0x1cd4 [ F8FB51B9EF6372610E9B31A1D86B62FC, 7461584A8B39AC549AD7BAFFA509D4CD81EEE542808BC8EFC2 85863A0AE6432D ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys
      21:07:47.0584 0x1cd4 cdfs - ok
      21:07:47.0678 0x1cd4 [ 2E6612376D257F74781F2EF1F869D8C3, 908B0DECB9F098F7F11B029A03C06C67FB52E5E8BEA42033A2 B579D3B3686AB8 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll
      21:07:47.0678 0x1cd4 CDPSvc - ok
      21:07:47.0756 0x1cd4 [ A93C9B9EBE2FDE5A536000D72CC17F7F, 9793CFAE8BE8C6B5B39A1D276577965FBB2CE131325A410B7C 68BD23492ADAAF ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll
      21:07:47.0756 0x1cd4 CDPUserSvc - ok
      21:07:47.0897 0x1cd4 [ 613D0137C269187FA298A157E3D14A18, 84BC268525F14BB27202CE242BF94D9E83BC91B50A03359085 74F31B29A2F04D ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys
      21:07:47.0897 0x1cd4 cdrom - ok
      21:07:48.0116 0x1cd4 [ 9450FA11E9DE6715FCB71A519A8FF90B, B7E341C6E4CE967FCDD0D17A497C07E8A1C6B0AACE8A6E8E5D 6C21EF73F13E16 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
      21:07:48.0131 0x1cd4 CertPropSvc - ok
      21:07:48.0178 0x1cd4 [ 0AED948DA8D5F08B3D6F12E4E2089736, 95E538E81DDBC83492C5F3820C82C78F050B4D74ACF12D7970 EC84F93581AE29 ] cht4iscsi C:\WINDOWS\system32\drivers\cht4sx64.sys
      21:07:48.0194 0x1cd4 cht4iscsi - ok
      21:07:48.0522 0x1cd4 [ 0002A0FDE087C1657AB31CE73077539C, 4DD6210B67E9633AB3240371590869DC833A4C986C74FC12A5 D4FFFFD361848A ] cht4vbd C:\WINDOWS\System32\drivers\cht4vx64.sys
      21:07:48.0584 0x1cd4 cht4vbd - ok
      21:07:48.0631 0x1cd4 [ 6B4F90A287D75CCD78694F6790C911B2, 73D7C31E9F475FA3FD568FCA9A953F968729AA114F63C06F38 BF5198DAD67BD8 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
      21:07:48.0631 0x1cd4 circlass - ok
      21:07:48.0678 0x1cd4 [ B72D26074E72A757D788FB1BEF8B2F2E, 36847C5315AFB9A5EC66AD3EF2A09C24C0FAF669FDF0831F78 600F4609352CB4 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys
      21:07:48.0678 0x1cd4 CLFS - ok
      21:07:50.0309 0x1cd4 [ D26FE6EEB9177A964BF0999738BEA549, C008A1D5BD8328F2041DEB2DD46D754DDEFF784E01BF07BF6E 3651D414E71258 ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
      21:07:50.0418 0x1cd4 ClickToRunSvc - ok
      21:07:50.0528 0x1cd4 [ E133CFCBFABB3CB517BE9F42FEA5887C, DA699CDD5F3CC427354540C907BD24CCA7BAC3112C53918EB6 11CB4EEC7611DA ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll
      21:07:50.0543 0x1cd4 ClipSVC - ok
      21:07:50.0606 0x1cd4 [ EEC3A4A98AE1A337E3CD1483AD6F2E15, 764DA329984A95E092F5C15116DA34FA7FC27216C0862365D4 BF10ADC97EC5C5 ] clreg C:\WINDOWS\System32\drivers\registry.sys
      21:07:50.0668 0x1cd4 clreg - ok
      21:07:50.0856 0x1cd4 [ 429623E266EF067A44E8CF148E9DFB9B, A48AA85ACC52C7AD73DB2D6148B3F9FB5EAC33C8F8C5BB6D7D 0A9D84B7C08E11 ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys
      21:07:50.0856 0x1cd4 CmBatt - ok
      21:07:50.0950 0x1cd4 [ B0D9B87B795B7833C9152441CBD55CC4, D86C0FE8BF03D6F3330E16728FE6645AE910F95D23A9EFBDF3 A50F45AB5D525B ] CNG C:\WINDOWS\system32\Drivers\cng.sys
      21:07:50.0981 0x1cd4 CNG - ok
      21:07:50.0996 0x1cd4 [ 3DB10C59405931E2C72EFB82C1AF97D1, 100B5450A70988DB1C1F8A5FDBB3553AF1A0D47B42A5AC7146 0DB92E26010CE6 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
      21:07:50.0996 0x1cd4 cnghwassist - ok
      21:07:51.0153 0x1cd4 [ 34C935AF2A414572B412B3556586D783, 912981B88B0796576ECCD5EBE0C4728EC02D5D6A96B039447D CBA59B2583F25E ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\com positebus.inf_amd64_a140581a8f8b58b7\CompositeBus. sys
      21:07:51.0153 0x1cd4 CompositeBus - ok
      21:07:51.0153 0x1cd4 COMSysApp - ok
      21:07:51.0184 0x1cd4 [ 44EEEB2382F566999287E13F2067693C, 53A4A0C85EAD38030FF2078C67465E3710ECD03A08FF34E1E6 7B2E3E1CC70043 ] condrv C:\WINDOWS\system32\drivers\condrv.sys
      21:07:51.0200 0x1cd4 condrv - ok
      21:07:51.0512 0x1cd4 [ 5DE2049D5F57C1D142F36FA9CE443693, E6C2807C0B1EF90C11EB39634693B76EACE6CC675777776112 835212A334F328 ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
      21:07:51.0528 0x1cd4 CoreMessagingRegistrar - ok
      21:07:51.0918 0x1cd4 [ 82970372EF5A2D8E033030D7E33B8FC2, AF29F73CA6C7FE99AB42F494332775869A760C3D069CFBF339 7BE8D0B5855E7C ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
      21:07:52.0012 0x1cd4 cphs - ok
      21:07:52.0081 0x1cd4 [ 5F06CAC4B09250CDDDD0180A08162924, A2EB0A57225E65FC264CFC9FAD858D8B54A015CDAE3DC904B1 C4E9AAB40B1F06 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll
      21:07:52.0081 0x1cd4 CryptSvc - ok
      21:07:52.0112 0x1cd4 [ 039B5A8CBD5C75D1C46DF15F7C74D136, A5C8A41F2D406D37E147939F2058373ED091BFCC00CA7E829F 887638CD3A2F64 ] dam C:\WINDOWS\system32\drivers\dam.sys
      21:07:52.0128 0x1cd4 dam - ok
      21:07:52.0284 0x1cd4 [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C9 46708E955A2909 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
      21:07:52.0316 0x1cd4 DcomLaunch - ok
      21:07:52.0409 0x1cd4 [ AE9F09F87755C18904656CB4F59F351D, B352A43B3B68B497D87B49C302AF3F37F36D56D49878AE3785 C3D43597E5DC57 ] DcpSvc C:\WINDOWS\system32\dcpsvc.dll
      21:07:52.0456 0x1cd4 DcpSvc - ok
      21:07:52.0644 0x1cd4 [ ABBD3EE724117242E28D31F19FBCFF03, 68EA91A969DD80A5DE28B0A8EAEB308837183713559C2C2FAE F991858C971393 ] defragsvc C:\WINDOWS\System32\defragsvc.dll
      21:07:52.0659 0x1cd4 defragsvc - ok
      21:07:52.0800 0x1cd4 [ DD74F18227ACC837D9856E24282D446D, 6A760E44CD897952538CDFA8895FE11263D51AAA79CFF24C01 F3862E919DA478 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
      21:07:52.0816 0x1cd4 DeviceAssociationService - ok
      21:07:52.0847 0x1cd4 [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3 FBB74A27266C9C ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll
      21:07:52.0909 0x1cd4 DeviceInstall - ok
      21:07:52.0941 0x1cd4 [ CDF1B1B5C5951111791C236B2696C7F8, BF6C4BA545C8827B40DB69890DB4D2B2F9C583C5E3CFBDFD37 0B05891141458D ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll
      21:07:52.0941 0x1cd4 DevQueryBroker - ok
      21:07:53.0034 0x1cd4 [ 0D1D392ED2597F295956D058D33BD7C3, 2F7FE5A06D880F9E2A46C9803DD249DC40C2898C04E946D14E 7EECCCC9F2B24F ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys
      21:07:53.0034 0x1cd4 Dfsc - ok
      21:07:53.0128 0x1cd4 [ F0D4400BA0F08610D9A551B15BF10B76, 83EB8FB272FC2DD2CC0659C2FB90AD0DAE88A88AB3951E03BC D933A25B601E10 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll
      21:07:53.0144 0x1cd4 Dhcp - ok
      21:07:53.0425 0x1cd4 [ CA7FEDDFCF61EF15A09C54DA2C07C49F, 346EF7709BA9E6BD48592B86FA46F9D956C847EF91F4980EEA D98269D0F0EF67 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.Standa rdCollector.Service.exe
      21:07:53.0425 0x1cd4 diagnosticshub.standardcollector.service - ok
      21:07:53.0909 0x1cd4 [ CAD14E0AD1F03397E9B1C8733D76BEF4, 0035EF35F6520B1DF0E599C8A06D4163C52576BCE0976BF729 B44DECDC506627 ] DiagTrack C:\WINDOWS\system32\diagtrack.dll
      21:07:53.0972 0x1cd4 DiagTrack - ok
      21:07:54.0052 0x1cd4 [ 35B9D46560339A5A7F0CAC6ED702C817, F70480B01533B7029F90E2DE297E9E829660300DDE7A7D009B 0AC2684E7691A7 ] disk C:\WINDOWS\system32\drivers\disk.sys
      21:07:54.0068 0x1cd4 disk - ok
      21:07:54.0271 0x1cd4 [ 09CF47A74BFB480B8262FCEE222004B6, F5CD0ACA04BCB95984595CC2E17BC9E92865091A0A3BCAD4B0 6438A1570E7696 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dl l
      21:07:54.0271 0x1cd4 DmEnrollmentSvc - ok
      21:07:54.0349 0x1cd4 [ 815F45161A4571C2C44491564F3D5968, 32E7AE8414A178CE429C0CDFCF718E3C11C705FB3155EA5CA0 EAD48AAE507B01 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys
      21:07:54.0349 0x1cd4 dmvsc - ok
      21:07:54.0380 0x1cd4 [ 6E5EE6E420FECD64DE463C5F01CBFE71, F173C56895E80AA03D70CD78B3AB659C2EEAACFF43BE3B6EF3 939D6F4AD4F62D ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
      21:07:54.0380 0x1cd4 dmwappushservice - ok
      21:07:54.0474 0x1cd4 [ 7F8A3ABF7750326E18CE953CCE262670, 5DBD159E8A455A42764FC73CF7DCAC849B5896848C5589B00B D36697804C0A3B ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
      21:07:54.0474 0x1cd4 Dnscache - ok
      21:07:54.0521 0x1cd4 [ 8F46B4C3F9BA19C26A26D0A11137B20B, BA0A66DBA98D77FD85A7CD2D4593F2B2A1A3B4D32BBECBCFFB EB5A54DCB0D8ED ] dot3svc C:\WINDOWS\System32\dot3svc.dll
      21:07:54.0552 0x1cd4 dot3svc - ok
      21:07:54.0583 0x1cd4 [ CA09EAEE92C6FDDC6B05057F11A0372D, 14DB5C186B69644AA93C445BF31CC9670204F95A47B77B6EAC B19B4A316378AD ] DPS C:\WINDOWS\system32\dps.dll
      21:07:54.0583 0x1cd4 DPS - ok
      21:07:54.0630 0x1cd4 [ AE6BD4C879A8C849E53947C92DF3B3A0, 8C29774CB2D30D901C54AAC0C8ACE709351EE40E5C8FB9951B 2A18B4A03F28B7 ] drmkaud C:\WINDOWS\system32\DRIVERS\drmkaud.sys
      21:07:54.0630 0x1cd4 drmkaud - ok
      21:07:54.0693 0x1cd4 [ 7433474BE77F065D2FA628671FE31A3E, 063ADDC68F48036749E6EC7B2F66284DB29F90F62E9468D16B 4EF5A0FDC45E35 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
      21:07:54.0708 0x1cd4 DsmSvc - ok
      21:07:54.0755 0x1cd4 [ 5FCA45C24501DA7390065D3706A9FC3F, 093FD840F1502ECC6F05B9723CA523B3F15CF39A5D2B9106E1 267739B3F2C52C ] DsSvc C:\WINDOWS\System32\DsSvc.dll
      21:07:54.0771 0x1cd4 DsSvc - ok
      21:07:55.0021 0x1cd4 [ 19F2B54EE8861D90579BD0E3AE5182F9, FDD4F091C61C8C20550C8F68375ABD7ED718A733F680F0F036 7D4796C302BA14 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys
      21:07:55.0052 0x1cd4 DXGKrnl - ok
      21:07:55.0099 0x1cd4 [ 9FCE4EF7D5E274F862D9A2526B5F4779, 81D42D5475C2801C8E0C233A0BA827569D8A70590017C91C66 5C8B232D9BFAA9 ] EapHost C:\WINDOWS\System32\eapsvc.dll
      21:07:55.0099 0x1cd4 EapHost - ok
      21:07:55.0427 0x1cd4 [ 7EC6FC0266D74BD47ABB130A328B70EC, 3856790AF967AB03B1A89F97328DC4D5A6854ACDA6169681A9 AFB03D7CF791F9 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys
      21:07:55.0615 0x1cd4 ebdrv - ok
      21:07:55.0771 0x1cd4 [ 39A0F688628FAFBE8A2D742F1372FF06, F1529C24AC1DD87339562F2C08E5752A174FA0A357617084A8 3D8CF67C5DC795 ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
      21:07:55.0771 0x1cd4 eeCtrl - ok
      21:07:55.0818 0x1cd4 [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA 4380379D677983 ] EFS C:\WINDOWS\System32\lsass.exe
      21:07:55.0818 0x1cd4 EFS - ok
      21:07:55.0881 0x1cd4 [ 8D74B8B5D6F7C5BC4C525BAF2B083FF1, DA5656F745B3911F96871887FDFDC40F4D9C820622A0AA27EF E4BA93662833CA ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys
      21:07:55.0881 0x1cd4 EhStorClass - ok
      21:07:55.0912 0x1cd4 [ 2A9817B5A9260D8F60D52E36BEF10443, AC1A0203221AFAF584C71317FA07AA1B6E61BE619E918B3B1E 4AD57CCED1CF03 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
      21:07:55.0927 0x1cd4 EhStorTcgDrv - ok
      21:07:55.0974 0x1cd4 [ 80A7999DE02CE678B865832E1CE78CD6, 2576EBB6E4D630A906DE724F125099E52A962B5B68B9F9BCA8 49A7B29D8C8689 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll
      21:07:55.0990 0x1cd4 embeddedmode - ok
      21:07:56.0052 0x1cd4 [ 3CE2B6AECB9AF8BC159299EEC46A35CA, E933B28BB6E4D01FCCDF8FBBB134C244B28DA3ECBDFA13333F 0D4C24B2551780 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
      21:07:56.0052 0x1cd4 EntAppSvc - ok
      21:07:56.0130 0x1cd4 [ 9F8348FB4F51EC373F5AE1812756D0EE, AE9371A3749D33C7FDF753D8D46BF60E1EADC819517CE0C477 ADE8EC3BAAEDEE ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
      21:07:56.0130 0x1cd4 EraserUtilRebootDrv - ok
      21:07:56.0162 0x1cd4 [ 77B60DEC7DCB4233E4A69D3F52E5DB24, 3A5C905E37A93899051497C90E5BA8E1D003B56C6906CADFD2 F1CDF52052D248 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys
      21:07:56.0162 0x1cd4 ErrDev - ok
      21:07:56.0256 0x1cd4 [ 047244823B2EA707E1F6076CA20DEF90, FEC862FA755A2D94306C774E9AE1E79334E5BB31992B78B0DA E8DA41C14DC839 ] ESProtectionDriver C:\WINDOWS\system32\drivers\mbae64.sys
      21:07:56.0256 0x1cd4 ESProtectionDriver - ok
      21:07:56.0474 0x1cd4 [ F89083AB8B9F51C0031C1CBD0A9A7E35, 9EE973A25134960E62D1A6A1E34AD9B3F7690E71C1AD31A23F A2081A73438754 ] EventSystem C:\WINDOWS\system32\es.dll
      21:07:56.0474 0x1cd4 EventSystem - ok
      21:07:56.0568 0x1cd4 [ FCD2C63754C2E739A8EEAD9BC63F9DDC, C57A72ABA4C0BD71F914B9C8FF965DCFF585A205498F19A458 4A4BAF7674839D ] exfat C:\WINDOWS\system32\drivers\exfat.sys
      21:07:56.0584 0x1cd4 exfat - ok
      21:07:56.0646 0x1cd4 [ 2454972F30E1E946FC73696932EA9C22, 962F013599E87CE937F6B6C4A8BC075E64E5E3CF8DB0BE2C03 EBCB24DB00D70B ] Fastboot C:\WINDOWS\system32\DRIVERS\Fastboot.sys
      21:07:56.0646 0x1cd4 Fastboot - ok
      21:07:56.0927 0x1cd4 [ 2E7A98ADE2CF733C46859E40A5348DB1, 3B3143DDAEEBAD5AA2C2E76B9DCDAE80D6E066D327B7CA1774 5EF5E9AB029A49 ] FastbootService C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe
      21:07:56.0927 0x1cd4 FastbootService - ok
      21:07:57.0053 0x1cd4 [ FA918EC296EB410FF02867D008D02421, 23D164A24CB0D212778FA9592A046B6BA1F3628003E0418174 4A1F891B5B3E5A ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys
      21:07:57.0068 0x1cd4 fastfat - ok
      21:07:57.0178 0x1cd4 [ 77CE56471AF984800F318F3734D768C7, 72D540072374A56C2C497F0532A50705D3F0637F2C0C96B1D7 15F2EDFCA3AA2D ] Fax C:\WINDOWS\system32\fxssvc.exe
      21:07:57.0178 0x1cd4 Fax - ok
      21:07:57.0225 0x1cd4 [ 99598ECA5E41996E005D5B9D9FF1EFA2, 91345CD50EF02431B69093505C1C5F5DC6A1AA6BF192EE9392 ED4D5626B60462 ] fdc C:\WINDOWS\System32\drivers\fdc.sys
      21:07:57.0225 0x1cd4 fdc - ok
      21:07:57.0272 0x1cd4 [ EF0DD43A4CBAB367BCA1AFBDC9971E4F, 73E161C45D63FDDE71EE2438137913724DC513860539D1E7F6 BD861F5D1B33F3 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
      21:07:57.0272 0x1cd4 fdPHost - ok
      21:07:57.0287 0x1cd4 [ 34DAC585994CD3B4E910DE11C584EF3D, A6C6A4CB5413EA61F1A54E2D3AD71A311CEA2C26218544D2D2 D4A5CFEC52DE8C ] FDResPub C:\WINDOWS\system32\fdrespub.dll
      21:07:57.0287 0x1cd4 FDResPub - ok
      21:07:57.0365 0x1cd4 [ B68DA1FE3CA2311AFD38DD6905CA7F71, 4B395DFB1B47D2507CA4D9DC996A70D0A3BDB1A245CD6DA6C4 2B2A299AFCCF37 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
      21:07:57.0459 0x1cd4 fhsvc - ok
      21:07:57.0537 0x1cd4 [ F44F666B0EACC3181544FFCF8CA0FFC7, 83F771CF9DAE1C504B30731EEC55355EA1253174252DA2192A DF1D228B3735C3 ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys
      21:07:57.0537 0x1cd4 FileCrypt - ok
      21:07:57.0553 0x1cd4 [ 78A210DDFDF2C9EC884631D2DAA573F0, 5D39C6EF4AC690A9749EEDBE2478FFF15A22877A2861EDA103 C7BF1607B0C1BD ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys
      21:07:57.0568 0x1cd4 FileInfo - ok
      21:07:57.0568 0x1cd4 [ 1A97DB5E701A186989F3795223C3BE39, F7982220D4DF7E104955E63CACE352394E2577DEF49506EA12 6127F820EB62DF ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys
      21:07:57.0584 0x1cd4 Filetrace - ok
      21:07:57.0756 0x1cd4 [ A2852AE56F34708207A1AE2BDFDFED09, F214681B19783FE1166CA96F3501D89F4B1BD8966044E2213D 4CC176B98C954B ] FlexNet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
      21:07:57.0803 0x1cd4 FlexNet Licensing Service - ok
      21:07:57.0834 0x1cd4 [ 46626665F0E5906E45619B4EFD6186B8, 37FDD3B8AD49FD29E54DA5567EA77F28A53498AE56348F7A26 28E5E5549D638B ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys
      21:07:57.0850 0x1cd4 flpydisk - ok
      21:07:57.0990 0x1cd4 [ FDA72ACA14D516D18C33AFCD0FD9260F, 6509612DEC82EA74614B5C9A7B432305A1A468C97B88BED9E1 41DF2929B621B1 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
      21:07:58.0006 0x1cd4 FltMgr - ok
      21:07:58.0475 0x1cd4 [ 49BF5C8182C3D2D6CD9F7EEDF1CFDB66, 0977EBE86B57FC370D27CA69D58122397D5D5369AF0C8DBCC4 92AE7AD55CBA2B ] FontCache C:\WINDOWS\system32\FntCache.dll
      21:07:58.0506 0x1cd4 FontCache - ok
      21:07:58.0865 0x1cd4 [ 59241194DBDF30A2B4029E402F377900, 47A92E9CD8494C403B377799D395670A393766647E24CD83B1 5338CE2AA50266 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\Pres entationFontCache.exe
      21:07:58.0865 0x1cd4 FontCache3.0.0.0 - ok
      21:07:59.0115 0x1cd4 [ 8B52024D3A5C3A12F1C4D75D30A976C5, 982F1C783966C9A6D255AA7DBAB6D225EBE0050A36176B8DE8 5E8ADBFE17FDF1 ] FrameServer C:\WINDOWS\system32\FrameServer.dll
      21:07:59.0131 0x1cd4 FrameServer - ok
      21:07:59.0194 0x1cd4 [ D152CCBFC8251670BF0AAFE00D6BC782, 9DE82D8FC4E1DAF8FF23EE08C0B7CB5051A9224E64544D262C FA4996A41B04E1 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys
      21:07:59.0194 0x1cd4 FsDepends - ok
      21:07:59.0240 0x1cd4 [ 6D6BB5C7363CD35FA715E826F3D029EE, C214F791EB39E8B25CE57ED9D6C1D56EE1AF6021BCB380980B D42A6338A6C9F7 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
      21:07:59.0240 0x1cd4 Fs_Rec - ok
      21:07:59.0475 0x1cd4 [ 8EEC4925C03E375C4EC496E45C44139A, 06C5C7BCC28D3E435675F0759A09CAB726E971DF4BFC1DC3DC F503EABCDCCCC6 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys
      21:07:59.0475 0x1cd4 fvevol - ok
      21:07:59.0584 0x1cd4 [ EF78034773CE506323655A868C949144, DF195BEEE6704FBCC6D2D9E1BF6723E52ED502A1459F495B7D 18481E6A79B5BC ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
      21:07:59.0678 0x1cd4 gencounter - ok
      21:07:59.0741 0x1cd4 [ B55FEBC6A00DAA1FE074F020B6907516, 67071FBAC2ABA47AB71358A5F08E92E034A55343878F00137E 90B3B1F7362976 ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys
      21:07:59.0756 0x1cd4 genericusbfn - ok
      21:07:59.0803 0x1cd4 [ A67119EE1B91D0440E560C97FBE31A78, 521C3E0696FD678C6DEB62399D0641B2A5959FC8ECB1D3134F 236172715C2439 ] GeneStor C:\WINDOWS\System32\drivers\GeneStor.sys
      21:07:59.0803 0x1cd4 GeneStor - ok
      21:07:59.0881 0x1cd4 [ DDD8A8CDDC7F13EF57D1DAAE71865936, 9D472A8689F72F24D40D5B94849690F53C67849FDF6162A94E F4FB330A3DA566 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys
      21:07:59.0897 0x1cd4 GPIOClx0101 - ok
      21:08:00.0225 0x1cd4 [ 713A176494CEC107E663CAD6C2B27F77, 76871D8CFBA8FCD8CFF96208AE84C658EBEC60270D978898B9 0EE9451AA1BCE1 ] gpsvc C:\WINDOWS\System32\gpsvc.dll
      21:08:00.0240 0x1cd4 gpsvc - ok
      21:08:00.0303 0x1cd4 [ 7ACD8F69B5D6EC97E6D2C006E19BED88, FC69214C9308EA64B88EF4C3C95800586DDBB44C8540846B79 A161BAD8203B6E ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys
      21:08:00.0303 0x1cd4 GpuEnergyDrv - ok
      21:08:00.0600 0x1cd4 [ CB609E1E85B2117031431AEEB4ACAC63, 3B7AD1C63CCD50D1A63E823AD4C3AC13E2772D380FAF534329 F2AB9C9F30257B ] HarmonySettingService C:\Program Files (x86)\Lenovo\Harmony\Setting\HarmonySettingService .exe
      21:08:00.0662 0x1cd4 HarmonySettingService - ok
      21:08:00.0756 0x1cd4 [ 10E3515FE5DBA6656FA62C29342EC4A1, 2051F10F74ED712B1766EB61E87FADE25AB3D0970BABFD3206 00D1B0D6377F26 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys
      21:08:00.0756 0x1cd4 HDAudBus - ok
      21:08:00.0803 0x1cd4 [ B90D284B97CD4CA9DE7430AAAD887A56, 2F14F985C39B7801ED64590979CF2114924E9547F5B11D2B37 A74DBFFDD9E7C5 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys
      21:08:00.0819 0x1cd4 HidBatt - ok
      21:08:00.0834 0x1cd4 [ B2FE11643CC6ACDEE6C247DD36018FDB, 5796613C7DBF8B2A9E860E006FF1A245B6BE7D10E3F6685AD1 42B48E5C237B8C ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
      21:08:00.0850 0x1cd4 HidBth - ok
      21:08:00.0881 0x1cd4 [ D24355488A2D4D2323518EC1AC7A6D9E, ED2176A2093726087EDDA25B86E9CDD4BA35F4E748E3A6DE0B 15C4C97646B5C7 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys
      21:08:00.0881 0x1cd4 hidi2c - ok
      21:08:00.0944 0x1cd4 [ 0AF9ABBA4F3F55C6C803890D64BC3C29, D3DE6FA308F8E7CD4F16387F46AE4B2F7EC9BBA07BF87652B6 60A0D645710571 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys
      21:08:00.0959 0x1cd4 hidinterrupt - ok
      21:08:01.0022 0x1cd4 [ CDBCF8E9AB06D88A1E1191D32F320C5D, F76963AB7CF2BAB3A220013879AECD3976BFD851CFB66B5A69 A9EA2541048861 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
      21:08:01.0022 0x1cd4 HidIr - ok
      21:08:01.0100 0x1cd4 [ C900FE0DD6A1E2220084B8F1C427790C, 802194EBEDA1A50EDA300078B0888AAC1F17A42E67147B7B3B 9C50AD8D4E5C89 ] hidserv C:\WINDOWS\system32\hidserv.dll
      21:08:01.0100 0x1cd4 hidserv - ok
      21:08:01.0194 0x1cd4 [ D8536CB438CC4CCDAE047B768EED22B2, 4F666BFA3554F9ACA6B9D436BFA64474D5F30FB3E78F4E6606 8CCDF283D9867F ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys
      21:08:01.0194 0x1cd4 HidUsb - ok
      21:08:01.0303 0x1cd4 [ 0AC1BD5A28FAA371EF34859FE703E515, 1DD1C33AF8D6EBE7C36FCD051F066E4039D2B47ABAECF7C68B C3933D567930B2 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
      21:08:01.0303 0x1cd4 HomeGroupListener - ok
      21:08:01.0413 0x1cd4 [ 86161A89F16851728802590EC7C92608, 3A3B05BB4E115410D27063B30C0EF3F18295F542050F329F1E 466C81A9E23A46 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
      21:08:01.0428 0x1cd4 HomeGroupProvider - ok
      21:08:01.0522 0x1cd4 [ F5CA18197B4646E04DB9EB2D6642CC4D, 5BA3342DDF1BCB67E4156169FE9A33E7BC2641C729E9F1A80C 0E80953C6AB114 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys
      21:08:01.0522 0x1cd4 HpSAMD - ok
      21:08:01.0788 0x1cd4 [ A10C7C1E69FC90620C7BF2E51302A01F, D725AEAE38255CED73F4922A10F226215528706580B06D01C2 28488F93AC0397 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys
      21:08:01.0803 0x1cd4 HTTP - ok
      21:08:01.0850 0x1cd4 [ 0C84C250F80EAEC2C9768464CC1A9626, 212E1003B78F9B98FEB084FD1FDB59B26A9DE4C9120F24D436 1FBBF0F3C035E7 ] HvHost C:\WINDOWS\System32\hvhostsvc.dll
      21:08:01.0913 0x1cd4 HvHost - ok
      21:08:01.0991 0x1cd4 [ 74FC79C52395B10FFD0B55CF22CF88FC, 94D977DA2092EE8C2A598AC48758A84BB22CB6378BD114C2D3 B4172A07A9CACC ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys
      21:08:01.0991 0x1cd4 hvservice - ok
      21:08:02.0006 0x1cd4 [ 771EDDA9830A3079F996F34D681FB6E5, F452AD656872A1C8B2D6DCE232CE01EBD456C46F4934A7601E 78470F2A2CBF38 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys
      21:08:02.0006 0x1cd4 hwpolicy - ok
      21:08:02.0053 0x1cd4 [ 3B9F315E7FA72CC25228EB097DD9C694, B26F1E494428EF197A0C97645C05BB3CA093827A005D35C987 F1D6778BC4E52C ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys
      21:08:02.0053 0x1cd4 hyperkbd - ok
      21:08:02.0100 0x1cd4 [ B54B30992620C97230013A74461C8517, CAF09BDCDD6DE2A39CB8AE2C65E6F8FE12D8E93D84BBEF6C6A 98F872BF54A4E3 ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys
      21:08:02.0100 0x1cd4 i8042prt - ok
      21:08:02.0116 0x1cd4 [ C6B8743B213F06AA60943D8366FE968F, 758954F70B810063914B243115B2C753B2BCE40190F95C30AC BA0BF04EBD5B33 ] iagpio C:\WINDOWS\System32\drivers\iagpio.sys
      21:08:02.0116 0x1cd4 iagpio - ok
      21:08:02.0147 0x1cd4 [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA9 1274A25A921463 ] iai2c C:\WINDOWS\System32\drivers\iai2c.sys
      21:08:02.0147 0x1cd4 iai2c - ok
      21:08:02.0178 0x1cd4 [ 5A0E850F8CD17791A3E6A3CF81D0CA28, 10A965A49D53360DD250E0758B6BB142872298A21C732EB026 ACB93492C5C6CF ] iaLPSS2i_GPIO2 C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys
      21:08:02.0178 0x1cd4 iaLPSS2i_GPIO2 - ok
      21:08:02.0225 0x1cd4 [ 7508F1096803385D6376BFD0BD473AC4, 1F32EC23CDC94DCB9710E6663B5C3BD83568545DDC2C741CFC 13550A4E4DD2BE ] iaLPSS2i_I2C C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
      21:08:02.0225 0x1cd4 iaLPSS2i_I2C - ok
      21:08:02.0241 0x1cd4 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0 D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
      21:08:02.0241 0x1cd4 iaLPSSi_GPIO - ok
      21:08:02.0256 0x1cd4 [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6 BF4E637A719547 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
      21:08:02.0256 0x1cd4 iaLPSSi_I2C - ok
      21:08:02.0444 0x1cd4 [ BA2C068FC92EF7232527FC66566F08FB, C25644A7F286F724181363C21D006A02D651D2B819086F7490 B7F4B7869D1DF3 ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
      21:08:02.0475 0x1cd4 iaStorA - ok
      21:08:02.0538 0x1cd4 [ 97E553D03219D3D51705C7235D9EAEBD, 5D4578C8804AF32D1DC0868E34D6538138DC15F9568CA7E210 51B1C82C0D8D55 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys
      21:08:02.0553 0x1cd4 iaStorAV - ok
      21:08:02.0756 0x1cd4 [ 6C99DF5B6A6EB1D8D6F3FD60A0C614D6, 66147DE733FDAEF14660663764E90313E7A2CE3C6467ABAB99 F71D00B96C4EB3 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
      21:08:02.0756 0x1cd4 IAStorDataMgrSvc - ok
      21:08:02.0834 0x1cd4 [ 8350FE3BCDE3428BC040877BB7E9EAEB, 77F9456351CA640C6B7862907C0580627E761EC807B551976A 95657EB4D6CC20 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys
      21:08:02.0850 0x1cd4 iaStorV - ok
      21:08:02.0991 0x1cd4 [ 3BA03F7C7700DDF4C383DDE9252F5817, 3E90F69D0010E7764349D9AE865D577E431FEBC67DA554B400 BC808DD286E203 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys
      21:08:02.0991 0x1cd4 ibbus - ok
      21:08:03.0163 0x1cd4 [ 5417713A06537C28875E6406851CA30C, 2CDB37F68EA189C39C3D89A560DB648D95AF4B9DF0C5741F86 B0C507B57A17A0 ] iBtSiva C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
      21:08:03.0163 0x1cd4 iBtSiva - ok
      21:08:03.0241 0x1cd4 [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34C EB5B183FCFCF86 ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys
      21:08:03.0256 0x1cd4 ibtusb - ok
      21:08:03.0288 0x1cd4 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F110 2928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
      21:08:03.0303 0x1cd4 ICCS - ok
      21:08:03.0350 0x1cd4 [ 937AC47F7356554DA05D9722C356EB55, 9EABC9F19B4E1193B669D2674967F5C6F03FAD348EDF0615E3 F78554FF9A83CC ] icssvc C:\WINDOWS\System32\tetheringservice.dll
      21:08:03.0350 0x1cd4 icssvc - ok
      21:08:03.0584 0x1cd4 [ 55FB8F2048127B0ED55E4295E4F743D5, 498C2836E5B35B7373269AA12EC162AA4695B4114C066464EF E24268A851A91A ] IDSVia64 C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\IPSDefs\ 20170105.001\IDSvia64.sys
      21:08:03.0600 0x1cd4 IDSVia64 - ok
      21:08:03.0975 0x1cd4 [ D30CE166441E5AF69DEF33D36C232D4C, D28D37734F5A0BDEE3452BEA6EA45BEB64E3A6E5819BB59A7C FC5DA3BAE56E47 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
      21:08:04.0084 0x1cd4 igfx - ok
      21:08:04.0131 0x1cd4 [ B2B5F4969C0AE53315648E37D8CE0972, 8D607E71D707C5F63B9462E834BC5CC75FAF7DA8215FD7C440 AE1188AAE2D26A ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
      21:08:04.0131 0x1cd4 igfxCUIService2.0.0.0 - ok
      21:08:04.0319 0x1cd4 [ F2934208C0E50C0B971A7981AB90BED2, B936BFBBD71E731CC2CDB8B47D262F2EF09726FF921C2DA084 1910CA2401423D ] IKEEXT C:\WINDOWS\System32\ikeext.dll
      21:08:04.0319 0x1cd4 IKEEXT - ok
      21:08:04.0459 0x1cd4 [ 12A0B27BCD5D06F1FF042C5C3BD973FC, 8A0BEF551BB75ADF92648E93CA04BF162AF03F92C72A874E0D C5B77AFA9F39E4 ] ImControllerService C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.exe
      21:08:04.0459 0x1cd4 ImControllerService - ok
      21:08:04.0522 0x1cd4 [ 2A01C96DF5802D3434634E55C91232D8, A3ABEF36E2FD2CF5C371ADBF92566A09669A1D990ABE467737 0F57F2EEAF8121 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys
      21:08:04.0522 0x1cd4 IndirectKmd - ok
      21:08:04.0756 0x1cd4 [ 41BED4BBBDE919441824E85B8B9BE941, 1442F8B8047C411A81D6AC97A209B9D6EB84947B2A65847873 875AF8B2758121 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
      21:08:04.0819 0x1cd4 IntcAzAudAddService - ok
      21:08:04.0991 0x1cd4 [ 75F82406DF455D812101146EE4EB6FCD, 771D24DFF69097C1181C46D635A6CF2FDBE3EBC81BA2C156F5 71875C23F11676 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
      21:08:04.0991 0x1cd4 IntcDAud - ok
      21:08:05.0226 0x1cd4 [ 9A6DEB5DDF7E29728F6FEA5092AFA3F2, 21C47A0490EBA302657EF30C560E4AF83777685FFE126DCCAC 310163C47401D1 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
      21:08:05.0272 0x1cd4 Intel(R) Capability Licensing Service TCP IP Interface - ok
      21:08:05.0386 0x1cd4 [ 08C42E275557776BE1367B3DE616D0E3, 0E1FFDAFCA229ECCE2A08F9005B178662B626AC76BAA6A1543 3936C86362F9D8 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
      21:08:05.0389 0x1cd4 Intel(R) ME Service - ok
      21:08:05.0448 0x1cd4 [ 9F7E87F6595D065A8A200A291043045E, 6944F72F73EADC6C9B7691F2C1C6DF1898F22C88EFA78EC0BA 8CB5FFD9CE057B ] intelide C:\WINDOWS\system32\drivers\intelide.sys
      21:08:05.0448 0x1cd4 intelide - ok
      21:08:05.0555 0x1cd4 [ A6BD2E20AE1BC5CB2776C87C28E4F4CA, BD8BE67CED9A4982D785CE9ECBEFE868C3A2E37DF7F9592B9F 9049B807A1554B ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
      21:08:05.0555 0x1cd4 intelpep - ok
      21:08:05.0586 0x1cd4 [ 2A48DA39542636DB0FA3BA915385D1B3, 6CA0916F5F4B1E81AE6A6233276320599BFA7C129267177703 E3BB6468FB4683 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys
      21:08:05.0586 0x1cd4 intelppm - ok
      21:08:05.0617 0x1cd4 [ DB32758F3A7F6CCE81A5430080A2EA65, 36A26BAA884E96804F8EA0B12BB3E81BBE6D4EE70480990409 1445F36CAB5A29 ] iorate C:\WINDOWS\system32\drivers\iorate.sys
      21:08:05.0649 0x1cd4 iorate - ok
      21:08:05.0664 0x1cd4 [ FE85D0A86CA7A5A99CF8CD04DE7F80AE, 544C01FC01EE728EB5667158207E5F4418FE77A88BA318192A 834722DB766F4E ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
      21:08:05.0664 0x1cd4 IpFilterDriver - ok
      21:08:05.0836 0x1cd4 [ EF1BB0EF8A12C32DD88C409706B8145E, 7AEDE717C258C29592CC8AEC40F61617E5382646E5141E1C09 41882ACE5C5758 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
      21:08:05.0867 0x1cd4 iphlpsvc - ok
      21:08:05.0898 0x1cd4 [ 450DBDD716C7911F83E05F78EE18BFA2, 43C0DA172F632131898F315A53DEDD1AE99FB0620AB32B3A5B 99FEC498C9AAE5 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys
      21:08:05.0914 0x1cd4 IPMIDRV - ok
      21:08:05.0961 0x1cd4 [ F1DAECC3B3D6399875D4F10529D6A77C, 6533D2F858816BE6570C998510919FCA2904EC6EF806F61C1F D325E88133111B ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
      21:08:05.0961 0x1cd4 IPNAT - ok
      21:08:06.0101 0x1cd4 [ A9E19D4C0E9487544B0A87D511514DA9, 83767BA2A7EE1DE39DBF824B57D898355F8C5E3CE146CA280B 0E336428837E70 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
      21:08:06.0117 0x1cd4 iPod Service - ok
      21:08:06.0258 0x1cd4 [ 7475A2903BB704B446AA6309E34D3362, C94643A1626A9716015EBA7041A1224098501EB7DAA704CBFC AD3DC6F3CFC6AF ] irda C:\WINDOWS\system32\drivers\irda.sys
      21:08:06.0289 0x1cd4 irda - ok
      21:08:06.0445 0x1cd4 [ 9725E7F0C64CE9916A5CDABE8D6E13C3, 04AF9E48FEF208A2850DF28352E8FDCBF4018982C72C0F67EE 12C048C4070116 ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
      21:08:06.0445 0x1cd4 IRENUM - ok
      21:08:06.0570 0x1cd4 [ 8C604213A2E73088BFFE6CD2E6F1AE53, B4C4FEE4D398A29F72EC27D5668071D7E68CD943FFFC38624D D5DF5BEBDF46D3 ] irmon C:\WINDOWS\System32\irmon.dll
      21:08:06.0586 0x1cd4 irmon - ok
      21:08:06.0617 0x1cd4 [ 58040898883A96160D41739C80328BBF, 7F85C91C905811416E266A263DDEFCDCB0B45376AAE51B551A B636C16577DB9F ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys
      21:08:06.0617 0x1cd4 isapnp - ok
      21:08:06.0664 0x1cd4 [ C9FD02D62E09337B67B0C61EC8CA38CC, DC77E935ECC8474BE9018F0937CB11C137073582B20A0EE107 CE247FD9E1F9C1 ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys
      21:08:06.0664 0x1cd4 iScsiPrt - ok
      21:08:06.0773 0x1cd4 [ 622BF9C46A47CF17608C501320E8EFBD, 059F99D4306216324E100FCDAF02093B2CD662F2C6BE8565A4 281E7760F8B575 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
      21:08:06.0789 0x1cd4 iumsvc - ok
      21:08:06.0820 0x1cd4 [ CA295D3E5032DDF8A3CBD1A256E646FA, 03879D331AE446FCF25D0193805A5E0C17764439B5B8FE1D68 4DDB96B1A358C9 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
      21:08:06.0820 0x1cd4 jhi_service - ok
      21:08:06.0851 0x1cd4 [ 210808437570BDDEE71A43535E3A2D30, EF5DE6EE4FF58F44CDE4D4E7F298ABBC9086EC05CC3AE49030 60DA878115AC1E ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys
      21:08:06.0851 0x1cd4 kbdclass - ok
      21:08:06.0883 0x1cd4 [ 0B779E9FC426CA2268D28181FA6C222F, 83292023A688C3044D096F22242EB954B7F7511BE8341D45FF 0AFBD9CB9BCB4E ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys
      21:08:06.0883 0x1cd4 kbdhid - ok
      21:08:06.0898 0x1cd4 [ 813BA3EB2CE038F2A5382DDD75CAD60B, 99FA444027CAC247B54317730D54AB0C4C000AE076B97E4747 0FDA9834594312 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys
      21:08:06.0898 0x1cd4 kdnic - ok
      21:08:06.0914 0x1cd4 [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA 4380379D677983 ] KeyIso C:\WINDOWS\system32\lsass.exe
      21:08:06.0929 0x1cd4 KeyIso - ok
      21:08:07.0070 0x1cd4 [ ED6314D9982A96A73C95BD634C7FAE66, 034BD8BAE6CC854750DCCDDE59586E0914D87D20448915587C FD2B5537069CAC ] KMDFVirtualKbd C:\WINDOWS\System32\drivers\KMDFVirtualKbd.sys
      21:08:07.0070 0x1cd4 KMDFVirtualKbd - ok
      21:08:07.0102 0x1cd4 [ 23E3E79A244E63F416A89640359C78B3, 721EBE47CF5617762DA16E0450B5B2DA857F9B04EA3D167770 E2A8CA9D31C77C ] KMDFVirtualMouse C:\WINDOWS\System32\drivers\KMDFVirtualMouse.sys
      21:08:07.0102 0x1cd4 KMDFVirtualMouse - ok
      21:08:07.0258 0x1cd4 [ 705C0F8BCCEF6E7CB704CCB454192D7E, FC608C708E2C3BF7A66E57B95E19E71E5F5C87EF359D8BC1A8 17500B45DF9338 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys
      21:08:07.0273 0x1cd4 KSecDD - ok
      21:08:07.0367 0x1cd4 [ 55AD13E2BAFC5AB53A10F8C271F5D242, 058BEF14DCB95574BCAB985F04737BA89483937E8D8A74F7B4 CEAFB7400C2397 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys
      21:08:07.0383 0x1cd4 KSecPkg - ok
      21:08:07.0398 0x1cd4 [ 4ED115CD1A1099705F56B5E0FFF97CC6, 9CC49DF2CD6AAAE405BA661D13EFC1E05111D1DE3D1E50C39C 425AF1F075610B ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys
      21:08:07.0398 0x1cd4 ksthunk - ok
      21:08:07.0477 0x1cd4 [ 8125BDF7ADC261F75EF0CAD92456E350, 184797AA1D58C4FF743BA60D48590B88B781EE7779205E45E0 679DEC79F3E185 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
      21:08:07.0477 0x1cd4 KtmRm - ok
      21:08:07.0539 0x1cd4 [ 8CCAB08815B50AD78B823DB3F96C8604, 265E6D582EB7207B5CC577D61CB7BC3646F613047F168CD69B B776C37780EBF5 ] LanmanServer C:\WINDOWS\system32\srvsvc.dll
      21:08:07.0555 0x1cd4 LanmanServer - ok
      21:08:07.0617 0x1cd4 [ 33DBBCF71F68EA97D9FD34E4C9AB5AC6, 104F04A1560E75EB224A3825707CE51E8798ABD764F5CC3B85 4FFFC93A39AF60 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
      21:08:07.0617 0x1cd4 LanmanWorkstation - ok
      21:08:07.0758 0x1cd4 [ 7D01451FA57540CAF8FCF48D26252BF7, 96A4B3D46A03A109D070EC770807E1DEAA857CB5962137A723 33C3627861241D ] Lenovo OKO Service C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe
      21:08:07.0789 0x1cd4 Lenovo OKO Service - ok
      21:08:08.0023 0x1cd4 [ 205D1A6D106ACFDB71A1BDEC0C924173, 245E4FC18B20A0D15428D7A0155918180F902EC0E2875B3647 E5B3059966E7BE ] Lenovo Settings Service C:\Program Files\Lenovo\SettingsDependency\SettingsService.ex e
      21:08:08.0055 0x1cd4 Lenovo Settings Service - ok
      21:08:08.0149 0x1cd4 [ D0A48037EB2B4BD92FC507B76FD6F515, 0F821854BB936D315D7DD9BD2FC85E81E9399D3D5B60668D0C 300FDA1BEF1979 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\cammute.exe
      21:08:08.0164 0x1cd4 LENOVO.CAMMUTE - ok
      21:08:08.0430 0x1cd4 [ 4209017379796795064FDD1075A2FC97, 4F1809EFC4E6CB07A13B5442D4B62828D54FE295CC8B188F7D 8942AF9548E6AF ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe
      21:08:08.0446 0x1cd4 LENOVO.TPKNRSVC - ok
      21:08:08.0508 0x1cd4 [ 0C7F3BDCC1E773A3EE37D67898987BE9, DF6EDE1AC7A2A434CD7E32B35A94BE18C15E501F7513A51149 901002C6D4F6F3 ] LENOVO.TVTVCAM C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
      21:08:08.0508 0x1cd4 LENOVO.TVTVCAM - ok
      21:08:08.0617 0x1cd4 [ FB452131A790111332041B88039F98B4, 17E2E235696266037FA8B31B143600D0E79CA60B04C7A48352 B36E1C18561E0E ] LenovoPAWDService C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe
      21:08:08.0617 0x1cd4 LenovoPAWDService - ok
      21:08:08.0742 0x1cd4 [ 0A3FB35B6442675D8F76BF99A14F0CC1, 1739FAD457B3A4C0BE5CEB9C3CDCD9D77249D58E78D51943AB FF10322EB3CC08 ] LenovoSetSvr C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe
      21:08:08.0742 0x1cd4 LenovoSetSvr - ok
      21:08:08.0774 0x1cd4 [ 181B70F7007918ACAD0CC96F261C9B77, 1A4206A8CDDA4FCCB9CC9429CCF2236AD2439C10F7B9B0A616 2127968443AC84 ] LenovoUpdate C:\WINDOWS\system32\LenovoUpdate.exe
      21:08:08.0774 0x1cd4 LenovoUpdate - ok
      21:08:08.0805 0x1cd4 [ 6F8675A27BB892572DC8D9942D2D22C7, 526F553756293EC749FD5F5AB109DDAAD61A56A83B80A0FE6C E0F27A5B8B1444 ] LenovoWiFiHotspotSvr C:\Windows\System32\LenovoWiFiHotspotSvr.exe
      21:08:08.0820 0x1cd4 LenovoWiFiHotspotSvr - ok
      21:08:08.0914 0x1cd4 [ F8EBAA1FE6D3BF84752931DE1BFA0E2A, 2F3C512712BA709BBBBD779D9E792DBE324876C402CDCEF034 5B8B7ABE1D232A ] lfsvc C:\WINDOWS\System32\lfsvc.dll
      21:08:08.0914 0x1cd4 lfsvc - ok
      21:08:08.0946 0x1cd4 [ 5A23E4BE0CCF49663C4CF7EB74C20278, 9DF91014B13B7CED1C3D409F90858FD03EFC5C4347C98901B4 DF0AFF2B77845D ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll
      21:08:08.0961 0x1cd4 LicenseManager - ok
      21:08:09.0055 0x1cd4 [ 5933A6673F00D8255C52957E40C2D601, 0AA1281F8B3F97E360592D1B35EE7D3D614F1AB46007F9884C FFB1C5E647575E ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys
      21:08:09.0055 0x1cd4 lltdio - ok
      21:08:09.0102 0x1cd4 [ 88A3C935725FA6EA1A228DCC26CF9C6F, 9B1F70644EEFA1EE7CE151A8A970430087339B7A6345F2E025 2370929D4AFAC6 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
      21:08:09.0117 0x1cd4 lltdsvc - ok
      21:08:09.0164 0x1cd4 [ 3F858E28AEE6545FA1B64134DFD5C2CE, FFD7B4FB0A7B61BC6B76A172134673842F2CF00E96FA3ED4A8 273DC525B6BB92 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll
      21:08:09.0164 0x1cd4 lmhosts - ok
      21:08:09.0336 0x1cd4 [ ED5C8B920F2ACF11A26586B2FA66BF3D, D6F014F0CCAB7EDA38A8CC58F439D2A8CD89195AE84F82E254 75CE11CB3883C9 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
      21:08:09.0336 0x1cd4 LMS - ok
      21:08:09.0367 0x1cd4 [ 8E1B0946948CCC0BC1FA3CB70374A795, 0B894C129A35E223FF9594725AC90916CBD597FAD2211A18FC 2AE03EA8679597 ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys
      21:08:09.0367 0x1cd4 LSI_SAS - ok
      21:08:09.0430 0x1cd4 [ 4F68163FC04C973500DC4DA0946917B0, DF060C29109EB3978CEDFE781999B0C4C1E8C0FDB133428058 D8400C53315EEC ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys
      21:08:09.0430 0x1cd4 LSI_SAS2i - ok
      21:08:09.0445 0x1cd4 [ E5AC5F2815938651CDCC27F425474673, 3AF0598982153C36A766506FA088F7B84333CC96FEBB050402 547AFC613AF9F7 ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys
      21:08:09.0445 0x1cd4 LSI_SAS3i - ok
      21:08:09.0461 0x1cd4 [ CCF6EC9FB9B8F18E05B4253E81013E48, EBE8D77FEE8B99BD8C29702404774D554673C96DF3FDF3DCEA 9C99E22C2709FC ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys
      21:08:09.0461 0x1cd4 LSI_SSS - ok
      21:08:09.0602 0x1cd4 [ D5EFC0BAEC21EDE6FE03D377D403B421, 41BE71AF7C896FD4C51EF7E3871AAB769164DFB8050DA43E48 C7A100711414B4 ] LSM C:\WINDOWS\System32\lsm.dll
      21:08:09.0617 0x1cd4 LSM - ok
      21:08:09.0633 0x1cd4 [ C9579D32219E5B936AC3A48D470117EC, E61A77191B6BA25D29B1221FEBBE826BBC11F825C0E35A72B4 CEFFF8B7FE59A8 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
      21:08:09.0633 0x1cd4 luafv - ok
      21:08:09.0821 0x1cd4 [ F6963E48385A5637FC4E51DC0F8234A0, AC169680F2F299FE92F86FBB5E721AC096E74F700D68648034 6C8FF7F9ECCE5B ] lxebCATSCustConnectService C:\WINDOWS\system32\spool\DRIVERS\x64\3\lxebserv.e xe
      21:08:09.0852 0x1cd4 lxebCATSCustConnectService - ok
      21:08:09.0867 0x1cd4 lxeb_device - ok
      21:08:09.0899 0x1cd4 [ CAAF0CD70FEE7C5110B1E62804E41B17, 48482A6C8D2296C4DC613304637C8DBB7DD1DB39326F27650E BCA6FD2793BCFD ] MapsBroker C:\WINDOWS\System32\moshost.dll
      21:08:09.0899 0x1cd4 MapsBroker - ok
      21:08:09.0961 0x1cd4 [ 3BEC6134F1E45AEF5E971F69F0D38510, 245D7CEEB6561166EE0472551D39A9D3CFDDA52A6BF2E924AB 243CCA7FBC9009 ] MBAMChameleon C:\WINDOWS\system32\drivers\MBAMChameleon.sys
      21:08:09.0977 0x1cd4 MBAMChameleon - ok
      21:08:10.0071 0x1cd4 [ F3960CA85778E5D7611EE0F501972340, 0DE5C8509A9A66C8185B9FAA7EAF69C0FA9C28CD9DE84AA23E 128E4FF8E06BF4 ] MBAMFarflt C:\WINDOWS\system32\drivers\farflt.sys
      21:08:10.0071 0x1cd4 MBAMFarflt - ok
      21:08:10.0133 0x1cd4 [ 88BD122C3A35DE63D75D382DF75554CE, ABDF59543CAD186A6ED4E66257205D9CF5047732A5DA74A96A 28B468B41BC396 ] MBAMProtection C:\WINDOWS\system32\drivers\mbam.sys
      21:08:10.0133 0x1cd4 MBAMProtection - ok
      21:08:10.0571 0x1cd4 [ 28E521A6ABA9DE062A3719452816F495, B312A37DA052229DFB19353170CD5828582F8AC6426E857CA7 C8ACA0DD91C160 ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
      21:08:10.0649 0x1cd4 MBAMService - ok
      21:08:10.0821 0x1cd4 [ ABB371D9AEF728B0489B0E6872B4A1C0, E9539A4F85FE30F5BAED742778CA74C879995728668ABE6877 C37633716D8770 ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
      21:08:10.0821 0x1cd4 MBAMSwissArmy - ok
      21:08:10.0883 0x1cd4 [ 205C2D377E1CA85A4465491DB8064DA9, 0C69C6C958D8E26A6C6CCF2254E8B531BE718AD7FCFEB970F6 F09426CA6C8C26 ] MBAMWebProtection C:\WINDOWS\system32\drivers\mwac.sys
      21:08:10.0883 0x1cd4 MBAMWebProtection - ok
      21:08:10.0930 0x1cd4 [ C3CDCCF07486BD2616A7B82946E07AC0, 1EF95DAB2DA856BC7D7573B2EB2D9006DF337F827F0B56A161 D0C97F45DB755E ] megasas C:\WINDOWS\system32\drivers\megasas.sys
      21:08:10.0930 0x1cd4 megasas - ok
      21:08:10.0961 0x1cd4 [ 2CF0CB2A0ED68C5455371E84C16F9627, 1C9166B52140145F1968E83E52BFF041250811B23C770FE181 A18A4BA060CA81 ] megasas2i C:\WINDOWS\system32\drivers\MegaSas2i.sys
      21:08:10.0961 0x1cd4 megasas2i - ok
      21:08:11.0055 0x1cd4 [ FADB2FE017E69EECE0E1BA78661C2E8C, BE99B49031D8B4B670B6F6B6E829E54406779CF6F1D8AFE8AB 79A73E6764AB2F ] megasr C:\WINDOWS\system32\drivers\megasr.sys
      21:08:11.0086 0x1cd4 megasr - ok
      21:08:11.0399 0x1cd4 [ 1BC9159CF58BABD89419072EA180A8F6, 6C9AB779C2355A341800A8F93AAAF9B19FAFF444CD6A7BD27C 63D53F379A75EF ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
      21:08:11.0399 0x1cd4 MEIx64 - ok
      21:08:11.0446 0x1cd4 [ 55A417C3E41F2A98666CF929EC19108E, A38C262B2863C87E4151525BF26D6AC16E7982D370E2C6998E B15C88C4BC8254 ] MessagingService C:\WINDOWS\System32\MessagingService.dll
      21:08:11.0446 0x1cd4 MessagingService - ok
      21:08:11.0524 0x1cd4 [ FD60818B66B2E8A5415EA840E99A9D8F, 5D2F22909354534B821D958FBEF6A40EB4F642F53C7B509D00 949096EF716F36 ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys
      21:08:11.0540 0x1cd4 mlx4_bus - ok
      21:08:11.0586 0x1cd4 [ 68F6977F1CFBAAC770D940A8C0326FA1, 90EE1E7DAC680EAA5AD50E9B0B9FD8FCE8DD6A02D5EF941B5A A5084CBD40BB80 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys
      21:08:11.0602 0x1cd4 MMCSS - ok
      21:08:11.0680 0x1cd4 [ 0D50B3F3AB32D416786B58D4553859CE, 9DA4D7A30982E8B31C45BDB721AEF5240EAD9DA6839CF34FDD BCF123BF104F2C ] Modem C:\WINDOWS\system32\drivers\modem.sys
      21:08:11.0696 0x1cd4 Modem - ok
      21:08:11.0774 0x1cd4 [ 9CCCB7FC3EDADEBA461D78615A6011A6, C120B58F25E8CCFD971EB78645C0682F367AD56DC15F2D8C19 80CE75B04719DF ] monitor C:\WINDOWS\System32\drivers\monitor.sys
      21:08:11.0774 0x1cd4 monitor - ok
      21:08:11.0821 0x1cd4 [ 27A07B2FB2E3057DA8DAEA4F25D843C7, 09D2B39E6B9AAEC879E5871DD6BCFF2AEF0B894F3B44649665 A685F8B3CA6F27 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys
      21:08:11.0821 0x1cd4 mouclass - ok
      21:08:11.0836 0x1cd4 [ 7BD6E7F7C9001AB21B8362CFFEE80B25, C470C3363EEF3A60409A5934988BFB9B72AE7C2BB63CC2C2D0 06D7EB1C797F6A ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys
      21:08:11.0852 0x1cd4 mouhid - ok
      21:08:11.0868 0x1cd4 [ F5BDAEE4B7D369D4C74668DCFBA3FF10, 100F39288E56AFE0D39D1CC235BDC9F3727C873CD3114E092D A7A08810BD3EB2 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys
      21:08:11.0868 0x1cd4 mountmgr - ok
      21:08:11.0961 0x1cd4 [ 30844BD376F9D01E62C820BEF446F1F8, 910D672EDB544A20AEB4450B4D89830F46EDD28CE002115617 6315C5D068A1B4 ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys
      21:08:11.0961 0x1cd4 mpsdrv - ok
      21:08:12.0071 0x1cd4 [ 779CFDB17EA07A6D26FEBBAC95B65772, 74D9542E8DCCD07396A45A45D2F500AA6F9DCC1DB785A6153E B3067E42F576A4 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll
      21:08:12.0086 0x1cd4 MpsSvc - ok
      21:08:12.0149 0x1cd4 [ 25D32BE04FE0A23FDF57FD5382757672, 64E39E3E21D9173FB1116B989D80C244C49DA827698A05AF5C C5CD1C6AE155DE ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys
      21:08:12.0149 0x1cd4 MRxDAV - ok
      21:08:12.0243 0x1cd4 [ E671EDAB0726E05ECEF4058B4CD73C4D, 9F4C50E635CE2204E3291C8D3D7F658A969E80722B8B6F0304 228D9B434C20EA ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
      21:08:12.0258 0x1cd4 mrxsmb - ok
      21:08:12.0352 0x1cd4 [ D4D12BC29DE0F09280868FDCA65B3474, A6FE89ABD52087FEE52FDF31DDF4CB627ED400E94FDA86BEBF 1D4763F1E42518 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
      21:08:12.0368 0x1cd4 mrxsmb10 - ok
      21:08:12.0430 0x1cd4 [ 93A77008A8932FC84A173C4E97E52874, B7510CF7998C538D68BD2ECDC512A0BFC7CB7362F598EE4110 F728427AFF0F5A ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
      21:08:12.0430 0x1cd4 mrxsmb20 - ok
      21:08:12.0493 0x1cd4 [ 74C9D21523DAE0C18F413C196DF0058A, 3DB4B8CA368D9DD82FAE2C2BC828A21142C8D29780A7C86671 88C447519FF702 ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys
      21:08:12.0493 0x1cd4 MsBridge - ok
      21:08:12.0555 0x1cd4 [ 308F08347923DEEDE7BC03EC7D485841, 72DB45CA11FE635DF9F8273C38CBEFB8DF5362ADA0CBF6D2B1 E570365DC700C0 ] MSDTC C:\WINDOWS\System32\msdtc.exe
      21:08:12.0571 0x1cd4 MSDTC - ok
      21:08:12.0586 0x1cd4 [ F01B849D9D4A8CEAF32D4FDBD0B83C92, D2473AC4C6E6C03DEF13EA73EC78FB878BDC95C047651BF79A 16C9DEA82AD046 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
      21:08:12.0586 0x1cd4 Msfs - ok
      21:08:12.0633 0x1cd4 [ 22ECD8F5D1DFADF2011BBB1700CB871D, 8F9EFF51137394EFA5471B8A29C541710063B65806B075B492 5A84D5B6BC3BBB ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
      21:08:12.0633 0x1cd4 msgpiowin32 - ok
      21:08:12.0649 0x1cd4 [ FD870F6968A145E4D2BA8A8842686B03, 34B8F601F3B5E42B4D0A41E2AF7DB4EB4E5B627DA8DA9A2A2D 46B153AF23AEB1 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys
      21:08:12.0649 0x1cd4 mshidkmdf - ok
      21:08:12.0665 0x1cd4 [ 30364757963A028CE5DF0FBAAC270173, C72588A6A52FF8E418A15D2C407A4DB7EA768585423720145F 8253D5CA519DC2 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
      21:08:12.0680 0x1cd4 mshidumdf - ok
      21:08:12.0696 0x1cd4 [ 6BB0FEDDAE7135FA37FFAFF4D9E0E876, B41A3C0FFDFC493D6325ED493445AFCED04EC9DFF2B3812561 6FC5419AD1ACC4 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys
      21:08:12.0696 0x1cd4 msisadrv - ok
      21:08:12.0852 0x1cd4 [ 07E3E54734B14F43A4A95A849C0A0DE2, 314AA02EA84D267B32DBAEBEA6C1AC1A266DED1E8D35A17B41 D1D2AC75E8049E ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll
      21:08:12.0852 0x1cd4 MSiSCSI - ok
      21:08:12.0852 0x1cd4 msiserver - ok
      21:08:12.0915 0x1cd4 [ 13D614E6B51ECF36746C48CE829FA7F6, CAD63C0A4F7110093F84C58252C5803F14E3FC46584B79DA17 EC86D49FEAEA64 ] MSKSSRV C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys
      21:08:12.0915 0x1cd4 MSKSSRV - ok
      21:08:12.0993 0x1cd4 [ 642CDE46351D5D2D90311E77072AB46D, B2D3033E607BA2F6E6B9CFB1CBF154CD0CE910EA473C56343E C81B9B94044CCA ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys
      21:08:12.0993 0x1cd4 MsLldp - ok
      21:08:13.0024 0x1cd4 [ F2302A5CE63CA7673200FAFCEEEDB6AF, B8C44FC2DC0332183DE325CDBF511101F3307225295EDD428C E575A8DE15C223 ] MSPCLOCK C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys
      21:08:13.0024 0x1cd4 MSPCLOCK - ok
      21:08:13.0055 0x1cd4 [ 6114512EA26E835BA522C63635429DB5, 0F91CE41B4555316A79AEF3047C152D538CC9C7C329987C9FD 0E3D961AFC87C8 ] MSPQM C:\WINDOWS\system32\DRIVERS\MSPQM.sys
      21:08:13.0071 0x1cd4 MSPQM - ok
      21:08:13.0133 0x1cd4 [ AA538E16E644D00E3BA5349BBA9598EC, 64A68B06883FE7ED34E04AB119BA819753F1222923EDD4E802 C35D402B89D075 ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys
      21:08:13.0149 0x1cd4 MsRPC - ok
      21:08:13.0180 0x1cd4 [ 0543BEFD41EC4D25C7F7CF36409CEC7D, 631622CFEC49952C0470531B23FFFFF483DC0EFFEF7A97B117 9A600392C05DDD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys
      21:08:13.0180 0x1cd4 mssmbios - ok
      21:08:13.0212 0x1cd4 [ C1569E4DB8EFE3617847BF041A3C842F, 99ADE5E7F50E04CAEC737F7F90741CCA8EE628996BA5EB6C6B C62184884429B6 ] MSTEE C:\WINDOWS\system32\DRIVERS\MSTEE.sys
      21:08:13.0212 0x1cd4 MSTEE - ok
      21:08:13.0227 0x1cd4 [ 130B16970154BA9876B09E5C4BAC63BE, BE3AF8FC5A26AB9C9DBA9C015C2E1FD3C4CD9CB423A2BBDABA 91428BF8620553 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys
      21:08:13.0227 0x1cd4 MTConfig - ok
      21:08:13.0274 0x1cd4 [ 15D987C8F6CCD4AC94E070C5986762CB, 452FB0C48B86C7F8F53794CC2DDBF2B900B03A0383B2DE8F6A 830F8CB0AFBAD8 ] Mup C:\WINDOWS\system32\Drivers\mup.sys
      21:08:13.0290 0x1cd4 Mup - ok
      21:08:13.0305 0x1cd4 [ 3D2C5B4995CA0751D32DEA0DE9FDFE44, A26958785FD9E05E2CA97078C9BB277CD44222BF5F7D9E8DC2 F3F6AAAFFC6483 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys
      21:08:13.0305 0x1cd4 mvumis - ok
      21:08:13.0462 0x1cd4 [ DB31EBB04C871F422C36A0962DA7D38B, B1BC2344744F537FB2C7D07B415F860195B7795E185253F05C 0817A3764FEC10 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys
      21:08:13.0477 0x1cd4 NativeWifiP - ok
      21:08:13.0633 0x1cd4 NAVENG - ok
      21:08:13.0633 0x1cd4 NAVEX15 - ok
      21:08:13.0696 0x1cd4 [ C3D9870E680D9D843B18F4626C3858FE, 43596CAC9FB488F810FBA954C52BC4D13F7D32028C40ACFE33 DFD7EE36A65C17 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
      21:08:13.0696 0x1cd4 NcaSvc - ok
      21:08:13.0727 0x1cd4 [ 04CE2C0F0759EACD886BA4B658B60D5D, E34D0976FC5936C8629800D826DB127072D1DFC3D350EFACA3 AA1B8119551762 ] NcbService C:\WINDOWS\System32\ncbservice.dll
      21:08:13.0727 0x1cd4 NcbService - ok
      21:08:13.0774 0x1cd4 [ E6094065008FE423377294050E7CEA2D, 86E200227256407530E2C28243DEFBC3CB6E9497644404D9AD 79DA242286DF7B ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
      21:08:13.0774 0x1cd4 NcdAutoSetup - ok
      21:08:13.0805 0x1cd4 [ 629CB21AC49C8867E0F29DF1C16DB7B4, 20663E68C69D0A1A2FE99A0C2A9DEFABF49786A1DC8F7F4E16 99458AF57D7E79 ] ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys
      21:08:13.0805 0x1cd4 ndfltr - ok
      21:08:13.0993 0x1cd4 [ D5564FC81350458ED570528C4E3B1CCF, DD3C5012492EF9BCE3BE635BBB3AA40B3C5F5FDBD795A76B32 7D9C994102AC2B ] NDIS C:\WINDOWS\system32\drivers\ndis.sys
      21:08:14.0040 0x1cd4 NDIS - ok
      21:08:14.0227 0x1cd4 [ 6DD605338FAAF6BA17662AA874E0D162, 636607829F5D7C3B7A4683C0A2DD594360D72F2AA3F8710153 BE32575AE34A15 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys
      21:08:14.0227 0x1cd4 NdisCap - ok
      21:08:14.0290 0x1cd4 [ E34196F285F8B8879E1FF36C31F7179E, 77A4F24F995D4C0689C43F9956E08DCEC62517E4F8B1B9EAA1 852B5293DB5B9A ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys
      21:08:14.0290 0x1cd4 NdisImPlatform - ok
      21:08:14.0305 0x1cd4 [ 1FAD2398673F30CEC616B89C46B7DCBA, 70302049E6AE2BC6B3A7A9DE54D3F940AD6A9771CC2EBCCEC6 5994E67A25ECB5 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
      21:08:14.0305 0x1cd4 NdisTapi - ok
      21:08:14.0337 0x1cd4 [ AEB8ECBE66CC46854066CB1F5623E179, 2F650A85A9DAE38887610C0B876621035616CEDB65D4BBBD7F 1405616D218AAF ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys
      21:08:14.0337 0x1cd4 Ndisuio - ok
      21:08:14.0383 0x1cd4 [ 7340104C2BF2F126714F7CDE85E63610, 45B64EC6F3A4C43F7D74806789067658C6EF0D44D36B841F4D 26E1EBC95AF66C ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
      21:08:14.0383 0x1cd4 NdisVirtualBus - ok
      21:08:14.0462 0x1cd4 [ 07ADC1F8DCBEB8104D75129B11584B8C, CB51A294D9FD4E210DBEEF05A1E60A96CE52D6D138EF62A54E 1F608F90FED300 ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys
      21:08:14.0477 0x1cd4 NdisWan - ok
      21:08:14.0508 0x1cd4 [ 07ADC1F8DCBEB8104D75129B11584B8C, CB51A294D9FD4E210DBEEF05A1E60A96CE52D6D138EF62A54E 1F608F90FED300 ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys
      21:08:14.0508 0x1cd4 ndiswanlegacy - ok
      21:08:14.0540 0x1cd4 [ 78A12E3DF035B5D054986949B19BE43C, AD9B34F89B9F27D473BD5FCE6694A40FCCB808B61ABEDD6F70 F1AF6C7E73ABF8 ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys
      21:08:14.0540 0x1cd4 ndproxy - ok
      21:08:14.0571 0x1cd4 [ 04C8859355C1DC9C0FA198D1894D71C2, E7C67E73009341B5D402470C686781B3C7BBE2531CE26665E0 8E711B990B1A77 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
      21:08:14.0571 0x1cd4 Ndu - ok
      21:08:14.0587 0x1cd4 [ 6C76780A01FC2B885BD6E957B5C36B02, DB7834F03A765F65C773E772D8051AFADB22CA4B5074180AA3 97857A0C47A068 ] NetAdapterCx C:\WINDOWS\system32\drivers\NetAdapterCx.sys
      21:08:14.0602 0x1cd4 NetAdapterCx - ok
      21:08:14.0649 0x1cd4 [ 5D1513BD6430307C9DB86C6E351372ED, D2AB709CF7CFA5B857B084AFC821914A975B7DDDCE15422998 1F19448973BD6D ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys
      21:08:14.0649 0x1cd4 NetBIOS - ok
      21:08:14.0712 0x1cd4 [ 6FEBB0A847FFD5F057B9AC8889F1B9A7, 558BCC64C59079E6569F61CCE1219A124B3313FC4E6CB5CBCC 94124D202FF19D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
      21:08:14.0712 0x1cd4 NetBT - ok
      21:08:14.0743 0x1cd4 [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA 4380379D677983 ] Netlogon C:\WINDOWS\system32\lsass.exe
      21:08:14.0743 0x1cd4 Netlogon - ok
      21:08:14.0821 0x1cd4 [ D3BF2DA9216A4CF22A97820A50A67EFF, D00CBE0A7ECFB449D9B48967A01EE56141404EBE229893D5A1 710781AD5F2551 ] Netman C:\WINDOWS\System32\netman.dll
      21:08:14.0837 0x1cd4 Netman - ok
      21:08:14.0930 0x1cd4 [ F2645D51DD8AABC8BC72358409410437, 8CB97628923D6CEA6EFAD7E666BE92C154060BD108C28D4628 7A520A14B18ADA ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
      21:08:14.0946 0x1cd4 netprofm - ok
      21:08:14.0977 0x1cd4 [ D65F295A049473E6A39EA9A0EA76CA32, 274FC0BA044EB2D14093AB0E561F7FACEE06A3F433C81343C8 B926FA2F9BD251 ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll
      21:08:14.0993 0x1cd4 NetSetupSvc - ok
      21:08:15.0415 0x1cd4 [ EFA857E2B0CC7C9DFEF48A2187B910F7, 424475568CD70237F056838388A5F7BDCD1B09349085498644 C75940B12E8EAF ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SM SvcHost.exe
      21:08:15.0462 0x1cd4 NetTcpPortSharing - ok
      21:08:15.0634 0x1cd4 [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3 B7D36B28BBA2ED ] NETwNb64 C:\WINDOWS\System32\drivers\Netwbw02.sys
      21:08:15.0680 0x1cd4 NETwNb64 - ok
      21:08:15.0759 0x1cd4 [ B996DE26A2E16053C9485F5905B05320, 30EB2CEB466A4F05A44F7CBFCDFD8CC3C27B5FCF1269C1B941 0C48AB362D2A75 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll
      21:08:15.0774 0x1cd4 NgcCtnrSvc - ok
      21:08:15.0884 0x1cd4 [ 54C31C2B815E2E26BB8158022F837C9C, CED660D1A58F635C6452F82FCB2EF8ACEEB7785E31617B2ADF D9EE69A2BDF2B8 ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll
      21:08:15.0930 0x1cd4 NgcSvc - ok
      21:08:16.0009 0x1cd4 [ 9B9F520C72EE33EAEC857124BB800243, DFA9386B272F4D86F3E4BE861A2FC4617261E1AA40576DDA61 0FC24AB4961A63 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
      21:08:16.0024 0x1cd4 NlaSvc - ok
      21:08:16.0071 0x1cd4 [ 001CBD7A2CD45C4EB39C01C3C677EF73, F4AAF4D60DB1232921C7811A62287B55C7C098B7A1FF9A40D8 8AF58A5ABECBA2 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
      21:08:16.0071 0x1cd4 Npfs - ok
      21:08:16.0102 0x1cd4 [ 90F5DC9802AAA00CD0B6E2AD9E7FFADC, 71C0777829299DECA6ACD42F38802DBE3C29A42CFBD8A396F3 9DFA44D1F55B6C ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
      21:08:16.0102 0x1cd4 npsvctrig - ok
      21:08:16.0243 0x1cd4 [ 8A2D383AAFE84AFDA07F7E69EC723AD5, C0B36F5048376DCDCF7F6FED0285F5D4962A87A5ECAC391C4D E74D71CA5CAF96 ] NS C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\NS.exe
      21:08:16.0259 0x1cd4 NS - ok
      21:08:16.0305 0x1cd4 [ 1993C85962692EF7024501E7FE92D466, F5BCAA8308495EBF8BB061C2015E07C202A779668D171364D7 E312975BC18B10 ] nsi C:\WINDOWS\system32\nsisvc.dll
      21:08:16.0321 0x1cd4 nsi - ok
      21:08:16.0337 0x1cd4 [ 0C6218321A09A7B51BA7FFAFBA4CCB21, 330B3FA793A78410B28DFC8250BBF24442E3BB80434A7938BB 96F02337614E0D ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
      21:08:16.0337 0x1cd4 nsiproxy - ok
      21:08:16.0493 0x1cd4 [ DB69C6DA8B3DDFDC547D455CA23A8250, AE495CEB18924C8B21F7F150FF17CD00880F2E222D7B515566 1798E0535D63C4 ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys
      21:08:16.0540 0x1cd4 NTFS - ok
      21:08:16.0587 0x1cd4 [ 6E6DD6F9DD2A034CF85E94047DBDB992, 63D0A0756F551B7668D1CBAB24B29FD462C706E8A81690BC24 8D6C92061FE215 ] Null C:\WINDOWS\system32\drivers\Null.sys
      21:08:16.0602 0x1cd4 Null - ok
      21:08:16.0790 0x1cd4 [ 5CE986C82313E6F9D0973E2A74A0BA20, 9367D5A8257EA15B0DBCD6C8FDBFDF0B5B132A7C436E4F03AD 84B958112DFA28 ] NvContainerLocalSystem C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
      21:08:16.0805 0x1cd4 NvContainerLocalSystem - ok
      21:08:16.0837 0x1cd4 [ 5CE986C82313E6F9D0973E2A74A0BA20, 9367D5A8257EA15B0DBCD6C8FDBFDF0B5B132A7C436E4F03AD 84B958112DFA28 ] NvContainerNetworkService C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
      21:08:16.0852 0x1cd4 NvContainerNetworkService - ok
      21:08:17.0071 0x1cd4 [ 0B7CFF94C247E661A9D5F7FDAB2F726B, 16D651A50347131CC6B96EB17096EFB22F9767572964E6C12C A1BF928E6C1397 ] NVIDIA Wireless Controller Service C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
      21:08:17.0087 0x1cd4 NVIDIA Wireless Controller Service - ok
      21:08:18.0415 0x1cd4 [ 65B6EE1E8C34AC7AA24E89047A20A2A2, 2038D5FB39C211197A3F6654BAC99458128D61A0120706BF20 60A00628A7FC56 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
      21:08:18.0587 0x1cd4 nvlddmkm - ok
      21:08:18.0665 0x1cd4 [ D261DF41F0840F734856A2B4F5E072C7, 2E703556D0C919375D0B7770513456844B13362190643D5524 663EC8546E0FF5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
      21:08:18.0697 0x1cd4 nvraid - ok
      21:08:18.0744 0x1cd4 [ 23B702B555EB0436B9DAA0BC63DA65CE, D454F80D9657CFEC852F022C12D7B2C1A2D7D247ECC591EDB0 7B9369DFD8C99E ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
      21:08:18.0822 0x1cd4 nvstor - ok
      21:08:18.0947 0x1cd4 [ 5FA3A8CE5BAA23E2C9D18EA154017BC4, 6C2B0546FB9D8A4C7A747AB776BB98C8A90D2745FA0D293FA6 3DABBF67C7ED58 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
      21:08:18.0947 0x1cd4 NvStreamKms - ok
      21:08:19.0134 0x1cd4 [ E2CAD35CF3EEA19A246733145DDF16E5, 675F1601B167BFF40954C89703B5F6F70BDC3A2E7C52D80ECB FA72CC3EB07D07 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
      21:08:19.0150 0x1cd4 nvsvc - ok
      21:08:19.0212 0x1cd4 [ 1D54A108BFAD4ED568E393518769F516, D0BE8343784DDD2B7CADFC85779CC72C78D49601E9C746D13D 8134CE38DD920F ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys
      21:08:19.0212 0x1cd4 nvvad_WaveExtensible - ok
      21:08:19.0244 0x1cd4 [ 868630DCAE43495922F66A737D9469B2, 815E88A3AF501D697BB7A3089E4CF7FF6A42B5E387DB6BE90A 35A900F905CAD6 ] OKOControlSvc C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe
      21:08:19.0259 0x1cd4 OKOControlSvc - ok
      21:08:19.0290 0x1cd4 [ 17997DC2441F7E29CDFC6458E0392764, 636CCE2DA1EF8195B33F8D6D5C8CC151D58EBF08DC9AD8ACCC E7ABD41A69639F ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll
      21:08:19.0306 0x1cd4 OneSyncSvc - ok
      21:08:19.0400 0x1cd4 [ C369ED2F6C5F45223BDEF6F4F54CDC41, A438F067E244D48EE386FBFE7E107A9B28D655BA0EAF76E521 3E1D71D92081C8 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
      21:08:19.0415 0x1cd4 ose - ok
      21:08:19.0540 0x1cd4 [ 4578ECA1FCEF4E7C787D84F78625143B, F5FE84D6D7412A4C037772593C434253D590E476B0B7498987 A1697BED86A510 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
      21:08:19.0556 0x1cd4 p2pimsvc - ok
      21:08:19.0634 0x1cd4 [ 2BBCED66D7AFC968BDBB0E4D8524DF0A, 762D916390F9DE69B3EA1D31244224F910645F8E5CEF4C505B 76B215BFDFCD9A ] p2psvc C:\WINDOWS\system32\p2psvc.dll
      21:08:19.0650 0x1cd4 p2psvc - ok
      21:08:19.0697 0x1cd4 [ 6B81BF7853D161DB8AC62CD8B9C2DE6B, B2DC06D135FD2501217DDA7349556EB873309E02188D4C3901 807BA24FAB30C7 ] Parport C:\WINDOWS\System32\drivers\parport.sys
      21:08:19.0697 0x1cd4 Parport - ok
      21:08:19.0759 0x1cd4 [ CDBD029BAEC8D09F6FBD404632D9AF28, 71F4401150CD4C9C6BBF2DA854CF07EA2F8C9BBE900833858F 49134DDAF14414 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
      21:08:19.0775 0x1cd4 partmgr - ok
      21:08:19.0837 0x1cd4 [ CDD8EDF4C35BE6D6137112F5CC7A70DA, 80EECA6BC2E668E5652A5CA9B119CCCE2A2E421F0EED1FD0EA C20C42E77C02ED ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
      21:08:19.0837 0x1cd4 PcaSvc - ok
      21:08:19.0900 0x1cd4 [ E2DD2E5BDCCD225670831B439826065B, 0153F1CE26D402C03CFC155F428EBA04D6EA8E19A28AF629B1 CE347363B7697C ] pci C:\WINDOWS\system32\drivers\pci.sys
      21:08:19.0915 0x1cd4 pci - ok
      21:08:19.0994 0x1cd4 [ 214DCC87E3898F738075D1341252A552, E721FBBC3510DDB848A8CAEA3B6031EE988F42252DBC3BF7BD B6ABD9A0D9FABD ] pciide C:\WINDOWS\system32\drivers\pciide.sys
      21:08:19.0994 0x1cd4 pciide - ok
      21:08:20.0040 0x1cd4 [ AED76A3333B3A31536E430020E0226FC, EC255B79B0908E3C142D92E35B79D90A3F2594BA012CA2B1B0 4A6A8745153430 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
      21:08:20.0040 0x1cd4 pcmcia - ok
      21:08:20.0072 0x1cd4 [ E63FB38B6E75B39467492FBAD2CD512A, DB406C92BA2460C833A49B98EB5BD58348E868F643A0123B0C 9B5315FFC6A124 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
      21:08:20.0072 0x1cd4 pcw - ok
      21:08:20.0166 0x1cd4 [ 9EA203A07EFA6D74F07F32EF0DAB5CA6, D851F1CC748B4CD0E263931668FFF2FE20D5778267F4FF2237 D565CFC171B5AF ] pdc C:\WINDOWS\system32\drivers\pdc.sys
      21:08:20.0166 0x1cd4 pdc - ok
      21:08:20.0416 0x1cd4 [ 1509A77F840AA9E72CF8247D0CF2FBDE, 2D47AD4D8F5C2D871E603FB6D72D25EFD0E63FA3A542DAADAB 9D82ED074C0E0B ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
      21:08:20.0432 0x1cd4 PEAUTH - ok
      21:08:20.0463 0x1cd4 [ 540116170E2135FCD5DDE77702166B67, CBEC51C2D47532F1781B3255040F303263420B204C2F8BB2B5 D1EC342F57B285 ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys
      21:08:20.0463 0x1cd4 percsas2i - ok
      21:08:20.0510 0x1cd4 [ 8356F87553BF49C703CF382033815898, 245EB941566D848F134629690BF271B1CBEAB6440771D3D8D7 AED3756835354E ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys
      21:08:20.0510 0x1cd4 percsas3i - ok
      21:08:21.0088 0x1cd4 [ CB5343FF52A702A9ACFAAE6BE972FE09, EAA5362D91D05D382DF4EBBAA3FD575456F23CAD531CC6F127 0F8254892DBF02 ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
      21:08:21.0244 0x1cd4 PerfHost - ok
      21:08:21.0369 0x1cd4 [ 00D33CFD7F72083A69C91692D5C48E95, D38EA410FF00F60C73975B32AFC94A10550D2C1288B2999954 658C42FBB2687D ] PGService C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe
      21:08:21.0385 0x1cd4 PGService - ok
      21:08:21.0494 0x1cd4 [ 114F33B738540F264BE80D447A98A262, 7B98155D4B377C32B617936348862DF7687EACB0AFD2C27E34 0B7F8EA470E209 ] PG_Service_Launcher C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe
      21:08:21.0494 0x1cd4 PG_Service_Launcher - ok
      21:08:21.0666 0x1cd4 [ B0F327821DDD9C35F9C283C25ECCE71D, 4DB4F09D71EE61CBA0E5B1238F138E00A40CED5067DFB0C017 251A2137D22F41 ] PhoneCompanionPusher C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
      21:08:21.0682 0x1cd4 PhoneCompanionPusher - ok
      21:08:21.0744 0x1cd4 [ 21D8DBA76BFCE12AC7DEDEE8DFADBE02, B9A16EB8AF430A31FE0A2E82142C6F8A14944E7B6F3CD3FB2E CF53C8F5D1E0CD ] PhoneCompanionVap C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe
      21:08:21.0744 0x1cd4 PhoneCompanionVap - ok
      21:08:22.0025 0x1cd4 [ D0D57322ABC7473E54472D8374169CC5, BD14A13D6908C8669E56EF9401FD8A3D7C618E8B6556B36E63 4864E733BCA4B2 ] PhoneSvc C:\WINDOWS\System32\PhoneService.dll
      21:08:22.0072 0x1cd4 PhoneSvc - ok
      21:08:22.0151 0x1cd4 [ B4AB2C0177715FFAED88A1223212043A, 1920792ADC78DD51EF98B6A9634D686EAED0848FB7EF74A0DC D3AEBA5AF41EC6 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
      21:08:22.0151 0x1cd4 PimIndexMaintenanceSvc - ok
      21:08:22.0307 0x1cd4 [ F931F21E4287FE3ECCF09B54A232BBA2, CEB7AB3236E5F30214027092B7B695ED35F7A1E007DF404679 7D1E4DFEF49EC8 ] pla C:\WINDOWS\system32\pla.dll
      21:08:22.0354 0x1cd4 pla - ok
      21:08:22.0416 0x1cd4 [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3 FBB74A27266C9C ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
      21:08:22.0416 0x1cd4 PlugPlay - ok
      21:08:22.0447 0x1cd4 [ 56D7A89423325121C4A9BD5C326414F3, 649048C23D1973C3504E26B35362AC99DFE9BF31FFE73F45B4 3306A212AEA34C ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
      21:08:22.0447 0x1cd4 PNRPAutoReg - ok
      21:08:22.0526 0x1cd4 [ 4578ECA1FCEF4E7C787D84F78625143B, F5FE84D6D7412A4C037772593C434253D590E476B0B7498987 A1697BED86A510 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
      21:08:22.0526 0x1cd4 PNRPsvc - ok
      21:08:22.0666 0x1cd4 [ F70CAC34B455D05EAA04B2F8FB58E1CB, 295BFFB3DA03C5CE5462C11D3240024B68AC06E8DEA9062A73 9BE2CCEE19EB5D ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
      21:08:22.0682 0x1cd4 PolicyAgent - ok
      21:08:22.0697 0x1cd4 [ 60C8376B48BA96F07AEA536527433D44, EB988C119C3E71169B91ED2A744C71933DD35447DC4A8249E8 0EC24E9E7077D4 ] Power C:\WINDOWS\system32\umpo.dll
      21:08:22.0697 0x1cd4 Power - ok
      21:08:22.0744 0x1cd4 [ 5645B9D9788CCA2C88B9534996ED2D6D, 4988942DF163DB5B9B1A08CE6B628D2C47C2E2EAA30AEAE4EF E21C8CF4C8DC5D ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys
      21:08:22.0744 0x1cd4 PptpMiniport - ok
      21:08:23.0432 0x1cd4 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC849 71384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfi g.dll
      21:08:23.0526 0x1cd4 PrintNotify - ok
      21:08:23.0573 0x1cd4 [ 372913E12677A8CBBBABDD8311894F9D, A5233D95A0D22D2A9DB214E7CB79A99D389B67189FF6A87D0A D4610A333A637F ] Processor C:\WINDOWS\System32\drivers\processr.sys
      21:08:23.0588 0x1cd4 Processor - ok
      21:08:23.0682 0x1cd4 [ 1F115AF75EFBAC28479B4F94A3F8D4A3, BE8D8C50D985F6AF9DDC0F13BDBE2D55D600E1F5E344982536 538B14EC484AA6 ] ProfSvc C:\WINDOWS\system32\profsvc.dll
      21:08:23.0682 0x1cd4 ProfSvc - ok
      21:08:23.0713 0x1cd4 [ FC98407B85A31161851FDE245517574F, 2CCD706CF243934FCDA32B24CE0C385EA2E67F206E0306FA58 4496F583A20CD1 ] Psched C:\WINDOWS\system32\drivers\pacer.sys
      21:08:23.0713 0x1cd4 Psched - ok
      21:08:23.0776 0x1cd4 [ 07D57B890DD5693A6AB660CBAE8F91B4, 934895A41C116056E22FE3298418332A9F4280F96E96EEE06C 977A4925395674 ] PxHlpa64 C:\WINDOWS\system32\Drivers\PxHlpa64.sys
      21:08:23.0776 0x1cd4 PxHlpa64 - ok
      21:08:23.0854 0x1cd4 [ 7A68710BAC9B6809314B86C0CB1CBC4A, C02D97993D1F6FE6EFBA5B1366B3A4FE8CE1136A95F3A2DA07 BA59554C163501 ] QWAVE C:\WINDOWS\system32\qwave.dll
      21:08:23.0869 0x1cd4 QWAVE - ok
      21:08:23.0916 0x1cd4 [ 819602BBBFDB0BD46DEA3715BF0DD452, D4007FF1E5296316B53436CA3598D6B1CF4F60AB77D5B02F3E 595081EDD5D879 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
      21:08:23.0916 0x1cd4 QWAVEdrv - ok
      21:08:23.0948 0x1cd4 [ CDF47037A0939F56D11F699629C276AD, A63F2A3FE80FB8084E3870E907505694B79EE1D9E56E292C01 D481FEFD2534B0 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
      21:08:23.0948 0x1cd4 RasAcd - ok
      21:08:24.0010 0x1cd4 [ 28C2EA278070EE12701D0EDF8CB0EC36, F10288C1C6835840026DB30285345EF892DE989F43C948E7F4 760B8895FF675F ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys
      21:08:24.0026 0x1cd4 RasAgileVpn - ok
      21:08:24.0073 0x1cd4 [ 7B82197BF35CC3BE59AEF8B706AB8A16, AB0216164A548A48CD21F5F035E57E867584A96890B9887EC0 8F8DABDD89F990 ] RasAuto C:\WINDOWS\System32\rasauto.dll
      21:08:24.0073 0x1cd4 RasAuto - ok
      21:08:24.0104 0x1cd4 [ 17E565710172ED71B8531D8822E1C5D1, 0CA39ABD9E544DDAD9D9D7D1FC50444274C31E18F9BF730690 51D9F62833698F ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys
      21:08:24.0119 0x1cd4 Rasl2tp - ok
      21:08:24.0213 0x1cd4 [ F79BFB5588B777C71734C1D1EC129D07, 9B9D70EC8978AAC19B2B94694EE1B9957C13DFDDFCBE8AA82C 5F0D0EA04CDBDF ] RasMan C:\WINDOWS\System32\rasmans.dll
      21:08:24.0229 0x1cd4 RasMan - ok
      21:08:24.0244 0x1cd4 [ 9387DF155233D45D4E010F4F2FB52A57, CABC25DA4E512809AED0085767BDD94BF3C1DA792BFF8A009B 5465D9110E7060 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
      21:08:24.0244 0x1cd4 RasPppoe - ok
      21:08:24.0276 0x1cd4 [ F0F4EEDEEBEE7A4244FAFB96A16B5712, F64717E601BD5EB674003009507B8CDD6F69F00E8670D6895E C64786166A0E8D ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys
      21:08:24.0276 0x1cd4 RasSstp - ok
      21:08:24.0322 0x1cd4 [ AF6963414B820B7C45578ED3300438A7, C00F60FD72608E6983D32642768AECE891DD816FADFA7B872B A88091C16B95D7 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
      21:08:24.0322 0x1cd4 rdbss - ok
      21:08:24.0385 0x1cd4 [ 79A415E6FA915EFC00297DAB16EC2635, 47BB49F6D756214193D38A4AB182B541AAC180381C3111FF7F 9B0AD4C44D8733 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
      21:08:24.0385 0x1cd4 rdpbus - ok
      21:08:24.0416 0x1cd4 [ 7135785C21CA79D270D11037C43D3F19, 654A3C65CF891ED8C82A740D10CF607FC7D709185E664DE032 88CEB5B25F03A6 ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
      21:08:24.0416 0x1cd4 RDPDR - ok
      21:08:24.0463 0x1cd4 [ 97A61A3CB2B5CB4FC32B3224EF333448, E4F2E8BCEE3639BE57BBC8A8E67FDE42C3A5158F1204684B0E CD216F4AA044A3 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
      21:08:24.0463 0x1cd4 RdpVideoMiniport - ok
      21:08:24.0526 0x1cd4 [ 69BB204AE07EE84ECFAB1BF13C4BD04B, 1CA832CBF4AE4821EEA2A19F9519C2D1D00406B8CCE2A86FE3 B33A5F293DB218 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
      21:08:24.0526 0x1cd4 rdyboost - ok
      21:08:24.0651 0x1cd4 [ 940D6F5A2B0A61EE4170DF84F6C95C20, F8EE846DC8015EDFE7CB5BEEDC977EAA9C586BAC2216DE69D8 ECCBDBC7408649 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys
      21:08:24.0682 0x1cd4 ReFSv1 - ok
      21:08:24.0838 0x1cd4 [ 13F6B64235C60167052364BF7D99E4CA, BC12EE00775F7456FB922FBD684BF3F0CFABA5BEBB6E162C23 B41DED5C20A978 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
      21:08:24.0854 0x1cd4 RemoteAccess - ok
      21:08:24.0948 0x1cd4 [ 3183B161B1F05333F6C325577FEF3596, D6A89B2A021377B6F371E5B9EFC36FF018822B28F0ED41F8CD 2F00C5C8605707 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
      21:08:24.0963 0x1cd4 RemoteRegistry - ok
      21:08:25.0057 0x1cd4 [ 0660F4A14F9D2A2F59B26B1D74F1A6D0, A9443B6B7ED1ECA22AC960A2C6A2BE18C0BA58CD7BCF60E7AA 617CD3662D122D ] RetailDemo C:\WINDOWS\system32\RDXService.dll
      21:08:25.0120 0x1cd4 RetailDemo - ok
      21:08:25.0182 0x1cd4 [ E82F3B1918C6A5FE6EB761CDF1E772AF, 0C993FCB7BFD6E01B70A1821E0DEAFA2CB241AF8C2E6D4CC12 0F59C1B5F6FF5F ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
      21:08:25.0198 0x1cd4 RFCOMM - ok
      21:08:25.0229 0x1cd4 [ 5DAA644F17780FC4E3F4820A46D38FEC, 32C27FFA0A4608B164F4E709CD0D998AB73CA9713BE3E47F9D BC7B3D1B6C7453 ] RmSvc C:\WINDOWS\System32\RMapi.dll
      21:08:25.0229 0x1cd4 RmSvc - ok
      21:08:25.0276 0x1cd4 [ 672724C8B21B7DC56646045DE4D5B860, 79986E80A92C949C543959F1E35647A9788DAB2892AC20B6DE A5C0BBC0CEDE9E ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
      21:08:25.0291 0x1cd4 RpcEptMapper - ok
      21:08:25.0323 0x1cd4 [ 109C1D609951E886D3643B15C1EDD1C2, 347D8E7C50EC7F96217C7421D9BC8A42C9DF50B94169CB58DC F857A63C33C2EA ] RpcLocator C:\WINDOWS\system32\locator.exe
      21:08:25.0323 0x1cd4 RpcLocator - ok
      21:08:25.0432 0x1cd4 [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C9 46708E955A2909 ] RpcSs C:\WINDOWS\system32\rpcss.dll
      21:08:25.0448 0x1cd4 RpcSs - ok
      21:08:25.0495 0x1cd4 [ 5FF28F097C9699097B473F8FC7C1AA7D, 695560F1DBD85073F3D6CB1FF16F16504CA044EA62E940E463 A16BBA8B86E2FA ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys
      21:08:25.0495 0x1cd4 rspndr - ok
      21:08:25.0620 0x1cd4 [ CF0F908B50CD8FB12B7B69DA56A44681, F35FFF3F6BFBC3B2452C5E0A63D94575236EEB49665BE0FBBB 26ADAF189F777E ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
      21:08:25.0635 0x1cd4 rt640x64 - ok
      21:08:25.0823 0x1cd4 [ 44FD469A4F12C2092CAFE37ED1D44F60, B9001FACDADB2010206EC6DDF75B57BFC88A1C56F0E52DDC3C EC2D2F356A4835 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
      21:08:25.0870 0x1cd4 rtsuvc - ok
      21:08:25.0901 0x1cd4 [ B5DAEE69BACA64D2BB004568E22D8756, C0072CF6B438ED756435A182D55AC55F3AD356ACBD483DE06A 94893D3CA8CCC5 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
      21:08:25.0917 0x1cd4 s3cap - ok
      21:08:25.0948 0x1cd4 [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA 4380379D677983 ] SamSs C:\WINDOWS\system32\lsass.exe
      21:08:25.0948 0x1cd4 SamSs - ok
      21:08:25.0995 0x1cd4 [ 5E73FB63E2DBC75FE0C17DEB0010CE0E, 9DAC47486262397D03BC01F7438CAB62CF33BD7B5283F5B954 8C770A3D6D0ADC ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
      21:08:25.0995 0x1cd4 sbp2port - ok
      21:08:26.0057 0x1cd4 [ 3CD0130FFDEAEACF0905B482F3934EA3, 1EC355B63135FD2563093EBB206741C0C4CCE0551A662F6DC8 6C875146A88B06 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
      21:08:26.0073 0x1cd4 SCardSvr - ok
      21:08:26.0104 0x1cd4 [ 9EE060D6560FFBFBDB2ED5D6ED192294, 14387B69CD26D12BE31A23251B6AA8EDFC4D6CDE4FA558F095 0DE91D2DD03946 ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
      21:08:26.0104 0x1cd4 ScDeviceEnum - ok
      21:08:26.0151 0x1cd4 [ 3D9A82B03C92D1FEC42CB171D6F57778, DC027F02F5EB5F1D10DB6F405FB0C15D4D5C922445F5F3C916 624113278AF072 ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
      21:08:26.0167 0x1cd4 scfilter - ok
      21:08:26.0276 0x1cd4 [ D4DB6B318A0A0C74A90260725A228C0B, 57BA2EF9D880488C785C806ABF9EE753A48E589129442D72F8 15CD6EFFA07B22 ] Schedule C:\WINDOWS\system32\schedsvc.dll
      21:08:26.0292 0x1cd4 Schedule - ok
      21:08:26.0307 0x1cd4 [ 9055ADDFBA4C8B914C914CE693B55C0A, DB213AC36E14D856B81D2AFE46815402537A2ABEEA15032A9F F436F953129441 ] scmbus C:\WINDOWS\system32\drivers\scmbus.sys
      21:08:26.0323 0x1cd4 scmbus - ok
      21:08:26.0354 0x1cd4 [ B6F2363584E62960846F7C3F00124A4F, 252189FF9D623CF69BF415FF7C7FE74B0BBF756B632420578B FAFF6595616CF7 ] scmdisk0101 C:\WINDOWS\System32\drivers\scmdisk0101.sys
      21:08:26.0354 0x1cd4 scmdisk0101 - ok
      21:08:26.0463 0x1cd4 [ 9450FA11E9DE6715FCB71A519A8FF90B, B7E341C6E4CE967FCDD0D17A497C07E8A1C6B0AACE8A6E8E5D 6C21EF73F13E16 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
      21:08:26.0479 0x1cd4 SCPolicySvc - ok
      21:08:26.0635 0x1cd4 [ 7C3D10BEC8B0DBA00A78C78EB10B3AE2, A671C9CB97977613576D70607E106C7A29B9EA9E875C7C5AF2 93EE5903D7AD0A ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
      21:08:26.0651 0x1cd4 sdbus - ok
      21:08:26.0760 0x1cd4 [ F3714DBAA42C15F78FFCDFE4273214EB, 2D018970B92C5F0744FAE10A2FC298F3DCEA5C2EDEB760F4F0 651337B9878ABF ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll
      21:08:26.0760 0x1cd4 SDRSVC - ok
      21:08:26.0823 0x1cd4 [ 120DFCB71D6C502613A9E2D50E16850C, 2C294010AD1C9C380CD5221A37720544178B7358C8C8553AF4 4055E4CEE5DAF5 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
      21:08:26.0838 0x1cd4 sdstor - ok
      21:08:26.0885 0x1cd4 [ EFD644DD091E1D94555FC3BBC95EA66D, FBDDA6680BEC378CCF12A32D9186020E884DA15A1E789D1531 B1E687FC7B54B1 ] seclogon C:\WINDOWS\system32\seclogon.dll
      21:08:26.0885 0x1cd4 seclogon - ok
      21:08:26.0948 0x1cd4 [ F48535714BED7DD784853889B4594B26, 9B4AB7E7293E79A8F6CC46C84F23E62AD3BD6E958FCE078CDB B125A69FAC7E50 ] SENS C:\WINDOWS\System32\sens.dll
      21:08:26.0948 0x1cd4 SENS - ok
      21:08:27.0245 0x1cd4 [ 2B4E090D06C60853C5C00CF255F9E02A, 4D4DBA7B04519622612BD4A4F28318CA2F5646C84CAFF8C5AC C9BF4C6031894E ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
      21:08:27.0260 0x1cd4 SensorDataService - ok
      21:08:27.0370 0x1cd4 [ C09A42163878A082C3F0D0A3DFE95714, 8033DC38D0EDED3758DA6BF8C1955BE5FFE48863C079C58966 0B37D0E461300F ] SensorService C:\WINDOWS\system32\SensorService.dll
      21:08:27.0385 0x1cd4 SensorService - ok
      21:08:27.0432 0x1cd4 [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADE D20EB6ECEBB55D ] SensorsHIDClassDriver C:\WINDOWS\System32\drivers\WUDFRd.sys
      21:08:27.0432 0x1cd4 SensorsHIDClassDriver - ok
      21:08:27.0479 0x1cd4 [ E6F00415DADCEEC860E7AB42BFD19A65, 274CAF22F93D43B6DB6953730E3DF8DA94776B24EEE74B80AB 4CD780BC1366A9 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
      21:08:27.0479 0x1cd4 SensrSvc - ok
      21:08:27.0511 0x1cd4 [ 401D706DDC0A7AF18C3DD228ADF74551, 27C0B38D7C2E3F6FF06201124E63483931F6071954B2B99EC0 143C464238C0B7 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
      21:08:27.0511 0x1cd4 SerCx - ok
      21:08:27.0557 0x1cd4 [ 7084D11083F0CDCA8B5C76F9846ABF5D, F639920882B0E784D8CFAF0D4C0F0C411937B6831E5DD99B0A BFBFE06BA4742F ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
      21:08:27.0557 0x1cd4 SerCx2 - ok
      21:08:27.0573 0x1cd4 [ 3FF478A8ED32A83C36581425F6282B6C, 787646A17098EA7CF36064D0A950C1D470D4A280C8C5AC4002 3D566E53860EAE ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
      21:08:27.0573 0x1cd4 Serenum - ok
      21:08:27.0604 0x1cd4 [ 92509187AA171A80521528B36F753E1D, FE0DA272B8A155ECC161E99586C4AE7EE17B1C84BC330DA156 6C83B8E03FA825 ] Serial C:\WINDOWS\System32\drivers\serial.sys
      21:08:27.0604 0x1cd4 Serial - ok
      21:08:27.0620 0x1cd4 [ 433D38FF6D08B993847EA2A10EB8CB52, 29BA75DB6D1AC761BBDFB5AC8874FC7D763E1CD10D290E3690 63B34CE951270F ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
      21:08:27.0620 0x1cd4 sermouse - ok
      21:08:27.0714 0x1cd4 [ 82CF273F0E8F243789683DEB40757569, 5433D93A41C4BF04494E6158931C6AC3154888F7CD3A417253 EC02FF7EA6D00E ] SessionEnv C:\WINDOWS\system32\sessenv.dll
      21:08:27.0729 0x1cd4 SessionEnv - ok
      21:08:27.0745 0x1cd4 [ 697D3EE0740AEAB62B66ABCA1C83D13B, FCF54A0071ED04AD3FC8551C67FE5FD49089DC0510F753052C AC5972A65C9E3D ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
      21:08:27.0745 0x1cd4 sfloppy - ok
      21:08:27.0886 0x1cd4 [ 832E933AA8DB9FD4733B96D8B6484D3F, 3A8E3D7ECA192EEE154CB568073B7211FDA06078EFC3BC7E96 1563A1BFDD0CAA ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
      21:08:27.0901 0x1cd4 SharedAccess - ok
      21:08:27.0964 0x1cd4 [ 79C05C44012998A0C90E17F627BF5734, 735806210108BB0FBF1B4864FA13C8863AE07283749A13BBE2 EADCE5A1476DEC ] ShareItSvc C:\Program Files (x86)\Lenovo\SHAREit\Shareit.Service.exe
      21:08:27.0964 0x1cd4 ShareItSvc - ok
      21:08:28.0057 0x1cd4 [ 482E6BE8A07832E824080D352075ACA1, 4123A76C8E805AF4FE229C53E9C174095C0937913BA81A63FE 9B45C44AA5B15F ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
      21:08:28.0057 0x1cd4 ShellHWDetection - ok
      21:08:28.0104 0x1cd4 [ CF3BDF9EAD8D3EF671E9339B44B185BA, C17EC6D5B00F49D9C8B5B6C262A85F34ED71C58450659F006B 3632AA84F68E23 ] shpamsvc C:\WINDOWS\system32\Windows.SharedPC.AccountManage r.dll
      21:08:28.0104 0x1cd4 shpamsvc - ok
      21:08:28.0136 0x1cd4 [ A34CE1830E45DA98932295FDE4B7908A, FC553ECF4D64B4B10B7FDE5352707785517A18D487A80665BA FC7261E3F35CDC ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
      21:08:28.0136 0x1cd4 SiSRaid2 - ok
      21:08:28.0167 0x1cd4 [ A7B5C670770E908DA5FEF5BF1136E933, 8D3BB6FF65E631C34BE8EA766481B2FDB2E1E916A4FD67F867 05A8975A136E6C ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
      21:08:28.0167 0x1cd4 SiSRaid4 - ok
      21:08:28.0261 0x1cd4 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF19 5B08BCBDEDA88F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
      21:08:28.0261 0x1cd4 SkypeUpdate - ok
      21:08:28.0307 0x1cd4 [ 7EE0F7F86557FCB8A70E85A51D28224D, EFB0A6F891DF9B30AA5AD14614D4E87804213429442B0320C5 D4970588AD8269 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
      21:08:28.0307 0x1cd4 SmbDrvI - ok
      21:08:28.0370 0x1cd4 [ D233EAE2A9D48485321816486ED635EF, 03AB49BE9CF15EB7EDC50C400E673B4DF0E5BFDA9A7811E157 F2AF2F3CF38D49 ] smphost C:\WINDOWS\System32\smphost.dll
      21:08:28.0370 0x1cd4 smphost - ok
      21:08:28.0448 0x1cd4 [ 0B217141AC1283655402CDB356577735, 6EFA4CA46CFC8B7156CE7E5CA89B7F7073E16D66C2FC13F4DB 95FEB78CCF698F ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll
      21:08:28.0464 0x1cd4 SmsRouter - ok
      21:08:28.0511 0x1cd4 [ 6F4CE07D420FB657B5936F71101ABD41, CEC52984C56E578E0FFE12BE1B8148335F788B7D1751F2D0E7 9B944A41113C20 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
      21:08:28.0526 0x1cd4 SNMPTRAP - ok
      21:08:28.0636 0x1cd4 [ C994DF90427103CCB80F893FFD2B1CE8, 7E4B08095C77E68D337A3425EEA38F8FEC4D103CA7661E34FD 96BF518DFB4BCB ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
      21:08:28.0636 0x1cd4 spaceport - ok
      21:08:28.0698 0x1cd4 [ E03264C4C25B568F92ED1656AD541E64, D42942BFFBC7213D204FAF84F4FE015FC23A6ACB29B5E75283 4EDBC17A3AC20D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
      21:08:28.0698 0x1cd4 SpbCx - ok
      21:08:28.0745 0x1cd4 [ 79DCE27E8C4CF6701BFE49EC2446BBF6, F51CBB7A45C3C878F41653FD5FBDC93CC302712B7725DAAB4D 3475A1F4771E3D ] Spooler C:\WINDOWS\System32\spoolsv.exe
      21:08:28.0761 0x1cd4 Spooler - ok
      21:08:28.0995 0x1cd4 [ 23529A00195CE71252FEBF647E56E27D, 8ADF7A1C96DAE005E9A974D90BE8954F88D49B6848252B8851 3C49E0A3BD9774 ] sppsvc C:\WINDOWS\system32\sppsvc.exe
      21:08:29.0073 0x1cd4 sppsvc - ok
      21:08:29.0261 0x1cd4 [ 77B9B8AAEEA1E6DECC53F7473A0B5C1E, 8B61E30B67C8CAEC4C61EBF9B34FB85105B36DF25F7A612945 17EB394EFCAEC7 ] SRTSP C:\WINDOWS\system32\drivers\NSx64\1608010.00E\SRTS P64.SYS
      21:08:29.0276 0x1cd4 SRTSP - ok
      21:08:29.0292 0x1cd4 [ 95A3FB783462DB5D197E270EEA7DF531, DDF045A36D88AD10351D8AAEAC4A56FEB341DAA2CE2EAD1FF0 0CEB154816E4D3 ] SRTSPX C:\WINDOWS\system32\drivers\NSx64\1608010.00E\SRTS PX64.SYS
      21:08:29.0292 0x1cd4 SRTSPX - ok
      21:08:29.0386 0x1cd4 [ E83830BB74AE8CBECEA0ECD94DE436F9, 4A34569A34260324EBD629039E1BF45A3527FC75B22D9A3DB6 360A6EB365483A ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
      21:08:29.0401 0x1cd4 srv - ok
      21:08:29.0479 0x1cd4 [ 55CA5329D1ADEB8F8034045930147AE4, D4F31BC82700D166564C7F9CDCEA3ABAB4A37B55137C345727 68DF46FDA9320A ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
      21:08:29.0495 0x1cd4 srv2 - ok
      21:08:29.0542 0x1cd4 [ F13EE0DB1FB1D6946AC3228D7EFCFC8F, 109A809F0338FAB0F4045FA5EE33C6F0A994A9F586B2FBD892 0A6AABA0E0EF66 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
      21:08:29.0542 0x1cd4 srvnet - ok
      21:08:29.0604 0x1cd4 [ 44758105AB3EA34E815D4B6CA1153311, 7F223A20D2538C123BAC6F75BE0E126876A116F09502FD980C 05B8916E26E1B7 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
      21:08:29.0604 0x1cd4 SSDPSRV - ok
      21:08:29.0667 0x1cd4 [ B97C7EC07218A8002323718202BF5E77, 39D3254383E3F49FD3E2DFF8212F4B5744D8D5E0A6BB320516 C5EE525AD211EB ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
      21:08:29.0667 0x1cd4 SstpSvc - ok
      21:08:29.0995 0x1cd4 [ 4E330AD1EED4A5D582EE415FD55953A2, 2C02E1F45F74D250110BA5117AA942495CB2EBAC7F2CCECC28 4B4FB8F47B13E1 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
      21:08:30.0042 0x1cd4 StateRepository - ok
      21:08:30.0120 0x1cd4 [ 37E5733F8F720920F7C5A78D45899D3A, E40706E19FCB938256BF6C3E07703F7BA30306668B437C13BB A641D30977F43A ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
      21:08:30.0136 0x1cd4 Stereo Service - ok
      21:08:30.0167 0x1cd4 [ 29D26E1347AE1BBD4201014E19880B2C, 9E2153AD96CE4F189EEE43BB02515532C619FB1CA02D8F6DEF 517AC3347AAA14 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
      21:08:30.0167 0x1cd4 stexstor - ok
      21:08:30.0308 0x1cd4 [ 91CB95B35481155BFE29C217CD237F27, CA66957DF1441D991453BEF02D768D44E5D9A484BC23C8874E 8A7AC20904CB06 ] stisvc C:\WINDOWS\System32\wiaservc.dll
      21:08:30.0323 0x1cd4 stisvc - ok
      21:08:30.0370 0x1cd4 [ 53EB8CE34B55A1EE63424C8DB7388BFC, 5AB59117BA8A2844EB8693CCC19B217AE039B28C87519F96E1 C845FE9BF456C2 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
      21:08:30.0370 0x1cd4 storahci - ok
      21:08:30.0417 0x1cd4 [ C5E0ACE4771F5575D9D5B457ABF3AD03, 365880BC5AC313F25C313EFB7758301F98D9B2BF4C5FC9499F 98C2B7F8407D96 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys
      21:08:30.0417 0x1cd4 storflt - ok
      21:08:30.0433 0x1cd4 [ B66D8C75C9BC59D637177AB3B1C569A6, 76252A631F03EEBF5FDC7693F6B0A5E73838CDBE3157114CC9 6B8BBE88B476BF ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
      21:08:30.0433 0x1cd4 stornvme - ok
      21:08:30.0479 0x1cd4 [ BEBF85EB4D90E6996047DA027D0ED26E, DF109CF0F07CDD1B9B702C2A076D4DD5366DAAD971CC9359AF 0358E79981706F ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys
      21:08:30.0479 0x1cd4 storqosflt - ok
      21:08:30.0573 0x1cd4 [ B91FBE7CB4633FEB32AFBD0B48576396, 9EFDD92E8096CE5555F8DC3C870864E5515469603C2373B99B 3607234633CA66 ] StorSvc C:\WINDOWS\system32\storsvc.dll
      21:08:30.0589 0x1cd4 StorSvc - ok
      21:08:30.0604 0x1cd4 [ 8E73037A6F8938475692FFCC26EBF385, F78C5CD1A3CD17AA831EEC82426B14006B4DDBC9085A4814E0 4E8C37FD6B05F7 ] storufs C:\WINDOWS\system32\drivers\storufs.sys
      21:08:30.0604 0x1cd4 storufs - ok
      21:08:30.0620 0x1cd4 [ 9D9DED47DA10E845EFF2DD57C94C809B, 520D0CE7A867051B80C8141E351FE5A5BCE3C99776093F234D B77D3407B1F104 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
      21:08:30.0620 0x1cd4 storvsc - ok
      21:08:30.0667 0x1cd4 [ 224C92E442B1B8C20C274332F1ACF00D, CDE5DCFB7A21089464A6E2ABB29BBE08B184C3433C218756AA 5902A8F67C0B2C ] svsvc C:\WINDOWS\system32\svsvc.dll
      21:08:30.0667 0x1cd4 svsvc - ok
      21:08:30.0714 0x1cd4 [ 505E0C40B5D0ADDCBB414640F59BD2E0, DF4B5E65FE6FF2224F298A2A2FAC9B648C082DFF8463148633 647580A9FAD34D ] swenum C:\WINDOWS\System32\drivers\swenum.sys
      21:08:30.0714 0x1cd4 swenum - ok
      21:08:30.0776 0x1cd4 [ 2EE27411B5904C63D723BEA391819F58, C88C11D460E90398E16011B8A2CED5EE5626084F24790EA611 5532F8F70060C6 ] swprv C:\WINDOWS\System32\swprv.dll
      21:08:30.0792 0x1cd4 swprv - ok
      21:08:30.0979 0x1cd4 [ 81EAACC92D94E05AC1AC6019C0C6530D, 88A667FCE37751062A251383A44E1010B4C127D0E116C0C12E C1402A69F61434 ] SymEFASI C:\WINDOWS\system32\drivers\NSx64\1608010.00E\SYME FASI64.SYS
      21:08:30.0995 0x1cd4 SymEFASI - ok
      21:08:31.0042 0x1cd4 [ 1DE0CBF15AC67AE0E5B456ADEFB89493, C764815313BB4332279730AA02531A448A1D32F5B6D5689FF0 4549406A5B5212 ] SymELAM C:\WINDOWS\system32\drivers\NSx64\1608010.00E\SymE LAM.sys
      21:08:31.0042 0x1cd4 SymELAM - ok
      21:08:31.0104 0x1cd4 [ E542C084F75E441550FB5D27B3557E96, 61691BD0587CD11DBA674F1C48F4C50049D964DC1C8B949925 EA51097B89AA14 ] SymEvent C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS
      21:08:31.0104 0x1cd4 SymEvent - ok
      21:08:31.0182 0x1cd4 [ 33F2551E1A387BC0FA69FB1D34C7F981, 00B6CADDA89C443479008DCF4D95E4B04D3F1CB5CE7BE7F53D 9740FA57D397DE ] SymIRON C:\WINDOWS\system32\drivers\NSx64\1608010.00E\Iron x64.SYS
      21:08:31.0198 0x1cd4 SymIRON - ok
      21:08:31.0229 0x1cd4 [ 7BBF917EBDBD1099410B90DA3B3E5D66, E5725B6FDDF57E32A8465E278A56FAD366E443C77B8DDDE594 D8AB6602B05320 ] SymNetS C:\WINDOWS\system32\drivers\NSx64\1608010.00E\SYMN ETS.SYS
      21:08:31.0245 0x1cd4 SymNetS - ok
      21:08:31.0354 0x1cd4 [ 32F46FB0F290D16DAA452B289C985795, 73F88AAAA6026DB4C27F1D054145216DCC3F1960946FB2A7A9 0518DD1D5737CB ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys
      21:08:31.0354 0x1cd4 Synth3dVsc - ok
      21:08:31.0526 0x1cd4 [ 3FA9FDECDF704C2622FB81E34BDF0D8E, 38DD3F304BE5B233DF9393C32C3CD4D6B1D0B511C3C3C34C61 4018E47D814362 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys
      21:08:31.0542 0x1cd4 SynTP - ok
      21:08:31.0636 0x1cd4 [ D635E700E43F4ECA021FD159CFF3F8B9, 25F3396D17DBD7C2BC29337B6B5C75191EB3EE41C7F31962AA BFCDA1A5E9E527 ] SynTPEnhService C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
      21:08:31.0636 0x1cd4 SynTPEnhService - ok
      21:08:31.0808 0x1cd4 [ FED48B19D6F55D7A3AB498D85729D1BA, FA5E0E02BC2E2DE108C55991E3B063CC947072228B53539F42 F922661510DE7C ] SysMain C:\WINDOWS\system32\sysmain.dll
      21:08:31.0823 0x1cd4 SysMain - ok
      21:08:31.0917 0x1cd4 [ D9FEA79BF6AF136F8E656AE045C2FEC8, E6F08A93348E035185F0F1C6B6277E636F4F25D1136E3ACCA6 3488DAEEC7114B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
      21:08:31.0917 0x1cd4 SystemEventsBroker - ok
      21:08:31.0995 0x1cd4 [ 86E7FD5C8DBEC1EB51C4368561402B75, 86EE61414CD5854E39E33F67BF5DA4377B569B3ED4D18882C4 70BC6784891DA1 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
      21:08:32.0026 0x1cd4 TabletInputService - ok
      21:08:32.0105 0x1cd4 [ 3929C8FC134AC672C4F3F85160956257, CD3195CA58BA6F55EA0DDA2BE6AB58280AD1CA488D7AAA1539 DD05FB99374F36 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
      21:08:32.0120 0x1cd4 TapiSrv - ok
      21:08:32.0339 0x1cd4 [ 4F25E481124059CC593B4C68BC485640, 2814D2BA4E83D3B0F7569E6C6EE0C763D9801BC505D8ED8467 5D19C8573834DB ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
      21:08:32.0417 0x1cd4 Tcpip - ok
      21:08:32.0605 0x1cd4 [ 4F25E481124059CC593B4C68BC485640, 2814D2BA4E83D3B0F7569E6C6EE0C763D9801BC505D8ED8467 5D19C8573834DB ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys
      21:08:32.0651 0x1cd4 Tcpip6 - ok
      21:08:32.0698 0x1cd4 [ 8DBB1BE20C36E6D19BCC89EEA00B953C, 8B97A7E53E1D77363AFF6A5AAEAD89EBAE28DCB8D82753C804 FD7CD5646500AF ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
      21:08:32.0698 0x1cd4 tcpipreg - ok
      21:08:32.0761 0x1cd4 [ 9D2DD64A0B51C56285512DC9454340F6, ABB90CE6A55269F71AFB08E04969CF9A4EFD93F7A7189AF920 EEE3E005214DDD ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
      21:08:32.0761 0x1cd4 tdx - ok
      21:08:32.0808 0x1cd4 [ 06130AFFECEB94525FC2352936576B70, 10EBE2C8FDC087D29E2FFB328F0F7905A5374AB8CC9FAE8699 E7676DBC8CBF91 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
      21:08:32.0808 0x1cd4 terminpt - ok
      21:08:32.0948 0x1cd4 [ FB68E5F02316C42BE7282DA492351C6F, AC31D841FEA58B776127E138DB20F8D48E26FD8C00CE2FA969 5EA14EBF159A0A ] TermService C:\WINDOWS\System32\termsrv.dll
      21:08:32.0995 0x1cd4 TermService - ok
      21:08:33.0073 0x1cd4 [ 2AF438EC0D361A7BBB70E604A686602C, 4BE6A0461EB2CB94288614434A1CEC81C2ED46241721FD5BBD 8ABE0680F7C804 ] Themes C:\WINDOWS\system32\themeservice.dll
      21:08:33.0089 0x1cd4 Themes - ok
      21:08:33.0636 0x1cd4 [ 1482B8ED5CACA87992A882B853B83CEE, 613247F0E362A109090E8563D977DECC50C64D45D6962905FA 84A2D59329045C ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
      21:08:33.0667 0x1cd4 TieringEngineService - ok
      21:08:33.0714 0x1cd4 [ 3B3C607C3C62DFBEF61938DA2CAB94DF, E5EEA7F45A7BBFDF6F0003CD77E39958C451DD1B4B401876B5 619A3C20F5C370 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
      21:08:33.0730 0x1cd4 tiledatamodelsvc - ok
      21:08:33.0730 0x1cd4 [ C1F8CBE2D4843E0CCC3EFEA2EC60D4AB, 9D07527D982066922318C77AECE99280DE55034C375ACE145E 827A6BEB5C3B70 ] TimeBrokerSvc C:\WINDOWS\System32\TimeBrokerServer.dll
      21:08:33.0745 0x1cd4 TimeBrokerSvc - ok
      21:08:33.0792 0x1cd4 [ 46171262D0E806779DEEDFCAB2F830CC, 7F4A4658B8BA217D99E5B5C0E01600C20DC96ECBCA32A5BA7F BE17D2A7B8BFD8 ] TPM C:\WINDOWS\System32\drivers\tpm.sys
      21:08:33.0792 0x1cd4 TPM - ok
      21:08:33.0808 0x1cd4 [ 3B91F35089240F6187AD681A5EC28BDE, 3D035CB73BC8E7831DCD0FB7D9DAD91CE51D3D0F9D9C8B866A 0009BD508B6702 ] TrkWks C:\WINDOWS\System32\trkwks.dll
      21:08:33.0808 0x1cd4 TrkWks - ok
      21:08:33.0886 0x1cd4 [ 09440FA30C020B4443391FAFCF4876E3, 208C7725F70C75D8C96CCAF5B22F83B8B1C66D8C9FFF48465B 1C9F4A77425569 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
      21:08:33.0886 0x1cd4 TrustedInstaller - ok
      21:08:33.0933 0x1cd4 [ A6F4025664C9D4BC2A9EDAB4092706D7, 89808A1679C0E716F86F06EE7701DCC289200894F0FA1F120D A2AC3A45FDB312 ] tsusbflt C:\WINDOWS\system32\drivers\TsUsbFlt.sys
      21:08:33.0933 0x1cd4 tsusbflt - ok
      21:08:33.0964 0x1cd4 [ 37A96AD493E110C0BF1EE0AC0F9E7DBD, F2A6894A4AEE18DF2B92222CDB0801A13AEEB7212071F04314 30788339B30E23 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
      21:08:33.0964 0x1cd4 TsUsbGD - ok
      21:08:34.0042 0x1cd4 [ 79E264287F17D56D768440B0270466DE, ABF9DC95C5E939B30BFD9BF9EDFDB3BD78A9DFCB055B945965 303B6A60E6D7A7 ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys
      21:08:34.0042 0x1cd4 tunnel - ok
      21:08:34.0089 0x1cd4 [ F723552F65D44FE693DB1A383825B3A8, EF8C343C4EB5EEA4EC830378EF576CCD6CD4EEDEDD486C0F29 697044E8C71F45 ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll
      21:08:34.0105 0x1cd4 tzautoupdate - ok
      21:08:34.0152 0x1cd4 [ AA65954F512BA097DD190790876DD991, C1BB2B8F54F064D01190327B5E7949EBBDA21D6FC6F94D9FCD 20F685C2F855FA ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
      21:08:34.0152 0x1cd4 UASPStor - ok
      21:08:34.0183 0x1cd4 [ AB6268022C3A5B529075A39C33904DA6, 2717F1704640201F2681711543EA39A74C3E89C7DB232EC5DD 89FD8AA6F07846 ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys
      21:08:34.0183 0x1cd4 UcmCx0101 - ok
      21:08:34.0214 0x1cd4 [ 7ED2EDA43D21C7A5F589A7960E265C52, 7DB8A595236FBB8A264D7AB155201357212855050ABB5B1036 EF32F1223FDCC2 ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys
      21:08:34.0214 0x1cd4 UcmTcpciCx0101 - ok
      21:08:34.0245 0x1cd4 [ 169351463039B45F5CDED9768879F712, 990C8C4AEF9ED7FF6BCEAE67F7BDAA037777B142B8D96A74F8 715C941A5C63C6 ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys
      21:08:34.0245 0x1cd4 UcmUcsi - ok
      21:08:34.0308 0x1cd4 [ 08A9E3AD29B215484FBB68CDC175DF3A, 3EFFF99C3BC4A1454E3D2B5177AE587ED3041AB4CE2A95BA7E 28A2124E38E1E5 ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys
      21:08:34.0308 0x1cd4 Ucx01000 - ok
      21:08:34.0324 0x1cd4 [ DA70AEE267491AA56BC63AA0C0C96CA2, 0A0AADB27607F9292BB3CE000CFDDB19BD4CA09EAAD926C492 5CB43B17817AD9 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys
      21:08:34.0324 0x1cd4 UdeCx - ok
      21:08:34.0386 0x1cd4 [ FBC5ECF6D5A868D0B116C2DBB02B8168, 945AA76C60ABAD6075B5C8F9172C018F75BCF393A1CB8B329F 5E68E664627775 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
      21:08:34.0402 0x1cd4 udfs - ok
      21:08:34.0402 0x1cd4 [ B918E40FAA9CD118CCA4AD388B748C98, 4B539B7B656F02C5E5BAEE52A677757B05CC11C5500D619850 A564C28FAB8115 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
      21:08:34.0402 0x1cd4 UEFI - ok
      21:08:34.0511 0x1cd4 [ 0FD75222C1AD2687AB365BEBEA400DD4, AD10DBCA59EB7D34FD8F963CE267F36774A9BC613F8D637903 B12AC88C328E8A ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys
      21:08:34.0511 0x1cd4 Ufx01000 - ok
      21:08:34.0574 0x1cd4 [ C1A78C53E01C641AE41BFA65797819F5, 0B9FE1BD724B3315199A1B1DA2F03255E4FE744DA3CE6CD0F7 7699A8E42E9359 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys
      21:08:34.0574 0x1cd4 UfxChipidea - ok
      21:08:34.0605 0x1cd4 [ 767307212110EBEFB93EC9A5BE9E85B9, 368797400FE54802CE74F34B773CE2AF09EB8DEA6C035B5541 9A52F0B5A6FAD0 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys
      21:08:34.0636 0x1cd4 ufxsynopsys - ok
      21:08:34.0683 0x1cd4 [ 8578F83EC5175920F2D8586FFF9DCE47, 049A16AC87F93E761150C8286633FFCA62EE85F5645DDE77D3 6BD0EB6481FF83 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
      21:08:34.0714 0x1cd4 UI0Detect - ok
      21:08:34.0745 0x1cd4 [ DC460AAA18CA2342FBBFB2DF9B044472, 14D45E059C596AE97506D26705F248CA1C2269160B31A60341 060E8A93146CBD ] umbus C:\WINDOWS\System32\drivers\umbus.sys
      21:08:34.0761 0x1cd4 umbus - ok
      21:08:34.0777 0x1cd4 [ C3CF0377917ECE6D65D7623E1E61568F, 4909695E04CBC86BFCFFBC15F332C367521054B7B4D3C141C7 CA6B2E40E090B9 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
      21:08:34.0777 0x1cd4 UmPass - ok
      21:08:34.0824 0x1cd4 [ 640CF093C1CF16D5FD317616CA348F31, BEC34D1AACA83BF5A84CE01F6A668E3CA5A33C56A446DC42EF FF7C43D22E1AE6 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
      21:08:34.0839 0x1cd4 UmRdpService - ok
      21:08:34.0886 0x1cd4 [ B8272BB8D4982C496FDC704809C38E02, F93855D932FB1DBBCC86E82C0FE0DC9ECF93BBD629D2CA9D0B E7E075E114B7FF ] UnistoreSvc C:\WINDOWS\System32\unistore.dll
      21:08:34.0917 0x1cd4 UnistoreSvc - ok
      21:08:35.0042 0x1cd4 [ 6CDA3536F6BAB7896A57EAB7DC07F379, 8FBE6457ECD1ABB518D9800EBA8A017774FFAA8EABD2EDC082 5181A12FE9AEF6 ] upnphost C:\WINDOWS\System32\upnphost.dll
      21:08:35.0042 0x1cd4 upnphost - ok
      21:08:35.0089 0x1cd4 [ 6B46FC140C9AF68E6E7697D66D59CB4D, F018B4784D65F1A8140A6EA69C35D6A7ECE01738694052FD54 AFD2B81A8F2FF8 ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys
      21:08:35.0089 0x1cd4 UrsChipidea - ok
      21:08:35.0105 0x1cd4 [ B4402E7F0923F660270442CE76877ABE, 1C2DD26EAB71F75EA576E8DAABAF71FD7DC3DF807CF025617C 774CEF33C0B718 ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys
      21:08:35.0105 0x1cd4 UrsCx01000 - ok
      21:08:35.0136 0x1cd4 [ 9DD431F1B94789CFB527E5D19261F124, 8F5A249A97C5B14B282E3147DD21951D2AD34B651E762814C1 2F4C26D74EC70C ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys
      21:08:35.0136 0x1cd4 UrsSynopsys - ok
      21:08:35.0152 0x1cd4 [ C87E32B90F085970D9637FBAD45EF6FE, C180EACD2EE479277DA5DBF39E43B428BD7945141B2451CB39 46B0C1E495E76F ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
      21:08:35.0152 0x1cd4 usbccgp - ok
      21:08:35.0214 0x1cd4 [ 0B663856474AC41924D9E9112203858F, 9E09F2A6279B48CAC09F8C7AA1F1BE02864D540C2ED1460CBA 9FABCF0A546A1E ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
      21:08:35.0214 0x1cd4 usbcir - ok
      21:08:35.0261 0x1cd4 [ F83D2250256203AC5DA5E8601C1AFDD7, AC0D90E2DB3051798B9D287CF3D0E92FED4000822E65A82775 A29CF896B76F04 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
      21:08:35.0261 0x1cd4 usbehci - ok
      21:08:35.0292 0x1cd4 [ 7FFD26742321919590ED77FCA556D65F, F7FAB63C36F8519F5A7B9091C507F3CB580C390322FAF9155C CE7F66C965B968 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
      21:08:35.0308 0x1cd4 usbhub - ok
      21:08:35.0370 0x1cd4 [ 7A749B2863B5561BE34B39E8E249AD8F, E5B67DFAF5407007FD0CC408D6B4BA19DF59584819FC715E9F 9E0FBF3EA00AAB ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
      21:08:35.0386 0x1cd4 USBHUB3 - ok
      21:08:35.0402 0x1cd4 [ D2109F1F4FEBF1DAC415CDC5DE876479, C8A871EBD0E5EF004BA622A73DAC36C03608CD317FDCD0A6A9 8608DF4CC10D55 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
      21:08:35.0402 0x1cd4 usbohci - ok
      21:08:35.0433 0x1cd4 [ 29C9572F2D061CFC3C0BD48A3163E343, 2527DCC9E6D421F5DC40051C787A5270EB077746785465C9AA 2A2AEEF47307D5 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
      21:08:35.0433 0x1cd4 usbprint - ok
      21:08:35.0480 0x1cd4 [ 2EC7B2C8123236B1233A77281D378DF7, D97DB59C9CAE2B8B33C707E8CEA7A65BF88712842CC715D270 F7432A99D21BB6 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
      21:08:35.0558 0x1cd4 usbscan - ok
      21:08:35.0589 0x1cd4 [ 429477D6DEF3321FF7D3EF23CAAADA00, BB7D2AFE99736AAFFA8B0B2DABF7D6A6D5CB9563B1DE6A7E86 CE7DC9D27F31C0 ] usbser C:\WINDOWS\System32\drivers\usbser.sys
      21:08:35.0589 0x1cd4 usbser - ok
      21:08:35.0636 0x1cd4 [ 0CC16F7B91C57AE9A4E44425A295FDAA, 7CEE11955E5742DA390601F565412C14A7481B8747C495CCD2 46696C56B426DC ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
      21:08:35.0636 0x1cd4 USBSTOR - ok
      21:08:35.0667 0x1cd4 [ C917D09064CDBD18F75ADC9B2C48F847, A7F6223346CCD7E84186CD0C0715014F8E3A4398298925A432 90224678620D23 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
      21:08:35.0667 0x1cd4 usbuhci - ok
      21:08:35.0714 0x1cd4 [ 95BCCEFBC40D06484CF16144FE79B8A5, 8ABA73C5FFEDD319FB96B807AD08716698E557522478DF1A2C 5D662675636AE0 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
      21:08:35.0714 0x1cd4 USBXHCI - ok
      21:08:35.0949 0x1cd4 [ 4CC81AB9D380A6264FF4C0C1512CF965, 76C33053D1C9155B0F3F8392FF982AD4EABEE2BBBEE89EA41D BFE8E436973EB0 ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll
      21:08:36.0011 0x1cd4 UserDataSvc - ok
      21:08:36.0167 0x1cd4 [ AA24C61D88E36BA1144072227922173D, 2EBBC827E740F72EA2E75745E585378189BC0DEE91CACD7FA3 1BDBC5EFCF8733 ] UserManager C:\WINDOWS\System32\usermgr.dll
      21:08:36.0183 0x1cd4 UserManager - ok
      21:08:36.0245 0x1cd4 [ C75B1B48BCAADEB0275C1EBE2EAE742D, 19875B87BDB23E5B60D6D3173FDF7A7634E81E43501529A56F FCCEE21B7E3B71 ] UsoSvc C:\WINDOWS\system32\usocore.dll
      21:08:36.0245 0x1cd4 UsoSvc - ok
      21:08:36.0277 0x1cd4 [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA 4380379D677983 ] VaultSvc C:\WINDOWS\system32\lsass.exe
      21:08:36.0277 0x1cd4 VaultSvc - ok
      21:08:36.0308 0x1cd4 [ 0CBDE344FB48E42D78E29469F202ADBC, A1C3FBA5409DD3BBEAF1D3CE2583D6C8A621C0E4F534155EC5 40AFD67BC9E8CA ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
      21:08:36.0308 0x1cd4 vdrvroot - ok
      21:08:36.0464 0x1cd4 [ 0783EDE1FA94649ED7F3CEF6A734041A, 1A13A613EF6B67459031C7994FFC6F32F73E02E0F123A17161 8E4F011C635684 ] vds C:\WINDOWS\System32\vds.exe
      21:08:36.0480 0x1cd4 vds - ok
      21:08:36.0527 0x1cd4 [ 723195568C8755CAD57F7933C5F2C5C2, 5C403799F67223605F825BC16D217C1EF5E1A0DDF00AC6380F E8976339B67D9B ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
      21:08:36.0527 0x1cd4 VerifierExt - ok
      21:08:36.0730 0x1cd4 [ 46ADD0CD4473AAEF1C68266A803F704D, D521E46891253884CF8285E864FAE63F2E8E0974AD8D2EB4D9 10E8A35350844F ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
      21:08:36.0745 0x1cd4 vhdmp - ok
      21:08:36.0761 0x1cd4 [ 7929228F0E8B0C2FA0495A17A4FC27F6, 1F1667B10A96B1D85ED165F62A5C0EF28C37F828B8280EA08B FCC1BAC03F2C90 ] vhf C:\WINDOWS\System32\drivers\vhf.sys
      21:08:36.0777 0x1cd4 vhf - ok
      21:08:36.0808 0x1cd4 [ AEE432ED868831B1F068E373598F6D93, BAE91F47B0CB94B826CA010B490AD924D7B715911DF3FCE62F 9165F3B571105C ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
      21:08:36.0808 0x1cd4 vmbus - ok
      21:08:36.0855 0x1cd4 [ 9444B23FC694B5F90F21B0FC7F10D8DD, 86F92856F5C985DD8E5993B51E85E1F47EF8C9B2FB37468998 C94266963BB4BD ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
      21:08:36.0855 0x1cd4 VMBusHID - ok
      21:08:36.0917 0x1cd4 [ 4D0287F566B36536DD812A54C015FC4A, 01D6508CA59CF04A47902B1F7C202FD14A81240E0B447588D9 19DD1072B040CF ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys
      21:08:36.0917 0x1cd4 vmgid - ok
      21:08:36.0964 0x1cd4 [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D17 7FD3FAED516119 ] vmicguestinterface C:\WINDOWS\System32\icsvc.dll
      21:08:36.0980 0x1cd4 vmicguestinterface - ok
      21:08:37.0011 0x1cd4 [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D17 7FD3FAED516119 ] vmicheartbeat C:\WINDOWS\System32\icsvc.dll
      21:08:37.0011 0x1cd4 vmicheartbeat - ok
      21:08:37.0027 0x1cd4 [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D17 7FD3FAED516119 ] vmickvpexchange C:\WINDOWS\System32\icsvc.dll
      21:08:37.0027 0x1cd4 vmickvpexchange - ok
      21:08:37.0089 0x1cd4 [ 0F621B52259D88A719AA20C6D04E3D72, 80B0528CCDE6E1B6F092787E1C0769C649698B196602859A58 55134F0ECCBAE5 ] vmicrdv C:\WINDOWS\System32\icsvcext.dll
      21:08:37.0089 0x1cd4 vmicrdv - ok
      21:08:37.0105 0x1cd4 [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D17 7FD3FAED516119 ] vmicshutdown C:\WINDOWS\System32\icsvc.dll
      21:08:37.0121 0x1cd4 vmicshutdown - ok
      21:08:37.0152 0x1cd4 [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D17 7FD3FAED516119 ] vmictimesync C:\WINDOWS\System32\icsvc.dll
      21:08:37.0152 0x1cd4 vmictimesync - ok
      21:08:37.0168 0x1cd4 [ 704609D80666FCB1DAE91260CF2CBB20, 0764DA123DA3FE8543B9205DDF17B0621E6A0F0DF95E8C3D17 7FD3FAED516119 ] vmicvmsession C:\WINDOWS\System32\icsvc.dll
      21:08:37.0183 0x1cd4 vmicvmsession - ok
      21:08:37.0214 0x1cd4 [ 0F621B52259D88A719AA20C6D04E3D72, 80B0528CCDE6E1B6F092787E1C0769C649698B196602859A58 55134F0ECCBAE5 ] vmicvss C:\WINDOWS\System32\icsvcext.dll
      21:08:37.0214 0x1cd4 vmicvss - ok
      21:08:37.0246 0x1cd4 [ 29075915F9BDC3437F8BED71C067D399, 2C7718080C11DFDD4C9A2085537F78F5633369B4A27D9C6416 8F0249594A4AA2 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
      21:08:37.0246 0x1cd4 volmgr - ok
      21:08:37.0261 0x1cd4 [ 6BDB6CE6D2D9E3D3F28F1C97E12B62E2, 5E77D7AF858D7B90FF395F39B86D6F96413D1DDEA28BC9FB40 C5524A4DF6DAD0 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
      21:08:37.0261 0x1cd4 volmgrx - ok
      21:08:37.0339 0x1cd4 [ BF2546583BB75F01DDA60A7921DFB230, 579BD0BC55F4F03CD8D1FCDAC3975A1649C688820F2F7FC1AD 354132D9E3BEE9 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
      21:08:37.0355 0x1cd4 volsnap - ok
      21:08:37.0371 0x1cd4 [ AC2E20A74D09D24485BE8396CE04F07B, 23FCE8BEE01B89E5CDCA536D75DBA6DCE3E92E13178A66836C EB7829310A89D1 ] volume C:\WINDOWS\system32\drivers\volume.sys
      21:08:37.0371 0x1cd4 volume - ok
      21:08:37.0418 0x1cd4 [ 92F6E3E6D3F1795263EB34B37F74AEF7, 33AB1ECCA1216AF1995E1DB4F11E48156FF62391D7C176C8A4 CC1037B9CB3A27 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
      21:08:37.0418 0x1cd4 vpci - ok
      21:08:37.0449 0x1cd4 [ FD9BCB8920973CEAD4D49DC7A6D8A618, 34AB4A485FB40DF737600006D8323BE927FB0BDA2BC170F4C1 23BE775EAE7CC8 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
      21:08:37.0449 0x1cd4 vsmraid - ok
      21:08:37.0605 0x1cd4 [ 01FFD5AF533F2CFDF26DDDC9313731C1, BFF0F2E57CD2358AC8F519F6F5692A46D97EC4E9B763D47101 CEF31712FD4738 ] VSS C:\WINDOWS\system32\vssvc.exe
      21:08:37.0652 0x1cd4 VSS - ok
      21:08:37.0746 0x1cd4 [ 0C111F220798CCE80484026E06822379, B98A5E44D3ABA67E6DE99E18BF3C2C606923E6269E262665C7 21F672ACBBED2A ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
      21:08:37.0746 0x1cd4 VSTXRAID - ok
      21:08:37.0793 0x1cd4 [ 607639716E9DB1CEF4E18B5B229293B4, 1D997177093F907EFE8A04AD10443BB9C355C0D7657DBD449E 7EE7FCABC3ECBC ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
      21:08:37.0793 0x1cd4 vwifibus - ok
      21:08:37.0824 0x1cd4 [ B1ED64E628763148BF84FBE23F2AD711, 6182A39675E6049BC3DD353694720795A8E3D0331509AA8ABA 4883D5C569AD5E ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys
      21:08:37.0824 0x1cd4 vwififlt - ok
      21:08:37.0855 0x1cd4 [ 59920894C38A827091A06AF559834E47, 8B40FE0B1BA3B2A79BFF70803D039DB921F85C978724722E5E 5AFF188FA75471 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys
      21:08:37.0855 0x1cd4 vwifimp - ok
      21:08:37.0949 0x1cd4 [ 76C1CC611352499326001F25A3ED15F8, 228BFA8A01BB1B3868576D509A2EA6F3D37FEDC8F12D4DC4E0 A84CE926C6D1B1 ] W32Time C:\WINDOWS\system32\w32time.dll
      21:08:37.0964 0x1cd4 W32Time - ok
      21:08:38.0011 0x1cd4 [ 55D00B785A7587F4263D125817871283, B92400B229099C1E243F2B149881A1423A2E9C8CA2D77D868B 9B923BFDEC7FF2 ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
      21:08:38.0011 0x1cd4 WacomPen - ok
      21:08:38.0105 0x1cd4 [ 1483BE4D0135C378CB61D3CD73AB3E03, B7309C9E4F370860C507BF52D17234CDF4A7FAE95D2D822714 E07EF5DEC0249B ] WalletService C:\WINDOWS\system32\WalletService.dll
      21:08:38.0121 0x1cd4 WalletService - ok
      21:08:38.0152 0x1cd4 [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92 A6E0A9FDC586DB ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
      21:08:38.0152 0x1cd4 wanarp - ok
      21:08:38.0152 0x1cd4 [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92 A6E0A9FDC586DB ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
      21:08:38.0168 0x1cd4 wanarpv6 - ok
      21:08:38.0324 0x1cd4 [ 30B8286F8FE1AE90A583100D45E02247, 3C86A4A5E21F9A1267EA231B20914E0A162BA4C25FE8917AD3 AB6D504DA5BE0C ] wbengine C:\WINDOWS\system32\wbengine.exe
      21:08:38.0355 0x1cd4 wbengine - ok
      21:08:38.0480 0x1cd4 [ 7C4FAE7A8D55C897E5AE681B245A005F, 7E1E6299579BF02E89C5B828A1C19A43FF4E1F43D46D058F8D C0A8E6421C86A7 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
      21:08:38.0496 0x1cd4 WbioSrvc - ok
      21:08:38.0527 0x1cd4 [ E330144B97D493AA886000DCAAA8DAF5, ED86F46F5A76FD8F06CA98BD61B174ADB9AD4B065394356872 708DF8B614E4F9 ] wcifs C:\WINDOWS\system32\drivers\wcifs.sys
      21:08:38.0527 0x1cd4 wcifs - ok
      21:08:38.0652 0x1cd4 [ 32960EA9CF836D7DD77767DCB68CE230, 679446A4FAB0331C181D2716CAEA225267C6164BB9867E360C 5B3D6AB1083195 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
      21:08:38.0668 0x1cd4 Wcmsvc - ok
      21:08:38.0714 0x1cd4 [ D50645235A507B0546B1B5CF7D0B8849, 19F5FE10C953B8EE8EEDA9A9F7F2E97AA193BB085E7FC36406 6686089ADD1C9F ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
      21:08:38.0730 0x1cd4 wcncsvc - ok
      21:08:38.0777 0x1cd4 [ AEA1093B751339267D8C8C1EF3D669CF, 8F3325E7FB16BD856A0593C36F2E3E018909038C52CD5F92E1 16E0C1366F31CB ] wcnfs C:\WINDOWS\system32\drivers\wcnfs.sys
      21:08:38.0777 0x1cd4 wcnfs - ok
      21:08:38.0793 0x1cd4 [ D520B1B849B6D4D707AB31722B952C2D, 149BABB7BD63C1F212ADD9306C84FFB2A5CE6DC435BD3213EA B787E9B222C61F ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
      21:08:38.0793 0x1cd4 WdBoot - ok
      21:08:38.0933 0x1cd4 [ 5030C76047D756263093A47B82970868, E772F15973F6DE36851DD230F1F4190746CD81CA1E7284DC07 4711C4BF45CAF0 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
      21:08:38.0964 0x1cd4 Wdf01000 - ok
      21:08:39.0043 0x1cd4 [ 29FF9199EDEB4F5470BB134D1A2563D2, 94713F98A6EA6042203D5DD0DE6758F5F0F331F7D4BB05E91E F20CEEEBD6780F ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
      21:08:39.0043 0x1cd4 WdFilter - ok
      21:08:39.0090 0x1cd4 [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA23655 03A473FC6D9507 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
      21:08:39.0090 0x1cd4 WdiServiceHost - ok
      21:08:39.0105 0x1cd4 [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA23655 03A473FC6D9507 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
      21:08:39.0105 0x1cd4 WdiSystemHost - ok
      21:08:39.0277 0x1cd4 [ 8CB606A3057355FD5A9DBDD1A0AC94EF, 6DD0B4A2270633086EBB569A00B87430EE6EF173525E341404 B15845B57BE86D ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
      21:08:39.0293 0x1cd4 wdiwifi - ok
      21:08:39.0308 0x1cd4 [ 17CF416CFF408190F5A4CBD79AB12E55, E376C8865C7EA633AE20D2CF940E4C7584AC783BAAF7941780 FB6C4C84802F33 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
      21:08:39.0308 0x1cd4 WdNisDrv - ok
      21:08:39.0371 0x1cd4 WdNisSvc - ok
      21:08:39.0465 0x1cd4 [ 3570C4E14F85CE0B537D126727ACA91C, A474C9E6B6E4E5945C63367C1D3D24D4782C4A4FEB00FAE15D FED099D8283078 ] WebClient C:\WINDOWS\System32\webclnt.dll
      21:08:39.0465 0x1cd4 WebClient - ok
      21:08:39.0496 0x1cd4 [ 1785F9C96A0BDEC1F6E0C79EF412F342, D6D4EDA69457BEDDA69C2F60FC4C2FAC97D46CD8E9C1804CCD 68F169383583E3 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
      21:08:39.0496 0x1cd4 Wecsvc - ok
      21:08:39.0527 0x1cd4 [ B9175D63527B05131F2FA504CF0265F2, 1E43A17788F1B6A29E2889C81E0BE100D64BD3A9DEE7C154D9 581F01D2D7D05F ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
      21:08:39.0527 0x1cd4 WEPHOSTSVC - ok
      21:08:39.0543 0x1cd4 [ 5C58EC0C9D4DE04DCDE56F6DCEA62080, 8ED386EDF4C39C339CE0BB2AC7E199C38705E5A6B3F56A4987 B9A8ABD19BB59F ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
      21:08:39.0543 0x1cd4 wercplsupport - ok
      21:08:39.0605 0x1cd4 [ F899B355CC95AF26AB36E84E8A0DD685, C400F2F80FFF6473FEF066943C4A2AFF0FFE988A4F755757A2 E5005C2A10DAD8 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
      21:08:39.0605 0x1cd4 WerSvc - ok
      21:08:39.0652 0x1cd4 [ E1785942AC51FEE6826CDF02075C5AA9, 56FE7017684086F4F9C3A2C0D3AC00369BA0938BA3987EEBEE 9A75B8E3CA0AE1 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys
      21:08:39.0652 0x1cd4 WFPLWFS - ok
      21:08:39.0715 0x1cd4 [ B154618505A6A9026EFA6AB8C4123BF1, 713648D71AA027B4472E7E75B942630DBE7383687984B02A5E 99C9E4192C95EB ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
      21:08:39.0715 0x1cd4 WiaRpc - ok
      21:08:39.0762 0x1cd4 [ 0CF79A0EACFFBB75A50A469A27696D02, E112BF7B5A8D0B0AD2EA0E7B9FD4E8CFEC9371C8E94A602482 92D688AFE715C4 ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
      21:08:39.0762 0x1cd4 WIMMount - ok
      21:08:39.0762 0x1cd4 WinDefend - ok
      21:08:39.0824 0x1cd4 [ 0DE131733317EB4BE67028366B0CAAC6, AC7DADBF03A3752B4D33CA19F03DBCEDD6F56893C2DA25C98B 0AB07063D990E3 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
      21:08:39.0824 0x1cd4 WindowsTrustedRT - ok
      21:08:39.0887 0x1cd4 [ 92EB5D38BDF10C790450F3E46BF93A0E, 0FC027398DBD43EDC1F7D703C0B6DB20294DF34E67C9288442 039B1A5663CE1B ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy. sys
      21:08:39.0887 0x1cd4 WindowsTrustedRTProxy - ok
      21:08:40.0012 0x1cd4 [ C2A3B07F0118D61086C99BDCBAB6A6A3, 04D646BEF1C6F427503C594F0ECBB33140C3991A3A7AFB66B2 C9581E358F9FD2 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
      21:08:40.0027 0x1cd4 WinHttpAutoProxySvc - ok
      21:08:40.0074 0x1cd4 [ F95DE20312ACCA7761446DE152BD1F7C, F6C5ACA500C2182437F4A7402BD81C3A2B77C0BBD78BA31FB5 74DC1997FCBFE6 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys
      21:08:40.0074 0x1cd4 WinMad - ok
      21:08:40.0277 0x1cd4 [ CD49CA8E3280ACEEC5ECF431A59F5EFD, 75F48EFC6DEE9E06B490703EE47602AFDEA51505285B02D2CF 884601E71857CC ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
      21:08:40.0277 0x1cd4 Winmgmt - ok
      21:08:40.0496 0x1cd4 [ B8C0D620219ECAA23A2AC841EAF454D1, FB527C4D36929D7FAE2A837727C557B7823A72069EBCAB7D16 C49E8B21E8D952 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
      21:08:40.0574 0x1cd4 WinRM - ok
      21:08:40.0683 0x1cd4 [ 4EFB346BFDAEEB29316AA52BBB9852B1, 4BC5554F44BD9549D0A929D77BD410FA3EB502A7D0170303D3 69268672505494 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS
      21:08:40.0730 0x1cd4 WINUSB - ok
      21:08:40.0746 0x1cd4 [ 8B9AFF5F08E66A6F1F1063DEC9457FB6, 98F2AF6988D125521FD34CAA48B9652922F0C8ECFAE9B0C1DF 4B3CE6B9CF500F ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys
      21:08:40.0746 0x1cd4 WinVerbs - ok
      21:08:40.0824 0x1cd4 [ ECD999D8412A3473C26B118F89DB9908, 5FB9B93E4B5482CCFF01D805DFA386FD8D3441BC81E7BD5DF8 9EE3078FD724F3 ] wisvc C:\WINDOWS\system32\flightsettings.dll
      21:08:40.0840 0x1cd4 wisvc - ok
      21:08:41.0246 0x1cd4 [ 7671078AEF4C0203B053A9642C401FF7, BBFADA89CD31F20ADDBFAFAD2E492C72D82BF2F8B823BB6773 F04D229B62534C ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
      21:08:41.0293 0x1cd4 WlanSvc - ok
      21:08:41.0855 0x1cd4 [ E15711970C5BE05E8D70B294D0AFF621, 30670CFC4DA57B4A3E0E895E4111100D847BB8041A258A3035 24CD96DC566482 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
      21:08:41.0887 0x1cd4 wlidsvc - ok
      21:08:41.0934 0x1cd4 [ 6F4F4F5A007D1710BD76FB311DA97C07, FC0FEA4364F6BA4E31DBC82735D09D429CA3BE9AFCFF5D5E12 63D8B27FC2CE3E ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
      21:08:41.0934 0x1cd4 WmiAcpi - ok
      21:08:42.0012 0x1cd4 [ 3CDDFF6CAD962C5EF1C52FD667C358B6, F6F09145E9461EB17172988D26749FCF36920A1A683459334D 04A6D072B31A92 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
      21:08:42.0059 0x1cd4 wmiApSrv - ok
      21:08:42.0168 0x1cd4 WMPNetworkSvc - ok
      21:08:42.0231 0x1cd4 [ 43C8D087B31C592163B33A4BDA540E40, 3A6C4E5E56931B29321DCC723585F2F0E804EF4DCDEAB2A868 7F30FC3AE70E43 ] Wof C:\WINDOWS\system32\drivers\Wof.sys
      21:08:42.0293 0x1cd4 Wof - ok
      21:08:42.0512 0x1cd4 [ 909CB4BBF7B08E78C363000E09E79A6F, 217205D1B5EE03274AFF9405AED6D2A5665CBA4C3876E84B53 DA44920CDF9CB1 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
      21:08:42.0559 0x1cd4 workfolderssvc - ok
      21:08:42.0590 0x1cd4 [ F02930EB91596042F2221397D60AFCE5, 10E2AB0993B67CBAA9E11C68280608965064EC9F7E0C570F5B 453FACADB8AB5D ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
      21:08:42.0590 0x1cd4 WPDBusEnum - ok
      21:08:42.0652 0x1cd4 [ 75A9284F01FE7CB1A7D5EAE5C1EB4F33, 390EF23AEA06D8711555F7979FF8BE0620B53C1A551638C4EC 6FB7C6678965B3 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
      21:08:42.0699 0x1cd4 WpdUpFltr - ok
      21:08:42.0777 0x1cd4 [ 60E2EB3E7B7F15C25E02462159F90707, D8344B529EEC0D4922CAC3E6897CC9F191ACF1376017BE38ED 6BF6019F1ED181 ] WpnService C:\WINDOWS\system32\WpnService.dll
      21:08:42.0777 0x1cd4 WpnService - ok
      21:08:42.0871 0x1cd4 [ C7C91FB86A3C6CD7619725A88ED1884C, 132C43C518F37BF303D768BD5FB0AB835F693C43FE693937D8 04A34E940D770F ] WpnUserService C:\WINDOWS\System32\WpnUserService.dll
      21:08:42.0902 0x1cd4 WpnUserService - ok
      21:08:43.0075 0x1cd4 [ 36D7B73ADC3E10607ED6EC874AFB5D1E, 1737B3E4D2CA76BB27903BF460E4960E6A0BC32D35069AC7C5 E4B07F625F3282 ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
      21:08:43.0075 0x1cd4 ws2ifsl - ok
      21:08:43.0184 0x1cd4 [ 9A0E0B836413EB0BC885532D2A5389D6, AFEE4A0578D5581E4D72999A33C0DEA6253BD891F611AFF9AF DE4160A60105F3 ] wscsvc C:\WINDOWS\System32\wscsvc.dll
      21:08:43.0199 0x1cd4 wscsvc - ok
      21:08:43.0215 0x1cd4 [ 696EC2EAA2A42A137CCBB9A84D6917C0, 424089F4F373962AF8357C5D4D43F35948989BE3F58EAD3690 F565F4C1BBC66F ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys
      21:08:43.0215 0x1cd4 WSDPrintDevice - ok
      21:08:43.0231 0x1cd4 WSearch - ok
      21:08:43.0278 0x1cd4 [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915A CD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys
      21:08:43.0418 0x1cd4 wsvd - ok
      21:08:43.0824 0x1cd4 [ 5163F5BABAE1FF8CCC0AFD60B6EDD20A, E4F3FC2D7E9995DD34D6DD392D33B51649077985ECA0BF2AF0 552D72DC3DF08E ] wuauserv C:\WINDOWS\system32\wuaueng.dll
      21:08:43.0871 0x1cd4 wuauserv - ok
      21:08:43.0918 0x1cd4 [ AED7FE551E8672B824A56324076183EB, FFE543AAEFDEFFE6B20C244DB141A9425BDA88ED36F4870F0B 70FEC433BDF0C1 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
      21:08:43.0918 0x1cd4 WudfPf - ok
      21:08:43.0965 0x1cd4 [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADE D20EB6ECEBB55D ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
      21:08:43.0981 0x1cd4 WUDFRd - ok
      21:08:44.0090 0x1cd4 [ 47F6450F28BAA32B2AB0D6BE00996249, C8A47D6ADF89AD613AB685C6224B9099DCEFDCD8ABCF703542 AFDC356404116E ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
      21:08:44.0090 0x1cd4 wudfsvc - ok
      21:08:44.0153 0x1cd4 [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADE D20EB6ECEBB55D ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
      21:08:44.0153 0x1cd4 WUDFWpdFs - ok
      21:08:44.0371 0x1cd4 [ E231728BC515A4B85543AF74A1FEDFCB, 5D250D7D789B5BB56BFA2E7A109BCEB3686B7636C54D89F4E9 804101D145C955 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
      21:08:44.0449 0x1cd4 WwanSvc - ok
      21:08:44.0793 0x1cd4 [ F39D6915451D9226AC9A5E7AE70E2ABA, E05D678DC0423A4D0EB8B3BB5A942721BB4F3B0BED22748252 DBD6053FE956F1 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll
      21:08:44.0871 0x1cd4 XblAuthManager - ok
      21:08:45.0231 0x1cd4 [ 765FF96467A26C4C03281ECA426EC2D9, 2526B03C518D72F429C29BA4D4F11707AF277BF71520A1A922 38A932950AE161 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll
      21:08:45.0309 0x1cd4 XblGameSave - ok
      21:08:45.0434 0x1cd4 [ 9627BBAA50878F6833A6A7843EE3B1D9, 637566BB56501C4D11E3B6E6AC1C602D880C9D357CCE3DF1DF 74EE672744F2B7 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
      21:08:45.0450 0x1cd4 xboxgip - ok
      21:08:45.0715 0x1cd4 [ 335E6F2BE58523B295945C840C185B00, 94ED7E2CB212A3D55B8A2CB90CD1D02A6AF92DC0DDD487CB5B 7CAC9883343460 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll
      21:08:45.0747 0x1cd4 XboxNetApiSvc - ok
      21:08:45.0809 0x1cd4 [ 63088A3361D9A308F328F11E9099DD87, E03FDB932FC57F199C8F8A8EADA338BDF7D2F9C6CB8FAB679A 92B48B1E5AFE8A ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
      21:08:45.0809 0x1cd4 xinputhid - ok
      21:08:45.0997 0x1cd4 [ EECC6FB48D5137A331D02AAC1D99DF8C, 95D1069F9064EC88E4E1F478E26254F6C79EC7C3A73AEAC240 3E313E30401E99 ] ymc C:\ProgramData\LenovoTransition\Server\x64\ymc.exe
      21:08:45.0997 0x1cd4 ymc - ok
      21:08:46.0106 0x1cd4 [ 21E13F2CB269DEFEAE5E1D09887D47BB, 543991CA8D1C65113DFF039B85AE3F9A87F503DAEC30F46929 FD454BC57E5A91 ] ZAM C:\WINDOWS\System32\drivers\zam64.sys
      21:08:46.0137 0x1cd4 ZAM - ok
      21:08:47.0887 0x1cd4 [ AC65B1259636C0EA36CD1C14709B237B, 51D6AE14F39C63B98643F2123D548EB8D9919D189330198644 DB0291BAC77541 ] ZAMSvc C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
      21:08:48.0075 0x1cd4 ZAMSvc - ok
      21:08:48.0137 0x1cd4 [ 21E13F2CB269DEFEAE5E1D09887D47BB, 543991CA8D1C65113DFF039B85AE3F9A87F503DAEC30F46929 FD454BC57E5A91 ] ZAM_Guard C:\WINDOWS\System32\drivers\zamguard64.sys
      21:08:48.0137 0x1cd4 ZAM_Guard - ok
      21:08:48.0169 0x1cd4 ================ Scan global ===============================
      21:08:48.0231 0x1cd4 [ 0C710DB449712EE13ACE733695DB7780, BBC7875B38D318CE4E88979D083AC72E8993254A466A8A6882 DDE9E0C3B687A3 ] C:\WINDOWS\system32\basesrv.dll
      21:08:48.0325 0x1cd4 [ C509CCD23B086DFC9EAF86E280043672, BF431DC1C618BAF0CB67976C5A8BCCDC3F3CB266F83C614D60 5BA559BA8EDFD8 ] C:\WINDOWS\system32\winsrv.dll
      21:08:48.0387 0x1cd4 [ 1EE06E957B0B2CA52D26DA7861E160EF, 4B743A1C7010138F5F6684BBCF7CAD6FD05F49920BDD3FDB77 6347AA6B44AB94 ] C:\WINDOWS\system32\sxssrv.dll
      21:08:48.0481 0x1cd4 [ 3C69CC28665854F1AAB4B4005005FA31, 2750F5ECCD448C07E3402AA64EA625D27C6BC1D000A3FFE57C 03D62428BB46C4 ] C:\WINDOWS\system32\services.exe
      21:08:48.0481 0x1cd4 [ Global ] - ok
      21:08:48.0481 0x1cd4 ================ Scan MBR ==================================
      21:08:48.0512 0x1cd4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
      21:08:48.0544 0x1cd4 \Device\Harddisk0\DR0 - ok
      21:08:48.0544 0x1cd4 ================ Scan VBR ==================================
      21:08:48.0575 0x1cd4 [ A38F36BA8D34A59EC955362646D1DE15 ] \Device\Harddisk0\DR0\Partition1
      21:08:48.0622 0x1cd4 \Device\Harddisk0\DR0\Partition1 - ok
      21:08:48.0653 0x1cd4 [ DED493FF2F07FCC31616690E6B92A4CA ] \Device\Harddisk0\DR0\Partition2
      21:08:48.0669 0x1cd4 \Device\Harddisk0\DR0\Partition2 - ok
      21:08:48.0700 0x1cd4 [ AC30F7D28FDF9A97008B4CA29DF9FD1C ] \Device\Harddisk0\DR0\Partition3
      21:08:48.0715 0x1cd4 \Device\Harddisk0\DR0\Partition3 - ok
      21:08:48.0747 0x1cd4 [ A6F0D3BF0BC9CA1029C8414CB5A44276 ] \Device\Harddisk0\DR0\Partition4
      21:08:48.0762 0x1cd4 \Device\Harddisk0\DR0\Partition4 - ok
      21:08:48.0856 0x1cd4 [ 3AC827A701FE04062DECFD49F050A2F1 ] \Device\Harddisk0\DR0\Partition5
      21:08:48.0919 0x1cd4 \Device\Harddisk0\DR0\Partition5 - ok
      21:08:48.0950 0x1cd4 [ 1335C9FF7EE856C95D9F027C315D2E59 ] \Device\Harddisk0\DR0\Partition6
      21:08:48.0981 0x1cd4 \Device\Harddisk0\DR0\Partition6 - ok
      21:08:49.0028 0x1cd4 [ 6BD122A5B6ED4FDAE6FEBDF66D640BBB ] \Device\Harddisk0\DR0\Partition7
      21:08:49.0059 0x1cd4 \Device\Harddisk0\DR0\Partition7 - ok
      21:08:49.0091 0x1cd4 [ E08525012B977959E777A4CF58673DDC ] \Device\Harddisk0\DR0\Partition8
      21:08:49.0153 0x1cd4 \Device\Harddisk0\DR0\Partition8 - ok
      21:08:49.0153 0x1cd4 ================ Scan active images ========================
      21:08:49.0153 0x1cd4 [ 3DFBB8B3F8BC0A91297030D0E530BA37, F5F8ACC5DA4C923BABB2FCAEBDA8CE33356E8F86E9CF946047 C3A1E05E472825 ] C:\Windows\System32\drivers\crashdmp.sys
      21:08:49.0153 0x1cd4 C:\Windows\System32\drivers\crashdmp.sys - ok
      21:08:49.0153 0x1cd4 [ 7044E23927B89C9948837FBBC353012B, B904E7F29E35868A475A9A3E7BEC2B3916025F2755F1E2AA05 10E6640FD7C243 ] C:\Windows\System32\drivers\Diskdump.sys
      21:08:49.0153 0x1cd4 C:\Windows\System32\drivers\Diskdump.sys - ok
      21:08:49.0169 0x1cd4 [ BA2C068FC92EF7232527FC66566F08FB, C25644A7F286F724181363C21D006A02D651D2B819086F7490 B7F4B7869D1DF3 ] C:\Windows\System32\drivers\iaStorA.sys
      21:08:49.0169 0x1cd4 C:\Windows\System32\drivers\iaStorA.sys - ok
      21:08:49.0169 0x1cd4 [ D41A6CE0E0A50ADDF5A86430796EDA75, 6095F76E06EC81A8B1C7636BC464B9CCABE2242D9C4CEEB1A2 7345E5817AA76E ] C:\Windows\System32\drivers\dumpfve.sys
      21:08:49.0169 0x1cd4 C:\Windows\System32\drivers\dumpfve.sys - ok
      21:08:49.0169 0x1cd4 [ 613D0137C269187FA298A157E3D14A18, 84BC268525F14BB27202CE242BF94D9E83BC91B50A03359085 74F31B29A2F04D ] C:\Windows\System32\drivers\cdrom.sys
      21:08:49.0169 0x1cd4 C:\Windows\System32\drivers\cdrom.sys - ok
      21:08:49.0169 0x1cd4 [ 03427B8FF618BE50EB5027B4E549C0D8, 3C3815FE3C847B992E794B1BB0FDB87B8D18AEC95BA9E91659 1CF43EB8169D15 ] C:\Windows\System32\drivers\NSx64\1608010.00E\ccSe tx64.sys
      21:08:49.0169 0x1cd4 C:\Windows\System32\drivers\NSx64\1608010.00E\ccSe tx64.sys - ok
      21:08:49.0169 0x1cd4 [ F44F666B0EACC3181544FFCF8CA0FFC7, 83F771CF9DAE1C504B30731EEC55355EA1253174252DA2192A DF1D228B3735C3 ] C:\Windows\System32\drivers\filecrypt.sys
      21:08:49.0169 0x1cd4 C:\Windows\System32\drivers\filecrypt.sys - ok
      21:08:49.0184 0x1cd4 [ 1272083E0EC6345307D54C01194C7144, 3B60A524C45D463C6792156CC45CAF104F9284105CB55DC6B8 6CC15F3D913763 ] C:\Windows\System32\drivers\tbs.sys
      21:08:49.0184 0x1cd4 C:\Windows\System32\drivers\tbs.sys - ok
      21:08:49.0184 0x1cd4 [ 33F2551E1A387BC0FA69FB1D34C7F981, 00B6CADDA89C443479008DCF4D95E4B04D3F1CB5CE7BE7F53D 9740FA57D397DE ] C:\Windows\System32\drivers\NSx64\1608010.00E\iron x64.sys
      21:08:49.0184 0x1cd4 C:\Windows\System32\drivers\NSx64\1608010.00E\iron x64.sys - ok
      21:08:49.0184 0x1cd4 [ E542C084F75E441550FB5D27B3557E96, 61691BD0587CD11DBA674F1C48F4C50049D964DC1C8B949925 EA51097B89AA14 ] C:\Windows\System32\drivers\SYMEVENT64x86.SYS
      21:08:49.0184 0x1cd4 C:\Windows\System32\drivers\SYMEVENT64x86.SYS - ok
      21:08:49.0184 0x1cd4 [ 6E6DD6F9DD2A034CF85E94047DBDB992, 63D0A0756F551B7668D1CBAB24B29FD462C706E8A81690BC24 8D6C92061FE215 ] C:\Windows\System32\drivers\null.sys
      21:08:49.0184 0x1cd4 C:\Windows\System32\drivers\null.sys - ok
      21:08:49.0184 0x1cd4 [ 0A508274355745EEF01C6BE3198D02C4, E2DB08AEE2368FA95FDB357BB31EA4EBF31679C3E72E109DB3 D7CD1B5F7B828E ] C:\Windows\System32\drivers\beep.sys
      21:08:49.0184 0x1cd4 C:\Windows\System32\drivers\beep.sys - ok
      21:08:49.0184 0x1cd4 [ 68F72B05EBC6D1779C0D60A147C7CA0B, AA1C857BEE34865C6B901157FC22570D4CF45D950708BAD7AA 333F120F2B474C ] C:\Windows\System32\drivers\BasicDisplay.sys
      21:08:49.0184 0x1cd4 C:\Windows\System32\drivers\BasicDisplay.sys - ok
      21:08:49.0200 0x1cd4 [ 33D894AEB764646F9BA3249DB87705DF, C41290C099C7234A023E5BE0F85F309127981256F6C0933511 8FDC8A35AAAA86 ] C:\Windows\System32\drivers\watchdog.sys
      21:08:49.0200 0x1cd4 C:\Windows\System32\drivers\watchdog.sys - ok
      21:08:49.0200 0x1cd4 [ 19F2B54EE8861D90579BD0E3AE5182F9, FDD4F091C61C8C20550C8F68375ABD7ED718A733F680F0F036 7D4796C302BA14 ] C:\Windows\System32\drivers\dxgkrnl.sys
      21:08:49.0200 0x1cd4 C:\Windows\System32\drivers\dxgkrnl.sys - ok
      21:08:49.0200 0x1cd4 [ 23156E7EDAF613D839E2839746B168D3, CAEF8F9C7D3A338BD747AC9D5BFBE730D77B911E87BCF532EB B75E1F80916AFA ] C:\Windows\System32\drivers\BasicRender.sys
      21:08:49.0200 0x1cd4 C:\Windows\System32\drivers\BasicRender.sys - ok
      21:08:49.0200 0x1cd4 [ 001CBD7A2CD45C4EB39C01C3C677EF73, F4AAF4D60DB1232921C7811A62287B55C7C098B7A1FF9A40D8 8AF58A5ABECBA2 ] C:\Windows\System32\drivers\npfs.sys
      21:08:49.0200 0x1cd4 C:\Windows\System32\drivers\npfs.sys - ok
      21:08:49.0200 0x1cd4 [ F01B849D9D4A8CEAF32D4FDBD0B83C92, D2473AC4C6E6C03DEF13EA73EC78FB878BDC95C047651BF79A 16C9DEA82AD046 ] C:\Windows\System32\drivers\msfs.sys
      21:08:49.0200 0x1cd4 C:\Windows\System32\drivers\msfs.sys - ok
      21:08:49.0200 0x1cd4 [ 23B5CD10B4DF20DB987568521917BB00, 658075C701189BE6EC0E9EE58CBDBA266839BAA39359E5652F DC171023EA4D4F ] C:\Windows\System32\drivers\tdi.sys
      21:08:49.0200 0x1cd4 C:\Windows\System32\drivers\tdi.sys - ok
      21:08:49.0216 0x1cd4 [ 9D2DD64A0B51C56285512DC9454340F6, ABB90CE6A55269F71AFB08E04969CF9A4EFD93F7A7189AF920 EEE3E005214DDD ] C:\Windows\System32\drivers\tdx.sys
      21:08:49.0216 0x1cd4 C:\Windows\System32\drivers\tdx.sys - ok
      21:08:49.0216 0x1cd4 [ 6FEBB0A847FFD5F057B9AC8889F1B9A7, 558BCC64C59079E6569F61CCE1219A124B3313FC4E6CB5CBCC 94124D202FF19D ] C:\Windows\System32\drivers\netbt.sys
      21:08:49.0216 0x1cd4 C:\Windows\System32\drivers\netbt.sys - ok
      21:08:49.0216 0x1cd4 [ 323AA1953ED9C01E23F740FA891FE064, 4CED6E3D61749316CDE28965C913E7ED462539DAAD637A2948 4F62AF47AD650D ] C:\Windows\System32\drivers\afd.sys
      21:08:49.0216 0x1cd4 C:\Windows\System32\drivers\afd.sys - ok
      21:08:49.0216 0x1cd4 [ B1ED64E628763148BF84FBE23F2AD711, 6182A39675E6049BC3DD353694720795A8E3D0331509AA8ABA 4883D5C569AD5E ] C:\Windows\System32\drivers\vwififlt.sys
      21:08:49.0216 0x1cd4 C:\Windows\System32\drivers\vwififlt.sys - ok
      21:08:49.0216 0x1cd4 [ FC98407B85A31161851FDE245517574F, 2CCD706CF243934FCDA32B24CE0C385EA2E67F206E0306FA58 4496F583A20CD1 ] C:\Windows\System32\drivers\pacer.sys
      21:08:49.0216 0x1cd4 C:\Windows\System32\drivers\pacer.sys - ok
      21:08:49.0216 0x1cd4 [ 5D1513BD6430307C9DB86C6E351372ED, D2AB709CF7CFA5B857B084AFC821914A975B7DDDCE15422998 1F19448973BD6D ] C:\Windows\System32\drivers\netbios.sys
      21:08:49.0216 0x1cd4 C:\Windows\System32\drivers\netbios.sys - ok
      21:08:49.0231 0x1cd4 [ AF6963414B820B7C45578ED3300438A7, C00F60FD72608E6983D32642768AECE891DD816FADFA7B872B A88091C16B95D7 ] C:\Windows\System32\drivers\rdbss.sys
      21:08:49.0231 0x1cd4 C:\Windows\System32\drivers\rdbss.sys - ok
      21:08:49.0231 0x1cd4 [ 21E13F2CB269DEFEAE5E1D09887D47BB, 543991CA8D1C65113DFF039B85AE3F9A87F503DAEC30F46929 FD454BC57E5A91 ] C:\Windows\System32\drivers\zamguard64.sys
      21:08:49.0231 0x1cd4 C:\Windows\System32\drivers\zamguard64.sys - ok
      21:08:49.0231 0x1cd4 [ 21E13F2CB269DEFEAE5E1D09887D47BB, 543991CA8D1C65113DFF039B85AE3F9A87F503DAEC30F46929 FD454BC57E5A91 ] C:\Windows\System32\drivers\zam64.sys
      21:08:49.0231 0x1cd4 C:\Windows\System32\drivers\zam64.sys - ok
      21:08:49.0231 0x1cd4 [ 7BBF917EBDBD1099410B90DA3B3E5D66, E5725B6FDDF57E32A8465E278A56FAD366E443C77B8DDDE594 D8AB6602B05320 ] C:\Windows\System32\drivers\NSx64\1608010.00E\symn ets.sys
      21:08:49.0231 0x1cd4 C:\Windows\System32\drivers\NSx64\1608010.00E\symn ets.sys - ok
      21:08:49.0231 0x1cd4 [ 95A3FB783462DB5D197E270EEA7DF531, DDF045A36D88AD10351D8AAEAC4A56FEB341DAA2CE2EAD1FF0 0CEB154816E4D3 ] C:\Windows\System32\drivers\NSx64\1608010.00E\srts px64.sys
      21:08:49.0231 0x1cd4 C:\Windows\System32\drivers\NSx64\1608010.00E\srts px64.sys - ok
      21:08:49.0231 0x1cd4 [ 0C6218321A09A7B51BA7FFAFBA4CCB21, 330B3FA793A78410B28DFC8250BBF24442E3BB80434A7938BB 96F02337614E0D ] C:\Windows\System32\drivers\nsiproxy.sys
      21:08:49.0231 0x1cd4 C:\Windows\System32\drivers\nsiproxy.sys - ok
      21:08:49.0247 0x1cd4 [ 90F5DC9802AAA00CD0B6E2AD9E7FFADC, 71C0777829299DECA6ACD42F38802DBE3C29A42CFBD8A396F3 9DFA44D1F55B6C ] C:\Windows\System32\drivers\npsvctrig.sys
      21:08:49.0247 0x1cd4 C:\Windows\System32\drivers\npsvctrig.sys - ok
      21:08:49.0247 0x1cd4 [ 0543BEFD41EC4D25C7F7CF36409CEC7D, 631622CFEC49952C0470531B23FFFFF483DC0EFFEF7A97B117 9A600392C05DDD ] C:\Windows\System32\drivers\mssmbios.sys
      21:08:49.0247 0x1cd4 C:\Windows\System32\drivers\mssmbios.sys - ok
      21:08:49.0247 0x1cd4 [ 55FB8F2048127B0ED55E4295E4F743D5, 498C2836E5B35B7373269AA12EC162AA4695B4114C066464EF E24268A851A91A ] C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\IPSDefs\ 20170105.001\IDSviA64.sys
      21:08:49.0247 0x1cd4 C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\IPSDefs\ 20170105.001\IDSviA64.sys - ok
      21:08:49.0247 0x1cd4 [ 7ACD8F69B5D6EC97E6D2C006E19BED88, FC69214C9308EA64B88EF4C3C95800586DDBB44C8540846B79 A161BAD8203B6E ] C:\Windows\System32\drivers\gpuenergydrv.sys
      21:08:49.0247 0x1cd4 C:\Windows\System32\drivers\gpuenergydrv.sys - ok
      21:08:49.0247 0x1cd4 [ 047244823B2EA707E1F6076CA20DEF90, FEC862FA755A2D94306C774E9AE1E79334E5BB31992B78B0DA E8DA41C14DC839 ] C:\Windows\System32\drivers\mbae64.sys
      21:08:49.0247 0x1cd4 C:\Windows\System32\drivers\mbae64.sys - ok
      21:08:49.0262 0x1cd4 [ 39A0F688628FAFBE8A2D742F1372FF06, F1529C24AC1DD87339562F2C08E5752A174FA0A357617084A8 3D8CF67C5DC795 ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
      21:08:49.0262 0x1cd4 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys - ok
      21:08:49.0262 0x1cd4 [ 9F8348FB4F51EC373F5AE1812756D0EE, AE9371A3749D33C7FDF753D8D46BF60E1EADC819517CE0C477 ADE8EC3BAAEDEE ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
      21:08:49.0262 0x1cd4 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys - ok
      21:08:49.0262 0x1cd4 [ 0D1D392ED2597F295956D058D33BD7C3, 2F7FE5A06D880F9E2A46C9803DD249DC40C2898C04E946D14E 7EECCCC9F2B24F ] C:\Windows\System32\drivers\dfsc.sys
      21:08:49.0262 0x1cd4 C:\Windows\System32\drivers\dfsc.sys - ok
      21:08:49.0262 0x1cd4 [ 039B5A8CBD5C75D1C46DF15F7C74D136, A5C8A41F2D406D37E147939F2058373ED091BFCC00CA7E829F 887638CD3A2F64 ] C:\Windows\System32\drivers\dam.sys
      21:08:49.0262 0x1cd4 C:\Windows\System32\drivers\dam.sys - ok
      21:08:49.0262 0x1cd4 [ CE27F2268497E57A94A48F8D1B47A1B6, 459A2A5C7E1CA27E720AFA95B342CDFD52224467DC4FC54AF8 70BA5781643F88 ] C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\BASHDefs \20170105.001\BHDrvx64.sys
      21:08:49.0262 0x1cd4 C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\BASHDefs \20170105.001\BHDrvx64.sys - ok
      21:08:49.0262 0x1cd4 [ 23522E5D581F7722B1B5B86737CAE39C, FB81ABD304376A1E87B65F5E1B34477B628CEDB2091C5D754D E97464B6050C5B ] C:\Windows\System32\drivers\ahcache.sys
      21:08:49.0262 0x1cd4 C:\Windows\System32\drivers\ahcache.sys - ok
      21:08:49.0278 0x1cd4 [ ED6314D9982A96A73C95BD634C7FAE66, 034BD8BAE6CC854750DCCDDE59586E0914D87D20448915587C FD2B5537069CAC ] C:\Windows\System32\drivers\KMDFVirtualKbd.sys
      21:08:49.0278 0x1cd4 C:\Windows\System32\drivers\KMDFVirtualKbd.sys - ok
      21:08:49.0278 0x1cd4 [ 3FA9FDECDF704C2622FB81E34BDF0D8E, 38DD3F304BE5B233DF9393C32C3CD4D6B1D0B511C3C3C34C61 4018E47D814362 ] C:\Windows\System32\drivers\SynTP.sys
      21:08:49.0278 0x1cd4 C:\Windows\System32\drivers\SynTP.sys - ok
      21:08:49.0278 0x1cd4 [ B5B9F9405F70A139762215EC329DAAB1, C9340599718F075B2BFBB00A6F4A45586C1AFF0B2D4B399D18 3E2C12059487C2 ] C:\Windows\System32\drivers\usbd.sys
      21:08:49.0278 0x1cd4 C:\Windows\System32\drivers\usbd.sys - ok
      21:08:49.0278 0x1cd4 [ 55366CB9F41F3112DE634CDB3116E563, D1A9E386575D30187269FAF7B38D5F0057997BA568EA7945D9 B225D9B0733F05 ] C:\Windows\System32\smss.exe
      21:08:49.0278 0x1cd4 C:\Windows\System32\smss.exe - ok
      21:08:49.0278 0x1cd4 [ 210808437570BDDEE71A43535E3A2D30, EF5DE6EE4FF58F44CDE4D4E7F298ABBC9086EC05CC3AE49030 60DA878115AC1E ] C:\Windows\System32\drivers\kbdclass.sys
      21:08:49.0278 0x1cd4 C:\Windows\System32\drivers\kbdclass.sys - ok
      21:08:49.0294 0x1cd4 [ 45198B71B548B113A18ACD0D9DF7F686, 5E0996397DCA922FC3D7CC033AFD36DF35A79CA6221A40F4EA 568C4C8C615168 ] C:\Windows\System32\ntdll.dll
      21:08:49.0294 0x1cd4 C:\Windows\System32\ntdll.dll - ok
      21:08:49.0294 0x1cd4 [ 34C935AF2A414572B412B3556586D783, 912981B88B0796576ECCD5EBE0C4728EC02D5D6A96B039447D CBA59B2583F25E ] C:\Windows\System32\DriverStore\FileRepository\com positebus.inf_amd64_a140581a8f8b58b7\CompositeBus. sys
      21:08:49.0294 0x1cd4 C:\Windows\System32\DriverStore\FileRepository\com positebus.inf_amd64_a140581a8f8b58b7\CompositeBus. sys - ok
      21:08:49.0294 0x1cd4 [ 813BA3EB2CE038F2A5382DDD75CAD60B, 99FA444027CAC247B54317730D54AB0C4C000AE076B97E4747 0FDA9834594312 ] C:\Windows\System32\drivers\kdnic.sys
      21:08:49.0294 0x1cd4 C:\Windows\System32\drivers\kdnic.sys - ok
      21:08:49.0294 0x1cd4 [ DC460AAA18CA2342FBBFB2DF9B044472, 14D45E059C596AE97506D26705F248CA1C2269160B31A60341 060E8A93146CBD ] C:\Windows\System32\drivers\umbus.sys
      21:08:49.0294 0x1cd4 C:\Windows\System32\drivers\umbus.sys - ok
      21:08:49.0294 0x1cd4 [ D30CE166441E5AF69DEF33D36C232D4C, D28D37734F5A0BDEE3452BEA6EA45BEB64E3A6E5819BB59A7C FC5DA3BAE56E47 ] C:\Windows\System32\drivers\igdkmd64.sys
      21:08:49.0294 0x1cd4 C:\Windows\System32\drivers\igdkmd64.sys - ok
      21:08:49.0294 0x1cd4 [ E1465FF9B893591BC77BF4FB1F53FE5A, 74E0C0AC879E29F224DFD69C8B779561D4D27749CDE50512B4 E44361D8D9646B ] C:\Windows\System32\drivers\ks.sys
      21:08:49.0294 0x1cd4 C:\Windows\System32\drivers\ks.sys - ok
      21:08:49.0309 0x1cd4 [ ACC5518651190FA27C0FDC046A3AC22F, 90E6632FA6FF67FFE4E4AA0A8C175D881D072C07E3A63694D0 EB463BED6060BC ] C:\Windows\System32\drivers\drmk.sys
      21:08:49.0309 0x1cd4 C:\Windows\System32\drivers\drmk.sys - ok
      21:08:49.0309 0x1cd4 [ 10E3515FE5DBA6656FA62C29342EC4A1, 2051F10F74ED712B1766EB61E87FADE25AB3D0970BABFD3206 00D1B0D6377F26 ] C:\Windows\System32\drivers\hdaudbus.sys
      21:08:49.0309 0x1cd4 C:\Windows\System32\drivers\hdaudbus.sys - ok
      21:08:49.0309 0x1cd4 [ 90974673B711A6EDB92E8495096AFF4D, 74D17A9911E0188730002478337D517F39F898D99A55562D55 64F564BFBE9D1A ] C:\Windows\System32\drivers\portcls.sys
      21:08:49.0309 0x1cd4 C:\Windows\System32\drivers\portcls.sys - ok
      21:08:49.0309 0x1cd4 [ 95BCCEFBC40D06484CF16144FE79B8A5, 8ABA73C5FFEDD319FB96B807AD08716698E557522478DF1A2C 5D662675636AE0 ] C:\Windows\System32\drivers\USBXHCI.SYS
      21:08:49.0309 0x1cd4 C:\Windows\System32\drivers\USBXHCI.SYS - ok
      21:08:49.0309 0x1cd4 [ 08A9E3AD29B215484FBB68CDC175DF3A, 3EFFF99C3BC4A1454E3D2B5177AE587ED3041AB4CE2A95BA7E 28A2124E38E1E5 ] C:\Windows\System32\drivers\Ucx01000.sys
      21:08:49.0309 0x1cd4 C:\Windows\System32\drivers\Ucx01000.sys - ok
      21:08:49.0309 0x1cd4 [ 1BC9159CF58BABD89419072EA180A8F6, 6C9AB779C2355A341800A8F93AAAF9B19FAFF444CD6A7BD27C 63D53F379A75EF ] C:\Windows\System32\drivers\TeeDriverx64.sys
      21:08:49.0309 0x1cd4 C:\Windows\System32\drivers\TeeDriverx64.sys - ok
      21:08:49.0325 0x1cd4 [ 1F91B1E5FD41BDC3DF8AFFB81C8AA277, B8CB13863C1F0C589C008E191A393DF241F3067DD7CADE02B3 B7D36B28BBA2ED ] C:\Windows\System32\drivers\Netwbw02.sys
      21:08:49.0325 0x1cd4 C:\Windows\System32\drivers\Netwbw02.sys - ok
      21:08:49.0325 0x1cd4 [ 607639716E9DB1CEF4E18B5B229293B4, 1D997177093F907EFE8A04AD10443BB9C355C0D7657DBD449E 7EE7FCABC3ECBC ] C:\Windows\System32\drivers\vwifibus.sys
      21:08:49.0325 0x1cd4 C:\Windows\System32\drivers\vwifibus.sys - ok
      21:08:49.0325 0x1cd4 [ CF0F908B50CD8FB12B7B69DA56A44681, F35FFF3F6BFBC3B2452C5E0A63D94575236EEB49665BE0FBBB 26ADAF189F777E ] C:\Windows\System32\drivers\rt640x64.sys
      21:08:49.0325 0x1cd4 C:\Windows\System32\drivers\rt640x64.sys - ok
      21:08:49.0325 0x1cd4 [ 65B6EE1E8C34AC7AA24E89047A20A2A2, 2038D5FB39C211197A3F6654BAC99458128D61A0120706BF20 60A00628A7FC56 ] C:\Windows\System32\drivers\nvlddmkm.sys
      21:08:49.0325 0x1cd4 C:\Windows\System32\drivers\nvlddmkm.sys - ok
      21:08:49.0325 0x1cd4 [ F83D2250256203AC5DA5E8601C1AFDD7, AC0D90E2DB3051798B9D287CF3D0E92FED4000822E65A82775 A29CF896B76F04 ] C:\Windows\System32\drivers\usbehci.sys
      21:08:49.0325 0x1cd4 C:\Windows\System32\drivers\usbehci.sys - ok
      21:08:49.0341 0x1cd4 [ FD26F9662629B1AC4536EE681975F8D4, A50E0A35E6155354FF95307DAA572140BF9564C8F2328EBF58 AB0FCE2C27A55C ] C:\Windows\System32\drivers\usbport.sys
      21:08:49.0341 0x1cd4 C:\Windows\System32\drivers\usbport.sys - ok
      21:08:49.0341 0x1cd4 [ 59370B2D44382A7BBC597FA6C93F535C, E514B533D771F00AB83F3FB4335272B4555B50B8DC89C3E555 A691B96D43CF6E ] C:\Windows\System32\drivers\battc.sys
      21:08:49.0341 0x1cd4 C:\Windows\System32\drivers\battc.sys - ok
      21:08:49.0341 0x1cd4 [ 429623E266EF067A44E8CF148E9DFB9B, A48AA85ACC52C7AD73DB2D6148B3F9FB5EAC33C8F8C5BB6D7D 0A9D84B7C08E11 ] C:\Windows\System32\drivers\CmBatt.sys
      21:08:49.0341 0x1cd4 C:\Windows\System32\drivers\CmBatt.sys - ok
      21:08:49.0341 0x1cd4 [ E5D1706CE2BFC9127655B194839BEDB5, 742AB5BF63314DF6156523039E442F6F174FF2A57C5FA31835 E368D2C5485C63 ] C:\Windows\System32\drivers\AcpiVpc.sys
      21:08:49.0341 0x1cd4 C:\Windows\System32\drivers\AcpiVpc.sys - ok
      21:08:49.0341 0x1cd4 [ B54B30992620C97230013A74461C8517, CAF09BDCDD6DE2A39CB8AE2C65E6F8FE12D8E93D84BBEF6C6A 98F872BF54A4E3 ] C:\Windows\System32\drivers\i8042prt.sys
      21:08:49.0341 0x1cd4 C:\Windows\System32\drivers\i8042prt.sys - ok
      21:08:49.0341 0x1cd4 [ 27A07B2FB2E3057DA8DAEA4F25D843C7, 09D2B39E6B9AAEC879E5871DD6BCFF2AEF0B894F3B44649665 A685F8B3CA6F27 ] C:\Windows\System32\drivers\mouclass.sys
      21:08:49.0341 0x1cd4 C:\Windows\System32\drivers\mouclass.sys - ok
      21:08:49.0356 0x1cd4 [ 7EE0F7F86557FCB8A70E85A51D28224D, EFB0A6F891DF9B30AA5AD14614D4E87804213429442B0320C5 D4970588AD8269 ] C:\Windows\System32\drivers\Smb_driver_Intel.sys
      21:08:49.0356 0x1cd4 C:\Windows\System32\drivers\Smb_driver_Intel.sys - ok
      21:08:49.0356 0x1cd4 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0 D35748CFA605C0 ] C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
      21:08:49.0356 0x1cd4 C:\Windows\System32\drivers\iaLPSSi_GPIO.sys - ok
      21:08:49.0356 0x1cd4 [ DDD8A8CDDC7F13EF57D1DAAE71865936, 9D472A8689F72F24D40D5B94849690F53C67849FDF6162A94E F4FB330A3DA566 ] C:\Windows\System32\drivers\msgpioclx.sys
      21:08:49.0356 0x1cd4 C:\Windows\System32\drivers\msgpioclx.sys - ok
      21:08:49.0356 0x1cd4 [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6 BF4E637A719547 ] C:\Windows\System32\drivers\iaLPSSi_I2C.sys
      21:08:49.0356 0x1cd4 C:\Windows\System32\drivers\iaLPSSi_I2C.sys - ok
      21:08:49.0372 0x1cd4 [ E03264C4C25B568F92ED1656AD541E64, D42942BFFBC7213D204FAF84F4FE015FC23A6ACB29B5E75283 4EDBC17A3AC20D ] C:\Windows\System32\drivers\SpbCx.sys
      21:08:49.0372 0x1cd4 C:\Windows\System32\drivers\SpbCx.sys - ok
      21:08:49.0372 0x1cd4 [ 6F4F4F5A007D1710BD76FB311DA97C07, FC0FEA4364F6BA4E31DBC82735D09D429CA3BE9AFCFF5D5E12 63D8B27FC2CE3E ] C:\Windows\System32\drivers\wmiacpi.sys
      21:08:49.0372 0x1cd4 C:\Windows\System32\drivers\wmiacpi.sys - ok
      21:08:49.0372 0x1cd4 [ 2A48DA39542636DB0FA3BA915385D1B3, 6CA0916F5F4B1E81AE6A6233276320599BFA7C129267177703 E3BB6468FB4683 ] C:\Windows\System32\drivers\intelppm.sys
      21:08:49.0372 0x1cd4 C:\Windows\System32\drivers\intelppm.sys - ok
      21:08:49.0372 0x1cd4 [ FE5F656D6B35089DA39112E74EC6A85A, 5D81EE63998232A5B36DE47FE15B9D04D5BD02234CA133A246 2AECA8C60A22ED ] C:\Windows\System32\drivers\acpipagr.sys
      21:08:49.0372 0x1cd4 C:\Windows\System32\drivers\acpipagr.sys - ok
      21:08:49.0372 0x1cd4 [ B918E40FAA9CD118CCA4AD388B748C98, 4B539B7B656F02C5E5BAEE52A677757B05CC11C5500D619850 A564C28FAB8115 ] C:\Windows\System32\drivers\uefi.sys
      21:08:49.0372 0x1cd4 C:\Windows\System32\drivers\uefi.sys - ok
      21:08:49.0372 0x1cd4 [ 1D54A108BFAD4ED568E393518769F516, D0BE8343784DDD2B7CADFC85779CC72C78D49601E9C746D13D 8134CE38DD920F ] C:\Windows\System32\drivers\nvvad64v.sys
      21:08:49.0372 0x1cd4 C:\Windows\System32\drivers\nvvad64v.sys - ok
      21:08:49.0387 0x1cd4 [ 4ED115CD1A1099705F56B5E0FFF97CC6, 9CC49DF2CD6AAAE405BA661D13EFC1E05111D1DE3D1E50C39C 425AF1F075610B ] C:\Windows\System32\drivers\ksthunk.sys
      21:08:49.0387 0x1cd4 C:\Windows\System32\drivers\ksthunk.sys - ok
      21:08:49.0387 0x1cd4 [ 23E3E79A244E63F416A89640359C78B3, 721EBE47CF5617762DA16E0450B5B2DA857F9B04EA3D167770 E2A8CA9D31C77C ] C:\Windows\System32\drivers\KMDFVirtualMouse.sys
      21:08:49.0387 0x1cd4 C:\Windows\System32\drivers\KMDFVirtualMouse.sys - ok
      21:08:49.0387 0x1cd4 [ 7340104C2BF2F126714F7CDE85E63610, 45B64EC6F3A4C43F7D74806789067658C6EF0D44D36B841F4D 26E1EBC95AF66C ] C:\Windows\System32\drivers\NdisVirtualBus.sys
      21:08:49.0387 0x1cd4 C:\Windows\System32\drivers\NdisVirtualBus.sys - ok
      21:08:49.0387 0x1cd4 [ CEFAB17FD7DFCFA515626C306262E89D, 9D2B728DDD478580987E2DB7AA4DA81D77F3362F536AC1CADE D20EB6ECEBB55D ] C:\Windows\System32\drivers\WUDFRd.sys
      21:08:49.0387 0x1cd4 C:\Windows\System32\drivers\WUDFRd.sys - ok
      21:08:49.0387 0x1cd4 [ 505E0C40B5D0ADDCBB414640F59BD2E0, DF4B5E65FE6FF2224F298A2A2FAC9B648C082DFF8463148633 647580A9FAD34D ] C:\Windows\System32\drivers\swenum.sys
      21:08:49.0387 0x1cd4 C:\Windows\System32\drivers\swenum.sys - ok
      21:08:49.0387 0x1cd4 [ 79A415E6FA915EFC00297DAB16EC2635, 47BB49F6D756214193D38A4AB182B541AAC180381C3111FF7F 9B0AD4C44D8733 ] C:\Windows\System32\drivers\rdpbus.sys
      21:08:49.0403 0x1cd4 C:\Windows\System32\drivers\rdpbus.sys - ok
      21:08:49.0403 0x1cd4 [ 7FFD26742321919590ED77FCA556D65F, F7FAB63C36F8519F5A7B9091C507F3CB580C390322FAF9155C CE7F66C965B968 ] C:\Windows\System32\drivers\usbhub.sys
      21:08:49.0403 0x1cd4 C:\Windows\System32\drivers\usbhub.sys - ok
      21:08:49.0403 0x1cd4 [ 75F82406DF455D812101146EE4EB6FCD, 771D24DFF69097C1181C46D635A6CF2FDBE3EBC81BA2C156F5 71875C23F11676 ] C:\Windows\System32\drivers\IntcDAud.sys
      21:08:49.0403 0x1cd4 C:\Windows\System32\drivers\IntcDAud.sys - ok
      21:08:49.0403 0x1cd4 [ 7A749B2863B5561BE34B39E8E249AD8F, E5B67DFAF5407007FD0CC408D6B4BA19DF59584819FC715E9F 9E0FBF3EA00AAB ] C:\Windows\System32\drivers\USBHUB3.SYS
      21:08:49.0403 0x1cd4 C:\Windows\System32\drivers\USBHUB3.SYS - ok
      21:08:49.0403 0x1cd4 [ 41BED4BBBDE919441824E85B8B9BE941, 1442F8B8047C411A81D6AC97A209B9D6EB84947B2A65847873 875AF8B2758121 ] C:\Windows\System32\drivers\RTKVHD64.sys
      21:08:49.0403 0x1cd4 C:\Windows\System32\drivers\RTKVHD64.sys - ok
      21:08:49.0403 0x1cd4 [ D24355488A2D4D2323518EC1AC7A6D9E, ED2176A2093726087EDDA25B86E9CDD4BA35F4E748E3A6DE0B 15C4C97646B5C7 ] C:\Windows\System32\drivers\hidi2c.sys
      21:08:49.0403 0x1cd4 C:\Windows\System32\drivers\hidi2c.sys - ok
      21:08:49.0419 0x1cd4 [ 5157325B17E455D9DF7AFBB4B608E78A, BB5B7F1E0806D46F731C287319BD146A1186AEE3A31D7247D3 277ECC36A2D509 ] C:\Windows\System32\drivers\hidclass.sys
      21:08:49.0419 0x1cd4 C:\Windows\System32\drivers\hidclass.sys - ok
      21:08:49.0419 0x1cd4 [ B9A33B9298BAFCE11E9823B1056D5BB0, 064BF2845E8A00D213F7CC0EDEEA9DAEDDCB3A96C2DFAC6428 7F751F1858CF14 ] C:\Windows\System32\drivers\hidparse.sys
      21:08:49.0419 0x1cd4 C:\Windows\System32\drivers\hidparse.sys - ok
      21:08:49.0419 0x1cd4 [ FD870F6968A145E4D2BA8A8842686B03, 34B8F601F3B5E42B4D0A41E2AF7DB4EB4E5B627DA8DA9A2A2D 46B153AF23AEB1 ] C:\Windows\System32\drivers\mshidkmdf.sys
      21:08:49.0419 0x1cd4 C:\Windows\System32\drivers\mshidkmdf.sys - ok
      21:08:49.0419 0x1cd4 [ C87E32B90F085970D9637FBAD45EF6FE, C180EACD2EE479277DA5DBF39E43B428BD7945141B2451CB39 46B0C1E495E76F ] C:\Windows\System32\drivers\usbccgp.sys
      21:08:49.0419 0x1cd4 C:\Windows\System32\drivers\usbccgp.sys - ok
      21:08:49.0419 0x1cd4 [ D8536CB438CC4CCDAE047B768EED22B2, 4F666BFA3554F9ACA6B9D436BFA64474D5F30FB3E78F4E6606 8CCDF283D9867F ] C:\Windows\System32\drivers\hidusb.sys
      21:08:49.0419 0x1cd4 C:\Windows\System32\drivers\hidusb.sys - ok
      21:08:49.0434 0x1cd4 [ 0B779E9FC426CA2268D28181FA6C222F, 83292023A688C3044D096F22242EB954B7F7511BE8341D45FF 0AFBD9CB9BCB4E ] C:\Windows\System32\drivers\kbdhid.sys
      21:08:49.0434 0x1cd4 C:\Windows\System32\drivers\kbdhid.sys - ok
      21:08:49.0434 0x1cd4 [ 7BD6E7F7C9001AB21B8362CFFEE80B25, C470C3363EEF3A60409A5934988BFB9B72AE7C2BB63CC2C2D0 06D7EB1C797F6A ] C:\Windows\System32\drivers\mouhid.sys
      21:08:49.0434 0x1cd4 C:\Windows\System32\drivers\mouhid.sys - ok
      21:08:49.0434 0x1cd4 [ 470A04D92087136F147A2C6F31399906, 21D6D440D72FB59165E4C9241740BF6B344BCFDDD379CAC34C EB5B183FCFCF86 ] C:\Windows\System32\drivers\ibtusb.sys
      21:08:49.0434 0x1cd4 C:\Windows\System32\drivers\ibtusb.sys - ok
      21:08:49.0434 0x1cd4 [ 851ED52AE3E62CD5374BD4BBFF7A9DAB, 381281CB7D8FC4026092330B06E24BC84EEF79EE3C97E21900 D950D7D9AB2FC3 ] C:\Windows\System32\drivers\bthport.sys
      21:08:49.0434 0x1cd4 C:\Windows\System32\drivers\bthport.sys - ok
      21:08:49.0434 0x1cd4 [ DC5955E589C55E2313D69B64E1A183F3, 06D703246D0813DE53D62885C8B7381135783673FF4BDDD5CC 38FEB54901BB76 ] C:\Windows\System32\drivers\BTHUSB.SYS
      21:08:49.0434 0x1cd4 C:\Windows\System32\drivers\BTHUSB.SYS - ok
      21:08:49.0434 0x1cd4 [ 4066535B4A326CFCD98850096468D0F0, 5EE73D822C5D08D74CF4CEFF36D577810C9F824E45607BAF1A 24C4A7DFD151FC ] C:\Windows\System32\autochk.exe
      21:08:49.0434 0x1cd4 C:\Windows\System32\autochk.exe - ok
      21:08:49.0450 0x1cd4 [ 44FD469A4F12C2092CAFE37ED1D44F60, B9001FACDADB2010206EC6DDF75B57BFC88A1C56F0E52DDC3C EC2D2F356A4835 ] C:\Windows\System32\drivers\rtsuvc.sys
      21:08:49.0450 0x1cd4 C:\Windows\System32\drivers\rtsuvc.sys - ok
      21:08:49.0450 0x1cd4 [ 0AB691736D4D4029444AF62DE59CFD37, C1C22EFBF67331B87AB261BBF9813009257437BA02F728EC2D FA1A49ECC5FABF ] C:\Windows\System32\drivers\BthLEEnum.sys
      21:08:49.0450 0x1cd4 C:\Windows\System32\drivers\BthLEEnum.sys - ok
      21:08:49.0450 0x1cd4 [ E82F3B1918C6A5FE6EB761CDF1E772AF, 0C993FCB7BFD6E01B70A1821E0DEAFA2CB241AF8C2E6D4CC12 0F59C1B5F6FF5F ] C:\Windows\System32\drivers\rfcomm.sys
      21:08:49.0450 0x1cd4 C:\Windows\System32\drivers\rfcomm.sys - ok
      21:08:49.0450 0x1cd4 [ 77630A51FAF6A07922FEE835F4DED8F6, E096A9DC12885FD19575346A9693A66D0DDFF96C3155AD2040 F2BF4249D1D609 ] C:\Windows\System32\drivers\bthenum.sys
      21:08:49.0450 0x1cd4 C:\Windows\System32\drivers\bthenum.sys - ok
      21:08:49.0450 0x1cd4 [ 224BA1CB1F3C702F0D001D2AFC9793B1, F139F6F78C716E1167E16530AE31E4A26C2A69467BCB08A9A5 2A101B31DF7771 ] C:\Windows\System32\drivers\bthpan.sys
      21:08:49.0450 0x1cd4 C:\Windows\System32\drivers\bthpan.sys - ok
      21:08:49.0466 0x1cd4 [ A3B00F3A37AA5375A03294BC78D07C7A, 3ED18FF925D7215AF6F9D3AD778CED6FE6C9F89D0471AF449C 5DF81D9A1F96C2 ] C:\Windows\System32\drivers\BtaMPM.sys
      21:08:49.0466 0x1cd4 C:\Windows\System32\drivers\BtaMPM.sys - ok
      21:08:49.0466 0x1cd4 [ A70E09FD082BFA67BE085D41C8B6A85F, 1711163E7BE0DE83701A0293BF5D4D37AAD124D88F6FFA3FCC 6CF0F3A7D3B78D ] C:\Windows\System32\drivers\BthA2DP.sys
      21:08:49.0466 0x1cd4 C:\Windows\System32\drivers\BthA2DP.sys - ok
      21:08:49.0466 0x1cd4 [ 722036C26D2C4E50EC2A2EC5FD678846, 999468038AE01F0FF6881F4B2A2CB67BC636641188E95F1072 9E08ADBC3CB3DE ] C:\Windows\System32\drivers\BthAvrcpTg.sys
      21:08:49.0466 0x1cd4 C:\Windows\System32\drivers\BthAvrcpTg.sys - ok
      21:08:49.0466 0x1cd4 [ C2E31BE025D46D189E38DD1EDF07837A, 656528DCAAAF485EC57EE5C3021E96736634DE3B9C39CBCD27 28E055ABD4C0A5 ] C:\Windows\System32\drivers\bthhfenum.sys
      21:08:49.0466 0x1cd4 C:\Windows\System32\drivers\bthhfenum.sys - ok
      21:08:49.0466 0x1cd4 [ 20C63A9CC92CEA8D284C6EA36FED68DC, DA7669CCCA6838269297DD45EDB48149898B3E14648B5DB3B9 3AF82A3279B411 ] C:\Windows\System32\drivers\BthHfAud.sys
      21:08:49.0466 0x1cd4 C:\Windows\System32\drivers\BthHfAud.sys - ok
      21:08:49.0466 0x1cd4 [ F7CD605FC0B0B22F3F6F247595E3A655, 1CD9140DE5415DDBEACD8667E63E5C95FD64D693B56302A047 4E693E578BEAB0 ] C:\Windows\System32\drivers\BthhfHid.sys
      21:08:49.0466 0x1cd4 C:\Windows\System32\drivers\BthhfHid.sys - ok
      21:08:49.0481 0x1cd4 [ FA918EC296EB410FF02867D008D02421, 23D164A24CB0D212778FA9592A046B6BA1F3628003E0418174 4A1F891B5B3E5A ] C:\Windows\System32\drivers\fastfat.sys
      21:08:49.0481 0x1cd4 C:\Windows\System32\drivers\fastfat.sys - ok
      21:08:49.0481 0x1cd4 [ 93905AF6B4D4FBBA44CF644B9B1DE877, 5CF109B25528235BB38412909088B3450586651705ED1FC57F 6DBDF73F364D31 ] C:\Windows\System32\wpbbin.exe
      21:08:49.0481 0x1cd4 C:\Windows\System32\wpbbin.exe - ok
      21:08:49.0481 0x1cd4 [ AA3B16977532312A378B532DB494B653, 4A3C6A3682BB5D63D20DB03B37255B9B0769F95274B48CFABE 21CC2909FD5373 ] C:\Windows\SysWOW64\ntdll.dll
      21:08:49.0481 0x1cd4 C:\Windows\SysWOW64\ntdll.dll - ok
      21:08:49.0481 0x1cd4 [ 43A985A7D14408432BDF7CC59D4E5C7A, B24892906276A952F7D274FDD9A15DEF78C990F04726361449 E918884AF64EB8 ] C:\Windows\System32\wow64.dll
      21:08:49.0481 0x1cd4 C:\Windows\System32\wow64.dll - ok
      21:08:49.0481 0x1cd4 [ 318A5D3840A1FE441E7205C6AA9FC682, AE92A08FC57D62035ED6A73A0F3DDA633707D41BFE39A3F558 CFD96ABA115188 ] C:\Windows\System32\wow64win.dll
      21:08:49.0481 0x1cd4 C:\Windows\System32\wow64win.dll - ok
      21:08:49.0497 0x1cd4 [ F409299BC74719EAE3A22D4FBC3A7C43, AA9C5C2786ED3D94C274CBEAF387989A699F6FEEA9F91749FE D7606A8CA3AB10 ] C:\Windows\System32\wow64cpu.dll
      21:08:49.0497 0x1cd4 C:\Windows\System32\wow64cpu.dll - ok
      21:08:49.0497 0x1cd4 [ CBA63D4B9F8A9117A59703EF18DABC53, 63E2154C77B0891416E16BFABD4B2B15CFEB41BFF74C068F76 C70AB4480A4F41 ] C:\Windows\System32\comdlg32.dll
      21:08:49.0497 0x1cd4 C:\Windows\System32\comdlg32.dll - ok
      21:08:49.0497 0x1cd4 [ 1AF6CD8B7CE4A852F67AA98C71AA1D26, EF0DE008500A8C9C7908383AF11AE55845EBBE28C96C013EA7 20950BA89D3D28 ] C:\Windows\System32\psapi.dll
      21:08:49.0497 0x1cd4 C:\Windows\System32\psapi.dll - ok
      21:08:49.0497 0x1cd4 [ CB7DFF20B1B52442F365A786A7687F3C, C44BB3EAA29952E11DB88D33C96BC13ECAFCA737CBAAB14C89 AFA3E2D0781235 ] C:\Windows\System32\shlwapi.dll
      21:08:49.0497 0x1cd4 C:\Windows\System32\shlwapi.dll - ok
      21:08:49.0497 0x1cd4 [ FCC7B4C5CAD998DC936251247AB22C9A, 69224F483657589FB4B2102EC001BEE5F6E1488E87786B2E65 2B5BC6236684B6 ] C:\Windows\System32\ole32.dll
      21:08:49.0497 0x1cd4 C:\Windows\System32\ole32.dll - ok
      21:08:49.0497 0x1cd4 [ 94EF9321C287FC1B179419E662996A41, 555B434EC9E8628820905A8F1D7BC7F8EE99C6D44A01892ADD 16E39E6B675A0D ] C:\Windows\System32\msvcrt.dll
      21:08:49.0497 0x1cd4 C:\Windows\System32\msvcrt.dll - ok
      21:08:49.0512 0x1cd4 [ 0DEC52346E0EB2FEB078FEB0384CDE1A, C6744DD94DFA36D68DA770514EFA0D82C5EF1EB1EB3645FE12 DC12479F631CCB ] C:\Windows\System32\oleaut32.dll
      21:08:49.0512 0x1cd4 C:\Windows\System32\oleaut32.dll - ok
      21:08:49.0512 0x1cd4 [ 7E1BC444E472A0EB1B6C20F658F2CE8A, 22C7C7AFD1DFD82801D8276522068CAD8580199FA6B31EF394 3F29FDCC138ECB ] C:\Windows\System32\coml2.dll
      21:08:49.0512 0x1cd4 C:\Windows\System32\coml2.dll - ok
      21:08:49.0512 0x1cd4 [ 6955067712F2F4752CA12192B08EF860, E02A3B57EA8B393408FF782866A1D342DD8C6B5F5925BA5279 81DBB21B6A4080 ] C:\Windows\System32\kernel32.dll
      21:08:49.0512 0x1cd4 C:\Windows\System32\kernel32.dll - ok
      21:08:49.0512 0x1cd4 [ F4F9339F07184FD7705A8F7B280F1A65, F2DCBA0A51CFCC245B523AD63D6FADE1840292D4FD3B14E61A 5F2FAF38C6E24F ] C:\Windows\System32\nsi.dll
      21:08:49.0512 0x1cd4 C:\Windows\System32\nsi.dll - ok
      21:08:49.0512 0x1cd4 [ A8C01EC1C852180C1471821600A7EF99, 93C6EF8DB4B4F8A91F0D5C6322DE2FB6DC46B9763253B599AA 634B0A681E7F1B ] C:\Windows\System32\setupapi.dll
      21:08:49.0512 0x1cd4 C:\Windows\System32\setupapi.dll - ok
      21:08:49.0528 0x1cd4 [ 47EC861F0FEBDB9B871042284A788F0B, 68B5714DC1469CD2AD39AA85057084E12DA3B718EDC4AD7733 658F8D9E99050F ] C:\Windows\System32\gdi32.dll
      21:08:49.0528 0x1cd4 C:\Windows\System32\gdi32.dll - ok
      21:08:49.0528 0x1cd4 [ 65930A2C537774A8CBB0A1BE20266D51, 2879DECC03521C385C5D29381B002E7B70BB448BC2787D9C08 174592C7D80BC8 ] C:\Windows\System32\normaliz.dll
      21:08:49.0528 0x1cd4 C:\Windows\System32\normaliz.dll - ok
      21:08:49.0528 0x1cd4 [ 1A285D1020E3D6FC310A1D68FC8CBA9C, 3CF79471BE2C6227A967B8C0398CF2E020DE4DD54AC448C63F 1ED41C4E02CE13 ] C:\Windows\System32\GdiPlus.dll
      21:08:49.0528 0x1cd4 C:\Windows\System32\GdiPlus.dll - ok
      21:08:49.0528 0x1cd4 [ BD8F10CB5BE1A1972483F2FFB8DD06AA, 905E5C8B62354D6C67ED86F1C280D46EECB78F789796AE09D0 0AB788ED30BCA2 ] C:\Windows\System32\rpcrt4.dll
      21:08:49.0528 0x1cd4 C:\Windows\System32\rpcrt4.dll - ok
      21:08:49.0528 0x1cd4 [ E1024CF2E35DD3467F52BC83F7FEDA3F, 59C87761AD509BD096C2F35257C2370FB94B95160CB63FB9E6 6DFD8210AB002A ] C:\Windows\System32\imm32.dll
      21:08:49.0528 0x1cd4 C:\Windows\System32\imm32.dll - ok
      21:08:49.0528 0x1cd4 [ F20DD184C8DC1BEF7863BEE44BB3D09F, 220195963FA77DEFC11F95C18ADB4401F6831E59BD84DEEBED 4C653AA5BC3FBE ] C:\Windows\System32\msctf.dll
      21:08:49.0528 0x1cd4 C:\Windows\System32\msctf.dll - ok
      21:08:49.0544 0x1cd4 [ BB70217AED0E89C3737D48BAA0A401DE, C7628EB607F3A74BF7312DB08DEA344136BC2D982EE0355522 3AF0DD660932CF ] C:\Windows\System32\advapi32.dll
      21:08:49.0544 0x1cd4 C:\Windows\System32\advapi32.dll - ok
      21:08:49.0544 0x1cd4 [ B50F4C3A4DE252EA5E7656A4438F0792, A3007CBBFC4230E089250B640538FE0CED16A17BDB4A965A6D 4E7BA31548F186 ] C:\Windows\System32\combase.dll
      21:08:49.0544 0x1cd4 C:\Windows\System32\combase.dll - ok
      21:08:49.0544 0x1cd4 [ EC2A9DCB0033B575F96E51718747642C, A78284317D3529371291712772C8CA0A7DC01B7CEF47EC079E CC2FC76ABA6547 ] C:\Windows\System32\clbcatq.dll
      21:08:49.0544 0x1cd4 C:\Windows\System32\clbcatq.dll - ok
      21:08:49.0544 0x1cd4 [ 44BEC97BD0CED39125993D75BE728D80, DD7DA5BED50361DEB201FF142D601A63EE36F7E87891B7043B 45EE9F72793D7C ] C:\Windows\System32\lpk.dll
      21:08:49.0544 0x1cd4 C:\Windows\System32\lpk.dll - ok
      21:08:49.0544 0x1cd4 [ 1EA3C747416DF0EEF4F6D0ACF1B0B6EF, 5BF8A2BAAC0892A6BE2B5B0AB886FE41DDCB82D88BACD89F71 67ACC41967A09C ] C:\Windows\System32\Wldap32.dll
      21:08:49.0544 0x1cd4 C:\Windows\System32\Wldap32.dll - ok
      21:08:49.0559 0x1cd4 [ C46EA86BF0E7C96235E9064CBAD6ED26, 1A69E7B04BE6A2FB3AD7D8A6037E4BF3BBDA119D81A3F1337E 80A6551CC352F3 ] C:\Windows\System32\user32.dll
      21:08:49.0559 0x1cd4 C:\Windows\System32\user32.dll - ok
      21:08:49.0559 0x1cd4 [ 5663B6227E56F34041B72CA976DC4F12, 53A83504E5A904001E9331E8C63BBE4416ACB7EFEF226A5DCA B3022932ABBDD0 ] C:\Windows\System32\difxapi.dll
      21:08:49.0559 0x1cd4 C:\Windows\System32\difxapi.dll - ok
      21:08:49.0559 0x1cd4 [ E1C665DC0FD5A7423B0C0F5325A1027F, 8B84BE9335EF640ABAA8E8BBA45C6BC77F2251359D4BCC1572 35CB4BC107AE69 ] C:\Windows\System32\imagehlp.dll
      21:08:49.0559 0x1cd4 C:\Windows\System32\imagehlp.dll - ok
      21:08:49.0559 0x1cd4 [ 19DBA20EA39E641B940156DF8D2E96E2, 7D893A42A660436263DE713987BB1E81D6D38C00460F93206C BB8777C4002C7E ] C:\Windows\System32\ws2_32.dll
      21:08:49.0559 0x1cd4 C:\Windows\System32\ws2_32.dll - ok
      21:08:49.0559 0x1cd4 [ 587F8B85DA3328512DBF396D595DCCCF, BE2BA072E19E2FC1811E645A7FDE811C3FABDF5693A87FE255 397D1F30AFCD64 ] C:\Windows\System32\shell32.dll
      21:08:49.0559 0x1cd4 C:\Windows\System32\shell32.dll - ok
      21:08:49.0559 0x1cd4 [ 613633DB655721B1753AEE43947665EC, AB0F7DCEF2CDDD76AD71D93A2CA27D3173650562522FEE6B8C 0A18BBBED73B78 ] C:\Windows\System32\sechost.dll
      21:08:49.0559 0x1cd4 C:\Windows\System32\sechost.dll - ok
      21:08:49.0575 0x1cd4 [ 77BF2979C1A08EBA43C24FE0B7E547BE, 071E00374806E043A2E78E88C7FDDCE8F5983DE665DF41F3B3 210660BF2EF704 ] C:\Windows\System32\cfgmgr32.dll
      21:08:49.0575 0x1cd4 C:\Windows\System32\cfgmgr32.dll - ok
      21:08:49.0575 0x1cd4 [ D9D6F747EFF5E427D4C3047A65603554, 19318D3867ED97D378D1BC15A990397324A3A49AF829BFC5E3 0E48F4FADD62C1 ] C:\Windows\System32\wintrust.dll
      21:08:49.0575 0x1cd4 C:\Windows\System32\wintrust.dll - ok
      21:08:49.0575 0x1cd4 [ 586A92385CC6ECD699E3DDEC4E85574A, A48700E02020802319AEDF40988F52736CAC3CF35EED3A6721 C61CF975CFF398 ] C:\Windows\System32\msvcp_win.dll
      21:08:49.0575 0x1cd4 C:\Windows\System32\msvcp_win.dll - ok
      21:08:49.0575 0x1cd4 [ 2870D6CF5A4CE83BE7FCBB04324BEECC, 0D7CA6568B64BE6DF7813CD467F5498F42DD1BB97490B2CCAC D9700E8688E450 ] C:\Windows\System32\bcryptprimitives.dll
      21:08:49.0575 0x1cd4 C:\Windows\System32\bcryptprimitives.dll - ok
      21:08:49.0575 0x1cd4 [ 0482CFC6D06935953519340A0D360329, 7AB410C10BE2A2C3D46BCCD878D398DFFBF2116D1AB8A5106C BBE1F9D06931E3 ] C:\Windows\System32\win32u.dll
      21:08:49.0575 0x1cd4 C:\Windows\System32\win32u.dll - ok
      21:08:49.0575 0x1cd4 [ DA842AEF3EED0C980036B5E6A8E51F4F, 4CAFE23867B403314CED188D07C8FC9759F26C9D5220CA7945 5F98A7E148B909 ] C:\Windows\System32\KernelBase.dll
      21:08:49.0575 0x1cd4 C:\Windows\System32\KernelBase.dll - ok
      21:08:49.0591 0x1cd4 [ 1A67F02D6CF159EE2BD0FEAB157F8F89, 5EBBCD6609310F66EF6CC1CC266E947F888A7A453ABABC078D 689210C4DE68AD ] C:\Windows\System32\crypt32.dll
      21:08:49.0591 0x1cd4 C:\Windows\System32\crypt32.dll - ok
      21:08:49.0591 0x1cd4 [ 3968825A109FE7940D5DB648556D756C, 9B8B2A29BA1F39BB74D26CEE3F17FCD05AD21E40EB050E1AC8 552E66F9DC4DC6 ] C:\Windows\System32\windows.storage.dll
      21:08:49.0591 0x1cd4 C:\Windows\System32\windows.storage.dll - ok
      21:08:49.0591 0x1cd4 [ 5DE7ACB69B53ADD389EB8412862346C3, 780B1B52574FAC8A5219E9496D400FA0048618227F3D826663 BAD4D1AD12FCD4 ] C:\Windows\System32\ucrtbase.dll
      21:08:49.0591 0x1cd4 C:\Windows\System32\ucrtbase.dll - ok
      21:08:49.0591 0x1cd4 [ 2488D72D0D1F54F4FC1F96E9D72DDE4D, 9F70B5E20C62DF6910D0363FE2B444A4ADABD1830F04B0D015 39300BFDD5BF7A ] C:\Windows\System32\SHCore.dll
      21:08:49.0591 0x1cd4 C:\Windows\System32\SHCore.dll - ok
      21:08:49.0591 0x1cd4 [ 5BEEB27D8F314D94773FA6568740AE13, D0660DC9EFEF22F4F61EC8EE3770D37AEBE2B3134D2F6E4469 C4105553AB5916 ] C:\Windows\System32\gdi32full.dll
      21:08:49.0591 0x1cd4 C:\Windows\System32\gdi32full.dll - ok
      21:08:49.0606 0x1cd4 [ CB39DAFC8523B601FB569FD6E22BCDEA, 790E605C122524E6D0C52DA640E16600AFE68D80750492AC7F 71D33A288FC047 ] C:\Windows\System32\comctl32.dll
      21:08:49.0606 0x1cd4 C:\Windows\System32\comctl32.dll - ok
      21:08:49.0606 0x1cd4 [ 299464D218A27B56684B715365D149FE, 2BFE4014E06552A9D4201EF9D1C605694AAF2B7B811265EFD9 1FC6D1C2D48242 ] C:\Windows\System32\msasn1.dll
      21:08:49.0606 0x1cd4 C:\Windows\System32\msasn1.dll - ok
      21:08:49.0606 0x1cd4 [ C55F634054E45C0DEE47C254AE009928, 76EB0FCA87C3AD5FA1C46EB0AF88CF85E172525029E33F5DFC 5645EF2EE6F575 ] C:\Windows\System32\powrprof.dll
      21:08:49.0606 0x1cd4 C:\Windows\System32\powrprof.dll - ok
      21:08:49.0606 0x1cd4 [ 3257094E4482251C46563B65936D05A8, B59F874B7F1C462AD9DD42E619BE3FB9FC55A8E66616F2F4DE 7865DC640A0C89 ] C:\Windows\System32\kernel.appcore.dll
      21:08:49.0606 0x1cd4 C:\Windows\System32\kernel.appcore.dll - ok
      21:08:49.0606 0x1cd4 [ 0BC84513575743DA177F3DFE18D35CA7, C40F6AA73073995E05E5379AE593A6617E8296C79A78BD7F71 6D95F98AE0D899 ] C:\Windows\System32\profapi.dll
      21:08:49.0606 0x1cd4 C:\Windows\System32\profapi.dll - ok
      21:08:49.0606 0x1cd4 [ D42AD41AB3DEA986590C9777D6DD25AD, AA9FFA82DA3678446F08C1FA2148081EA96D998016A142D4A9 7C949CD66FCD9C ] C:\Windows\SysWOW64\lpk.dll
      21:08:49.0606 0x1cd4 C:\Windows\SysWOW64\lpk.dll - ok
      21:08:49.0622 0x1cd4 [ 7C98397279D619956D6A7F9294FA5C5F, DB9A5D5D629831C9B5A88E05FD95A3D4117967FDC5F853E474 9F400D900B3152 ] C:\Windows\System32\win32kbase.sys
      21:08:49.0622 0x1cd4 C:\Windows\System32\win32kbase.sys - ok
      21:08:49.0622 0x1cd4 [ A930AD470CBCBEEAA2B684325453D48A, A9708AF04948699015FDB04C012D73623C9D868114BF807DCB 9B6A27D1F8FE20 ] C:\Windows\System32\win32kfull.sys
      21:08:49.0622 0x1cd4 C:\Windows\System32\win32kfull.sys - ok
      21:08:49.0622 0x1cd4 [ 6343BD5C58F385703454D47416EE0100, D01B1B67960E387B64798EB36D45EC61E2B4BB1959EC0E5347 BC3631653ADF0D ] C:\Windows\System32\win32k.sys
      21:08:49.0622 0x1cd4 C:\Windows\System32\win32k.sys - ok
      21:08:49.0622 0x1cd4 [ 77DBC745D957B4F0404ABABC10696784, 151189510070B06A3ECF5B6A8612CC45748676A579B9B4D877 F5BE3EB1971082 ] C:\Windows\System32\csrss.exe
      21:08:49.0622 0x1cd4 C:\Windows\System32\csrss.exe - ok
      21:08:49.0622 0x1cd4 [ F1E2170B311D75405C53DFDFBDB6DC01, 346BBAB08F552E1DDBAD73DDDFC667CE211410C06CDF84C85E 12B7CFC579E7C8 ] C:\Windows\System32\csrsrv.dll
      21:08:49.0622 0x1cd4 C:\Windows\System32\csrsrv.dll - ok
      21:08:49.0637 0x1cd4 [ 0C710DB449712EE13ACE733695DB7780, BBC7875B38D318CE4E88979D083AC72E8993254A466A8A6882 DDE9E0C3B687A3 ] C:\Windows\System32\basesrv.dll
      21:08:49.0637 0x1cd4 C:\Windows\System32\basesrv.dll - ok
      21:08:49.0637 0x1cd4 [ C509CCD23B086DFC9EAF86E280043672, BF431DC1C618BAF0CB67976C5A8BCCDC3F3CB266F83C614D60 5BA559BA8EDFD8 ] C:\Windows\System32\winsrv.dll
      21:08:49.0637 0x1cd4 C:\Windows\System32\winsrv.dll - ok
      21:08:49.0637 0x1cd4 [ D24345315139AAF6E3DF106344EE9422, 992F7BB8DB77D2B50F8C9C225DD3778FE91A71618E1CDDA673 683A1E13918AD1 ] C:\Windows\System32\drivers\dxgmms2.sys
      21:08:49.0637 0x1cd4 C:\Windows\System32\drivers\dxgmms2.sys - ok
      21:08:49.0637 0x1cd4 [ 9CCCB7FC3EDADEBA461D78615A6011A6, C120B58F25E8CCFD971EB78645C0682F367AD56DC15F2D8C19 80CE75B04719DF ] C:\Windows\System32\drivers\monitor.sys
      21:08:49.0637 0x1cd4 C:\Windows\System32\drivers\monitor.sys - ok
      21:08:49.0637 0x1cd4 [ EF046B49E8F9C95B94DF8A125C1DFF6F, 62FD491573750D3D0EBAD74BBBF4933A0CED4F459E611AEB52 939D93D3B66DBD ] C:\Windows\System32\tsddd.dll
      21:08:49.0637 0x1cd4 C:\Windows\System32\tsddd.dll - ok
      21:08:49.0637 0x1cd4 [ 1EE06E957B0B2CA52D26DA7861E160EF, 4B743A1C7010138F5F6684BBCF7CAD6FD05F49920BDD3FDB77 6347AA6B44AB94 ] C:\Windows\System32\sxssrv.dll
      21:08:49.0637 0x1cd4 C:\Windows\System32\sxssrv.dll - ok
      21:08:49.0653 0x1cd4 [ 99A19C9A74E2F9820E501DCE77F84F70, 68239DB9E67A86847286519E88B44649BE07D3E3E85116A234 5E065B5B2C7979 ] C:\Windows\System32\wininit.exe
      21:08:49.0653 0x1cd4 C:\Windows\System32\wininit.exe - ok
      21:08:49.0653 0x1cd4 [ C74A7ABE5092B4AF3AFF075E7D06B18E, 820A9D6895144373B60EDA9F046BE6F112D96748C9274C8D2B 777D3C21ADF774 ] C:\Windows\System32\wininitext.dll
      21:08:49.0653 0x1cd4 C:\Windows\System32\wininitext.dll - ok
      21:08:49.0653 0x1cd4 [ 974F03FF3BDB6786F890329340E29CFF, D02BCC19AB89EE188DD31D17DEBAECDE26CFC0B30B6E5B0CC5 889CCC85202E63 ] C:\Windows\System32\KBDUS.DLL
      21:08:49.0653 0x1cd4 C:\Windows\System32\KBDUS.DLL - ok
      21:08:49.0653 0x1cd4 [ CD84C41DA2B3C4F6CC4849D3A52C27A2, E9D36FEAC782861D93EDFFE8D1678E01804AD5FD5E838F203C 5BC7476B871BA3 ] C:\Windows\System32\atmfd.dll
      21:08:49.0653 0x1cd4 C:\Windows\System32\atmfd.dll - ok
      21:08:49.0653 0x1cd4 [ 86DBBA9B08AB9DDA31C2F49E9F8EEFD9, A743AD9B999060CD97AE4D6C9F0134102930263223852D46C4 CB3F3CBE542AC6 ] C:\Windows\System32\cdd.dll
      21:08:49.0653 0x1cd4 C:\Windows\System32\cdd.dll - ok
      21:08:49.0669 0x1cd4 [ DE6DF9BBBECAFDEF462A37D839167368, 9805B40BB162CB7C452A6F73C513B4B52761D0E2509D028D3C 34137AA020A672 ] C:\Windows\System32\winlogon.exe
      21:08:49.0669 0x1cd4 C:\Windows\System32\winlogon.exe - ok
      21:08:49.0669 0x1cd4 [ AC5344ED480F896C3BCE688F0AAE5144, C0BA0BE5A9CB38810C522DFE4B59FA5CCEF522FAAE4EDB605B 8128BB4DB861A6 ] C:\Windows\System32\bcrypt.dll
      21:08:49.0669 0x1cd4 C:\Windows\System32\bcrypt.dll - ok
      21:08:49.0669 0x1cd4 [ 8C0F54F7B1E4FA5FF66367FF9E204D9E, F34C50EE371C2CB398BB4884BC2A70F5673EB225451BE15703 7BBF4DA95F27CB ] C:\Windows\System32\WlS0WndH.dll
      21:08:49.0669 0x1cd4 C:\Windows\System32\WlS0WndH.dll - ok
      21:08:49.0669 0x1cd4 [ 12668CEFEE3754CFA61C5699821668B3, D0C81619EDE8B846D98417989684EF16DF3A053CC049C7281E 40F3359AD5B570 ] C:\Windows\System32\winsta.dll
      21:08:49.0669 0x1cd4 C:\Windows\System32\winsta.dll - ok
      21:08:49.0669 0x1cd4 [ D39F3674320CE083AB894A00ED134276, 83208E5FC4742B8D6AC71BF71B7E547953411EE2D8D153E338 2C240849A61170 ] C:\Windows\System32\sxs.dll
      21:08:49.0669 0x1cd4 C:\Windows\System32\sxs.dll - ok
      21:08:49.0684 0x1cd4 [ 3C69CC28665854F1AAB4B4005005FA31, 2750F5ECCD448C07E3402AA64EA625D27C6BC1D000A3FFE57C 03D62428BB46C4 ] C:\Windows\System32\services.exe
      21:08:49.0684 0x1cd4 C:\Windows\System32\services.exe - ok
      21:08:49.0684 0x1cd4 [ 6F0C144C67A5FB919EFFF9D06342AF33, 5A93D4B2CD55EB7D208524F1E156B6AF0894ECE90A1C9A2D36 F03374CB2994EC ] C:\Windows\System32\EventAggregation.dll
      21:08:49.0684 0x1cd4 C:\Windows\System32\EventAggregation.dll - ok
      21:08:49.0684 0x1cd4 [ 6F8E95716C1A27FF2FE96D30B147F1C1, 9403E9FE8B13EE294CFBBD96649BBD54CF723CF5872E3E03DA 4380379D677983 ] C:\Windows\System32\lsass.exe
      21:08:49.0684 0x1cd4 C:\Windows\System32\lsass.exe - ok
      21:08:49.0684 0x1cd4 [ 151AEA80776413C9FCE3185A10EB4B00, 5EC8396CB713C79D0CC7BD6CFA5910D0C7680F47C404C16298 0FAC46D6110128 ] C:\Windows\System32\lsasrv.dll
      21:08:49.0684 0x1cd4 C:\Windows\System32\lsasrv.dll - ok
      21:08:49.0684 0x1cd4 [ 2DF07B2560A3E961C1CA6ABBB4400C68, DEDE237C777249D6A914D11B6A7E117C0B58617AC204B30E5C 280CA4F67230F6 ] C:\Windows\System32\sspicli.dll
      21:08:49.0684 0x1cd4 C:\Windows\System32\sspicli.dll - ok
      21:08:49.0684 0x1cd4 [ 876580619AC09C460BFBDE479C85BA46, 108EDE706AE35F415314723B5E2F9D24BDB7C879C01A968000 B2C2C662CE323C ] C:\Windows\System32\samsrv.dll
      21:08:49.0684 0x1cd4 C:\Windows\System32\samsrv.dll - ok
      21:08:49.0700 0x1cd4 [ 43D4CA868DC7E79BE3A20C6C7FBA6A9D, C1A875201D7C941E3C86AD0AE5CBD8B7415151FE4E62DA5816 77D0B29C3CB90E ] C:\Windows\System32\ncrypt.dll
      21:08:49.0700 0x1cd4 C:\Windows\System32\ncrypt.dll - ok
      21:08:49.0700 0x1cd4 [ A45B23E8D2623CE3F760377766AF3E24, E0A8F5055CD9E2AF029B8537E09EFFAF1F46C724CB720A6395 DCF563EF70B843 ] C:\Windows\System32\ntasn1.dll
      21:08:49.0700 0x1cd4 C:\Windows\System32\ntasn1.dll - ok
      21:08:49.0700 0x1cd4 [ 5EF230CB9C2D9B62211EE95E40037A66, D6ACE699F5E8747DFD39C2FCC6779443708074F65292DCBCC7 72FEE7144E136C ] C:\Windows\System32\msprivs.dll
      21:08:49.0700 0x1cd4 C:\Windows\System32\msprivs.dll - ok
      21:08:49.0700 0x1cd4 [ EACAADBB300E22BF07CA8D97814C7784, 84AE7D8E390252EAB0E6C4A992645AD37C87558E1CDC1B7E69 304DFCA222F7D5 ] C:\Windows\System32\netprovfw.dll
      21:08:49.0700 0x1cd4 C:\Windows\System32\netprovfw.dll - ok
      21:08:49.0700 0x1cd4 [ 0E97410E5E6705F40D97E12764C1779E, 771DCD3A35F3238BD6B79C76A5C5897EE91B69C39513CCD90E 78D2D98904EE88 ] C:\Windows\System32\joinutil.dll
      21:08:49.0700 0x1cd4 C:\Windows\System32\joinutil.dll - ok
      21:08:49.0700 0x1cd4 [ 2D82A5E1C9C8A513D3BBC2F9DD9A9FC9, BA233EBE145F677D949CEE17A4281CE2B7062CA12B9F008EBF 1C10EFE1AC943E ] C:\Windows\System32\negoexts.dll
      21:08:49.0700 0x1cd4 C:\Windows\System32\negoexts.dll - ok
      21:08:49.0716 0x1cd4 [ 916AD7C0553D0229FEEFBD583C4F8E4B, DD7EBCFB0645D7D10164EB7D78B2D15E20ED2DB34A2A74C654 DEF786E4902498 ] C:\Windows\System32\cryptsp.dll
      21:08:49.0716 0x1cd4 C:\Windows\System32\cryptsp.dll - ok
      21:08:49.0716 0x1cd4 [ 51FCB0FDEFCB9A3E4A1DC8C8673BC63C, 63A0E1A76B7ABCF56E44B548568649FFB6B5609402746D48A4 DC77CCED20F5FE ] C:\Windows\System32\cryptbase.dll
      21:08:49.0716 0x1cd4 C:\Windows\System32\cryptbase.dll - ok
      21:08:49.0716 0x1cd4 [ 98A65F239C2426EF58966D3112611C2B, 82259C7B2B0D58AFC5EEA8F8F73EF7E11BF7D000FC27FF6130 E24E62FAAA5CAB ] C:\Windows\System32\pku2u.dll
      21:08:49.0716 0x1cd4 C:\Windows\System32\pku2u.dll - ok
      21:08:49.0716 0x1cd4 [ 79BDD52CAA9E5BBA77A1BE91667CAB29, 456AC2654BA09276489C006E21D48FF6D5EA7B991B83E5872F 27962CA37BC7E6 ] C:\Windows\System32\cryptdll.dll
      21:08:49.0716 0x1cd4 C:\Windows\System32\cryptdll.dll - ok
      21:08:49.0716 0x1cd4 [ DD1C6569B4AABDDC0A0F8F3FAAA751E5, E1175075E7F9BA570FAB27A3423438511C0E38448E594784E0 D643A35966AC49 ] C:\Windows\System32\wdigest.dll
      21:08:49.0716 0x1cd4 C:\Windows\System32\wdigest.dll - ok
      21:08:49.0731 0x1cd4 [ 97AFC565732D1927281386ADE46943B3, 7CDA4CC504310711FF15524EA7F06CE02751727C5CD75FDAB8 F5707CCD4CB4FD ] C:\Windows\System32\rsaenh.dll
      21:08:49.0731 0x1cd4 C:\Windows\System32\rsaenh.dll - ok
      21:08:49.0731 0x1cd4 [ 4E5A691D828F74BB01A37C77C8F46896, 1E1F447F911E284F3D8C059502D9D9DC067E65C538D2A9172C 89A452C954EEB6 ] C:\Windows\System32\kerberos.dll
      21:08:49.0731 0x1cd4 C:\Windows\System32\kerberos.dll - ok
      21:08:49.0731 0x1cd4 [ DA4BA21B236E37E158BB2EFDE80EA507, 335650ADB1DE1C48BE84BF6590764D3B19578DB8F2D3290ACA 675BF12EBF0997 ] C:\Windows\System32\KerbClientShared.dll
      21:08:49.0731 0x1cd4 C:\Windows\System32\KerbClientShared.dll - ok
      21:08:49.0731 0x1cd4 [ 10A6561536EC8ECC53BE5EABC40177A1, C4764716D257C1E038F34DC6F2AAAB1381C872BE7C896F7935 2354DF9A23E407 ] C:\Windows\System32\mswsock.dll
      21:08:49.0731 0x1cd4 C:\Windows\System32\mswsock.dll - ok
      21:08:49.0731 0x1cd4 [ 3C764425AFE3AEEBB8DD4BE4FF51226C, C2A59F9C11FED48F9BD3C3207EABA751D68086050A676D15C8 AAD8501EEF36C9 ] C:\Windows\System32\msv1_0.dll
      21:08:49.0731 0x1cd4 C:\Windows\System32\msv1_0.dll - ok
      21:08:49.0731 0x1cd4 [ 638B97E9B2C57097F148EC7C6D0E60FB, 8014AF1EAE25F7C091010BE58A7AA170BCE922D851FBB8D599 7498FF9105EF1B ] C:\Windows\System32\NtlmShared.dll
      21:08:49.0731 0x1cd4 C:\Windows\System32\NtlmShared.dll - ok
      21:08:49.0747 0x1cd4 [ 38315FF91B99DCA9468827D8DB22D08B, 8265A3FB00E99B13C9947B678DD7C1D45F71A8B54712997308 928AD68A9391BC ] C:\Windows\System32\netlogon.dll
      21:08:49.0747 0x1cd4 C:\Windows\System32\netlogon.dll - ok
      21:08:49.0747 0x1cd4 [ 5CFA1B3D6417449F98D040DEDBD14A4C, 95CCB4F548BBFF40DA78AC3CBC7EBD65ED54BCB8953CB0FFDE C6365A4E167030 ] C:\Windows\System32\userenv.dll
      21:08:49.0747 0x1cd4 C:\Windows\System32\userenv.dll - ok
      21:08:49.0747 0x1cd4 [ 3ADE84190C548EB094B3EE96364DBBDB, 8B9A72654049247DCF2AB669DB00246A31994E229EDFFB68E3 9980E95006BD02 ] C:\Windows\System32\gmsaclient.dll
      21:08:49.0747 0x1cd4 C:\Windows\System32\gmsaclient.dll - ok
      21:08:49.0747 0x1cd4 [ 504739A17F3A05531258784275A6F375, A931C54C47B454407990241DB12BD209AC219C55F026ADDED4 27A9E84A409923 ] C:\Windows\System32\netutils.dll
      21:08:49.0747 0x1cd4 C:\Windows\System32\netutils.dll - ok
      21:08:49.0747 0x1cd4 [ 96B8A433F6407DE34850927C96C6CE9B, 6BA7E8674CD7B25146C9477FA2085E829ADF7F045263220C84 A68CB8EB86A4F3 ] C:\Windows\System32\dnsapi.dll
      21:08:49.0747 0x1cd4 C:\Windows\System32\dnsapi.dll - ok
      21:08:49.0762 0x1cd4 [ AD0B40F68D6EE0E438990E0355466D26, 494902AB946571518A33C22E99B31B512C1894D4ED3A1A9C7E 9C47E7A0DF7938 ] C:\Windows\System32\IPHLPAPI.DLL
      21:08:49.0762 0x1cd4 C:\Windows\System32\IPHLPAPI.DLL - ok
      21:08:49.0762 0x1cd4 [ 3965B7007FC32D4D14383A10B5828660, 71CB5BF32C8F2F96D92D4D9EDC3F2AD7F24CEC5970019B9EBD 59D91C1661982B ] C:\Windows\System32\schannel.dll
      21:08:49.0762 0x1cd4 C:\Windows\System32\schannel.dll - ok
      21:08:49.0762 0x1cd4 [ 0072D9AFFB4BE25A6E766A0124599073, F2F3844B30F319E40A2295D9F5C9D9427C4343CD94C54D242A 6DF66340D8F1A9 ] C:\Windows\System32\cloudAP.dll
      21:08:49.0762 0x1cd4 C:\Windows\System32\cloudAP.dll - ok
      21:08:49.0762 0x1cd4 [ 29B7B1F8BC83DCE829B1EC29BA9B42EC, 91333177E35182045C4EDF17931AAB0CE2BED6FF908C38FF6E 6F012F2DBCC1BC ] C:\Windows\System32\MicrosoftAccountCloudAP.dll
      21:08:49.0762 0x1cd4 C:\Windows\System32\MicrosoftAccountCloudAP.dll - ok
      21:08:49.0762 0x1cd4 [ 927EA28A3F416A5A5E9FC638CA245EF5, D399633CC99D754DD999BB4FFADD768FEA82F57A0241809117 AD786DC33DD30E ] C:\Windows\System32\dpapi.dll
      21:08:49.0762 0x1cd4 C:\Windows\System32\dpapi.dll - ok
      21:08:49.0778 0x1cd4 [ 22ECD8F5D1DFADF2011BBB1700CB871D, 8F9EFF51137394EFA5471B8A29C541710063B65806B075B492 5A84D5B6BC3BBB ] C:\Windows\System32\drivers\msgpiowin32.sys
      21:08:49.0778 0x1cd4 C:\Windows\System32\drivers\msgpiowin32.sys - ok
      21:08:49.0778 0x1cd4 [ D5167593F7D56DB441A5145C99C56571, 418E9C3AA2DFCA42DE928D93535294582B00B4A7CDC4C41218 A0345CE980C194 ] C:\Windows\System32\TSpkg.dll
      21:08:49.0778 0x1cd4 C:\Windows\System32\TSpkg.dll - ok
      21:08:49.0778 0x1cd4 [ 79F8044074C385BDF2E02C9ADD18B793, DBBB1363FC702680D96D979594114E2C950721CE1927AA01AB F7738F6898BF03 ] C:\Windows\System32\PCPKsp.dll
      21:08:49.0778 0x1cd4 C:\Windows\System32\PCPKsp.dll - ok
      21:08:49.0778 0x1cd4 [ 854A3CAE7C97B630158C9F7EE8555970, 20F0A4D99C5095A0CAC39B816BFC987F64CD051843C79E0277 14666375986176 ] C:\Windows\System32\ntmarta.dll
      21:08:49.0778 0x1cd4 C:\Windows\System32\ntmarta.dll - ok
      21:08:49.0778 0x1cd4 [ 00718F5E9C4C4269A8E7BB5BFE6AD8CF, 237F9845FAB3D88B38E1A9513DC12B6E804D0998D06144143F C9786F254F2B41 ] C:\Windows\System32\PCPTpm12.dll
      21:08:49.0778 0x1cd4 C:\Windows\System32\PCPTpm12.dll - ok
      21:08:49.0778 0x1cd4 [ 88CC014A6BA3157A6B0866AA2C7C3C82, B61DC471C6EABFB6787CAB5574F7B08D2C989E137B5B80CA69 56B366D7CE6FD4 ] C:\Windows\System32\tbs.dll
      21:08:49.0778 0x1cd4 C:\Windows\System32\tbs.dll - ok
      21:08:49.0794 0x1cd4 [ 958DA68E511891A97FB62116FC3FED7C, 1FED2F834FBE39F3ECC71D0604D17768A67532077500CCBB39 6D5959815928F1 ] C:\Windows\System32\efslsaext.dll
      21:08:49.0794 0x1cd4 C:\Windows\System32\efslsaext.dll - ok
      21:08:49.0794 0x1cd4 [ 488302B09300EB1CFDE4EDAD21390A68, 6CFA9CD9E22B7E423C967B89DF375A5596699087E5E8EFBEAD B879A190C7A8C2 ] C:\Windows\System32\dpapisrv.dll
      21:08:49.0794 0x1cd4 C:\Windows\System32\dpapisrv.dll - ok
      21:08:49.0794 0x1cd4 [ C9E357BBED57A30473000925299D8769, 8350D7137010403DDF2BBCF4008B4EC8A940D0E4586DFEE02F 40D42CB84F38F4 ] C:\Windows\System32\sspisrv.dll
      21:08:49.0794 0x1cd4 C:\Windows\System32\sspisrv.dll - ok
      21:08:49.0794 0x1cd4 [ 3BE47B97A0AF471972EE27CC692F8868, 6B0410675CBF8D9FA552161429B9D8E22516CCB0D88218E9E2 5802477452A711 ] C:\Windows\System32\credssp.dll
      21:08:49.0794 0x1cd4 C:\Windows\System32\credssp.dll - ok
      21:08:49.0794 0x1cd4 [ 93718CA7CD59170FA994FEBBD87C8182, E631929D003F9038B470D3C5A2A8E1AE286CE93C8C34ECFD55 954F030CEBB0D0 ] C:\Windows\System32\scesrv.dll
      21:08:49.0794 0x1cd4 C:\Windows\System32\scesrv.dll - ok
      21:08:49.0809 0x1cd4 [ A96FCAF356FC6059472EF88896A41EBE, DA8100A87F5E86BB67452003C61CDA23C91C194DA73C8664CA ADC6882F1126E1 ] C:\Windows\System32\authz.dll
      21:08:49.0809 0x1cd4 C:\Windows\System32\authz.dll - ok
      21:08:49.0809 0x1cd4 [ 7ED53A9C37AE7ADE2A72A1C2EE86879B, F26751D9A0364795F8F4A5B03606E6D0778C362E50B00DC863 8C4E84BED1560A ] C:\Windows\System32\scecli.dll
      21:08:49.0809 0x1cd4 C:\Windows\System32\scecli.dll - ok
      21:08:49.0809 0x1cd4 [ 36F670D89040709013F6A460176767EC, 438B6CCD84F4DD32D9684ED7D58FD7D1E5A75FE3F3D12AB6C7 88E6BB0FFAD5E7 ] C:\Windows\System32\svchost.exe
      21:08:49.0809 0x1cd4 C:\Windows\System32\svchost.exe - ok
      21:08:49.0809 0x1cd4 [ FEA494AC3A1BAE63C1F2AF267D49F1DB, 0722FEA2481740B53EF26B1CA59166C63C157A5C708AC93DF3 FBB74A27266C9C ] C:\Windows\System32\umpnpmgr.dll
      21:08:49.0809 0x1cd4 C:\Windows\System32\umpnpmgr.dll - ok
      21:08:49.0809 0x1cd4 [ FFFE74963BEEDA4480E10EAC33C83CC6, 7C4D054236161F06D0470B8249CF0BCA15A1AA03F289ABB853 01927ED9220138 ] C:\Windows\System32\wldp.dll
      21:08:49.0809 0x1cd4 C:\Windows\System32\wldp.dll - ok
      21:08:49.0809 0x1cd4 [ 60C8376B48BA96F07AEA536527433D44, EB988C119C3E71169B91ED2A744C71933DD35447DC4A8249E8 0EC24E9E7077D4 ] C:\Windows\System32\umpo.dll
      21:08:49.0809 0x1cd4 C:\Windows\System32\umpo.dll - ok
      21:08:49.0825 0x1cd4 [ F25A86C9E36402BD4E76B7B5C2301C4B, EBEE12BF806FA7C22E4B71CDF56586F92631AD80051CE6A8CE B5C8AA62D46A45 ] C:\Windows\System32\umpoext.dll
      21:08:49.0825 0x1cd4 C:\Windows\System32\umpoext.dll - ok
      21:08:49.0825 0x1cd4 [ CA3001B4B80E1F1A2D345A5D01676890, 55F33BD0E5793CA1B9D323F28A49C7BE698EBAF695549C617D A1A5F2EEB5017D ] C:\Windows\System32\tdh.dll
      21:08:49.0825 0x1cd4 C:\Windows\System32\tdh.dll - ok
      21:08:49.0825 0x1cd4 [ D8FA419B49A4EFC3F2CE3BCB881B797F, 97FB2EB5E33EF1CE4AD12FC3E1759A2CD43989B69B956B1F07 89A9CECFEAD514 ] C:\Windows\System32\dxgi.dll
      21:08:49.0825 0x1cd4 C:\Windows\System32\dxgi.dll - ok
      21:08:49.0825 0x1cd4 [ 32254E75260F1CAE3AB9EAC044B344B7, B714E3CDEB23E63894D62E9335F51E301A9093F263623CCEFA 2F674AABE7D629 ] C:\Windows\System32\mintdh.dll
      21:08:49.0825 0x1cd4 C:\Windows\System32\mintdh.dll - ok
      21:08:49.0825 0x1cd4 [ 99E87B602ADB77B4DDBDC62C107C7E18, FD5CA0053E90EDFEEC8AE06CAECAFB5C3525179036FC2DFD2E BB84050C91E47E ] C:\Windows\System32\gpapi.dll
      21:08:49.0825 0x1cd4 C:\Windows\System32\gpapi.dll - ok
      21:08:49.0841 0x1cd4 [ DDEB02D7BCB0A346600A3160203C2C95, 77FD468B4C46A75312426E4368389057EFED233844CF1BC846 8983EEC160F178 ] C:\Windows\System32\hid.dll
      21:08:49.0841 0x1cd4 C:\Windows\System32\hid.dll - ok
      21:08:49.0841 0x1cd4 [ 7BD259FC59CF9C2AE1B979564B374CC6, 299832FCE304A85080C80ABFE820A6093AC15A7C1E7C89D8C9 46708E955A2909 ] C:\Windows\System32\rpcss.dll
      21:08:49.0841 0x1cd4 C:\Windows\System32\rpcss.dll - ok
      21:08:49.0841 0x1cd4 [ 672724C8B21B7DC56646045DE4D5B860, 79986E80A92C949C543959F1E35647A9788DAB2892AC20B6DE A5C0BBC0CEDE9E ] C:\Windows\System32\RpcEpMap.dll
      21:08:49.0841 0x1cd4 C:\Windows\System32\RpcEpMap.dll - ok
      21:08:49.0841 0x1cd4 [ BDD0725B7EBC438E605D297032C3B229, DF0BDDE8B45F5E360437302015EA4FA8E4C982F96CA0C46E48 CB09158FF8E316 ] C:\Windows\System32\RpcRtRemote.dll
      21:08:49.0841 0x1cd4 C:\Windows\System32\RpcRtRemote.dll - ok
      21:08:49.0841 0x1cd4 [ E301A0104ABDA071F91A52A0DAD3EC72, F8BD4BFE1B775275F9C8E7DE62E0F440A8B4910E6BB73605E5 DF67A21B0B4931 ] C:\Windows\System32\FirewallAPI.dll
      21:08:49.0841 0x1cd4 C:\Windows\System32\FirewallAPI.dll - ok
      21:08:49.0841 0x1cd4 [ 216C0DC7BEBD19C616A7BCE54F57F70C, 2305E780D161A736DB237727AC78EC1D2462793FD5013D1266 21B4BBBB16D743 ] C:\Windows\System32\fwbase.dll
      21:08:49.0841 0x1cd4 C:\Windows\System32\fwbase.dll - ok
      21:08:49.0856 0x1cd4 [ 2447BD15B41298622CC662249CD0F496, 013A326D2E3BF68D654BBABE2F1E5DF0FF0A153A4B95D570EE 28F9BC0F5A78C3 ] C:\Windows\System32\bisrv.dll
      21:08:49.0856 0x1cd4 C:\Windows\System32\bisrv.dll - ok
      21:08:49.0856 0x1cd4 [ F9748D5CFF5649BEB4A467DDF372EACC, 03B941150D43987123247E3B77585ADE94EA05BA8AB9B7FD26 FE3EC5606A7B87 ] C:\Windows\System32\psmsrv.dll
      21:08:49.0856 0x1cd4 C:\Windows\System32\psmsrv.dll - ok
      21:08:49.0856 0x1cd4 [ 72AD993A6E896EB50058A73D045F3284, CFF524F52D5F91788F34A47076E0CA36132890981079B27F55 9279B3F6FC3B11 ] C:\Windows\System32\devobj.dll
      21:08:49.0856 0x1cd4 C:\Windows\System32\devobj.dll - ok
      21:08:49.0856 0x1cd4 [ D2EF1F3886906469477BCCD18ADEC62B, 1F5ADC101426C881BB5B37A5AE16CB280619EAE9EE7E0FCC31 CD9FF573BB058B ] C:\Windows\System32\ResourcePolicyClient.dll
      21:08:49.0856 0x1cd4 C:\Windows\System32\ResourcePolicyClient.dll - ok
      21:08:49.0856 0x1cd4 [ 288FDF8ADB9921FD784ED4B1F846CFFA, BE5AA02D465D38FFE9ED1B4E0F88A6BC550C55358C2645AF82 FB1EA0E15DE4C3 ] C:\Windows\System32\twinapi.appcore.dll
      21:08:49.0856 0x1cd4 C:\Windows\System32\twinapi.appcore.dll - ok
      21:08:49.0872 0x1cd4 [ E874FF622703A1009CEC8A6DBEC0B745, 5ECDE49A9481E9644C52067EA1F1B92BF667EEF14058F537EB B6539999483D41 ] C:\Windows\System32\VEEventDispatcher.dll
      21:08:49.0872 0x1cd4 C:\Windows\System32\VEEventDispatcher.dll - ok
      21:08:49.0872 0x1cd4 [ 7DCB1000E735FFBACD2E6346A101600E, 2AF775F3EB03B29BB52622F17DFE20A6273B78EA2EB3F59806 735AD181CD3DAA ] C:\Windows\System32\msvcp110_win.dll
      21:08:49.0872 0x1cd4 C:\Windows\System32\msvcp110_win.dll - ok
      21:08:49.0872 0x1cd4 [ D5EFC0BAEC21EDE6FE03D377D403B421, 41BE71AF7C896FD4C51EF7E3871AAB769164DFB8050DA43E48 C7A100711414B4 ] C:\Windows\System32\lsm.dll
      21:08:49.0872 0x1cd4 C:\Windows\System32\lsm.dll - ok
      21:08:49.0872 0x1cd4 [ 477364EFD8E7F7450EA1F3B01BDE214C, 9CFC36332B86E34BC823595767564C3AA71A717CD39E7DC821 2F24E5F203E75A ] C:\Windows\System32\embeddedmodesvcapi.dll
      21:08:49.0872 0x1cd4 C:\Windows\System32\embeddedmodesvcapi.dll - ok
      21:08:49.0872 0x1cd4 [ 41222FB2DDF5E56F9C2B7D69EEFE0443, A7D64DDF3C3D5A40BDBFDA3F102A8B815E5D55C28A2171D02C AC26B2FA41D1E5 ] C:\Windows\System32\sysntfy.dll
      21:08:49.0872 0x1cd4 C:\Windows\System32\sysntfy.dll - ok
      21:08:49.0872 0x1cd4 [ E94A8DF41C92D40FDE139A8E127A8EC7, DCD8E6D559ED8394E905C0126C655ABB794F9FCAC57094DE19 A1546EDDF9E499 ] C:\Windows\System32\PsmServiceExtHost.dll
      21:08:49.0872 0x1cd4 C:\Windows\System32\PsmServiceExtHost.dll - ok
      21:08:49.0887 0x1cd4 [ 3803D95BBCB88A09B1F4043F77B0A52C, C7B7522CA9BA3F683ADCFB20AE30533B34E4FC91BEDD283E93 D0B733E6B97049 ] C:\Windows\System32\UXInit.dll
      21:08:49.0887 0x1cd4 C:\Windows\System32\UXInit.dll - ok
      21:08:49.0887 0x1cd4 [ 9827EFC5814FA6C56765AD5B584DAAB8, 51107E07E7F61667A886E1D6157DB1E1B9C0698362490C061E 3372083E3394B8 ] C:\Windows\System32\ResourcePolicyServer.dll
      21:08:49.0887 0x1cd4 C:\Windows\System32\ResourcePolicyServer.dll - ok
      21:08:49.0887 0x1cd4 [ DB390129C210F39926A28AE5DF146DCA, 636D0C099694151C58B13E05B2EA0CCC69E018917B1122D03E 354CA3684FFA84 ] C:\Windows\System32\uxtheme.dll
      21:08:49.0887 0x1cd4 C:\Windows\System32\uxtheme.dll - ok
      21:08:49.0887 0x1cd4 [ D9FEA79BF6AF136F8E656AE045C2FEC8, E6F08A93348E035185F0F1C6B6277E636F4F25D1136E3ACCA6 3488DAEEC7114B ] C:\Windows\System32\SystemEventsBrokerServer.dll
      21:08:49.0887 0x1cd4 C:\Windows\System32\SystemEventsBrokerServer.dll - ok
      21:08:49.0887 0x1cd4 [ 1E597E652BEA449079AC82A8A3553F9A, D760B76CBC2FD8F76FC8009C1EED9871947B6ACDE0CF56D7A3 F946429587333E ] C:\Windows\System32\BrokerLib.dll
      21:08:49.0887 0x1cd4 C:\Windows\System32\BrokerLib.dll - ok
      21:08:49.0903 0x1cd4 [ 7D1A9EE947A48B6DF60FDBA1435B337C, 746BBE223E45A7FE4495E54AB59B0CA1BEB958A9186746ED9D 821F240FBFCF23 ] C:\Windows\System32\dab.dll
      21:08:49.0903 0x1cd4 C:\Windows\System32\dab.dll - ok
      21:08:49.0903 0x1cd4 [ 74391E9B66AD42317E7B4C108D2C3078, 3C2988AD524386F745BAECFF6BF7476EE5772DD6018293B77F 4A669B32E7B1A9 ] C:\Windows\System32\dabapi.dll
      21:08:49.0903 0x1cd4 C:\Windows\System32\dabapi.dll - ok
      21:08:49.0903 0x1cd4 [ AED7FE551E8672B824A56324076183EB, FFE543AAEFDEFFE6B20C244DB141A9425BDA88ED36F4870F0B 70FEC433BDF0C1 ] C:\Windows\System32\drivers\WUDFPf.sys
      21:08:49.0903 0x1cd4 C:\Windows\System32\drivers\WUDFPf.sys - ok
      21:08:49.0903 0x1cd4 [ A8895E416EABF23C07D559DD2B03FC1C, 7962557E066EE0A76724DF8293A4FBE3D7570306A274BA2B9D 25642E56AFF345 ] C:\Windows\System32\dwminit.dll
      21:08:49.0903 0x1cd4 C:\Windows\System32\dwminit.dll - ok
      21:08:49.0903 0x1cd4 [ 47F6450F28BAA32B2AB0D6BE00996249, C8A47D6ADF89AD613AB685C6224B9099DCEFDCD8ABCF703542 AFDC356404116E ] C:\Windows\System32\WUDFSvc.dll
      21:08:49.0903 0x1cd4 C:\Windows\System32\WUDFSvc.dll - ok
      21:08:49.0903 0x1cd4 [ E5DD22FAB8C8ABD802E626712B63C237, 8294A5A96D40C239390715CDE69C8A7F852BF57781C6C3A1D7 60A401212254AE ] C:\Windows\System32\WUDFPlatform.dll
      21:08:49.0903 0x1cd4 C:\Windows\System32\WUDFPlatform.dll - ok
      21:08:49.0919 0x1cd4 [ 96932F631F5CB9F5D1C8F99A71568EF3, 5E4C8955A2EE9DC76B4EBC383653EB753D76D6B017E1A5DD55 3AC16094D7F12A ] C:\Windows\System32\bthserv.dll
      21:08:49.0919 0x1cd4 C:\Windows\System32\bthserv.dll - ok
      21:08:49.0919 0x1cd4 [ B38DFCF985D8AE5B1A17C264981E61C7, AA62D29803D52EC06CD27ED3124E034048F09606EB73421819 13C9817C7B44C5 ] C:\Windows\System32\LogonUI.exe
      21:08:49.0919 0x1cd4 C:\Windows\System32\LogonUI.exe - ok
      21:08:49.0919 0x1cd4 [ 6164D2FC10F343A4128412BC131C049D, 83738575BF3339E026CBEBD4E18BBA327047D791959A1D87CD 7FDF1DF9F81921 ] C:\Windows\System32\BthTelemetry.dll
      21:08:49.0919 0x1cd4 C:\Windows\System32\BthTelemetry.dll - ok
      21:08:49.0919 0x1cd4 [ C1F8CBE2D4843E0CCC3EFEA2EC60D4AB, 9D07527D982066922318C77AECE99280DE55034C375ACE145E 827A6BEB5C3B70 ] C:\Windows\System32\TimeBrokerServer.dll
      21:08:49.0919 0x1cd4 C:\Windows\System32\TimeBrokerServer.dll - ok
      21:08:49.0919 0x1cd4 [ 4005682897714B769CDAE9965C9F732F, 6F9A25C1E2D0BF2D97203FB7E74E497E93C3612FCB9E813386 59A8C26C3BF1E1 ] C:\Windows\System32\policymanager.dll
      21:08:49.0919 0x1cd4 C:\Windows\System32\policymanager.dll - ok
      21:08:49.0919 0x1cd4 [ 64479503F983B5A15FA8948E64484EAD, 9D6F9483661308F4A3412B7866DE19936AB2BC9D9827E2FC64 F1D30E0EADA297 ] C:\Windows\System32\apphelp.dll
      21:08:49.0919 0x1cd4 C:\Windows\System32\apphelp.dll - ok
      21:08:49.0934 0x1cd4 [ C89F159A577F19F7F03C73C98D29D841, B3E37997C1C62DD90D69EF83D6A6FC782BF9A5B8AD04A0D152 8A8B7FA31AA408 ] C:\Windows\System32\dwm.exe
      21:08:49.0934 0x1cd4 C:\Windows\System32\dwm.exe - ok
      21:08:49.0934 0x1cd4 [ D7F8E55D7AECA523B2B88EA04545B995, DF12C2BAD83B951C8826EAD1533E910912B9D36F8694EFB3CB 99D9AB98D8D454 ] C:\Windows\System32\LogonController.dll
      21:08:49.0934 0x1cd4 C:\Windows\System32\LogonController.dll - ok
      21:08:49.0934 0x1cd4 [ 05B2A35A72410F77A402FA5B76CF2086, 13F6D45C49526D75A2E781E59E0C73DF7774579BEF684782B5 A283926F8D390E ] C:\Windows\System32\dwmredir.dll
      21:08:49.0934 0x1cd4 C:\Windows\System32\dwmredir.dll - ok
      21:08:49.0934 0x1cd4 [ 04CE2C0F0759EACD886BA4B658B60D5D, E34D0976FC5936C8629800D826DB127072D1DFC3D350EFACA3 AA1B8119551762 ] C:\Windows\System32\ncbservice.dll
      21:08:49.0934 0x1cd4 C:\Windows\System32\ncbservice.dll - ok
      21:08:49.0934 0x1cd4 [ F16410F5D557337B05CF4F93691EC106, 2B5BC3C0A6514356C6719298FC25D8D192A2C973EE3283EF48 379D2745C9BD87 ] C:\Windows\System32\winmm.dll
      21:08:49.0934 0x1cd4 C:\Windows\System32\winmm.dll - ok
      21:08:49.0950 0x1cd4 [ 713A176494CEC107E663CAD6C2B27F77, 76871D8CFBA8FCD8CFF96208AE84C658EBEC60270D978898B9 0EE9451AA1BCE1 ] C:\Windows\System32\gpsvc.dll
      21:08:49.0950 0x1cd4 C:\Windows\System32\gpsvc.dll - ok
      21:08:49.0950 0x1cd4 [ A5767C71E1F56A6BCC13F8C35FDA861C, F9E3FC418ECCC5300BE33038B88CB6BD49E5397C7212690719 2E8FC4A43E01DA ] C:\Windows\System32\Windows.Internal.Bluetooth.dll
      21:08:49.0950 0x1cd4 C:\Windows\System32\Windows.Internal.Bluetooth.dll - ok
      21:08:49.0950 0x1cd4 [ 060E11DCB875D981E948073986E295DC, 30858EA58F24537CC3369091F92AD70C59877BDB1FDF8DEC77 62A7AB72DDE885 ] C:\Windows\System32\slc.dll
      21:08:49.0950 0x1cd4 C:\Windows\System32\slc.dll - ok
      21:08:49.0950 0x1cd4 [ 24C1E8F8C10471C5A6F0E8AF141211EB, 75ECAE23C920D81614BA5C0648377C2FC04C7379FD6A388C24 4A81F50AAB7B1C ] C:\Windows\System32\winmmbase.dll
      21:08:49.0950 0x1cd4 C:\Windows\System32\winmmbase.dll - ok
      21:08:49.0950 0x1cd4 [ 086CEEB32253373C91B20EBC55CA1C0F, 341EB5FCFD72BD279B1E424657863FD0B86E938B9B083DF64B 687E98EE23780B ] C:\Windows\System32\uDWM.dll
      21:08:49.0950 0x1cd4 C:\Windows\System32\uDWM.dll - ok
      21:08:49.0950 0x1cd4 [ 3BB593E36F3D8ADBCF63649C4DA5FB79, 56859DFC2B9D25ABFE7E787B50653B0A9B3C9C00D7DD1CE7B4 808360EE9835E2 ] C:\Windows\System32\nlaapi.dll
      21:08:49.0950 0x1cd4 C:\Windows\System32\nlaapi.dll - ok
      21:08:49.0966 0x1cd4 [ 80316B3EB295BFA0E8B155A0A79869FB, 5D68793C3E35F1FDFCC4FDF53ECF527DAA1DC9DDC78DA9AD02 EFEF927DDEA646 ] C:\Windows\System32\dwmcore.dll
      21:08:49.0966 0x1cd4 C:\Windows\System32\dwmcore.dll - ok
      21:08:49.0966 0x1cd4 [ 0EF6D33D0961401D6400F080E3129952, 54A61016DD97B680FC2BB16B47EF69CCDA58E4C065F370C8CA 8B84A0D7180D0C ] C:\Windows\System32\SystemEventsBrokerClient.dll
      21:08:49.0966 0x1cd4 C:\Windows\System32\SystemEventsBrokerClient.dll - ok
      21:08:49.0966 0x1cd4 [ 7CF84329545035CC0833119C7268A620, 49E3FA8B9F9ACB1A2CEDE37970361316C93286CEE7F70DE598 5E7135498A4210 ] C:\Windows\System32\sppc.dll
      21:08:49.0966 0x1cd4 C:\Windows\System32\sppc.dll - ok
      21:08:49.0966 0x1cd4 [ E330144B97D493AA886000DCAAA8DAF5, ED86F46F5A76FD8F06CA98BD61B174ADB9AD4B065394356872 708DF8B614E4F9 ] C:\Windows\System32\drivers\wcifs.sys
      21:08:49.0966 0x1cd4 C:\Windows\System32\drivers\wcifs.sys - ok
      21:08:49.0966 0x1cd4 [ 2A319EC8DF0FB5C46CF311B9D2B65B1D, 62B8900EFDF4B30E54E11232A8DA95DBF066DAEFD364A66EB9 9ADC028A3798F7 ] C:\Windows\System32\dsrole.dll
      21:08:49.0966 0x1cd4 C:\Windows\System32\dsrole.dll - ok
      21:08:49.0966 0x1cd4 [ 296F24F5413D53F1769B670F2268F97D, 24C17EFB3B4F68F3BEBCFC387C9F60A8DC5D2F8CAB7A9323CA 6D4A835DFD8E2E ] C:\Windows\System32\shacct.dll
      21:08:49.0966 0x1cd4 C:\Windows\System32\shacct.dll - ok
      21:08:49.0981 0x1cd4 [ 2D93C1B3A7743D6F685DB4E7C04E626B, 83472D38119ED60D991BDF800EE43F8487BA9377C74CDFA2B8 81FC89C8AEDA70 ] C:\Windows\System32\Windows.Devices.Radios.dll
      21:08:49.0981 0x1cd4 C:\Windows\System32\Windows.Devices.Radios.dll - ok
      21:08:49.0981 0x1cd4 [ 9E38EA2C1A0034B8780AAA24AC1E0192, B9C6F22EDB91E6E4A77A0892514281526561E281B814A6F111 E5E9B9D5BB2A89 ] C:\Windows\System32\dcomp.dll
      21:08:49.0981 0x1cd4 C:\Windows\System32\dcomp.dll - ok
      21:08:49.0981 0x1cd4 [ 5DE2049D5F57C1D142F36FA9CE443693, E6C2807C0B1EF90C11EB39634693B76EACE6CC675777776112 835212A334F328 ] C:\Windows\System32\CoreMessaging.dll
      21:08:49.0981 0x1cd4 C:\Windows\System32\CoreMessaging.dll - ok
      21:08:49.0981 0x1cd4 [ C9579D32219E5B936AC3A48D470117EC, E61A77191B6BA25D29B1221FEBBE826BBC11F825C0E35A72B4 CEFFF8B7FE59A8 ] C:\Windows\System32\drivers\luafv.sys
      21:08:49.0981 0x1cd4 C:\Windows\System32\drivers\luafv.sys - ok
      21:08:49.0981 0x1cd4 [ 72B2C83A922CB12E80D85D3D25D71F63, 3941077AB5256C450875DFC7E065585DD4A0393C49F55475D5 7E8BAA7BA1374C ] C:\Windows\System32\usermgrcli.dll
      21:08:49.0981 0x1cd4 C:\Windows\System32\usermgrcli.dll - ok
      21:08:49.0997 0x1cd4 [ 60B018C3AAEC6A3994B93BB2EEC673C8, F996177E105EE94DA4E3D92722452E34AFE94B2BDB460C94B3 5D356EFB05B9EE ] C:\Windows\System32\bi.dll
      21:08:49.0997 0x1cd4 C:\Windows\System32\bi.dll - ok
      21:08:49.0997 0x1cd4 [ A201AD42114C336ADA60E918A6901E5B, 5FF0DCA4DB1619631E9559200C36A5F0AD89DAF7E3E32E3632 32527504EAEBFE ] C:\Windows\System32\taskschd.dll
      21:08:49.0997 0x1cd4 C:\Windows\System32\taskschd.dll - ok
      21:08:49.0997 0x1cd4 [ C4DC88BE2140CB670A2AF6572B11D1BB, 1FCA634F769FDDCB8E700C9EE844983BDB8A7CB4FF1BFA1395 8B9E5E5F8D96C6 ] C:\Windows\System32\dwmapi.dll
      21:08:49.0997 0x1cd4 C:\Windows\System32\dwmapi.dll - ok
      21:08:49.0997 0x1cd4 [ C900FE0DD6A1E2220084B8F1C427790C, 802194EBEDA1A50EDA300078B0888AAC1F17A42E67147B7B3B 9C50AD8D4E5C89 ] C:\Windows\System32\hidserv.dll
      21:08:49.0997 0x1cd4 C:\Windows\System32\hidserv.dll - ok
      21:08:49.0997 0x1cd4 [ 88522C196AC0FAFBB28F2C6EB1EE2573, DF5361F2432AA15BBBAA5B7F50D0995F398C7219860174E420 7C4082D47402CE ] C:\Windows\System32\samlib.dll
      21:08:49.0997 0x1cd4 C:\Windows\System32\samlib.dll - ok
      21:08:49.0997 0x1cd4 [ EEFFD9259D6D6CFDBDC71F24730566BB, 305B523064835550FF226F6A3FF2DDCD2B43403E437566B068 6B22E6568BA02E ] C:\Windows\System32\WUDFHost.exe
      21:08:49.0997 0x1cd4 C:\Windows\System32\WUDFHost.exe - ok
      21:08:50.0012 0x1cd4 [ 8E91463B087FBAB49E42049F3BE0E1B3, 100A795611CF089F2C8E4147E9C1990A9E70D9292A40ED3928 93A27010B7AFD5 ] C:\Windows\System32\propsys.dll
      21:08:50.0012 0x1cd4 C:\Windows\System32\propsys.dll - ok
      21:08:50.0012 0x1cd4 [ 76818D1B9E0A2EC3CAA9813AD0DB4712, 38758484CC71660786E527C59DF1AFDF56CF941713BA202073 2B363FB04DC19D ] C:\Windows\System32\drivers\UMDF\SensorsHid.dll
      21:08:50.0012 0x1cd4 C:\Windows\System32\drivers\UMDF\SensorsHid.dll - ok
      21:08:50.0012 0x1cd4 [ 54C31C2B815E2E26BB8158022F837C9C, CED660D1A58F635C6452F82FCB2EF8ACEEB7785E31617B2ADF D9EE69A2BDF2B8 ] C:\Windows\System32\ngcsvc.dll
      21:08:50.0012 0x1cd4 C:\Windows\System32\ngcsvc.dll - ok
      21:08:50.0012 0x1cd4 [ E90480135CCF153367927193360E1704, 1E38DCCFBB4E3F7A97ACF9B8F35A27EDA314779E17951B6291 5BFEF2C4FE1905 ] C:\Windows\System32\dwmghost.dll
      21:08:50.0012 0x1cd4 C:\Windows\System32\dwmghost.dll - ok
      21:08:50.0012 0x1cd4 [ 7D843A1BA28AE71253021F8416ED22B1, 45609D9C65C4CB52D2E6479F0B9232B5321DBFD603F58BF396 45897B6C584859 ] C:\Windows\System32\SensorsUtilsV2.dll
      21:08:50.0012 0x1cd4 C:\Windows\System32\SensorsUtilsV2.dll - ok
      21:08:50.0028 0x1cd4 [ D0DB3DD09FB2B4ADABF4E719FAFC4EB9, 8B7C056B5F4AB604ED5077A39C63CE1B5A34929DE76DA4A3C5 4D6E648D123BAB ] C:\Windows\System32\wtsapi32.dll
      21:08:50.0028 0x1cd4 C:\Windows\System32\wtsapi32.dll - ok
      21:08:50.0028 0x1cd4 [ 99C236BDF40912E253650B562DB65235, 26E8A7CB0012D6E82635DF8FA5F4417FE458B1D2C67491303C 4F020E5AE21EDF ] C:\Windows\System32\WindowsCodecs.dll
      21:08:50.0028 0x1cd4 C:\Windows\System32\WindowsCodecs.dll - ok
      21:08:50.0028 0x1cd4 [ 2C92DF5D32661FB4B81B08B72B2102A7, BCEF4DEBDE7D8D6916EE3D3E5E63A725E03A058AABCD7DD49D F9D48B16E96D1A ] C:\Windows\System32\dbghelp.dll
      21:08:50.0028 0x1cd4 C:\Windows\System32\dbghelp.dll - ok
      21:08:50.0028 0x1cd4 [ 3DCBAE237E4E1F0EBE8E7DC053F778C4, C3331CCBE71CC98A5F1BC013F1C0218FE194CA7B497DDF706B F9025AB5A7B330 ] C:\Windows\System32\wkscli.dll
      21:08:50.0028 0x1cd4 C:\Windows\System32\wkscli.dll - ok
      21:08:50.0028 0x1cd4 [ 1F115AF75EFBAC28479B4F94A3F8D4A3, BE8D8C50D985F6AF9DDC0F13BDBE2D55D600E1F5E344982536 538B14EC484AA6 ] C:\Windows\System32\profsvc.dll
      21:08:50.0028 0x1cd4 C:\Windows\System32\profsvc.dll - ok
      21:08:50.0028 0x1cd4 [ BEBF85EB4D90E6996047DA027D0ED26E, DF109CF0F07CDD1B9B702C2A076D4DD5366DAAD971CC9359AF 0358E79981706F ] C:\Windows\System32\drivers\storqosflt.sys
      21:08:50.0028 0x1cd4 C:\Windows\System32\drivers\storqosflt.sys - ok
      21:08:50.0044 0x1cd4 [ 2B7AF493E824EF68527F87EC07420055, 39B93ACCB2FCFA8B212F0D9DB2E78D1BD4F7E731F74BB43C35 2B0A06733F44B3 ] C:\Windows\System32\UIAnimation.dll
      21:08:50.0044 0x1cd4 C:\Windows\System32\UIAnimation.dll - ok
      21:08:50.0044 0x1cd4 [ 8B52024D3A5C3A12F1C4D75D30A976C5, 982F1C783966C9A6D255AA7DBAB6D225EBE0050A36176B8DE8 5E8ADBFE17FDF1 ] C:\Windows\System32\FrameServer.dll
      21:08:50.0044 0x1cd4 C:\Windows\System32\FrameServer.dll - ok
      21:08:50.0044 0x1cd4 [ F02930EB91596042F2221397D60AFCE5, 10E2AB0993B67CBAA9E11C68280608965064EC9F7E0C570F5B 453FACADB8AB5D ] C:\Windows\System32\wpdbusenum.dll
      21:08:50.0044 0x1cd4 C:\Windows\System32\wpdbusenum.dll - ok
      21:08:50.0044 0x1cd4 [ 3BEC6134F1E45AEF5E971F69F0D38510, 245D7CEEB6561166EE0472551D39A9D3CFDDA52A6BF2E924AB 243CCA7FBC9009 ] C:\Windows\System32\drivers\MBAMChameleon.sys
      21:08:50.0044 0x1cd4 C:\Windows\System32\drivers\MBAMChameleon.sys - ok
      21:08:50.0044 0x1cd4 [ 9DE4C25FB79815F85B793543FE157EF4, 6DBC849CD3B1B5BF1AC69F20DA147E3BC8ABC3F01463FD534C D82D2D317491D4 ] C:\Windows\System32\WUDFx02000.dll
      21:08:50.0044 0x1cd4 C:\Windows\System32\WUDFx02000.dll - ok
      21:08:50.0044 0x1cd4 [ 601046DB1D3673BBD46E044904579E50, 445EEAD6769420F654E4600FAECBDC28BB4003F25519D6D11E A8E131271740F7 ] C:\Windows\System32\mfsensorgroup.dll
      21:08:50.0044 0x1cd4 C:\Windows\System32\mfsensorgroup.dll - ok
      21:08:50.0059 0x1cd4 [ 787D7D42A54E1C37504D4C531F1851DA, D51D1525A9784B9F33B9FBE8866D0E7AAAA1BBFD9BCACBB660 1E6BE9277ED9BD ] C:\Windows\System32\drivers\UMDF\SensorsCx.dll
      21:08:50.0059 0x1cd4 C:\Windows\System32\drivers\UMDF\SensorsCx.dll - ok
      21:08:50.0059 0x1cd4 [ AEA1093B751339267D8C8C1EF3D669CF, 8F3325E7FB16BD856A0593C36F2E3E018909038C52CD5F92E1 16E0C1366F31CB ] C:\Windows\System32\drivers\wcnfs.sys
      21:08:50.0059 0x1cd4 C:\Windows\System32\drivers\wcnfs.sys - ok
      21:08:50.0059 0x1cd4 [ 7B07A0CFEB7F5B6C016433C15DCCA9E7, D6F99EA93EE9EEE20E97A6873902525C6EE24976B8F1713789 87908D2542AC91 ] C:\Windows\System32\WinTypes.dll
      21:08:50.0059 0x1cd4 C:\Windows\System32\WinTypes.dll - ok
      21:08:50.0059 0x1cd4 [ EEC3A4A98AE1A337E3CD1483AD6F2E15, 764DA329984A95E092F5C15116DA34FA7FC27216C0862365D4 BF10ADC97EC5C5 ] C:\Windows\System32\drivers\registry.sys
      21:08:50.0059 0x1cd4 C:\Windows\System32\drivers\registry.sys - ok
      21:08:50.0059 0x1cd4 [ 517644763301E25D21FF48F8A894CAC3, 0C3F0FA96D3C51C068720DC1312496D4E4C65C46BCFC9532B6 4AEE6290D840F2 ] C:\Windows\System32\d3d11.dll
      21:08:50.0059 0x1cd4 C:\Windows\System32\d3d11.dll - ok
      21:08:50.0059 0x1cd4 [ 8C29F6190A519421D11A22D095F70BAF, F884B0FC66432F4DB91F9AF0F6CB876370080E324F3485F39C 761FEAB4FA4AB8 ] C:\Windows\System32\igdumdim64.dll
      21:08:50.0075 0x1cd4 C:\Windows\System32\igdumdim64.dll - ok
      21:08:50.0075 0x1cd4 [ A14A4478D89150035E7A01A77DBCDCB1, 6A2A87833A446A878B91132BA975BC169F4D512691C70E2401 E0A7335ACA1F08 ] C:\Windows\System32\WppRecorderUM.dll
      21:08:50.0075 0x1cd4 C:\Windows\System32\WppRecorderUM.dll - ok
      21:08:50.0075 0x1cd4 [ 5EA855B4A875E08AD93FF901B5D9E275, 9813E16B0B65A6C0F75C388895DABEFE5AC7A5061BD2931B9D 245DD25EBCF1D2 ] C:\Windows\System32\ism32k.dll
      21:08:50.0075 0x1cd4 C:\Windows\System32\ism32k.dll - ok
      21:08:50.0075 0x1cd4 [ D4DB6B318A0A0C74A90260725A228C0B, 57BA2EF9D880488C785C806ABF9EE753A48E589129442D72F8 15CD6EFFA07B22 ] C:\Windows\System32\schedsvc.dll
      21:08:50.0075 0x1cd4 C:\Windows\System32\schedsvc.dll - ok
      21:08:50.0075 0x1cd4 [ B157D72BDA6A6DD6E9DC6BF338CD0CF8, B2AC26AE214151E5AD93DED78256BC0295DBF0133C854E7DEE 4CD776D9C9A349 ] C:\Windows\System32\BthHFSrv.dll
      21:08:50.0075 0x1cd4 C:\Windows\System32\BthHFSrv.dll - ok
      21:08:50.0075 0x1cd4 [ DD74F18227ACC837D9856E24282D446D, 6A760E44CD897952538CDFA8895FE11263D51AAA79CFF24C01 F3862E919DA478 ] C:\Windows\System32\das.dll
      21:08:50.0075 0x1cd4 C:\Windows\System32\das.dll - ok
      21:08:50.0091 0x1cd4 [ CBC2ED420A156B17B88C3D7898521C81, 112FA35C27AAF6CBA13392081715ED7972A227F35CB599D911 310083418E23A2 ] C:\Windows\System32\ubpm.dll
      21:08:50.0091 0x1cd4 C:\Windows\System32\ubpm.dll - ok
      21:08:50.0091 0x1cd4 [ 6FAD3704C336BF87A2543EF82C987F33, 1176B54B454DB876DE35690CDB83999E84156D0D0981ECA5DA BD8B99A0FD60EB ] C:\Windows\System32\BluetoothApis.dll
      21:08:50.0091 0x1cd4 C:\Windows\System32\BluetoothApis.dll - ok
      21:08:50.0091 0x1cd4 [ 78E7C6780686D7DE08AC80DEAA31CF6B, A173658A68698390930C94F9AC297B5A7EE1BF894BD8D836D8 51D8D76B6FE028 ] C:\Windows\System32\rmclient.dll
      21:08:50.0091 0x1cd4 C:\Windows\System32\rmclient.dll - ok
      21:08:50.0091 0x1cd4 [ D305B1E69D5647854F22EE2ED1FD81E4, 5AF73EA7AB6F5DA0F905E63B37BFEEB24C2C0553FBEC903F25 D7D91BA5530BD1 ] C:\Windows\System32\wshbth.dll
      21:08:50.0091 0x1cd4 C:\Windows\System32\wshbth.dll - ok
      21:08:50.0091 0x1cd4 [ 8D7AC60330B3E96C4D00E682437868D0, CB9573287CA0442468C131F10B9E4851AD91BFAD0BA64618B1 D458A4B6301B28 ] C:\Windows\System32\CoreUIComponents.dll
      21:08:50.0091 0x1cd4 C:\Windows\System32\CoreUIComponents.dll - ok
      21:08:50.0091 0x1cd4 [ 7FC2CEE4B16F4E9AEB5565C9429FC5A5, D2BE9CB9BCDA52A91F15F3B5F28FBA4B087B8B46ADBD98F6EC 7DBDCDF1ACC39C ] C:\Windows\System32\mfplat.dll
      21:08:50.0091 0x1cd4 C:\Windows\System32\mfplat.dll - ok
      21:08:50.0106 0x1cd4 [ D2E55273F4B693537892963C57EC23CB, 1ABF83E76664607D171CC7CDEB0E3D896D5E292DC7ED3A38B0 69D947D6AADF81 ] C:\Windows\System32\profsvcext.dll
      21:08:50.0106 0x1cd4 C:\Windows\System32\profsvcext.dll - ok
      21:08:50.0106 0x1cd4 [ 8A6F3A7F4ED2687171FFA0C598FED595, C41CD1B8F2C1B6DC19F4C2CF3534D8F7A20DD0C2250AD97C5D 40DB53A1090655 ] C:\Windows\System32\Windows.UI.Logon.dll
      21:08:50.0106 0x1cd4 C:\Windows\System32\Windows.UI.Logon.dll - ok
      21:08:50.0106 0x1cd4 [ 414E19F158453B7CE56C69BBC70C39FB, 469450B5DBB966A1D490700026188C2D3514B82121CC659012 AA7319D068CDEF ] C:\Windows\System32\PortableDeviceApi.dll
      21:08:50.0106 0x1cd4 C:\Windows\System32\PortableDeviceApi.dll - ok
      21:08:50.0106 0x1cd4 [ 30364757963A028CE5DF0FBAAC270173, C72588A6A52FF8E418A15D2C407A4DB7EA768585423720145F 8253D5CA519DC2 ] C:\Windows\System32\drivers\mshidumdf.sys
      21:08:50.0106 0x1cd4 C:\Windows\System32\drivers\mshidumdf.sys - ok
      21:08:50.0106 0x1cd4 [ 1EABA23A7305A232C9A16C14806ED091, 3AD1A84A56EE0DA68B40D40770787FEED3DCF4A74BE172F01B D837FD680396E6 ] C:\Windows\System32\RTWorkQ.dll
      21:08:50.0106 0x1cd4 C:\Windows\System32\RTWorkQ.dll - ok
      21:08:50.0106 0x1cd4 [ FCE523E2198C500E3F33388EB2691CB0, 45B7D49B0F30103BE11E69027E60375829E10B184F30227F2C B6F1893D1788F8 ] C:\Windows\System32\logoncli.dll
      21:08:50.0106 0x1cd4 C:\Windows\System32\logoncli.dll - ok
      21:08:50.0106 0x1cd4 [ 38C2FBB135DC515692B997181EF71DBB, D872C171CF34C8132365DBCF0450351EF4DC8518E2B731A102 F1BCE540DB2456 ] C:\Windows\System32\avrt.dll
      21:08:50.0106 0x1cd4 C:\Windows\System32\avrt.dll - ok
      21:08:50.0122 0x1cd4 [ 47F5112CFA88C9168B24DCA223AAB1A6, 0112C14848D60639609A353FD46D56C8287852DA89A916E402 65D4824BEF7B36 ] C:\Windows\System32\nvd3dumx.dll
      21:08:50.0122 0x1cd4 C:\Windows\System32\nvd3dumx.dll - ok
      21:08:50.0122 0x1cd4 [ A5D48D65A9D0CB4C0DB8F76C76BA9BCC, E152224911B1B19D8F605C4DA3AB574B44C679A787CD5EF8ED 64FB668AF9A0CA ] C:\Windows\System32\wincorlib.dll
      21:08:50.0122 0x1cd4 C:\Windows\System32\wincorlib.dll - ok
      21:08:50.0122 0x1cd4 [ E2CAD35CF3EEA19A246733145DDF16E5, 675F1601B167BFF40954C89703B5F6F70BDC3A2E7C52D80ECB FA72CC3EB07D07 ] C:\Windows\System32\nvvsvc.exe
      21:08:50.0122 0x1cd4 C:\Windows\System32\nvvsvc.exe - ok
      21:08:50.0122 0x1cd4 [ 51C5F949CD2220813B185189C1408A68, 3C04098824D04FFAF167B35F898FF6FE91A568DF6789C8909A 136A7663AB462E ] C:\Windows\System32\Windows.Gaming.Input.dll
      21:08:50.0122 0x1cd4 C:\Windows\System32\Windows.Gaming.Input.dll - ok
      21:08:50.0122 0x1cd4 [ 37E5733F8F720920F7C5A78D45899D3A, E40706E19FCB938256BF6C3E07703F7BA30306668B437C13BB A641D30977F43A ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
      21:08:50.0122 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - ok
      21:08:50.0137 0x1cd4 [ BD651E487EF8F198886FEA8D0683DD72, 63D27A27410A228579426621DCBF3CB4727B5B44CED7494FBB A81C47EA45EE17 ] C:\Windows\System32\mstask.dll
      21:08:50.0137 0x1cd4 C:\Windows\System32\mstask.dll - ok
      21:08:50.0137 0x1cd4 [ 956DB4B52F2CE6365ADE6B5D2D74A267, 74D0901C95AF7059ECB5F6927DBCC5E8E6CE5B2C04FD7F5CB1 8F337BA73DF86A ] C:\Windows\SysWOW64\kernel32.dll
      21:08:50.0137 0x1cd4 C:\Windows\SysWOW64\kernel32.dll - ok
      21:08:50.0137 0x1cd4 [ 49B68FD379168914BCA2205258255406, 4FD321C867C7284994AB8EDB9324C6051B967D9FDC6CFEC7F3 2E789ACB221B0B ] C:\Windows\System32\BCP47Langs.dll
      21:08:50.0137 0x1cd4 C:\Windows\System32\BCP47Langs.dll - ok
      21:08:50.0137 0x1cd4 [ 9A1EBD9535DCD19888A662C4BFB2070E, DB07F9C6BEAD7D95B40D83D71B37650C3FAD169564D766E413 26FD212D1B94DD ] C:\Windows\System32\httpprxc.dll
      21:08:50.0137 0x1cd4 C:\Windows\System32\httpprxc.dll - ok
      21:08:50.0137 0x1cd4 [ 4A0B06DD8211CDA36D209FE61283DB58, 9499190329D536764C8C1C1DFB7342CD44AA079E51E13EB939 7C6C9AA1B13832 ] C:\Windows\SysWOW64\KernelBase.dll
      21:08:50.0137 0x1cd4 C:\Windows\SysWOW64\KernelBase.dll - ok
      21:08:50.0153 0x1cd4 [ 68F6977F1CFBAAC770D940A8C0326FA1, 90EE1E7DAC680EAA5AD50E9B0B9FD8FCE8DD6A02D5EF941B5A A5084CBD40BB80 ] C:\Windows\System32\drivers\mmcss.sys
      21:08:50.0153 0x1cd4 C:\Windows\System32\drivers\mmcss.sys - ok
      21:08:50.0153 0x1cd4 [ 5B61CA67812695A6A58E1168DFF442F1, 0B163FEFB9DD3FDD00960F345FD85BEA7435835CF3B4FEA542 FBA781721C7985 ] C:\Windows\System32\drivers\UMDF\LenovoVhid.dll
      21:08:50.0153 0x1cd4 C:\Windows\System32\drivers\UMDF\LenovoVhid.dll - ok
      21:08:50.0153 0x1cd4 [ 0146AE7A30E1C3D8248CEF611ECCFF8A, A1E2364FCC35E5D2C1A6137B6A800C4C821AD4D913193CA2DA A8F84641FA29DC ] C:\Windows\System32\OneCoreUAPCommonProxyStub.dll
      21:08:50.0153 0x1cd4 C:\Windows\System32\OneCoreUAPCommonProxyStub.dll - ok
      21:08:50.0153 0x1cd4 [ B4AFCAA856C58FAB35C6B6DCF802E420, 6FDCA5E475C92A7AAE17FC7C72D518AF54EAD568D5FB7D59B8 BC394ED9D1CA4C ] C:\Windows\SysWOW64\setupapi.dll
      21:08:50.0153 0x1cd4 C:\Windows\SysWOW64\setupapi.dll - ok
      21:08:50.0153 0x1cd4 [ 2B3053473D66AD4C34E05B4AB4A9636E, 959533E1ACC392BCCF162381F60FC663812D9BBD460D36DB1E 7E8FFD0726E091 ] C:\Windows\SysWOW64\msvcrt.dll
      21:08:50.0153 0x1cd4 C:\Windows\SysWOW64\msvcrt.dll - ok
      21:08:50.0169 0x1cd4 [ 4D558BCF2062138ADC52D6A9297A9732, D03BD3F1B5664492E360851297C0347B1E6973C157343E2B14 4B343C0FABB14C ] C:\Windows\System32\DDORes.dll
      21:08:50.0169 0x1cd4 C:\Windows\System32\DDORes.dll - ok
      21:08:50.0169 0x1cd4 [ 5D50C23273ECDD2D88B5230E920478FA, 800E8859F27CAFD2E31DF291B0600E3C0E81C170EE0DCDC789 DE9A82F4B76BC5 ] C:\Windows\System32\Windows.Devices.Perception.dll
      21:08:50.0169 0x1cd4 C:\Windows\System32\Windows.Devices.Perception.dll - ok
      21:08:50.0169 0x1cd4 [ 1B91FD03907AA96335BE45AF5F85AA2A, B763C77CFDC57A5589B6F398EC11B9AA9854B019677F7A20AB 599C2F1275C337 ] C:\Windows\System32\Windows.UI.XamlHost.dll
      21:08:50.0169 0x1cd4 C:\Windows\System32\Windows.UI.XamlHost.dll - ok
      21:08:50.0169 0x1cd4 [ BE747C03BA4B3BFEE68510AB4F168C1F, E631728332AEE49A4631C38AA75E05A4CCDD6653FBA500DADC 42750EF5AFB20C ] C:\Windows\System32\WUDFx.dll
      21:08:50.0169 0x1cd4 C:\Windows\System32\WUDFx.dll - ok
      21:08:50.0169 0x1cd4 [ 181FE38C3FE164FBFC1A5A8399CCC2DA, 233C31D9FC1C50A3E0688C1E778D356B419ED4A70D7B6870CA 7631E4FE5C2AF9 ] C:\Windows\SysWOW64\version.dll
      21:08:50.0169 0x1cd4 C:\Windows\SysWOW64\version.dll - ok
      21:08:50.0169 0x1cd4 [ 90A1CD387F9CB30F86D34B88BFCD83A1, 5F6CE9777CDC7B0A0E98C90709C41C379415DBA654A39B332B B683A7F2B86E97 ] C:\Windows\SysWOW64\cfgmgr32.dll
      21:08:50.0169 0x1cd4 C:\Windows\SysWOW64\cfgmgr32.dll - ok
      21:08:50.0184 0x1cd4 [ 056E20BF43207E95A92D38B539656E3E, 7B32446989BEA576D1988881DA517C81CCFE6AF076CD0C19ED DAE22985ADF081 ] C:\Windows\SysWOW64\rpcrt4.dll
      21:08:50.0184 0x1cd4 C:\Windows\SysWOW64\rpcrt4.dll - ok
      21:08:50.0184 0x1cd4 [ 1A8E7650017F0BC9AD12A6861B5119ED, DC23AA689D373F84F2C65785995707797B6A8EB29640D5D372 FFFF1E74E42670 ] C:\Windows\SysWOW64\sspicli.dll
      21:08:50.0184 0x1cd4 C:\Windows\SysWOW64\sspicli.dll - ok
      21:08:50.0184 0x1cd4 [ 3D4308BAC53B881B16D9BD1006ABDC65, 26DF85FC22F9FCAA2212CB66612FE8F5CC6382953FE81B9C34 128E43080C7891 ] C:\Windows\SysWOW64\cryptbase.dll
      21:08:50.0184 0x1cd4 C:\Windows\SysWOW64\cryptbase.dll - ok
      21:08:50.0184 0x1cd4 [ DBB08DB2F47433858C6606484F5FE545, AE45E85BEE770708CE6E8C89066DC70D4F8C4A1F2DF414A63A 3AF1170482DF47 ] C:\Windows\SysWOW64\bcryptprimitives.dll
      21:08:50.0184 0x1cd4 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
      21:08:50.0184 0x1cd4 [ 0BD00AE0D8AAF0A62FDBAE8856F152D9, A90E9EFC80C0BEEB83A38D20196715D7C590B8BA412AB6E7E5 C7F94ACC3B2414 ] C:\Windows\System32\d3d10warp.dll
      21:08:50.0184 0x1cd4 C:\Windows\System32\d3d10warp.dll - ok
      21:08:50.0184 0x1cd4 [ C31AFDF95FE4162ACCA59DB5FBA14EF3, 97C5701A15BF853C89B0E4BBFB3EC6EEAA096E243A28CCFF22 F524B886BE7C4D ] C:\Windows\System32\MrmCoreR.dll
      21:08:50.0184 0x1cd4 C:\Windows\System32\MrmCoreR.dll - ok
      21:08:50.0200 0x1cd4 [ 6B61852EDC8F0EB9E555CF5308A1CA67, 73CBABE06D58CF771AC647C0DE916BD668FEC96A40EDF7283D 50C1C7DE07FE08 ] C:\Windows\System32\wmiclnt.dll
      21:08:50.0200 0x1cd4 C:\Windows\System32\wmiclnt.dll - ok
      21:08:50.0200 0x1cd4 [ 6F12B244B6BAC8EEEB506C0BEE04F8CB, 72C2886F45EC582A67E5712D9BC8A6EDC2D9B69942A5192AE3 2806F8761F3795 ] C:\Windows\System32\dasHost.exe
      21:08:50.0200 0x1cd4 C:\Windows\System32\dasHost.exe - ok
      21:08:50.0200 0x1cd4 [ F2538ED36839EB891707959D5FC50D5A, 133EE0BB023593E0507BDB71D66A5265C5FD00D579B58C4832 A24D96A4CAED99 ] C:\Windows\System32\Windows.Devices.Enumeration.dl l
      21:08:50.0200 0x1cd4 C:\Windows\System32\Windows.Devices.Enumeration.dl l - ok
      21:08:50.0200 0x1cd4 [ ED839824E2D0CDE4544276DF61BB9868, F938EDB4504ED2EF1D1DFA8A1D50661A7681C607A6A225690A 0BF6BFC94A989C ] C:\Windows\SysWOW64\sechost.dll
      21:08:50.0200 0x1cd4 C:\Windows\SysWOW64\sechost.dll - ok
      21:08:50.0200 0x1cd4 [ 4BEC594A3D4AEAFAC400D88F7E328C7B, 8E4B41CCE0095785E43FE78FBD02C9312FBDEDC33E99DF055B 2856FB61CDD128 ] C:\Windows\SysWOW64\user32.dll
      21:08:50.0200 0x1cd4 C:\Windows\SysWOW64\user32.dll - ok
      21:08:50.0216 0x1cd4 [ 9D8F7BD41657B515DD46C7BF90A26CDB, F73F1D7C426282357007294D5108EB4509EB96C1DF82B86BD2 E657D93E7204B5 ] C:\Windows\SysWOW64\win32u.dll
      21:08:50.0216 0x1cd4 C:\Windows\SysWOW64\win32u.dll - ok
      21:08:50.0216 0x1cd4 [ A38BCC4DF4DA792C71F6FBA54299F893, EDAA8C1A4C967DF5856D55C112550C691AFAE5C0254AEB5877 BCC1875437D474 ] C:\Windows\SysWOW64\gdi32.dll
      21:08:50.0216 0x1cd4 C:\Windows\SysWOW64\gdi32.dll - ok
      21:08:50.0216 0x1cd4 [ 56A1F18F27A325A4C17BF7EA963DBD2B, 60A39A154117741EC25098B4024FBF0043BAF37838CF877AD4 C247301B0735F4 ] C:\Windows\SysWOW64\gdi32full.dll
      21:08:50.0216 0x1cd4 C:\Windows\SysWOW64\gdi32full.dll - ok
      21:08:50.0216 0x1cd4 [ F3D42790CC6BB55EC93CA1AD66A9D372, 59494C94C3AB5CCCDCD6AF4BC731C090D65CD1361583FC9D7D 3A052D8EE8E6A6 ] C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll
      21:08:50.0216 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll - ok
      21:08:50.0216 0x1cd4 [ B3B6A553EFC594D2C02CA483533DA972, 37EC2AC8B2025D49C6AAF43A288B5D6556B6BC5BEB583159E1 8E22E0F6911DCD ] C:\Windows\System32\PortableDeviceConnectApi.dll
      21:08:50.0216 0x1cd4 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
      21:08:50.0216 0x1cd4 [ 876577374F31702ACC9E8584DB453C9B, 05473B9B867B68E368B284022392860F0D2055809AEB5DF221 F8319230BCCE9C ] C:\Windows\SysWOW64\advapi32.dll
      21:08:50.0216 0x1cd4 C:\Windows\SysWOW64\advapi32.dll - ok
      21:08:50.0231 0x1cd4 [ 92C8FB2FC12757888339C0CC30A99B5A, D255E48CA51073DDD61D23BEEAFB5E9A13F0F8B765F0D7E01F 23C139860937BB ] C:\Windows\System32\biwinrt.dll
      21:08:50.0231 0x1cd4 C:\Windows\System32\biwinrt.dll - ok
      21:08:50.0231 0x1cd4 [ ABF355047ECEBFF79FE5224BCFF9A2E5, C6B67FAFA0027DDCE2D52705FFCEB404C8566A4FB6957B21AE F20923747959C1 ] C:\Windows\SysWOW64\oleaut32.dll
      21:08:50.0231 0x1cd4 C:\Windows\SysWOW64\oleaut32.dll - ok
      21:08:50.0231 0x1cd4 [ 81974C9613FF0863079629C4D8F5C089, 370960F04259B8EA96821A5582390B262DE66A54D7435B19FF D12D56A786C569 ] C:\Windows\System32\netprofm.dll
      21:08:50.0231 0x1cd4 C:\Windows\System32\netprofm.dll - ok
      21:08:50.0231 0x1cd4 [ AA24C61D88E36BA1144072227922173D, 2EBBC827E740F72EA2E75745E585378189BC0DEE91CACD7FA3 1BDBC5EFCF8733 ] C:\Windows\System32\usermgr.dll
      21:08:50.0231 0x1cd4 C:\Windows\System32\usermgr.dll - ok
      21:08:50.0231 0x1cd4 [ C4465AC27B8D372574A2DCCAA4E16BCF, 427F290079B842FC7ADB96DE7FB9B696CC0352740E89299273 2B3C79E5570204 ] C:\Windows\SysWOW64\winspool.drv
      21:08:50.0231 0x1cd4 C:\Windows\SysWOW64\winspool.drv - ok
      21:08:50.0247 0x1cd4 [ 0D16BFB3D49F7041C4C48CCC96F22540, 53F11E3640243B1FF985FDBEAFE6811F38E7C1899A7FB389AF 3B616DB9E817C4 ] C:\Windows\System32\deviceassociation.dll
      21:08:50.0247 0x1cd4 C:\Windows\System32\deviceassociation.dll - ok
      21:08:50.0247 0x1cd4 [ 43165ADA4B93B958D6CEF6CFAABEBA0C, DC317315467DB6D997C17C90AF2A66E846C563D6AB12AE0C4C 13CA6A05751EA1 ] C:\Windows\System32\Windows.UI.dll
      21:08:50.0247 0x1cd4 C:\Windows\System32\Windows.UI.dll - ok
      21:08:50.0247 0x1cd4 [ 8DD0EAB4F85B2FEA280677B117785B15, 5D52802C7D7696134252A71910EFBF081A117A4E5B26B63AF8 9E9EAF3AF508D0 ] C:\Windows\SysWOW64\msvcp_win.dll
      21:08:50.0247 0x1cd4 C:\Windows\SysWOW64\msvcp_win.dll - ok
      21:08:50.0247 0x1cd4 [ 38D4926B0D410B8C44C80BD5BD3F04B8, 69B1D2B4EEF9AFD2C9EDF90B1B2DC20037D231062FC422F323 46ED25EAAC34B2 ] C:\Windows\System32\drivers\UMDF\SettingsDriver.dl l
      21:08:50.0247 0x1cd4 C:\Windows\System32\drivers\UMDF\SettingsDriver.dl l - ok
      21:08:50.0247 0x1cd4 [ C041ED5CE66BEDFA0CEAC973C8E5DAC5, 705B73F78679903D346031F0BE99B2179591823A5E3332787E AACB29A743283F ] C:\Windows\SysWOW64\bcrypt.dll
      21:08:50.0247 0x1cd4 C:\Windows\SysWOW64\bcrypt.dll - ok
      21:08:50.0247 0x1cd4 [ 71C446BA0E327922E81D44DC7C92A3E9, B56B5D3D80BFDA8F5036F15FE9C42B1179233CCBF3F808F88C DB2310C8115B94 ] C:\Windows\System32\UserMgrProxy.dll
      21:08:50.0247 0x1cd4 C:\Windows\System32\UserMgrProxy.dll - ok
      21:08:50.0262 0x1cd4 [ 2E0694A49824CF82C1972020DB227D8C, D430EC47A5289F6D6F6CA94AB785A17C7DF0599C1FE20789FE DE53830AF66095 ] C:\Windows\SysWOW64\ucrtbase.dll
      21:08:50.0262 0x1cd4 C:\Windows\SysWOW64\ucrtbase.dll - ok
      21:08:50.0262 0x1cd4 [ D4E92C47B6C435C1355B7DCD44114EC6, 230472F52AF2DB79C116C58DC8EFE1C31B12C28A20DA5A7D16 62B1D4743F82B9 ] C:\Windows\System32\taskcomp.dll
      21:08:50.0262 0x1cd4 C:\Windows\System32\taskcomp.dll - ok
      21:08:50.0262 0x1cd4 [ 9F63C8A45AEDE3FA73FF308849BB5962, 458EEC15F0FBF1327780EC98F3EEAB7897A5D1F43FACEF7375 E61960869325A2 ] C:\Windows\System32\igd10iumd64.dll
      21:08:50.0262 0x1cd4 C:\Windows\System32\igd10iumd64.dll - ok
      21:08:50.0262 0x1cd4 [ 9B5701A33BA8CE1E547645FFAF4CDD18, 21FF6D6FD79A9E163BD6564AD6CCA31CE2D0A1C915B1753801 1C6B2A2A6C4089 ] C:\Windows\System32\mfcore.dll
      21:08:50.0262 0x1cd4 C:\Windows\System32\mfcore.dll - ok
      21:08:50.0262 0x1cd4 [ E04AA4CE5ED46A22D1E19E7D422F5282, 1FD6E2787AAB50F628D31E1B0C7795AE5B8DB055F46056D23D 508913D63F55F0 ] C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
      21:08:50.0262 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - ok
      21:08:50.0278 0x1cd4 [ 09FB1E45C38939B300140F01D14D0E6A, 750EF2C02171F0827D41FBE0D923DED9A125AE749E0B6E7ACC C1F018AD999ABE ] C:\Windows\SysWOW64\combase.dll
      21:08:50.0278 0x1cd4 C:\Windows\SysWOW64\combase.dll - ok
      21:08:50.0278 0x1cd4 [ 6C825045ED7B48BE2D7F255F6403677A, E6407DF1EAEFFAB18D8BA940BC8B032416BE1003F89D14F9FA 497CDC27432527 ] C:\Windows\System32\WPTaskScheduler.dll
      21:08:50.0278 0x1cd4 C:\Windows\System32\WPTaskScheduler.dll - ok
      21:08:50.0278 0x1cd4 [ F232790A164BD9368AFCA4314D16A7B4, 816AF63C24565574E72F104A6FCE04D86916C2C919D43E1A71 C761D63F67B633 ] C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll
      21:08:50.0278 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - ok
      21:08:50.0278 0x1cd4 [ F062310DC30054946E1E239086C8AA5B, AB559FA4F2509AA70592A14CA15FE5EF4C90C45F0033B8FD5D D4DF4920ABF62B ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstres.dll
      21:08:50.0278 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstres.dll - ok
      21:08:50.0278 0x1cd4 [ 78DA58DF85F86CA61E5EAFB9EF0A83BE, 3216205F5C355D582EC4B902651B62E1FF3EFFDCA40BC849D4 74F13F1325E962 ] C:\Windows\System32\msimg32.dll
      21:08:50.0278 0x1cd4 C:\Windows\System32\msimg32.dll - ok
      21:08:50.0278 0x1cd4 [ 7188CC9F62B0F140922EBA599BCF518D, 08EACF5C01DB32EA39D2B81FB527ADE77E1E688D9057822162 9E8E39AAA3D66A ] C:\Windows\System32\wevtsvc.dll
      21:08:50.0278 0x1cd4 C:\Windows\System32\wevtsvc.dll - ok
      21:08:50.0294 0x1cd4 [ 82C80389894E870015C87CF3C30DB84A, 5499E1384C34CB98BFAD8E83BBE935E6BBA11F5D50A57985C6 7B8BFA14F24760 ] C:\Windows\System32\winspool.drv
      21:08:50.0294 0x1cd4 C:\Windows\System32\winspool.drv - ok
      21:08:50.0294 0x1cd4 [ 1A285D1020E3D6FC310A1D68FC8CBA9C, 3CF79471BE2C6227A967B8C0398CF2E020DE4DD54AC448C63F 1ED41C4E02CE13 ] C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_ 6595b64144ccf1df_1.1.14393.321_none_72fe05dd211a5f ae\GdiPlus.dll
      21:08:50.0294 0x1cd4 C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_ 6595b64144ccf1df_1.1.14393.321_none_72fe05dd211a5f ae\GdiPlus.dll - ok
      21:08:50.0294 0x1cd4 [ F6D51751A82B7E45339C6E76336AAE59, D422E5AC48ABB4EE48372472FC21178B8D304FC0BFA8DD7BF2 B8B93E9F174E26 ] C:\Program Files\NVIDIA Corporation\Display\nvui.dll
      21:08:50.0294 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvui.dll - ok
      21:08:50.0294 0x1cd4 [ 232F723B3C38FE1E185FEB9D08CFDEBA, AF0CD47191FE968190F9149AB9923A0B92BDCC74C04DD095D8 9AAFFF9DD447E1 ] C:\Windows\System32\CSystemEventsBrokerClient.dll
      21:08:50.0294 0x1cd4 C:\Windows\System32\CSystemEventsBrokerClient.dll - ok
      21:08:50.0294 0x1cd4 [ 725F5C26331AE8F24BAD8BC2AB99DB9E, 894456A63E90AE0E25A2413E0B2CF0CB410F158B2E1C0C216E 4855A948BC7F66 ] C:\Windows\System32\ksuser.dll
      21:08:50.0294 0x1cd4 C:\Windows\System32\ksuser.dll - ok
      21:08:50.0309 0x1cd4 [ 6353CC87D596CA0D9DECC607C9B13B66, FA8F7DF1618F0C1E88A0049695FF4537BEDB6750327CC0EB17 730B6DA1B2D0C5 ] C:\Windows\System32\oleacc.dll
      21:08:50.0309 0x1cd4 C:\Windows\System32\oleacc.dll - ok
      21:08:50.0309 0x1cd4 [ CF51D9590C1FD8E2CD2F35E13DC41969, F5650405D04FCB05363374265BE776A5FAA64E47310A94D922 6A35CF05C0EFE4 ] C:\Windows\System32\igd10idpp64.dll
      21:08:50.0309 0x1cd4 C:\Windows\System32\igd10idpp64.dll - ok
      21:08:50.0309 0x1cd4 [ CF7308D27A2B2851249A7CE892017305, 73D4A73FC5150C432A237998F26499807D394CCC5D3602B482 D8A2723A45E947 ] C:\Windows\SysWOW64\ntmarta.dll
      21:08:50.0309 0x1cd4 C:\Windows\SysWOW64\ntmarta.dll - ok
      21:08:50.0309 0x1cd4 [ 77EF27DE3F9EE10A0E240AA4FA642650, 99F88E978278F69A8C11FA0FC007E53A001FFD38C118403DF2 EE1B7B02421F75 ] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvwl.dll
      21:08:50.0309 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvwl.dll - ok
      21:08:50.0309 0x1cd4 [ A1C818C3666DC5D95C40F36EF7B70685, C0EC28238B5D48E2F09C0490AE38C5C6D9AC1FB44D315ABC0A 79F837701732A8 ] C:\Windows\SysWOW64\devobj.dll
      21:08:50.0309 0x1cd4 C:\Windows\SysWOW64\devobj.dll - ok
      21:08:50.0309 0x1cd4 [ E4BDE75B8A2B008D2F6E3F080FDCF51B, 59FDB76FF3F147A683FD21E250AE7EBC1A917C4623E5BEC1B3 4288D01681F286 ] C:\Windows\SysWOW64\wintrust.dll
      21:08:50.0309 0x1cd4 C:\Windows\SysWOW64\wintrust.dll - ok
      21:08:50.0325 0x1cd4 [ CFDB018AC09F879CAAE7A66CA7880D57, 6AB95FD0D142CFFC3B9455AF51F003E1CD75B7F4323820390B 975F9E1C8A47A5 ] C:\Windows\System32\version.dll
      21:08:50.0325 0x1cd4 C:\Windows\System32\version.dll - ok
      21:08:50.0325 0x1cd4 [ A9FAD443A2F9424AB7B21A183050F206, DDE1DDDB58D4BFDFF342AD95562786A695B1B2CC92532FE3E8 AF745493D43BE9 ] C:\Windows\System32\Windows.UI.Xaml.dll
      21:08:50.0325 0x1cd4 C:\Windows\System32\Windows.UI.Xaml.dll - ok
      21:08:50.0325 0x1cd4 [ B9E62180B99CC182E55B9B84229906B4, FF4E829F4DD43AA5844D4EDE8BDB1C6B1246C1702CACB4DF25 B4219B2B1E1CD7 ] C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.14393.447_none_0d5a a7fbb6d35646\comctl32.dll
      21:08:50.0325 0x1cd4 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.14393.447_none_0d5a a7fbb6d35646\comctl32.dll - ok
      21:08:50.0325 0x1cd4 [ 5E8336C79BE0C2F1080B575E434DD0E4, FB7EB70237B5897F875CE8786C26E09F61120DB4A91376A654 33EEDCFA634A11 ] C:\Windows\SysWOW64\msasn1.dll
      21:08:50.0325 0x1cd4 C:\Windows\SysWOW64\msasn1.dll - ok
      21:08:50.0325 0x1cd4 [ 5D52820BCF597EAC5B109D1494B149BA, 85687C329D30D3722F3AE28BA3435420B9C61769FDAC6E9F62 78E08C7105E810 ] C:\Windows\SysWOW64\crypt32.dll
      21:08:50.0325 0x1cd4 C:\Windows\SysWOW64\crypt32.dll - ok
      21:08:50.0341 0x1cd4 [ AECF895843A22531E976D7BD14722574, C0BC1BA0D0FC530868540E28D60C4EFF002CA19F1E6608B5FA 448AB52AECBC04 ] C:\Windows\System32\igdusc64.dll
      21:08:50.0341 0x1cd4 C:\Windows\System32\igdusc64.dll - ok
      21:08:50.0341 0x1cd4 [ DA7698A2C31D11659FB413ED300999A2, DE89F61CEB6506216C6888DCCD2757C9EFDA9A4E2A3B56B7A7 696C77041FB531 ] C:\Windows\System32\nvsvc64.dll
      21:08:50.0341 0x1cd4 C:\Windows\System32\nvsvc64.dll - ok
      21:08:50.0341 0x1cd4 [ F89083AB8B9F51C0031C1CBD0A9A7E35, 9EE973A25134960E62D1A6A1E34AD9B3F7690E71C1AD31A23F A2081A73438754 ] C:\Windows\System32\es.dll
      21:08:50.0341 0x1cd4 C:\Windows\System32\es.dll - ok
      21:08:50.0341 0x1cd4 [ 2922D8EE2DEB5F857DC75137E9E52741, 2BFAC7A6F468E54F64CCF75BE4858BB23E8E412F68CA3B6BAB 3EF3AA532960FA ] C:\Windows\System32\nvapi64.dll
      21:08:50.0341 0x1cd4 C:\Windows\System32\nvapi64.dll - ok
      21:08:50.0341 0x1cd4 [ 2AF438EC0D361A7BBB70E604A686602C, 4BE6A0461EB2CB94288614434A1CEC81C2ED46241721FD5BBD 8ABE0680F7C804 ] C:\Windows\System32\themeservice.dll
      21:08:50.0341 0x1cd4 C:\Windows\System32\themeservice.dll - ok
      21:08:50.0356 0x1cd4 [ E1913C16CFFA87214FD9BA876117DE77, 8C73A82194E1DCEE93B6A2218841FC8572039E8081D184338D 499A189D819754 ] C:\Windows\System32\d2d1.dll
      21:08:50.0356 0x1cd4 C:\Windows\System32\d2d1.dll - ok
      21:08:50.0356 0x1cd4 [ 11EC1BFF01763C8FAD7B1424468E89F7, CC6BDB792D6481299231A18C144FB21AC982E4E50DB9DB33CB 5468D0B3C04CDE ] C:\Windows\System32\iertutil.dll
      21:08:50.0356 0x1cd4 C:\Windows\System32\iertutil.dll - ok
      21:08:50.0356 0x1cd4 [ 1993C85962692EF7024501E7FE92D466, F5BCAA8308495EBF8BB061C2015E07C202A779668D171364D7 E312975BC18B10 ] C:\Windows\System32\nsisvc.dll
      21:08:50.0356 0x1cd4 C:\Windows\System32\nsisvc.dll - ok
      21:08:50.0356 0x1cd4 [ EF3C8121ACF890BD866AA569CAD148A4, 423854714FBA2BE3A9E30DE2919BA43F35B586B2CBAD566402 515096E786A0B2 ] C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll
      21:08:50.0356 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll - ok
      21:08:50.0356 0x1cd4 [ 1936D3D892367984EAC7B5E9419E422E, 740D1CE172CD37403BB6993ADAC01240626494BA1BECA5DA0D 8041A622EA5D7C ] C:\Windows\SysWOW64\devrtl.dll
      21:08:50.0356 0x1cd4 C:\Windows\SysWOW64\devrtl.dll - ok
      21:08:50.0356 0x1cd4 [ 52A50D6838A6ED4255FF8B0CE2BC4B11, 905A46B1904A9E5C5713C18191A69251029EC083B2B1A21299 37445BD2FA50DB ] C:\Windows\System32\Windows.UI.Immersive.dll
      21:08:50.0356 0x1cd4 C:\Windows\System32\Windows.UI.Immersive.dll - ok
      21:08:50.0372 0x1cd4 [ 7A3BABA3D451EF2A20C2AEA5083F51D2, ED2B61C8C0BC69D1DBEECDDA222B7BF47825BF3D76848FA16B A2D6C478ED85E3 ] C:\Windows\System32\mscms.dll
      21:08:50.0372 0x1cd4 C:\Windows\System32\mscms.dll - ok
      21:08:50.0372 0x1cd4 [ 1746D89691467AB410453F2E7AF1898B, 0032C11AFA036F6AAC8F3E9EF90D8702372072B1AEF47382C7 B167E0450D9CFB ] C:\Windows\SysWOW64\spinf.dll
      21:08:50.0372 0x1cd4 C:\Windows\SysWOW64\spinf.dll - ok
      21:08:50.0372 0x1cd4 [ 31DD264AAC7C43E3D75EC31980499827, 368ECB41769CF95D8A12169BE7EED9D0A26C7777DAA3B4CE6E 81057209AFC1CB ] C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_42191 651c6827bb3\comctl32.dll
      21:08:50.0372 0x1cd4 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_42191 651c6827bb3\comctl32.dll - ok
      21:08:50.0372 0x1cd4 [ F0D4400BA0F08610D9A551B15BF10B76, 83EB8FB272FC2DD2CC0659C2FB90AD0DAE88A88AB3951E03BC D933A25B601E10 ] C:\Windows\System32\dhcpcore.dll
      21:08:50.0372 0x1cd4 C:\Windows\System32\dhcpcore.dll - ok
      21:08:50.0387 0x1cd4 [ 49A6050FBE7C8D0B3C5E1A2A55E1BFC4, 87E61AEF3B9740ACB2E8CFD95CB883519B539E9EB68CEDF30F 26E2443DED98D9 ] C:\Windows\SysWOW64\drvstore.dll
      21:08:50.0387 0x1cd4 C:\Windows\SysWOW64\drvstore.dll - ok
      21:08:50.0387 0x1cd4 [ B4FE29CABDBCF483F4363FDFE6FBB94D, CCC413E939ED04500ADC4E61B22240004D97E0D06283520F02 CC1B732BC0471B ] C:\Windows\System32\xmllite.dll
      21:08:50.0387 0x1cd4 C:\Windows\System32\xmllite.dll - ok
      21:08:50.0387 0x1cd4 [ 2ADA0B221942ED692B172B236541C392, 89266E5C962E3B157ABDA7A22BF11C87927EBDECA991CF7E04 0AAC3A5C68393F ] C:\Windows\System32\dhcpcore6.dll
      21:08:50.0387 0x1cd4 C:\Windows\System32\dhcpcore6.dll - ok
      21:08:50.0387 0x1cd4 [ BEEAF797DD0818111A2C8201134BC9A0, 0310A33FE97712528BEE591270677924FB3BC2FEA43C25B1B2 C71214D32A2DD3 ] C:\Windows\System32\nvsvcr.dll
      21:08:50.0387 0x1cd4 C:\Windows\System32\nvsvcr.dll - ok
      21:08:50.0403 0x1cd4 [ B4137759ACABA2FDC5A2EA8B2CF4B3F5, 87C77FBBAF8DF3E1AE8414F32D23AEE8E1A360937056CD2F36 588A93CDB64778 ] C:\Windows\System32\winnsi.dll
      21:08:50.0403 0x1cd4 C:\Windows\System32\winnsi.dll - ok
      21:08:50.0403 0x1cd4 [ 37BD0ED26D65A28E7CAA32F446BDA67A, 5D65974B3B98CFF1667C7DAA81BD42965CAC036CAE94A4C9C2 DCFBB1902543D7 ] C:\Windows\System32\wevtapi.dll
      21:08:50.0403 0x1cd4 C:\Windows\System32\wevtapi.dll - ok
      21:08:50.0403 0x1cd4 [ DBB56AA617A949B96B68E588F7C4D01D, A61333B6EFDAE4C64D08B72E03A10590AEC4A00B635C41C01D F1478DE30C7CD3 ] C:\Windows\System32\nvinitx.dll
      21:08:50.0403 0x1cd4 C:\Windows\System32\nvinitx.dll - ok
      21:08:50.0419 0x1cd4 [ F48535714BED7DD784853889B4594B26, 9B4AB7E7293E79A8F6CC46C84F23E62AD3BD6E958FCE078CDB B125A69FAC7E50 ] C:\Windows\System32\Sens.dll
      21:08:50.0419 0x1cd4 C:\Windows\System32\Sens.dll - ok
      21:08:50.0419 0x1cd4 [ 08A4A2712DB2AE10E483FB74E46B0E73, EEB32E3E4256CC9935227ACD5BA576B75F1F6FE3C818D21275 13CB22F823FECB ] C:\Windows\System32\cabinet.dll
      21:08:50.0419 0x1cd4 C:\Windows\System32\cabinet.dll - ok
      21:08:50.0419 0x1cd4 [ 9D1D7DCD318AFF3F9CB0F2071AADD0E4, A1DD4D0442B70766FE4E4B394B09CD309E1118E9C5F0D66F32 7B36B476C10AE8 ] C:\Windows\System32\netjoin.dll
      21:08:50.0419 0x1cd4 C:\Windows\System32\netjoin.dll - ok
      21:08:50.0419 0x1cd4 [ 4D2F68E0BC1F8C8DEC9DDE1DBB6D30C7, 0BE9C303E8FA193783D41C61B7B0AB04C48B773E8EF78F284E B13B56F8E5DD5D ] C:\Windows\System32\DWrite.dll
      21:08:50.0419 0x1cd4 C:\Windows\System32\DWrite.dll - ok
      21:08:50.0434 0x1cd4 [ A5542ADE048814F3A775D1EE19A8592B, 827A3C0FAC237C404C25231E4E7CDF49C81D1C0B8954B0ECA2 C1E851455814B1 ] C:\Windows\System32\nvcpl.dll
      21:08:50.0434 0x1cd4 C:\Windows\System32\nvcpl.dll - ok
      21:08:50.0434 0x1cd4 [ 9B9F520C72EE33EAEC857124BB800243, DFA9386B272F4D86F3E4BE861A2FC4617261E1AA40576DDA61 0FC24AB4961A63 ] C:\Windows\System32\nlasvc.dll
      21:08:50.0434 0x1cd4 C:\Windows\System32\nlasvc.dll - ok
      21:08:50.0434 0x1cd4 [ 0A036F2F7A0865C38B9746585288F02E, D7F242E7262A1A0F24ECE3977D813D709F1B694C412453E50C B3CD3DB2F471EF ] C:\Windows\System32\dhcpcsvc.dll
      21:08:50.0434 0x1cd4 C:\Windows\System32\dhcpcsvc.dll - ok
      21:08:50.0434 0x1cd4 [ BB23DF07C549E3CBE21AA0D8E2CFCF2E, 3C0C0A376803A74DDA5DA4EF8A856141A73086176C0391C908 E5AC3DA9415FB2 ] C:\Windows\System32\ncsi.dll
      21:08:50.0434 0x1cd4 C:\Windows\System32\ncsi.dll - ok
      21:08:50.0450 0x1cd4 [ 47A800597859C6DE090F2291CD695413, 27B28A4BC8BEA27C423CAB6C5B913638597BF2437D7EF2B403 21C98474ECDB5F ] C:\Program Files\Lenovo\SettingsDependency\SettingsCmnFramewo rk.dll
      21:08:50.0450 0x1cd4 C:\Program Files\Lenovo\SettingsDependency\SettingsCmnFramewo rk.dll - ok
      21:08:50.0450 0x1cd4 [ C20AA1C87E29746C3745FA8BD5849233, 882161948A7E798D1F3F1A884177640D337D51C8895DE9BC7C 5F244F0B51B9D4 ] C:\Windows\System32\Windows.Globalization.dll
      21:08:50.0450 0x1cd4 C:\Windows\System32\Windows.Globalization.dll - ok
      21:08:50.0450 0x1cd4 [ 068DEB96D84B09934C277C7D57F2C3A3, 1515E1A588614C05E8529A4390BDDCC7EB97AF6BB275FFB469 2E6DA66147A1B5 ] C:\Windows\System32\TimeBrokerClient.dll
      21:08:50.0450 0x1cd4 C:\Windows\System32\TimeBrokerClient.dll - ok
      21:08:50.0450 0x1cd4 [ 0E1853D3339D2963D2BC6AC1FDC1C811, A0A677D6C943AD1A7BC1879DFCCB400211DF68100F8EDD7BA6 120067A18BEE0B ] C:\Windows\System32\taskhostw.exe
      21:08:50.0450 0x1cd4 C:\Windows\System32\taskhostw.exe - ok
      21:08:50.0450 0x1cd4 [ B2B5F4969C0AE53315648E37D8CE0972, 8D607E71D707C5F63B9462E834BC5CC75FAF7DA8215FD7C440 AE1188AAE2D26A ] C:\Windows\System32\igfxCUIService.exe
      21:08:50.0450 0x1cd4 C:\Windows\System32\igfxCUIService.exe - ok
      21:08:50.0450 0x1cd4 [ B850DBC51294011704E28F18C71D1938, D871C853905E0CF85A0209E28F41DA687B2CB85B6CF6133CB5 233AC394A17CA4 ] C:\Windows\System32\ssdpapi.dll
      21:08:50.0450 0x1cd4 C:\Windows\System32\ssdpapi.dll - ok
      21:08:50.0466 0x1cd4 [ E108899987E44980B5857C05ACD44BD2, 7570B180597472B0AC4E89EAEC2ED8A5FF4BFA56668ACFBED2 6255B96B046F47 ] C:\Windows\System32\dhcpcsvc6.dll
      21:08:50.0466 0x1cd4 C:\Windows\System32\dhcpcsvc6.dll - ok
      21:08:50.0466 0x1cd4 [ D5FC5464876CD173C2C8E63FA9253BB7, 219E41BD711A7920611D3396630A73103A2739C4F4286CCE17 0FAD84BDB6F82F ] C:\Program Files\Lenovo\SettingsDependency\x64\LSHelperDLL.dl l
      21:08:50.0466 0x1cd4 C:\Program Files\Lenovo\SettingsDependency\x64\LSHelperDLL.dl l - ok
      21:08:50.0466 0x1cd4 [ 5DF94E80A9289E929D06CC7821151943, 4D81048F495E06343E9F0E58D653A356A73E6CE3E6208DC82D C2190A12AA08F9 ] C:\Windows\System32\directmanipulation.dll
      21:08:50.0466 0x1cd4 C:\Windows\System32\directmanipulation.dll - ok
      21:08:50.0466 0x1cd4 [ EB29E99F261CCC1DFD21D2698C986A41, 139A03F5F2B1CE62607C667D09B1B8949045D4380CDD603C60 3395E08EB2E300 ] C:\Windows\System32\wlanapi.dll
      21:08:50.0466 0x1cd4 C:\Windows\System32\wlanapi.dll - ok
      21:08:50.0466 0x1cd4 [ 54091C1844FD6DDACE5D92AD723E465E, 6F6E6504E49C9661A991DF6332F8A12E0CD29F1142835D563F 18B216AC28A8B9 ] C:\Program Files (x86)\Lenovo\Lenovo Settings\MHHelperDLL.dll
      21:08:50.0466 0x1cd4 C:\Program Files (x86)\Lenovo\Lenovo Settings\MHHelperDLL.dll - ok
      21:08:50.0481 0x1cd4 [ 09195D0577C01F6C6706EBA00AE3FC33, 715A63038E88884B9F0BAEFE97CB6B212D384990B00793A743 DFF1B4707E642E ] C:\Windows\System32\FontGlyphAnimator.dll
      21:08:50.0481 0x1cd4 C:\Windows\System32\FontGlyphAnimator.dll - ok
      21:08:50.0481 0x1cd4 [ 59F44051BCD479E70446506B7E4E78BB, CB58E55196EC702DC85916F963A3C16D429C141391F9AA7F41 5BD63E7328C4C6 ] C:\Windows\System32\AudioEndpointBuilder.dll
      21:08:50.0481 0x1cd4 C:\Windows\System32\AudioEndpointBuilder.dll - ok
      21:08:50.0481 0x1cd4 [ F0360418DAEAF2125F6220CA41101B21, 82F5793A0685701FCBDCFDCC39F2DA864028B6F77EBA0D0CFA 976CCB8DAAE721 ] C:\Windows\System32\drivers\UMDF\LenUmdfPassthruDr iver.dll
      21:08:50.0481 0x1cd4 C:\Windows\System32\drivers\UMDF\LenUmdfPassthruDr iver.dll - ok
      21:08:50.0481 0x1cd4 [ D2F15FAAD2F3CDD54C7DE842B24E1A2A, A71B9ACD809474BBF9C6EF65C72ECF563BF559F7A9C9F36EA2 FA512A813E2B9F ] C:\Windows\System32\MMDevAPI.dll
      21:08:50.0481 0x1cd4 C:\Windows\System32\MMDevAPI.dll - ok
      21:08:50.0481 0x1cd4 [ F2645D51DD8AABC8BC72358409410437, 8CB97628923D6CEA6EFAD7E666BE92C154060BD108C28D4628 7A520A14B18ADA ] C:\Windows\System32\netprofmsvc.dll
      21:08:50.0481 0x1cd4 C:\Windows\System32\netprofmsvc.dll - ok
      21:08:50.0497 0x1cd4 [ 91472DBA1BE43EAF6709A3AA24A2D862, F6B56587029F4FFD4FABB9703F21CFD3776BB53950763515B9 A031D9B95D9BC4 ] C:\Windows\System32\wbem\wbemprox.dll
      21:08:50.0497 0x1cd4 C:\Windows\System32\wbem\wbemprox.dll - ok
      21:08:50.0497 0x1cd4 [ 31EB34EF0BA43F1F106DD1F19A6A489B, 2A0002ACC6940D293E3E3FE2035C9AA0D639964F752C1C8C11 ED867251E8D83C ] C:\Windows\System32\spinf.dll
      21:08:50.0497 0x1cd4 C:\Windows\System32\spinf.dll - ok
      21:08:50.0497 0x1cd4 [ E438E79F63063EC73A6FD3787048DFCF, 797162923179DE31E027C6DCB0D389DC41E2E87FA406953E1C CE2264926D6DF8 ] C:\Windows\System32\wbemcomn.dll
      21:08:50.0497 0x1cd4 C:\Windows\System32\wbemcomn.dll - ok
      21:08:50.0497 0x1cd4 [ E80082B436DD330B8B0365D27289ED7A, 6B96935368315FAFFADB40974F04ACFC72FC5068898733E504 AD184C9DDAB418 ] C:\Windows\System32\drivers\UMDF\DDP_UMDF.dll
      21:08:50.0497 0x1cd4 C:\Windows\System32\drivers\UMDF\DDP_UMDF.dll - ok
      21:08:50.0497 0x1cd4 [ 49BF5C8182C3D2D6CD9F7EEDF1CFDB66, 0977EBE86B57FC370D27CA69D58122397D5D5369AF0C8DBCC4 92AE7AD55CBA2B ] C:\Windows\System32\FntCache.dll
      21:08:50.0497 0x1cd4 C:\Windows\System32\FntCache.dll - ok
      21:08:50.0512 0x1cd4 [ 329B81E3422F0D8D7ADFADFD7E90FF46, B09FDD72F8697AB4AA22577316300FD356281690DAF4C8A308 8E7E1530E65697 ] C:\Windows\System32\DDPA64.dll
      21:08:50.0512 0x1cd4 C:\Windows\System32\DDPA64.dll - ok
      21:08:50.0512 0x1cd4 [ 86153F7DFE432FA60B884FC7FFD08A56, F24153D7AEE286895B1C67496B7AE70D91F5E3E0983A7E9D08 3CB91A75321CBA ] C:\Windows\System32\npmproxy.dll
      21:08:50.0512 0x1cd4 C:\Windows\System32\npmproxy.dll - ok
      21:08:50.0512 0x1cd4 [ 4D9373FFEB6219B73D4C4913D7B39D95, 8866D3A061DF093344D57A0E7F72D571103644FD7A7524A05E 0C34B261CCAACC ] C:\Windows\System32\drivers\UMDF\iMDriver.dll
      21:08:50.0512 0x1cd4 C:\Windows\System32\drivers\UMDF\iMDriver.dll - ok
      21:08:50.0512 0x1cd4 [ 5933A6673F00D8255C52957E40C2D601, 0AA1281F8B3F97E360592D1B35EE7D3D614F1AB46007F9884C FFB1C5E647575E ] C:\Windows\System32\drivers\lltdio.sys
      21:08:50.0512 0x1cd4 C:\Windows\System32\drivers\lltdio.sys - ok
      21:08:50.0512 0x1cd4 [ CD49CA8E3280ACEEC5ECF431A59F5EFD, 75F48EFC6DEE9E06B490703EE47602AFDEA51505285B02D2CF 884601E71857CC ] C:\Windows\System32\wbem\WMIsvc.dll
      21:08:50.0512 0x1cd4 C:\Windows\System32\wbem\WMIsvc.dll - ok
      21:08:50.0528 0x1cd4 [ 0464DED372C0A0A6759B1811E6A2C132, 65E91785FB45B2DEEEFBD0D4574281A742D4E96B75169D3D9E 6B365CF26E1727 ] C:\Windows\System32\FontProvider.dll
      21:08:50.0528 0x1cd4 C:\Windows\System32\FontProvider.dll - ok
      21:08:50.0528 0x1cd4 [ CC6B29E0AFB06C60FC4EB413BA7BD189, 78B6D8287D17ACEBD0F05A02C20BDF1F0196F9E48B57C86F3A AE8A45C87E7DED ] C:\Windows\System32\iMDriverHelper.dll
      21:08:50.0528 0x1cd4 C:\Windows\System32\iMDriverHelper.dll - ok
      21:08:50.0528 0x1cd4 [ 642CDE46351D5D2D90311E77072AB46D, B2D3033E607BA2F6E6B9CFB1CBF154CD0CE910EA473C56343E C81B9B94044CCA ] C:\Windows\System32\drivers\mslldp.sys
      21:08:50.0528 0x1cd4 C:\Windows\System32\drivers\mslldp.sys - ok
      21:08:50.0528 0x1cd4 [ B2B0EB8BB0D741B798C691A9FED1B7B8, D60108C40B7950943C79811C549B424DC28C7F71A8BBA7B92F DA8DE5A5AFE431 ] C:\Windows\System32\BthRadioMedia.dll
      21:08:50.0528 0x1cd4 C:\Windows\System32\BthRadioMedia.dll - ok
      21:08:50.0528 0x1cd4 [ 5FF28F097C9699097B473F8FC7C1AA7D, 695560F1DBD85073F3D6CB1FF16F16504CA044EA62E940E463 A16BBA8B86E2FA ] C:\Windows\System32\drivers\rspndr.sys
      21:08:50.0528 0x1cd4 C:\Windows\System32\drivers\rspndr.sys - ok
      21:08:50.0528 0x1cd4 [ CEF3D306C09BEC1A800E9B4A06F859F6, 75D21F97E9F94FA97024F945AF512FEC94F88DD8073F3FAD92 A6E0A9FDC586DB ] C:\Windows\System32\drivers\wanarp.sys
      21:08:50.0528 0x1cd4 C:\Windows\System32\drivers\wanarp.sys - ok
      21:08:50.0544 0x1cd4 [ 1C986DC8F4FDA1B040AC1176FB24467F, DEDA2FF4D0369348C2A74D29FB08AC86219BBCFDF44C59339B C39A25AE0727EB ] C:\Windows\System32\audiosrv.dll
      21:08:50.0544 0x1cd4 C:\Windows\System32\audiosrv.dll - ok
      21:08:50.0544 0x1cd4 [ 650D1EC42258A07F718F9DFDCBBE5A4C, 38E798A53836FAC137406349C8201118A5956C5CD9AD5DC730 AE42D00E71D115 ] C:\Windows\System32\vssapi.dll
      21:08:50.0544 0x1cd4 C:\Windows\System32\vssapi.dll - ok
      21:08:50.0544 0x1cd4 [ AEB8ECBE66CC46854066CB1F5623E179, 2F650A85A9DAE38887610C0B876621035616CEDB65D4BBBD7F 1405616D218AAF ] C:\Windows\System32\drivers\ndisuio.sys
      21:08:50.0544 0x1cd4 C:\Windows\System32\drivers\ndisuio.sys - ok
      21:08:50.0544 0x1cd4 [ DB31EBB04C871F422C36A0962DA7D38B, B1BC2344744F537FB2C7D07B415F860195B7795E185253F05C 0817A3764FEC10 ] C:\Windows\System32\drivers\nwifi.sys
      21:08:50.0544 0x1cd4 C:\Windows\System32\drivers\nwifi.sys - ok
      21:08:50.0544 0x1cd4 [ 28AEA9AC3951A7A981FEDD50B02CCEE0, DFD3101ADA9B7D6D436D3E3330503E25ABAAE11C573204A166 B5A978038A4856 ] C:\Windows\System32\AudioSrvPolicyManager.dll
      21:08:50.0544 0x1cd4 C:\Windows\System32\AudioSrvPolicyManager.dll - ok
      21:08:50.0544 0x1cd4 [ CBF0D036235885F61734A41086786A92, E7F9569CE4F43078EE2B266439AC24F40D1D80C3F693A04894 ADE0CDB85A90F9 ] C:\Windows\System32\vsstrace.dll
      21:08:50.0544 0x1cd4 C:\Windows\System32\vsstrace.dll - ok
      21:08:50.0559 0x1cd4 [ CE63FC7370A8336A6543DEBAB4EC0174, 436F5416BB9389688CC5565D1A079260F2164A94152CE62912 BBD0AD6F97B19A ] C:\Windows\System32\InputSwitch.dll
      21:08:50.0559 0x1cd4 C:\Windows\System32\InputSwitch.dll - ok
      21:08:50.0559 0x1cd4 [ AEF1161232D111EEA93F64B203F131AE, C1DA3DF389A414AAA26FEEEA28F35AAC202CE3A5CC3AF26B7C 0C14EBBC2157F9 ] C:\Windows\System32\samcli.dll
      21:08:50.0559 0x1cd4 C:\Windows\System32\samcli.dll - ok
      21:08:50.0559 0x1cd4 [ FFC70708681BDD6C0CFF0F07F375952F, 356B6A14E5F18849DD11984D1AC6DDD17F5CE58B57A5FFFD49 26BF404474BB81 ] C:\Windows\System32\coreaudiopolicymanagerext.dll
      21:08:50.0559 0x1cd4 C:\Windows\System32\coreaudiopolicymanagerext.dll - ok
      21:08:50.0559 0x1cd4 [ 12BBCC45F54D25603314599D7CA90B8B, 700D137441DAEC643D84589209ABBF8AA163F7F4E727F9F5E5 1A9DD6552A2A48 ] C:\Windows\System32\TpmTasks.dll
      21:08:50.0559 0x1cd4 C:\Windows\System32\TpmTasks.dll - ok
      21:08:50.0559 0x1cd4 [ EC449756B377F4330B2885567112ACF5, 88FCD7F748A0DE0C0CE72B3BD824D6B9A6E8B3C9C3B44E8E7C E2CE6A1B225C18 ] C:\Windows\System32\actxprxy.dll
      21:08:50.0559 0x1cd4 C:\Windows\System32\actxprxy.dll - ok
      21:08:50.0575 0x1cd4 [ 46C84924542A3FDEB68A435BE6129E75, EE6F33DEA47EA87209A1B2FA86391A76EC2C9CA4187B29311B 94E67EACC14087 ] C:\Windows\System32\TpmCoreProvisioning.dll
      21:08:50.0575 0x1cd4 C:\Windows\System32\TpmCoreProvisioning.dll - ok
      21:08:50.0575 0x1cd4 [ 32960EA9CF836D7DD77767DCB68CE230, 679446A4FAB0331C181D2716CAEA225267C6164BB9867E360C 5B3D6AB1083195 ] C:\Windows\System32\wcmsvc.dll
      21:08:50.0575 0x1cd4 C:\Windows\System32\wcmsvc.dll - ok
      21:08:50.0575 0x1cd4 [ C2A3B07F0118D61086C99BDCBAB6A6A3, 04D646BEF1C6F427503C594F0ECBB33140C3991A3A7AFB66B2 C9581E358F9FD2 ] C:\Windows\System32\winhttp.dll
      21:08:50.0575 0x1cd4 C:\Windows\System32\winhttp.dll - ok
      21:08:50.0575 0x1cd4 [ A5B6864D8B0C17EFEE2ABF6721F02E3E, 2876AC892A8B2EDD4FCB4193F2779899C43EABBF3C9CE24A4C 822D3DDB17185D ] C:\Windows\System32\wcmcsp.dll
      21:08:50.0575 0x1cd4 C:\Windows\System32\wcmcsp.dll - ok
      21:08:50.0575 0x1cd4 [ D35D3FD9E04A9D116745D4C3DF8FE177, 49D2A824F21E0C05EDDA8403F6BCC2B1F1094CB570E30A06E9 F4A12898303818 ] C:\Windows\System32\wbem\wbemcore.dll
      21:08:50.0575 0x1cd4 C:\Windows\System32\wbem\wbemcore.dll - ok
      21:08:50.0575 0x1cd4 [ E3515905FD4337442B5AA0B6537C89AD, CD5B38BFBCBB0BDB9D8BF5EEEE4C99397128D4DBC8F6A8C0AA 229AAB257E06CD ] C:\Windows\System32\activeds.dll
      21:08:50.0575 0x1cd4 C:\Windows\System32\activeds.dll - ok
      21:08:50.0591 0x1cd4 [ 43A8752487FD220B0B79A2BB5E9E7362, F10D240A31385017735BCD100DC9DD235820F248903437CFB0 B60643A2FEE134 ] C:\Windows\System32\cmintegrator.dll
      21:08:50.0591 0x1cd4 C:\Windows\System32\cmintegrator.dll - ok
      21:08:50.0591 0x1cd4 [ 6078592CD0394BBB4E44891153375600, 14BAD52B78F53A114433F7726B91677B591E56737E3EAA0CC6 59A9B157D6FF0B ] C:\Windows\System32\wbem\esscli.dll
      21:08:50.0591 0x1cd4 C:\Windows\System32\wbem\esscli.dll - ok
      21:08:50.0591 0x1cd4 [ C2F7834269D565263C65757EDE37A66C, 17651A35255229CE95F065CA1BCCC4867B43DA879D72AFCC91 FBA4768225C7D3 ] C:\Windows\System32\wbem\fastprox.dll
      21:08:50.0591 0x1cd4 C:\Windows\System32\wbem\fastprox.dll - ok
      21:08:50.0591 0x1cd4 [ 89EEC1801077F7044A60F6B8A61E64D2, 756B5AAB89F2EDA13130429FDB806507878945007661E6CFDA D192698C5A9B7A ] C:\Windows\System32\Winlangdb.dll
      21:08:50.0591 0x1cd4 C:\Windows\System32\Winlangdb.dll - ok
      21:08:50.0591 0x1cd4 [ F03FD7F523CFDBB96B0F3B8012FC161D, 8218E5AC2D7A52A2D50CD8D3CC8AA8CE4E37D1BDECFA62BC26 37AA32A01CBA54 ] C:\Windows\System32\adsldpc.dll
      21:08:50.0591 0x1cd4 C:\Windows\System32\adsldpc.dll - ok
      21:08:50.0606 0x1cd4 [ C9A5D0B581760DB9C0149761DF3887A9, CAE52A375F9BE53F0E02F0FFFF3ED5BE90FBC613C4D4BB4DB2 7378F64725E420 ] C:\Windows\System32\wbem\wbemsvc.dll
      21:08:50.0606 0x1cd4 C:\Windows\System32\wbem\wbemsvc.dll - ok
      21:08:50.0606 0x1cd4 [ 6E867A31FA5F623A9C976F34D9EF834E, 052D67CEB08FAE19F43801FEF4B940784367A8095C33289CE4 36C3FAC3CC3674 ] C:\Windows\System32\globinputhost.dll
      21:08:50.0606 0x1cd4 C:\Windows\System32\globinputhost.dll - ok
      21:08:50.0606 0x1cd4 [ 65987DA5522F2D1A4FA7AD1214800A43, 35272FC77203D95EE2FCC27FFC604C0B217645D3DF6592A64F 1B022B1C0BC6C3 ] C:\Windows\System32\wbem\wmiutils.dll
      21:08:50.0606 0x1cd4 C:\Windows\System32\wbem\wmiutils.dll - ok
      21:08:50.0606 0x1cd4 [ 7671078AEF4C0203B053A9642C401FF7, BBFADA89CD31F20ADDBFAFAD2E492C72D82BF2F8B823BB6773 F04D229B62534C ] C:\Windows\System32\wlansvc.dll
      21:08:50.0606 0x1cd4 C:\Windows\System32\wlansvc.dll - ok
      21:08:50.0606 0x1cd4 [ 5BBAC554D736F04D08165713B93EF8B0, FC0EC587992E9B2D98BE12AE0A53B82F06BFE05914BED877D1 62382AC518DC68 ] C:\Windows\System32\MsSpellCheckingFacility.dll
      21:08:50.0606 0x1cd4 C:\Windows\System32\MsSpellCheckingFacility.dll - ok
      21:08:50.0606 0x1cd4 [ 8134DBE6F2B49F6FA9214238C586C0F1, C0A964F80C8D5A13CE604173FE37FDE1B216DD649EC29DA99C E9118D73489923 ] C:\Windows\System32\wbem\repdrvfs.dll
      21:08:50.0606 0x1cd4 C:\Windows\System32\wbem\repdrvfs.dll - ok
      21:08:50.0622 0x1cd4 [ 499647CA877F1BBA3C7E7697D4768E9D, CFE01B26F47BBB05C2845D62326107789695AFEE3A095D0E38 08113B02E489EE ] C:\Windows\System32\onex.dll
      21:08:50.0622 0x1cd4 C:\Windows\System32\onex.dll - ok
      21:08:50.0622 0x1cd4 [ 72FD49FE3028ECA74E40EAEE30056FB0, 04FC99B22A951CA7A45C6C5EC886B0D5A8D6AB3B14D1BA52D6 4D5E38347B2CEE ] C:\Windows\System32\wlanmsm.dll
      21:08:50.0622 0x1cd4 C:\Windows\System32\wlanmsm.dll - ok
      21:08:50.0622 0x1cd4 [ 6314D8E070122C9FEF0FD9E6C46F8F9C, C01DB21F580D73DCCD79FF5DFA4F38B0C7F6F8291EE1E57D8C CFCE141AEC8EBE ] C:\Windows\System32\eappprxy.dll
      21:08:50.0622 0x1cd4 C:\Windows\System32\eappprxy.dll - ok
      21:08:50.0622 0x1cd4 [ 5791AC0F4802B34B90CA83015EFBAE4D, 6BCF8B8288B7351A05DC175096FA28524F1C8BD689FEFC8807 346E8B7DA377FC ] C:\Windows\System32\wlansec.dll
      21:08:50.0622 0x1cd4 C:\Windows\System32\wlansec.dll - ok
      21:08:50.0622 0x1cd4 [ 61B66562773BE5BB068E49841077B171, 24702B1FD37A4966EBEB07DB734375E702B9AE7A8149A09842 618F6C2D37C8E7 ] C:\Windows\System32\wlansvcpal.dll
      21:08:50.0622 0x1cd4 C:\Windows\System32\wlansvcpal.dll - ok
      21:08:50.0622 0x1cd4 [ 00D26DFCB55A8F1EE67A5EE3614F9C75, 94AC0C86232625613020D4D85B337AF91BF6A6C4FBBBBF1869 12025780437B23 ] C:\Windows\System32\CredProvDataModel.dll
      21:08:50.0622 0x1cd4 C:\Windows\System32\CredProvDataModel.dll - ok
      21:08:50.0637 0x1cd4 [ 70C298C6990F5A0BBF60F5C035BAA0B9, D4E8D0DCAF077A4FECA5C974EA430A2AD1FE3118F14512D662 B26D8D09CD3A08 ] C:\Windows\System32\msxml6.dll
      21:08:50.0637 0x1cd4 C:\Windows\System32\msxml6.dll - ok
      21:08:50.0637 0x1cd4 [ A9CFA2F0F2BA5F639885F75866686B04, 4951021EDDD86D5F287D66C04585902C005868075C77535265 ABE5519F4486D7 ] C:\Windows\System32\threadpoolwinrt.dll
      21:08:50.0637 0x1cd4 C:\Windows\System32\threadpoolwinrt.dll - ok
      21:08:50.0637 0x1cd4 [ DE23A9C6C89B5ACBF745676B3DBE6F6F, 19EA76AA4AD4448BD5616116BAE3E62859AD51E280C40FD029 211D28D284A4E5 ] C:\Windows\System32\AuthExt.dll
      21:08:50.0637 0x1cd4 C:\Windows\System32\AuthExt.dll - ok
      21:08:50.0637 0x1cd4 [ F153D5ACB982738EB8302DB4807703D8, 7FB15C9EE0EA88181DEABF88E36C4862CE6461AD0DC94FD8FF 1B9FEFC755F8EA ] C:\Windows\System32\batmeter.dll
      21:08:50.0637 0x1cd4 C:\Windows\System32\batmeter.dll - ok
      21:08:50.0637 0x1cd4 [ AD8903E292ED67B00625C5A9599C7D66, 78FCCCE9356C6B3D70DFE2A3CB0E9FDF531616BB11D97A81FD 9DA586119E0C45 ] C:\Windows\System32\NetworkStatus.dll
      21:08:50.0637 0x1cd4 C:\Windows\System32\NetworkStatus.dll - ok
      21:08:50.0653 0x1cd4 [ BAA71F7D58AB939066CDBC26B5E3E0C5, CBBE926A3964EEDCA829A47F44BB213E3330DBA541F22D11C2 0EB2138E58FC11 ] C:\Windows\System32\TetheringIeProvider.dll
      21:08:50.0653 0x1cd4 C:\Windows\System32\TetheringIeProvider.dll - ok
      21:08:50.0653 0x1cd4 [ 8F62D1468DB8FB4675C2C560C89B9281, F1D81383095CFAEB64F8400A2EE921CC855D25667DA1FD358D 77F36F76C76F2C ] C:\Windows\System32\credprovhost.dll
      21:08:50.0653 0x1cd4 C:\Windows\System32\credprovhost.dll - ok
      21:08:50.0653 0x1cd4 [ F0BC29DB4317042BA330085D0E522D77, B59699E05531161E1148E2C0B33E7C24A7435FB23519412DDA 54ED4BFCF63AF9 ] C:\Windows\System32\WiFiDisplay.dll
      21:08:50.0653 0x1cd4 C:\Windows\System32\WiFiDisplay.dll - ok
      21:08:50.0653 0x1cd4 [ BC16368FD3393C9B1683BC69A4B96141, 8C93D26B3AF943B1FE3D607E6F08AF4BFE8760542013C14C24 DCB1C0773E883D ] C:\Windows\System32\SmartcardCredentialProvider.dl l
      21:08:50.0653 0x1cd4 C:\Windows\System32\SmartcardCredentialProvider.dl l - ok
      21:08:50.0653 0x1cd4 [ 02562A5596A3B437FABC2188C8A700EA, 4A602B3860049260FD02C332FA2FACB317CFAA0CE2114F1A3E B0232EC8042CCB ] C:\Windows\System32\credprovslegacy.dll
      21:08:50.0653 0x1cd4 C:\Windows\System32\credprovslegacy.dll - ok
      21:08:50.0653 0x1cd4 [ B5FFE70AB92348A48E84C33D1C3C2DD0, 6C718900BAA92CBC9D90C30BCB98C53F382DED9413AA66630F 6E2EE3AAB0B116 ] C:\Windows\System32\wlgpclnt.dll
      21:08:50.0653 0x1cd4 C:\Windows\System32\wlgpclnt.dll - ok
      21:08:50.0669 0x1cd4 [ 979E1E43F50D4BA6EAD46DC54EAB57BA, 0C00C6C1494FE9CFAF842681E2348ED1386BCA25BC1C505A22 7FB72C187EE4B9 ] C:\Windows\System32\credprovs.dll
      21:08:50.0669 0x1cd4 C:\Windows\System32\credprovs.dll - ok
      21:08:50.0669 0x1cd4 [ A656A4343783B167805A2F44203B4007, 985A181AB556BDD7817B5E3F7EB4C25EF4F98565F9930B6C50 71CE3EA84E1F4F ] C:\Windows\System32\PhotoMetadataHandler.dll
      21:08:50.0669 0x1cd4 C:\Windows\System32\PhotoMetadataHandler.dll - ok
      21:08:50.0669 0x1cd4 [ 388D8F174114ED37337F3C7C67B016B4, 6EA4168AF3E08248D1C17C2E5391E198674052FE79DF79950E 756E95FB682C43 ] C:\Windows\System32\wlanhlp.dll
      21:08:50.0669 0x1cd4 C:\Windows\System32\wlanhlp.dll - ok
      21:08:50.0669 0x1cd4 [ 7D5631F64A4A78982CB7E2965C59B0E4, 2C6D82E53306868F02CC716A96A7F2D0A75B31EDC0DF2ED59F BD571185D28BC0 ] C:\Windows\System32\WlanRadioManager.dll
      21:08:50.0669 0x1cd4 C:\Windows\System32\WlanRadioManager.dll - ok
      21:08:50.0669 0x1cd4 [ FE84C1709B761FFCFA7F4340FA451A65, 329D2D141C9C0ECC68C12E8B68D0413C396F47C83C85621A41 0773D8BB1A494C ] C:\Windows\System32\cngcredui.dll
      21:08:50.0669 0x1cd4 C:\Windows\System32\cngcredui.dll - ok
      21:08:50.0684 0x1cd4 [ B5052EED409881591D081EB35E31FCF6, 087DA83805A11CFE2FFEA1079A4D42B51D45E40017A58A0925 AA37FF29074CEE ] C:\Windows\System32\wifinetworkmanager.dll
      21:08:50.0684 0x1cd4 C:\Windows\System32\wifinetworkmanager.dll - ok
      21:08:50.0684 0x1cd4 [ D4A0A180E2C1A26F5DE4C3517DE0C414, 17A6F9CCC356596A5CDA285FBDB50DE6E95F77B41A3F9D399E 58FFD199C558D4 ] C:\Windows\System32\eappcfg.dll
      21:08:50.0684 0x1cd4 C:\Windows\System32\eappcfg.dll - ok
      21:08:50.0684 0x1cd4 [ 0C2545B95A19F573D335608680B0C31D, 5AE696FFC7D899604C2DFB1B072DBE25AF02DCF8AA9A6B5A3C 67B050B0E70B9F ] C:\Windows\System32\facecredentialprovider.dll
      21:08:50.0684 0x1cd4 C:\Windows\System32\facecredentialprovider.dll - ok
      21:08:50.0684 0x1cd4 [ 482E6BE8A07832E824080D352075ACA1, 4123A76C8E805AF4FE229C53E9C174095C0937913BA81A63FE 9B45C44AA5B15F ] C:\Windows\System32\shsvcs.dll
      21:08:50.0684 0x1cd4 C:\Windows\System32\shsvcs.dll - ok
      21:08:50.0684 0x1cd4 [ A10C7C1E69FC90620C7BF2E51302A01F, D725AEAE38255CED73F4922A10F226215528706580B06D01C2 28488F93AC0397 ] C:\Windows\System32\drivers\http.sys
      21:08:50.0684 0x1cd4 C:\Windows\System32\drivers\http.sys - ok
      21:08:50.0700 0x1cd4 [ D0B1B74D085035CE6BA5AFCE4AC7F725, 05FA15C30B385E73018C3BB2211E3A49267692F0FACC43FDFD 274EE02F812EF3 ] C:\Windows\System32\ngccredprov.dll
      21:08:50.0700 0x1cd4 C:\Windows\System32\ngccredprov.dll - ok
      21:08:50.0700 0x1cd4 [ 2D223557A50DCF3ED81632421BDAB9AC, 1BAE512DA885776ECE00CE83D3E0B33EB2B0FCB59E1B34DBA1 2A95402E494A84 ] C:\Windows\System32\wwapi.dll
      21:08:50.0700 0x1cd4 C:\Windows\System32\wwapi.dll - ok
      21:08:50.0700 0x1cd4 [ 7594864D793660B483A8C0961EA6B858, EF648DEEF8498F8AF407F2AB1578F97C3F9AEC5E12DB3AACC2 0E979A99495052 ] C:\Windows\System32\StructuredQuery.dll
      21:08:50.0700 0x1cd4 C:\Windows\System32\StructuredQuery.dll - ok
      21:08:50.0700 0x1cd4 [ 00C24D6FDEF221DDA1625836702AFC6C, CECFE6DBC8E6395EB4D2B4169BA4679DBA60A1765BDB1E50FF 62F964BC948E2B ] C:\Windows\System32\fveapi.dll
      21:08:50.0700 0x1cd4 C:\Windows\System32\fveapi.dll - ok
      21:08:50.0700 0x1cd4 [ 188E6D5ABF6228F2B841B96BD4259B0B, 597460C2E6E2AA0EB163923BE0AD23B6608D703E25F32394A8 AB3E597ED0ED0B ] C:\Windows\System32\BioCredProv.dll
      21:08:50.0700 0x1cd4 C:\Windows\System32\BioCredProv.dll - ok
      21:08:50.0700 0x1cd4 [ ACF9A79DE065065D9B9F3C060D8FD883, 72A663ED47F6354E1EF19D6E5D4BC1118B8BF699B9E112E89B BE8DC8B9D83187 ] C:\Windows\System32\ngckeyenum.dll
      21:08:50.0700 0x1cd4 C:\Windows\System32\ngckeyenum.dll - ok
      21:08:50.0716 0x1cd4 [ 9CE8024075A91397B1059DE58C76502D, E35983D365A0FE967DFA55D9EAC684D0BECBB88AF3D194E358 04F25269ED5849 ] C:\Windows\System32\urlmon.dll
      21:08:50.0716 0x1cd4 C:\Windows\System32\urlmon.dll - ok
      21:08:50.0716 0x1cd4 [ 7A13154D4185D5109181DE9D0EAA4CF1, D6C84DAC890B8EB630AED1021F8E8CD8B68E812A886E9EA3DA D9D8126C350884 ] C:\Windows\System32\certCredProvider.dll
      21:08:50.0716 0x1cd4 C:\Windows\System32\certCredProvider.dll - ok
      21:08:50.0716 0x1cd4 [ 79DCE27E8C4CF6701BFE49EC2446BBF6, F51CBB7A45C3C878F41653FD5FBDC93CC302712B7725DAAB4D 3475A1F4771E3D ] C:\Windows\System32\spoolsv.exe
      21:08:50.0716 0x1cd4 C:\Windows\System32\spoolsv.exe - ok
      21:08:50.0716 0x1cd4 [ 95F878775961FF2A31CA6D5375844741, 50ACCED03C8CAE5C579443F76AB5F80F4383B1592164962BC9 04BA70E7A62CCD ] C:\Windows\System32\wlidcredprov.dll
      21:08:50.0716 0x1cd4 C:\Windows\System32\wlidcredprov.dll - ok
      21:08:50.0716 0x1cd4 [ 9CD2A4821DE379305CACB2E99AD8953A, 89D700DFC3C59ACBBADB48954A28C0EBF8D6A11A9E63837689 DD891868E43188 ] C:\Windows\System32\drivers\bowser.sys
      21:08:50.0716 0x1cd4 C:\Windows\System32\drivers\bowser.sys - ok
      21:08:50.0716 0x1cd4 [ B5988B3C347BF75DF76E28392A8FC3A1, 707956ED2BA1E2DCA33D793EF45DC7F1CB271E5F8390DC0B15 23AC850E4DBFA6 ] C:\Windows\System32\ProximityService.dll
      21:08:50.0716 0x1cd4 C:\Windows\System32\ProximityService.dll - ok
      21:08:50.0731 0x1cd4 [ E584CDC70F694F9A984A060A8291EB04, 002B7559A488BB755DF88E13A76209A09515311EE806700F2F 63FDADE668868E ] C:\Windows\System32\wininet.dll
      21:08:50.0731 0x1cd4 C:\Windows\System32\wininet.dll - ok
      21:08:50.0731 0x1cd4 [ E671EDAB0726E05ECEF4058B4CD73C4D, 9F4C50E635CE2204E3291C8D3D7F658A969E80722B8B6F0304 228D9B434C20EA ] C:\Windows\System32\drivers\mrxsmb.sys
      21:08:50.0731 0x1cd4 C:\Windows\System32\drivers\mrxsmb.sys - ok
      21:08:50.0731 0x1cd4 [ AC0BAC88182F83532AA8CC50D4155E9C, 7F64D9578C52BD495AC03D36DF79706BD36B6F4CC1E3DDDEFA 24E9B4F6132362 ] C:\Windows\System32\rasplap.dll
      21:08:50.0731 0x1cd4 C:\Windows\System32\rasplap.dll - ok
      21:08:50.0731 0x1cd4 [ DECFBA2DDB3DBD2CB1BD47D10E39F38F, 0884CECE4B1093532053DDB77D164325620934A8A6E277D3F0 4DEAC928F30383 ] C:\Windows\System32\ProximityCommon.dll
      21:08:50.0731 0x1cd4 C:\Windows\System32\ProximityCommon.dll - ok
      21:08:50.0731 0x1cd4 [ 93A77008A8932FC84A173C4E97E52874, B7510CF7998C538D68BD2ECDC512A0BFC7CB7362F598EE4110 F728427AFF0F5A ] C:\Windows\System32\drivers\mrxsmb20.sys
      21:08:50.0731 0x1cd4 C:\Windows\System32\drivers\mrxsmb20.sys - ok
      21:08:50.0731 0x1cd4 [ 32AE97835FB260FBB9A67C965501A11E, B96AB0B78CFDE2CBABD8CF9CD6B6C5A4A545EBDD5893897010 7F667B57496A54 ] C:\Windows\System32\rtutils.dll
      21:08:50.0747 0x1cd4 C:\Windows\System32\rtutils.dll - ok
      21:08:50.0747 0x1cd4 [ 27E0D88FF32BD7F791212B16042828A4, 3550D5BAC84D24FA8DB320FF616E7276649CDD769C634D003C 65F1D5FBBE7927 ] C:\Windows\System32\ProximityCommonPal.dll
      21:08:50.0747 0x1cd4 C:\Windows\System32\ProximityCommonPal.dll - ok
      21:08:50.0747 0x1cd4 [ F4BDD4E13C8186132A4FAEE3CBA11366, 44DC1B3527022D6B944514352789B1EFFD0470659CB68BED50 3A4B7E91DC6963 ] C:\Windows\System32\rastls.dll
      21:08:50.0747 0x1cd4 C:\Windows\System32\rastls.dll - ok
      21:08:50.0747 0x1cd4 [ 387A8B34BEDF9DCF0EFE9ED29C9CAEEB, 91193458960F7705896BBAA8B5518BF47F6DD30334B0E315EC 1EC1BF12E126EB ] C:\Windows\System32\MSWB7.dll
      21:08:50.0747 0x1cd4 C:\Windows\System32\MSWB7.dll - ok
      21:08:50.0747 0x1cd4 [ 67F02AA3CFFC4AD3C7025A250D94DB65, CA747A6BEB3CEA02FC66D6A3D8CB670EE759CB2E2B56A67802 B7027021BF73A2 ] C:\Windows\System32\ProximityServicePal.dll
      21:08:50.0747 0x1cd4 C:\Windows\System32\ProximityServicePal.dll - ok
      21:08:50.0747 0x1cd4 [ 5125CBB61AC81168366BEB290399CB8E, B2A3095D45E2114DE2BD0E5A3AE20B3CE95EE517A35B9E1EAD 05E231F38DBDCF ] C:\Windows\System32\BFE.DLL
      21:08:50.0747 0x1cd4 C:\Windows\System32\BFE.DLL - ok
      21:08:50.0762 0x1cd4 [ 9EE9A6EBC9938B34618078D9BA0FBA9F, BDE9817B27161EE54D8D31685BC88DC7F9D77B7BF45ED5E953 8BBB6B101EA55E ] C:\Windows\System32\IDStore.dll
      21:08:50.0762 0x1cd4 C:\Windows\System32\IDStore.dll - ok
      21:08:50.0762 0x1cd4 [ B50DD503085DAC4018D5AA30280F7DCF, 9B5F50F5696353213CF0972659D8261B020F6DDC9C4AAF33B1 CD012B0DDD4092 ] C:\Windows\System32\eapprovp.dll
      21:08:50.0762 0x1cd4 C:\Windows\System32\eapprovp.dll - ok
      21:08:50.0762 0x1cd4 [ 33DBBCF71F68EA97D9FD34E4C9AB5AC6, 104F04A1560E75EB224A3825707CE51E8798ABD764F5CC3B85 4FFFC93A39AF60 ] C:\Windows\System32\wkssvc.dll
      21:08:50.0762 0x1cd4 C:\Windows\System32\wkssvc.dll - ok
      21:08:50.0762 0x1cd4 [ 596ECBF75DCD4E963FEC74720F1D2A00, 89456B5A12D11A0A123F0955D2A8ED7B9D8F00C6256A7229A9 D67A14E3E4BB5D ] C:\Windows\System32\winbio.dll
      21:08:50.0762 0x1cd4 C:\Windows\System32\winbio.dll - ok
      21:08:50.0762 0x1cd4 [ E9B5EFC173FDD55C00B2F28B8BAC144B, 0CA602484CD0E2C67091FCD60091608BF746B1D05B353DB980 5D1CAE0ED09D70 ] C:\Windows\System32\dsparse.dll
      21:08:50.0762 0x1cd4 C:\Windows\System32\dsparse.dll - ok
      21:08:50.0778 0x1cd4 [ 30844BD376F9D01E62C820BEF446F1F8, 910D672EDB544A20AEB4450B4D89830F46EDD28CE002115617 6315C5D068A1B4 ] C:\Windows\System32\drivers\mpsdrv.sys
      21:08:50.0778 0x1cd4 C:\Windows\System32\drivers\mpsdrv.sys - ok
      21:08:50.0778 0x1cd4 [ A65FA613342B08E0F760D8B13B9C135A, C64A1EC862188D2EE1202DB02BFBF4E2DD56780905E5090127 99EB57FC9A88ED ] C:\Windows\System32\FWPUCLNT.DLL
      21:08:50.0778 0x1cd4 C:\Windows\System32\FWPUCLNT.DLL - ok
      21:08:50.0778 0x1cd4 [ 22FAD83ECDCDB440AC3D5F9435AE6591, DDB0255733E8A8588775E78BBC04DCCD9046E691F110731F55 EE42498FD0D811 ] C:\Windows\System32\raschap.dll
      21:08:50.0778 0x1cd4 C:\Windows\System32\raschap.dll - ok
      21:08:50.0778 0x1cd4 [ 779CFDB17EA07A6D26FEBBAC95B65772, 74D9542E8DCCD07396A45A45D2F500AA6F9DCC1DB785A6153E B3067E42F576A4 ] C:\Windows\System32\MPSSVC.dll
      21:08:50.0778 0x1cd4 C:\Windows\System32\MPSSVC.dll - ok
      21:08:50.0778 0x1cd4 [ C6013DB6B6D9B6AB420808602E89F9A2, E1A9EEB7C2FD544762DF5ADFA4A133747556E12F25D67DF5CF 8378A47DFD6586 ] C:\Windows\System32\raschapext.dll
      21:08:50.0778 0x1cd4 C:\Windows\System32\raschapext.dll - ok
      21:08:50.0794 0x1cd4 [ CCDEFAE1F31F9F9AED64686A143D3D0A, CF96EB0C3422628398D218152A729221C0F5D09F287E083AE8 8ECD77DB2C11BC ] C:\Windows\System32\DevDispItemProvider.dll
      21:08:50.0794 0x1cd4 C:\Windows\System32\DevDispItemProvider.dll - ok
      21:08:50.0794 0x1cd4 [ 3DD5F9F83649E7652DF6ADC2C5D8087D, 9BB5042EEE9E078FF1A271B2E275C5D40636AF3DE59FFD8164 8482DBAAEF3D4E ] C:\Windows\System32\fwpolicyiomgr.dll
      21:08:50.0794 0x1cd4 C:\Windows\System32\fwpolicyiomgr.dll - ok
      21:08:50.0794 0x1cd4 [ 078A7C7F9A4FD46CD9649679913B9AE5, A8451DF5453C9964E90473548CC728A8C6214A62B24ED55F75 8E3A6EDD563437 ] C:\Windows\System32\DefaultDeviceManager.dll
      21:08:50.0794 0x1cd4 C:\Windows\System32\DefaultDeviceManager.dll - ok
      21:08:50.0794 0x1cd4 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95 008B8EB2B34E50 ] C:\Program Files\Bonjour\mDNSResponder.exe
      21:08:50.0794 0x1cd4 C:\Program Files\Bonjour\mDNSResponder.exe - ok
      21:08:50.0794 0x1cd4 [ F13EE0DB1FB1D6946AC3228D7EFCFC8F, 109A809F0338FAB0F4045FA5EE33C6F0A994A9F586B2FBD892 0A6AABA0E0EF66 ] C:\Windows\System32\drivers\srvnet.sys
      21:08:50.0794 0x1cd4 C:\Windows\System32\drivers\srvnet.sys - ok
      21:08:50.0809 0x1cd4 [ 1509A77F840AA9E72CF8247D0CF2FBDE, 2D47AD4D8F5C2D871E603FB6D72D25EFD0E63FA3A542DAADAB 9D82ED074C0E0B ] C:\Windows\System32\drivers\PEAuth.sys
      21:08:50.0809 0x1cd4 C:\Windows\System32\drivers\PEAuth.sys - ok
      21:08:50.0809 0x1cd4 [ CEA61A9BB1DE0C1E8605CEC3C37FC454, 6B80F5A2267AD766AF85E0F780CC6CB38571967D8A095924D6 5BAFC01BAE5BCD ] C:\Windows\System32\adhapi.dll
      21:08:50.0809 0x1cd4 C:\Windows\System32\adhapi.dll - ok
      21:08:50.0809 0x1cd4 [ E42BCCE03A0A4CECC0C5A86600DF5070, 0DB3C32CA8373CE744C90DD3B37D91BE706A2D4AE5041731D7 3B4EAC076228EF ] C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe
      21:08:50.0809 0x1cd4 C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe - ok
      21:08:50.0809 0x1cd4 [ 8DBB1BE20C36E6D19BCC89EEA00B953C, 8B97A7E53E1D77363AFF6A5AAEAD89EBAE28DCB8D82753C804 FD7CD5646500AF ] C:\Windows\System32\drivers\tcpipreg.sys
      21:08:50.0809 0x1cd4 C:\Windows\System32\drivers\tcpipreg.sys - ok
      21:08:50.0825 0x1cd4 [ F55166956AEAD05A141BA7E80B90AB7B, B9BCF21D7F7E771C388C469B2611E8946166C62005B56D7242 1060DABFF7093F ] C:\Windows\System32\netapi32.dll
      21:08:50.0825 0x1cd4 C:\Windows\System32\netapi32.dll - ok
      21:08:50.0825 0x1cd4 [ E74F2C29ECF25124BE3DA75FBD6A0E46, 423225918E3D3B4905CE15068A6ABA1DEAF36721BBA353E91C 3FAA8D72CF3887 ] C:\Windows\SysWOW64\ole32.dll
      21:08:50.0825 0x1cd4 C:\Windows\SysWOW64\ole32.dll - ok
      21:08:50.0825 0x1cd4 [ 5417713A06537C28875E6406851CA30C, 2CDB37F68EA189C39C3D89A560DB648D95AF4B9DF0C5741F86 B0C507B57A17A0 ] C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
      21:08:50.0825 0x1cd4 C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe - ok
      21:08:50.0825 0x1cd4 [ D4D12BC29DE0F09280868FDCA65B3474, A6FE89ABD52087FEE52FDF31DDF4CB627ED400E94FDA86BEBF 1D4763F1E42518 ] C:\Windows\System32\drivers\mrxsmb10.sys
      21:08:50.0825 0x1cd4 C:\Windows\System32\drivers\mrxsmb10.sys - ok
      21:08:50.0841 0x1cd4 [ D9AF3498FA5FE659C8F65408FDBF3990, A9810703B4708FA1E28886BAD1E74E53BECB8413257FA151F4 548609B710215D ] C:\Windows\SysWOW64\shlwapi.dll
      21:08:50.0841 0x1cd4 C:\Windows\SysWOW64\shlwapi.dll - ok
      21:08:50.0841 0x1cd4 [ 20A7D1848593F5988A2ACE63F22DE8BF, 5E4D0AE8E0B92C1F6F9D79E4AB675691BAE6E8E3243886F7D1 E21A3E2FB6A890 ] C:\Windows\System32\Windows.Media.dll
      21:08:50.0841 0x1cd4 C:\Windows\System32\Windows.Media.dll - ok
      21:08:50.0841 0x1cd4 [ 656F846CAED76C6FC5C76E8BACEF4EF6, DFDE27C086764ACC1EA3E6A4E2BA50C2AB532F9E1D99203861 F51910A8D850FB ] C:\Windows\System32\srvcli.dll
      21:08:50.0841 0x1cd4 C:\Windows\System32\srvcli.dll - ok
      21:08:50.0841 0x1cd4 [ 34FC98890EE37825DF5D867E5A158E06, 9D3BDBE40E6F04A5D7FC5457B68DE5831139B938BC158961CB 7CDB862B9FD9F3 ] C:\Program Files\Lenovo\Communications Utility\libmcfaudio.dll
      21:08:50.0841 0x1cd4 C:\Program Files\Lenovo\Communications Utility\libmcfaudio.dll - ok
      21:08:50.0856 0x1cd4 [ B412435B30EBCD6EA2AD27E89C515F75, B9A87D4FF25709AFB6554E09A9029D278F0C5E590C83C514F4 30F3293104D6EE ] C:\Program Files\Lenovo\Communications Utility\libmcfcore.dll
      21:08:50.0856 0x1cd4 C:\Program Files\Lenovo\Communications Utility\libmcfcore.dll - ok
      21:08:50.0856 0x1cd4 [ 034CCADC1C073E4216E9466B720F9849, 86E39B5995AF0E042FCDAA85FE2AEFD7C9DDC7AD65E6327BD5 E7058BC3AB615F ] C:\Program Files\Lenovo\Communications Utility\msvcr120.dll
      21:08:50.0856 0x1cd4 C:\Program Files\Lenovo\Communications Utility\msvcr120.dll - ok
      21:08:50.0856 0x1cd4 [ 04C8859355C1DC9C0FA198D1894D71C2, E7C67E73009341B5D402470C686781B3C7BBE2531CE26665E0 8E711B990B1A77 ] C:\Windows\System32\drivers\Ndu.sys
      21:08:50.0856 0x1cd4 C:\Windows\System32\drivers\Ndu.sys - ok
      21:08:50.0856 0x1cd4 [ CDD8EDF4C35BE6D6137112F5CC7A70DA, 80EECA6BC2E668E5652A5CA9B119CCCE2A2E421F0EED1FD0EA C20C42E77C02ED ] C:\Windows\System32\pcasvc.dll
      21:08:50.0856 0x1cd4 C:\Windows\System32\pcasvc.dll - ok
      21:08:50.0856 0x1cd4 [ 55CA5329D1ADEB8F8034045930147AE4, D4F31BC82700D166564C7F9CDCEA3ABAB4A37B55137C345727 68DF46FDA9320A ] C:\Windows\System32\drivers\srv2.sys
      21:08:50.0856 0x1cd4 C:\Windows\System32\drivers\srv2.sys - ok
      21:08:50.0872 0x1cd4 [ A6F22CA344FD1B7D75D49ECC718693C8, C7787F59263B7D5246B931531AB4DC4C430E1BF8260775B7A7 51D4994A5D3489 ] C:\Windows\SysWOW64\powrprof.dll
      21:08:50.0872 0x1cd4 C:\Windows\SysWOW64\powrprof.dll - ok
      21:08:50.0872 0x1cd4 [ 4A176D179AC43240482C0C26DA82FEAE, 83DB277E97684CADC3AF22C85C4553E3B01000BA797BE1F4C9 BDD4B5FA9151B3 ] C:\Windows\SysWOW64\wlanapi.dll
      21:08:50.0872 0x1cd4 C:\Windows\SysWOW64\wlanapi.dll - ok
      21:08:50.0872 0x1cd4 [ FD5CABBE52272BD76007B68186EBAF00, 87C42CA155473E4E71857D03497C8CBC28FA8FF7F2C8D72E8A 1F39B71078F608 ] C:\Program Files\Lenovo\Communications Utility\msvcp120.dll
      21:08:50.0872 0x1cd4 C:\Program Files\Lenovo\Communications Utility\msvcp120.dll - ok
      21:08:50.0872 0x1cd4 [ 55D5450C85C0A0DE8F2A22F2C0C816AE, 3CF7B03BEB7C47157C47EACEBFB731096468D1D25FF6784485 EFD2FB806C4C5E ] C:\Windows\SysWOW64\wtsapi32.dll
      21:08:50.0872 0x1cd4 C:\Windows\SysWOW64\wtsapi32.dll - ok
      21:08:50.0887 0x1cd4 [ E83830BB74AE8CBECEA0ECD94DE436F9, 4A34569A34260324EBD629039E1BF45A3527FC75B22D9A3DB6 360A6EB365483A ] C:\Windows\System32\drivers\srv.sys
      21:08:50.0887 0x1cd4 C:\Windows\System32\drivers\srv.sys - ok
      21:08:50.0887 0x1cd4 [ E72280A50E35C3402276E5C8B02C784C, E56F9C0933D4E2F8AEAFB93B3E8E927D0491C20048E9BA0AB5 85308FBD396909 ] C:\Windows\System32\NetSetupShim.dll
      21:08:50.0887 0x1cd4 C:\Windows\System32\NetSetupShim.dll - ok
      21:08:50.0887 0x1cd4 [ EB27FE8770BB56D2BA9C9C29F1AB07DA, F40E468B17E5B5239A52A35338406B0E037514176EA79009EA 4F5036A0BD347C ] C:\Windows\SysWOW64\userenv.dll
      21:08:50.0887 0x1cd4 C:\Windows\SysWOW64\userenv.dll - ok
      21:08:50.0887 0x1cd4 [ CA6447DDCA724F0C5C0CAFDE184EFE64, F9664337B60A332571FCA81CC3E6DD194DCE20C8546980FD28 3CA892D0CC873C ] C:\Windows\SysWOW64\profapi.dll
      21:08:50.0887 0x1cd4 C:\Windows\SysWOW64\profapi.dll - ok
      21:08:50.0903 0x1cd4 [ BF084D22F7064E686F9BBAC541C680B5, ED2E99746A98BAB14B5B565E5D3F092143AA2D8BD0CBD08FE0 47B64AEF5EF440 ] C:\Windows\System32\ninput.dll
      21:08:50.0903 0x1cd4 C:\Windows\System32\ninput.dll - ok
      21:08:50.0903 0x1cd4 [ 845FD176FAD495DB046400AC93747976, E21A9D34CE3004F6599884A0F5AC593C8B007DFC6613AE77AF 6FD295E03CC141 ] C:\Windows\SysWOW64\kernel.appcore.dll
      21:08:50.0903 0x1cd4 C:\Windows\SysWOW64\kernel.appcore.dll - ok
      21:08:50.0903 0x1cd4 [ EECC6FB48D5137A331D02AAC1D99DF8C, 95D1069F9064EC88E4E1F478E26254F6C79EC7C3A73AEAC240 3E313E30401E99 ] C:\ProgramData\LenovoTransition\Server\x64\ymc.exe
      21:08:50.0903 0x1cd4 C:\ProgramData\LenovoTransition\Server\x64\ymc.exe - ok
      21:08:50.0903 0x1cd4 [ E6C9FBF308B8A5CA11634DFFA69E92F9, 877EACF40F954129140FEA35F986836B6C197B80CFF78182E7 3CA7601DF1CFEA ] C:\Windows\System32\NetSetupApi.dll
      21:08:50.0903 0x1cd4 C:\Windows\System32\NetSetupApi.dll - ok
      21:08:50.0903 0x1cd4 [ 87D1E3EB90A316F1FD6DD60A2457189A, 9AF7559201BB792C62285429CA5E209FF752C0DAB421C59547 89B19F527784CF ] C:\Windows\SysWOW64\clbcatq.dll
      21:08:50.0903 0x1cd4 C:\Windows\SysWOW64\clbcatq.dll - ok
      21:08:50.0919 0x1cd4 [ 74261D485681A12AFF1AD517FD0EF200, DEC3B7B1EBF3F7F4940FE63D665E2C50F6447C848C35C64B1B DE446E04358480 ] C:\Windows\SysWOW64\winsta.dll
      21:08:50.0919 0x1cd4 C:\Windows\SysWOW64\winsta.dll - ok
      21:08:50.0919 0x1cd4 [ CB609E1E85B2117031431AEEB4ACAC63, 3B7AD1C63CCD50D1A63E823AD4C3AC13E2772D380FAF534329 F2AB9C9F30257B ] C:\Program Files (x86)\Lenovo\Harmony\Setting\HarmonySettingService .exe
      21:08:50.0919 0x1cd4 C:\Program Files (x86)\Lenovo\Harmony\Setting\HarmonySettingService .exe - ok
      21:08:50.0919 0x1cd4 [ 8A2D383AAFE84AFDA07F7E69EC723AD5, C0B36F5048376DCDCF7F6FED0285F5D4962A87A5ECAC391C4D E74D71CA5CAF96 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\NS.exe
      21:08:50.0919 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\NS.exe - ok
      21:08:50.0919 0x1cd4 [ 5ECE402D7E12EC3750D044BF3D878DF6, 3F02B1AE7B61BC36B04EA2B82ED79F112219F4E9668518030F F14B005E2C9BBC ] C:\Windows\System32\mscoree.dll
      21:08:50.0919 0x1cd4 C:\Windows\System32\mscoree.dll - ok
      21:08:50.0934 0x1cd4 [ 0B854C8F588D38CBA00C2B1889A11F2A, 7E43DB3DD2036F830B6D3790EAEE84D10345E9832263DF2935 5C6281E80B51A5 ] C:\Windows\System32\cryptngc.dll
      21:08:50.0934 0x1cd4 C:\Windows\System32\cryptngc.dll - ok
      21:08:50.0934 0x1cd4 [ 205D1A6D106ACFDB71A1BDEC0C924173, 245E4FC18B20A0D15428D7A0155918180F902EC0E2875B3647 E5B3059966E7BE ] C:\Program Files\Lenovo\SettingsDependency\SettingsService.ex e
      21:08:50.0934 0x1cd4 C:\Program Files\Lenovo\SettingsDependency\SettingsService.ex e - ok
      21:08:50.0934 0x1cd4 [ 0A3FB35B6442675D8F76BF99A14F0CC1, 1739FAD457B3A4C0BE5CEB9C3CDCD9D77249D58E78D51943AB FF10322EB3CC08 ] C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe
      21:08:50.0934 0x1cd4 C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe - ok
      21:08:50.0934 0x1cd4 [ 90217C2BF22BCACC99E7A11D7FCFA7E0, 77A85CDE96FB5E9349402313D3DDA022E71624D65986066A60 170CFD87306B8F ] C:\Windows\SysWOW64\shell32.dll
      21:08:50.0934 0x1cd4 C:\Windows\SysWOW64\shell32.dll - ok
      21:08:50.0950 0x1cd4 [ DB22BF6E188F54E592C1BBFBD4F79497, F8F3EA23D8E761B346D27BFDF2140CC2B841ABC5CAD29875DD 8A134D6C5FB4F4 ] C:\Windows\SysWOW64\msimg32.dll
      21:08:50.0950 0x1cd4 C:\Windows\SysWOW64\msimg32.dll - ok
      21:08:50.0950 0x1cd4 [ 7D4814B02F8844302F29644A1B79765D, C81896EBDD7CEDFDA0D7AD4BCC550BDFE5FD35EF213598E3C4 A20AFD1E293BEF ] C:\Windows\SysWOW64\xmllite.dll
      21:08:50.0950 0x1cd4 C:\Windows\SysWOW64\xmllite.dll - ok
      21:08:50.0950 0x1cd4 [ 771F172114E51FC2DF5838476D97D90A, D5B4D3BA26EEE2D02675FDB9ED8A009576C855BD227AFB9D31 BB9AF87DAEE4F6 ] C:\Windows\SysWOW64\urlmon.dll
      21:08:50.0950 0x1cd4 C:\Windows\SysWOW64\urlmon.dll - ok
      21:08:50.0950 0x1cd4 [ AD950538C8E6EC4C423F260505D28275, 07BA849E3A3BA3E4FDB459A5A73FDB8B64D0175346249D4414 5841BBB891089F ] C:\Windows\SysWOW64\SHCore.dll
      21:08:50.0950 0x1cd4 C:\Windows\SysWOW64\SHCore.dll - ok
      21:08:50.0950 0x1cd4 [ 5E03E98E09A3A8BFA0277B2FE565B296, ECA258995505BCEF868C920A62536CEFF61316294D924A8E1C 06005239DD0D02 ] C:\Windows\SysWOW64\iertutil.dll
      21:08:50.0950 0x1cd4 C:\Windows\SysWOW64\iertutil.dll - ok
      21:08:50.0966 0x1cd4 [ 3E29914113EC4B968BA5EB1F6D194A0A, C8D5572CA8D7624871188F0ACABC3AE60D4C5A4F6782D952B9 038DE3BC28B39A ] C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\msvcp110.dll
      21:08:50.0966 0x1cd4 C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\msvcp110.dll - ok
      21:08:50.0966 0x1cd4 [ 4BA25D2CBE1587A841DCFB8C8C4A6EA6, B30160E759115E24425B9BCDF606EF6EBCE4657487525EDE7F 1AC40B90FF7E49 ] C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\msvcr110.dll
      21:08:50.0966 0x1cd4 C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\msvcr110.dll - ok
      21:08:50.0966 0x1cd4 [ E3B243D47DF60034A8B2AC677F14A97C, A8478E4C23A943650037252EC8F3CBBAD9E44FA242E18F00B7 7FA312F7D3CF02 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ms coreei.dll
      21:08:50.0966 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ms coreei.dll - ok
      21:08:50.0966 0x1cd4 [ 2E7A98ADE2CF733C46859E40A5348DB1, 3B3143DDAEEBAD5AA2C2E76B9DCDAE80D6E066D327B7CA1774 5EF5E9AB029A49 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe
      21:08:50.0966 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe - ok
      21:08:50.0981 0x1cd4 [ 73933F0BBD77436D14959A0BA5DAE3C4, 2EB79868AD9C052EC801E3F44715492E9CE7E5C63B6640BEC3 1F83FB2DBC0D7D ] C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
      21:08:50.0981 0x1cd4 C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe - ok
      21:08:50.0981 0x1cd4 [ 22096A33F31A39599AF270EF6A55230D, 739D639C27BDFD53B7FB4A40A4025C26CA2D9D5145F26DE760 932B5702B75C31 ] C:\Windows\SysWOW64\windows.storage.dll
      21:08:50.0981 0x1cd4 C:\Windows\SysWOW64\windows.storage.dll - ok
      21:08:50.0981 0x1cd4 [ 0B7CFF94C247E661A9D5F7FDAB2F726B, 16D651A50347131CC6B96EB17096EFB22F9767572964E6C12C A1BF928E6C1397 ] C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
      21:08:50.0981 0x1cd4 C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe - ok
      21:08:50.0981 0x1cd4 [ 62C6DD0BCE510E55D4CEBEE80DF71953, 97BD891EECAD6AACB3B71DB7F1DDA65ED633E94506836B41B6 54EBB9F793BF8E ] C:\Program Files\NVIDIA Corporation\GeForce Experience Service\ShieldWirelessController.dll
      21:08:50.0981 0x1cd4 C:\Program Files\NVIDIA Corporation\GeForce Experience Service\ShieldWirelessController.dll - ok
      21:08:50.0997 0x1cd4 [ 478709DF780F6498B71BC3BDD5004514, 15535EE0DC5F14284FBF1DD975FFECE2CA45547E03752A6ABA CFC54B6099D2F5 ] C:\Windows\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b 9a1e18e3b_9.0.30729.9247_none_08e394a1a83e212f\msv cr90.dll
      21:08:50.0997 0x1cd4 C:\Windows\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b 9a1e18e3b_9.0.30729.9247_none_08e394a1a83e212f\msv cr90.dll - ok
      21:08:50.0997 0x1cd4 [ EDFA707192B2965E4C90A9DA0F4E380F, 6CA6BC327C528E64516B28D2595F3483C3B691CD7884799439 F7979447C138CE ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\cl r.dll
      21:08:50.0997 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\cl r.dll - ok
      21:08:50.0997 0x1cd4 [ E4248DE03DB5F0F17C2F25C9B3344B85, F214B7E18CACC52AFE1F6A3869C2297B408A70B9AC6D6E0583 9160AB23535FFF ] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxcore.dll
      21:08:50.0997 0x1cd4 C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxcore.dll - ok
      21:08:50.0997 0x1cd4 [ FFAB9859F7C6FE6DCBC01FE83D3FB0F5, 07BF204665E2B9BC204E43B8F74BE4A6E1CF78505224FEF3CE 47BAD847E50863 ] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxnvgamepad.dll
      21:08:50.0997 0x1cd4 C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxnvgamepad.dll - ok
      21:08:51.0012 0x1cd4 [ 5CE986C82313E6F9D0973E2A74A0BA20, 9367D5A8257EA15B0DBCD6C8FDBFDF0B5B132A7C436E4F03AD 84B958112DFA28 ] C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
      21:08:51.0012 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe - ok
      21:08:51.0012 0x1cd4 [ A839B2CF099C3F328E6D369E29B14E02, 6B7C432CE79C14C846CAF7E0A0912AC192335C1363B8CF09D8 34119E697E0C17 ] C:\Windows\SysWOW64\dwmapi.dll
      21:08:51.0012 0x1cd4 C:\Windows\SysWOW64\dwmapi.dll - ok
      21:08:51.0012 0x1cd4 [ 3B83C49B5A250A95183DCBBB384B45F4, 5672603EC8282CBF7C1BD54221D439AACFD0E3D9B6B37DFBA6 6E8E94B2FAB2A3 ] C:\Windows\SysWOW64\uxtheme.dll
      21:08:51.0012 0x1cd4 C:\Windows\SysWOW64\uxtheme.dll - ok
      21:08:51.0012 0x1cd4 [ 203F58BA41B48A59D6A047E0233DB422, 4204F7C2B4E13AA3819A180FACA724435F6400FE97D2EF6C74 634A0D7E51F7F3 ] C:\Windows\SysWOW64\imm32.dll
      21:08:51.0012 0x1cd4 C:\Windows\SysWOW64\imm32.dll - ok
      21:08:51.0012 0x1cd4 [ AF5121AFE8C7EAA52E869B422162A77C, FDC1784AD9281CAAEF154D3CD50104D1983AFF77336A79E266 8003FA2E8CD0C9 ] C:\Windows\SysWOW64\oleacc.dll
      21:08:51.0012 0x1cd4 C:\Windows\SysWOW64\oleacc.dll - ok
      21:08:51.0028 0x1cd4 [ B0DA5BABD745E9D07DA0B36E46C6CA8F, C426CA48A4011A9ECA81732EB02F8CA3FBFD9ECBFB152F0BE6 346CF8F974CD74 ] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_65 95b64144ccf1df_1.1.14393.321_none_baab3cb4359688b4 \GdiPlus.dll
      21:08:51.0028 0x1cd4 C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_65 95b64144ccf1df_1.1.14393.321_none_baab3cb4359688b4 \GdiPlus.dll - ok
      21:08:51.0028 0x1cd4 [ 12A0B27BCD5D06F1FF042C5C3BD973FC, 8A0BEF551BB75ADF92648E93CA04BF162AF03F92C72A874E0D C5B77AFA9F39E4 ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.exe
      21:08:51.0028 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.exe - ok
      21:08:51.0028 0x1cd4 [ BC1C726F15DE4A61E10162BA29C90801, 00D85746F90D5DC1D11193460F0FC1FCB01373A9074B956C7A 58474E992D7056 ] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvPlug inWatchdog.dll
      21:08:51.0028 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvPlug inWatchdog.dll - ok
      21:08:51.0028 0x1cd4 [ 2582AA6C1F88D34B37B7F82D790D232E, AA948BB6583057E2E2F299EBD1717A42D6559CA27AF6BC756D 3C3BB4109E4E77 ] C:\Windows\SysWOW64\mscoree.dll
      21:08:51.0028 0x1cd4 C:\Windows\SysWOW64\mscoree.dll - ok
      21:08:51.0044 0x1cd4 [ 23FA3A85E6AFB6E9B8277CB9D0C504D2, D29E93C0FE4F108FA063E1A9692559A4278A0D51AB4FEABBB2 31907DFFAEB019 ] C:\Windows\System32\msvcr120_clr0400.dll
      21:08:51.0044 0x1cd4 C:\Windows\System32\msvcr120_clr0400.dll - ok
      21:08:51.0044 0x1cd4 [ 2CDB8E874F0950EA17A7135427B4F07D, 099B17422E1DF0235E024FF5128A60571E72AF451E1C59F4D6 1D3CF32C1539ED ] C:\Windows\SysWOW64\winmm.dll
      21:08:51.0044 0x1cd4 C:\Windows\SysWOW64\winmm.dll - ok
      21:08:51.0044 0x1cd4 [ F4BDA0F02F8EE5FF9544BDC7A22BA689, FF262CBEDF5E06FA2237620FFF5D9C2F9987C434A6F1C2B021 5676D01FFEBD50 ] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_Identi tyPlugin.dll
      21:08:51.0044 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_Identi tyPlugin.dll - ok
      21:08:51.0044 0x1cd4 [ 114F33B738540F264BE80D447A98A262, 7B98155D4B377C32B617936348862DF7687EACB0AFD2C27E34 0B7F8EA470E209 ] C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe
      21:08:51.0044 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe - ok
      21:08:51.0044 0x1cd4 [ 00D33CFD7F72083A69C91692D5C48E95, D38EA410FF00F60C73975B32AFC94A10550D2C1288B2999954 658C42FBB2687D ] C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe
      21:08:51.0044 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe - ok
      21:08:51.0044 0x1cd4 [ DCDF6A9E619644E12C74457A8A3C1E1B, 6D479841917C74DE4D5B07C27BE0BEEAF80E6C12CF01F43D9B 2C55714CAF05A4 ] C:\Windows\SysWOW64\winmmbase.dll
      21:08:51.0044 0x1cd4 C:\Windows\SysWOW64\winmmbase.dll - ok
      21:08:51.0059 0x1cd4 [ F3A9306AB1A1500E46C0F0013E1ED90B, 3DC0F7F7C23FA6677B18164F859B729AF7B75356FA15F4EB1F 99DF27617DFACE ] C:\Windows\System32\msvcr120.dll
      21:08:51.0059 0x1cd4 C:\Windows\System32\msvcr120.dll - ok
      21:08:51.0059 0x1cd4 [ E7A18ABD6FF39C00EAC94C88E123640C, FE0537F7D2E68AA547BD596BEF79929186E0C155C2792DA3B5 98F4CC9CB76C3D ] C:\Program Files\NVIDIA Corporation\NvContainer\libeay32.dll
      21:08:51.0059 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\libeay32.dll - ok
      21:08:51.0059 0x1cd4 [ FD571F6AAD74A58F1D9845EC03B3E332, B8751E89369664E1A96F55F97B13156745F20D982A7676CB7B 4A4ECC9A0576F1 ] C:\Windows\System32\msvcp120.dll
      21:08:51.0059 0x1cd4 C:\Windows\System32\msvcp120.dll - ok
      21:08:51.0059 0x1cd4 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF19 5B08BCBDEDA88F ] C:\Program Files (x86)\Skype\Updater\Updater.exe
      21:08:51.0059 0x1cd4 C:\Program Files (x86)\Skype\Updater\Updater.exe - ok
      21:08:51.0059 0x1cd4 [ A218D4F9C793B49CA8D22A377F0CFC84, 76282020EA7500A5010250F3B19CE922CD2E95FA2FFFB93F6D 63E3D2F0AB30F9 ] C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
      21:08:51.0059 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll - ok
      21:08:51.0075 0x1cd4 [ 8EC83D05AC92AB716D4BC2E9644E7AC7, EFFE99F25BA22612B0DA2E4A4FE0F93C65CDBC19CC4DCE6A65 572BB08BC155D4 ] C:\Program Files\NVIDIA Corporation\NvContainer\MessageBus.dll
      21:08:51.0075 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\MessageBus.dll - ok
      21:08:51.0075 0x1cd4 [ AFB64B7CA36380223E67F010921CE8C6, 282CB493AA5E09803EB463CAAAD414206866D3BB326C902CDA BC68AE89B7DBF5 ] C:\Windows\System32\cryptui.dll
      21:08:51.0075 0x1cd4 C:\Windows\System32\cryptui.dll - ok
      21:08:51.0075 0x1cd4 [ 02F3DF4170AC599B17312961A8274C02, B91CA974D3752E6BE3CEC9C7B327D0AC87859B4D3D53C4B55F 43BE13FBDCE3BB ] C:\Program Files\NVIDIA Corporation\NvContainer\NvStreamBase.dll
      21:08:51.0075 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\NvStreamBase.dll - ok
      21:08:51.0075 0x1cd4 [ 59CE911F898E17AB739D861C7A926C6F, 2256D0F085F395B157AA58F48F84447763F4AF2B7B9ECE1D23 46EFE122B2D683 ] C:\Program Files\NVIDIA Corporation\NvContainer\poco.dll
      21:08:51.0075 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\poco.dll - ok
      21:08:51.0075 0x1cd4 [ B22EB4AB9A7F4540B2CD86564FE828C0, 7B1FB919ED674885123CAC013E2EB57AB90E8ED9471FA0494F C5A76EF316ECC8 ] C:\Program Files\NVIDIA Corporation\NvContainer\ssleay32.dll
      21:08:51.0075 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\ssleay32.dll - ok
      21:08:51.0075 0x1cd4 [ 0487CFC8AB4470573D6E268C20BBE29C, D0EEE611903CF4A629F7A539AB2B92D1DBE201B5EB68335A0D AD36CA6455DDDC ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\msco reei.dll
      21:08:51.0075 0x1cd4 C:\Windows\Microsoft.NET\Framework\v4.0.30319\msco reei.dll - ok
      21:08:51.0091 0x1cd4 [ 6D1A29096E54589362357CDF0BA1E9E9, C9830449104313494B6C8484B121F77D9E3F4B752652D1EA29 DA7CECC9CE6F3A ] C:\Windows\SysWOW64\apphelp.dll
      21:08:51.0091 0x1cd4 C:\Windows\SysWOW64\apphelp.dll - ok
      21:08:51.0091 0x1cd4 [ 7B73FC5AD82AF0FB84212106455E0D48, CF6A2C746B3A9B9294A41DE686ED35FC99BB6A8ABEA7DC6A81 D15C67613B98D6 ] C:\Windows\SysWOW64\psapi.dll
      21:08:51.0091 0x1cd4 C:\Windows\SysWOW64\psapi.dll - ok
      21:08:51.0091 0x1cd4 [ D26FE6EEB9177A964BF0999738BEA549, C008A1D5BD8328F2041DEB2DD46D754DDEFF784E01BF07BF6E 3651D414E71258 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
      21:08:51.0091 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe - ok
      21:08:51.0091 0x1cd4 [ CFA562AF7B0BF67505B56E5C00816281, E55E016EA934A22E3AA1F5A8E1B85D4564A00B9C074EC839D3 C7AF0B67F8E63C ] C:\Windows\AppPatch\AcLayers.dll
      21:08:51.0091 0x1cd4 C:\Windows\AppPatch\AcLayers.dll - ok
      21:08:51.0091 0x1cd4 [ FB452131A790111332041B88039F98B4, 17E2E235696266037FA8B31B143600D0E79CA60B04C7A48352 B36E1C18561E0E ] C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe
      21:08:51.0091 0x1cd4 C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe - ok
      21:08:51.0106 0x1cd4 [ 9C8334925EEE054D5BDD9D0C1CDEF9FA, 1C74B3735FAA52BF36C13762BDAC15954AF76AE2FABDF18B98 A830AC058A2824 ] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_NvMdns Plugin.dll
      21:08:51.0106 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_NvMdns Plugin.dll - ok
      21:08:51.0106 0x1cd4 [ 7A262815259F912431813FEF6C2F8E0B, 3AD8EC8A24913E59EF23AA94D86AF0EA7ADA9D48540DE02DBE 271C7FEF3B98A3 ] C:\Windows\SysWOW64\ws2_32.dll
      21:08:51.0106 0x1cd4 C:\Windows\SysWOW64\ws2_32.dll - ok
      21:08:51.0106 0x1cd4 [ B0F327821DDD9C35F9C283C25ECCE71D, 4DB4F09D71EE61CBA0E5B1238F138E00A40CED5067DFB0C017 251A2137D22F41 ] C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
      21:08:51.0106 0x1cd4 C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe - ok
      21:08:51.0106 0x1cd4 [ D2019CDE9EB68D09C46C069BF5684C65, CE3E52D66D8ABE9FE92CC2AD5056E275AA3EB2805B84E46AEE 3078F9320951C6 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\msc orlib\e96b4590c579d08edc2e60cc3e5ae997\mscorlib.ni .dll
      21:08:51.0106 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\msc orlib\e96b4590c579d08edc2e60cc3e5ae997\mscorlib.ni .dll - ok
      21:08:51.0106 0x1cd4 [ AB15FEB56D735F4589217D02464B1A06, 76C9060FD749D837C92B716A91A190B038F2C03E46DA124A36 F88075361A9BE5 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\msvcp140.dll
      21:08:51.0106 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\msvcp140.dll - ok
      21:08:51.0106 0x1cd4 [ 6C2C88FF1B3DA84B44D23A253A06C01B, ACF65E565021F2017815FC5EC8A3145CF6C15E75C132CF23A3 78CC943E68327C ] C:\Program Files\Common Files\microsoft shared\ClickToRun\vcruntime140.dll
      21:08:51.0106 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\vcruntime140.dll - ok
      21:08:51.0122 0x1cd4 [ 25335383BC43AACDCD22836A3E732BDC, D66966F7321DB90EA85CD91BBAFDDEEFE8C47A396F5AD27D2B BA5A33B3280EAB ] C:\Windows\SysWOW64\mpr.dll
      21:08:51.0122 0x1cd4 C:\Windows\SysWOW64\mpr.dll - ok
      21:08:51.0122 0x1cd4 [ CC0BF7D46A8B9C00544761DFE35DF7DA, B49C2D87924DB7C50E05BAE2B8D979107D57F80F4F1E770ACF 5D5CE25569421D ] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_NvMess ageBusBroadcast.dll
      21:08:51.0122 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_NvMess ageBusBroadcast.dll - ok
      21:08:51.0122 0x1cd4 [ F6963E48385A5637FC4E51DC0F8234A0, AC169680F2F299FE92F86FBB5E721AC096E74F700D68648034 6C8FF7F9ECCE5B ] C:\Windows\System32\spool\drivers\x64\3\lxebserv.e xe
      21:08:51.0122 0x1cd4 C:\Windows\System32\spool\drivers\x64\3\lxebserv.e xe - ok
      21:08:51.0122 0x1cd4 [ 3769AD926A97A39D3A6EE32711673FA4, 7A240DFC73D4F966A3C98A89CCADD82386BBCF00F3ADC76851 F433A3A9F97985 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\ApiClient.dll
      21:08:51.0122 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\ApiClient.dll - ok
      21:08:51.0122 0x1cd4 [ 0F1E9D98CC524190E9B045908E6BC1F6, 252B3BA71F9452011FA60B6C7655DE65C93EE02754F6B7AF08 CBBAAE844CDEEB ] C:\Windows\SysWOW64\sfc.dll
      21:08:51.0122 0x1cd4 C:\Windows\SysWOW64\sfc.dll - ok
      21:08:51.0138 0x1cd4 [ C79CF9814E18D13BB77F74D40F06DEBE, B140B8C2F758301DB67DF824A8CD8B3784AF23B205BAABA498 43F8FE868D2B37 ] C:\Windows\System32\RstrtMgr.dll
      21:08:51.0138 0x1cd4 C:\Windows\System32\RstrtMgr.dll - ok
      21:08:51.0138 0x1cd4 [ 7210D35665FB3A0353A2B7AD2ACB293C, EBCC8CD41CC6108C52B38D1FA02DA3934704400E5B6E4F0CF3 C29A5E5BE2609B ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr. dll
      21:08:51.0138 0x1cd4 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr. dll - ok
      21:08:51.0138 0x1cd4 [ 529408E2C123D00D4CC2BEBCC8479566, B8FE6F8E7B439EE4890F305AA008553CB68F6FEA7268262E6F 1C3FD7F6FB90B8 ] C:\Windows\SysWOW64\dbghelp.dll
      21:08:51.0138 0x1cd4 C:\Windows\SysWOW64\dbghelp.dll - ok
      21:08:51.0138 0x1cd4 [ 94C93F32B21EB2DA6AFF2C264B17E623, 4ABE629C6A2A44F35F205709FB004837871D6CD4F3C21F2F77 432B2F98DAFC77 ] C:\Windows\SysWOW64\sfc_os.dll
      21:08:51.0138 0x1cd4 C:\Windows\SysWOW64\sfc_os.dll - ok
      21:08:51.0138 0x1cd4 [ D635E700E43F4ECA021FD159CFF3F8B9, 25F3396D17DBD7C2BC29337B6B5C75191EB3EE41C7F31962AA BFCDA1A5E9E527 ] C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
      21:08:51.0138 0x1cd4 C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe - ok
      21:08:51.0138 0x1cd4 [ 4B0B0A5FF804402C6169C9FB87F4D878, B48C7BF13BD2F086777649D3B6E9A489D1618CD97FB4AB0D55 22AE2CBFF24199 ] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_nvspse rviceplugin64.dll
      21:08:51.0138 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_nvspse rviceplugin64.dll - ok
      21:08:51.0153 0x1cd4 [ AB09CE954C647F3C2B4328B57D519996, 0DE1E28796F709D24758DDC6BC2C779F6FF4B20C51B163E2BA 77FA7E52942070 ] C:\Program Files (x86)\Lenovo\Motion Control\msvcp110.dll
      21:08:51.0153 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\msvcp110.dll - ok
      21:08:51.0153 0x1cd4 [ 80E987DBE08677E2EC09615CD4358607, 8A06500612CE1BB0AECF052DCCCCE619C85BE7732CBAEAC4D6 B26B6AE2CC7F7B ] C:\Program Files (x86)\Lenovo\Motion Control\msvcr110.dll
      21:08:51.0153 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\msvcr110.dll - ok
      21:08:51.0153 0x1cd4 [ 6F8675A27BB892572DC8D9942D2D22C7, 526F553756293EC749FD5F5AB109DDAAD61A56A83B80A0FE6C E0F27A5B8B1444 ] C:\Windows\System32\LenovoWiFiHotspotSvr.exe
      21:08:51.0153 0x1cd4 C:\Windows\System32\LenovoWiFiHotspotSvr.exe - ok
      21:08:51.0153 0x1cd4 [ F9E3229224FEC57A53F5B2A4B21942E0, C008454B1C65436C4289918CD64A83FDE655E2682977C68F3B 866A3BB947E244 ] C:\Windows\SysWOW64\dbgcore.dll
      21:08:51.0153 0x1cd4 C:\Windows\SysWOW64\dbgcore.dll - ok
      21:08:51.0153 0x1cd4 [ CDDE9E8B2F358508C98FC9F0D9C58183, 2E7EFEDE0F801A5D23F58CA7A1CD603A35B7138D559CEAE19C F24B4A811BDA48 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\mso20win32client.dll
      21:08:51.0153 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\mso20win32client.dll - ok
      21:08:51.0153 0x1cd4 [ 856DA04454A75CF6E7453D53CD90A29D, 4D72275D0CA35086400FD14A1F12A2F3E7D91E88957037B27D 5BB8D21531A36A ] C:\Windows\SysWOW64\msvcr120_clr0400.dll
      21:08:51.0153 0x1cd4 C:\Windows\SysWOW64\msvcr120_clr0400.dll - ok
      21:08:51.0169 0x1cd4 [ C9A6586921F0808D11F4A53563374ACB, 704CA2394C7C2145F4E965FAFC2AC55CB0533B80F10BA3B364 9653DF44984EB8 ] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_NvStre amControl.dll
      21:08:51.0169 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem_NvStre amControl.dll - ok
      21:08:51.0169 0x1cd4 [ AC65B1259636C0EA36CD1C14709B237B, 51D6AE14F39C63B98643F2123D548EB8D9919D189330198644 DB0291BAC77541 ] C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
      21:08:51.0169 0x1cd4 C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe - ok
      21:08:51.0169 0x1cd4 [ 133A4FF683AA33621A78B664475D81EE, B9D39ADB54EF9AB722B500BB874B4A7D2D4148F1FF2ED28D26 7239A1902507BD ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\cl rjit.dll
      21:08:51.0169 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\cl rjit.dll - ok
      21:08:51.0169 0x1cd4 [ 868630DCAE43495922F66A737D9469B2, 815E88A3AF501D697BB7A3089E4CF7FF6A42B5E387DB6BE90A 35A900F905CAD6 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe
      21:08:51.0169 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe - ok
      21:08:51.0169 0x1cd4 [ 28E521A6ABA9DE062A3719452816F495, B312A37DA052229DFB19353170CD5828582F8AC6426E857CA7 C8ACA0DD91C160 ] C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
      21:08:51.0169 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe - ok
      21:08:51.0169 0x1cd4 [ 64562A29817103E4B33B28860DD38B50, 6986D2C5BD1B562434ABFAD6C4E50E8C7F8E7D0815E4A9FD5D 506E653E4CE0C2 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\mso30win32client.dll
      21:08:51.0169 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\mso30win32client.dll - ok
      21:08:51.0184 0x1cd4 [ C72ABC6B7B90A61364B6DD889B5435F3, 0CBBD9691F08434DA3617874F99C6DD87538CBD65B5D8BC39F CE378D4ED29EED ] C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcr110.dll
      21:08:51.0184 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcr110.dll - ok
      21:08:51.0184 0x1cd4 [ 349B1D5D8D1B5A7B10BCD01470BD5F64, F0502E3D58713044F62F539B8738694E4CE9C619C665515F5E D2500C843C0C46 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcp110.dll
      21:08:51.0184 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcp110.dll - ok
      21:08:51.0184 0x1cd4 [ 5F06CAC4B09250CDDDD0180A08162924, A2EB0A57225E65FC264CFC9FAD858D8B54A015CDAE3DC904B1 C4E9AAB40B1F06 ] C:\Windows\System32\cryptsvc.dll
      21:08:51.0184 0x1cd4 C:\Windows\System32\cryptsvc.dll - ok
      21:08:51.0184 0x1cd4 [ 8E6958813B6FAAFF8A6EE9F2A7040299, 175930D44D23013B40848B0C3748595991B3D96C72CDAD7D71 B204207AA44E3B ] C:\Windows\SysWOW64\mswsock.dll
      21:08:51.0184 0x1cd4 C:\Windows\SysWOW64\mswsock.dll - ok
      21:08:51.0184 0x1cd4 [ BFCFB0177935E235B1FEBADE3694839D, CD1F41DAC68DF0F1F87F18DA18FAE8EB5B4260DFA400BF5392 367CB12C0BFF7E ] C:\Windows\SysWOW64\imagehlp.dll
      21:08:51.0184 0x1cd4 C:\Windows\SysWOW64\imagehlp.dll - ok
      21:08:51.0200 0x1cd4 [ 0AE7A97161368B3CC9748A36F2D5F458, B132CA92713371575A9C6781FE518B4939A4D68F11139D300F A9AB3D8352849D ] C:\Windows\System32\mpr.dll
      21:08:51.0200 0x1cd4 C:\Windows\System32\mpr.dll - ok
      21:08:51.0200 0x1cd4 [ 6D95C6266D85EA039FD2843F81FABD93, D9BC5B0FA02F79CD89DC5BA885FEA3FEF02AE1C46181D9F376 4A7DB44431BFFC ] C:\Windows\SysWOW64\fltLib.dll
      21:08:51.0200 0x1cd4 C:\Windows\SysWOW64\fltLib.dll - ok
      21:08:51.0200 0x1cd4 [ 039F872B9E944D6588D144FE08B79A82, 6E9B077330E005F81EF80753673E873A0A73E55DBE50E586B5 2516D92EF0B6C7 ] C:\Windows\SysWOW64\netapi32.dll
      21:08:51.0200 0x1cd4 C:\Windows\SysWOW64\netapi32.dll - ok
      21:08:51.0200 0x1cd4 [ 7D01451FA57540CAF8FCF48D26252BF7, 96A4B3D46A03A109D070EC770807E1DEAA857CB5962137A723 33C3627861241D ] C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe
      21:08:51.0200 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe - ok
      21:08:51.0200 0x1cd4 [ 053B12D5D2E45A7E01E43F008552620C, ADA4F25276ADA849830FCEF9B4D16CABE10F66A12F8E218E9A 046071A37E4938 ] C:\Windows\SysWOW64\comdlg32.dll
      21:08:51.0200 0x1cd4 C:\Windows\SysWOW64\comdlg32.dll - ok
      21:08:51.0216 0x1cd4 [ 0A6F92589D53A7D3C5B876CA37E8CC84, 35582007F0FB89AAAA43C502386EABED1543785EAFE27100A4 86A2CFEF9F639A ] C:\Windows\System32\crypttpmeksvc.dll
      21:08:51.0216 0x1cd4 C:\Windows\System32\crypttpmeksvc.dll - ok
      21:08:51.0216 0x1cd4 [ F2934208C0E50C0B971A7981AB90BED2, B936BFBBD71E731CC2CDB8B47D262F2EF09726FF921C2DA084 1910CA2401423D ] C:\Windows\System32\IKEEXT.DLL
      21:08:51.0216 0x1cd4 C:\Windows\System32\IKEEXT.DLL - ok
      21:08:51.0216 0x1cd4 [ 2C00AF55B40545EFF174C7040F3C9030, 6C6C5CA3829F15CA748CF6481B0DAB81382A04FC902AAA1B65 290E4A3B7200C2 ] C:\Windows\System32\cryptcatsvc.dll
      21:08:51.0216 0x1cd4 C:\Windows\System32\cryptcatsvc.dll - ok
      21:08:51.0216 0x1cd4 [ 7D811EA7A2AAA49B0446D42CBC1CD338, AFECE5E44E48F756C7EB81D95C9237552AF8A9C02CBE756E0F 3D3C6524DE49AD ] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      21:08:51.0216 0x1cd4 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - ok
      21:08:51.0216 0x1cd4 [ 6433F8201BFB449DC6B47F6999C2F164, 06729F1E0A0596620B48B6DC4A2CC9CC5FE55B17BD488C71F7 F15AA4262C8C14 ] C:\Windows\System32\cscapi.dll
      21:08:51.0216 0x1cd4 C:\Windows\System32\cscapi.dll - ok
      21:08:51.0216 0x1cd4 [ CA09EAEE92C6FDDC6B05057F11A0372D, 14DB5C186B69644AA93C445BF31CC9670204F95A47B77B6EAC B19B4A316378AD ] C:\Windows\System32\dps.dll
      21:08:51.0216 0x1cd4 C:\Windows\System32\dps.dll - ok
      21:08:51.0231 0x1cd4 [ 4A44E476F4D2AED65DECA059BC5ED0F7, 63822E9866D4C435229F15F790A77B7AC8E57A27E312AB28C6 F32A39EE4818CE ] C:\Program Files\Common Files\microsoft shared\ClickToRun\mso40uiwin32client.dll
      21:08:51.0231 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\mso40uiwin32client.dll - ok
      21:08:51.0231 0x1cd4 [ 309F13D0EC95D87FF6C756C4358C93E2, 3021ABC0C913F6FED45265BE1D9A2B77C8F27D84FAB5DC023B 82947F76FB1798 ] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_89c64 d28dafea4b9\comctl32.dll
      21:08:51.0231 0x1cd4 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_89c64 d28dafea4b9\comctl32.dll - ok
      21:08:51.0231 0x1cd4 [ D029339C0F59CF662094EDDF8C42B2B5, 934D882EFD3C0F3F1EFBC238EF87708F3879F5BB456D30AF62 F3368D58B6AA4C ] C:\Windows\System32\msvcp100.dll
      21:08:51.0231 0x1cd4 C:\Windows\System32\msvcp100.dll - ok
      21:08:51.0231 0x1cd4 [ CF0766D323FB5BDD661FD9DD81708860, 99EEBA61725394DD2B953151CE816C8B272F0367896C6CF9CE AD2076868326CE ] C:\Windows\SysWOW64\dhcpcsvc.dll
      21:08:51.0231 0x1cd4 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
      21:08:51.0247 0x1cd4 [ BC36AAF42722DB03D8AAB9F17B6C6AD9, 12CBA94FE58357E1A0A6FF42E19B7834380F05141576323F79 324217B8E4D72A ] C:\Windows\SysWOW64\nsi.dll
      21:08:51.0247 0x1cd4 C:\Windows\SysWOW64\nsi.dll - ok
      21:08:51.0247 0x1cd4 [ DF51C1442A3DB8ADE2B78DCDEC2419FD, 3DB1ECADCEFAA924256022689B8D7B775C0961B2A22E392072 29A98B63F32F27 ] C:\Windows\SysWOW64\winhttp.dll
      21:08:51.0247 0x1cd4 C:\Windows\SysWOW64\winhttp.dll - ok
      21:08:51.0247 0x1cd4 [ 840E0468368EB5FD87371EF508D72ACF, 7E05854D29C24E9BBB27B038620C345E063FF3B8F1AE0FDA05 4BEDF842FB29A9 ] C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
      21:08:51.0247 0x1cd4 C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe - ok
      21:08:51.0247 0x1cd4 [ 227CFE3EDA82029AAC1C088A16297CD7, C5634E317DD896311E99F32DF3835D29CBBD6958DFF9B51790 BA9BE7BC90C185 ] C:\Windows\SysWOW64\dnsapi.dll
      21:08:51.0247 0x1cd4 C:\Windows\SysWOW64\dnsapi.dll - ok
      21:08:51.0247 0x1cd4 [ 366FD6F3A451351B5DF2D7C4ECF4C73A, AE3CB6C6AFBA9A4AA5C85F66023C35338CA579B30326DD0291 8F9D55259503D5 ] C:\Windows\System32\msvcr100.dll
      21:08:51.0247 0x1cd4 C:\Windows\System32\msvcr100.dll - ok
      21:08:51.0247 0x1cd4 [ A9E5BB8A6428C73221A4110D8C9538C1, D0292A0414CEE09C8DA2FB9450CB854F4B2768C6B26808ED01 08B91A42593DC8 ] C:\Windows\System32\wshqos.dll
      21:08:51.0247 0x1cd4 C:\Windows\System32\wshqos.dll - ok
      21:08:51.0263 0x1cd4 [ 3BF018E23487F3E837845AD8DD9129DC, 14AD2690AD613D6C743DB51C569D7424683CCB78C98EB372FC 00E03123E9C747 ] C:\Windows\System32\lxebcoms.exe
      21:08:51.0263 0x1cd4 C:\Windows\System32\lxebcoms.exe - ok
      21:08:51.0263 0x1cd4 [ 89C16BCD53F72A59184DBDC02DBB63F6, F3CBCFAC13466A5BD08E049080ACFFF3550B355F4790B07C9E 2E1F4402DB932C ] C:\Windows\System32\WSHTCPIP.DLL
      21:08:51.0263 0x1cd4 C:\Windows\System32\WSHTCPIP.DLL - ok
      21:08:51.0263 0x1cd4 [ 0A358DC3EFF8E9C8C28A216385FFD9E9, 0C41022F63DE19844CC51382A37C9973C28DE393B91B091EE1 509F5C745FA9DD ] C:\Windows\SysWOW64\IPHLPAPI.DLL
      21:08:51.0263 0x1cd4 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
      21:08:51.0263 0x1cd4 [ 32C5DF01878550F320CDAB8645700BC8, 14893D1030954D0C894FC6FD30EE533DA4D132CAC13C839406 78147FBCABC876 ] C:\Windows\System32\lxebserv.dll
      21:08:51.0263 0x1cd4 C:\Windows\System32\lxebserv.dll - ok
      21:08:51.0263 0x1cd4 [ 0D8CA86B639533ED0A7FE1792C5BE600, 29A6DC71DE380BF8B154A7B0C5C40B8D0828D30BD04593628D 08492C7CDD4F1C ] C:\Windows\SysWOW64\wininet.dll
      21:08:51.0263 0x1cd4 C:\Windows\SysWOW64\wininet.dll - ok
      21:08:51.0278 0x1cd4 [ 298E7E733014AC0CD497D4506D5D25E3, 2420395DA08D879D0F48B5734D66E663939F6925B2AB7F9796 8C477FD1A08DC1 ] C:\Windows\System32\wship6.dll
      21:08:51.0278 0x1cd4 C:\Windows\System32\wship6.dll - ok
      21:08:51.0278 0x1cd4 [ C7F5125ABF0F82AC54AABB2FA676CF05, C56C9645E0BCF0B313AF09AB59BD17052240D4DFC1C29467C5 E15E929536DD61 ] C:\Program Files\NVIDIA Corporation\NvContainer\ipccommon64.dll
      21:08:51.0278 0x1cd4 C:\Program Files\NVIDIA Corporation\NvContainer\ipccommon64.dll - ok
      21:08:51.0278 0x1cd4 [ 06244AE293E04AB801876B9059DC7615, 631EBCBB8F642352C7EA7754A1A10F02CA20B6E7D4C62BE65D BB1DE89397536D ] C:\Windows\System32\msi.dll
      21:08:51.0278 0x1cd4 C:\Windows\System32\msi.dll - ok
      21:08:51.0278 0x1cd4 [ D86AD86B05274E6386976FE42A7BA7C0, 4F6A1D9DB8EC0E4CD6445DB7FB405839A2454540999AD817CB D5FCB3B25F44C6 ] C:\Windows\SysWOW64\msi.dll
      21:08:51.0278 0x1cd4 C:\Windows\SysWOW64\msi.dll - ok
      21:08:51.0278 0x1cd4 [ D381E5F2003A550D9BE774CE7DF2E2E7, BE954E08FB64184C537D73AAD46FEEAC5C3C1BE6C70F1356AA 72085D6EC5192B ] C:\Windows\System32\lxebinpa.dll
      21:08:51.0278 0x1cd4 C:\Windows\System32\lxebinpa.dll - ok
      21:08:51.0294 0x1cd4 [ FED48B19D6F55D7A3AB498D85729D1BA, FA5E0E02BC2E2DE108C55991E3B063CC947072228B53539F42 F922661510DE7C ] C:\Windows\System32\sysmain.dll
      21:08:51.0294 0x1cd4 C:\Windows\System32\sysmain.dll - ok
      21:08:51.0294 0x1cd4 [ 5CB05C9A228CE36CCF097872D766F256, 62977823B85FD39FE9E9F71CC71B7F7DBC3D67DAE337C56F55 5BC77A9AADB4EE ] C:\Program Files\Common Files\Apple\Apple Application Support\AppleVersions.dll
      21:08:51.0294 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok
      21:08:51.0294 0x1cd4 [ 4E330AD1EED4A5D582EE415FD55953A2, 2C02E1F45F74D250110BA5117AA942495CB2EBAC7F2CCECC28 4B4FB8F47B13E1 ] C:\Windows\System32\Windows.StateRepository.dll
      21:08:51.0294 0x1cd4 C:\Windows\System32\Windows.StateRepository.dll - ok
      21:08:51.0294 0x1cd4 [ 919FB784C30B3D8DE534A001A1762564, 71AC369A6C9FF78E17CE1C02D29A91DAAA451F63A81D11C9DF 638D989DC3A507 ] C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\IPSDefs\ 20170105.001\IPSEng32.dll
      21:08:51.0294 0x1cd4 C:\Program Files (x86)\Norton Security\NortonData\22.8.1.14\Definitions\IPSDefs\ 20170105.001\IPSEng32.dll - ok
      21:08:51.0309 0x1cd4 [ 9EA94D6A10F12A736945613D65A9E509, ECCA6927FF8E2CF316BF173F9212CEB08A61542EF6D6E6A22D 83636CF761AB99 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\msc orlib\40571abae9422cd2ca6fafbbde1c3cdc\mscorlib.ni .dll
      21:08:51.0309 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\msc orlib\40571abae9422cd2ca6fafbbde1c3cdc\mscorlib.ni .dll - ok
      21:08:51.0309 0x1cd4 [ F351E13698AEC80A49C55513C7E0B734, 2E22553285DDA0E624B2C4ACA2BDFBAB8725D7E9E1DB4EF887 F0532A90A693E7 ] C:\Windows\System32\vaultcli.dll
      21:08:51.0309 0x1cd4 C:\Windows\System32\vaultcli.dll - ok
      21:08:51.0309 0x1cd4 [ 91CB95B35481155BFE29C217CD237F27, CA66957DF1441D991453BEF02D768D44E5D9A484BC23C8874E 8A7AC20904CB06 ] C:\Windows\System32\wiaservc.dll
      21:08:51.0309 0x1cd4 C:\Windows\System32\wiaservc.dll - ok
      21:08:51.0325 0x1cd4 [ FD58E396F26A840C055E8AF28F170572, 3F0B1486E4AF7B53AA3514B9A6390EDE30247E177226D36E03 A735E2E0E33DBC ] C:\Program Files\Common Files\Apple\Apple Application Support\YSCrashDump.dll
      21:08:51.0325 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\YSCrashDump.dll - ok
      21:08:51.0325 0x1cd4 [ 4BA25D2CBE1587A841DCFB8C8C4A6EA6, B30160E759115E24425B9BCDF606EF6EBCE4657487525EDE7F 1AC40B90FF7E49 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\msvcr110.dll
      21:08:51.0325 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\msvcr110.dll - ok
      21:08:51.0325 0x1cd4 [ A612555310B7F2A688FA57C7C10615BC, 028B8BA6A6CF74776C8E4F7485BB7973DE25242F292F837D78 AB9CFCC3E8AC90 ] C:\Windows\SysWOW64\netutils.dll
      21:08:51.0325 0x1cd4 C:\Windows\SysWOW64\netutils.dll - ok
      21:08:51.0325 0x1cd4 [ 3E29914113EC4B968BA5EB1F6D194A0A, C8D5572CA8D7624871188F0ACABC3AE60D4C5A4F6782D952B9 038DE3BC28B39A ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\msvcp110.dll
      21:08:51.0325 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\msvcp110.dll - ok
      21:08:51.0341 0x1cd4 [ 0CAD9BA9CC632A3CFF8A7F248BF5FB4D, 95051E1312B71F642B298543807127F089E0937C09BDD99FA7 279414B4B03C06 ] C:\Program Files\Common Files\Apple\Apple Application Support\ASL.dll
      21:08:51.0341 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\ASL.dll - ok
      21:08:51.0341 0x1cd4 [ B00CA1F8B9B6946EA2C8751A36EFCE21, 8F761FC359F993D9710F257F61A29695BC9A43CB98CBC776C2 A2DDB874C40DCD ] C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe
      21:08:51.0341 0x1cd4 C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe - ok
      21:08:51.0341 0x1cd4 [ 770C1528B78CC7B2BBF0AF74CEF0C201, 100514AA8D39939A9619BA454C25B570F35CFD864DC347B45F 5F144CA47E7AB6 ] C:\Windows\SysWOW64\wkscli.dll
      21:08:51.0341 0x1cd4 C:\Windows\SysWOW64\wkscli.dll - ok
      21:08:51.0341 0x1cd4 [ 1AE7A9072E98BB29335966BA46A51BEB, E637E2D66B170BFE67A5F8D766E31D84BAB3457D2F8CAAEA25 71DE1FA2F8D99A ] C:\Program Files\Common Files\Apple\Apple Application Support\CoreFoundation.dll
      21:08:51.0341 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok
      21:08:51.0341 0x1cd4 [ 5C7FFCCA7489AD7F4980F4ABB0A6A9DC, C3708DFE98637524A7BD91D5EFD3669E6ADFB91A926BCCCFDA 82BCE3711CC070 ] C:\Windows\System32\lxebiesc.dll
      21:08:51.0341 0x1cd4 C:\Windows\System32\lxebiesc.dll - ok
      21:08:51.0356 0x1cd4 [ E7A7E8803E66B7CCED95D327A4DBC135, 401ECD953D4014A95C9022822D9ACEC1A68C917281DBA23655 03A473FC6D9507 ] C:\Windows\System32\wdi.dll
      21:08:51.0356 0x1cd4 C:\Windows\System32\wdi.dll - ok
      21:08:51.0356 0x1cd4 [ 41C2E66EDF2118CAF328ACA1D67055CE, 76304DE8310A47F57FCD8CFC9DEA37389DB975813BADB44A98 11F51A5C53D090 ] C:\Windows\System32\vaultsvc.dll
      21:08:51.0356 0x1cd4 C:\Windows\System32\vaultsvc.dll - ok
      21:08:51.0356 0x1cd4 [ 0BC9CC67EF837471465CD54CF416FBE7, 25DB698335CEAAE5F876662E9BDB3B2AE430D3F39E87375D03 DBA39728EA42CD ] C:\Windows\System32\wiatrace.dll
      21:08:51.0356 0x1cd4 C:\Windows\System32\wiatrace.dll - ok
      21:08:51.0356 0x1cd4 [ 6457A56D0F1AD860A0F18487DF1CA82A, 01D295B253BDD733E9003166AD93E8FC00F439734CE961571B 6451FE1B155D6C ] C:\Windows\System32\perftrack.dll
      21:08:51.0356 0x1cd4 C:\Windows\System32\perftrack.dll - ok
      21:08:51.0356 0x1cd4 [ 06A4269A7765F92CCA017C06B0985E27, F5FB6C1E4D7732046FC7D2357B33341C5B398FECCAA67E3AD5 0264328B8EAB17 ] C:\Windows\System32\StateRepository.Core.dll
      21:08:51.0356 0x1cd4 C:\Windows\System32\StateRepository.Core.dll - ok
      21:08:51.0372 0x1cd4 [ 60E2EB3E7B7F15C25E02462159F90707, D8344B529EEC0D4922CAC3E6897CC9F191ACF1376017BE38ED 6BF6019F1ED181 ] C:\Windows\System32\wpnservice.dll
      21:08:51.0372 0x1cd4 C:\Windows\System32\wpnservice.dll - ok
      21:08:51.0372 0x1cd4 [ 2F12004529CC3612B0B43BFEB167733E, E848BF5B3231822C6950BEA47D833DB3FA0A36EE641C9C7F6A D6EEF7E2EAE860 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrj it.dll
      21:08:51.0372 0x1cd4 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrj it.dll - ok
      21:08:51.0372 0x1cd4 [ 8EE8BDF714D986AC30193FE75478047C, 96E1DEFEA2A03068CD7BA6D0B4A3888F69BB53973E8C0CF34E 1AE559960DD470 ] C:\Windows\SysWOW64\msctf.dll
      21:08:51.0372 0x1cd4 C:\Windows\SysWOW64\msctf.dll - ok
      21:08:51.0372 0x1cd4 [ 4B3CD7AA02782E074A883D7D0E97B90A, BB98DB6B1F0B03695FF8A214EB13CA529CE2C15859EA940314 B62F8120BBBABA ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccLib.dll
      21:08:51.0372 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccLib.dll - ok
      21:08:51.0372 0x1cd4 [ 5BBBC20DB99F0F807973C5B6756FBF73, 8BC5010128729BD1CB7194C54BD0E732405EE99C57DB7E293A B0A5AC475A13C5 ] C:\Program Files\Lenovo\Communications Utility\lmcfcameractrl.exe
      21:08:51.0372 0x1cd4 C:\Program Files\Lenovo\Communications Utility\lmcfcameractrl.exe - ok
      21:08:51.0372 0x1cd4 [ A53C8999E765D50A61009AEA45DDCFFC, 47EAC227FB81C295BDDB0A6A805B3FF7EB325A7F43ABEB643E DDF12B403BB0B4 ] C:\Windows\System32\ncryptprov.dll
      21:08:51.0372 0x1cd4 C:\Windows\System32\ncryptprov.dll - ok
      21:08:51.0388 0x1cd4 [ 6ECE65F3C2BAC3D2514F12EE913980EC, 6C1275FA3560844B5A93AF87A9F1D653998AA0354BD1FCE1FB BC169B4945008C ] C:\Windows\System32\lxebusb1.dll
      21:08:51.0388 0x1cd4 C:\Windows\System32\lxebusb1.dll - ok
      21:08:51.0388 0x1cd4 [ 0F9AD3CA037ED391B6D834259D142CC6, E9A70E9D8678925265A473B2F666722959DFE343D109B15E26 CB17F6C03A801C ] C:\Windows\SysWOW64\Faultrep.dll
      21:08:51.0388 0x1cd4 C:\Windows\SysWOW64\Faultrep.dll - ok
      21:08:51.0388 0x1cd4 [ ADEF3496BC7B65DB16628B98C6EB7749, 718068B1CB36D2798BEDA5F71326259874A972437B73B5B0C0 4EC4C77D628272 ] C:\Windows\System32\diagperf.dll
      21:08:51.0388 0x1cd4 C:\Windows\System32\diagperf.dll - ok
      21:08:51.0388 0x1cd4 [ D912A3C7773C63C885D295174FD9BE9A, EB4E97A238C74B1DBD9D5086CC04B2922E68736AFDF60CE798 9544C948D1D62E ] C:\Windows\System32\wsdchngr.dll
      21:08:51.0388 0x1cd4 C:\Windows\System32\wsdchngr.dll - ok
      21:08:51.0388 0x1cd4 [ 869B461D70247D65486F7110DB8C0B87, A2B480529265D001AF4D6EDE5824DCC104D23E194FF07F6926 AC8666AA3A6298 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\StreamServer.dll
      21:08:51.0388 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\StreamServer.dll - ok
      21:08:51.0403 0x1cd4 [ 44EEEB2382F566999287E13F2067693C, 53A4A0C85EAD38030FF2078C67465E3710ECD03A08FF34E1E6 7B2E3E1CC70043 ] C:\Windows\System32\drivers\condrv.sys
      21:08:51.0403 0x1cd4 C:\Windows\System32\drivers\condrv.sys - ok
      21:08:51.0403 0x1cd4 [ 3F9EF54AB168EB5C1DF7CC19A024A152, E6555274706F3D1C8CC27F77949C8B2286CEDB837804E67D72 8087F707B3AC6C ] C:\Program Files\Common Files\Apple\Apple Application Support\objc.dll
      21:08:51.0403 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\objc.dll - ok
      21:08:51.0403 0x1cd4 [ DD8EAC114E86965FCD82552F889ED23A, A5E45576AB7EFBE384002EB99630D77F2CBC42DA6BF0BD6BC5 22F23069EC5B33 ] C:\Windows\SysWOW64\MMDevAPI.dll
      21:08:51.0403 0x1cd4 C:\Windows\SysWOW64\MMDevAPI.dll - ok
      21:08:51.0403 0x1cd4 [ 003274DE008D272C16C80D726845C23C, 7C5DDA02A546D16AB2FB3E614D0BAB4FAB91BB9EA5F12F1BD8 B1AA32CF493492 ] C:\Windows\SysWOW64\wbem\wbemprox.dll
      21:08:51.0403 0x1cd4 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
      21:08:51.0403 0x1cd4 [ 353C1F0822CD215A5187691B8ACE9CC9, A7F9E7AA276551D2E265C46273A1268CDEB83DAC063E945A85 3D10054045D27C ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem\ee1c3ea3e0049df6d53b35e21c2247e4\System.ni.dll
      21:08:51.0403 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem\ee1c3ea3e0049df6d53b35e21c2247e4\System.ni.dll - ok
      21:08:51.0419 0x1cd4 [ C56B4D6E7F4D4087B1708BAC1D787C43, 182C39A44E0A067E81684CF50E61D49A0DC608C074B4AD95E7 0326585722C23A ] C:\Program Files\Common Files\Apple\Apple Application Support\libdispatch.dll
      21:08:51.0419 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\libdispatch.dll - ok
      21:08:51.0419 0x1cd4 [ 2E861509E880DE98932815903154BC53, 7A177071B33660B9C61682F20E818C4E773D83035A9248A420 781354DECCA906 ] C:\Program Files\Common Files\Apple\Apple Application Support\libicuin.dll
      21:08:51.0419 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\libicuin.dll - ok
      21:08:51.0419 0x1cd4 [ 65D85A7F81436F71EA7BDEB2FADE8FBF, 95B7D258A84850BDFB73575E69CA1E82317B97E94FBBE822E6 690C2D4DFD5E11 ] C:\Program Files\Common Files\Apple\Apple Application Support\libicuuc.dll
      21:08:51.0419 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\libicuuc.dll - ok
      21:08:51.0419 0x1cd4 [ BB3165353D0214988D95A7DDC93706F4, 16DE9A6C0B96C4BDDE949B0BBE3ADA948F4BE1B67592F9C5B4 B64B6F441D2960 ] C:\Program Files\Common Files\Apple\Apple Application Support\icudt55.dll
      21:08:51.0419 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\icudt55.dll - ok
      21:08:51.0419 0x1cd4 [ 8CCAB08815B50AD78B823DB3F96C8604, 265E6D582EB7207B5CC577D61CB7BC3646F613047F168CD69B B776C37780EBF5 ] C:\Windows\System32\srvsvc.dll
      21:08:51.0419 0x1cd4 C:\Windows\System32\srvsvc.dll - ok
      21:08:51.0419 0x1cd4 [ F306C8D60C75D48BBE039EA69280BB6F, 0FED3D47CE92906798ED009393E4F0A027D3837E22AB2DEE89 2DCFA676FF7E68 ] C:\Windows\SysWOW64\wbemcomn.dll
      21:08:51.0419 0x1cd4 C:\Windows\SysWOW64\wbemcomn.dll - ok
      21:08:51.0434 0x1cd4 [ 69A2169E9B8A13E8D6211D2D978100CC, 67742070D482C012FF96C7AA8FC6AFA4F1BB4E6312E5C87027 0D2787E89CC2B1 ] C:\Windows\SysWOW64\propsys.dll
      21:08:51.0434 0x1cd4 C:\Windows\SysWOW64\propsys.dll - ok
      21:08:51.0434 0x1cd4 [ 0F54ABD1EAC74FC00BED394DC7F3F682, 366EB1FCC88FA18EAFA954FBBB967B0E1383929E2FADBB54ED 2174E9B07F0998 ] C:\Windows\System32\fundisc.dll
      21:08:51.0434 0x1cd4 C:\Windows\System32\fundisc.dll - ok
      21:08:51.0434 0x1cd4 [ 1C0CF1ADBA19E1CD3CB4FAEAE78E86C2, 5B46079CC806C00CCBC8EF29478E921F1E704DBD1A1F1263C0 7656188AFCF2F5 ] C:\Windows\System32\keyiso.dll
      21:08:51.0434 0x1cd4 C:\Windows\System32\keyiso.dll - ok
      21:08:51.0434 0x1cd4 [ 14C825E073CB22A13F998314E3B1F955, 48066887F077F3F76A30EDCF175D84295C131F772203C51D43 DF9C8DE51F6858 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem\08da6b6698b412866e6910ae9b84f363\System.ni.dll
      21:08:51.0434 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem\08da6b6698b412866e6910ae9b84f363\System.ni.dll - ok
      21:08:51.0434 0x1cd4 [ 50CE65B3E29C5BBF566F2277A26EF664, 5C6A941937BD0A6B1234F12F6F67D1C6574A8DF41078F015BB 51BB44C8682773 ] C:\Windows\System32\msdelta.dll
      21:08:51.0434 0x1cd4 C:\Windows\System32\msdelta.dll - ok
      21:08:51.0450 0x1cd4 [ 75B865AD79ECEA39F566F4EE82B8EC07, 2C87DCCB0754D5B3A6C27D56E5F2093F987B91607A30F8B80E BCF055E43A47D5 ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
      21:08:51.0450 0x1cd4 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
      21:08:51.0450 0x1cd4 [ 32E46210A0E55A85EA8C93B1CB2CF460, A30B105B4B31FFA3DE77D3B7B5B6C64870A911CAFA10449226 8D31205CE6A93C ] C:\Windows\System32\fdPnp.dll
      21:08:51.0450 0x1cd4 C:\Windows\System32\fdPnp.dll - ok
      21:08:51.0450 0x1cd4 [ 58E51D527D2B82961A94FCDE12E6FED7, 03324A273E7FC0C05B82B3895C29A08416B2FAEC8DD8B839F6 29A585B7E2BA1C ] C:\Windows\SysWOW64\olepro32.dll
      21:08:51.0450 0x1cd4 C:\Windows\SysWOW64\olepro32.dll - ok
      21:08:51.0450 0x1cd4 [ 24FC2879F6A3E2F92648B8F5058BD21C, 9820F54559739AFFAC737D09660F2AD430625182E1D648F3ED 99BC206F2A4884 ] C:\Windows\SysWOW64\AudioSes.dll
      21:08:51.0450 0x1cd4 C:\Windows\SysWOW64\AudioSes.dll - ok
      21:08:51.0450 0x1cd4 [ FBA861EF9AE6F64CA375EEA558D3149B, E7DA765AF081635A814E769967702B4711FC64E785EBA9757F FF4590B5C65A4B ] C:\Windows\SysWOW64\wbem\fastprox.dll
      21:08:51.0450 0x1cd4 C:\Windows\SysWOW64\wbem\fastprox.dll - ok
      21:08:51.0450 0x1cd4 [ D752C96401E2540A443C599154FC6FA9, 046F7A1B4DE67562547ED9A180A72F481FC41E803DE49A96D7 D7C731964D53A0 ] C:\Windows\System32\conhost.exe
      21:08:51.0450 0x1cd4 C:\Windows\System32\conhost.exe - ok
      21:08:51.0466 0x1cd4 [ 57F58CE42A04F8B20949336F545509FA, 2C208CA449DDB1F59351BFFFFE111E8C8D78257A93A8EFC4EE AB23E6569F2C77 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccVrTrst.dll
      21:08:51.0466 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccVrTrst.dll - ok
      21:08:51.0466 0x1cd4 [ 727F2875259DFB0A19004A3722DCDB9D, 01378AE59366CBA838FE2BAB9265FC52EF45DE438D35EA10A7 E3931DD83B39AD ] C:\Windows\System32\drvstore.dll
      21:08:51.0466 0x1cd4 C:\Windows\System32\drvstore.dll - ok
      21:08:51.0466 0x1cd4 [ CD6B3A4B1D1909B05616D5D20209825F, FD26F4227A07DCEE82012FA9DB595DFB170BFCF03F33B83E7C 2AF7A118E1C399 ] C:\Windows\System32\lxebhbn3.dll
      21:08:51.0466 0x1cd4 C:\Windows\System32\lxebhbn3.dll - ok
      21:08:51.0466 0x1cd4 [ 064FF4CA3FC0C5208274123C2F4B1BE5, 4CD4AE92361E0975BC6BFE9CCAFF6BB221DFA0F9CFD1BC772F 4CCA9E55C5877D ] C:\Windows\System32\atl.dll
      21:08:51.0466 0x1cd4 C:\Windows\System32\atl.dll - ok
      21:08:51.0466 0x1cd4 [ 03986D72ED1095394A19824B3570C9AF, 51B79C5B5030AE95EA6FEC3E6EEEB2B8FDCBA72C9383478C61 39FEE972C2C1AE ] C:\Windows\System32\wfapigp.dll
      21:08:51.0466 0x1cd4 C:\Windows\System32\wfapigp.dll - ok
      21:08:51.0466 0x1cd4 [ EEAD88C334B835704CD49AB963C048FE, FCD4A27E825A10221FB8B54E2B5A2083D2A25010EBE50E921E A5EEC8916BD7DF ] C:\Windows\System32\ConhostV2.dll
      21:08:51.0466 0x1cd4 C:\Windows\System32\ConhostV2.dll - ok
      21:08:51.0481 0x1cd4 [ 21F49905D45401F5F805238F3B06E54C, 5F79AD036C8411D3B2DCA9286B2C6C5C4F7E4DEA403CBADC0D D74BC4DB02ECBA ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Serv759bfb78#\010ca03bc4ce0e90aba17cf53dfaa3b0 \System.ServiceProcess.ni.dll
      21:08:51.0481 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Serv759bfb78#\010ca03bc4ce0e90aba17cf53dfaa3b0 \System.ServiceProcess.ni.dll - ok
      21:08:51.0481 0x1cd4 [ 0405C3B755A28B0EFFCB68E16F2482F3, 8A47F83C0011FF83CE6B230993BE473D155DEEAB8F87A50ADA DF5907856AAE14 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Serv759bfb78#\fa20738558b988ba1a5824d78e74969e \System.ServiceProcess.ni.dll
      21:08:51.0481 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Serv759bfb78#\fa20738558b988ba1a5824d78e74969e \System.ServiceProcess.ni.dll - ok
      21:08:51.0481 0x1cd4 [ 203B776EA013FE8E0C5B4A29F4D92443, 116D4168CB0262446BBD6683C6FB1742F96535A1D250F5EEDB 5BC1498A4C3DA9 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Confe64a9051#\4feffb0dc218d8ed949836b5ee25587e \System.Configuration.Install.ni.dll
      21:08:51.0481 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Confe64a9051#\4feffb0dc218d8ed949836b5ee25587e \System.Configuration.Install.ni.dll - ok
      21:08:51.0481 0x1cd4 [ 05F56CBDB83FF28829A123749B4B0087, 7D4CB06DA0E2B39BE2ABA116F92F91BD36CF170D5024C578D3 EA58B05A7D0BDD ] C:\Windows\SysWOW64\security.dll
      21:08:51.0481 0x1cd4 C:\Windows\SysWOW64\security.dll - ok
      21:08:51.0481 0x1cd4 [ AD80BBFFB18D84CAE0455EF8AAFA6FEE, 03E40E5EB98E33C591496BE6084009C4674D68642BF98A6AD4 A5FF0AFBC5863D ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\EFACli.dll
      21:08:51.0481 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\EFACli.dll - ok
      21:08:51.0497 0x1cd4 [ 3454A45514A205EE0B7C0C251D8DA0C2, AE4A708558F246B6EE7C07EBE27BF96E385B0B4D7925F7CDEE 1CA47B3F02A7A0 ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Ut ilities.dll
      21:08:51.0497 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Ut ilities.dll - ok
      21:08:51.0497 0x1cd4 [ FFA44FD7FEDA32632E8CE84AD0F9101B, 2A0746A7876C1A430F9C9A5BE4BE28CAA2FF4F73477651AE5C C74462278F333B ] C:\Windows\System32\pnpts.dll
      21:08:51.0497 0x1cd4 C:\Windows\System32\pnpts.dll - ok
      21:08:51.0497 0x1cd4 [ E38AFD383077C6B87995A1DCC8606B98, 0A54972B5DE8B61567229B9B3C537C9E90FD818CC2AA92EF77 1C499B7AE2B790 ] C:\Windows\System32\secur32.dll
      21:08:51.0497 0x1cd4 C:\Windows\System32\secur32.dll - ok
      21:08:51.0497 0x1cd4 [ EBD4C2424DC0C023F82AC7F13970016D, 517B69E5C9859BA13EADD3EBAD01D7D4386AD8903F06D2A75F 8ED7EF0DB3FC83 ] C:\Windows\SysWOW64\WinTypes.dll
      21:08:51.0497 0x1cd4 C:\Windows\SysWOW64\WinTypes.dll - ok
      21:08:51.0497 0x1cd4 [ ACE201D14A0F44F5634D178FD117D8CD, EBE5EBD8185D16197E29C1F25ECB0DF12062D1035754A53591 438DDEF5F4332B ] C:\Windows\SysWOW64\secur32.dll
      21:08:51.0497 0x1cd4 C:\Windows\SysWOW64\secur32.dll - ok
      21:08:51.0497 0x1cd4 [ 8185C55110BEA10E67135CDC11691AC6, 271A1B7E953D41F0A59A695D886A08B157D4C37C8159B2647F 428F7E20240082 ] C:\Windows\System32\ngcksp.dll
      21:08:51.0497 0x1cd4 C:\Windows\System32\ngcksp.dll - ok
      21:08:51.0513 0x1cd4 [ B998C002FFC95DED5A218AA21F6AA346, 6204961C105A92C5BF7AB5D99EB04F37016190381C5C02F4F1 CC1CE14165602A ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccSvc.dll
      21:08:51.0513 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccSvc.dll - ok
      21:08:51.0513 0x1cd4 [ 78EC7FBFDFE50BBC95064BA51FD56F82, B8FA1548AE8146F4F5597595068C541B32D476F6AFB098888C FB479AC5530E5D ] C:\Windows\System32\srumsvc.dll
      21:08:51.0513 0x1cd4 C:\Windows\System32\srumsvc.dll - ok
      21:08:51.0513 0x1cd4 [ A2B3A3599312B8DA998D063223776D76, D0D916DB4C63F0C99FCDA7F45199802AEB2F6AD5751A5E1890 2304E83A43367E ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.Shared.dll
      21:08:51.0513 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.Shared.dll - ok
      21:08:51.0513 0x1cd4 [ 02999270FD2ACF52BED65FC17E83F5A1, CC12D36E72ED7309E66527138AD0F698706C4867F5E0BED43B 62E27A60FC5B12 ] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
      21:08:51.0513 0x1cd4 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll - ok
      21:08:51.0513 0x1cd4 [ 2922D8EE2DEB5F857DC75137E9E52741, 2BFAC7A6F468E54F64CCF75BE4858BB23E8E412F68CA3B6BAB 3EF3AA532960FA ] C:\Windows\System32\DriverStore\FileRepository\nvl ti.inf_amd64_82561e05a47b0130\nvapi64.dll
      21:08:51.0513 0x1cd4 C:\Windows\System32\DriverStore\FileRepository\nvl ti.inf_amd64_82561e05a47b0130\nvapi64.dll - ok
      21:08:51.0528 0x1cd4 [ 3B15D883E32E1D20AA6DF45489F78444, BF229A6EA3847D202015257A44B7FF00F324AF05117A364EF2 140C31B11F8C58 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvApi.dll
      21:08:51.0528 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvApi.dll - ok
      21:08:51.0528 0x1cd4 [ 584CDC2A984737CB30632AC4378D7AD0, 9384D64D6C043DA03231C9A1DC7177E61B5DE44D0AF6CEF7BF 64DECAEA74B745 ] C:\Windows\SysWOW64\srclient.dll
      21:08:51.0528 0x1cd4 C:\Windows\SysWOW64\srclient.dll - ok
      21:08:51.0528 0x1cd4 [ B3E20079B7719ADD343DC3238292D9A5, 06DE7A19BFA694C8C0B451E34A13F1B985D4508B714D6CD746 2AE741C887EB8B ] C:\Windows\System32\LXEBhcp.dll
      21:08:51.0528 0x1cd4 C:\Windows\System32\LXEBhcp.dll - ok
      21:08:51.0528 0x1cd4 [ D65F295A049473E6A39EA9A0EA76CA32, 274FC0BA044EB2D14093AB0E561F7FACEE06A3F433C81343C8 B926FA2F9BD251 ] C:\Windows\System32\NetSetupSvc.dll
      21:08:51.0528 0x1cd4 C:\Windows\System32\NetSetupSvc.dll - ok
      21:08:51.0528 0x1cd4 [ 3B3C607C3C62DFBEF61938DA2CAB94DF, E5EEA7F45A7BBFDF6F0003CD77E39958C451DD1B4B401876B5 619A3C20F5C370 ] C:\Windows\System32\tileobjserver.dll
      21:08:51.0528 0x1cd4 C:\Windows\System32\tileobjserver.dll - ok
      21:08:51.0528 0x1cd4 [ 5B3959DB94393B209529DBAE6B4C7696, E088171DC96CF19B74388DFFF03B4517E4E47E1954CABA97EA 67A93D1C6A3958 ] C:\Program Files\Lenovo\Communications Utility\libmcfcamera.dll
      21:08:51.0528 0x1cd4 C:\Program Files\Lenovo\Communications Utility\libmcfcamera.dll - ok
      21:08:51.0544 0x1cd4 [ 9131563659DD7E35602740A0EF5283BF, 6F4060DD63F9B80FCDB87F584EAB3583E9096E353D5C41E63C 9CFA146E4FCF91 ] C:\Program Files\Common Files\Apple\Apple Application Support\pthreadVC2.dll
      21:08:51.0544 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok
      21:08:51.0544 0x1cd4 [ 30AF67137E134C0F19CFDC6E600C9341, 60D95D0963EAE6A1694F7593A04D7A391009C71210A5589402 8A71AC883974BE ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\srtsp32.dll
      21:08:51.0544 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\srtsp32.dll - ok
      21:08:51.0544 0x1cd4 [ BA904AF6E0D48B929B74A7EC9DF9D3AD, E6D5AE386AD4B16088108AD5479695ADAB0E1BC6D24795F989 0228C3D0F17E62 ] C:\Program Files (x86)\Lenovo\Motion Control\WebcamSplitterServer.exe
      21:08:51.0544 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\WebcamSplitterServer.exe - ok
      21:08:51.0544 0x1cd4 [ 8C8D1140787DA60A343DD11C1CDF4992, 6AA1ECE9DD340D05AEC43248592A78B70D21959DE8727F506D 21A3A962348583 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\msvcp120.dll
      21:08:51.0544 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\msvcp120.dll - ok
      21:08:51.0544 0x1cd4 [ 49FB6E786B2F9DF8812E0E317CED55CB, 9461F2E4ADD5C650102ACDE0C62377FF86D9B19FC20D0003F3 26CCD474E8B7B9 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\msvcr120.dll
      21:08:51.0544 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\msvcr120.dll - ok
      21:08:51.0559 0x1cd4 [ 98F9B2890F44EBEA8D14A73C021886D3, 92873F5D9C89B9FAABAB1B3C6AFE19FF1322C4E4B58188F662 680D2F8931E649 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVPolicy.dll
      21:08:51.0559 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVPolicy.dll - ok
      21:08:51.0559 0x1cd4 [ BCB9F3F5C67DAF7FCA462CB7F63C4376, FFAAA35D2086DD67476B0490A95A2C2D6F5A291E3286D1B8CA 04B977E8CB5235 ] C:\Windows\System32\esent.dll
      21:08:51.0559 0x1cd4 C:\Windows\System32\esent.dll - ok
      21:08:51.0559 0x1cd4 [ 9471D5E2FEDF5552440BF935143DFAB0, B489197F05EFFFB17F10FA9942DB88100C86BEB8291F9ACC8E B38BEF751BF90D ] C:\Windows\System32\wsock32.dll
      21:08:51.0559 0x1cd4 C:\Windows\System32\wsock32.dll - ok
      21:08:51.0559 0x1cd4 [ A7AA7586A6E1CDD99667BDD8A9AD54BC, 397436B1E4EAD38DB81030DCAB058EDB0F3C8E2B6506671016 E62C0A97B02278 ] C:\Windows\SysWOW64\mfplat.dll
      21:08:51.0559 0x1cd4 C:\Windows\SysWOW64\mfplat.dll - ok
      21:08:51.0559 0x1cd4 [ 9B1CE49762BAAB1DB9D02F98CD5CB984, 8D0555E4FE70B15B3213FB486CA10D7986C03C6CC4CD2F36D0 586884D3700537 ] C:\Windows\SysWOW64\mf.dll
      21:08:51.0559 0x1cd4 C:\Windows\SysWOW64\mf.dll - ok
      21:08:51.0575 0x1cd4 [ 11570A38101A08661AC44523D10EF73C, DAEFD6A474229882ECDB57B24DFFA584953C1E117AD0AF8EBC 4ADF17622C310E ] C:\Windows\SysWOW64\spp.dll
      21:08:51.0575 0x1cd4 C:\Windows\SysWOW64\spp.dll - ok
      21:08:51.0575 0x1cd4 [ 90F3708E07F6997FE839973DD935ECD3, 68B499AE6CFC6F8E6DF6DCB0E76022DC09CBD7AE5DCC8D04C9 73F0AF03AF2198 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Management\95f465f99941dbfb76bfa12f5eeb80d4\Sy stem.Management.ni.dll
      21:08:51.0575 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Management\95f465f99941dbfb76bfa12f5eeb80d4\Sy stem.Management.ni.dll - ok
      21:08:51.0575 0x1cd4 [ FF9E058DAC27FCC739884D3DBE43D81F, 8C6A42FC8D9262A7E84C39566AB25931FBD77A7F9B5F1806DB 69B297ADC87F3C ] C:\Windows\SysWOW64\mfreadwrite.dll
      21:08:51.0575 0x1cd4 C:\Windows\SysWOW64\mfreadwrite.dll - ok
      21:08:51.0575 0x1cd4 [ B80876DC9ED199AAE1ECCA79FE268AEF, 4D7A75B644B307ABE1667B7E5DEF00CD61690ED2B780D1A263 A9323F4CD34041 ] C:\Program Files (x86)\Lenovo\Motion Control\atl110.dll
      21:08:51.0575 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\atl110.dll - ok
      21:08:51.0575 0x1cd4 [ 8CC473C33806F009B25B0934930E9B53, E15A0471510DBBE6EF346ADF1577A5FC042243230F748BFCA6 E1404E073D2B4B ] C:\Program Files (x86)\Lenovo\Motion Control\PointGrabDeviceAPI.dll
      21:08:51.0575 0x1cd4 C:\Program Files (x86)\Lenovo\Motion Control\PointGrabDeviceAPI.dll - ok
      21:08:51.0591 0x1cd4 [ 71514D9A6350A37B4F0BAA6ACB751771, 5DB99D6784900D85BB4A62E9F40B4EC628054D41B38A5E93F8 0C7A8BB066EBBB ] C:\Windows\System32\NapiNSP.dll
      21:08:51.0591 0x1cd4 C:\Windows\System32\NapiNSP.dll - ok
      21:08:51.0591 0x1cd4 [ 90E6A44311F392E63043D4B395FEBE80, 2C5E861B2E0B9136987F24FC69B066520C75A7A880CB57462D EE018BC4824545 ] C:\Windows\System32\wpncore.dll
      21:08:51.0591 0x1cd4 C:\Windows\System32\wpncore.dll - ok
      21:08:51.0591 0x1cd4 [ C5711F992670E6A56A2F10A19CDB4092, F44B979FA8F99F87CEB4D92D1572D8151E2D814EE3A4881D9A CFBDF2ADB1F840 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Core\f6ebd52be27fe627fed0d185c6a9c0d5\System.C ore.ni.dll
      21:08:51.0591 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Core\f6ebd52be27fe627fed0d185c6a9c0d5\System.C ore.ni.dll - ok
      21:08:51.0591 0x1cd4 [ 6E5F9A1AF46EC2D6AA5C22B4DE96EA27, BCD7EC4EFAC66BF18E618853CE9C809D704746CD3EF87A3E48 AD70E18B75B14E ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Runt73a1fc9d#\4da3c72f42204a2df7e76da2a003a8df \System.Runtime.Remoting.ni.dll
      21:08:51.0591 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Runt73a1fc9d#\4da3c72f42204a2df7e76da2a003a8df \System.Runtime.Remoting.ni.dll - ok
      21:08:51.0591 0x1cd4 [ 652755E0FB22EA0D0DDB0DF318E4EBAF, 1E6A4F88D946A1B98E82DA0F45EF8D356832686CB80C9B40F9 64CD12C94C7A0C ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccIPC.dll
      21:08:51.0591 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccIPC.dll - ok
      21:08:51.0591 0x1cd4 [ 6A2B52668B8E46B78BD8B907169661D7, 4E49F4EF499D7593379995D7C06C2CCACEDFF9141C93DD21B0 09295340270864 ] C:\Windows\System32\dnssd.dll
      21:08:51.0591 0x1cd4 C:\Windows\System32\dnssd.dll - ok
      21:08:51.0606 0x1cd4 [ B996DE26A2E16053C9485F5905B05320, 30EB2CEB466A4F05A44F7CBFCDFD8CC3C27B5FCF1269C1B941 0C48AB362D2A75 ] C:\Windows\System32\NgcCtnrSvc.dll
      21:08:51.0606 0x1cd4 C:\Windows\System32\NgcCtnrSvc.dll - ok
      21:08:51.0606 0x1cd4 [ D2CBE7A20BB52DDD160F75F03AD51744, 7CC3AE8C5E9C89E3D69CB699ECD0FFE6989CF07D42418AFFB6 FA3837EC2BFE47 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVOrchestration.dll
      21:08:51.0606 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVOrchestration.dll - ok
      21:08:51.0606 0x1cd4 [ 0505F01E9BBC30F2D6959D11B51AA468, 4A4B3755A3702E52220D820E5A656F65EB4E474C9B0A682E7D 7398D5EAAD7F09 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvStreamingManager.dll
      21:08:51.0606 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvStreamingManager.dll - ok
      21:08:51.0606 0x1cd4 [ 1243C8C0F3BF00C1108283F1BCBD128A, E201748BBF6AE1A030A8387F5B6EC90F8DFEFFF6AED3FFBE4E 82A4F67F645994 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVManifest.dll
      21:08:51.0606 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVManifest.dll - ok
      21:08:51.0606 0x1cd4 [ 85220DEC5309BDF0A0F2CBEDADE6EF45, C33C01F76FEA0C10B6B34DAB40615160147723F96573B513BE DA66041A0733F1 ] C:\Windows\System32\netshell.dll
      21:08:51.0606 0x1cd4 C:\Windows\System32\netshell.dll - ok
      21:08:51.0622 0x1cd4 [ 5832C9217134301471291B18891DF7DB, 769E516EBDD2A446E7527A2E5AC29E020CBC603937BC3EA564 9A5793108BCDEB ] C:\Windows\System32\nvspcap64.dll
      21:08:51.0622 0x1cd4 C:\Windows\System32\nvspcap64.dll - ok
      21:08:51.0622 0x1cd4 [ 6239FC35E4ABF266B82B1888F2925CB4, 2F72E6CB50E4F98198BD0A888EFB2C717B38DA1EC7C738A218 EE83668916845C ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.ImClient.dll
      21:08:51.0622 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.ImClient.dll - ok
      21:08:51.0622 0x1cd4 [ 0C22CEF7E4856BB9ECDF460691D11FC0, F1FDFCC80BB42FDEEC21BD727637CE377C3AA70C2AADC53C74 A129663B7B7187 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WM INet_Utils.dll
      21:08:51.0622 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WM INet_Utils.dll - ok
      21:08:51.0622 0x1cd4 [ 00C916B8ECDCDF87DEA9889EC87F0452, 0E3323684939A46C34B69BCB491BEA3C32A8C3C0A720C0292D 9BB0F3985E2216 ] C:\Windows\SysWOW64\devenum.dll
      21:08:51.0622 0x1cd4 C:\Windows\SysWOW64\devenum.dll - ok
      21:08:51.0622 0x1cd4 [ 308693585CE30B3ABC804292FA2853FA, 98FEBB0BB61D4EF8B70E561814C4C90A3A817012EEBEB1160B DBB734AC7449FE ] C:\Windows\SysWOW64\mfcore.dll
      21:08:51.0622 0x1cd4 C:\Windows\SysWOW64\mfcore.dll - ok
      21:08:51.0622 0x1cd4 [ FC38C4D4B0E4BB94820C6A9AE261054A, 44E1C5A5ED24516017FB2B50EBE742EC24404B60FD30F20053 6701178D9698A6 ] C:\Windows\SysWOW64\msdmo.dll
      21:08:51.0622 0x1cd4 C:\Windows\SysWOW64\msdmo.dll - ok
      21:08:51.0638 0x1cd4 [ B7CB8C4C89239FF52907E470A8AEAF84, 232FAA84870671D3A9D2F07E4B79AB2B69245D0580E5212447 C09FA8E47A428B ] C:\Windows\System32\pnrpnsp.dll
      21:08:51.0638 0x1cd4 C:\Windows\System32\pnrpnsp.dll - ok
      21:08:51.0638 0x1cd4 [ D8A60A249E1C40DF52B71E37DC910183, C6A146C1AE5F403C6B8F76E2AEDCEDC5C0454A4E9F9D6225B9 B4477F5DA1686C ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Ut ilities.SystemUtilities.dll
      21:08:51.0638 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Ut ilities.SystemUtilities.dll - ok
      21:08:51.0638 0x1cd4 [ 96C4CBD3C8DF0FA34591FEE057AF3E1F, C545B9FE35631FBEF55D46AAB58896523E13CF500A5E95D979 28CF2F942E185A ] C:\Windows\System32\winsqlite3.dll
      21:08:51.0638 0x1cd4 C:\Windows\System32\winsqlite3.dll - ok
      21:08:51.0638 0x1cd4 [ 3ADF9D42BD1A57F8E0C7C6F8C91619D8, 8135C207AD8B42A74B8A2DF1F1D1155F16D656807F5BDFDBA6 C544EB18FEC603 ] C:\Windows\System32\hnetcfg.dll
      21:08:51.0638 0x1cd4 C:\Windows\System32\hnetcfg.dll - ok
      21:08:51.0638 0x1cd4 [ 8F06D0DC60DB58AEBDF0114E732D6F62, 5BD03F977EC0B339E71005B45ED366FBA406A5DF3566E1D5DD 2FF1AC2A7D01AC ] C:\Windows\SysWOW64\avicap32.dll
      21:08:51.0638 0x1cd4 C:\Windows\SysWOW64\avicap32.dll - ok
      21:08:51.0653 0x1cd4 [ EE7FEE4FBC7E81AF987B0C228F07E844, FBB31D8CC5CD92AF131610E1EF7BDC74EF7BDAA35FD03F5D24 86B3964FC82CCC ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.PluginManager.dll
      21:08:51.0653 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.PluginManager.dll - ok
      21:08:51.0653 0x1cd4 [ B0DE13ABF238AB28E963629B977A012F, 43288C8A658C2F0CB0CB1C9D874506D6CEEF455AAB68CE2EF0 D685DE8E3BA0C3 ] C:\Windows\System32\winrnr.dll
      21:08:51.0653 0x1cd4 C:\Windows\System32\winrnr.dll - ok
      21:08:51.0653 0x1cd4 [ 1B4FEDD16B0055135AFC08AE147F6BED, 7019E2C1576D1A47E45A39CAF7C8603967B01BABB508EDB891 4C2483CF54F6CC ] C:\Windows\SysWOW64\ksuser.dll
      21:08:51.0653 0x1cd4 C:\Windows\SysWOW64\ksuser.dll - ok
      21:08:51.0653 0x1cd4 [ C42F702EEAF570A9963B1817056C3663, 409B3AC9408849FA213D34D0C6515462AA49917ADD36B066BD 0EDD980FA3F260 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\diMaster.dll
      21:08:51.0653 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\diMaster.dll - ok
      21:08:51.0653 0x1cd4 [ EAAA2B83C4764FDCFBEE4A4D6546DE92, 043779B2C684699C89D6E8363D65BAA9F31DFF17D250059B56 A8E3AE48C89B5B ] C:\Program Files\Bonjour\mdnsNSP.dll
      21:08:51.0653 0x1cd4 C:\Program Files\Bonjour\mdnsNSP.dll - ok
      21:08:51.0669 0x1cd4 [ 575A386BA2D2349D5A2F22A2EE77B3D6, E83AB6A9EC6C778A7354FB2130C84692C91D2AB6700C60C7D9 AA65E53A253B2E ] C:\Windows\SysWOW64\msvfw32.dll
      21:08:51.0669 0x1cd4 C:\Windows\SysWOW64\msvfw32.dll - ok
      21:08:51.0669 0x1cd4 [ 8E64B08C2E7CE9BFC8ED06376677028F, 3B79DFA1FCC6AA33C2CB720F94DBE17AD49601D687BCAFD2C1 CBAB7618EFCF29 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVCatalog.dll
      21:08:51.0669 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVCatalog.dll - ok
      21:08:51.0669 0x1cd4 [ 8BCBF263A1A513A6D5041C42B0FBAEDF, E7DA74E20FF77E46949720EF3EC52FE6407C2E284D55227EF9 B31F4B8ADB19BF ] C:\Windows\SysWOW64\mfperfhelper.dll
      21:08:51.0669 0x1cd4 C:\Windows\SysWOW64\mfperfhelper.dll - ok
      21:08:51.0669 0x1cd4 [ 4F20A63C70BCA17A239F199131908F28, 93ECCFD80325D49288AEDE0096DD8DDCB31F3D9A0167921550 6BD52E885093CC ] C:\Program Files\Common Files\Apple\Mobile Device Support\MobileDevice.dll
      21:08:51.0669 0x1cd4 C:\Program Files\Common Files\Apple\Mobile Device Support\MobileDevice.dll - ok
      21:08:51.0669 0x1cd4 [ 153B4AE88989481F1F881D416F29285D, 8A42F6975B3527AE402C0C2222ECB7A7FD30D9FA1BECFDBC27 9ED09BAFAC01A2 ] C:\Windows\SysWOW64\vssapi.dll
      21:08:51.0669 0x1cd4 C:\Windows\SysWOW64\vssapi.dll - ok
      21:08:51.0669 0x1cd4 [ 9CD74E25A4A0D93FBAC20D48A995DDDE, A49D74B960B99DB4470C0D3B5ED099C4FE16AFFDF877502701 0231D255361A89 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Core\46ebe2b057622677cfc3fd04f47081c0\System.C ore.ni.dll
      21:08:51.0669 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Core\46ebe2b057622677cfc3fd04f47081c0\System.C ore.ni.dll - ok
      21:08:51.0684 0x1cd4 [ 1F5FF8C45418A3D47DC73D612EFBD47E, 1F307DFBFD08617F27D575C2AAC1256C73D7F3B715D00F534B 7FBF9CBAE206A4 ] C:\Windows\System32\cdp.dll
      21:08:51.0684 0x1cd4 C:\Windows\System32\cdp.dll - ok
      21:08:51.0684 0x1cd4 [ EA89E39CE914897E63B5640F73C382D9, A4AFBDAAC634BDC2B005D0D1576414D8961513550F72E65728 5742B7562627B1 ] C:\Windows\System32\dafupnp.dll
      21:08:51.0684 0x1cd4 C:\Windows\System32\dafupnp.dll - ok
      21:08:51.0684 0x1cd4 [ 101451B1BC1C1F7E7B5C8CB8C4DAF5C7, 18200F82D740254BA0FDAE3A177405492C105EDB91F7F486C0 A6C2FCACC7D063 ] C:\Windows\System32\NgcCtnrGidsHandler.dll
      21:08:51.0684 0x1cd4 C:\Windows\System32\NgcCtnrGidsHandler.dll - ok
      21:08:51.0684 0x1cd4 [ FAE8D0480BDD905EEA453D3A57C8D5C6, C1531223B8201B344A6A6474CB2D9B8A8C632250A3A6F472EC 5E2D7D28ADD94C ] C:\Windows\System32\rasadhlp.dll
      21:08:51.0684 0x1cd4 C:\Windows\System32\rasadhlp.dll - ok
      21:08:51.0684 0x1cd4 [ 17D51DFC12643CD3D76EF6ED8BEEC731, 43F8F1D2B1C7B1085736899A2B0CB2CF931962E457A8AD4345 181F8262818A99 ] C:\Windows\System32\ktmw32.dll
      21:08:51.0684 0x1cd4 C:\Windows\System32\ktmw32.dll - ok
      21:08:51.0700 0x1cd4 [ 0E86A451C2BF6DD8C550309845473F13, 4063210DB8A5B84601BC1C4B510F6D820BC01D63E4B97C973F 31867630449C3E ] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.14393.447_none_5507 ded2cb4f7f4c\comctl32.dll
      21:08:51.0700 0x1cd4 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.14393.447_none_5507 ded2cb4f7f4c\comctl32.dll - ok
      21:08:51.0700 0x1cd4 [ DF17909FAC861C1ED00DDC3DABFE3D7B, 25AAFC2B601C6818CAC83A2071F0F717D13FEE7BB7059652A0 4BBFADF5DF0129 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccSet.dll
      21:08:51.0700 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\ccSet.dll - ok
      21:08:51.0700 0x1cd4 [ 93A7D09E77526FEE7BBC7E9867BEA0FB, 35B99ED29A65FD5275F16A5E724991407CAD078750CDA0E51F E061BC36D6BFA0 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvVirtualization.dll
      21:08:51.0700 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvVirtualization.dll - ok
      21:08:51.0700 0x1cd4 [ 9308CC7E6070011DDD250C51AA007307, D9C6A1DEF5C631486A3BBFD66EE7CC73FA765909742E1F2FD2 5FC0B935B4E261 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Configuration\a7f47973b917fdac945dd35f56b99eaf \System.Configuration.ni.dll
      21:08:51.0700 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Configuration\a7f47973b917fdac945dd35f56b99eaf \System.Configuration.ni.dll - ok
      21:08:51.0700 0x1cd4 [ D3BF2DA9216A4CF22A97820A50A67EFF, D00CBE0A7ECFB449D9B48967A01EE56141404EBE229893D5A1 710781AD5F2551 ] C:\Windows\System32\netman.dll
      21:08:51.0700 0x1cd4 C:\Windows\System32\netman.dll - ok
      21:08:51.0700 0x1cd4 [ 13CB028E951A9D2A7D6B50D19F8E9D45, 325ECC22D26FC60B5EFDEE57A49192295CE9573EFAC4C8E39E 12BFB0BD79DC8C ] C:\Windows\System32\NetSetupEngine.dll
      21:08:51.0700 0x1cd4 C:\Windows\System32\NetSetupEngine.dll - ok
      21:08:51.0716 0x1cd4 [ 39AC026A1B20784C4455D39F28A0059F, D0685097A3F11385C9634823777D149E27852149B058EA782E 4A4EAEF1B39367 ] C:\Windows\SysWOW64\vsstrace.dll
      21:08:51.0716 0x1cd4 C:\Windows\SysWOW64\vsstrace.dll - ok
      21:08:51.0716 0x1cd4 [ 9C09E3057378ADE13AFB1C43C9D13F64, 4BB8B54C5F2F1685B85A2B319153D5652107C0DBAB7E4E4B71 2246D5C8F24E9E ] C:\Windows\System32\NgcCtnr.dll
      21:08:51.0716 0x1cd4 C:\Windows\System32\NgcCtnr.dll - ok
      21:08:51.0716 0x1cd4 [ 5BC2D871EB445A70EB762ECE7C574BBD, 0D146C5DDFB829A989C442E5E0781120FE925ACE5468FDD9C3 50E75138D61A2D ] C:\Windows\SysWOW64\RTWorkQ.dll
      21:08:51.0716 0x1cd4 C:\Windows\SysWOW64\RTWorkQ.dll - ok
      21:08:51.0716 0x1cd4 [ 44758105AB3EA34E815D4B6CA1153311, 7F223A20D2538C123BAC6F75BE0E126876A116F09502FD980C 05B8916E26E1B7 ] C:\Windows\System32\ssdpsrv.dll
      21:08:51.0716 0x1cd4 C:\Windows\System32\ssdpsrv.dll - ok
      21:08:51.0716 0x1cd4 [ 4467FDF0ADCF0CC505BB9285FA8A38E7, 02575A3125AA51C6EF9CD7EC28E607D9E29005396D9CC26188 714FE41755A3EE ] C:\Windows\System32\ImplatSetup.dll
      21:08:51.0716 0x1cd4 C:\Windows\System32\ImplatSetup.dll - ok
      21:08:51.0731 0x1cd4 [ 8976D22223B42D55DCFAFEA2BD5EAD8C, 9916A88971D50C7D6A211693F1327E6E8E436DB9B1970E5FEB 01B533F0564DB0 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Drawing\c2abcda8f96d67fa6ff5665fd21dddff\Syste m.Drawing.ni.dll
      21:08:51.0731 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Drawing\c2abcda8f96d67fa6ff5665fd21dddff\Syste m.Drawing.ni.dll - ok
      21:08:51.0731 0x1cd4 [ C12B7939C16F2C617F84150F370227F2, 1A9F1139968203889978797ADF3F9C62B66A438AF312304F9C F3CB48C13FDBFE ] C:\Program Files\Common Files\Apple\Apple Application Support\CFNetwork.dll
      21:08:51.0731 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok
      21:08:51.0731 0x1cd4 [ EA1D2640A021528E8072997A86306148, 31A925B6BFC57E3F1AB3169CDCCDB39A7C0A61B082FA2A428F E9AB5BF291D7A9 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIntegration.dll
      21:08:51.0731 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIntegration.dll - ok
      21:08:51.0731 0x1cd4 [ 62D6C213F934913DC3225AEDE151954B, A16B9E73AD1EC119BEF35A64B5534690721E7BCB6BDC02E03D 4F49FF51C52895 ] C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
      21:08:51.0731 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll - ok
      21:08:51.0731 0x1cd4 [ 9CEAC58E4434497701A683D9015EA3EF, 598D0B5CDC2646D1DBA2279EC904E6783B9CD16560D0AB4ACD ACB28233ADBE33 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvSubsystemController.dll
      21:08:51.0731 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVIsvSubsystemController.dll - ok
      21:08:51.0731 0x1cd4 [ 52A4B8A7642648D3B76D6F7660BA563D, A320160235A3B149AFA8FDD438C775831D681535C949A16EB9 1F4A28A94BA991 ] C:\Windows\System32\sscore.dll
      21:08:51.0731 0x1cd4 C:\Windows\System32\sscore.dll - ok
      21:08:51.0747 0x1cd4 [ 924564C6374F361B38AF73212C520FC0, 91FEB10B955D69A7B758EFC53C7E51A1EDE9B875F823DC41B0 4356CA62133D77 ] C:\Windows\System32\wlidres.dll
      21:08:51.0747 0x1cd4 C:\Windows\System32\wlidres.dll - ok
      21:08:51.0747 0x1cd4 [ 59920894C38A827091A06AF559834E47, 8B40FE0B1BA3B2A79BFF70803D039DB921F85C978724722E5E 5AFF188FA75471 ] C:\Windows\System32\drivers\vwifimp.sys
      21:08:51.0747 0x1cd4 C:\Windows\System32\drivers\vwifimp.sys - ok
      21:08:51.0747 0x1cd4 [ 764257BE3D2043AFA893486982AC64AE, 4767B1280A19A45A1AE758BEDBC789B26456B5DACC41EE1243 E1BA16C4660402 ] C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
      21:08:51.0747 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll - ok
      21:08:51.0747 0x1cd4 [ 4851F31B5BFBC2F164A317BD70F82E9C, CBC079FEE79B5B9A12AE47010B0836FD437045FF1E87F1C3CD 281CA2971282D2 ] C:\Windows\System32\rasapi32.dll
      21:08:51.0747 0x1cd4 C:\Windows\System32\rasapi32.dll - ok
      21:08:51.0747 0x1cd4 [ 817FEB9A1326C49E03AE2EB2D3B2FEB8, C7A3C654ABFA655C3904C74C533A42D72FBF715B17E8CDF689 08AD3D1B96C0A7 ] C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVFileSystemMetadata.dll
      21:08:51.0747 0x1cd4 C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVFileSystemMetadata.dll - ok
      21:08:51.0763 0x1cd4 [ A55E69CB0E32F57B0618508EDACC892C, 512752A83CCEEF310CC5B561AB7FBE09F466F0023BDD835008 E59197DDB26240 ] C:\Program Files\Common Files\Apple\Apple Application Support\SQLite3.dll
      21:08:51.0763 0x1cd4 C:\Program Files\Common Files\Apple\Apple Application Support\SQLite3.dll - ok
      21:08:51.0763 0x1cd4 [ 1B8F37B3F190B9BA2EF5D11CBB3CBE72, A6A1A5A06F3D0AE253AAF534E38D774A9B8FBF62668BE9239D E52FB85BC39EC1 ] C:\Windows\System32\sscoreext.dll
      21:08:51.0763 0x1cd4 C:\Windows\System32\sscoreext.dll - ok
      21:08:51.0763 0x1cd4 [ B10E65DE84B8C7B5B4BB335A8D3F6FCF, DC95C933F1A77F4E1870A8BF0D8D73CAC830815C9F00404F90 F10B93670AE2A3 ] C:\Windows\System32\tetheringclient.dll
      21:08:51.0763 0x1cd4 C:\Windows\System32\tetheringclient.dll - ok
      21:08:51.0763 0x1cd4 [ 86EE1D8EF4EF3B8162965364EB51503B, CEE442DCF9F8323918AE436E1F53876ECBADF156CA655FBA2C A2D222DEC3D151 ] C:\Windows\System32\mi.dll
      21:08:51.0763 0x1cd4 C:\Windows\System32\mi.dll - ok
      21:08:51.0763 0x1cd4 [ B07D32F44DFADC6EB9BBAFA1783B8468, C412A22F84E06BA8B13BC53BBA263F066C0152261198FA74D6 C3D7D18BB470E9 ] C:\Windows\System32\rasman.dll
      21:08:51.0763 0x1cd4 C:\Windows\System32\rasman.dll - ok
      21:08:51.0763 0x1cd4 [ 671E38CF2AD869B6D83A7DD2C91EBDA0, 8A1AE0B9C62A0FEAA79C987CA71AFC499C881BE74FC7F0BEFA A7978291E73A91 ] C:\Windows\SysWOW64\mfksproxy.dll
      21:08:51.0763 0x1cd4 C:\Windows\SysWOW64\mfksproxy.dll - ok
      21:08:51.0778 0x1cd4 [ E51FA4430B0CA1A4F92E852AE8D4714D, 0B3DB13C15813B5336C620491DA6855903548CC3CB69B8E189 BE8609339395FA ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Xml\42142f2f161821b78f345ecf759fa095\System.Xm l.ni.dll
      21:08:51.0778 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Xml\42142f2f161821b78f345ecf759fa095\System.Xm l.ni.dll - ok
      21:08:51.0778 0x1cd4 [ 0BE254C19FF0407230D41608E6EBA140, 86C34A7E1A9C777D6BF23F4F07B905F4B22B2F300A535530A4 F8E815C88DECC6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Windows.Forms\c02fbf560e52a1aab432a90d4c613af4 \System.Windows.Forms.ni.dll
      21:08:51.0778 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Windows.Forms\c02fbf560e52a1aab432a90d4c613af4 \System.Windows.Forms.ni.dll - ok
      21:08:51.0778 0x1cd4 [ 12F1C54247D3B5476B75CF7EC0A6AA0B, 8FDCAAEDCB4279A8C099D7C0A55D48DD475D8937C567CBDC81 B04508D6A7D322 ] C:\Windows\System32\CellularAPI.dll
      21:08:51.0778 0x1cd4 C:\Windows\System32\CellularAPI.dll - ok
      21:08:51.0778 0x1cd4 [ 28F778648D73EE69507A56F2F52D77A3, 97C6D40287173335D3208B0FACEDB3DC8DD3048900FBC70F35 9E29C0071EF0A3 ] C:\Windows\System32\miutils.dll
      21:08:51.0778 0x1cd4 C:\Windows\System32\miutils.dll - ok
      21:08:51.0778 0x1cd4 [ A71894760975865B3C5C8850A8CBCB6F, D14878434C203D7A2EAB8C1F3BCA57F8A7193FBAAA11F7C893 F2FC39C41EC776 ] C:\Windows\System32\msftedit.dll
      21:08:51.0778 0x1cd4 C:\Windows\System32\msftedit.dll - ok
      21:08:51.0778 0x1cd4 [ FC23FE34F0933A1C21AF40561A34BE2C, 12C3600204B50C14610B0BD72DA92976425B101881343252D2 9DE86E135473EE ] C:\Windows\System32\HNetCfgClient.dll
      21:08:51.0778 0x1cd4 C:\Windows\System32\HNetCfgClient.dll - ok
      21:08:51.0794 0x1cd4 [ 0B77D981D45E1D489940AAC5FBF62663, 7F4AFF2D9FDFFC2D9D360FB3AFA3EC740F679D026CE8FC34BA 2A0D3CE8F1E6AD ] C:\Windows\SysWOW64\atl.dll
      21:08:51.0794 0x1cd4 C:\Windows\SysWOW64\atl.dll - ok
      21:08:51.0794 0x1cd4 [ ED376C89C132C7DD26051EE9B689E546, 98EE45694BA0237705610E4DF077779478AF1022E9002C99E8 1C50731AD2B761 ] C:\Windows\SysWOW64\mfsensorgroup.dll
      21:08:51.0794 0x1cd4 C:\Windows\SysWOW64\mfsensorgroup.dll - ok
      21:08:51.0794 0x1cd4 [ 03756C464D3741481D6A99B067377C7A, C076F30534D83F70C5C49A669FC17A60081E15EB98F34C5084 3B227CBE7E7E0C ] C:\Windows\SysWOW64\FSClient.dll
      21:08:51.0794 0x1cd4 C:\Windows\SysWOW64\FSClient.dll - ok
      21:08:51.0794 0x1cd4 [ F1728839036DE23998FEC493BA8741DF, E4A28BDF8F366A8F9CF0CFB045ED0C4355053B951698EE55C7 E84B22B87C4192 ] C:\Windows\SysWOW64\avrt.dll
      21:08:51.0794 0x1cd4 C:\Windows\SysWOW64\avrt.dll - ok
      21:08:51.0794 0x1cd4 [ DEC91F7802AB7B84DBA6D4AE77F71C18, 2E2826E836168F1F8E3F10D4325C6A7B4B3FBC8376095B7FFB 01A62F56726836 ] C:\Windows\System32\wmidcom.dll
      21:08:51.0794 0x1cd4 C:\Windows\System32\wmidcom.dll - ok
      21:08:51.0809 0x1cd4 [ A169976E7F0CDAB31BDC8FC613F3CF9F, 91B460FADCCC088B2343CA1335E30955045BB46F72AC33C2DE 7F29EA3175E829 ] C:\Windows\System32\rilproxy.dll
      21:08:51.0809 0x1cd4 C:\Windows\System32\rilproxy.dll - ok
      21:08:51.0809 0x1cd4 [ 1877BF7D6D3435C1F1A3BAAC4307F9A5, 19439874C5C106CA27F4ACFA46AA9AE280C23CF2F583FB3609 116719D57BBA15 ] C:\Windows\System32\netwphelper.dll
      21:08:51.0809 0x1cd4 C:\Windows\System32\netwphelper.dll - ok
      21:08:51.0809 0x1cd4 [ 035087546E5EFC28361F2318A27A47B4, B9D601569D4279BA6C3E1196093C06F12DC9F0F17242D35EAA A14E8D7D416C52 ] C:\Windows\System32\resutils.dll
      21:08:51.0809 0x1cd4 C:\Windows\System32\resutils.dll - ok
      21:08:51.0809 0x1cd4 [ 3A92354FCB3EFAF96FCD4D09033BE8B0, B9DBF4BF9140B3B3AA66B3A9DCFB6A0DE1E64AD1A57F84F09A 8BE695FE59D121 ] C:\Windows\System32\clusapi.dll
      21:08:51.0809 0x1cd4 C:\Windows\System32\clusapi.dll - ok
      21:08:51.0809 0x1cd4 [ D870D75BBFA03E0C60453EF4578E3BF8, 504B4D2FF9DEABE25EF8574645C72296F346B953202278D894 9C6221DDED7624 ] C:\Windows\System32\Windows.ApplicationModel.dll
      21:08:51.0809 0x1cd4 C:\Windows\System32\Windows.ApplicationModel.dll - ok
      21:08:51.0825 0x1cd4 [ 23BBC1471F47CEB8F03C6050E14D4959, 2054A28F0ECE3C01CF456C12BA188EE6E643DAA7A61B08D224 57C4970D737952 ] C:\Windows\System32\eeprov.dll
      21:08:51.0825 0x1cd4 C:\Windows\System32\eeprov.dll - ok
      21:08:51.0825 0x1cd4 [ F7B1CBE4B5A7143CCB698EA66429A4BE, BAB5AB94ED04AF64045C701DD44E367DB0DC370FEBB29C268E DE1665EE03DFFD ] C:\Windows\System32\appsruprov.dll
      21:08:51.0825 0x1cd4 C:\Windows\System32\appsruprov.dll - ok
      21:08:51.0825 0x1cd4 [ 11636B7D6812A237EB3252AAF6E180E5, 8246003EFCC248DE461D0E86B06455E1CE887B21229E0B9BB3 210D36C264AABD ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Win dows.Security\cfbd5653e9a83355b2568015308d2a35\Win dows.Security.ni.dll
      21:08:51.0825 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Win dows.Security\cfbd5653e9a83355b2568015308d2a35\Win dows.Security.ni.dll - ok
      21:08:51.0825 0x1cd4 [ 8CD635BE728FC45D7730745174B4B1E0, 00BE4B619C3A5B1B87755E8DCFD98FBD388A95F45D0F1771E8 648F8D5D000723 ] C:\Windows\System32\SubscriptionMgr.dll
      21:08:51.0825 0x1cd4 C:\Windows\System32\SubscriptionMgr.dll - ok
      21:08:51.0825 0x1cd4 [ 1691D11FCF425C70A7A8C78BC17EA355, 1BF231A5760339D2DAA4714FB2A9E46531FEAE946686007F3E 5462BEA40CF5E7 ] C:\Windows\System32\nduprov.dll
      21:08:51.0825 0x1cd4 C:\Windows\System32\nduprov.dll - ok
      21:08:51.0841 0x1cd4 [ BD9F7FAEC4FF16C78658CDB5A927909B, D7A2A99C69E214E626ADBCB51627EC1B1FF9CB6BAD295F9750 A78791AA5F4537 ] C:\Windows\System32\wcmapi.dll
      21:08:51.0841 0x1cd4 C:\Windows\System32\wcmapi.dll - ok
      21:08:51.0841 0x1cd4 [ 8076679BA7EADB88D759E98FF90AA51A, 03FB45CBF3C7F9DD2297939DF11E819A062B308169392EE420 AD37948A21B381 ] C:\Windows\System32\wpnsruprov.dll
      21:08:51.0841 0x1cd4 C:\Windows\System32\wpnsruprov.dll - ok
      21:08:51.0841 0x1cd4 [ 54096A2BB27BD85ECFFBFD226D6DBDCF, 683A6F66E443069F0E1C9668376B8BA8FC6694D2E5F3542E65 E8F4D9A0E86B34 ] C:\Windows\System32\ncuprov.dll
      21:08:51.0841 0x1cd4 C:\Windows\System32\ncuprov.dll - ok
      21:08:51.0841 0x1cd4 [ 9415AF447DF204CCE37BEFF73F33AC9E, CAE2B9F26F532DC5643306A9F7F48E13E577621E14D430A526 A82020A0A7D18B ] C:\Windows\System32\DAFWSD.dll
      21:08:51.0841 0x1cd4 C:\Windows\System32\DAFWSD.dll - ok
      21:08:51.0841 0x1cd4 [ AD394CD49C72077FF320105916AA169F, 650C7A0D84D15C45BA4046030EACDD274A59FAC2E07313A7E4 A669934A85BF63 ] C:\Windows\System32\WSDApi.dll
      21:08:51.0841 0x1cd4 C:\Windows\System32\WSDApi.dll - ok
      21:08:51.0841 0x1cd4 [ 3540AFDDC7978369D39B1B4C6781F1A0, 341C23280E5945E6DAFB448CFA2416F1F22C7CDC137FF63827 ECD33003316952 ] C:\Windows\System32\wshhyperv.dll
      21:08:51.0841 0x1cd4 C:\Windows\System32\wshhyperv.dll - ok
      21:08:51.0856 0x1cd4 [ 13D614E6B51ECF36746C48CE829FA7F6, CAD63C0A4F7110093F84C58252C5803F14E3FC46584B79DA17 EC86D49FEAEA64 ] C:\Windows\System32\drivers\mskssrv.sys
      21:08:51.0856 0x1cd4 C:\Windows\System32\drivers\mskssrv.sys - ok
      21:08:51.0856 0x1cd4 [ 4E3054221246A393DEFCA21DC53C6EBE, F39AA6674F5993639CF97C07742B1A709361E93CAEA4806A70 CF16FF8BB76A70 ] C:\Windows\System32\deviceaccess.dll
      21:08:51.0856 0x1cd4 C:\Windows\System32\deviceaccess.dll - ok
      21:08:51.0856 0x1cd4 [ A23758D367E9E99E6037433C6C68B2C5, 15A4F883460C85C20A385B727945877A66DFA894DA0D04F24A B7FF44B7AC397F ] C:\Windows\System32\energyprov.dll
      21:08:51.0856 0x1cd4 C:\Windows\System32\energyprov.dll - ok
      21:08:51.0856 0x1cd4 [ 54ADD23F1CC45027A38059A71BC3CDE1, C15C6FFB6F5EE812914910469CCE572E3525B3F77FF63646EB 1DC3FD004D2532 ] C:\Windows\System32\webservices.dll
      21:08:51.0856 0x1cd4 C:\Windows\System32\webservices.dll - ok
      21:08:51.0856 0x1cd4 [ 3C151A117B5F913B22E5AAF47A76E0DA, 215B49DC983A33E7C4BEA20C3C135ABBDAE3CE1CE8EDD61BBD 28CAFA939866EA ] C:\Windows\System32\srumapi.dll
      21:08:51.0856 0x1cd4 C:\Windows\System32\srumapi.dll - ok
      21:08:51.0872 0x1cd4 [ 3F858E28AEE6545FA1B64134DFD5C2CE, FFD7B4FB0A7B61BC6B76A172134673842F2CF00E96FA3ED4A8 273DC525B6BB92 ] C:\Windows\System32\lmhsvc.dll
      21:08:51.0872 0x1cd4 C:\Windows\System32\lmhsvc.dll - ok
      21:08:51.0872 0x1cd4 [ 15123E98EF34AD1108039ABD6AF2C26E, DD9014BDB892B99AA83B3F00DD3EB1AA6E239EB949E6519DCC 6856A600A77A37 ] C:\Windows\System32\vidcap.ax
      21:08:51.0872 0x1cd4 C:\Windows\System32\vidcap.ax - ok
      21:08:51.0872 0x1cd4 [ DAA482FED8AA29BD29B48CB87005B97B, D359C0E7D4E31F2E972902F4FA71CBF1C648893546E34C97A1 DF103222CCDEB4 ] C:\Windows\System32\nrpsrv.dll
      21:08:51.0872 0x1cd4 C:\Windows\System32\nrpsrv.dll - ok
      21:08:51.0872 0x1cd4 [ 73B3E2937959F62011F8496B35ED18B5, 53DE1B6447F48220CBF71152F818E69690360D202904540E57 9EABE6F04FFE4D ] C:\Windows\System32\Kswdmcap.ax
      21:08:51.0872 0x1cd4 C:\Windows\System32\Kswdmcap.ax - ok
      21:08:51.0872 0x1cd4 [ E0CD3D13054D52D11CBBFA46ADA1D463, CF67C4770F86C6BAC958C6C0473A615C6B84580F6D31A99957 B7DBAA8FF0875D ] C:\Windows\System32\mfc42.dll
      21:08:51.0872 0x1cd4 C:\Windows\System32\mfc42.dll - ok
      21:08:51.0872 0x1cd4 [ 181B70F7007918ACAD0CC96F261C9B77, 1A4206A8CDDA4FCCB9CC9429CCF2236AD2439C10F7B9B0A616 2127968443AC84 ] C:\Windows\System32\LenovoUpdate.exe
      21:08:51.0872 0x1cd4 C:\Windows\System32\LenovoUpdate.exe - ok
      21:08:51.0888 0x1cd4 [ 6EB2E5626E17E518E231802E3B5B3A25, 29FCEE252F5C27A81BDD7D19F24F5810E8C44FFDC252F1CD65 464DF0893B75AB ] C:\Windows\System32\odbc32.dll
      21:08:51.0888 0x1cd4 C:\Windows\System32\odbc32.dll - ok
      21:08:51.0888 0x1cd4 [ 0CE6AFF79009AEEC169C9A75B7567D30, DB8B362362998CA8B9EFEF8D52B5D21704DBC9662181587A79 FE45A8C45E737F ] C:\Windows\SysWOW64\cryptsp.dll
      21:08:51.0888 0x1cd4 C:\Windows\SysWOW64\cryptsp.dll - ok
      21:08:51.0888 0x1cd4 [ 9A03702C5EBBC4761770BAE67764B219, 9C59391E9EC589CBCEC1AE9BA4148769238A4C06FB23B185FF FAAE04A1271F4B ] C:\Windows\SysWOW64\rsaenh.dll
      21:08:51.0888 0x1cd4 C:\Windows\SysWOW64\rsaenh.dll - ok
      21:08:51.0888 0x1cd4 [ D7CBE48DA8CB26B6A968BA4450010389, 2679973AF8E2BAE95DC70CE2F55A9D3BD21085D7C828C74393 95D0126416BFE6 ] C:\Windows\System32\mfreadwrite.dll
      21:08:51.0888 0x1cd4 C:\Windows\System32\mfreadwrite.dll - ok
      21:08:51.0888 0x1cd4 [ F7750FBA189F332ADF1D8F28C1677C7D, 2C22655CADE4D73F5751B2EFA64D2D214239410ED5809B1F25 33F1AA66BBF57F ] C:\Windows\System32\mfmjpegdec.dll
      21:08:51.0888 0x1cd4 C:\Windows\System32\mfmjpegdec.dll - ok
      21:08:51.0903 0x1cd4 [ 9316A9A9EE2EBDFB81562C421BD869AF, 2C6DA1828870CE9C78078D308CF8C8D643BA533DE434E4C976 41658316DE38CE ] C:\Windows\System32\OnDemandConnRouteHelper.dll
      21:08:51.0903 0x1cd4 C:\Windows\System32\OnDemandConnRouteHelper.dll - ok
      21:08:51.0903 0x1cd4 [ DAD53152E620AB1D256F531CCDDF4C96, 577A697C088A319A9839989E18548F46121E661D56C701DE03 60905E814BC12D ] C:\Windows\System32\mfperfhelper.dll
      21:08:51.0903 0x1cd4 C:\Windows\System32\mfperfhelper.dll - ok
      21:08:51.0903 0x1cd4 [ DA91DCED65091DDD6240F02214E09050, B4DBE7C007D4B5682B0C2001EB82AC5A1F8718195727B8045C 780DB55C96C55B ] C:\Windows\System32\webio.dll
      21:08:51.0903 0x1cd4 C:\Windows\System32\webio.dll - ok
      21:08:51.0903 0x1cd4 [ 204BFF7C714045B641862EE3A8ECF88F, CE4FFFC84E501D8C708D9E60E1E4B70E0AA7E69F6A34640BFE 7E588BC25A9E9E ] C:\Windows\SysWOW64\gpapi.dll
      21:08:51.0903 0x1cd4 C:\Windows\SysWOW64\gpapi.dll - ok
      21:08:51.0903 0x1cd4 [ 0E874792FF73E37AD88F47BE222E1D59, 5FEC76122AC81457651251D5C91F563490D924C5FE1550EC50 1CE83BE35AD41C ] C:\Windows\SysWOW64\cryptnet.dll
      21:08:51.0903 0x1cd4 C:\Windows\SysWOW64\cryptnet.dll - ok
      21:08:51.0903 0x1cd4 [ 8E64543F3A4EE52A5F9A41029F12CF48, 237A4AF3BC6158CF6F3397D8C01BACFF7D5D12F7D3E095CCC9 A02745989B0726 ] C:\Windows\System32\msvproc.dll
      21:08:51.0903 0x1cd4 C:\Windows\System32\msvproc.dll - ok
      21:08:51.0919 0x1cd4 [ 53965FB6DE57C0E2ABAE5F1870888D44, 3579C1DB88B3680B9D8C7FFE55F90654F1F3CDF94A96A113A1 5E39C796BE927D ] C:\Windows\SysWOW64\winnsi.dll
      21:08:51.0919 0x1cd4 C:\Windows\SysWOW64\winnsi.dll - ok
      21:08:51.0919 0x1cd4 [ 7685720BEA8E30680520C8F650EFC7DA, B5CD9423817FFB25D24FE8901E37E7C2512B2B6B4BBED04C76 762C71668AC642 ] C:\Windows\SysWOW64\vidcap.ax
      21:08:51.0919 0x1cd4 C:\Windows\SysWOW64\vidcap.ax - ok
      21:08:51.0919 0x1cd4 [ 31EBBB979CBB2466F935F0EEAD4B7309, CA4A7F021C7E32E265F31998403C438F519061BA5F2FA2883B E5C45848AB9369 ] C:\Windows\SysWOW64\Kswdmcap.ax
      21:08:51.0919 0x1cd4 C:\Windows\SysWOW64\Kswdmcap.ax - ok
      21:08:51.0919 0x1cd4 [ 81C7B2CDEABFB600AA32AB4C59B5059C, D2CCFCC022615CF5F037A7186CB648262F3C335B407A351512 7ACB40E615146D ] C:\Windows\System32\DeviceDirectoryClient.dll
      21:08:51.0919 0x1cd4 C:\Windows\System32\DeviceDirectoryClient.dll - ok
      21:08:51.0919 0x1cd4 [ BDD30B8A4976ADA7EE0E62F4A82833FE, 2519CB0ECCE23BE34F16E628CBE17B69A6CB028316F0A4C9D3 98B80BAFC57D20 ] C:\Windows\SysWOW64\mfc42.dll
      21:08:51.0919 0x1cd4 C:\Windows\SysWOW64\mfc42.dll - ok
      21:08:51.0919 0x1cd4 [ D945B7F285C6E404A467B735D4D37EF9, 5FB6F5B80E32F3345DE58D0A1F23D32435D0A71B368533954B 4B286266D351A9 ] C:\Windows\SysWOW64\odbc32.dll
      21:08:51.0919 0x1cd4 C:\Windows\SysWOW64\odbc32.dll - ok
      21:08:51.0934 0x1cd4 [ D204C988115DD69889E3C0172E92BCFF, 3F3ED7720F970CA1704BF5215C574ED9FF19778C57E2D48418 0DA2D8361B130D ] C:\Windows\SysWOW64\dpapi.dll
      21:08:51.0934 0x1cd4 C:\Windows\SysWOW64\dpapi.dll - ok
      21:08:51.0934 0x1cd4 [ EDE749921EFAD7F80322C301D0FC8141, 9A7C27305E2F9F05473A10AC3122196743864813B9A674C989 2FAD91455B6683 ] C:\Windows\System32\MdmCommon.dll
      21:08:51.0934 0x1cd4 C:\Windows\System32\MdmCommon.dll - ok
      21:08:51.0934 0x1cd4 [ 05DDFD4E50E504766028069EC42AE1DC, 84C90189E0DBCBA9767D820B8B7EAC1D92705575DB7BFCE98D 402AE9204FFC56 ] C:\Windows\System32\Windows.Web.dll
      21:08:51.0934 0x1cd4 C:\Windows\System32\Windows.Web.dll - ok
      21:08:51.0934 0x1cd4 [ 5B388E2E843FA0F4FA0B79FD477EEB1D, 25426351A56A6C1D93EF408A891223CDD79A970442CCEB7470 7A4290DC9FC0C1 ] C:\Windows\SysWOW64\policymanager.dll
      21:08:51.0934 0x1cd4 C:\Windows\SysWOW64\policymanager.dll - ok
      21:08:51.0934 0x1cd4 [ 051823779007D43954589F44C3AB7B9E, 226346CB02D69686AACF6F03709E1E87ACB1F966EF27BF1987 2D393524303E39 ] C:\Windows\SysWOW64\msvcp110_win.dll
      21:08:51.0934 0x1cd4 C:\Windows\SysWOW64\msvcp110_win.dll - ok
      21:08:51.0950 0x1cd4 [ F8EBAA1FE6D3BF84752931DE1BFA0E2A, 2F3C512712BA709BBBBD779D9E792DBE324876C402CDCEF034 5B8B7ABE1D232A ] C:\Windows\System32\lfsvc.dll
      21:08:51.0950 0x1cd4 C:\Windows\System32\lfsvc.dll - ok
      21:08:51.0950 0x1cd4 [ DB04C6B066A4877743A4515C70CB3435, 85290A2D743BD64C369F67B15349F199A1107606AD159DFFD5 75EE4B67254D95 ] C:\Windows\System32\mlang.dll
      21:08:51.0950 0x1cd4 C:\Windows\System32\mlang.dll - ok
      21:08:51.0950 0x1cd4 [ DBBAE6A109765712B82E4F44027A4985, 11643682FA7E00489F745BB23996BF7431F61B53F1C000E349 1CC00BB8F8BEF4 ] C:\Windows\System32\LocationFramework.dll
      21:08:51.0950 0x1cd4 C:\Windows\System32\LocationFramework.dll - ok
      21:08:51.0950 0x1cd4 [ 696EC2EAA2A42A137CCBB9A84D6917C0, 424089F4F373962AF8357C5D4D43F35948989BE3F58EAD3690 F565F4C1BBC66F ] C:\Windows\System32\drivers\WSDPrint.sys
      21:08:51.0950 0x1cd4 C:\Windows\System32\drivers\WSDPrint.sys - ok
      21:08:51.0950 0x1cd4 [ 29FE517189D1B7271E204D90264729D3, 542605399B50A625936B151D1EEDF090D2C25FCE4300E5B480 C283A60AC72D1C ] C:\Windows\System32\LocationFrameworkInternalPS.dl l
      21:08:51.0950 0x1cd4 C:\Windows\System32\LocationFrameworkInternalPS.dl l - ok
      21:08:51.0966 0x1cd4 [ 9E78A94E675EECF2F550928D11E1F2B6, AD529F2DB91653FD2234B55668FB72609AC44BF1A9CF33E001 1130317FAF7224 ] C:\Windows\System32\LocationFrameworkPS.dll
      21:08:51.0966 0x1cd4 C:\Windows\System32\LocationFrameworkPS.dll - ok
      21:08:51.0966 0x1cd4 [ B45F4A37CCB2EB5E33BE5D019B630DFD, 43D7BB889FE12B2BC273F06C259F9411630278C710EECCCF10 2E47F95E173264 ] C:\Windows\SysWOW64\sxs.dll
      21:08:51.0966 0x1cd4 C:\Windows\SysWOW64\sxs.dll - ok
      21:08:51.0966 0x1cd4 [ B4718B410B0E0B961EC136CAFFE5B97F, BC85D5F5135A85E4440370582DA9F8B80D8C7FDDE034E8F8AE 55EB335EDC6313 ] C:\Windows\System32\LocationWinPalMisc.dll
      21:08:51.0966 0x1cd4 C:\Windows\System32\LocationWinPalMisc.dll - ok
      21:08:51.0966 0x1cd4 [ F7EFAD8D7F960B7FFF1FA5074B1ECE41, 53CB345169647B8A682C1EFB48614D1F4C1100CB42E7A952C6 1053239861FEA2 ] C:\Windows\System32\Windows.Devices.WiFi.dll
      21:08:51.0966 0x1cd4 C:\Windows\System32\Windows.Devices.WiFi.dll - ok
      21:08:51.0981 0x1cd4 [ F723552F65D44FE693DB1A383825B3A8, EF8C343C4EB5EEA4EC830378EF576CCD6CD4EEDEDD486C0F29 697044E8C71F45 ] C:\Windows\System32\tzautoupdate.dll
      21:08:51.0981 0x1cd4 C:\Windows\System32\tzautoupdate.dll - ok
      21:08:51.0981 0x1cd4 [ AEB4FF628102E6DE554B972229655EFD, B4E1A4D61FC8B9AEDED61D25C96C10B93D7FA667EC4FAAF5E8 BF32844D2F4EF6 ] C:\Windows\System32\Windows.Networking.HostName.dl l
      21:08:51.0981 0x1cd4 C:\Windows\System32\Windows.Networking.HostName.dl l - ok
      21:08:51.0981 0x1cd4 [ E16D62A6B83A0B260FFC81C02F426E9B, DA7DBE93BAD67817CA4D37AF4CEE0F1A75DCB0CC3ED04B0827 AADED4D3BDC6D7 ] C:\Windows\System32\Geolocation.dll
      21:08:51.0981 0x1cd4 C:\Windows\System32\Geolocation.dll - ok
      21:08:51.0981 0x1cd4 [ 4D06D0976C0004975F8FD8B8432C4B46, AC34FA684F9B2213A29BAB552E846F10652D9571289DB38DB0 6FF5A2309A76FE ] C:\Windows\System32\Windows.Networking.Connectivit y.dll
      21:08:51.0981 0x1cd4 C:\Windows\System32\Windows.Networking.Connectivit y.dll - ok
      21:08:51.0997 0x1cd4 [ 34DAC585994CD3B4E910DE11C584EF3D, A6C6A4CB5413EA61F1A54E2D3AD71A311CEA2C26218544D2D2 D4A5CFEC52DE8C ] C:\Windows\System32\FDResPub.dll
      21:08:51.0997 0x1cd4 C:\Windows\System32\FDResPub.dll - ok
      21:08:51.0997 0x1cd4 [ E6094065008FE423377294050E7CEA2D, 86E200227256407530E2C28243DEFBC3CB6E9497644404D9AD 79DA242286DF7B ] C:\Windows\System32\NcdAutoSetup.dll
      21:08:51.0997 0x1cd4 C:\Windows\System32\NcdAutoSetup.dll - ok
      21:08:51.0997 0x1cd4 [ EF0DD43A4CBAB367BCA1AFBDC9971E4F, 73E161C45D63FDDE71EE2438137913724DC513860539D1E7F6 BD861F5D1B33F3 ] C:\Windows\System32\fdPHost.dll
      21:08:51.0997 0x1cd4 C:\Windows\System32\fdPHost.dll - ok
      21:08:52.0013 0x1cd4 [ FF4E76E59BBA782B20EBE780A60D6FDF, D6A671BEF3775206CFC9E52F5C0750323799A473E427727A80 CE1B507747864A ] C:\Windows\System32\dtsh.dll
      21:08:52.0013 0x1cd4 C:\Windows\System32\dtsh.dll - ok
      21:08:52.0013 0x1cd4 [ CF3E9C0961A2AAB38E9C7311169D0F37, F0CA2E990419F8636B804FE3CB30C296A02DA2E68DAF2595BD 3C40A36B3922A3 ] C:\Windows\System32\fdWSD.dll
      21:08:52.0013 0x1cd4 C:\Windows\System32\fdWSD.dll - ok
      21:08:52.0013 0x1cd4 [ D9AADFEC91D0F3A7E34DCECEAAC0B1CA, C1C71F938162A4088D183467CCB88E328084C8FFC88173D2A5 D2322ED8C2C6F0 ] C:\Windows\System32\httpapi.dll
      21:08:52.0013 0x1cd4 C:\Windows\System32\httpapi.dll - ok
      21:08:52.0013 0x1cd4 [ B7F3ED639765137D39DC1E6BF8873A38, 21D5ECE1100B92F428530EBE155EEF12EECFFB84F736B2A89D 7F410314651CD8 ] C:\Windows\System32\fdSSDP.dll
      21:08:52.0013 0x1cd4 C:\Windows\System32\fdSSDP.dll - ok
      21:08:52.0028 0x1cd4 [ 86161A89F16851728802590EC7C92608, 3A3B05BB4E115410D27063B30C0EF3F18295F542050F329F1E 466C81A9E23A46 ] C:\Windows\System32\provsvc.dll
      21:08:52.0028 0x1cd4 C:\Windows\System32\provsvc.dll - ok
      21:08:52.0028 0x1cd4 [ 0E36AE3C838F7D251C4685DE8215315D, F6CD5B94F04FF7FFF339A2AB036B40806221466C7CF145D9A9 04DEA383048015 ] C:\Windows\System32\fdProxy.dll
      21:08:52.0028 0x1cd4 C:\Windows\System32\fdProxy.dll - ok
      21:08:52.0028 0x1cd4 [ 5A56003F6175D2B13CB00C0BCD3C0EC3, F07610B8FF7E90A2B02311512E9551CCEC4A7C9803C062FA9A 5FE483B208219B ] C:\Windows\System32\OneCoreCommonProxyStub.dll
      21:08:52.0028 0x1cd4 C:\Windows\System32\OneCoreCommonProxyStub.dll - ok
      21:08:52.0028 0x1cd4 [ 5E6A4B729FF8C016493B9391055ECEE6, B2B8EE67319ACD2E40CD7E6982FB3F90A2D549DB9CD0E26726 95EFA29707133D ] C:\Windows\System32\Windows.Media.Streaming.dll
      21:08:52.0028 0x1cd4 C:\Windows\System32\Windows.Media.Streaming.dll - ok
      21:08:52.0044 0x1cd4 [ 93B0EC6193284D9AAB116B5FB6765C76, 0E602CA568CBCAB7AFC318FBFC4F8470BD1C10FB2EECC2EB64 73CD11DFF15DA4 ] C:\Windows\System32\upnp.dll
      21:08:52.0044 0x1cd4 C:\Windows\System32\upnp.dll - ok
      21:08:52.0044 0x1cd4 [ 3ECA6A49015A7EA46A7E33DB3954394C, 8B59876D51E019F73857D587E1517A026FDFE62657667DC6F2 DFFAA86E511A19 ] C:\Windows\System32\wbem\WmiPrvSD.dll
      21:08:52.0044 0x1cd4 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
      21:08:52.0044 0x1cd4 [ EA51AB4DE69030FC62B5014175D27A88, 774A8136F6FC789952548DA2A72F2E53E32A33E91C48EA707C 1D823058515DAB ] C:\Windows\System32\ncobjapi.dll
      21:08:52.0044 0x1cd4 C:\Windows\System32\ncobjapi.dll - ok
      21:08:52.0059 0x1cd4 [ A145FB1AC45E1C9710FC554DBA0622A9, 7F6157D14392B368EDA87B2FB264B25E1A9646D5B58F176B6D EC43590875F9F9 ] C:\Windows\System32\wbem\wbemess.dll
      21:08:52.0059 0x1cd4 C:\Windows\System32\wbem\wbemess.dll - ok
      21:08:52.0059 0x1cd4 [ E0113ABD1FF16A2E6D13993A218AF4F2, 2A075755D543F0ED22A16D603DC7117105094C5CFE530D4F6E AF97B569115940 ] C:\Windows\System32\wbem\NCProv.dll
      21:08:52.0059 0x1cd4 C:\Windows\System32\wbem\NCProv.dll - ok
      21:08:52.0059 0x1cd4 [ D237EC71711538C41EA1FCF3244938AB, 77B7440A2FBF68C74AAE53236DAC4867040E1618FD936D65F3 94A614388FE2AE ] C:\Windows\System32\wbem\KrnlProv.dll
      21:08:52.0059 0x1cd4 C:\Windows\System32\wbem\KrnlProv.dll - ok
      21:08:52.0059 0x1cd4 [ D8E539426644A0F23CBF53DD0A5EE079, B62ACACFCAF99A50149F9DCE06136D478723992A61014FC3DB AE81289FE219F9 ] C:\Windows\System32\wbem\WmiPrvSE.exe
      21:08:52.0059 0x1cd4 C:\Windows\System32\wbem\WmiPrvSE.exe - ok
      21:08:52.0075 0x1cd4 [ 73EFC552AE70EDA8ADC07D8D0B9A825E, 6909DAFF270417FC556F4D126997077ABC8181ECF15CEB368F E8EE9250B9728B ] C:\Windows\System32\dot3api.dll
      21:08:52.0075 0x1cd4 C:\Windows\System32\dot3api.dll - ok
      21:08:52.0075 0x1cd4 [ 23440A75F57B59CE360CD4B0F9E54E3A, C130BF35E0007CF747DF8DD1EF93DC8A4489FFF1A5CF961975 49B8388160F3FC ] C:\Windows\System32\wbem\wmiprov.dll
      21:08:52.0075 0x1cd4 C:\Windows\System32\wbem\wmiprov.dll - ok
      21:08:52.0075 0x1cd4 [ 1E1018237A556B2C7BF25F2FF1875346, 60B8187B0333A70688FBD8754866AE221FC780C59A6B87240F 4B53C5EFCA4FB8 ] C:\Windows\System32\wbem\cimwin32.dll
      21:08:52.0075 0x1cd4 C:\Windows\System32\wbem\cimwin32.dll - ok
      21:08:52.0075 0x1cd4 [ A33725CF4228FD846142F8E1E1BA99B5, DA73C7A71FAEA89363FEA499105810608B82DCD8E0F2DB6EEB 377A6F4123ECD9 ] C:\Windows\System32\framedynos.dll
      21:08:52.0075 0x1cd4 C:\Windows\System32\framedynos.dll - ok
      21:08:52.0091 0x1cd4 [ BECC01CF48016043B5DC3D5477CC08CF, 449E882DBCD4DD25B8F10CD62623DCB15E5B6375B069946350 6EA55886B7B9DA ] C:\Windows\System32\wmi.dll
      21:08:52.0091 0x1cd4 C:\Windows\System32\wmi.dll - ok
      21:08:52.0091 0x1cd4 [ AC7220B15ACF9A900C6B3E39B8C8A424, BBBD3EE0F9BD5220E9004780F1A8A8D5C3D34F07C5A1F28042 36D926E0D7DBC4 ] C:\Windows\System32\slwga.dll
      21:08:52.0091 0x1cd4 C:\Windows\System32\slwga.dll - ok
      21:08:52.0091 0x1cd4 [ 7B5C763CB62462CACE383D475031758B, 600790DDBC3B692535C7881C4D34BEB6C4DE2001B35F68B176 6317A914851116 ] C:\Windows\System32\DdcWnsListener.dll
      21:08:52.0091 0x1cd4 C:\Windows\System32\DdcWnsListener.dll - ok
      21:08:52.0091 0x1cd4 [ E992A87582BD2A8F36FA821A30FC7AC3, 30746300A6766E45C29FD5E5E4F3CBF5B0116D5C4A7B6955E0 2FBA04DE76A858 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Drawing\3ac58fb7cb8d849d0f85f2435e1a0066\Syste m.Drawing.ni.dll
      21:08:52.0091 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Drawing\3ac58fb7cb8d849d0f85f2435e1a0066\Syste m.Drawing.ni.dll - ok
      21:08:52.0106 0x1cd4 [ 836E1626956F21C5FB67544A91EC1D95, 887151C52DF5A4E356F79B521FA2593A3A499DC1B55A480D0A 6AACF06E52A97A ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Windows.Forms\04e26b57f0c211fdb0d877810b37497f \System.Windows.Forms.ni.dll
      21:08:52.0106 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_64\Sys tem.Windows.Forms\04e26b57f0c211fdb0d877810b37497f \System.Windows.Forms.ni.dll - ok
      21:08:52.0106 0x1cd4 [ 2330E681265607D4AD6C9C9763A3A8A6, 125B976EEFB04088D2EE87263DD7F27B9F74FBF1F3BC38775C A451977F1F2341 ] C:\Windows\System32\wpnapps.dll
      21:08:52.0106 0x1cd4 C:\Windows\System32\wpnapps.dll - ok
      21:08:52.0106 0x1cd4 [ 79939990A672F2ED0F56E70475C2EB35, 15AC3C931C26EFE671173C6D8DEF68E4F9E126E6FBB7C02994 A9640E2DB7C0AB ] C:\Windows\System32\wpnprv.dll
      21:08:52.0106 0x1cd4 C:\Windows\System32\wpnprv.dll - ok
      21:08:52.0106 0x1cd4 [ 5DA2C4ADD3C28990C25CBE0B3D69FDC1, D0A74DF9471DE5FFAD261EA36836450152AD4388DBAA28351C EC89EF741156CF ] C:\Program Files\Malwarebytes\Anti-Malware\PoliciesControllerImpl.dll
      21:08:52.0106 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\PoliciesControllerImpl.dll - ok
      21:08:52.0122 0x1cd4 [ A078282A109E2FC4EA26430D5D602830, 1B3D4C75125220A3FE2D2F0D4DF8D5CA0773686E5D26DB7438 EC835881787795 ] C:\Windows\System32\Windows.Security.Authenticatio n.OnlineId.dll
      21:08:52.0122 0x1cd4 C:\Windows\System32\Windows.Security.Authenticatio n.OnlineId.dll - ok
      21:08:52.0122 0x1cd4 [ AF2129A9D9EA8AE2456C78BBA78A217A, CED190C8F75F096E6468B0439998D4C86793A682A3B9B7D16C 2F7107A9731DB7 ] C:\Windows\System32\Windows.Networking.Sockets.Pus hEnabledApplication.dll
      21:08:52.0122 0x1cd4 C:\Windows\System32\Windows.Networking.Sockets.Pus hEnabledApplication.dll - ok
      21:08:52.0122 0x1cd4 [ EFEE98280FB581D19F50245ACA846C2F, FE02CCA3A5D3E3736879DC51222426B3963E24C014801A8663 BBA17FEC7F80E7 ] C:\ProgramData\LenovoTransition\Server\x64\dptf.dl l
      21:08:52.0122 0x1cd4 C:\ProgramData\LenovoTransition\Server\x64\dptf.dl l - ok
      21:08:52.0122 0x1cd4 [ D79646200314276F5946E4B9B64E215B, 1E3F3E1573FDECEC7F711D9B6677796BCF83DAAFE482F86AD6 6180DC167C2531 ] C:\Windows\System32\ncryptsslp.dll
      21:08:52.0122 0x1cd4 C:\Windows\System32\ncryptsslp.dll - ok
      21:08:52.0138 0x1cd4 [ A5EA01D6D9B688CD493DD29CE71DE37F, EEEB71D41EA7C0DD4B59610965BBF2F14FABB25E52CBC1AB41 0ABAE4E403B160 ] C:\Windows\System32\dssenh.dll
      21:08:52.0138 0x1cd4 C:\Windows\System32\dssenh.dll - ok
      21:08:52.0138 0x1cd4 [ B27790A798829DFF0DDE602065881F8F, BCC6EDFA8210852017C6A2DB6C80939157F1EB32FA847A05C6 E85850D4FCA46D ] C:\Windows\System32\mskeyprotect.dll
      21:08:52.0138 0x1cd4 C:\Windows\System32\mskeyprotect.dll - ok
      21:08:52.0138 0x1cd4 [ 5BC83FB91369E22645BDD1EFBB0C4419, 2C42C2C837A080C7EA1C897306408722AC58BECA2A5403D9A6 03F7D3FCFD9943 ] C:\Program Files\Malwarebytes\Anti-Malware\LicenseControllerImpl.dll
      21:08:52.0138 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\LicenseControllerImpl.dll - ok
      21:08:52.0153 0x1cd4 [ C8D7AAF88D1B0CD4F1E9CB5F1C7C10E2, 013A30810DFDB696A459268A04DE20A3F1A6DD45C39C64A5ED 653A3FD8A67B26 ] C:\Windows\System32\SecureTimeAggregator.dll
      21:08:52.0153 0x1cd4 C:\Windows\System32\SecureTimeAggregator.dll - ok
      21:08:52.0153 0x1cd4 [ AF963FAA7FC0F9581E6BFD70EE1F95A2, 5917E3D964B8A079B977D8462E4C975BB6E7E0FDEF087383DE BD606719962B88 ] C:\Program Files\Malwarebytes\Anti-Malware\UpdateControllerImpl.dll
      21:08:52.0153 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\UpdateControllerImpl.dll - ok
      21:08:52.0153 0x1cd4 [ 2E6612376D257F74781F2EF1F869D8C3, 908B0DECB9F098F7F11B029A03C06C67FB52E5E8BEA42033A2 B579D3B3686AB8 ] C:\Windows\System32\cdpsvc.dll
      21:08:52.0153 0x1cd4 C:\Windows\System32\cdpsvc.dll - ok
      21:08:52.0153 0x1cd4 [ 9C7C9430E9F366DE3354717B87880834, 5F91B94E29EE8EDBDB84C6FA8484B84EA2164C550DA3879DE8 E9D9BD8F7E011F ] C:\Windows\System32\sbservicetrigger.dll
      21:08:52.0153 0x1cd4 C:\Windows\System32\sbservicetrigger.dll - ok
      21:08:52.0169 0x1cd4 [ AC5E9BE667E7F68E5A9B057503DA20B9, A3A6FF317280319CB520E5943800B78AF150983E19C42F7407 A09C53DB8F0765 ] C:\Windows\System32\dialclient.dll
      21:08:52.0169 0x1cd4 C:\Windows\System32\dialclient.dll - ok
      21:08:52.0169 0x1cd4 [ 71878C56C8E00828F1AFE6D3029A886E, 78FEEC4069FD536582656EB8AD23F4F09A18A2084EB887ACEC ECC26F0B809583 ] C:\Program Files\Malwarebytes\Anti-Malware\CloudControllerImpl.dll
      21:08:52.0169 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\CloudControllerImpl.dll - ok
      21:08:52.0169 0x1cd4 [ 7168BED02D5BC6E28412CCC354947510, 7F0EED95FB387AD336CD360DBA995F9B6FDAB660CA1ABCB0E4 36CD084942CDDC ] C:\Windows\System32\pdh.dll
      21:08:52.0169 0x1cd4 C:\Windows\System32\pdh.dll - ok
      21:08:52.0184 0x1cd4 [ F2F2FED1EAE5A089D959D1D6DBFD7DD4, 1C07371882F3DC3A19981BD1AC13359CB02675CC9462CE670D 7001D5C25C026A ] C:\Windows\System32\dimsjob.dll
      21:08:52.0184 0x1cd4 C:\Windows\System32\dimsjob.dll - ok
      21:08:52.0184 0x1cd4 [ 9886F4C8026D37BEFAFF2B99EAC136B0, E9E36BCF4B1ED5DB0E6B656480D1CF1842425CA406E3292F79 F2B60AAB56BB68 ] C:\Windows\System32\pautoenr.dll
      21:08:52.0184 0x1cd4 C:\Windows\System32\pautoenr.dll - ok
      21:08:52.0184 0x1cd4 [ 424A70711226098D38F09CEEE96984B6, 4A07ADD63FC7C28E4D2735FD38B2E0CFF19446A3D55415E618 0CDA14EEC22293 ] C:\Windows\System32\CertEnroll.dll
      21:08:52.0184 0x1cd4 C:\Windows\System32\CertEnroll.dll - ok
      21:08:52.0184 0x1cd4 [ FF4264E53DD277A50BBBCF92057A99D2, 6A141DB6B51F67ACE45AA54E9572D3F2E0EB61320D648ECA7A E3AFC5F952D677 ] C:\Windows\System32\certca.dll
      21:08:52.0184 0x1cd4 C:\Windows\System32\certca.dll - ok
      21:08:52.0200 0x1cd4 [ 7007E9C20D1208C08E9110838779F3B4, 252BE57719A96D697DCCC6F421977D8B438488D612295C864D DDEA87002A81B0 ] C:\Windows\System32\cryptnet.dll
      21:08:52.0200 0x1cd4 C:\Windows\System32\cryptnet.dll - ok
      21:08:52.0200 0x1cd4 [ 6192765AF80C0519F8CD3DDD5166AD95, 090E8B864CE45332A704E812071D2F3B2ED3B16ED73D82C2BC F8CCEF7EC44D43 ] C:\Windows\System32\perfos.dll
      21:08:52.0200 0x1cd4 C:\Windows\System32\perfos.dll - ok
      21:08:52.0200 0x1cd4 [ 04EAB80880DA1AFBE02B2EC7A80CB2BD, 2A4985619D03BAD91A2069FA545C33177C3C03FE8777883391 22ACE3AE89F4A7 ] C:\Program Files\Malwarebytes\Anti-Malware\TelemetryControllerImpl.dll
      21:08:52.0200 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\TelemetryControllerImpl.dll - ok
      21:08:52.0216 0x1cd4 [ DF2D14DA0F1949E2F6420063D0D87D83, E3799E96920A1A25DD80743904189BA095F71BF94306CAA5FA 4AACB38668E706 ] C:\Program Files\Malwarebytes\Anti-Malware\CleanControllerImpl.dll
      21:08:52.0216 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\CleanControllerImpl.dll - ok
      21:08:52.0216 0x1cd4 [ 22BEEEDFF247B8F90252646C91E775E5, 10F0FF6F6F21CCC3343BCBCC9B5158A95EC328C1C21F3B9482 C688848B89E1DD ] C:\Windows\System32\sfc.dll
      21:08:52.0216 0x1cd4 C:\Windows\System32\sfc.dll - ok
      21:08:52.0216 0x1cd4 [ B80907BCF327C925E7AC990D81A705E6, 58A71BD4A0DDA6EAE49A50ABF92F73FD1792B218B7F811E064 31CEF8EFF77040 ] C:\Windows\System32\sfc_os.dll
      21:08:52.0216 0x1cd4 C:\Windows\System32\sfc_os.dll - ok
      21:08:52.0216 0x1cd4 [ A1F8F305419FFC3051C99AB525D56A89, AEC33FCADAFEEC1B8F03194298BCAE1396742EAB568F27ADBB 736F471C575756 ] C:\Program Files\Malwarebytes\Anti-Malware\ActionsShim.dll
      21:08:52.0216 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\ActionsShim.dll - ok
      21:08:52.0216 0x1cd4 [ 5F17E4BBE683AD49B7FF167011255A67, 50C3CC12D581C2C89C538B7993211065BE183C4B6F550AD5E1 15C6CFCDA0EDF6 ] C:\Program Files\Malwarebytes\Anti-Malware\Actions.dll
      21:08:52.0216 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\Actions.dll - ok
      21:08:52.0231 0x1cd4 [ 355622F6105DCD35FF79FC565306589E, 604303FA109968D722264F86EAAF4DED7668DF660B09289C71 8861A36A87086E ] C:\Program Files\Malwarebytes\Anti-Malware\ScanControllerImpl.dll
      21:08:52.0231 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\ScanControllerImpl.dll - ok
      21:08:52.0231 0x1cd4 [ 1BCC16D0079015A4A411E7D0762BBA9C, E5981A2BEC079759112AC90EBD91EEBA8FA5294806377FE71B DD865629842930 ] C:\Program Files\Malwarebytes\Anti-Malware\MBAMShim.dll
      21:08:52.0231 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\MBAMShim.dll - ok
      21:08:52.0231 0x1cd4 [ EB8C765B13D6348D3AE6532167635A54, 812B5C60E630615A842C826EA908A2F6DA1704F33E03F72629 2726BE1437A12F ] C:\Program Files\Malwarebytes\Anti-Malware\7z.dll
      21:08:52.0231 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\7z.dll - ok
      21:08:52.0231 0x1cd4 [ 5E814D7F7B2CFFAD8C030DC07DA15CBF, E12CB7C327AFD2C2A0681AB6DF29D9383D8500E2DA68649BBD 24C2C9C2F38858 ] C:\Program Files\Malwarebytes\Anti-Malware\SwissarmyShim.dll
      21:08:52.0231 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\SwissarmyShim.dll - ok
      21:08:52.0247 0x1cd4 [ B2466A4DAEA5F3EFB9C57FFAADFBDA14, A8EED51D264DD487AFDC183EB56988573C04B6AE7030024F7C 2AC0C2355F63F3 ] C:\Program Files\Malwarebytes\Anti-Malware\Swissarmy.dll
      21:08:52.0247 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\Swissarmy.dll - ok
      21:08:52.0247 0x1cd4 [ ABB371D9AEF728B0489B0E6872B4A1C0, E9539A4F85FE30F5BAED742778CA74C879995728668ABE6877 C37633716D8770 ] C:\Windows\System32\drivers\MBAMSwissArmy.sys
      21:08:52.0247 0x1cd4 C:\Windows\System32\drivers\MBAMSwissArmy.sys - ok
      21:08:52.0247 0x1cd4 [ 3140F04035EC8A168DC71148A68E294B, 957515DF720A1CD399FE5BCB43F200D502F833CEF7889980D1 5090E0134CBD6A ] C:\Program Files\Malwarebytes\Anti-Malware\RTPControllerImpl.dll
      21:08:52.0247 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\RTPControllerImpl.dll - ok
      21:08:52.0247 0x1cd4 [ 42289782F87AA3A7446733C9864253D2, C9866A81BB4B7C8714160A363094C701E89B0206871E8B04CF F68027A88A3487 ] C:\Program Files\Malwarebytes\Anti-Malware\RtpShim.dll
      21:08:52.0247 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\RtpShim.dll - ok
      21:08:52.0263 0x1cd4 [ FF23FEC708EF8CFC14D9704E9E08B295, F9311B6DC179EC7AB12F513A04CE142577114A518F42EE2649 C0D8E337C85005 ] C:\Program Files\Malwarebytes\Anti-Malware\rtp.dll
      21:08:52.0263 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\rtp.dll - ok
      21:08:52.0263 0x1cd4 [ 051ABD8360BDA63A1BC77C662FBF0A25, C914E2DBAEC2C9A11923A984B30A979637D3A27B3C29E93F4C 90FB1D9FBC518F ] C:\Windows\System32\fltLib.dll
      21:08:52.0263 0x1cd4 C:\Windows\System32\fltLib.dll - ok
      21:08:52.0263 0x1cd4 [ A6EC1798919FADE1CFAB76ED72F422EB, EAB65BF81C4EA6269773E460D1D43879FC976E3B462BACC281 B84246C2CC35C2 ] C:\Program Files\Malwarebytes\Anti-Malware\MBAMCore.dll
      21:08:52.0263 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\MBAMCore.dll - ok
      21:08:52.0263 0x1cd4 [ 4EC62F8C60191A2710294C8BDFEECB9A, 6B5DDF74F3B96EF99FE85CD94F78A056DA68A38F5C4F64A427 46FB5CB77616EF ] C:\Windows\System32\wscapi.dll
      21:08:52.0263 0x1cd4 C:\Windows\System32\wscapi.dll - ok
      21:08:52.0278 0x1cd4 [ 88BD122C3A35DE63D75D382DF75554CE, ABDF59543CAD186A6ED4E66257205D9CF5047732A5DA74A96A 28B468B41BC396 ] C:\Windows\System32\drivers\mbam.sys
      21:08:52.0278 0x1cd4 C:\Windows\System32\drivers\mbam.sys - ok
      21:08:52.0278 0x1cd4 [ 7BB3A621E5CE0E647676F5705A7E5478, 43C491798F5F4FC0206A7783846901DEFBAEFE714417643D79 F81108DC08875C ] C:\Program Files\Malwarebytes\Anti-Malware\MWACControllerImpl.dll
      21:08:52.0278 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\MWACControllerImpl.dll - ok
      21:08:52.0278 0x1cd4 [ B5C703914169F854FB61462D3E5028ED, 90B336F8A1C91B2606AB6E2909E6A39B6159605D7F4E7C5DE1 90D792726E57A0 ] C:\Program Files\Malwarebytes\Anti-Malware\MwacSdkShim.dll
      21:08:52.0278 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\MwacSdkShim.dll - ok
      21:08:52.0294 0x1cd4 [ 47FDE5A5B8567DDD59A3967218F59E3B, 69B8B4790DA91E4DB3C130636A099434297D3D12EEF57D631B F3811F0F4038A1 ] C:\Program Files\Malwarebytes\Anti-Malware\ArwControllerImpl.dll
      21:08:52.0294 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\ArwControllerImpl.dll - ok
      21:08:52.0309 0x1cd4 [ 3D994B6CB698101F1A4D9303D1A533D8, 041AF0EA2DAF7CD343E8281057240BCC7D471C70E2B5E76AA2 6A45990FB0B83F ] C:\Program Files\Malwarebytes\Anti-Malware\MwacLib.dll
      21:08:52.0309 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\MwacLib.dll - ok
      21:08:52.0309 0x1cd4 [ 103D84E49F517098C0E8E14044BB1F73, 370BAADCA5D39C94A532D2E80EBA6CA537B47E41038A332412 AEE4BBA5F025B9 ] C:\Windows\System32\devrtl.dll
      21:08:52.0309 0x1cd4 C:\Windows\System32\devrtl.dll - ok
      21:08:52.0325 0x1cd4 [ 205C2D377E1CA85A4465491DB8064DA9, 0C69C6C958D8E26A6C6CCF2254E8B531BE718AD7FCFEB970F6 F09426CA6C8C26 ] C:\Windows\System32\drivers\mwac.sys
      21:08:52.0325 0x1cd4 C:\Windows\System32\drivers\mwac.sys - ok
      21:08:52.0325 0x1cd4 [ 28C001377F25FC19C7F07C354188D2FB, DD7AE108F9A0E5B1A7FC7A22455816DCB800DED8856ACC0E58 6285E4DE29A9F8 ] C:\Program Files\Malwarebytes\Anti-Malware\ArwSdkShim.dll
      21:08:52.0325 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\ArwSdkShim.dll - ok
      21:08:52.0341 0x1cd4 [ 56C9FF7FFDBEEB2C522D68E959687D51, 132FB64A77228653D04D61151ED180ABAA69267AD57775C9A7 4A34FF679C723F ] C:\Program Files\Malwarebytes\Anti-Malware\AEControllerImpl.dll
      21:08:52.0341 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\AEControllerImpl.dll - ok
      21:08:52.0341 0x1cd4 [ EA966798D6A6BABA5886DDEA04170B76, 6EC2783E8B4B2AD11260338247D7DFC50CEAD8899815942754 D838F9393F1611 ] C:\Program Files\Malwarebytes\Anti-Malware\arwlib.dll
      21:08:52.0341 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\arwlib.dll - ok
      21:08:52.0341 0x1cd4 [ F3960CA85778E5D7611EE0F501972340, 0DE5C8509A9A66C8185B9FAA7EAF69C0FA9C28CD9DE84AA23E 128E4FF8E06BF4 ] C:\Windows\System32\drivers\farflt.sys
      21:08:52.0341 0x1cd4 C:\Windows\System32\drivers\farflt.sys - ok
      21:08:52.0356 0x1cd4 [ A41A47C92D4B4FD93C41D136B9D78800, FBEC07CB8B1C313013895F79E617701CFA824F71935E31E976 1AB9FAD86C1248 ] C:\Program Files\Malwarebytes\Anti-Malware\AeShim.dll
      21:08:52.0356 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\AeShim.dll - ok
      21:08:52.0356 0x1cd4 [ F611C6E24192FBE9AB9D1A592D9D9311, 7215808330048202AE2025BB933FC1EA0E8707A2E00B9D69FE F4CA54E9C05BB1 ] C:\Program Files\Malwarebytes\Anti-Malware\mbae-api-na.dll
      21:08:52.0356 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\mbae-api-na.dll - ok
      21:08:52.0356 0x1cd4 [ 566B1F59B9663EDE5DBEFDC7ACFDC555, 0431F8BB607441E2DD5FE99F65B043D7A385FF7A24A4D77C4B ED7BF6AF8C0CDC ] C:\Program Files\Malwarebytes\Anti-Malware\SPControllerImpl.dll
      21:08:52.0356 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\SPControllerImpl.dll - ok
      21:08:52.0372 0x1cd4 [ 4C70B1A376C6CD052585887FC9CAA9C3, 032AEE2F74D5799E63E2566F1AA9501F40249E981E2E639F39 C276EEB28843AC ] C:\Program Files\Malwarebytes\Anti-Malware\SelfProtectionShim.dll
      21:08:52.0372 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\SelfProtectionShim.dll - ok
      21:08:52.0372 0x1cd4 [ 73481DCB65C9ED24A5CCB5AFF0F54421, BE391F9F3680627AC630FCAF31EE0CB5684ADF3C60B501A96F E907DBC05A7EE8 ] C:\Program Files\Malwarebytes\Anti-Malware\SelfProtectionSdk.dll
      21:08:52.0372 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\SelfProtectionSdk.dll - ok
      21:08:52.0372 0x1cd4 [ 75F8786053727746CDB8DBD5EA12FCEB, FD4ADB515A2B75014DFA2C5B1635CAB8A1F40060C70D7A9E5C CEFAB3099B9A69 ] C:\Windows\System32\DeviceCredential.dll
      21:08:52.0372 0x1cd4 C:\Windows\System32\DeviceCredential.dll - ok
      21:08:52.0372 0x1cd4 [ 5FD61CBBA92898CF722A96C6565FDCE3, B08D8E9C47A62A748937BB6975DEEE85E5C55F634A4214F46C C5F75D41CD2211 ] C:\Windows\System32\shacctprofile.dll
      21:08:52.0372 0x1cd4 C:\Windows\System32\shacctprofile.dll - ok
      21:08:52.0388 0x1cd4 [ F3D957A6E524592C3482E1FC2DBCB18D, 3FF70F0E0D788A8BD97E4F729D6BF4F1C1C5D88EFF2ABAB0AB 365AB667106387 ] C:\Windows\System32\SettingSync.dll
      21:08:52.0388 0x1cd4 C:\Windows\System32\SettingSync.dll - ok
      21:08:52.0388 0x1cd4 [ DA63852A2B0340E94D74EAF0CD444979, EE8364C07B3F4F71FA649E0E6C4C73C15D285130E4B16E7989 0EEBBF89C2164E ] C:\Windows\System32\dllhost.exe
      21:08:52.0388 0x1cd4 C:\Windows\System32\dllhost.exe - ok
      21:08:52.0388 0x1cd4 [ BA67BD665791F519FC90445304A1DD03, 546EDAA6FFB7E1A9C0A5985428858E7F413B88570B15AC2E68 C6B8758D5EDA9E ] C:\Windows\System32\CredentialMigrationHandler.dll
      21:08:52.0388 0x1cd4 C:\Windows\System32\CredentialMigrationHandler.dll - ok
      21:08:52.0403 0x1cd4 [ 6C7611E40566409E5AAA0629E70E15C6, 601A1F22E3644865E24D955208E8193F75167476D145981CCA 2899C29751E26C ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.EventManager.dll
      21:08:52.0403 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.EventManager.dll - ok
      21:08:52.0403 0x1cd4 [ 36B9E439CD153BBB39813AC2C061F01D, D8995D9F595630A21C449AFDE085D2544DE9E8CBB833E7FF4A 68C422F2AFF17F ] C:\Windows\System32\AppxAllUserStore.dll
      21:08:52.0403 0x1cd4 C:\Windows\System32\AppxAllUserStore.dll - ok
      21:08:52.0403 0x1cd4 [ 5954B43390E85AD67DC5B86468E94679, B6694C22092A01F41D223C2B093A4FB9660DD8D2D3BFE91440 B650FC955BFCD1 ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.UpdateManager.dll
      21:08:52.0403 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.UpdateManager.dll - ok
      21:08:52.0419 0x1cd4 [ DE1CB8E7FAE2698D50C868EE6496381C, 04095D6285F34CF3DDB7898E4D6129E72364338FC25052A0C3 1B452492737A54 ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.ContractBroker.dll
      21:08:52.0419 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.ContractBroker.dll - ok
      21:08:52.0419 0x1cd4 [ F6862198AE62240DBBE883588A766C4E, 68E0E0267CDD2851927EBE7302B80C0564B3087F7244C16F2B 16E9B869B95EAC ] C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Co reTypes.dll
      21:08:52.0419 0x1cd4 C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Co reTypes.dll - ok
      21:08:52.0419 0x1cd4 [ 8A581A8EE691FD046AF2AF51F2DE9F02, 873054CA9CFB8D767D89A1D80E59894ED179F0ED953FC204A1 D5F3CD73362723 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
      21:08:52.0419 0x1cd4 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
      21:08:52.0419 0x1cd4 [ F941D8576B98E9E2C26FD87869D66659, E0E44284B97EFB224EE6ED1751FD6877A68EBB935296C80DFD 653FCF072EEEF8 ] C:\Windows\System32\radardt.dll
      21:08:52.0419 0x1cd4 C:\Windows\System32\radardt.dll - ok
      21:08:52.0419 0x1cd4 [ 57C78F5EB4D7D6427F5A43137683A245, 32FABBC09CA776A819D40CF3E33A3FE44BF1DB72EA351845B2 0ED9FF528B64D4 ] C:\Windows\System32\sihost.exe
      21:08:52.0419 0x1cd4 C:\Windows\System32\sihost.exe - ok
      21:08:52.0434 0x1cd4 [ E96D596186F77552701BC84855F82B05, B866D724AF00C3B5D4B3940B22F236001D6516104D2E4CBEA0 FEA6A9F88920AF ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
      21:08:52.0434 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe - ok
      21:08:52.0434 0x1cd4 [ E1F4983FB6689FD593E18892AF03B47A, CC91E9D73A6AA9B6872620063A9BEA0C61B212387B52EC6B12 CEB187ABC093EF ] C:\Windows\System32\DesktopShellExt.dll
      21:08:52.0434 0x1cd4 C:\Windows\System32\DesktopShellExt.dll - ok
      21:08:52.0434 0x1cd4 [ 96DDBEAAFBD9E2B71532B33D1432C17B, 45ABBFE0A965DEF9CFFB181EB3DA623A62816CD603032890DE 03CCD244E6E58B ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User\NvBackend.dll
      21:08:52.0434 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User\NvBackend.dll - ok
      21:08:52.0434 0x1cd4 [ BD31EB150F6547D18329E5F00801D1CD, 8A775B86CE1A057E290CCD26C59C96070684468A3119790743 A346CD54F4DFDF ] C:\Windows\System32\sc.exe
      21:08:52.0434 0x1cd4 C:\Windows\System32\sc.exe - ok
      21:08:52.0434 0x1cd4 [ 15134673F919D037636F06B8E802573B, 48D24434F674800652C1D776B414E678504272B543324DD506 122F8ABF91B0C1 ] C:\Windows\System32\Windows.Shell.ServiceHostBuild er.dll
      21:08:52.0434 0x1cd4 C:\Windows\System32\Windows.Shell.ServiceHostBuild er.dll - ok
      21:08:52.0450 0x1cd4 [ 59241194DBDF30A2B4029E402F377900, 47A92E9CD8494C403B377799D395670A393766647E24CD83B1 5338CE2AA50266 ] C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\Pres entationFontCache.exe
      21:08:52.0450 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\Pres entationFontCache.exe - ok
      21:08:52.0450 0x1cd4 [ F7560B7427FA4D7E4CB35006EB95407D, F5AB68C257D074548875387C8B3616CCA8252D82CB43E16226 FD7123D7157DFD ] C:\Windows\System32\MDMAgent.exe
      21:08:52.0450 0x1cd4 C:\Windows\System32\MDMAgent.exe - ok
      21:08:52.0450 0x1cd4 [ AC9E93BAB1614526E109E6B994E0D836, 7BA70448DD3A3980AD8AB45F6BDF90F0A07B28E980F544AAE0 94E3E695773C61 ] C:\Windows\System32\PlaySndSrv.dll
      21:08:52.0450 0x1cd4 C:\Windows\System32\PlaySndSrv.dll - ok
      21:08:52.0450 0x1cd4 [ C1DBD5C3898237A2C8065D7722C8EA36, 5AE98AF422F650683A8712EDF89C8526B147CD9E31AD8B9FCC C9C1D5ABE73C3D ] C:\Windows\System32\modernexecserver.dll
      21:08:52.0450 0x1cd4 C:\Windows\System32\modernexecserver.dll - ok
      21:08:52.0466 0x1cd4 [ 48D03F7CCD13E2721E3D887BE06B72C7, 6850DBB4DC1AC775711782095085F0CAD587BA7E3F2010981F B9F984A66EBEEA ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
      21:08:52.0466 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll - ok
      21:08:52.0466 0x1cd4 [ 8705EE93E1BFC4308F0DEDA2FA02DE3E, 1930059FC53385810D5381C65F3A41D15D332DFD3973E16656 0D1043C5AAEB99 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      21:08:52.0466 0x1cd4 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok
      21:08:52.0466 0x1cd4 [ 868CCA6670A7BE510EABB96FFE959E7B, DF34E84492B000FF797D45D0245B6F09749D7F2B560DA05875 80366ECBC04F2E ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Configuration\aa9c29b70b4cceab890eb841f89d73e9 \System.Configuration.ni.dll
      21:08:52.0466 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Configuration\aa9c29b70b4cceab890eb841f89d73e9 \System.Configuration.ni.dll - ok
      21:08:52.0466 0x1cd4 [ 81BC8DBCD544B8837BCBC5CAD0C9CA08, C67286427B136D36F2785B3DF169B8D3E820ADCD1C836B6977 0439A9456A2E8E ] C:\Windows\System32\MsCtfMonitor.dll
      21:08:52.0466 0x1cd4 C:\Windows\System32\MsCtfMonitor.dll - ok
      21:08:52.0466 0x1cd4 [ A93C9B9EBE2FDE5A536000D72CC17F7F, 9793CFAE8BE8C6B5B39A1D276577965FBB2CE131325A410B7C 68BD23492ADAAF ] C:\Windows\System32\cdpusersvc.dll
      21:08:52.0466 0x1cd4 C:\Windows\System32\cdpusersvc.dll - ok
      21:08:52.0466 0x1cd4 [ EFF98C463A3C1FD3F9E0701C97AAD641, BEBDF1BCCE6E25872E5781CD72234B9231D1DDA93F1D53DF6F 6C31CDCCD286EF ] C:\Windows\System32\msutb.dll
      21:08:52.0466 0x1cd4 C:\Windows\System32\msutb.dll - ok
      21:08:52.0481 0x1cd4 [ 58BC28F39D2801178246762D004D6252, 06E118566B34819468DDB6A22FC6D3A18F00C4869F327F70DA E3E199217340C8 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ms corwks.dll
      21:08:52.0481 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ms corwks.dll - ok
      21:08:52.0481 0x1cd4 [ C50FBFDC76EAF8D22EC203B433D0EEFE, FBD7AF009E0E75C672AC0E7B91BA2FCB422E00D86948BA82FB C84CA84B0B8A8C ] C:\Windows\System32\ClipboardServer.dll
      21:08:52.0481 0x1cd4 C:\Windows\System32\ClipboardServer.dll - ok
      21:08:52.0481 0x1cd4 [ D63BE3267E4214A20A1CCC681890C8D7, 672F838699806C16D265B00718AA2133433F08F3DE955D02CA 66E7C1A4CF27E9 ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User\NvTelemetry.d ll
      21:08:52.0481 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User\NvTelemetry.d ll - ok
      21:08:52.0481 0x1cd4 [ 61D550E4EB439EBC52AFBAFDBE325E5C, F6F8CDB5EE22181F50FFA542FE3F25D63944B9F2C018F3B86F 3319EF472977C6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Xml\7532301b00fac8def2f526ca8b480e11\System.Xm l.ni.dll
      21:08:52.0481 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Xml\7532301b00fac8def2f526ca8b480e11\System.Xm l.ni.dll - ok
      21:08:52.0497 0x1cd4 [ C44714F0FFA71673067359E206BBF825, 87DBCC9D5A252EE7EC3A4D6E19DC1BFD69B38B5FAFFB7A8586 6AE57333B4CBB8 ] C:\Windows\System32\cdprt.dll
      21:08:52.0497 0x1cd4 C:\Windows\System32\cdprt.dll - ok
      21:08:52.0497 0x1cd4 [ 1C5D4F67E5537F12EF10E3B47C060CE7, E20A47DC120DBCA24109D584335D7973836DEDAEA6D4EC588D 5BA22B6F2C4C9E ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User_GsTelemetry.d ll
      21:08:52.0497 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User_GsTelemetry.d ll - ok
      21:08:52.0497 0x1cd4 [ 760037A02C0D4F2C423791F65D03DE42, 2CD99724175369B72CE233697AB05BFD110F905B51A15BDE95 F0BA53D63F1FF0 ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\NvStreamBase.dll
      21:08:52.0497 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\NvStreamBase.dll - ok
      21:08:52.0497 0x1cd4 [ B5DF54562206149F7D5C43A1871CAC17, C4EC7D42FE95F5DE24A4763BEFBAF1BD1ED0DD77F3B2578394 068BBADD169123 ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\MessageBus.dll
      21:08:52.0497 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\MessageBus.dll - ok
      21:08:52.0513 0x1cd4 [ 09CF47A74BFB480B8262FCEE222004B6, F5CD0ACA04BCB95984595CC2E17BC9E92865091A0A3BCAD4B0 6438A1570E7696 ] C:\Windows\System32\Windows.Internal.Management.dl l
      21:08:52.0513 0x1cd4 C:\Windows\System32\Windows.Internal.Management.dl l - ok
      21:08:52.0513 0x1cd4 [ 24B894CCC09F373C8E0883E31A7A1CB0, 18DF842FDDD24B30C612A274CACF7C2FF6BAA29EB8A012C2E4 17DFAAB879E1C8 ] C:\Windows\System32\InputService.dll
      21:08:52.0513 0x1cd4 C:\Windows\System32\InputService.dll - ok
      21:08:52.0513 0x1cd4 [ 9E700419EA86397448296B7D9B195907, 7C466A0ADA92A9DCE468D18B21F041C4452A7F16E467D77E4E 85402228F420EC ] C:\Windows\System32\ActivationManager.dll
      21:08:52.0513 0x1cd4 C:\Windows\System32\ActivationManager.dll - ok
      21:08:52.0513 0x1cd4 [ 42A54C3180BCE82D95A380FA5B5448A0, 7CEAE26C7C19D9A07686E0924343F9C4A56C1704C14E26BB8B C40576AAEE5A20 ] C:\Windows\System32\dmcmnutils.dll
      21:08:52.0513 0x1cd4 C:\Windows\System32\dmcmnutils.dll - ok
      21:08:52.0513 0x1cd4 [ 034CCADC1C073E4216E9466B720F9849, 86E39B5995AF0E042FCDAA85FE2AEFD7C9DDC7AD65E6327BD5 E7058BC3AB615F ] C:\Windows\SysWOW64\msvcr120.dll
      21:08:52.0513 0x1cd4 C:\Windows\SysWOW64\msvcr120.dll - ok
      21:08:52.0528 0x1cd4 [ FD5CABBE52272BD76007B68186EBAF00, 87C42CA155473E4E71857D03497C8CBC28FA8FF7F2C8D72E8A 1F39B71078F608 ] C:\Windows\SysWOW64\msvcp120.dll
      21:08:52.0528 0x1cd4 C:\Windows\SysWOW64\msvcp120.dll - ok
      21:08:52.0528 0x1cd4 [ 13848E36955281175F9F03E539E2AE88, 0BF81D361BAD37988403A47E416D50104FAB6C55726B5FDB9A E57C0E1488B6D3 ] C:\Windows\SysWOW64\cryptui.dll
      21:08:52.0528 0x1cd4 C:\Windows\SysWOW64\cryptui.dll - ok
      21:08:52.0528 0x1cd4 [ 3B9487062A0CFF44131EAC1731CA47CE, 3306AB838FD68860DCE1BC55714A23D100DD81D0681152A045 ABAADA81A3358D ] C:\Windows\System32\EditBufferTestHook.dll
      21:08:52.0528 0x1cd4 C:\Windows\System32\EditBufferTestHook.dll - ok
      21:08:52.0528 0x1cd4 [ 2F33C29F01B36A1A7570A11FBD78167A, 768198FFD413965C63DA70C6839312E68BD5A2A96D8EC8D162 8AB4DA5968859D ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\poco.dll
      21:08:52.0528 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\poco.dll - ok
      21:08:52.0528 0x1cd4 [ E2AAF07BEB81E6E4CAC382F0B2CA551C, C52864CED5077937813F4ADC258D12E7CE7A58C60B03A989F0 F2678D0E0BC306 ] C:\Windows\System32\AppointmentActivation.dll
      21:08:52.0528 0x1cd4 C:\Windows\System32\AppointmentActivation.dll - ok
      21:08:52.0544 0x1cd4 [ DF275C9659ED8215695B572A8CE17FBC, D8F3C962E828201B361A6F634412B7BE25EC1BD3F848F259E3 C996BB9572B0FB ] C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll
      21:08:52.0544 0x1cd4 C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll - ok
      21:08:52.0544 0x1cd4 [ AD7A39B37059851994BC59D18513E13A, 446AE58BD298384336DAAA7949A27E9704F863AD9B715EC0EB F9CEF251176669 ] C:\Windows\System32\TextInputFramework.dll
      21:08:52.0544 0x1cd4 C:\Windows\System32\TextInputFramework.dll - ok
      21:08:52.0544 0x1cd4 [ 7925BA1CF533B13DDB1B4BB4BFD310F6, 45B824BAC440DF973A11987FE5235F25222D46496E53520D38 36756D17229406 ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
      21:08:52.0544 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll - ok
      21:08:52.0544 0x1cd4 [ 620316E17FB073F9FA519AD0CA9FA615, FF55100D04430ADFF4DC6743BE1F60579F1E8502DCF704369D 7CBE8F84604D81 ] C:\Windows\System32\dmenrollengine.dll
      21:08:52.0544 0x1cd4 C:\Windows\System32\dmenrollengine.dll - ok
      21:08:52.0544 0x1cd4 [ D55AC147BCDC3DA3EDA4F8F58BF276A8, 42309B96142FA018DD5658EAF9FD68B9EF00AEFB56456EA692 ADE2826B0272A4 ] C:\Windows\System32\Windows.Security.Authenticatio n.Web.Core.dll
      21:08:52.0544 0x1cd4 C:\Windows\System32\Windows.Security.Authenticatio n.Web.Core.dll - ok
      21:08:52.0559 0x1cd4 [ D253FD91AF777035AFE9A33567E3753E, 738FA201A29D696E78DC8894CCCC21B8B3BE577DE9DC8F5E71 869FD5137635AB ] C:\Windows\System32\ExecModelClient.dll
      21:08:52.0559 0x1cd4 C:\Windows\System32\ExecModelClient.dll - ok
      21:08:52.0559 0x1cd4 [ 49878BF779C81F0E1D6D72905BAFDEB0, 9F8B43B37A8BFC57DECAE494288113572D7C757FA24DEBC8FF C6F8ECDCBE15C9 ] C:\Windows\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b 9a1e18e3b_8.0.50727.9268_none_88e0de612fadfb38\msv cr80.dll
      21:08:52.0559 0x1cd4 C:\Windows\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b 9a1e18e3b_8.0.50727.9268_none_88e0de612fadfb38\msv cr80.dll - ok
      21:08:52.0559 0x1cd4 [ E4656D87726CFBEFD33211CE617B662C, 27A90A10CA8BF2E95132C2D4834436CC8D0643F4F83CBCE34D E050299FE744CB ] C:\Windows\System32\SynCOM.dll
      21:08:52.0559 0x1cd4 C:\Windows\System32\SynCOM.dll - ok
      21:08:52.0559 0x1cd4 [ 4FE48DDFAF50609F785324F4957841FD, 9B6677B0FD325D0665412BA6ADE7D13305D850838A4D84B96C 87952939BEB806 ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libeay32.dll
      21:08:52.0559 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libeay32.dll - ok
      21:08:52.0575 0x1cd4 [ 1CE8FA240B623C8420C177D238556825, D465868AA42F99812798C334EC4D23A96323342D660E3C5494 C06F7A4DFE7E59 ] C:\Windows\System32\WindowManagement.dll
      21:08:52.0575 0x1cd4 C:\Windows\System32\WindowManagement.dll - ok
      21:08:52.0575 0x1cd4 [ 1829E2956926D1CA290B0C665A433CA7, A1CCF2F5680D5963DF0AF514E5FF095F963AD09DC223A6DC3B 312C482984ADDF ] C:\Program Files (x86)\NVIDIA Corporation\NvContainer\ssleay32.dll
      21:08:52.0575 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvContainer\ssleay32.dll - ok
      21:08:52.0575 0x1cd4 [ 3413167278CBF08DAE6D5EDDA1C36A94, 58FFE5B5535B31377E48876CF588BB4F3EE77C5FB191023396 1BB1ACA8510F01 ] C:\Windows\System32\BackgroundMediaPolicy.dll
      21:08:52.0575 0x1cd4 C:\Windows\System32\BackgroundMediaPolicy.dll - ok
      21:08:52.0575 0x1cd4 [ 4330AF6614F053DD11985FE6AC037C7D, 8CA4D02AF753BE4ED2912AE8498F73534A39E8BC68C93F41E8 8EFB708127E8EC ] C:\Windows\SysWOW64\rasapi32.dll
      21:08:52.0575 0x1cd4 C:\Windows\SysWOW64\rasapi32.dll - ok
      21:08:52.0591 0x1cd4 [ 3633D64CAB5E1F7835B13BD1ADA80CE2, D2EA446EA81F28A83CC5C95F7DC669B597866005F7A3965F4D 77A064F07F100D ] C:\Windows\System32\notificationplatformcomponent. dll
      21:08:52.0591 0x1cd4 C:\Windows\System32\notificationplatformcomponent. dll - ok
      21:08:52.0591 0x1cd4 [ 5FA2F260361FC794573481F9EC54B03F, 58EE3CD71D7C6E004F4F99655C4BA715DF3A1F0305A2EC08F8 662739AE5D97DB ] C:\Windows\SysWOW64\rasman.dll
      21:08:52.0591 0x1cd4 C:\Windows\SysWOW64\rasman.dll - ok
      21:08:52.0591 0x1cd4 [ BBB6B1F731DC954B833115DA90A89597, 547123FFB05BC26402FB3DD57C568CFB07327A2257258A6D80 46BE4EA26944ED ] C:\Windows\System32\ACPBackgroundManagerPolicy.dll
      21:08:52.0591 0x1cd4 C:\Windows\System32\ACPBackgroundManagerPolicy.dll - ok
      21:08:52.0591 0x1cd4 [ 75F454350913A941F1488A6200220D86, 1A143FC07026E16AC1B9D32690A7168E39584058142FC13F8C A1D8A233362474 ] C:\Windows\SysWOW64\rtutils.dll
      21:08:52.0591 0x1cd4 C:\Windows\SysWOW64\rtutils.dll - ok
      21:08:52.0606 0x1cd4 [ EBB2F503484E75D293613279EA3CB7EA, BEA1AE60234ACB30B2F695236432A279419AC5B38547A47A05 701959789AD321 ] C:\Windows\System32\AppContracts.dll
      21:08:52.0606 0x1cd4 C:\Windows\System32\AppContracts.dll - ok
      21:08:52.0606 0x1cd4 [ 8439DB137E719EBFF71FD20586AAA2B4, 534FBC9527543AA0B0732FFDC76B71A3D4AF5E4236109A44BA 46C6754BA65F7D ] C:\Windows\System32\CbtBackgroundManagerPolicy.dll
      21:08:52.0606 0x1cd4 C:\Windows\System32\CbtBackgroundManagerPolicy.dll - ok
      21:08:52.0606 0x1cd4 [ 3ECBDC0AB12F3E7F385B56F7880888ED, 21FE4CB4949BFFE89DE13CA1E0824FD7BEB6E4BA02DCE4A185 7A2958B8B0A890 ] C:\Windows\System32\SmartCardBackgroundPolicy.dll
      21:08:52.0606 0x1cd4 C:\Windows\System32\SmartCardBackgroundPolicy.dll - ok
      21:08:52.0606 0x1cd4 [ 5AF3DEC547ABBE849EFC45C09DB03E87, 4D26A52B1C3686978750381B593FB66BDF8F84945C9E12F540 79D217EFCDC8A5 ] C:\Windows\System32\SynTPAPI.dll
      21:08:52.0606 0x1cd4 C:\Windows\System32\SynTPAPI.dll - ok
      21:08:52.0606 0x1cd4 [ 94021B071FE2B083B62E68058FF0CFDF, 4E355F53FDAF46980AE27E4BF01D54AA332FD065FEE31B53A1 CF0FCC8E8187FF ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\naHelper.dll
      21:08:52.0606 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\naHelper.dll - ok
      21:08:52.0622 0x1cd4 [ 4CD9392325993786D01292A553D0D656, 18216BDBA2A0BA48812965A404685B1B198B2FC7BBDFBAAE90 4DCE62870F81A3 ] C:\Windows\System32\mdmmigrator.dll
      21:08:52.0622 0x1cd4 C:\Windows\System32\mdmmigrator.dll - ok
      21:08:52.0622 0x1cd4 [ F67DFB27AACE637BEA56D3EB0726B943, 3663C2F3579BEBAF433AF101902ADA3FF87A3A6005F0AF77D1 894458286E3656 ] C:\Windows\SysWOW64\samcli.dll
      21:08:52.0622 0x1cd4 C:\Windows\SysWOW64\samcli.dll - ok
      21:08:52.0622 0x1cd4 [ 8054F43873E02C41D7D6B73955F7EED8, 1E3B6B671FE5A80A424618979A9FC9A82CDCC0B92F634B3691 46E07DC7286BD9 ] C:\Windows\System32\Windows.Networking.BackgroundT ransfer.BackgroundManagerPolicy.dll
      21:08:52.0622 0x1cd4 C:\Windows\System32\Windows.Networking.BackgroundT ransfer.BackgroundManagerPolicy.dll - ok
      21:08:52.0622 0x1cd4 [ DA446593637409C623A1F308371F0505, 0B100D0049C8175E5DA70CEDE030DEAA5644E200C26378E168 0946C146C7A905 ] C:\Windows\System32\ShareHost.dll
      21:08:52.0622 0x1cd4 C:\Windows\System32\ShareHost.dll - ok
      21:08:52.0622 0x1cd4 [ 1D8F285E38781C2688FCBD249B4AA50C, 828E7C89370BDA3C31AE998E30D8535D4F43944EEB77A90D8A B4AC43C1651540 ] C:\Windows\System32\Windows.StateRepositoryBroker. dll
      21:08:52.0622 0x1cd4 C:\Windows\System32\Windows.StateRepositoryBroker. dll - ok
      21:08:52.0638 0x1cd4 [ F6D02735DE16705C1EBE6429592CD355, 356C49C5E1328FB181C295A84292471C566E11099E46D7A34C 017931863D86A4 ] C:\Program Files (x86)\Bonjour\mdnsNSP.dll
      21:08:52.0638 0x1cd4 C:\Program Files (x86)\Bonjour\mdnsNSP.dll - ok
      21:08:52.0638 0x1cd4 [ 9F86158107F4C4A954E1A1594A73E769, 8D797D0B92ACE4957EDC3380C06D54CC2912896248A2A68E86 F83FA0B7A24136 ] C:\Windows\System32\WpPortingLibrary.dll
      21:08:52.0638 0x1cd4 C:\Windows\System32\WpPortingLibrary.dll - ok
      21:08:52.0638 0x1cd4 [ 49F66601F196554BC9B36310CE84F011, 44FD17A3EC95EC7D0F568E132A6793BEB7582A8B48E7EEEC6C 958BD217CFCA6A ] C:\Windows\SysWOW64\rasadhlp.dll
      21:08:52.0638 0x1cd4 C:\Windows\SysWOW64\rasadhlp.dll - ok
      21:08:52.0638 0x1cd4 [ 18A620F0192F4B8187441922B4B2ECB8, 838016F780429E972D9D7C50C1731C81F358958E5E738E80CD 8193F333E37D39 ] C:\Windows\System32\SebBackgroundManagerPolicy.dll
      21:08:52.0638 0x1cd4 C:\Windows\System32\SebBackgroundManagerPolicy.dll - ok
      21:08:52.0638 0x1cd4 [ D8B4C85239B9CFDFEDBDD7A20CBE2E20, 0F43FCED7238F516B30B4ABA6555E9EF2D5E9847CE4CDA49A1 E5B7EAC2993671 ] C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryAPI32.dll
      21:08:52.0638 0x1cd4 C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryAPI32.dll - ok
      21:08:52.0638 0x1cd4 [ 56324D1A36BE6FD3C4778998EEB62D81, 294D09DFBEABEAE49C253C2FFE09BF44B22151B44CA85322EB 7624E600EDCE7A ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\NPCTray.dll
      21:08:52.0638 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\NPCTray.dll - ok
      21:08:52.0653 0x1cd4 [ 524D241038DED343B9F20FC54C305598, 7F74DD604A281D4E480AD45B8E17387D66EA6CFFB5E3355AEE 1ADCAB46FBE414 ] C:\Windows\System32\Windows.System.Launcher.dll
      21:08:52.0653 0x1cd4 C:\Windows\System32\Windows.System.Launcher.dll - ok
      21:08:52.0653 0x1cd4 [ 1F0BEDE13F71245EF930BDA4B665F479, 829C5EE775A962D71C0AFD5FAEABA633BF8403C13AAB38D0E0 0B2F28A4F1071A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\msc orlib\eb1f15ae8e549d63a1c20ed6271e7b7a\mscorlib.ni .dll
      21:08:52.0653 0x1cd4 C:\Windows\assembly\NativeImages_v2.0.50727_64\msc orlib\eb1f15ae8e549d63a1c20ed6271e7b7a\mscorlib.ni .dll - ok
      21:08:52.0653 0x1cd4 [ 68B9D02A469519C6BFD9F39854EE8E62, A7646650AB50D076DBBC6E9B767565DDA71B078814BC2071BA 525F118B861883 ] C:\Windows\System32\dsclient.dll
      21:08:52.0653 0x1cd4 C:\Windows\System32\dsclient.dll - ok
      21:08:52.0653 0x1cd4 [ 7327C64C28E1ACDBD0D1C8164AE71AA6, 7207CD9666777413724F08378D26197E77C4B78CE28E08D53C 726A0D95286B60 ] C:\Windows\System32\MTFServer.dll
      21:08:52.0653 0x1cd4 C:\Windows\System32\MTFServer.dll - ok
      21:08:52.0653 0x1cd4 [ 096BC26E7B66E610EFD455A6A5C0F87E, 6D4600C537A2724C95720EC90031685E6607B364A781E1452C D788010ABE7A6E ] C:\Windows\System32\twinui.appcore.dll
      21:08:52.0653 0x1cd4 C:\Windows\System32\twinui.appcore.dll - ok
      21:08:52.0669 0x1cd4 [ 12563643B2A0D6AD44392F23A34119E8, EBE4459EA8C19A4E7E34EB9CB9D96FA8B419F30877CAB057D5 D3F87BA85D4973 ] C:\Windows\System32\AudioSes.dll
      21:08:52.0669 0x1cd4 C:\Windows\System32\AudioSes.dll - ok
      21:08:52.0669 0x1cd4 [ 8F8B9B67E8BAFE7AEE433609D5DE8076, 6AD2738B294530B6DEC6350267CE3979CA3FCE04BAF60318CD AC2AEB01AE7A44 ] C:\Windows\System32\InputLocaleManager.dll
      21:08:52.0669 0x1cd4 C:\Windows\System32\InputLocaleManager.dll - ok
      21:08:52.0669 0x1cd4 [ C6A7DF1CBFC7B121B46CF1FCAC853DCB, 8FA5918D99FE4C56D326542FB25DA7377FFFDC67C67FE1E3B9 DFEBF09BA2E9D1 ] C:\Windows\SysWOW64\dinput8.dll
      21:08:52.0669 0x1cd4 C:\Windows\SysWOW64\dinput8.dll - ok
      21:08:52.0669 0x1cd4 [ BA22C7AFE02E09916C5664E1DD98A879, 459AAE00EF66DADD15FB86684FFA028F0589C470A10EB27E0E A59C9E33C17E94 ] C:\Windows\SysWOW64\FWPUCLNT.DLL
      21:08:52.0669 0x1cd4 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
      21:08:52.0669 0x1cd4 [ 223738F278183923B78569DAA536F0AD, F9DF36F52A4285817B24C4C6DCA0430CB6A8C9B95B626103DB 898371E5DCEE9D ] C:\Users\Clint\AppData\Local\NVIDIA\NvBackend\Appl icationOntology\Ontology.dll
      21:08:52.0669 0x1cd4 C:\Users\Clint\AppData\Local\NVIDIA\NvBackend\Appl icationOntology\Ontology.dll - ok
      21:08:52.0669 0x1cd4 [ A0251547D09C624F5E0FDFED5F14C834, A6E167A77AC44A73323B8FF65E1FA2BAEDC0E092255F81FE04 1B35D40970FF90 ] C:\Windows\System32\execmodelproxy.dll
      21:08:52.0669 0x1cd4 C:\Windows\System32\execmodelproxy.dll - ok
      21:08:52.0684 0x1cd4 [ 81C56248655872C203C52E03F29DEC9F, 4F7F65574C42AF3E223956A87C4FDFBFC4D721CDEAC703FF33 89F9E6F3313A08 ] C:\Windows\System32\daxexec.dll
      21:08:52.0684 0x1cd4 C:\Windows\System32\daxexec.dll - ok
      21:08:52.0684 0x1cd4 [ A4DE7801642001F4836E9FA6A8128770, C6C4E610BD47DCF8F84B5868EF5209A5AA5689A6541288A471 51BDD46A4282F4 ] C:\Windows\SysWOW64\schannel.dll
      21:08:52.0684 0x1cd4 C:\Windows\SysWOW64\schannel.dll - ok
      21:08:52.0684 0x1cd4 [ 06283D1A7B1901F027C0C7AD520A2835, 24F6110484608B2E5F6494AA1290DA8C23604A47902AF9E7C5 2479AB01C7E8D2 ] C:\Windows\System32\container.dll
      21:08:52.0684 0x1cd4 C:\Windows\System32\container.dll - ok
      21:08:52.0684 0x1cd4 [ A07903E282010196D98E8D280A43A24E, 820A600468A89EEAF2778B8AA135F941114FEC6F1CB32CEE79 CF77A71C21001A ] C:\Windows\System32\TokenBroker.dll
      21:08:52.0684 0x1cd4 C:\Windows\System32\TokenBroker.dll - ok
      21:08:52.0684 0x1cd4 [ 627AA1CE9E746E104C4C9949A1A7B8E2, 130A8CF24AF9D3BAA46153DCBE96634CD67365811DC28BCC79 9B16443C9CDB61 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Sys tem\213b5435c7a44428758c63bb7d34af62\System.ni.dll
      21:08:52.0684 0x1cd4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Sys tem\213b5435c7a44428758c63bb7d34af62\System.ni.dll - ok
      21:08:52.0700 0x1cd4 [ 4F374782286DED5127D350CEDBC2849E, 4B0504F91A8CE2E6DDCDCAE5345C74B71E65FD744323CC9617 75F9E4A3E8D2CE ] C:\Windows\SysWOW64\mskeyprotect.dll
      21:08:52.0700 0x1cd4 C:\Windows\SysWOW64\mskeyprotect.dll - ok
      21:08:52.0700 0x1cd4 [ 9100A22F44D02211DA37FA0B1C2BBC6A, F978B2FCD7EB26718DBA941AD4C573A881BF26E47C60DD2FE1 754A90C97FDEF1 ] C:\Windows\System32\tokenbinding.dll
      21:08:52.0700 0x1cd4 C:\Windows\System32\tokenbinding.dll - ok
      21:08:52.0700 0x1cd4 [ F2CAE3C03D4EB93F9DC22D2D6E3D91CD, A5DAAE92A8AEE0D27E6B5821DEEA71859F9492ADC668844C61 AA70EEDDED1C4F ] C:\Windows\SysWOW64\ncrypt.dll
      21:08:52.0700 0x1cd4 C:\Windows\SysWOW64\ncrypt.dll - ok
      21:08:52.0700 0x1cd4 [ DB605A7505262E8943572D4CBDB7A343, AF153885F1964299438062F42B1D94300B84F667ED4B2990D2 7739C84CC986C7 ] C:\Windows\System32\edputil.dll
      21:08:52.0700 0x1cd4 C:\Windows\System32\edputil.dll - ok
      21:08:52.0700 0x1cd4 [ CDA0441BE02BB525B159B3949D9DC67D, 4977F6560E6B355299CB160CBFA411E0EDA83558AE15E8E323 CD5BA02351C6CA ] C:\Windows\SysWOW64\ntasn1.dll
      21:08:52.0700 0x1cd4 C:\Windows\SysWOW64\ntasn1.dll - ok
      21:08:52.0700 0x1cd4 [ C1B1FFC800BE2F31EB2CF8CB40629C69, CFC6A18FC8FE7447ECD491345A32F0F10208F114B70A0E9D1C D72F6070D5B36F ] C:\Windows\System32\userinit.exe
      21:08:52.0700 0x1cd4 C:\Windows\System32\userinit.exe - ok
      21:08:52.0716 0x1cd4 [ EFBAB21990FC9D8332B358CDFEBA3384, DF2474DB2287C683778FAE6FA790CD45F8FA19E88D7D5C9A52 2B0DB51B3FB65D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Sys tem.ServiceProce#\d59c5ceb0a28360c511020dec33f0232 \System.ServiceProcess.ni.dll
      21:08:52.0716 0x1cd4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Sys tem.ServiceProce#\d59c5ceb0a28360c511020dec33f0232 \System.ServiceProcess.ni.dll - ok
      21:08:52.0716 0x1cd4 [ 1E03C94933E088D9FAB00B49D46CC370, 20A7EB74EFD23933A5C0887D3D8CE66FEA009A6CD257508CB4 B0EB70F8D27C57 ] C:\Windows\System32\RuntimeBroker.exe
      21:08:52.0716 0x1cd4 C:\Windows\System32\RuntimeBroker.exe - ok
      21:08:52.0716 0x1cd4 [ EEEA228029CF6CEF23A502411D38AB21, BD3CA0AF6DBDD3A0D77B03B9DC709DF4F886E52E807851E79D 5280E41682D060 ] C:\Windows\System32\wbem\NetAdapterCim.dll
      21:08:52.0716 0x1cd4 C:\Windows\System32\wbem\NetAdapterCim.dll - ok
      21:08:52.0716 0x1cd4 [ 5CA2520BCB004C8180B7AFA45E879417, 10E299D67163805B6DD99D4B9850CF0063F53F7FACB0565A03 3A15B8AE30AFF7 ] C:\Windows\SysWOW64\ncryptsslp.dll
      21:08:52.0716 0x1cd4 C:\Windows\SysWOW64\ncryptsslp.dll - ok
      21:08:52.0731 0x1cd4 [ ECC70E1A68A571D38486EBC3783450D7, 93222B0150884378089B65411755D7118CCD93B6B899445EDA DBA9805E89FC06 ] C:\Windows\System32\userinitext.dll
      21:08:52.0731 0x1cd4 C:\Windows\System32\userinitext.dll - ok
      21:08:52.0731 0x1cd4 [ EDA6A72FBE93C81A4B67C8A1B4B580D2, C654D5A47AA5F82725DDEE5056112F9F11BD9D89C2468FCC9B 7BDB74F67F0461 ] C:\Windows\System32\winbrand.dll
      21:08:52.0731 0x1cd4 C:\Windows\System32\winbrand.dll - ok
      21:08:52.0731 0x1cd4 [ 13D3B011511A9CAF7686A802933A6B0B, E1CF2261C8FD01F60551C030BD9D91CA09FAA8D9044F98DCCB 6FF25E42587664 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ms corjit.dll
      21:08:52.0731 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ms corjit.dll - ok
      21:08:52.0731 0x1cd4 [ 1905E007C072C167CA22B024D229BE51, 2CD48FC3E6D73F6209CC7645BECC37A6F81F9CABBD1489C94E 25DAE4F1ECC41B ] C:\Windows\System32\wmitomi.dll
      21:08:52.0731 0x1cd4 C:\Windows\System32\wmitomi.dll - ok
      21:08:52.0747 0x1cd4 [ 55F0A1BF7DA40DF90945C78811DED92A, D3493917926CA512505962B55B380D1ADD1E05AB491C1CD414 BC71A5AB4B1093 ] C:\Windows\System32\profext.dll
      21:08:52.0747 0x1cd4 C:\Windows\System32\profext.dll - ok
      21:08:52.0747 0x1cd4 [ B42D06908B5DA15CBFC533FDD31999D3, FBBCD58CFA8D7CA09C9F390D34BBBD6ED0C5116499410B3963 1216E71D389A67 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Sec urity.dll
      21:08:52.0747 0x1cd4 C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Security\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Sec urity.dll - ok
      21:08:52.0747 0x1cd4 [ 0C05DA5BB5C6841C6290F64CA34F1CBD, 9C48F8D23D42C3CAF06938C2B8AAFCB51E4BE879BA21578FDD 9B9D6635F1C0D8 ] C:\Windows\System32\security.dll
      21:08:52.0747 0x1cd4 C:\Windows\System32\security.dll - ok
      21:08:52.0747 0x1cd4 [ FEE6613E8CE1DB2C175DA015C8DF6632, 4040889A9B011D6BE6BC6E12CC76999523489543F4C26D493F 9A883C3DC34CA2 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\uiMain.dll
      21:08:52.0747 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\uiMain.dll - ok
      21:08:52.0763 0x1cd4 [ 02B07DA28089AAF8034749BCB5DD3657, E0DB0E57BF93069BAEB70C152BFFDA1A3964EA65813C0CC041 4EF209F55CC470 ] C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      21:08:52.0763 0x1cd4 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe - ok
      21:08:52.0763 0x1cd4 [ 9565E2180ACA12EC2DAAF237568BB7FF, 450DEFF97BA11F320372CADABDFEE221D4821652DB14CBE2B2 AC22DE6F212C2D ] C:\Windows\System32\schedcli.dll
      21:08:52.0763 0x1cd4 C:\Windows\System32\schedcli.dll - ok
      21:08:52.0763 0x1cd4 [ 1F45B53EB2C8EC3D79CDFA74753082B8, B193AB727BE8D17A84446E1A2845A013FCDF987DEBA3F7FE43 849AD53F3358FF ] C:\Windows\SysWOW64\ncryptprov.dll
      21:08:52.0763 0x1cd4 C:\Windows\SysWOW64\ncryptprov.dll - ok
      21:08:52.0763 0x1cd4 [ DC00FF0822700164A7823DB07A8DA7BC, C909AFFDEFA4D61324C80660E7E190090270BB4D56D653E98E FD5169064BF74A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Win dowsBase\26fecefbf0b5073a2e5086c35bb3f123\WindowsB ase.ni.dll
      21:08:52.0763 0x1cd4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Win dowsBase\26fecefbf0b5073a2e5086c35bb3f123\WindowsB ase.ni.dll - ok
      21:08:52.0763 0x1cd4 [ 73FAA5517CCD1332F00192A303CF2026, 75636222BFF381A3EECA010752DF7DC1603A395B91FF7FBF92 127B5CA8EFFEE5 ] C:\Windows\System32\appinfo.dll
      21:08:52.0763 0x1cd4 C:\Windows\System32\appinfo.dll - ok
      21:08:52.0763 0x1cd4 [ D647C3D0322D267E7C3E52490684A8F8, 38FE4700E148CCCFE3160C9A7CEE4EEDF01C95C604611F2B39 9EC4E4BCEAD594 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\SymHTML.dll
      21:08:52.0763 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\SymHTML.dll - ok
      21:08:52.0778 0x1cd4 [ F0D5A94F4F3C2C2035D2F157DD9626E7, 8B1522BA0FE25D268781C2DF68BAE2BA4991D5BD02F161E61D E1B9194AE54DFA ] C:\Windows\System32\consent.exe
      21:08:52.0778 0x1cd4 C:\Windows\System32\consent.exe - ok
      21:08:52.0778 0x1cd4 [ D157F65CE9C6E1F692C56283968AAC5C, 45DB132C29697F11C27C2876870155ED7D241292221CC309EF ED29CA2BD21E62 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Pre sentationCore\a4b717b0e7dc4a3d0a419806bca77f99\Pre sentationCore.ni.dll
      21:08:52.0778 0x1cd4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Pre sentationCore\a4b717b0e7dc4a3d0a419806bca77f99\Pre sentationCore.ni.dll - ok
      21:08:52.0778 0x1cd4 [ 40A2EC87D7DBD32D91123096279C17FB, E3CE98274320FD7E7E2850F51CFA8AECB2F3A4B990CADA03BB 6B90376D6FE204 ] C:\Windows\SysWOW64\nvapi.dll
      21:08:52.0778 0x1cd4 C:\Windows\SysWOW64\nvapi.dll - ok
      21:08:52.0778 0x1cd4 [ F057E6CFED6521141F9E2AA786FEBF9E, FE15ADCBC8E9B129BC09FEC47A89A487F5D9E537DC05674C41 3A8D9D84860535 ] C:\Windows\System32\wmsgapi.dll
      21:08:52.0778 0x1cd4 C:\Windows\System32\wmsgapi.dll - ok
      21:08:52.0778 0x1cd4 [ 4E10FB1A015B49AC68F76C1A3F4D9C0F, DB8AD69C66B136B04862E635C2E6A4DB3AB4FEB984622A5E3A 1E555A296012E4 ] C:\Windows\explorer.exe
      21:08:52.0778 0x1cd4 C:\Windows\explorer.exe - ok
      21:08:52.0794 0x1cd4 [ 79B4EC837EED6A90DC631FC8A8AE83A3, 146875394911C1127CF817E1E5D988E4531292896C3BE4923E CE6EF4E96190EC ] C:\Windows\System32\amsi.dll
      21:08:52.0794 0x1cd4 C:\Windows\System32\amsi.dll - ok
      21:08:52.0794 0x1cd4 [ 505DC1F4C21AF1FF96F77629FC2AD67E, 8EE5D89FEE79B4F876BCA873D17835AF8E50DDA39ACEC60135 68AED8B3672554 ] C:\Windows\SysWOW64\d2d1.dll
      21:08:52.0794 0x1cd4 C:\Windows\SysWOW64\d2d1.dll - ok
      21:08:52.0794 0x1cd4 [ 0FA371C4D87D47E4D2E39655DE14F521, 57EA6BB288A926E0A56B31C4C79D0D2DBD916CBADF2615C7CE A62BB8C03F16D6 ] C:\Windows\SysWOW64\dxgi.dll
      21:08:52.0794 0x1cd4 C:\Windows\SysWOW64\dxgi.dll - ok
      21:08:52.0794 0x1cd4 [ B3DEE8AD2A53818CDC47F2060F744E25, B648085405EC133727C6DCB247E5E5483ED57934359398D18D 08464D8B15210F ] C:\Windows\System32\SettingSyncCore.dll
      21:08:52.0794 0x1cd4 C:\Windows\System32\SettingSyncCore.dll - ok
      21:08:52.0794 0x1cd4 [ 20C387210808A0755D58EDF5A4C73462, 6988A5DC2466A1335336523C845E592E7868EAE6E29ADB1CE9 DD82E23B403478 ] C:\Windows\System32\twinapi.dll
      21:08:52.0794 0x1cd4 C:\Windows\System32\twinapi.dll - ok
      21:08:52.0794 0x1cd4 [ 935365BAB07BF4F6774C3014A8508461, 4989BD253B5CAA9157E3D90BFB047083D62CEA097DAB546D10 71BEF77320C6B9 ] C:\Windows\SysWOW64\d3d10_1.dll
      21:08:52.0794 0x1cd4 C:\Windows\SysWOW64\d3d10_1.dll - ok
      21:08:52.0809 0x1cd4 [ 18F1F0F78B5E6E6CDC62129F6460FA79, 019D6CDBC70B3317EA8D46AA0C8C6EB66EEFFACFA6922B5B5E 99C4D1004F8E85 ] C:\Windows\SysWOW64\d3d10_1core.dll
      21:08:52.0809 0x1cd4 C:\Windows\SysWOW64\d3d10_1core.dll - ok
      21:08:52.0809 0x1cd4 [ 14165F6BC67B1B51DD9F55C339D63CB0, F28FD8C595D4414B3196F9942C1A5D3D42CF5851E0E210DE09 C53BC587D53940 ] C:\Windows\SysWOW64\d3d11.dll
      21:08:52.0809 0x1cd4 C:\Windows\SysWOW64\d3d11.dll - ok
      21:08:52.0809 0x1cd4 [ 0DD7171F2B58F3299D127D7EEB1F4677, 7CB05D6E088CFD66F9CA3A7E9EC4D06705A4F846C5DDA05776 176820939215B0 ] C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfg fx_v0300.dll
      21:08:52.0809 0x1cd4 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfg fx_v0300.dll - ok
      21:08:52.0809 0x1cd4 [ 582FDDA54866BB23C1675341CD80A0A2, F4CF816A2AB5C2F47F62930491D7821AB04AACAA7FD7EAF0F4 916585F0DE459D ] C:\Windows\System32\SharedStartModel.dll
      21:08:52.0809 0x1cd4 C:\Windows\System32\SharedStartModel.dll - ok
      21:08:52.0809 0x1cd4 [ 63CF9E094A62A787937B955D654C55DE, 8CDC1BDBA30CCF2C2A9E02A0ED2B78EA0D0F562213FF56E180 E3B08F158891B9 ] C:\Windows\SysWOW64\DWrite.dll
      21:08:52.0809 0x1cd4 C:\Windows\SysWOW64\DWrite.dll - ok
      21:08:52.0825 0x1cd4 [ BEFED197AE9153766F7304650368F3D8, 9A05D7E6E17B23F42573910C33660035BABABE2362DCF32159 3EF8ACCF575CE8 ] C:\Windows\SysWOW64\webio.dll
      21:08:52.0825 0x1cd4 C:\Windows\SysWOW64\webio.dll - ok
      21:08:52.0825 0x1cd4 [ F1EC6DC6902E848D243247E58E54FCD2, 855817F195B4AF7F781FEA04950BE6ED0C101F3BAEC12B4129 00CB5E36088814 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Runteb92aa12#\213003369298faf75651a6b8981dce12 \System.Runtime.Serialization.ni.dll
      21:08:52.0825 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Runteb92aa12#\213003369298faf75651a6b8981dce12 \System.Runtime.Serialization.ni.dll - ok
      21:08:52.0825 0x1cd4 [ 3BCEA28D0FBBDE4D112CDD297972EF75, 70C8E21640C8CDF3A7FCB8A5F5E4AB07B3A19390B40AD9933A 1D123AAEA9CEF3 ] C:\Windows\System32\shfolder.dll
      21:08:52.0825 0x1cd4 C:\Windows\System32\shfolder.dll - ok
      21:08:52.0825 0x1cd4 [ 012B8825E588F74439D55115ED1FE5AD, D646D30D2538E47FEFB9C1D5B323476B2701822FF6BCC91155 C40BAA6710975E ] C:\Windows\System32\pcacli.dll
      21:08:52.0825 0x1cd4 C:\Windows\System32\pcacli.dll - ok
      21:08:52.0825 0x1cd4 [ 87BE502E7B1D3705783C366ED0CBA9F7, 835BAF987D56C1C964AB076C692C52ABBC56747FFB1EF4E525 F413A67CE52FB9 ] C:\Windows\SysWOW64\UIAutomationCore.dll
      21:08:52.0825 0x1cd4 C:\Windows\SysWOW64\UIAutomationCore.dll - ok
      21:08:52.0825 0x1cd4 [ F4F684066175B77E0C3A000549D2922C, 935C1861DF1F4018D698E8B65ABFA02D7E9037D8F68CA3C206 5B6CA165D44AD2 ] C:\Windows\System32\cmd.exe
      21:08:52.0825 0x1cd4 C:\Windows\System32\cmd.exe - ok
      21:08:52.0841 0x1cd4 [ 53CE27E6BD38ADF324809A3F61A1BA22, A7849E9DFA8E22A30598C1A6532FC865E91E2A9268EABCB8E0 711FA58AA49A1C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Management\a280fac0c231c9d6d5f1274c2180d594\Sy stem.Management.ni.dll
      21:08:52.0841 0x1cd4 C:\Windows\assembly\NativeImages_v4.0.30319_32\Sys tem.Management\a280fac0c231c9d6d5f1274c2180d594\Sy stem.Management.ni.dll - ok
      21:08:52.0841 0x1cd4 [ AED7DA262BA66AB6ADAB2010CA4B35F4, 3A03F1D1EA3403CC2C81CA8F49E0330BE7AC9E05EF5CD16352 F12B43FB9E4E38 ] C:\Windows\System32\runonce.exe
      21:08:52.0841 0x1cd4 C:\Windows\System32\runonce.exe - ok
      21:08:52.0841 0x1cd4 [ 5A41E38C5D1EDC84CCD93685B0B89D37, 2AB413FD4092595B37B38CF0F979F454FE30312559A3C1466E 1087160D699E27 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\WMIN et_Utils.dll
      21:08:52.0841 0x1cd4 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WMIN et_Utils.dll - ok
      21:08:52.0841 0x1cd4 [ 863FEBB2CDE6CAD41811092F5820F822, 3DA96E1CA6D57DBBCD8BF71FBC3CAA0CACD7D79ECD6BDE3567 0BE00BFD5D92B3 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\diStRptr.dll
      21:08:52.0841 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\diStRptr.dll - ok
      21:08:52.0841 0x1cd4 [ 2AABBF2A71FD8A4956EAD50B20935DB1, 89851F0FA0CFA37A7DB16BED975EA5AD21EDA1DBBD8C8810D2 770E12859C9E20 ] C:\Program Files\Malwarebytes\Anti-Malware\mbae64.dll
      21:08:52.0841 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\mbae64.dll - ok
      21:08:52.0841 0x1cd4 [ 6AE34DE520137F17F0474A7FE88E0F30, 169287355C20EA3DFEB60201C5398ACF7FAB2483BF9C8D53B5 43D19F8131065A ] C:\Windows\SysWOW64\wbem\wmiutils.dll
      21:08:52.0841 0x1cd4 C:\Windows\SysWOW64\wbem\wmiutils.dll - ok
      21:08:52.0856 0x1cd4 [ 3D5F44B1137E72725BD8A37E3F003185, 1DA283EDD39CB140F566911F22E63B4B47BD1A8CC74AB20172 5F3D7BB46479FE ] C:\Windows\System32\SndVolSSO.dll
      21:08:52.0856 0x1cd4 C:\Windows\System32\SndVolSSO.dll - ok
      21:08:52.0856 0x1cd4 [ 3E6ECA5BEE1E3ED92184C9ED38F098F0, 14B72A3ED023D072CACE8B7085CB368C7988E3AA29E8C9A213 98A587D876566D ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\csdk.dll
      21:08:52.0856 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\csdk.dll - ok
      21:08:52.0856 0x1cd4 [ A5F1574C33F60AE5AFAECE71B2A39575, 6EB5310C251600712CB827B00A6E4212E25FDBFE22C84E189C E932D61780EE71 ] C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\MClnTask.dll
      21:08:52.0856 0x1cd4 C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\MClnTask.dll - ok
      21:08:52.0856 0x1cd4 [ 71B9AD2C078C208ED1633DE7DDAA834F, 44A35F3F5561E722EA1ED9A128BFF127E6086B114678774BC6 74BC717DD779B4 ] C:\Windows\System32\cmdext.dll
      21:08:52.0856 0x1cd4 C:\Windows\System32\cmdext.dll - ok
      21:08:52.0856 0x1cd4 [ 8C8591CD7FDFDD27BA2395E6EB4C6316, 160B581DC967A763C44E75B2F684B40FE17EC8E9DE2112E77B AC98DD2B88CE5D ] C:\Windows\System32\DataExchange.dll
      21:08:52.0856 0x1cd4 C:\Windows\System32\DataExchange.dll - ok
      21:08:52.0856 0x1cd4 [ 6BF82DAFC73453E2513F9BB2BB1CD948, 4876620F993AADE263FE29A7B92FE5723D02E0B02959E6F696 AC0125570AF2D4 ] C:\Windows\SysWOW64\runonce.exe
      21:08:52.0856 0x1cd4 C:\Windows\SysWOW64\runonce.exe - ok
      21:08:52.0872 0x1cd4 [ 7EF363096F4411D0EEE1270C73EA2535, 1D47B0F094C39F229768D2E396558F2CD81BF9B191090775FE 71F8DDC845574D ] C:\Windows\System32\ExplorerFrame.dll
      21:08:52.0872 0x1cd4 C:\Windows\System32\ExplorerFrame.dll - ok
      21:08:52.0872 0x1cd4 [ 642B43FAC8EDFFC524D8AA8ED75BDCBB, 57785E96D96EC3235389517CC6D7552634E3B745FDF2205639 8D8FFBE1B1BBBE ] C:\Windows\System32\igfxEM.exe
      21:08:52.0872 0x1cd4 C:\Windows\System32\igfxEM.exe - ok
      21:08:52.0872 0x1cd4 [ F4F0BF823CC5E817BA22A290AC1C7CDB, 49DA150A394497A523C95DEF73D01EE98D64C6F2A48CCA3986 866C34C0123BDB ] C:\Windows\System32\OneDriveSettingSyncProvider.dl l
      21:08:52.0872 0x1cd4 C:\Windows\System32\OneDriveSettingSyncProvider.dl l - ok
      21:08:52.0872 0x1cd4 [ 677C0795F6CF9B18D1A6977EAC937D41, 5BDC2DB5E7E1A415D626323B21FBB84F4906D2473E583CAD8F F3B14A0C2220D4 ] C:\Windows\System32\Tabbtn.dll
      21:08:52.0872 0x1cd4 C:\Windows\System32\Tabbtn.dll - ok
      21:08:52.0872 0x1cd4 [ 97EE43D92E0C24D9DA9809F838551CF9, 08A2E4B541265F676D9A93EBC1B3BC98D11EBF98195A7A144E 973C1C21AF881E ] C:\Windows\System32\igfxHK.exe
      21:08:52.0872 0x1cd4 C:\Windows\System32\igfxHK.exe - ok
      21:08:52.0872 0x1cd4 [ D6911FB5A858012045C64D40D44DFE77, 6F98B24A1B1417117279DA14A006BC5A31C5ECD5DDB251C0F7 127E33F5415E7F ] C:\Windows\SysWOW64\edputil.dll
      21:08:52.0872 0x1cd4 C:\Windows\SysWOW64\edputil.dll - ok
      21:08:52.0888 0x1cd4 [ 047038089EBA9376B3B280C50243263C, B2EBA35FB63AE5FD2B61AEAC41DC40959A33533C09529C0A43 0C57D918E8586C ] C:\Windows\System32\twinui.dll
      21:08:52.0888 0x1cd4 C:\Windows\System32\twinui.dll - ok
      21:08:52.0888 0x1cd4 [ 0FEC5F30E705EADAEA5E9144F2FB12DC, 614CA7B627533E22AA3E5C3594605DC6FE6F000B0CC2B845EC E47CA60673EC7F ] C:\Windows\SysWOW64\cmd.exe
      21:08:52.0888 0x1cd4 C:\Windows\SysWOW64\cmd.exe - ok
      21:08:52.0888 0x1cd4 [ 16F162B7F1D7A81E96202F9EF0E32539, C62632320C96667DF2B23FCDB0CC7B6BA35EBD4623899EA255 78281A10C7D38E ] C:\Windows\System32\igfxTray.exe
      21:08:52.0888 0x1cd4 C:\Windows\System32\igfxTray.exe - ok
      21:08:52.0888 0x1cd4 [ DEDDAA43D2F5F89CD318F82945B6E709, D52356DAFC11B413074FB70BBB80783B66F6085998A62D8CF5 0081ACA2CADECD ] C:\Windows\System32\TabbtnEx.dll
      21:08:52.0888 0x1cd4 C:\Windows\System32\TabbtnEx.dll - ok
      21:08:52.0888 0x1cd4 [ 2A8E2D9742B3DFBB70A8BCC856298BCD, 205BAF9B82816148B336907711CDD664B79AFFEEF2CAEB5C39 ADB6DE046CEC3C ] C:\Windows\System32\windows.immersiveshell.service provider.dll
      21:08:52.0888 0x1cd4 C:\Windows\System32\windows.immersiveshell.service provider.dll - ok
      21:08:52.0903 0x1cd4 [ CCA056FD17EDA71AEDAA33DF8F24D5DF, 5FB1B6DCB4690B19D46EF06B0EFD04123A733736BDF112D478 1B05841E142117 ] C:\Windows\System32\igfxDH.dll
      21:08:52.0903 0x1cd4 C:\Windows\System32\igfxDH.dll - ok
      21:08:52.0903 0x1cd4 [ 7FB055F86420349E8DE9BA8E9B148965, 3BF3EDA8768B46EE1D466C0C657E0ACA9752E229A8D1B6337B AD149096885AF3 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\PowerTaskbar.dll
      21:08:52.0903 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\PowerTaskbar.dll - ok
      21:08:52.0903 0x1cd4 [ 128B163162453828E5D5106F915D129E, 3737F7DB6FD04D08F9DCEAEE4DFE85985A1D5AAAC316D6FCE9 73E2287235FC0A ] C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.LenovoCorporation.LenovoS ettings_4642shxvsv8s2.exe
      21:08:52.0903 0x1cd4 C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.LenovoCorporation.LenovoS ettings_4642shxvsv8s2.exe - ok
      21:08:52.0903 0x1cd4 [ 2675DDA1E7CC3D7FAB1EF66C877B22B3, 56A56F3ABF320E304FE232CA1966E966FB46C5334A0379946B DC355AAE538D40 ] C:\Windows\System32\igfxLHM.dll
      21:08:52.0903 0x1cd4 C:\Windows\System32\igfxLHM.dll - ok
      21:08:52.0903 0x1cd4 [ D3E1C423C8E212DC96831EDC56DAECB5, 80BC0829A7F4ABF2C77DB39CE1EF6928F7528935C5B444DEC5 36A85FDE23F5DB ] C:\Program Files\Lenovo\OneKey Optimizer\bin\DuiLib.dll
      21:08:52.0903 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\DuiLib.dll - ok
      21:08:52.0919 0x1cd4 [ 6F87EA156249D2B7404CAD317C8333E4, 4BDE6991286F0B78DDB161621F37003C8066D45D79461E7D23 A6AEF00DD9BABF ] C:\Program Files\Lenovo\OneKey Optimizer\bin\Metric.dll
      21:08:52.0919 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\Metric.dll - ok
      21:08:52.0919 0x1cd4 [ 9945D52ACD8FED11F0A636F916C4FF16, 97C5A99ED38F8516133D6B95070C5998BAAE75EAEF730531D9 1B81FEE4B81D82 ] C:\Windows\System32\d3d10_1.dll
      21:08:52.0919 0x1cd4 C:\Windows\System32\d3d10_1.dll - ok
      21:08:52.0919 0x1cd4 [ 08F69604927548811BBBEBC2FE45FD4F, EAEDE91F67306B206290EC0B95102E6173A8F26716FE595C12 BF3F80932B82DF ] C:\Windows\System32\igfxDI.dll
      21:08:52.0919 0x1cd4 C:\Windows\System32\igfxDI.dll - ok
      21:08:52.0919 0x1cd4 [ 9B58700477A62104E21266C23E67CC93, 870CDEC361E90BFFE55AE973C8FC44A39B811B2DEE75CA27E7 AD70BAE2B8605C ] C:\Windows\System32\opengl32.dll
      21:08:52.0919 0x1cd4 C:\Windows\System32\opengl32.dll - ok
      21:08:52.0919 0x1cd4 [ AD41EACFB2A670E17F2C09F8AB06F428, 208B4CF05936AC21EB0337FB17B1B8F12D778A6E880435C589 202457EB0CF73E ] C:\Windows\System32\d3d10_1core.dll
      21:08:52.0919 0x1cd4 C:\Windows\System32\d3d10_1core.dll - ok
      21:08:52.0934 0x1cd4 [ D09CA6A4247D8CA8008D7CC850941C67, B54AB9442DD2CA7850A73D18D40EE2CC630CAD500D1D1B459A 553617C3CB819B ] C:\Windows\System32\ddraw.dll
      21:08:52.0934 0x1cd4 C:\Windows\System32\ddraw.dll - ok
      21:08:52.0934 0x1cd4 [ A17FDC8275EA448B3C773FDB58F279F5, 6A8EC0E48D31615C491C69F9C675024A3F2F06EDA4922F6DEE E998BF5AE4EDD6 ] C:\Windows\System32\glu32.dll
      21:08:52.0934 0x1cd4 C:\Windows\System32\glu32.dll - ok
      21:08:52.0934 0x1cd4 [ 5BD0F1BA44D2BFE87A132BC09277A737, 18E16B236E8094DB4DE3997DBAFF857DA2D539CC4CF83C4C37 AAF9FF400AAB48 ] C:\Windows\System32\dciman32.dll
      21:08:52.0934 0x1cd4 C:\Windows\System32\dciman32.dll - ok
      21:08:52.0934 0x1cd4 [ 0F8A7B2732F508BB64211B41C9BDF01F, 95A92E3D622C77AD1E9E6537737B0B07C6801CC678F66A9AE5 AD4D0AFC4FE823 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\EnergyManager.dll
      21:08:52.0934 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\EnergyManager.dll - ok
      21:08:52.0934 0x1cd4 [ A6564E2C27875EDCC193841D4BC602B1, 9C8F1D7DBECDC2F596E6A4F6BCE4DF27762D11672FA3457B25 A902D813C36EFE ] C:\Program Files\Lenovo\OneKey Optimizer\bin\Lenovo.MetricCollectionMFCx64.dll
      21:08:52.0934 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\Lenovo.MetricCollectionMFCx64.dll - ok
      21:08:52.0950 0x1cd4 [ 7196D7D9FE98EBA251D822B77113F30C, E117E5C4628EE3BB3D2E1BE7C5DF2958B13B0F12B6BD6711D5 F0F542F9385E98 ] C:\Program Files\Malwarebytes\Anti-Malware\mbae.dll
      21:08:52.0950 0x1cd4 C:\Program Files\Malwarebytes\Anti-Malware\mbae.dll - ok
      21:08:52.0950 0x1cd4 [ 4F248FF0DD410182001A9B281011F286, 02824210A78EF133750D33233306A3A0E3E1FBE3E4490EA693 3E44A9FA8C35D0 ] C:\Windows\SysWOW64\cmdext.dll
      21:08:52.0950 0x1cd4 C:\Windows\SysWOW64\cmdext.dll - ok
      21:08:52.0950 0x1cd4 [ DF3CA8D16BDED6A54977B30E66864D33, 1D1A1AE540BA132F998D60D3622F0297B6E86AE399332C3B47 462D7C0F560A36 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcr100.dll
      21:08:52.0950 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcr100.dll - ok
      21:08:52.0950 0x1cd4 [ 85ED13922DF97474AF9979CA456C6748, 4C33D4179FFF5D7AA7E046E878CD80C0146B0B134AE0092CE7 547607ABC76A49 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\mfc100u.dll
      21:08:52.0950 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\mfc100u.dll - ok
      21:08:52.0950 0x1cd4 [ 4F096D96285E06CD51AEF7D2D3DE04DA, 5BB420FBE28315F2117376052BB8488CE84A3398DDA65005B8 AE1F792017E9A8 ] C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcp100.dll
      21:08:52.0950 0x1cd4 C:\Program Files\Lenovo\OneKey Optimizer\bin\msvcp100.dll - ok
      21:08:52.0950 0x1cd4 [ 18523356FDA226F9159EB72E9168666F, 5B1FDD6E15CBA23DA330254047F8498B339B9538A755D6EC8F 8A46589131622C ] C:\Windows\System32\thumbcache.dll
      21:08:52.0950 0x1cd4 C:\Windows\System32\thumbcache.dll - ok
      21:08:52.0966 0x1cd4 [ E34B675E7CF1467567358049F2815E82, A6D8D55F25F2AAA4B314C0F7E123BB055BDAAF46D0FFBAB86D E1A0409090CBFC ] C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .Utilities.dll
      21:08:52.0966 0x1cd4 C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .Utilities.dll - ok
      21:08:52.0966 0x1cd4 [ 5CAA3BA7EAE16D621E0854F71165E376, A9C144533275C1F1A30792AEA73AC6D4B1618660BA6F0A6498 51C601B40118B6 ] C:\Windows\SysWOW64\actxprxy.dll
      21:08:52.0966 0x1cd4 C:\Windows\SysWOW64\actxprxy.dll - ok
      21:08:52.0966 0x1cd4 [ DC14AA2F55D2021D3E5A95A3B18DEF9D, 2E71BB59136F4B3BC6DC5CAD465BCDC812C1C4AE6E63DE120A A95BF239C2C59E ] C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.AppDomain.dll
      21:08:52.0966 0x1cd4 C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.AppDomain.dll - ok
      21:08:52.0966 0x1cd4 [ 46BB86ABE14516BF6F34D1D968518C8D, B0CD9FDBD2675D04357EB642CF32D060C805219D28CD6A45D7 A69062E5C96964 ] C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.Shared.dll
      21:08:52.0966 0x1cd4 C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.Shared.dll - ok
      21:08:52.0966 0x1cd4 [ 34D413D48A9F59DC6FE314DC7EE2BE60, BF1349E055D80328BA7249BC3BAE4F1E55979FFCE49D01D60B 87171BF58630CA ] C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.ImClient.dll
      21:08:52.0966 0x1cd4 C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.ImClient.dll - ok
      21:08:52.0966 0x1cd4 [ D2F163E37AFD3E3294AC0B71617AF6E6, 4D15F7CEEA9791D20B9389C10F18A93DD6267CF1DB6EB05188 5BB76355E57192 ] C:\Windows\System32\twinui.pcshell.dll
      21:08:52.0966 0x1cd4 C:\Windows\System32\twinui.pcshell.dll - ok
      21:08:52.0981 0x1cd4 [ 0F077EF48DC2EA723BC32F0E0B2C6131, 0FAA51FC995DBAFB1C70406F5D2F0E1F3B1F7CEC50FDBD2454 2CCAD36B392EF2 ] C:\Windows\System32\ApplicationFrame.dll
      21:08:52.0981 0x1cd4 C:\Windows\System32\ApplicationFrame.dll - ok
      21:08:52.0981 0x1cd4 [ 8497EC4A14D5F67FFEB453A492B25095, 4B7E81C80C404D4D347F695C78AEA09778159EC15CB201B601 7B7EC674DA1005 ] C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.UnmanagedPluginShim.dll
      21:08:52.0981 0x1cd4 C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.UnmanagedPluginShim.dll - ok
      21:08:52.0981 0x1cd4 [ C419E51E527A5787A0D923BF7C9FE4FD, 61972E24AC9EC2F55320B930E2F37DED3216FF7AF0D7F6DA8C 278D829A9792E8 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\LenovoAudioPlugin.dll
      21:08:52.0981 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\LenovoAudioPlugin.dll - ok
      21:08:52.0981 0x1cd4 [ 218E07DB323D6E814C2B7B5BF73B8A55, 931C372B3F14DF0CF171FCD6C34624669CBD8168B32BC2AB67 2CADED169146F6 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dl l
      21:08:52.0981 0x1cd4 C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Core\v4.0_4.0.0.0__b77a5c561934e089\System.Core.dl l - ok
      21:08:52.0981 0x1cd4 [ 302C6A5649494779A2CD86492E16AB73, 6BC72019D1E3E9A26955A5D9F5DE585ADC9E8AA7E65FCB09D4 F8BD71963F5EA1 ] C:\Windows\System32\ntshrui.dll
      21:08:52.0981 0x1cd4 C:\Windows\System32\ntshrui.dll - ok
      21:08:52.0997 0x1cd4 [ 6CE0953330A590462DE29CC81BEF5B2E, 19A79FC6FD94BFB91658A2908AFE18C94C2B15AFB7ACF293CA 4AAB0962F8B94D ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.ImController.PluginUt ilities.dll
      21:08:52.0997 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.ImController.PluginUt ilities.dll - ok
      21:08:52.0997 0x1cd4 [ 558802A7FD270114D45704D88E07941E, A4D05EA366062816344FD9BC713EF624746A6BFD8678CFA557 7C286AA264323B ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.ImController.ImClient .dll
      21:08:52.0997 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.ImController.ImClient .dll - ok
      21:08:52.0997 0x1cd4 [ 247CC7E7B3F28695A7893109ACB64C87, 93D3BD96F6DAE69AFBB9DF46F97306BABCDFD7B33C822A5315 165B577E5047F2 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.CoreTypes.dll
      21:08:52.0997 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.CoreTypes.dll - ok
      21:08:52.0997 0x1cd4 [ 9BEF41E48992C85B2385118D107B537F, AFC75B34F68D49364A4F7EAB99163A91E2529AE34DFDC8EC5F B6150640D7AFF1 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System\ v4.0_4.0.0.0__b77a5c561934e089\System.dll
      21:08:52.0997 0x1cd4 C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System\ v4.0_4.0.0.0__b77a5c561934e089\System.dll - ok
      21:08:52.0997 0x1cd4 [ 68CE253C68FD0A25DB4F65B03D1694FE, ED58C97C02E7F274AF8FC18C8102A3BFAB26B7F9F6B0BDFB37 C3BF152F449460 ] C:\Windows\System32\NotificationController.dll
      21:08:52.0997 0x1cd4 C:\Windows\System32\NotificationController.dll - ok
      21:08:52.0997 0x1cd4 [ 8006D1825774B0C082D1E2A673FF5893, EF1BA3EDF3BA8E67E4F689DF3BA33BFCCDA08470156D22727C 697AEF4041E643 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.M anagement.dll
      21:08:53.0013 0x1cd4 C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.M anagement.dll - ok
      21:08:53.0013 0x1cd4 [ 3E605CE3C04165B3718B1E4C1E7F5085, 2A9512468454E1D918B399B34BF4143EE1CA477225A8934A00 5AB1E1F7ADF2AB ] C:\Windows\System32\AboveLockAppHost.dll
      21:08:53.0013 0x1cd4 C:\Windows\System32\AboveLockAppHost.dll - ok
      21:08:53.0013 0x1cd4 [ 02D461EADAAC654531C3A89015F661F3, 883372DCC8ABD2980EAFA396ED5257655B7E5223327409B984 FDA61C0CC7B6E7 ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\Syste m.Configuration.dll
      21:08:53.0013 0x1cd4 C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Configuration\v4.0_4.0.0.0__b03f5f7f11d50a3a\Syste m.Configuration.dll - ok
      21:08:53.0013 0x1cd4 [ 7BD777B98B90E7E426CB286CED4CE109, B9CD70CD5289CAD8F829EDD5B64E6C3CE76A0EF0135EE85A24 6C2C8347F8D00A ] C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll
      21:08:53.0013 0x1cd4 C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System. Xml\v4.0_4.0.0.0__b77a5c561934e089\System.XML.dll - ok
      21:08:53.0013 0x1cd4 [ CADB07325FC174669CDC70D3FCAC1C9C, 3560AE4B8D9B7DF22B2C51F0999204A42722A38B44E2684A7B 0DF364A5B5E4FD ] C:\Windows\System32\NPSM.dll
      21:08:53.0013 0x1cd4 C:\Windows\System32\NPSM.dll - ok
      21:08:53.0013 0x1cd4 [ 41E86AC87896F8781458C49547277668, E7031E5B0D633262F9680DF0A78AD82CADBAA7C3E904CC6CF8 032716480632CA ] C:\Windows\System32\IconCodecService.dll
      21:08:53.0013 0x1cd4 C:\Windows\System32\IconCodecService.dll - ok
      21:08:53.0028 0x1cd4 [ 3486C018F0D0D0CB600E00A4D6124E74, 45AEEA4BAB581D3C00CF605DA62FD874149EA05C8A89BA48B6 472FBB7595AEBF ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\EventMonitor.dll
      21:08:53.0028 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\EventMonitor.dll - ok
      21:08:53.0028 0x1cd4 [ 1D636826D732CB81AF8463CAA6F7C7C4, 70573CC16D1AA0F1E439736D73F4DE45BB9CDB2FA0D2830DC1 BCE52CBACF80B3 ] C:\Windows\System32\wlidprov.dll
      21:08:53.0028 0x1cd4 C:\Windows\System32\wlidprov.dll - ok
      21:08:53.0028 0x1cd4 [ 40FCF25391C116DBA9F3BC7F5F627232, 2EF41909D04106696DEB7B65048E9461F11C8F938020BB62D2 CF4ED0D981C202 ] C:\Windows\SysWOW64\pcacli.dll
      21:08:53.0028 0x1cd4 C:\Windows\SysWOW64\pcacli.dll - ok
      21:08:53.0028 0x1cd4 [ 016105898A9007AD235F657A30F65A75, 037C9A3E0E95EAD6ACD8DB69895D3C925003790493BD6782AB 515EAA89BCA582 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.Utilities.dll
      21:08:53.0028 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.Modern.Utilities.dll - ok
      21:08:53.0028 0x1cd4 [ BB8025751525B9BE9A0F66EF59DE61E9, 8B367F1B691463DEE00759984E813A224B0C6C92AB4166E221 33CBB38DF72D2A ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.RevInterop.dll
      21:08:53.0028 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.RevInterop.dll - ok
      21:08:53.0044 0x1cd4 [ 0C9FA9D83CA27EB19BF20C152AD358D1, B98536918264E370F4CA490AB2F4F91DF125084F59F3E2D333 E8CA90819A362C ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\libmcfcore.dll
      21:08:53.0044 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\libmcfcore.dll - ok
      21:08:53.0044 0x1cd4 [ F1AA5C522EC0054B80B722C7DD31E970, 3A0FB2C9F6566B8C65FACC2D13EFF720BA878F784BA42A621D 8FD82A5DD89D53 ] C:\Users\Clint\AppData\Local\Temp{AD19D70C-085C-4CF7-A77C-44F5590113E4}{7F63EC96-6F15-444B-9F64-225931AB4EC4}.exe
      21:08:53.0044 0x1cd4 C:\Users\Clint\AppData\Local\Temp{AD19D70C-085C-4CF7-A77C-44F5590113E4}{7F63EC96-6F15-444B-9F64-225931AB4EC4}.exe - ok
      21:08:53.0044 0x1cd4 [ B77EEAEAF5F8493189B89852F3A7A712, B7C13F8519340257BA6AE3129AFCE961F137E394DDE3E4E419 71B9F912355F5E ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\vcruntime140.dll
      21:08:53.0044 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\vcruntime140.dll - ok
      21:08:53.0044 0x1cd4 [ 34D600FD93A2D809972DDF6DF95F1081, 15468B35E9C18A8FDF6CD8680555707B9833D0B36CEB418B57 DD447953F1A3D4 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\libmcfaudio.dll
      21:08:53.0044 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\libmcfaudio.dll - ok
      21:08:53.0044 0x1cd4 [ 7722CBEFB4D140D5C443CC5D03F9778A, 45C8364FE48B437BD654D9C0E77188EA7A9528BF7ED3562938 0CE074CC1070AE ] C:\Windows\System32\dsreg.dll
      21:08:53.0044 0x1cd4 C:\Windows\System32\dsreg.dll - ok
      21:08:53.0060 0x1cd4 [ 6A8D94346A834482957F41B9C2B6D22E, 67CB9755F9F44AEF4BA52F1D25A161403D8D63F79A992862A8 E4E8190BA2FF68 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\mfc140u.dll
      21:08:53.0060 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\mfc140u.dll - ok
      21:08:53.0060 0x1cd4 [ 1D8C79F293CA86E8857149FB4EFE4452, C09B126E7D4C1E6EFB3FFCDA2358252CE37383572C78E56CA9 7497A7F7C793E4 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\msvcp140.dll
      21:08:53.0060 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\msvcp140.dll - ok
      21:08:53.0060 0x1cd4 [ 8E429F5F694DCEC49ABBBDE0CB0607B3, 88DF97D7BD78B4C35783F67BE74D476BCE30587415A2D3379B 01A43908457B7A ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.dll
      21:08:53.0060 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.dll - ok
      21:08:53.0060 0x1cd4 [ 4CE9B67A187310E37E535FC4165E0933, 469B33A5DDAA93D28F66AE6D6956268F6F2F09F146734D00A9 31FBDD1D87DE42 ] C:\Windows\System32\linkinfo.dll
      21:08:53.0060 0x1cd4 C:\Windows\System32\linkinfo.dll - ok
      21:08:53.0060 0x1cd4 [ D6AF2E4995AA0A10B19FC83B2AC3129A, C26659A5ED6A9803EF6FF58C6F9B56EB727DE2F110CDEAE73E 3F4A29DC972416 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.Repo3.dll
      21:08:53.0060 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.Repo3.dll - ok
      21:08:53.0060 0x1cd4 [ AE9FEDBD2A262CE148F829448F0D9351, 9D73B89A6E9868DE6062508172E31AA6E67861C37C5DB594D5 271042677F3638 ] C:\Windows\System32\ploptin.dll
      21:08:53.0060 0x1cd4 C:\Windows\System32\ploptin.dll - ok
      21:08:53.0075 0x1cd4 [ AAA1C8ADB604C8678FDA96C634975B9E, 425DD2CB6A006E9257CD6C92D5956A390CD78E19C5E8F3EC1B C9B2DAF4640EF2 ] C:\Windows\System32\NotificationObjFactory.dll
      21:08:53.0075 0x1cd4 C:\Windows\System32\NotificationObjFactory.dll - ok
      21:08:53.0075 0x1cd4 [ 9AC6E60A15F12DB54DC65761FD9BEAA6, 099742305B45077EF886B1E887940CA56BC9E6A13E9382F0F6 7F6064E2EFA05D ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.XmlSerializers. dll
      21:08:53.0075 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.QualityStats.XmlSerializers. dll - ok
      21:08:53.0075 0x1cd4 [ 4D774826AFF1D75ECFDFA062F30CA632, 5AFDB2FDE83659A4D55FC18483F0799A756DD9F2BB5B72E6A5 5CCA696425C217 ] C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.CertificateValidation.dll
      21:08:53.0075 0x1cd4 C:\ProgramData\Lenovo\iMController\Plugins\LenovoA udioPlugin\x86\Lenovo.CertificateValidation.dll - ok
      21:08:53.0075 0x1cd4 [ 31B3ED1AF471A91B8FF47A77040C7CA7, C188DA35C0479E5A69F4222F4CB6C6CA6D003CF3D77444BCDA 8A6BCFECFDF945 ] C:\Windows\System32\LicenseManagerApi.dll
      21:08:53.0075 0x1cd4 C:\Windows\System32\LicenseManagerApi.dll - ok
      21:08:53.0075 0x1cd4 [ B44FC7D20950823EA81009B0CC9EE1D2, FC24089B89BE439DD7715DEDFB51EB8951E8BB38E3D8EED9D3 B8D4319F3CCB3B ] C:\Windows\System32\NotificationControllerPS.dll
      21:08:53.0075 0x1cd4 C:\Windows\System32\NotificationControllerPS.dll - ok
      21:08:53.0075 0x1cd4 [ 89D57E5669E70330251218F3A5697EC2, 8FCCC96716219B32FFAD0CE2F382ED16ECDE5EBD9597E21681 92A84C03268733 ] C:\Windows\System32\capauthz.dll
      21:08:53.0075 0x1cd4 C:\Windows\System32\capauthz.dll - ok
      21:08:53.0091 0x1cd4 [ 7850D58EE55539B703EA883D375D2D70, AA4F4331E0DD65926D6C2EB585306B760F02C8F9DCC6370209 15EBAD8BC6E060 ] C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2t xyewy\ShellExperienceHost.exe
      21:08:53.0091 0x1cd4 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2t xyewy\ShellExperienceHost.exe - ok
      21:08:53.0091 0x1cd4 [ EC5724765F7BD7B682569F7E42BC7A29, 6652D65EA7B6A4C759C95D865D89CB52360FB0DE1DC5666F57 6D7906FBB36EEF ] C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\buShell.dll
      21:08:53.0091 0x1cd4 C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\buShell.dll - ok
      21:08:53.0091 0x1cd4 [ C4F5EC4A15FAA53A655A8D58F3516377, C3B20CF8A1D392A90178DD4E805BE1D068D99A432B9DAF71EC 89AF1B2CE1CC27 ] C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\ccLib.dll
      21:08:53.0091 0x1cd4 C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\ccLib.dll - ok
      21:08:53.0091 0x1cd4 [ 76BE22F2853FE9A89578950503F376C1, B8B3BD44E6F9F87B41F89639AEAB3313C657B6F10175E258B0 F5F8E4AD69DCF2 ] C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\EFACli64.dll
      21:08:53.0091 0x1cd4 C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\EFACli64.dll - ok
      21:08:53.0091 0x1cd4 [ C327FF5E2D75512EA84ED502E6E0F3CB, 5B5B6BF3BF56250959B4FF94E5B5A5FB586C09EACEE3E34912 58A4FC0A2DE8EE ] C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
      21:08:53.0091 0x1cd4 C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll - ok
      21:08:53.0107 0x1cd4 [ E027A6E99EF709AFD195FD6329224C47, B31B85BF369DC36363B0E527AE3B8E95B33699D17D09C6313C 43E7373A3E6874 ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{2B095E41-BABB-46C2-9541-653CAE8E2C2A}.tmp
      21:08:53.0107 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{2B095E41-BABB-46C2-9541-653CAE8E2C2A}.tmp - ok
      21:08:53.0107 0x1cd4 [ F0202E042A12E922E226FFC98771FB4B, 54780E26F484D0513D1A4B79646BE624BB7E5815B0E24597D6 01874A60B1B1D2 ] C:\Windows\ShellExperiences\StartUI.dll
      21:08:53.0107 0x1cd4 C:\Windows\ShellExperiences\StartUI.dll - ok
      21:08:53.0107 0x1cd4 [ A6B8D5DCCDA22304BF3D2DA829A68C42, 32703557C4A260214FD6B7E1F5C34B2AE9998341348BB84BFC 8B19E2117188CD ] C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\FileSyncShell64.dll
      21:08:53.0107 0x1cd4 C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\FileSyncShell64.dll - ok
      21:08:53.0107 0x1cd4 [ AB67816718E5C65CC326BE56AC0B9E73, D6F19026CB87C9BB5521D668B13347B68F297FCE34C5F1BFE5 30574B16ADB2D5 ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{BA44EE08-655A-4849-97D6-3DF6585D69FA}.tmp
      21:08:53.0107 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{BA44EE08-655A-4849-97D6-3DF6585D69FA}.tmp - ok
      21:08:53.0122 0x1cd4 [ 255932A9211ADD55FDE9E486C72F98FE, 5346B9C22544566A2E9C6D905C16C40BFE7D1BEB5C1F843357 AF3A0F3E678285 ] C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\LoggingPlatform64.dll
      21:08:53.0122 0x1cd4 C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\LoggingPlatform64.dll - ok
      21:08:53.0122 0x1cd4 [ 9C861C079DD81762B6C54E37597B7712, AD32240BB1DE55C3F5FCAC8789F583A17057F9D14914C538C2 A7A5AD346B341C ] C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\msvcr120.dll
      21:08:53.0122 0x1cd4 C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\msvcr120.dll - ok
      21:08:53.0122 0x1cd4 [ 46060C35F697281BC5E7337AEE3722B1, 2ABF0AAB5A3C5AE9424B64E9D19D9D6D4AEBC67814D7E92E49 27B9798FEF2848 ] C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\msvcp120.dll
      21:08:53.0122 0x1cd4 C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\msvcp120.dll - ok
      21:08:53.0122 0x1cd4 [ 321FF1DF7F4CEF3FA690419110BEE55A, 41243293C9876D8B94F83B28C98F1797CD217140153DDEE631 C2EEB8E102C6A0 ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{F6341D43-3DD2-49AE-B959-F19F27597503}.tmp
      21:08:53.0122 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{F6341D43-3DD2-49AE-B959-F19F27597503}.tmp - ok
      21:08:53.0138 0x1cd4 [ 5E9BB5A6BB73978E022B39DD00277095, 25FDDE38676B5FBE29A5D315EFC7E50525E6EB8FA5D26B1307 25826065980962 ] C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\ClientTelemetry.dll
      21:08:53.0138 0x1cd4 C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\amd64\ClientTelemetry.dll - ok
      21:08:53.0138 0x1cd4 [ 33C14D6C0311835E695482C4597E688B, AFE3DA28018DA98BA0364C80C2826753C340A8F2963AB7C84D 17D17CF62B1EA0 ] C:\Windows\ShellExperiences\Windows.UI.Shell.Share dUtilities.dll
      21:08:53.0138 0x1cd4 C:\Windows\ShellExperiences\Windows.UI.Shell.Share dUtilities.dll - ok
      21:08:53.0138 0x1cd4 [ 14A20F4E4725974A5481594DB8A9E122, BDE10FA33734CC952C8C9560F4E16E389F554BC0273A44ABB5 B5D828D079229A ] C:\Windows\ShellExperiences\QuickActions.dll
      21:08:53.0138 0x1cd4 C:\Windows\ShellExperiences\QuickActions.dll - ok
      21:08:53.0138 0x1cd4 [ DC6DB08D85337C9675F94B01043279AE, B09E491113F9E95F4EE00BB51BB21D4967BAC333C0DCD030A1 0AEA9B9E52032B ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{A9144511-2C37-40B0-B9E9-0D61CFE16247}.tmp
      21:08:53.0138 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{A9144511-2C37-40B0-B9E9-0D61CFE16247}.tmp - ok
      21:08:53.0153 0x1cd4 [ 348F5766CB2C46D2F55B9F951BA0BA40, 02D8E89FEB1E94E2D637CFD8B897D61B0AD66591B98EADD5D5 3DE2F919D995D5 ] C:\Windows\ShellExperiences\Windows.UI.ActionCente r.dll
      21:08:53.0153 0x1cd4 C:\Windows\ShellExperiences\Windows.UI.ActionCente r.dll - ok
      21:08:53.0153 0x1cd4 [ 212A0DDABB44944845ACD59DD88CE0EB, 98A31FEE8B8DBEC92D02342D062A4019B8EA0E38676A2B6F2B 9F1B48871C4D0B ] C:\Windows\System32\QuickActionsDataModel.dll
      21:08:53.0153 0x1cd4 C:\Windows\System32\QuickActionsDataModel.dll - ok
      21:08:53.0153 0x1cd4 [ 95BDFFB50946C148494BC5B8732DFBFF, 0993324FA51C3E807DD712854388BFD395A50AE6BA940B6618 AB06144E2C15CD ] C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL
      21:08:53.0153 0x1cd4 C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL - ok
      21:08:53.0153 0x1cd4 [ A46C9F2E70128121413E5EDDEB831012, 9ADF4EB4856F2917CAD17B2B1CB15044AADCB6FD9DDF8F633F FD0E68DA36FD5A ] C:\Windows\System32\SearchIndexer.exe
      21:08:53.0153 0x1cd4 C:\Windows\System32\SearchIndexer.exe - ok
      21:08:53.0153 0x1cd4 [ C74D46C1F542F5FEB9B7E1A8EC04986D, FA83733A81BA8D96EDFD15C1914D5A6056D73C61540C8747E9 AE1343DA47A63D ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{6A9B58AD-249E-4AE9-B3D9-A2C28E3374E7}.tmp
      21:08:53.0153 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{6A9B58AD-249E-4AE9-B3D9-A2C28E3374E7}.tmp - ok
      21:08:53.0169 0x1cd4 [ 517ECD823EB9A03368294C6C33A695D0, 7BA4EF2C5E9D15A4EE8ACC169CA233010DF8D1BC7088665E06 C9E71BBA0CD40C ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{814BA6E4-9812-4A21-AD61-376FFC9EC179}.tmp
      21:08:53.0169 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{814BA6E4-9812-4A21-AD61-376FFC9EC179}.tmp - ok
      21:08:53.0169 0x1cd4 [ C30FB61C85D12E1F7DDEFEA141F79DB4, E0C2570421B17BB9A07904B3EA0F0235A127764E32C4CF226C 1CBD5AC1EE1F67 ] C:\Windows\System32\Windows.UI.Core.TextInput.dll
      21:08:53.0169 0x1cd4 C:\Windows\System32\Windows.UI.Core.TextInput.dll - ok
      21:08:53.0169 0x1cd4 [ 419CBC91B0847E3D1457AA5AF6847B8C, 60F0BFE9DAFCD8E678864337E0563A9AD359EF66169890F2F0 AF76EAFA9E113E ] C:\Windows\System32\vcruntime140.dll
      21:08:53.0169 0x1cd4 C:\Windows\System32\vcruntime140.dll - ok
      21:08:53.0169 0x1cd4 [ C754FA2EB5BADC2C841133B30DD004E3, EB51CE24CA7651B66BE304308D96F12CD21A967DDCFB4F258E A32762A0FEF8D1 ] C:\Windows\System32\msvcp140.dll
      21:08:53.0169 0x1cd4 C:\Windows\System32\msvcp140.dll - ok
      21:08:53.0169 0x1cd4 [ 20BAF045364936EA4599E2C87F4EC239, 64EEED1485D979F43E3EB6A90CE22888532A7849F354566767 ED7F7F61C2221B ] C:\Windows\System32\Windows.Internal.Shell.Broker. dll
      21:08:53.0169 0x1cd4 C:\Windows\System32\Windows.Internal.Shell.Broker. dll - ok
      21:08:53.0185 0x1cd4 [ 3428F170E1953B4C4EA10A5F58B55908, B554E04021472C3C2BBDED2B4BBB4F6648932356F8DA409A2A 7F6AC02E54B306 ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{DC7AE5AF-527F-465E-8A6B-C687BA8CAE5D}.tmp
      21:08:53.0185 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{DC7AE5AF-527F-465E-8A6B-C687BA8CAE5D}.tmp - ok
      21:08:53.0185 0x1cd4 [ 96D681B7DE0BA6BFA1DC55915003CD05, 26CDA6A9A67F20A494F0EF3577D14F5DDA1F0D4428891DBD27 1A757833285939 ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{A6A10093-007D-4B0E-B131-89750CD10960}.tmp
      21:08:53.0185 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{A6A10093-007D-4B0E-B131-89750CD10960}.tmp - ok
      21:08:53.0185 0x1cd4 [ 85D8D497E3CFCD66607DAD332378DE8B, FEB2FF9315B41A7D13C9F3EB4CFDD612C951CA02330BC5A912 9881E148769C7F ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{4FE88112-BDD9-4920-9310-23CA5E59CD77}.tmp
      21:08:53.0185 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{4FE88112-BDD9-4920-9310-23CA5E59CD77}.tmp - ok
      21:08:53.0185 0x1cd4 [ C6E7C0577523905FF4FF3B0D5A036A3B, 1A30518CE61100331CAD5944AD2892227C275615F89B7286C7 CA0D2C719D9D49 ] C:\Windows\System32\ntoskrnl.exe
      21:08:53.0185 0x1cd4 C:\Windows\System32\ntoskrnl.exe - ok
      21:08:53.0185 0x1cd4 [ CD0DAF878147B723108C428370FF0355, A5C3D8A516FD0A15DAAB442DA424E996112C355239B985413E AA4DC1FAB76303 ] C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{64226A1F-4EAE-49D0-B7E7-6207087D2FB5}.tmp
      21:08:53.0185 0x1cd4 C:\Users\Clint\AppData\Local\Temp{43F978E0-0F71-4F48-B073-CE2FAA4D4B21}{64226A1F-4EAE-49D0-B7E7-6207087D2FB5}.tmp - ok
      21:08:53.0185 0x1cd4 [ DFC4E0CDF4A48B010756F0F5401268A3, 71E4C9367B19F5FCD8CC4A4B2377A5CBC1F93C2612D379ACA9 9AC245A3A5ECC1 ] C:\Windows\System32\Windows.Graphics.dll
      21:08:53.0185 0x1cd4 C:\Windows\System32\Windows.Graphics.dll - ok
      21:08:53.0200 0x1cd4 [ C184C1C538711965D3AA82321CC9965D, 3802DE1971B7EA0D67F75B22B9AD7940158F366CAFBE54A734 F98AD663F852E1 ] C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
      21:08:53.0200 0x1cd4 C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll - ok
      21:08:53.0200 0x1cd4 [ 53C13A9C4E0195B9292A4D10346EACFB, 4C76788A38743EDBD387EF336D2A6EC5FD5CDEB5DDEBD2088A 4F6BEA43CAE96A ] C:\Windows\System32\Windows.Globalization.Fontgrou ps.dll
      21:08:53.0200 0x1cd4 C:\Windows\System32\Windows.Globalization.Fontgrou ps.dll - ok
      21:08:53.0200 0x1cd4 [ BDF21A72601B49D75472A068923B290E, 78B7FCC82A6BC51BCEBB6D4BD59F902B8DBC5999AA3E0CA3DE 29684FDDC3BAAC ] C:\Windows\System32\fontgroupsoverride.dll
      21:08:53.0200 0x1cd4 C:\Windows\System32\fontgroupsoverride.dll - ok
      21:08:53.0200 0x1cd4 [ 613FF7815E475EEB84F898A9FB1F658E, F41FF2B238527DE4CC45F84EBA7CE6630873AC3B830B4EA3CB 7CA72F18860FA8 ] C:\Windows\System32\Windows.Storage.ApplicationDat a.dll
      21:08:53.0200 0x1cd4 C:\Windows\System32\Windows.Storage.ApplicationDat a.dll - ok
      21:08:53.0200 0x1cd4 [ 3093AFB5E09F1722AF2EC7EE908EA27C, 3169B4C18235F7849BEF9950D8DCDAB4399CA2DDC4883136C6 FB3EF375BE8225 ] C:\Windows\System32\EhStorShell.dll
      21:08:53.0200 0x1cd4 C:\Windows\System32\EhStorShell.dll - ok
      21:08:53.0216 0x1cd4 [ 8B3765D5135A105F4AD1B2582717B493, 6F0F9BF748660D218D21183A0B25D93BF5B659EF88B4F47E00 9480B3A244661F ] C:\Windows\SysWOW64\riched20.dll
      21:08:53.0216 0x1cd4 C:\Windows\SysWOW64\riched20.dll - ok
      21:08:53.0216 0x1cd4 [ 267D8909F09C0602EDBBB05CB83DA7DE, 811B09777E0F711CBB6D8F2F1D7809EC2E3CBBD6F028B67ED0 3D0F15CF60DB3D ] C:\Windows\System32\mssrch.dll
      21:08:53.0216 0x1cd4 C:\Windows\System32\mssrch.dll - ok
      21:08:53.0216 0x1cd4 [ 207052CB01E914B291AC5A212F87FEFF, 2CB5BE0B7FFF5216AA855358398C61788A6D647CBC2D34E50A 1EB254A3CF31BC ] C:\Windows\System32\tquery.dll
      21:08:53.0216 0x1cd4 C:\Windows\System32\tquery.dll - ok
      21:08:53.0216 0x1cd4 [ 1F5D8A8444319A9E8A1B20DDE8771B86, 8B465EFAB12E09482FF1468CB61C7E9205870483A585D85B0C ED2FE8E7C90A2B ] C:\Windows\SysWOW64\usp10.dll
      21:08:53.0216 0x1cd4 C:\Windows\SysWOW64\usp10.dll - ok
      21:08:53.0216 0x1cd4 [ B2911DEDDF06CA1AB66C810EB98AA503, B8FAC47D96B3577104AA20C84E532024E4B8D7A7B222E715E7 FBC368151E34D3 ] C:\Windows\SysWOW64\msls31.dll
      21:08:53.0216 0x1cd4 C:\Windows\SysWOW64\msls31.dll - ok
      21:08:53.0216 0x1cd4 [ 422A1357C7793C1EBABDAD7C4DC68083, F58FA4406A1972BE9F430D48C1470B57BFD749F7ABE4DB421B A7C4DC05EB6E99 ] C:\Windows\System32\msidle.dll
      21:08:53.0216 0x1cd4 C:\Windows\System32\msidle.dll - ok
      21:08:53.0232 0x1cd4 [ D6385441483A1797D5A44DBF0976C3D4, C7182BCB273EFF7CE09DBECABA1EB368B20ECC043B2E442845 AA2FA5EB95AD0B ] C:\Windows\System32\mssprxy.dll
      21:08:53.0232 0x1cd4 C:\Windows\System32\mssprxy.dll - ok
      21:08:53.0232 0x1cd4 [ F050C5ED0C243759023D91F25C2DA94C, B7318FF43228966459600BCBAEFF06920121C8B75625236B6D 94467CE546B9DB ] C:\Windows\SysWOW64\ExplorerFrame.dll
      21:08:53.0232 0x1cd4 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
      21:08:53.0232 0x1cd4 [ 07F67AE86A9988B6209B7D628C617757, 297B334148F92ACC0F38536290CEB335655004F73D92C63FBF CD2B81901F9C30 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\SearchUI.exe
      21:08:53.0232 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\SearchUI.exe - ok
      21:08:53.0232 0x1cd4 [ 27647E0A2F8EF22AAF5B145CDA8C8F1E, 7ADCB8016B9ED232CF4DC4935F8E5F88443FCBC1B5F2C301EB 4326C344859B14 ] C:\Program Files\Common Files\microsoft shared\ink\IpsPlugin.dll
      21:08:53.0232 0x1cd4 C:\Program Files\Common Files\microsoft shared\ink\IpsPlugin.dll - ok
      21:08:53.0232 0x1cd4 [ F4133CC0DA6212D9BA4E1CB2323F1310, 4BE927108F52C6D510E31452479FB8C9FB50AD423FC25D98C1 212AF071E8661E ] C:\Windows\System32\RTMediaFrame.dll
      21:08:53.0232 0x1cd4 C:\Windows\System32\RTMediaFrame.dll - ok
      21:08:53.0247 0x1cd4 [ 2F495415E9E3386C82B3A2459D93ABD0, 123CCC627FC9719FB0F9D4CDAAADF306D4A27CB13F32708385 A8970BCD78AF2D ] C:\Windows\System32\gameux.dll
      21:08:53.0247 0x1cd4 C:\Windows\System32\gameux.dll - ok
      21:08:53.0247 0x1cd4 [ 4ADF6E0E86FA5327D6DBF066F8036874, 5CAA7B483676A9109B129DD44B27A748FAAA196AC84CCC762D CD40E4E96946B1 ] C:\Windows\System32\GlobCollationHost.dll
      21:08:53.0247 0x1cd4 C:\Windows\System32\GlobCollationHost.dll - ok
      21:08:53.0247 0x1cd4 [ 46A8FC354310415417F31CCE808A4E24, 5A7AE945F21720E370AF542325E91F075D4C9DAE4E1CFCF23B 390F0AFFFA25D8 ] C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\ccVrTrst.dll
      21:08:53.0247 0x1cd4 C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\ccVrTrst.dll - ok
      21:08:53.0247 0x1cd4 [ 0D89431BC1287A1F0EFEC37432014CD2, D79398C29F69F70F22FDBE9FB0DF2FDD71AE3569C6A266227E BFBDA0288A4C3C ] C:\Windows\System32\keepaliveprovider.dll
      21:08:53.0247 0x1cd4 C:\Windows\System32\keepaliveprovider.dll - ok
      21:08:53.0247 0x1cd4 [ 0243E66C562B7FBE9697A36141D177BB, F72F004C5E908D11C0BFFD15BB8F7AC886F4D3998A7827F10A 5B8A3C5B980D00 ] C:\Windows\System32\UIAutomationCore.dll
      21:08:53.0247 0x1cd4 C:\Windows\System32\UIAutomationCore.dll - ok
      21:08:53.0247 0x1cd4 [ 2D2C31F58131331D148AC08B3288BE42, 2C9A5F97D7AF49B483AEFEBE24E37339BFF0C50BDE0DED0B3F 15C8D15CDA18A2 ] C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\ccSet.dll
      21:08:53.0247 0x1cd4 C:\Program Files (x86)\Norton Security\Engine64\22.8.1.14\ccSet.dll - ok
      21:08:53.0263 0x1cd4 [ 0CCB022422D229544FA8C8FDCAA84A84, B2C2808AFFA02714990FFA3F6340332D02A92DBF2EB3816750 1479322C9108B1 ] C:\Program Files\NVIDIA Corporation\Display\nvsmartmax64.dll
      21:08:53.0263 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvsmartmax64.dll - ok
      21:08:53.0263 0x1cd4 [ C7645D43451C6D94D87F4D07BDE59C89, 495BBA47FC43EE23054FCD419F2F00457162D1C04296900C6A EA551102A810F3 ] C:\Windows\System32\rundll32.exe
      21:08:53.0263 0x1cd4 C:\Windows\System32\rundll32.exe - ok
      21:08:53.0263 0x1cd4 [ 41857283F9DA841CC3B77E1FB6BFF7A4, FD31DD3AB0DD87900097C609B79A70A94317C9E31510D56AB8 310825B16F373D ] C:\Windows\System32\WindowsCodecsExt.dll
      21:08:53.0263 0x1cd4 C:\Windows\System32\WindowsCodecsExt.dll - ok
      21:08:53.0263 0x1cd4 [ E521279565D0491694DFEAB3787BCD4E, EBFD6D845BA2550E994EF4A7EF9CB3E58AD3AA1C2D082F0A8F 27D7EE5BD59C05 ] C:\Windows\System32\msiltcfg.dll
      21:08:53.0263 0x1cd4 C:\Windows\System32\msiltcfg.dll - ok
      21:08:53.0263 0x1cd4 [ 31D97F00421C27354B7A38010DF2B7E1, 3FA547B27758CC5B27857A00240EDFBF738E9E8FB092CDA337 295C2FE09122FC ] C:\Windows\System32\PersonaX.dll
      21:08:53.0263 0x1cd4 C:\Windows\System32\PersonaX.dll - ok
      21:08:53.0278 0x1cd4 [ 26AB90DDC72EF878313AE3A597B27580, 7A579A810881999E6A93BC4F288E1DEC70520FBE975F7FEC12 34B404277B1F04 ] C:\Windows\System32\dxtrans.dll
      21:08:53.0278 0x1cd4 C:\Windows\System32\dxtrans.dll - ok
      21:08:53.0278 0x1cd4 [ 53810102D7AAD1E614D81FFF0F97F7E6, A847164D1DFB3C388672566C12F96EF1397DB48A293CDBDD69 7D5FE8B102E511 ] C:\Windows\System32\imgutil.dll
      21:08:53.0278 0x1cd4 C:\Windows\System32\imgutil.dll - ok
      21:08:53.0278 0x1cd4 [ E62B7766BE2ABD05F9C77162D448E3F7, DC7D3271038E48DAA9ECA3B20200BCE30F5702E7F3594EA7DD 16E073DB376CD0 ] C:\Windows\System32\ddrawex.dll
      21:08:53.0278 0x1cd4 C:\Windows\System32\ddrawex.dll - ok
      21:08:53.0278 0x1cd4 [ E9FCA04DBF31BB6BA00A033E06D90B2C, AE2511AE9F227C00C62653DB320818A9965C9115F4915441BF 02B87C201DD837 ] C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
      21:08:53.0278 0x1cd4 C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - ok
      21:08:53.0278 0x1cd4 [ 3DCD0E30C437F06FDABD1AD3A7969B60, 1770F199DC19588874A330D4B5B6C799134207C74134838562 FC5EDE11E8AD77 ] C:\Windows\System32\pngfilt.dll
      21:08:53.0278 0x1cd4 C:\Windows\System32\pngfilt.dll - ok
      21:08:53.0294 0x1cd4 [ FDB2D414D895B2C32B2423E047A80C46, 8D471F58E5D58D3AF5554E040C57D0CDC46236E5268EE2096F A90B6316325E6C ] C:\Windows\System32\SearchProtocolHost.exe
      21:08:53.0294 0x1cd4 C:\Windows\System32\SearchProtocolHost.exe - ok
      21:08:53.0294 0x1cd4 [ 981159C5094E4C2AD4DADCEDF3E8F532, 74D9ED4077AFA96E95CD69722534FB63094DA16D1DB0A56C2D D1BC6C84B1A0F1 ] C:\Windows\System32\ieframe.dll
      21:08:53.0294 0x1cd4 C:\Windows\System32\ieframe.dll - ok
      21:08:53.0294 0x1cd4 [ 82A346A0502B909C9D981730F9E37EE3, 2C623015CD7210DE2B05C034BBD6D7CA021379EC87DF139696 2D7726EA7E5362 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\CortanaApi.dll
      21:08:53.0294 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\CortanaApi.dll - ok
      21:08:53.0294 0x1cd4 [ FD570747DA6093A0865317EB1A9A4C47, E7117AD5AFAADB671785E19F605A48275F373B3D3A06C172A5 178443E2FA206A ] C:\Windows\System32\SearchFilterHost.exe
      21:08:53.0294 0x1cd4 C:\Windows\System32\SearchFilterHost.exe - ok
      21:08:53.0294 0x1cd4 [ 10FA2C840C72B525F80112A992473896, 937421110853562C7F09BC3E5D740DCD36F00EDD20AEEFE2B8 1C42869FF24DEA ] C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPlugin.dll
      21:08:53.0294 0x1cd4 C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPlugin.dll - ok
      21:08:53.0294 0x1cd4 [ BC8EEB3FABA5E4D2A060C78F55A166CF, 1379D7CDA9090D6C76A26B8417F10B4460F77A4243BFF8E0FA 242570BECB233A ] C:\Program Files\NVIDIA Corporation\Update Core\NvBackendAPI64.dll
      21:08:53.0294 0x1cd4 C:\Program Files\NVIDIA Corporation\Update Core\NvBackendAPI64.dll - ok
      21:08:53.0310 0x1cd4 [ A254C4521D9D8085DD5D442E6E4D2454, D80B1079CB9EF6B9FA953620BF593380962B4BF42EA0E14056 0A101883BC4F3B ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\BingConfigurationClient.dll
      21:08:53.0310 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\BingConfigurationClient.dll - ok
      21:08:53.0310 0x1cd4 [ 54418A254E738E27DDBCC1F18EBD6D57, 45A660FB899A69A2C1F6D968CFFC5789F8A15DCE0FCFE19E72 C55582988DBF14 ] C:\Windows\System32\Windows.Cortana.PAL.Desktop.dl l
      21:08:53.0310 0x1cd4 C:\Windows\System32\Windows.Cortana.PAL.Desktop.dl l - ok
      21:08:53.0310 0x1cd4 [ 1ADD74A4A2F03CCAD37C4A0C31143C7F, 71BD488674AE5BE7B6D02E38246FB9D7548D3A1EE2FC3D43D1 5FA4DBDDD465EC ] C:\Windows\System32\mssph.dll
      21:08:53.0310 0x1cd4 C:\Windows\System32\mssph.dll - ok
      21:08:53.0310 0x1cd4 [ 1BBF3525D59C1F63210AA849EFE750EE, 470D88FD2BD25B4494943E20073A3FA0E9D2FA76BE6D3B8CCB 53B09E916DEA75 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Core.dll
      21:08:53.0310 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Core.dll - ok
      21:08:53.0310 0x1cd4 [ C1ADE6C578AFD608EBC63BEB0F85ABD7, 7195914FD6FF035601607636E8EEFC58074852FD9983DB4A7E 9DFEAEFA3D8382 ] C:\Windows\System32\Clipc.dll
      21:08:53.0310 0x1cd4 C:\Windows\System32\Clipc.dll - ok
      21:08:53.0325 0x1cd4 [ 2E168CE52B58A5EDC5A4C485E9D5316B, FF4691437C335AD22E64843F967F040C102DE26A0C0D5AB49A D83BD87A140B58 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\ActionMgr.dll
      21:08:53.0325 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\ActionMgr.dll - ok
      21:08:53.0325 0x1cd4 [ F9EAA25A78703BACBF9C4BA81C66BF34, 97768ECE5F77BA5FD776E44C60D3456D80FE39098E8CA2F551 F2ED576D3FB840 ] C:\Windows\System32\Speech_OneCore\Common\sapi_one core.dll
      21:08:53.0325 0x1cd4 C:\Windows\System32\Speech_OneCore\Common\sapi_one core.dll - ok
      21:08:53.0325 0x1cd4 [ EB4E627728791D494F1F0533ABBEC6CD, CB569E261122331DB4F3FFE115EBE88FFB074021B4CE6C8B3B DA0347D0CD280C ] C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPluginr.dll
      21:08:53.0325 0x1cd4 C:\Program Files\NVIDIA Corporation\Update Core\NvGFTrayPluginr.dll - ok
      21:08:53.0325 0x1cd4 [ 776177A9DDB08D8250C111300F8B41A9, D89D42E7C12DC07A025899FDA451285464B2A15DE6D3B5F57C 0BE8518DCA517D ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\CSGSuggestLib.dll
      21:08:53.0325 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\CSGSuggestLib.dll - ok
      21:08:53.0325 0x1cd4 [ 2D9A7D159104BBE845D4C5D695D1E3F6, 8DA8D556B668559CECEBAF07E3A33AF97C73CBEFC5A5675814 95653D65C54431 ] C:\Windows\System32\ELSCore.dll
      21:08:53.0325 0x1cd4 C:\Windows\System32\ELSCore.dll - ok
      21:08:53.0341 0x1cd4 [ EEA3369040E3204849F42CCF72882F17, 3A6F5B304AAB63FE20CE970C7B4EBCB65804CC7D7CA91446EC 0ACA870303D68F ] C:\Windows\System32\elsTrans.dll
      21:08:53.0341 0x1cd4 C:\Windows\System32\elsTrans.dll - ok
      21:08:53.0341 0x1cd4 [ A0356DC83D0B5C020151ACD9C3017392, 5D91400D3630070A76C82BB623318C306C3F07000D53909D41 8737E855447887 ] C:\Windows\System32\Windows.Web.Http.dll
      21:08:53.0341 0x1cd4 C:\Windows\System32\Windows.Web.Http.dll - ok
      21:08:53.0341 0x1cd4 [ E74143CBE0A2E3D58FE2D9E050724D46, B7FE55F7E667F8BE733ACF2907382E68E1BA09C8A3EAA1FB47 9ED511C8BD396E ] C:\Windows\System32\Windows.Cortana.Desktop.dll
      21:08:53.0341 0x1cd4 C:\Windows\System32\Windows.Cortana.Desktop.dll - ok
      21:08:53.0341 0x1cd4 [ 7806FE9D293F066147ED111F7945D18A, 2C05FEC5EDDFE93E4DE67FA816B5D52273F78F71FCFA53C39C AE2B9B925CA25F ] C:\Windows\System32\Windows.Cortana.ProxyStub.dll
      21:08:53.0341 0x1cd4 C:\Windows\System32\Windows.Cortana.ProxyStub.dll - ok
      21:08:53.0341 0x1cd4 [ 8CDB0A79FB42680D5AD3AAFC84BFC2A8, 7545C292D4CA51C6444BA57A868D8918861A1FE3B7B08CFF3D 4891A8C9B9D81E ] C:\Windows\System32\elslad.dll
      21:08:53.0341 0x1cd4 C:\Windows\System32\elslad.dll - ok
      21:08:53.0341 0x1cd4 [ AC2E83CF24E2DF8ECB60CADF976BD537, DDF5F6BBFEEA0240A5549EF83A0F7335320CA27BFBBEB3DB0C 133D2A8B54F317 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.BackgroundTask.dll
      21:08:53.0341 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.BackgroundTask.dll - ok
      21:08:53.0357 0x1cd4 [ B782165C241E3A47D33A93F0E7D77CF6, 2058F96A0C99681052B1A30300F5B1049762597F7904C29868 426F7279112220 ] C:\Windows\System32\SettingSyncPolicy.dll
      21:08:53.0357 0x1cd4 C:\Windows\System32\SettingSyncPolicy.dll - ok
      21:08:53.0357 0x1cd4 [ 8442B1D8DE8DDE1E797B5D7F47D101FB, 99A58140F363CE64A36BCA180B102EA6E87A38A6E09BA118DC 7F2B5CDC28A47F ] C:\Windows\System32\Windows.ApplicationModel.Backg round.TimeBroker.dll
      21:08:53.0357 0x1cd4 C:\Windows\System32\Windows.ApplicationModel.Backg round.TimeBroker.dll - ok
      21:08:53.0357 0x1cd4 [ 8C02F264C60183EEFCE1ED27FDF006DC, 1322450D46F2E6E8852A5D488B8C292BB2AC29895CC5D58696 A5482DCD10914A ] C:\Windows\System32\stobject.dll
      21:08:53.0357 0x1cd4 C:\Windows\System32\stobject.dll - ok
      21:08:53.0357 0x1cd4 [ 30A4C80008169E0CE2BA1436C9AC5FE5, F6A2C214533EBDF82B234BB9687CE6894386D335CCAD12CD27 412D3F187F8E2D ] C:\Windows\System32\Windows.ApplicationModel.Backg round.SystemEventsBroker.dll
      21:08:53.0357 0x1cd4 C:\Windows\System32\Windows.ApplicationModel.Backg round.SystemEventsBroker.dll - ok
      21:08:53.0357 0x1cd4 [ AA5590FA715497955E0F9EC42241D827, 5576CEBE06E060D87B7F6D6D3397D1264C29EE851A77B948D2 4AC3D2737C0D64 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\RemindersUI.dll
      21:08:53.0357 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\RemindersUI.dll - ok
      21:08:53.0372 0x1cd4 [ 32F359D2120A8C670FE650994A9FF419, 089692B269F80A1591ECD5352DDA805009A60FB038BDAF00E1 C4039C5D288DD2 ] C:\Windows\System32\Windows.UI.Shell.dll
      21:08:53.0372 0x1cd4 C:\Windows\System32\Windows.UI.Shell.dll - ok
      21:08:53.0372 0x1cd4 [ BE79D861C135496E60A2E90EE33CD80C, BC730781C1EE6C9291FA7555E6A18598921A34D18205DF9573 CD5BDBBE096443 ] C:\Windows\System32\prnfldr.dll
      21:08:53.0372 0x1cd4 C:\Windows\System32\prnfldr.dll - ok
      21:08:53.0372 0x1cd4 [ CF7D6BF07E014BC6466BC1349153D3F0, 4BB291A2026B233D67672F2469B202F01886E2CE64F926DA66 3E6B14995F4043 ] C:\Windows\System32\wifitask.exe
      21:08:53.0372 0x1cd4 C:\Windows\System32\wifitask.exe - ok
      21:08:53.0372 0x1cd4 [ 39D428A31DA525F730D3262ADCA41CCE, 5FDA47307525139B1C800CA6D930E45397C95B0C17E77159A0 B742B7EAE2F5EC ] C:\Windows\System32\edgehtml.dll
      21:08:53.0372 0x1cd4 C:\Windows\System32\edgehtml.dll - ok
      21:08:53.0372 0x1cd4 [ 1ABFD8DB4D61210B5A64E2A43E8F670D, F3BA4EEEFD775A13F49B766D569FFFC8676E3FD2FA797583F6 DD13A933EBE852 ] C:\Windows\System32\winjson.dll
      21:08:53.0372 0x1cd4 C:\Windows\System32\winjson.dll - ok
      21:08:53.0372 0x1cd4 [ 479C1AAF21116A3DB7FFB20573C380BF, 68E66FD4A8DD13CCF1F8BF2E5886D6F1189C59DED390FE2E62 AB672A00652D36 ] C:\Windows\System32\atlthunk.dll
      21:08:53.0372 0x1cd4 C:\Windows\System32\atlthunk.dll - ok
      21:08:53.0388 0x1cd4 [ 708099C902AD52476D40AB6F5A697015, 97C14A0F98021D404384EFB17849699C3FE61F38A7829E4F64 A051DC88C107E7 ] C:\Windows\System32\ActionCenter.dll
      21:08:53.0388 0x1cd4 C:\Windows\System32\ActionCenter.dll - ok
      21:08:53.0388 0x1cd4 [ 997050BEA4A90A3DBF69C7393BD54C08, D34CB68F88AA5B63255C0411D35A44B614DA2E0A8461E8B2E6 CE58FC3CE74AD1 ] C:\Windows\System32\Chakra.dll
      21:08:53.0388 0x1cd4 C:\Windows\System32\Chakra.dll - ok
      21:08:53.0388 0x1cd4 [ 6B92EB68AD051913C711ABEF41E2809D, F99F91E78C8EAA0FD8A3D3791E971789C697CD9D2B36306660 B91CF891AFC4CA ] C:\Windows\System32\Windows.Storage.Search.dll
      21:08:53.0388 0x1cd4 C:\Windows\System32\Windows.Storage.Search.dll - ok
      21:08:53.0388 0x1cd4 [ 2A6E151B3990AD8B51C41F9315F1AEBE, 93CEAD36354D0BC44FED239FE000128599588CB3304417C122 5C152C99C353E2 ] C:\Windows\System32\DXP.dll
      21:08:53.0388 0x1cd4 C:\Windows\System32\DXP.dll - ok
      21:08:53.0388 0x1cd4 [ 2A2E51FBF9FE4E422E5A95FF141267B5, B5219F443697F0189F150571C271B5BE23CBFD9EC5ADBF2367 65EBF3D2527EF2 ] C:\Windows\System32\shdocvw.dll
      21:08:53.0388 0x1cd4 C:\Windows\System32\shdocvw.dll - ok
      21:08:53.0403 0x1cd4 [ 8150F0265AF2215D34E5099118B8B406, 86F024EFFD19C64ADA5DB02ED715D2768BF4B1262F4553081B CE2D248DA6B6D5 ] C:\Windows\System32\authui.dll
      21:08:53.0403 0x1cd4 C:\Windows\System32\authui.dll - ok
      21:08:53.0403 0x1cd4 [ 11B228B28926A6E9DC86FCF52E08BE68, E2B04540D7132EF846FD35D4CEF2AE236870D5B16C2F917D75 A2C3CC4F132B4C ] C:\Windows\System32\srpapi.dll
      21:08:53.0403 0x1cd4 C:\Windows\System32\srpapi.dll - ok
      21:08:53.0403 0x1cd4 [ BAAE2C3547EB0A28AAD2C1237732BAE1, 314348DB567C72EE00B14C8094818AA3278037DB0490487509 FB38B0E2222509 ] C:\Windows\System32\msimtf.dll
      21:08:53.0403 0x1cd4 C:\Windows\System32\msimtf.dll - ok
      21:08:53.0403 0x1cd4 [ 0C47863A9F26013744AD7AE7E203CB06, C0575DBE635FBB9A6C5F9F2A5C2ECDDB70B7805C17A631AC60 19C40525C6164D ] C:\Windows\System32\Syncreg.dll
      21:08:53.0403 0x1cd4 C:\Windows\System32\Syncreg.dll - ok
      21:08:53.0403 0x1cd4 [ 6DC285761193CDDA2CC55E7BFEA0F5D0, 6B62D76D059CC34DF2D346AE9064907C34683A079CF7A58DCC A3373B51F4ACD0 ] C:\Windows\System32\pnidui.dll
      21:08:53.0403 0x1cd4 C:\Windows\System32\pnidui.dll - ok
      21:08:53.0419 0x1cd4 [ 79CF63D48F0B526883CE679B83DEDC3A, AD010B302101C227FDEF42EB2D3CBAF8583A4728954A372C17 C4C1F3B1F60140 ] C:\Windows\System32\WPDShServiceObj.dll
      21:08:53.0419 0x1cd4 C:\Windows\System32\WPDShServiceObj.dll - ok
      21:08:53.0419 0x1cd4 [ CFC9F56A6E4862242689DD01B643482C, 3503D3B10E8D4529DEF7CCFCB63E522ECE8E448E3F8BAB9B04 6C484921142514 ] C:\Windows\System32\NetworkUXBroker.dll
      21:08:53.0419 0x1cd4 C:\Windows\System32\NetworkUXBroker.dll - ok
      21:08:53.0419 0x1cd4 [ BC18B752370625C4B0E7B045C74147F9, 22CD3FFE780732B45ED57F8AF64825C75D741478B6D8AB3195 FE2E856E55F915 ] C:\Windows\System32\PortableDeviceTypes.dll
      21:08:53.0419 0x1cd4 C:\Windows\System32\PortableDeviceTypes.dll - ok
      21:08:53.0419 0x1cd4 [ 3C48A2CDFF5E315879E4E791B271A33B, 2B02A2F913ADFC4560B93C78109FAE5FC83C5A3963111317CD B0089D731F9B54 ] C:\Windows\System32\EthernetMediaManager.dll
      21:08:53.0419 0x1cd4 C:\Windows\System32\EthernetMediaManager.dll - ok
      21:08:53.0419 0x1cd4 [ 9C010096033F1A3945C7932AEFEA4E1A, 16F73D582539CCD16CF4EBF239CB49CB22CE3E9DB275FB5B3C B5A15E97A2344F ] C:\Windows\System32\WlanMediaManager.dll
      21:08:53.0419 0x1cd4 C:\Windows\System32\WlanMediaManager.dll - ok
      21:08:53.0419 0x1cd4 [ E5DDBD20FDB5D66B18781E3E47EEF099, 816B3FF017C642896AA8AA2CD2130D0E054673689ED3F18BF7 D3DEDFB1BBA051 ] C:\Windows\System32\ieapfltr.dll
      21:08:53.0419 0x1cd4 C:\Windows\System32\ieapfltr.dll - ok
      21:08:53.0435 0x1cd4 [ FB38F643D4483A89F937D8C4C47C684C, EBB2D4E99DD7F0F3214F23B7EE45EECC59A2265975E4AC4D6A 23BE32522E0893 ] C:\Windows\System32\bthprops.cpl
      21:08:53.0435 0x1cd4 C:\Windows\System32\bthprops.cpl - ok
      21:08:53.0435 0x1cd4 [ 1D59FBE55DAA1BA99EF01B2F7DFBBA06, 9DBC58AF89D741C05979B727FA5EF914674A05FE97562E6CD7 14AE8DAF49160E ] C:\Windows\System32\rometadata.dll
      21:08:53.0435 0x1cd4 C:\Windows\System32\rometadata.dll - ok
      21:08:53.0435 0x1cd4 [ 2057FED133838FEDC1A90A80176A5726, 3F066E7E09327CB3A29D42DA3D2869FAB17A8738ABCDFB727C 59834B6DACBE8A ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Internal.Search.winmd
      21:08:53.0435 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Internal.Search.winmd - ok
      21:08:53.0435 0x1cd4 [ DABD1186000C227630DF323E8FB4C34B, 5ED2D12CA2EA82CD6FBE9DC3ADCE240E4E4897639471F696E2 B1440393E1022F ] C:\Windows\System32\TetheringStation.dll
      21:08:53.0435 0x1cd4 C:\Windows\System32\TetheringStation.dll - ok
      21:08:53.0435 0x1cd4 [ A6FFEEB7B9038D1B551127E642F214EB, 34CC281EE9A1A3A59FCABCD1EA92BCC2B5B0F28E7324DE89B1 51A042DBC2A866 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Search.winmd
      21:08:53.0435 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Search.winmd - ok
      21:08:53.0435 0x1cd4 [ BFD9E7042DFFEB1514B269AD48EC2EFA, AA96696B3BF450DF4473A2DAD21ACF2BCE5673BF02361B3AFB B302D851A3BDEF ] C:\Windows\System32\WinMetadata\Windows.Foundation .winmd
      21:08:53.0435 0x1cd4 C:\Windows\System32\WinMetadata\Windows.Foundation .winmd - ok
      21:08:53.0450 0x1cd4 [ 28D0A50E6F86302879C69F355C457E03, 3985EE10F6B61B867D891B3113FE660D38FC66494F895CF04E B24828E505A31E ] C:\Windows\System32\WinMetadata\Windows.Security.w inmd
      21:08:53.0450 0x1cd4 C:\Windows\System32\WinMetadata\Windows.Security.w inmd - ok
      21:08:53.0450 0x1cd4 [ AE09D88C06A5920CF4CB6C84692204CD, 42808ACA69B9C6BA986AEF9F0B5F02389B9896CA24110D1BD1 20B1B012902A0E ] C:\Windows\System32\SettingMonitor.dll
      21:08:53.0450 0x1cd4 C:\Windows\System32\SettingMonitor.dll - ok
      21:08:53.0450 0x1cd4 [ 01B5B26ECF5D00AA5EFF8F338DB9D3BF, 7F2E662062C97A685B26DAB91C1E77715CC68241343367B4F9 A86FA23B46D9C2 ] C:\Windows\System32\WinMetadata\Windows.Storage.wi nmd
      21:08:53.0450 0x1cd4 C:\Windows\System32\WinMetadata\Windows.Storage.wi nmd - ok
      21:08:53.0450 0x1cd4 [ E8793927F870A712FCF767715FA826D1, FB61E37481372CD06E8599D44B748E1C6F90B81E19F44769E0 6C88B690726751 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Tips.winmd
      21:08:53.0450 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.Tips.winmd - ok
      21:08:53.0450 0x1cd4 [ 068414C1DA971123D1E9929366E84587, 0CECAFDF74C26D56E1C2830A2DAF93F03F97A92963CAFAA719 5BAA26A1C3F923 ] C:\Windows\System32\WinMetadata\Windows.System.win md
      21:08:53.0450 0x1cd4 C:\Windows\System32\WinMetadata\Windows.System.win md - ok
      21:08:53.0466 0x1cd4 [ 257845C1A2595D0C9ADAD588EDC16156, 33436921D97C36937CE9FB3D31DD9AB20BECFCD208B52BEE8D 8780A380B59DF0 ] C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.SPA.winmd
      21:08:53.0466 0x1cd4 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw 5n1h2txyewy\Cortana.SPA.winmd - ok
      21:08:53.0466 0x1cd4 [ 5400E64AB2E6B6C068232EE2C4951DB3, 6B52C0EE487F0B03F9C5588E7D8A7B3F70EEA37A9FCD9E37E0 BE9DFCA5693656 ] C:\Windows\System32\srchadmin.dll
      21:08:53.0466 0x1cd4 C:\Windows\System32\srchadmin.dll - ok
      21:08:53.0466 0x1cd4 [ 11BDDEDDCAC6CD65A6A082DF53ED0F39, CBBBBDF34A1549AAF53C4759E53FD600D73A41FE08B9013D79 2541B92EBADAEC ] C:\Windows\System32\SyncCenter.dll
      21:08:53.0466 0x1cd4 C:\Windows\System32\SyncCenter.dll - ok
      21:08:53.0466 0x1cd4 [ 682AE21BED327CD7FCC2E38C07C2D04E, 0BBD2DAF9B08BF97F65831A08C64A0E6B6AB4665AE6222BF6B 48D3ADF4223A25 ] C:\Windows\System32\imapi2.dll
      21:08:53.0466 0x1cd4 C:\Windows\System32\imapi2.dll - ok
      21:08:53.0466 0x1cd4 [ 39FE25A61C8DC6AA3CC6297A8C0FD4FE, 52914D4D6770F4F82267B234CFE02D8A7527421A3B8606C69A 568D2E695A7AAB ] C:\Windows\System32\hgcpl.dll
      21:08:53.0466 0x1cd4 C:\Windows\System32\hgcpl.dll - ok
      21:08:53.0466 0x1cd4 [ 42D5E1F8641E9DCEE0D8751F6F7A8961, 9168110EF404BF179888AF4A0F02B2817F020BFB16351778F2 DDD6915C92F190 ] C:\Windows\System32\duser.dll
      21:08:53.0466 0x1cd4 C:\Windows\System32\duser.dll - ok
      21:08:53.0482 0x1cd4 [ 0601F285DCFF75E679BD91E39B6EBDBF, 23A80E09DAE6DB17909E81B1CA7E9BF43158BDEE69C1646125 FC62E6BFE2745B ] C:\Windows\System32\backgroundTaskHost.exe
      21:08:53.0482 0x1cd4 C:\Windows\System32\backgroundTaskHost.exe - ok
      21:08:53.0482 0x1cd4 [ E15711970C5BE05E8D70B294D0AFF621, 30670CFC4DA57B4A3E0E895E4111100D847BB8041A258A3035 24CD96DC566482 ] C:\Windows\System32\wlidsvc.dll
      21:08:53.0482 0x1cd4 C:\Windows\System32\wlidsvc.dll - ok
      21:08:53.0482 0x1cd4 [ 73D0C71191B2C4FD9359D14FC570052F, 9DC01B56C49586D0CD30684A56B0B212AA994CC2B4DEC48E6D D9870A4849E844 ] C:\Windows\System32\msauserext.dll
      21:08:53.0482 0x1cd4 C:\Windows\System32\msauserext.dll - ok
      21:08:53.0482 0x1cd4 [ 8D958808853BE6D12997F8290879820C, AFFE7BAF6948EB131B55EBD8C76FC8184AA0EB973D8FF2F7CC 0CCF1F18A2380E ] C:\Windows\System32\smartscreen.exe
      21:08:53.0482 0x1cd4 C:\Windows\System32\smartscreen.exe - ok
      21:08:53.0482 0x1cd4 [ 4342BB0F42779B591D6646B3042A8A1D, 6372114DC3B4763E4E303C84EEC3F61B470A92ED3EF680EC36 E65785CF9A8161 ] C:\Windows\System32\smartscreenps.dll
      21:08:53.0482 0x1cd4 C:\Windows\System32\smartscreenps.dll - ok
      21:08:53.0497 0x1cd4 [ 079511E999ACAB4B8CC08432F0363368, 05A2707AE075206E8913FE6249C0474FE350DCF61F4E856990 4D7A8247F012BF ] C:\Program Files\Dolby\DDP_F3\ddpf3.exe
      21:08:53.0497 0x1cd4 C:\Program Files\Dolby\DDP_F3\ddpf3.exe - ok
      21:08:53.0497 0x1cd4 [ 3AFB53497E47A09FE736ACFC6B8D62A0, 5C10C23E0E9F4F1B086E20DB68312106429B9913B80C3E2B98 23B829796FC32F ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
      21:08:53.0497 0x1cd4 C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe - ok
      21:08:53.0497 0x1cd4 ================ Scan generic autorun ======================
      21:08:54.0841 0x1cd4 [ 98467E6F3D91BBBFA795BC805443F030, F3AF9BF2FA86E299949F6F1D16980C48FCF6DA834E05C71217 99CED6B0469E39 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
      21:08:55.0216 0x1cd4 RtHDVCpl - ok
      21:08:55.0482 0x1cd4 [ 01664C41E619B5E417450B11D76D44BF, DE2715EE7A1625FDD661CD31DE528606C3F7091EB0542E106B FC013783925E19 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      21:08:55.0513 0x1cd4 RtHDVBg_Dolby - ok
      21:08:55.0622 0x1cd4 [ 01664C41E619B5E417450B11D76D44BF, DE2715EE7A1625FDD661CD31DE528606C3F7091EB0542E106B FC013783925E19 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      21:08:55.0654 0x1cd4 RtHDVBg_LENOVO_DOLBYDRAGON - ok
      21:08:55.0747 0x1cd4 [ 01664C41E619B5E417450B11D76D44BF, DE2715EE7A1625FDD661CD31DE528606C3F7091EB0542E106B FC013783925E19 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      21:08:55.0763 0x1cd4 RtHDVBg_LENOVO_MICPKEY - ok
      21:08:55.0951 0x1cd4 [ 079511E999ACAB4B8CC08432F0363368, 05A2707AE075206E8913FE6249C0474FE350DCF61F4E856990 4D7A8247F012BF ] C:\Program Files\Dolby\DDP_F3\ddpf3.exe
      21:08:55.0966 0x1cd4 DDPF3 - ok
      21:08:56.0029 0x1cd4 [ 3AFB53497E47A09FE736ACFC6B8D62A0, 5C10C23E0E9F4F1B086E20DB68312106429B9913B80C3E2B98 23B829796FC32F ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
      21:08:56.0044 0x1cd4 IAStorIcon - ok
      21:08:56.0247 0x1cd4 [ AD77FD29FC511AA939B32B536BB0DD56, FFAB6DFFCB8B1F25BCACCF403F9F23D604C5F640F1F6569EE1 C151E16DD45786 ] C:\Program Files\Lenovo\LenovoUtility\utility.exe
      21:08:56.0279 0x1cd4 LenovoUtility - ok
      21:08:56.0357 0x1cd4 [ B0271E30A7E4E0385E4F2291EEA97B32, 9CE130DCF9228AEDBA9041A3C8C069AFED5013FC762A755A44 5E7263E48B881E ] C:\Program Files (x86)\Lenovo\LenovoTransition\TransitionServer.exe
      21:08:56.0357 0x1cd4 AutoStartTransition - ok
      21:08:56.0654 0x1cd4 [ 4D516FF7145B02F9AD6596C13EAA12D2, 2B79BA63E687D371EE39A47A5766CF6D7856975D12CD992511 4D862D3CA27E39 ] C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe
      21:08:56.0669 0x1cd4 PhoneCompanion - ok
      21:08:56.0997 0x1cd4 [ AC2A198C47D0A6C7F60AD779BDC525F0, CE98E51F154616B9130A87F11179F3A59D6C41B245297762C3 EA8101C636252B ] C:\Program Files\Lenovo\OneKey Optimizer\bin\OneKeyOptimizerTray.exe
      21:08:57.0013 0x1cd4 OneKeyOptimizer - ok
      21:08:57.0654 0x1cd4 [ 48515EEA1608ECD83FE26C7490460F59, C7C552D13ED12B4165FDE45F69E170D4F18B746D84B3B08E72 54AAF8D9671D0C ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.e xe
      21:08:58.0044 0x1cd4 AdobeAAMUpdater-1.0 - ok
      21:08:58.0310 0x1cd4 [ F13C51AA1E5E411FD470606C86061870, 6B410D41E6D76E151D7456964BDB7E459CC214790860FFC7FD 1A50974DD6DBFB ] C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe
      21:08:58.0310 0x1cd4 LMCSSTART1 - ok
      21:08:58.0341 0x1cd4 [ F13C51AA1E5E411FD470606C86061870, 6B410D41E6D76E151D7456964BDB7E459CC214790860FFC7FD 1A50974DD6DBFB ] C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe
      21:08:58.0341 0x1cd4 LMCSSTART2 - ok
      21:08:58.0388 0x1cd4 [ F13C51AA1E5E411FD470606C86061870, 6B410D41E6D76E151D7456964BDB7E459CC214790860FFC7FD 1A50974DD6DBFB ] C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe
      21:08:58.0388 0x1cd4 LMCSSTART3 - ok
      21:08:58.0388 0x1cd4 SynTPEnh - ok
      21:08:58.0638 0x1cd4 [ 51FFA164418B97B6B4CAFE5A0B7097B0, 916D63728F6AA04989A5750A079300F7FFBFA12CCD9E8E942D 7BE3CB3AF7E167 ] C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe
      21:08:58.0654 0x1cd4 lxebmon.exe - ok
      21:08:58.0732 0x1cd4 [ C0053C87AEFDE64D6C0179BE7E1C393B, 2801611717E9DE1E37C4281B28C0580233E3146BDE36339E55 26FAF95EC04AEE ] C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe
      21:08:58.0732 0x1cd4 EzPrint - ok
      21:08:58.0732 0x1cd4 toys - ok
      21:08:59.0061 0x1cd4 [ 666FEA598D1776C7F8EDD7746F0F7F59, 54E330BCDBAB646B555DACC15F9CFB0AD6A05BF4E273F73C51 33259EEE976C21 ] C:\PROGRAM FILES/MALWAREBYTES/ANTI-MALWARE\mbamtray.exe
      21:08:59.0154 0x1cd4 Malwarebytes TrayApp - ok
      21:09:01.0061 0x1cd4 [ AC65B1259636C0EA36CD1C14709B237B, 51D6AE14F39C63B98643F2123D548EB8D9919D189330198644 DB0291BAC77541 ] C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
      21:09:01.0280 0x1cd4 ZAM - ok
      21:09:01.0498 0x1cd4 [ 1710A603D1EEBF86D738D1C6283C39B3, 5427A41AB64122FC119A42D7E4954A04A650FE88BD2B7FD2D4 CDD1E823433268 ] C:\Program Files\iTunes\iTunesHelper.exe
      21:09:01.0530 0x1cd4 iTunesHelper - ok
      21:09:01.0545 0x1cd4 toys - ok
      21:09:03.0827 0x1cd4 [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCD C851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
      21:09:04.0108 0x1cd4 OneDriveSetup - ok
      21:09:05.0733 0x1cd4 [ 1496120E3867FD75AE5D4EAD6E618E7A, 8D8A2FD43D33A3F7A177783921BB7E50FECBAEF1E09CD42BCD C851375F3294D1 ] C:\Windows\SysWOW64\OneDriveSetup.exe
      21:09:05.0874 0x1cd4 OneDriveSetup - ok
      21:09:05.0889 0x1cd4 toys - ok
      21:09:05.0889 0x1cd4 tracing - ok
      21:09:05.0889 0x1cd4 hostetter - ok
      21:09:05.0889 0x1cd4 electrolyte - ok
      21:09:05.0889 0x1cd4 midwives - ok
      21:09:08.0186 0x1cd4 [ 2269768074F6A93E454BA384ED9652E2, 3BB698018941471327A3031CC0F4011D69EBA03B00E9E6F2D9 9922639DCCDA59 ] C:\Program Files\CCleaner\CCleaner64.exe
      21:09:08.0311 0x1cd4 CCleaner - ok
      21:09:08.0967 0x1cd4 [ FD9A7F99A09DB266D0C1361B0ACCBD7E, 579160BDACDFE39AE5DDD7B5C2964453E89BA8D933F3FB16C6 E3897EA3BDED29 ] C:\Users\Administrator\AppData\Local\Microsoft\One Drive\OneDrive.exe
      21:09:09.0233 0x1cd4 OneDrive - ok
      21:09:09.0233 0x1cd4 Waiting for KSN requests completion. In queue: 2
      21:09:10.0280 0x1cd4 AV detected via SS2: Norton Security, C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\WSCStub.exe ( 22.8.0.0 ), 0x51000 ( enabled : updated )
      21:09:10.0312 0x1cd4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.10.14393.187 ), 0x60100 ( disabled : updated )
      21:09:10.0327 0x1cd4 AV detected via SS2: Malwarebytes, C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe ( 3.0.0.134 ), 0x61000 ( enabled : updated )
      21:09:10.0327 0x1cd4 FW detected via SS2: Norton Security, C:\Program Files (x86)\Norton Security\Engine\22.8.1.14\WSCStub.exe ( 22.8.0.0 ), 0x51010 ( enabled )
      21:09:10.0765 0x1cd4 ================================================== ==========
      21:09:10.0765 0x1cd4 Scan finished
      21:09:10.0765 0x1cd4 ================================================== ==========
      21:09:10.0765 0x0960 Detected object count: 0
      21:09:10.0765 0x0960 Actual detected object count: 0

      Eset Scan Log.

      C:\FRST\Quarantine\C\Program Files (x86)\waistbands\hadera.exe Win32/Adware.Dotdo.J application cleaned by deleting
      C:\FRST\Quarantine\C\WINDOWS\quits.exe.xBAD a variant of MSIL/Adware.Dotdo.AP application cleaned by deleting
      C:\Users\Clint\AppData\Local\Downloaded Installations{C10E92A1-0281-4E9B-B623-41F886FA1752}\default.msi a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application deleted
      C:\Users\Clint\Downloads\ccsetup514.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted
      C:\Users\Clint\Downloads\ccsetup525.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted
      C:\Users\Clint\Downloads\spsetup130.exe Win32/Bundled.Toolbar.Google.D potentially unsafe application deleted

      Comment

      • Malnutrition
        PCHF Moderator
        • Jul 2016
        • 7041

        #18
        Originally posted by Kriller
        Alright. Here are my last three reports! Should I run the DNS thing again?
        Yes you should if you would like ads blocked in your browsers, skype, spotify, and any other things you may run.

        You need to update some programs. Use Patch My Pc or the links below.

        Skype™ 7.27 v.7.27.101 Warning! Download Update
        Java 8 Update 111 v.8.0.1110.14 Warning! Download Update
        iTunes v.12.3.3.17 Warning! Download Update
        ^Please use Apple Software Update tool.[1]
        QuickTime 7 v.7.79.80.95 Warning! This software is no longer supported. Please uninstall it and use another software.
        Adobe AIR v.23.0.0.257 Warning! Download Update

        Also, I meant for you to use ZHP Diag not ZHP cleaner.

        I’d rather give the machine one last check over with ZHP Diag, but some people will abandon threads if they feel the issue is solved, and do not want to run any more scanners. If you feel you are ok, then here are my suggestions for keeping your machine clean.

        Your machine is clean
        . https://pchf2-jew4efcjsvzg0rz43cny.s...139ddf6d3f.jpg

        Glad to have helped!! Please tell a friend … or two about us. https://forum.windowsinstructed.com/...cons/smile.png

        Optimize your internet connection.

        Click here for instructions.

        suggest the following in place of adblock.
        Alternate DNS Server. Ad Blocking DNS.
        Ublock Origin.
        Anti Ad Block Killer.

        Also, keep your browsing private with these tools:

        Self Destructing Cookies.
        Self Destructing Cookies Chrome.



        Some items to keep you safe on the internet.

        VooDoo Shield. control of what is running on your machine
        Qualys BrowserCheck To update plugins.
        Web Of Trust To Avoid Shady Websites.
        Unchecky To Avoid Bundled Software.
        Privazer To Clean up your mahcine.

        Now Lets Clean up the tools we used and remove old restore points.

        Download DelFix by “Xplode” to your Desktop.
        Right Click the tool and Run as Admin ( Xp Users Double Click)
        Put a check mark next the items below:

        Remove disinfection tools
        Create registry backup
        Purge System Restore

        Now click on “Run” button.
        allow the program to complete its work.
        all the tools we used will be removed.
        Tool will create and open a log report (DelFix.txt)
        Note: The report can be located at the following location C:\DelFix.txt

        1. /B ↩︎

        Comment

        • Kriller
          PCHF Member
          • Jan 2017
          • 12

          #19
          No, I’ll definitely run those cleaners!
          Are you a part of PCHELPFORUM? This was the most help I’ve had for a situation like this! Couldn’t have asked for more. Definitely be telling friends about this.
          Thanks again!

          Comment

          • Malnutrition
            PCHF Moderator
            • Jul 2016
            • 7041

            #20
            Originally posted by Kriller
            No, I’ll definitely run those cleaners!
            Ok, then I’d like you to go ahead and run the ZHP diag scanner, you ran the ZHP cleaner. This tool will show me a lot more than FRST does. It will take me a while to go over it, I just want to make sure that I get all the malware from your machine.
            Originally posted by Kriller
            This was the most help I’ve had for a situation like this!
            Yep, I grew up really poor – like eat a can of corn for dinner poor… I understand that people do not always have money to go out and buy a new computer. So I treat every thread like I was working on my own machine.
            Originally posted by Kriller
            Definitely be telling friends about this.
            Thanks again!
            Sweet! You are most welcome.

            ZHP Diag Scan to get a more in depth look into your machine.

            Download ZHP Diag to your desktop.
            1. Right Click Run as Admin.
              2. Click the Scanner button.



            When complete please push the report button.
            A notepad will open… copy and paste the report in your next reply.

            Comment

            • Kriller
              PCHF Member
              • Jan 2017
              • 12

              #21
              ~ ZHPDiag v2017.1.7.4 By Nicolas Coolman (2017/01/07)
              ~ Run by Clint (Administrator) (2017/01/08 10:15:40)
              ~ Web: https://www.nicolascoolman.com
              ~ Blog: https://www.anti-malware.top
              ~ Facebook: ZHP
              ~ State version: Version OK
              ~ Mode: Scan
              ~ Report: C:\Users\Clint\Desktop\ZHPDiag.txt
              ~ Report: C:\Users\Clint\AppData\Roaming\ZHP\ZHPDiag.txt
              ~ UAC: Activate
              ~ System startup: Normal (Normal boot)
              Windows 10 Home, 64-bit (Build 14393) =>.Microsoft Corporation
              —\ Internet Browsers (2) - 0s
              ~ GCIE: Google Chrome v55.0.2883.87
              ~ MSIE: Internet Explorer v11.576.14393.0

              —\ Windows Product Information (3) - 3s
              ~ Windows Server License Manager Script : OK
              ~ Licence Script File Génération : OK
              Windows Automatic Updates : OK

              —\ System protection software (1) - 5s
              Windows Defender (Deactivate)

              —\ System optimization software (1) - 6s
              ~ OneKey Optimizer v1.1.20.16 (Optimize)

              —\ Surveillance software (1) - 6s
              ~ Adobe Flash Player 24 NPAPI (Surveillance)

              —\ Information on the system (6) - 0s
              ~ Operating System: Intel64 Family 6 Model 61 Stepping 4, GenuineIntel
              ~ Operating System: 64-bit
              ~ Boot mode: Normal (Normal boot)
              Total RAM: 8292.268 MB (65% free) : OK =>.RAM Value
              System Restore: Activé (Enable)
              System drive C: has 549 GB (60%) free of 912 GB : OK =>.Disk Space

              —\ Connection to the system mode (3) - 0s
              ~ Computer Name: FCLINT
              ~ User Name: Clint
              ~ Logged in as Administrator

              —\ Enumeration of the disk units (2) - 0s
              ~ Drive C: has 549 GB free of 912 GB (System)
              ~ Drive N: has 25 GB free of 25 GB

              —\ State of the Windows Security Center (7) - 1s
              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\Explorer] NoActiveDesktopChanges: Modified
              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\system] EnableLUA: OK
              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
              [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\Associations] Application: OK
              [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
              [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

              —\ Search Generic System Files (24) - 1s
              [MD5.4E10FB1A015B49AC68F76C1A3F4D9C0F] - 11/11/2016 - (.Microsoft Corporation - Windows Explorer.) – C:\WINDOWS\Explorer.exe [4673304] =>.Microsoft Windows®
              [MD5.C7645D43451C6D94D87F4D07BDE59C89] - 16/07/2016 - (.Microsoft Corporation - Windows host process (Rundll32).) – C:\WINDOWS\System32\rundll32.exe [69632] =>.Microsoft Corporation
              [MD5.99A19C9A74E2F9820E501DCE77F84F70] - 16/07/2016 - (.Microsoft Corporation - Windows Start-Up Application.) – C:\WINDOWS\System32\Wininit.exe [304240] =>.Microsoft Windows Publisher®
              [MD5.E584CDC70F694F9A984A060A8291EB04] - 11/11/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) – C:\WINDOWS\System32\wininet.dll [2669056] =>.Microsoft Corporation
              [MD5.DE6DF9BBBECAFDEF462A37D839167368] - 11/11/2016 - (.Microsoft Corporation - Windows Logon Application.) – C:\WINDOWS\System32\Winlogon.exe [673792] =>.Microsoft Corporation
              [MD5.9600B7F2F89DE60A80D13DE42F672834] - 16/07/2016 - (.Microsoft Corporation - Software Licensing Library.) – C:\WINDOWS\System32\sppcomapi.dll [402432] =>.Microsoft Corporation
              [MD5.96B8A433F6407DE34850927C96C6CE9B] - 15/09/2016 - (.Microsoft Corporation - DNS Client API DLL.) – C:\WINDOWS\System32\dnsapi.dll [646136] =>.Microsoft Windows®
              [MD5.227CFE3EDA82029AAC1C088A16297CD7] - 15/09/2016 - (.Microsoft Corporation - DNS Client API DLL.) – C:\WINDOWS\Syswow64\dnsapi.dll [496872] =>.Microsoft Windows®
              [MD5.323AA1953ED9C01E23F740FA891FE064] - 14/10/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\WINDOWS\System32\drivers\AFD.sys [584032] =>.Microsoft Windows®
              [MD5.A10F989A812B57B9695F6C305907C9C6] - 16/07/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
              [MD5.F8FB51B9EF6372610E9B31A1D86B62FC] - 16/07/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) – C:\WINDOWS\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
              [MD5.613D0137C269187FA298A157E3D14A18] - 16/07/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\WINDOWS\System32\drivers\Cdrom.sys [173056] =>.Microsoft Corporation
              [MD5.0D1D392ED2597F295956D058D33BD7C3] - 05/10/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\WINDOWS\System32\drivers\DfsC.sys [144896] =>.Microsoft Corporation
              [MD5.10E3515FE5DBA6656FA62C29342EC4A1] - 16/07/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\WINDOWS\System32\drivers\HDAudBus.sys [83456] =>.Microsoft Corporation
              [MD5.B54B30992620C97230013A74461C8517] - 16/07/2016 - (.Microsoft Corporation - i8042 Port Driver.) – C:\WINDOWS\System32\drivers\i8042prt.sys [114176] =>.Microsoft Corporation
              [MD5.F1DAECC3B3D6399875D4F10529D6A77C] - 16/07/2016 - (.Microsoft Corporation - IP Network Address Translator.) – C:\WINDOWS\System32\drivers\IpNat.sys [212480] =>.Microsoft Corporation
              [MD5.E671EDAB0726E05ECEF4058B4CD73C4D] - 06/09/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\WINDOWS\System32\drivers\MRxSmb.sys [450392] =>.Microsoft Windows®
              [MD5.6FEBB0A847FFD5F057B9AC8889F1B9A7] - 16/07/2016 - (.Microsoft Corporation - MBT Transport driver.) – C:\WINDOWS\System32\drivers\netBT.sys [279040] =>.Microsoft Corporation
              [MD5.DB69C6DA8B3DDFDC547D455CA23A8250] - 02/11/2016 - (.Microsoft Corporation - NT File System Driver.) – C:\WINDOWS\System32\drivers\ntfs.sys [2255712] =>.Microsoft Windows®
              [MD5.6B81BF7853D161DB8AC62CD8B9C2DE6B] - 16/07/2016 - (.Microsoft Corporation - Parallel Port Driver.) – C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation
              [MD5.17E565710172ED71B8531D8822E1C5D1] - 16/07/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation
              [MD5.7135785C21CA79D270D11037C43D3F19] - 16/07/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\WINDOWS\System32\drivers\rdpdr.sys [177152] =>.Microsoft Corporation
              [MD5.9D2DD64A0B51C56285512DC9454340F6] - 16/07/2016 - (.Microsoft Corporation - TDI Translation Driver.) – C:\WINDOWS\System32\drivers\tdx.sys [118112] =>.Microsoft Windows®
              [MD5.BF2546583BB75F01DDA60A7921DFB230] - 16/07/2016 - (.Microsoft Corporation - Volume Shadow Copy driver.) – C:\WINDOWS\System32\drivers\volsnap.sys [391520] =>.Microsoft Windows®

              —\ Non Microsoft non disabled Windows Services (35) - 3s
              O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
              O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
              O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
              O23 - Service: AVControlCenter (AVControlCenter) . (.Lenovo Corporation - Lenovo® Multimedia and Comm Subsystem Contr.) - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe =>.LENOVO®
              O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
              O23 - Service: CCSDK (CCSDK) . (…) - C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe =>.Lenovo (Beijing) Limited®
              O23 - Service: FastbootService (FastbootService) . (.Lenovo - RapidBoot HDD Accelerator Service.) - C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe =>.Lenovo
              O23 - Service: HarmonySettingService (HarmonySettingService) . (.Lenovo - HarmonySettingService.) - C:\Program Files (x86)\Lenovo\Harmony\Setting\HarmonySettingService .exe =>.LENOVO®
              O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel® Rapid Storage Technology®
              O23 - Service: Intel Bluetooth Service (iBtSiva) . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe =>.Intel Corporation - pGFX®
              O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe =>.Intel Corporation
              O23 - Service: System Interface Foundation Service (ImControllerService) . (.Lenovo Group Limited - Lenovo.Modern.ImController.) - C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.exe =>.Lenovo®
              O23 - Service: Intel® ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              O23 - Service: Lenovo OKO Service (Lenovo OKO Service) . (.Lenovo(beijing) Limited - OneKey Optimizer Self Update Install Servic.) - C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe =>.Lenovo (Beijing) Limited®
              O23 - Service: Lenovo Settings Service (Lenovo Settings Service) . (.Lenovo Group Limited - Lenovo Settings Service.) - C:\Program Files\Lenovo\SettingsDependency\SettingsService.ex e =>.LENOVO®
              O23 - Service: Lenovo PAWD Service (LenovoPAWDService) . (…) - C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe =>.Lenovo®
              O23 - Service: LenovoSetSvr (LenovoSetSvr) . (.Lenovo(beijing) Limited - Lenovo Settings.) - C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe =>.Lenovo (Beijing) Limited®
              O23 - Service: Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited - Lenovo Settings.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe =>.Lenovo(beijing) Limited
              O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              O23 - Service: lxebCATSCustConnectService (lxebCATSCustConnectService) . (.Lexmark International, Inc. - Lexmark Connect Service Executable.) - C:\WINDOWS\system32\spool\DRIVERS\x64\3\lxebserv.e xe =>.Lexmark International, Inc.®
              O23 - Service: lxeb_device (lxeb_device) . (. - Printer Communication System.) - C:\Windows\System32\lxebcoms.exe =>.Lexmark International, Inc.®
              O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
              O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
              O23 - Service: NVIDIA Wireless Controller Service (NVIDIA Wireless Controller Service) . (.NVIDIA Corporation - NVIDIA Wireless Controller Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe =>.NVIDIA Corporation®
              O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 362.0.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation
              O23 - Service: OKOControlSvc (OKOControlSvc) . (.Lenovo(beijing) Limited - OneKey Optimizer Control Service.) - C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe =>.Lenovo (Beijing) Limited®
              O23 - Service: PGService (PGService) . (.PointGrab LTD - Lenovo Motion Control.) - C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe =>.PointGrab Ltd®
              O23 - Service: PG_Service_Launcher (PG_Service_Launcher) . (.PointGrab LTD - Lenovo Motion Control.) - C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe =>.PointGrab Ltd®
              O23 - Service: Lenovo PhoneCompanionPusher Service (PhoneCompanionPusher) . (.Lenovo - PhoneCompanionPusher.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe =>.Lenovo (Beijing) Limited®
              O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
              O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®
              O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
              O23 - Service: ymc (ymc) . (.Lenovo - Lenovo Yoga Mode Control.) - C:\ProgramData\LenovoTransition\Server\x64\ymc.exe =>.LENOVO®
              O23 - Service: ZAM Controller Service (ZAMSvc) . (…) - C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (.not file.)

              —\ Services not Microsoft (SR=Run, SS=Stop) (48) - 58s
              SS - Demand [14/12/2016] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpda teService.exe =>.Adobe Systems Incorporated®
              SR - Auto [24/08/2016] [ 744640] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
              SR - Auto [13/12/2016] [ 2218712] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
              SR - Auto [22/09/2016] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
              SR - Auto [23/03/2015] [ 560584] AVControlCenter (AVControlCenter) . (.Lenovo Corporation.) - C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe =>.LENOVO®
              SR - Auto [12/08/2015] [ 462096] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
              SR - Auto [22/10/2014] [ 644080] CCSDK (CCSDK) . (…) - C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe =>.Lenovo (Beijing) Limited®
              SS - Demand [06/05/2016] [ 292840] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
              SR - Auto [20/11/2014] [ 191512] FastbootService (FastbootService) . (.Lenovo.) - C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe =>.Lenovo
              SS - Demand [04/01/2017] [ 1235912] FlexNet Licensing Service (FlexNet Licensing Service) . (.Flexera Software LLC.) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Flexera Software LLC®
              SR - Auto [11/02/2015] [ 19896] HarmonySettingService (HarmonySettingService) . (.Lenovo.) - C:\Program Files (x86)\Lenovo\Harmony\Setting\HarmonySettingService .exe =>.LENOVO®
              SR - Auto [09/10/2014] [ 18584] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel® Rapid Storage Technology®
              SR - Auto [13/12/2014] [ 124520] Intel Bluetooth Service (iBtSiva) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe =>.Intel Corporation - pGFX®
              SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation®
              SR - Auto [06/05/2016] [ 365032] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\system32\igfxCUIService.exe =>.Intel(R) pGFX®
              SR - Auto [01/12/2016] [ 62792] System Interface Foundation Service (ImControllerService) . (.Lenovo Group Limited.) - C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.exe =>.Lenovo®
              SS - Demand [13/05/2014] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
              SR - Auto [10/10/2014] [ 132896] Intel® ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              SS - Demand [06/12/2016] [ 651576] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
              SS - Demand [12/08/2016] [ 177376] Intel(R) Update Manager (iumsvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe =>.Intel(R) Update Manager®
              SR - Auto [10/10/2014] [ 158496] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              SR - Auto [18/11/2014] [ 2544408] Lenovo OKO Service (Lenovo OKO Service) . (.Lenovo(beijing) Limited.) - C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe =>.Lenovo (Beijing) Limited®
              SR - Auto [10/04/2015] [ 2016040] Lenovo Settings Service (Lenovo Settings Service) . (.Lenovo Group Limited.) - C:\Program Files\Lenovo\SettingsDependency\SettingsService.ex e =>.LENOVO®
              SS - Demand [23/03/2015] [ 456136] Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) . (.Lenovo Corporation.) - C:\Program Files\Lenovo\Communications Utility\cammute.exe =>.LENOVO®
              SS - Demand [23/03/2015] [ 453576] Lenovo AVFramework Microphone Volume Controller and Dolby I (LENOVO.TPKNRSVC) . (.Lenovo Group Limited.) - C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe =>.LENOVO®
              SS - Demand [23/03/2015] [ 625608] Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) . (.Lenovo Corporation.) - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe =>.LENOVO®
              SR - Auto [07/06/2015] [ 133440] Lenovo PAWD Service (LenovoPAWDService) . (…) - C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe =>.Lenovo®
              SR - Auto [19/06/2014] [ 258544] LenovoSetSvr (LenovoSetSvr) . (.Lenovo(beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe =>.Lenovo (Beijing) Limited®
              SR - Demand [08/01/2017] [ 26608] lupdate (LenovoUpdate) . (.Lenovo.) - C:\WINDOWS\System32\LenovoUpdate.exe =>.Lenovo (Beijing) Limited®
              SR - Auto [25/08/2014] [ 218952] Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe =>.Lenovo (Beijing) Limited®
              SR - Auto [10/10/2014] [ 409376] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              SS - Auto [14/04/2010] [ 45736] lxebCATSCustConnectService (lxebCATSCustConnectService) . (.Lexmark International, Inc..) - C:\WINDOWS\system32\spool\DRIVERS\x64\3\lxebserv.e xe =>.Lexmark International, Inc.®
              SR - Auto [14/04/2010] [ 1052328] lxeb_device (lxeb_device) . (…) - C:\Windows\System32\lxebcoms.exe =>.Lexmark International, Inc.®
              SR - Auto [14/12/2016] [ 4317648] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
              SR - Auto [17/11/2016] [ 462784] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
              SS - Demand [17/11/2016] [ 462784] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
              SR - Auto [17/11/2016] [ 1163712] NVIDIA Wireless Controller Service (NVIDIA Wireless Controller Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe =>.NVIDIA Corporation®
              SR - Auto [23/02/2016] [ 1263040] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation®
              SR - Auto [17/11/2014] [ 113944] OKOControlSvc (OKOControlSvc) . (.Lenovo(beijing) Limited.) - C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe =>.Lenovo (Beijing) Limited®
              SR - Auto [28/05/2014] [ 167176] PGService (PGService) . (.PointGrab LTD.) - C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe =>.PointGrab Ltd®
              SR - Auto [28/05/2014] [ 524552] PG_Service_Launcher (PG_Service_Launcher) . (.PointGrab LTD.) - C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe =>.PointGrab Ltd®
              SR - Auto [07/06/2015] [ 321520] Lenovo PhoneCompanionPusher Service (PhoneCompanionPusher) . (.Lenovo.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe =>.Lenovo (Beijing) Limited®
              SS - Demand [07/06/2015] [ 338416] Lenovo PhoneCompanionVap Service (PhoneCompanionVap) . (.Lenovo.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe =>.Lenovo (Beijing) Limited®
              SS - Demand [20/01/2016] [ 31176] ShareItSvc (ShareItSvc) . (.SHAREit Technologies Co.Ltd.) - C:\Program Files (x86)\Lenovo\SHAREit\Shareit.Service.exe =>.LENOVO®
              SS - Auto [20/09/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
              SR - Auto [20/09/2016] [ 324224] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®
              SR - Auto [20/09/2016] [ 324224] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
              SR - Auto [20/09/2016] [ 324224] ymc (ymc) . (.Lenovo.) - C:\ProgramData\LenovoTransition\Server\x64\ymc.exe =>.LENOVO®

              —\ Task Planned Automatically (6) - 10s
              [MD5.63BB08F1FE94AE8804BCDC4916D4ABCD] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) – C:\Program Files\CCleaner\CCleaner.exe [324224] (.Activate.) =>.Piriform Ltd®
              [MD5.23985274780D27117C470AA259B79B30] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) – C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [324224] (.Activate.) =>.Apple Inc.®
              [MD5.A60028C6B63F466D7C91EA260D109CC7] [APT] [CyberLink\Photo Master Gadget startup] (.CyberLink Corp..) – C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [324224] (.Activate.) =>.CyberLink Corp.®
              O39 - APT: Unknown - (.Adobe Inc..) – C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [324224] =>.Adobe Inc.
              O39 - APT: Unknown - (.Legitimate.) – C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask .job [324224]
              O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) – C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [324224] =>.Piriform Ltd®

              —\ Auto loading programs from Registry and folders (33) - 1s
              O4 - HKLM..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Realtek HD Audio Manager.) – C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
              O4 - HKLM..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) – C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
              O4 - HKLM..\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] . (.Realtek Semiconductor - HD Audio Background Process.) – C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
              O4 - HKLM..\Run: [RtHDVBg_LENOVO_MICPKEY] . (.Realtek Semiconductor - HD Audio Background Process.) – C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
              O4 - HKLM..\Run: [DDPF3] . (.Dolby Laboratories Inc. - DolbyDigitalPlus.) – C:\Program Files\Dolby\DDP_F3\ddpf3.exe =>.Dolby Laboratories Inc.
              O4 - HKLM..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) – C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation
              O4 - HKLM..\Run: [LenovoUtility] . (.Copyright 2014 - Lenovo Utility.) – C:\Program Files\Lenovo\LenovoUtility\utility.exe =>.Lenovo (Beijing) Limited®
              O4 - HKLM..\Run: [AutoStartTransition] . (…) – C:\Program Files (x86)\Lenovo\LenovoTransition\TransitionServer.exe =>.LENOVO®
              O4 - HKLM..\Run: [PhoneCompanion] . (.Lenovo - Lenovo Phone Companion.) – C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe =>.Lenovo (Beijing) Limited®
              O4 - HKLM..\Run: [OneKeyOptimizer] . (.Lenovo(beijing) Limited - OneKeyOptimizerTray.) – C:\Program Files\Lenovo\OneKey Optimizer\bin\OneKeyOptimizerTray.exe =>.Lenovo (Beijing) Limited®
              O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) – C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.e xe =>.Adobe Systems Incorporated®
              O4 - HKLM..\Run: [LMCSSTART1] . (.Lenovo Corporation - Lenovo® Multimedia Subsystem Generic Contro.) – C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe =>.LENOVO®
              O4 - HKLM..\Run: [LMCSSTART2] . (.Lenovo Corporation - Lenovo® Multimedia Subsystem Generic Contro.) – C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe =>.LENOVO®
              O4 - HKLM..\Run: [LMCSSTART3] . (.Lenovo Corporation - Lenovo® Multimedia Subsystem Generic Contro.) – C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe =>.LENOVO®
              O4 - HKLM..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) – C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated®
              O4 - HKLM..\Run: [lxebmon.exe] . (. - Printer Device Monitor.) – C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe =>.Lexmark International, Inc.®
              O4 - HKLM..\Run: [EzPrint] . (.Copyright (c) 2008 - .) – C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe =>.Lexmark International, Inc.®
              O4 - HKLM..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
              O4 - HKLM..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) – C:\PROGRAM FILES/MALWAREBYTES/ANTI-MALWARE\mbamtray.exe =>.Malwarebytes Corporation®
              O4 - HKLM..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) – C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
              O4 - HKCU..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
              O4 - HKCU..\Run: [tracing] C:\Program Files (x86)\waistbands\sunland.exe (.not file.)
              O4 - HKCU..\Run: [hostetter] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
              O4 - HKCU..\Run: [electrolyte] C:\Program Files (x86)\Syllabic\genoese.exe (.not file.)
              O4 - HKCU..\Run: [midwives] C:\Program Files (x86)\Intramural\scheduled.exe (.not file.)
              O4 - HKLM..\Wow6432Node\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
              O4 - HKUS\S-1-5-19..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) – C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
              O4 - HKUS\S-1-5-20..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) – C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
              O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
              O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [tracing] C:\Program Files (x86)\waistbands\sunland.exe (.not file.)
              O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [hostetter] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
              O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [electrolyte] C:\Program Files (x86)\Syllabic\genoese.exe (.not file.)
              O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [midwives] C:\Program Files (x86)\Intramural\scheduled.exe (.not file.)

              —\ Process running (60) - 2s
              [MD5.37E5733F8F720920F7C5A78D45899D3A] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) – C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [426040] [PID.1436] =>.NVIDIA Corporation®
              [MD5.00000000000000000000000000000000] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 362.0.) – C:\WINDOWS\system32\nvvsvc.exe [0] [PID.1444] =>.NVIDIA Corporation
              [MD5.E04AA4CE5ED46A22D1E19E7D422F5282] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) – C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1263160] [PID.1556] =>.NVIDIA Corporation®
              [MD5.00000000000000000000000000000000] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 362.0.) – C:\WINDOWS\system32\nvvsvc.exe [0] [PID.1600] =>.NVIDIA Corporation
              [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxCUIService Module.) – C:\WINDOWS\system32\igfxCUIService.exe [0] [PID.1916] =>.Intel Corporation
              [MD5.00000000000000000000000000000000] - (.Lenovo(beijing) Limited - Lenovo Settings.) – C:\Windows\System32\LenovoWiFiHotspotSvr.exe [0] [PID.2528] =>.Lenovo(beijing) Limited
              [MD5.0A3FB35B6442675D8F76BF99A14F0CC1] - (.Lenovo(beijing) Limited - Lenovo Settings.) – C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe [258544] [PID.2536] =>.Lenovo (Beijing) Limited®
              [MD5.CB609E1E85B2117031431AEEB4ACAC63] - (.Lenovo - HarmonySettingService.) – C:\Program Files (x86)\Lenovo\Harmony\Setting\HarmonySettingService .exe [19896] [PID.2572] =>.LENOVO®
              [MD5.205D1A6D106ACFDB71A1BDEC0C924173] - (.Lenovo Group Limited - Lenovo Settings Service.) – C:\Program Files\Lenovo\SettingsDependency\SettingsService.ex e [2016040] [PID.2652] =>.LENOVO®
              [MD5.12A0B27BCD5D06F1FF042C5C3BD973FC] - (.Lenovo Group Limited - Lenovo.Modern.ImController.) – C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.Im Controller.exe [62792] [PID.2684] =>.Lenovo®
              [MD5.74B11ED06396C932FCC49519CA3D08EE] - (. - Printer Communication System.) – C:\Windows\System32\lxebcoms.exe [598696] [PID.2692] =>.Lexmark International, Inc.®
              [MD5.7D811EA7A2AAA49B0446D42CBC1CD338] - (.Apple Inc. - MobileDeviceService.) – C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.2708] =>.Apple Inc.®
              [MD5.2E7A98ADE2CF733C46859E40A5348DB1] - (.Lenovo - RapidBoot HDD Accelerator Service.) – C:\Program Files\Lenovo\OneKey Optimizer\bin\FbService.exe [191512] [PID.2716] =>.Lenovo
              [MD5.73933F0BBD77436D14959A0BA5DAE3C4] - (.Adobe Systems Incorporated - Adobe Update Service.) – C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640] [PID.2724] =>.Adobe Systems Incorporated®
              [MD5.5CE986C82313E6F9D0973E2A74A0BA20] - (.NVIDIA Corporation - NVIDIA Container.) – C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784] [PID.2732] =>.NVIDIA Corporation®
              [MD5.868630DCAE43495922F66A737D9469B2] - (.Lenovo(beijing) Limited - OneKey Optimizer Control Service.) – C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOControlSvc.exe [113944] [PID.2740] =>.Lenovo (Beijing) Limited®
              [MD5.E42BCCE03A0A4CECC0C5A86600DF5070] - (.Lenovo Corporation - Lenovo® Multimedia and Comm Subsystem Contr.) – C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [560584] [PID.2748] =>.LENOVO®
              [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) – C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2756] =>.Apple Inc.®
              [MD5.7D01451FA57540CAF8FCF48D26252BF7] - (.Lenovo(beijing) Limited - OneKey Optimizer Self Update Install Servic.) – C:\Program Files\Lenovo\OneKey Optimizer\bin\OKOUpdataService.exe [2544408] [PID.2768] =>.Lenovo (Beijing) Limited®
              [MD5.0B7CFF94C247E661A9D5F7FDAB2F726B] - (.NVIDIA Corporation - NVIDIA Wireless Controller Service.) – C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712] [PID.2784] =>.NVIDIA Corporation®
              [MD5.FB452131A790111332041B88039F98B4] - (…) – C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe [133440] [PID.2812] =>.Lenovo®
              [MD5.B0F327821DDD9C35F9C283C25ECCE71D] - (.Lenovo - PhoneCompanionPusher.) – C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [321520] [PID.2820] =>.Lenovo (Beijing) Limited®
              [MD5.5417713A06537C28875E6406851CA30C] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) – C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [124520] [PID.2828] =>.Intel Corporation - pGFX®
              [MD5.00D33CFD7F72083A69C91692D5C48E95] - (.PointGrab LTD - Lenovo Motion Control.) – C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe [167176] [PID.2848] =>.PointGrab Ltd®
              [MD5.D635E700E43F4ECA021FD159CFF3F8B9] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) – C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472] [PID.2856] =>.Synaptics Incorporated®
              [MD5.114F33B738540F264BE80D447A98A262] - (.PointGrab LTD - Lenovo Motion Control.) – C:\Program Files (x86)\Lenovo\Motion Control\PG_Service_Launcher.exe [524552] [PID.2864] =>.PointGrab Ltd®
              [MD5.840E0468368EB5FD87371EF508D72ACF] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) – C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2218712] [PID.2872] =>.Adobe Systems Incorporated®
              [MD5.28E521A6ABA9DE062A3719452816F495] - (.Malwarebytes - Malwarebytes Service.) – C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648] [PID.2892] =>.Malwarebytes Corporation®
              [MD5.EECC6FB48D5137A331D02AAC1D99DF8C] - (.Lenovo - Lenovo Yoga Mode Control.) – C:\ProgramData\LenovoTransition\Server\x64\ymc.exe [30464] [PID.2900] =>.LENOVO®
              [MD5.B00CA1F8B9B6946EA2C8751A36EFCE21] - (.Lenovo Corporation - Lenovo® Multimedia and Comm Subsystem Audio.) – C:\Program Files\Lenovo\Communications Utility\avfaudiosw.exe [452552] [PID.3284] =>.LENOVO®
              [MD5.BA904AF6E0D48B929B74A7EC9DF9D3AD] - (.PointGrab LTD - Lenovo Motion Control.) – C:\Program Files (x86)\Lenovo\Motion Control\WebcamSplitterServer.exe [1236744] [PID.1152] =>.PointGrab Ltd®
              [MD5.00000000000000000000000000000000] - (.Lenovo - Lenovo Update Service.) – C:\WINDOWS\System32\LenovoUpdate.exe [0] [PID.4728] =>.Lenovo
              [MD5.E96D596186F77552701BC84855F82B05] - (.NVIDIA Corporation - NVIDIA Container.) – C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [425408] [PID.3564] =>.NVIDIA Corporation®
              [MD5.8705EE93E1BFC4308F0DEDA2FA02DE3E] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) – C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3948216] [PID.1968] =>.Synaptics Incorporated®
              [MD5.02B07DA28089AAF8034749BCB5DD3657] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) – C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [211640] [PID.2928] =>.Synaptics Incorporated®
              [MD5.128B163162453828E5D5106F915D129E] - (.Lenovo Group Limited - Lenovo.Modern.ImController.PluginHost.) – C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.LenovoCorporation.LenovoS ettings_4642shxvsv8s2.exe [38216] [PID.5588] =>.Lenovo®
              [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxEM Module.) – C:\WINDOWS\system32\igfxEM.exe [0] [PID.2412] =>.Intel Corporation
              [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxHK Module.) – C:\WINDOWS\system32\igfxHK.exe [0] [PID.5276] =>.Intel Corporation
              [MD5.00000000000000000000000000000000] - (.Authors - .) – C:\WINDOWS\system32\igfxTray.exe [0] [PID.5708] =>.Intel Corporation
              [MD5.E9FCA04DBF31BB6BA00A033E06D90B2C] - (.NVIDIA Corporation - NVIDIA Settings.) – C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456632] [PID.6408] =>.NVIDIA Corporation®
              [MD5.01E4118E5850159F988EB4C54069B4CC] - (…) – C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [644080] [PID.3436] =>.Lenovo (Beijing) Limited®
              [MD5.079511E999ACAB4B8CC08432F0363368] - (.Dolby Laboratories Inc. - DolbyDigitalPlus.) – C:\Program Files\Dolby\DDP_F3\ddpf3.exe [746496] [PID.2556] =>.Dolby Laboratories Inc.
              [MD5.B0271E30A7E4E0385E4F2291EEA97B32] - (…) – C:\Program Files (x86)\Lenovo\LenovoTransition\TransitionServer.exe [107776] [PID.6836] =>.LENOVO®
              [MD5.63548D54F59C98EF584704A8AFB285D2] - (…) – C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe [410096] [PID.7236] =>.Lenovo (Beijing) Limited®
              [MD5.51FFA164418B97B6B4CAFE5A0B7097B0] - (. - Printer Device Monitor.) – C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe [772712] [PID.7440] =>.Lexmark International, Inc.®
              [MD5.C0053C87AEFDE64D6C0179BE7E1C393B] - (.Copyright (c) 2008 - .) – C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe [150264] [PID.7636] =>.Lexmark International, Inc.®
              [MD5.6C99DF5B6A6EB1D8D6F3FD60A0C614D6] - (.Intel Corporation - IAStorDataSvc.) – C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18584] [PID.6368] =>.Intel® Rapid Storage Technology®
              [MD5.08C42E275557776BE1367B3DE616D0E3] - (.Intel Corporation - Intel(R) ME Service.) – C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [132896] [PID.7904] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              [MD5.CA295D3E5032DDF8A3CBD1A256E646FA] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) – C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496] [PID.7768] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              [MD5.ED5C8B920F2ACF11A26586B2FA66BF3D] - (.Intel Corporation - Intel(R) Local Management Service.) – C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [409376] [PID.7308] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              [MD5.FD3170DA1F8E5F1D4BDE9E3CF2593B17] - (.Intel Corporation - IAStorIcon.) – C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322712] [PID.9052] =>.Intel® Rapid Storage Technology®
              [MD5.82BA979332BF2C82A419E5ED1E8E77D9] - (.Lenovo Corporation - Lenovo® Multimedia and Comm Subsystem Nativ.) – C:\Program Files\Lenovo\Communications Utility\tpknrres.exe [521672] [PID.7916] =>.LENOVO®
              [MD5.45007C9BAA12402CFF9A856343B82CF9] - (.Lenovo Group Limited - Lenovo.Modern.ImController.PluginHost.) – C:\Program Files\Lenovo\iMController\PluginHost\Lenovo.Modern .ImController.PluginHost.Device.exe [37704] [PID.7880] =>.Lenovo®
              [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.616] =>.Google Inc®
              [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4916] =>.Google Inc®
              [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.1584] =>.Google Inc®
              [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.1456] =>.Google Inc®
              [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.8728] =>.Google Inc®
              [MD5.AFE645B8523B69E613F5706E2032D317] - (.Nicolas Coolman - ZHPDiag.) – C:\Users\Clint\Desktop\ZHPDiag3.exe [2633216] [PID.8972] =>.Nicolas Coolman
              [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.2252] =>.Google Inc®

              —\ Google Chrome, Start,Search,Extensions (12) - 0s
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc.
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com =>.Google Inc.
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc.
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://mail.live.com
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://ogs.google.com =>.Google Inc.
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://outlook.live.com =>.Microsoft Corporation
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://snt149.mail.live.com
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
              G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
              G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
              G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

              —\ Mozilla Firefox,Plugins,Start,Search,Extensions (1) - 1s
              P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) – C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_ 186.dll =>.Adobe Systems Incorporated

              —\ Internet Explorer Extensions, Start, Search (19) - 0s
              R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
              R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
              R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
              R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc.
              R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
              R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
              R1 - HKEY_USERS\S-1-5-21-3646257312-145341772-451683423-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
              R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer

              —\ Internet Explorer, Proxy Management (7) - 0s
              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyEnable = 0
              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,MigrateProxy = 1
              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,EnableHttp1_1 = 1
              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyHttp1.1 = 1
              R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigProxy = wininet.dll
              R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyEnable = 0
              R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Para meters\Internet\ManualProxies

              —\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
              F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
              F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
              F2 - REG:system.ini: VMApplet=

              —\ Hosts file redirection (1) - 0s
              ~ Le fichier hôte est sain (The hosts file is clean) (4)

              —\ Browser Helper Object (BHO) (2) - 0s
              O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) – C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation®
              O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) – C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®

              —\ Global shortcuts Startup (115) - 8s
              O4 - GS\Desktop [Administrator]: Adobe After Effects CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2015.3.) C:\Program Files\Adobe\Adobe After Effects CC 2015.3\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Administrator]: Adobe Audition CC 2015.2.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.2.) C:\Program Files\Adobe\Adobe Audition CC 2015.2\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Administrator]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Administrator]: Adobe Premiere Pro CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.4.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015.3\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Administrator]: Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\Desktop [Administrator]: Final Draft 10.lnk . (.Cast & Crew Production Software, LLC - Final Draft.) C:\Program Files (x86)\Final Draft 10\Final Draft.exe
              O4 - GS\Desktop [Administrator]: Norton Installation Files.lnk . (…) C:\Users\Public\Downloads\Norton{NS2281014-SHPD-FSD570026}
              O4 - GS\Desktop [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Clint\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
              O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\Quicklaunch [Administrator]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
              O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
              O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
              O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
              O4 - GS\TaskBar [Administrator]: chrome - Shortcut.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\TaskBar [Administrator]: Harmony.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe =>.LENOVO®
              O4 - GS\TaskBar [Administrator]: UserGuide.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.Lenovo (Beijing) Limited®
              O4 - GS\TaskBar [Administrator]: НАНАНАНАНАНАНА.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
              O4 - GS\Startup [Administrator]: ok2089576.lnk . (…) C:\Program Files (x86)\cartridge\antivirals.exe
              O4 - GS\Programs [Administrator]: Harmony Picks Introduction.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe i =>.LENOVO®
              O4 - GS\Programs [Administrator]: Harmony Settings Introduction.lnk . (.Lenovo - Lenovo.HarmonySetting.) C:\Program Files (x86)\Lenovo\Harmony\Setting\Lenovo.HarmonySetting .exe i =>.LENOVO®
              O4 - GS\Programs [Administrator]: LenovoSettings.lnk . (.Lenovo Group Limited - Lenovo.Modern.DesktopToastsHelper.) C:\ProgramData\Lenovo\iMController\Plugins\LenovoA ppPromotionPlugin\x64\DesktopToastsHelper.exe =>.Lenovo®
              O4 - GS\Programs [Administrator]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Clint\AppData\Local\Microsoft\OneDrive\On eDrive.exe =>.Microsoft Corporation®
              O4 - GS\Programs [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\Desktop [Clint]: Adobe After Effects CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2015.3.) C:\Program Files\Adobe\Adobe After Effects CC 2015.3\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Clint]: Adobe Audition CC 2015.2.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.2.) C:\Program Files\Adobe\Adobe Audition CC 2015.2\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Clint]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Clint]: Adobe Premiere Pro CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.4.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015.3\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Clint]: Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\Desktop [Clint]: Final Draft 10.lnk . (.Cast & Crew Production Software, LLC - Final Draft.) C:\Program Files (x86)\Final Draft 10\Final Draft.exe
              O4 - GS\Desktop [Clint]: Norton Installation Files.lnk . (…) C:\Users\Public\Downloads\Norton{NS2281014-SHPD-FSD570026}
              O4 - GS\Desktop [Clint]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\Desktop [Clint]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Clint\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
              O4 - GS\Quicklaunch [Clint]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\Quicklaunch [Clint]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
              O4 - GS\sendTo [Clint]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
              O4 - GS\sendTo [Clint]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
              O4 - GS\sendTo [Clint]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
              O4 - GS\TaskBar [Clint]: chrome - Shortcut.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\TaskBar [Clint]: Harmony.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe =>.LENOVO®
              O4 - GS\TaskBar [Clint]: UserGuide.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.Lenovo (Beijing) Limited®
              O4 - GS\TaskBar [Clint]: НАНАНАНАНАНАНА.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
              O4 - GS\Startup [Clint]: ok2089576.lnk . (…) C:\Program Files (x86)\cartridge\antivirals.exe
              O4 - GS\Programs [Clint]: Harmony Picks Introduction.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe i =>.LENOVO®
              O4 - GS\Programs [Clint]: Harmony Settings Introduction.lnk . (.Lenovo - Lenovo.HarmonySetting.) C:\Program Files (x86)\Lenovo\Harmony\Setting\Lenovo.HarmonySetting .exe i =>.LENOVO®
              O4 - GS\Programs [Clint]: LenovoSettings.lnk . (.Lenovo Group Limited - Lenovo.Modern.DesktopToastsHelper.) C:\ProgramData\Lenovo\iMController\Plugins\LenovoA ppPromotionPlugin\x64\DesktopToastsHelper.exe =>.Lenovo®
              O4 - GS\Programs [Clint]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Clint\AppData\Local\Microsoft\OneDrive\On eDrive.exe =>.Microsoft Corporation®
              O4 - GS\Programs [Clint]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\Desktop [Guest]: Adobe After Effects CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2015.3.) C:\Program Files\Adobe\Adobe After Effects CC 2015.3\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Guest]: Adobe Audition CC 2015.2.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.2.) C:\Program Files\Adobe\Adobe Audition CC 2015.2\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Guest]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Guest]: Adobe Premiere Pro CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.4.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015.3\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
              O4 - GS\Desktop [Guest]: Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\Desktop [Guest]: Final Draft 10.lnk . (.Cast & Crew Production Software, LLC - Final Draft.) C:\Program Files (x86)\Final Draft 10\Final Draft.exe
              O4 - GS\Desktop [Guest]: Norton Installation Files.lnk . (…) C:\Users\Public\Downloads\Norton{NS2281014-SHPD-FSD570026}
              O4 - GS\Desktop [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Clint\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
              O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\Quicklaunch [Guest]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
              O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
              O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
              O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
              O4 - GS\TaskBar [Guest]: chrome - Shortcut.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O4 - GS\TaskBar [Guest]: Harmony.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe =>.LENOVO®
              O4 - GS\TaskBar [Guest]: UserGuide.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.Lenovo (Beijing) Limited®
              O4 - GS\TaskBar [Guest]: НАНАНАНАНАНАНА.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
              O4 - GS\Startup [Guest]: ok2089576.lnk . (…) C:\Program Files (x86)\cartridge\antivirals.exe
              O4 - GS\Programs [Guest]: Harmony Picks Introduction.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe i =>.LENOVO®
              O4 - GS\Programs [Guest]: Harmony Settings Introduction.lnk . (.Lenovo - Lenovo.HarmonySetting.) C:\Program Files (x86)\Lenovo\Harmony\Setting\Lenovo.HarmonySetting .exe i =>.LENOVO®
              O4 - GS\Programs [Guest]: LenovoSettings.lnk . (.Lenovo Group Limited - Lenovo.Modern.DesktopToastsHelper.) C:\ProgramData\Lenovo\iMController\Plugins\LenovoA ppPromotionPlugin\x64\DesktopToastsHelper.exe =>.Lenovo®
              O4 - GS\Programs [Guest]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Clint\AppData\Local\Microsoft\OneDrive\On eDrive.exe =>.Microsoft Corporation®
              O4 - GS\Programs [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\CommonDesktop [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
              O4 - GS\CommonDesktop [Public]: Adobe Story CC.lnk . (…) C:\Program Files (x86)\Adobe Story CC\Adobe Story CC.exe
              O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
              O4 - GS\CommonDesktop [Public]: HipChat.lnk . (…) C:\Program Files (x86)\Atlassian\HipChat4\HipChat.exe =>.Atlassian, Inc.®
              O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
              O4 - GS\Programs [Public]: Harmony Picks Introduction.lnk . (.Lenovo - Lenovo.HarmonyPicks.) C:\Program Files (x86)\Lenovo\Harmony\Picks\Lenovo.HarmonyPicks.exe i =>.LENOVO®
              O4 - GS\Programs [Public]: Harmony Settings Introduction.lnk . (.Lenovo - Lenovo.HarmonySetting.) C:\Program Files (x86)\Lenovo\Harmony\Setting\Lenovo.HarmonySetting .exe i =>.LENOVO®
              O4 - GS\Programs [Public]: LenovoSettings.lnk . (.Lenovo Group Limited - Lenovo.Modern.DesktopToastsHelper.) C:\ProgramData\Lenovo\iMController\Plugins\LenovoA ppPromotionPlugin\x64\DesktopToastsHelper.exe =>.Lenovo®
              O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Clint\AppData\Local\Microsoft\OneDrive\On eDrive.exe =>.Microsoft Corporation®
              O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Clint\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
              O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
              O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Steps Recorder.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
              O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
              O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
              O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: Adobe Bridge CC (64bit).lnk . (.Adobe Systems Incorporated - Adobe Bridge CC.) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated®
              O4 - GS\ProgramsCommon [Public]: Adobe Character Animator (Preview 4).lnk . (.Adobe Systems Incorporated - Character Animator Preview 4.) C:\Program Files\Adobe\Adobe Character Animator (Preview 4)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated®
              O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
              O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2015.3.) C:\Program Files\Adobe\Adobe Media Encoder CC 2015.3\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
              O4 - GS\ProgramsCommon [Public]: Adobe Premiere Pro CC 2015.3.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.4.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015.3\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
              O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (…) C:\WINDOWS\Installer{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
              O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
              O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows®
              O4 - GS\ProgramsCommon [Public]: OneDrive for Business.lnk . (.Microsoft Corporation - Microsoft OneDrive for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows®
              O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: Skype for Business 2016.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
              O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
              O4 - GS\ProgramsCommon [Public]: Моzillа Firеfох.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat

              —\ Lop.com/Domain Hijackers (5) - 0s
              O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = pepperdine.edu
              O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 137.159.8.1 137.159.198.3 137.159.246.73
              O17 - HKLM\System\CCS\Services\Tcpip..{f7956392-016b-4f12-9f65-825edbf06453}: NameServer = 198.101.242.72,23.253.163.53,192.168.2.1 =>.Local IP Adress
              O17 - HKLM\System\CCS\Services\Tcpip..{f7956392-016b-4f12-9f65-825edbf06453}: DhcpNameServer = 137.159.8.1 137.159.198.3 137.159.246.73
              O17 - HKLM\System\CCS\Services\Tcpip..{f7956392-016b-4f12-9f65-825edbf06453}: DhcpDomain = pepperdine.edu

              —\ Extra protocols (26) - 0s
              O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
              O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
              O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
              O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
              O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
              O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) – C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
              O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
              O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
              O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) – C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
              O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) – C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
              O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) – C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
              O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) – C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
              O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
              O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) – C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
              O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
              O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
              O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) – C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
              O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
              O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
              O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

              —\ Software installed (127) - 7s
              O42 - Logiciel: Adobe After Effects CC 2015.3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] – AEFT_13_8_0 =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] – {63B5DA5A-477B-438D-A6A0-118787A4C71B} =>.Adobe Systems Incorporated
              O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] – Adobe AIR =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Audition CC 2015.2 - (.Adobe Systems Incorporated.) [HKLM][64Bits] – AUDT_9_2_1 =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Bridge CC (64 Bit) - (.Adobe Systems Incorporated.) [HKLM][64Bits] – {359F8007-6486-429C-A8C5-D67F6897C88C} =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] – Adobe Creative Cloud =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Flash Player 24 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] – Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Media Encoder CC 2015.3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] – AME_10_3_0 =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Photoshop CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] – {793C2BF7-A4FE-4608-91C9-9282C5801C21} =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Premiere Pro CC 2015.3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] – PPRO_10_4_0 =>.Adobe Systems Incorporated®
              O42 - Logiciel: Adobe Story CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] – {19D9282F-2B61-3CFD-5E34-6953917C2346} =>.Adobe Systems Incorporated
              O42 - Logiciel: Adobe Story CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] – com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B 320485DF8CE.1 =>.Adobe Systems Incorporated
              O42 - Logiciel: Apple Application Support (32-bit) - (.Apple Inc..) [HKLM][64Bits] – {D079CAAD-0C31-47A2-9AF5-A82F9CD9B221} =>.Apple Inc.
              O42 - Logiciel: Apple Application Support (64-bit) - (.Apple Inc..) [HKLM][64Bits] – {64E6007B-1DA9-42CD-BBE4-D5FA67A7C71D} =>.Apple Inc.
              O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] – {55BB2110-FB43-49B3-93F4-945A0CFB0A6C} =>.Apple Inc.
              O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] – {56EC47AA-5813-4FF6-8E75-544026FBEA83} =>.Apple Inc.
              O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] – {2A075BB4-E976-4278-BF3F-E5C6945D84C0} =>.Your Company Name
              O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] – {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
              O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] – CCleaner =>.Piriform Ltd®
              O42 - Logiciel: Cisco VideoGuard Player - (.Cisco Systems, Inc.) [HKLM][64Bits] – {28145961-299d-4f61-88d6-ff9ea46bd919}
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {3117B53D-A409-4D99-A0DE-11A1A40696FA} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {4430150F-61B3-4142-BE04-EAC68C8DDA18} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {4ABFEC28-1554-493D-A84D-BEA21D8E6D6F} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {4AF6C9BC-D8DB-4286-94D9-474CE54ADAA2} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {503B47A9-E34A-4841-ADD7-417191D5DB5E} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {546FF45D-2467-4950-AAFB-0A06ACBB6B2C} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {5B2190E9-199D-450A-94B3-4D6826C770C2} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {5BEFE1E1-F597-4B79-913B-15FFDB25B744} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {63DE35C9-B080-4D03-B110-99E14FD35BCE} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {65316098-0220-4D5C-B37A-6136083A0897} =>.Lenovo Group Limited
              O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] – {E966DBE4-5075-465E-BA81-BC9A3A3204B3} =>.Lenovo Group Limited
              O42 - Logiciel: Dolby Digital Plus - (.Dolby Laboratories Inc.) [HKLM][64Bits] – {D2CD7DCF-D129-4A54-8543-38BECC6CFDAE} =>.Dolby Laboratories Inc
              O42 - Logiciel: Final Draft - (.Cast & Crew Production Software, LLC.) [HKLM][64Bits] – {98CA9FD5-87B8-407B-B803-2DB8A05AACBE}
              O42 - Logiciel: FlashBack Express 5 - (.Blueberry.) [HKLM][64Bits] – FlashBack Express 5 =>.Blueberry Software Ltd®
              O42 - Logiciel: Genesys USB Mass Storage Device - (.Genesys Logic.) [HKLM][64Bits] – {959B7F35-2819-40C5-A0CD-3C53B5FCC935} =>.Genesys Logic
              O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM][64Bits] – GOM Player =>.Gretech Corporation
              O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] – Google Chrome =>.Google Inc®
              O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] – {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
              O42 - Logiciel: Harmony - (.Lenovo.) [HKLM][64Bits] – {A06FD661-4B18-4054-B09C-E852D28E5AEB} =>.Lenovo
              O42 - Logiciel: Harmony - (.Lenovo.) [HKLM][64Bits] – {D02D9427-507D-4912-9285-97FCD5417E72} =>.Lenovo
              O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] – {BD667C75-0EDD-4073-A406-A6DD9C3016EB} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] – {f5d71765-7cd1-4e68-998f-5b379e725da3} =>.Intel Corporation - Software and Firmware Products®
              O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] – {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation - pGFX®
              O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] – {085F8D6D-D06F-443B-A872-5B88C6391203} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] – {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] – {D5EA481B-D855-4A0E-9E9A-21AB4F5A3C49} =>.Intel Corporation
              O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] – {D6C8B829-18A3-4E80-8B4B-1CFA9588A2E2} =>.Intel Corporation
              O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] – {33d748b9-4100-4fef-bcdc-33e69f098c38} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] – {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX®
              O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] – {2CC64CFB-0B4F-45D1-94CB-3F68DC4A60AE} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] – {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] – {9FD91C5C-44AE-4D9D-85BE-AE52816B0294} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] – {B7368FC9-A295-4A95-A9EB-AFD659BA7B71} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Update Manager - (.Intel Corporation.) [HKLM][64Bits] – {7224B7CE-196C-4E2A-A1AE-1D7BF259FD36} =>.Intel Corporation
              O42 - Logiciel: Intel(R) Wireless Bluetooth(R)(patch version 17.1.1449.356) - (.Intel Corporation.) [HKLM][64Bits] – {302600C1-6BDF-4FD1-1411-148929CC1385} =>.Intel Corporation
              O42 - Logiciel: Intel® PROSet/Wireless Software - (.Intel Corporation.) [HKLM][64Bits] – {9bffdf20-c3a3-4e93-9cbf-61712c6a38be} =>.Intel Corporation-Wireless Connectivity Solutions®
              O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] – {2ABB66D0-7921-46E4-AF7D-CF40323A10BB} =>.Intel Corporation
              O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] – {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} =>.Intel Corporation
              O42 - Logiciel: Internet Security Essentials - (.Comodo.) [HKLM][64Bits] – ComodoIse =>.Comodo Security Solutions®
              O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] – {81C96689-EA5B-4B7D-A04F-16326EC51BC2} =>.Apple Inc.
              O42 - Logiciel: Java 8 Update 111 - (.Oracle Corporation.) [HKLM][64Bits] – {26A24AE4-039D-4CA4-87B4-2F32180111F0} =>.Oracle Corporation
              O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] – {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
              O42 - Logiciel: Lenovo App Services - (.Lenovo.) [HKLM][64Bits] – Lenovo App Services =>.SweetLabs Inc.®
              O42 - Logiciel: Lenovo EasyCamera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] – {E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC} =>.Realtek Semiconductor Corp®
              O42 - Logiciel: Lenovo FusionEngine - (.Lenovo, Inc..) [HKLM][64Bits] – Lenovo FusionEngine =>.Lenovo, Inc.
              O42 - Logiciel: Lenovo Mobile Phone Wireless Import - (.Lenovo.) [HKLM][64Bits] – {DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6} =>.Lenovo
              O42 - Logiciel: Lenovo Mobile Phone Wireless Import - (.Lenovo.) [HKLM][64Bits] – InstallShield_{DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6} =>.Lenovo
              O42 - Logiciel: Lenovo Motion Control - (.PointGrab.) [HKLM][64Bits] – {D3F38500-4C99-4E4F-9786-B907224E13A1} =>.PointGrab
              O42 - Logiciel: Lenovo Motion Control - (.PointGrab.) [HKLM][64Bits] – InstallShield_{D3F38500-4C99-4E4F-9786-B907224E13A1} =>.PointGrab Ltd®
              O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] – {46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.®
              O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] – InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.®
              O42 - Logiciel: Lenovo Patch Utility - (.Lenovo Group Limited.) [HKLM][64Bits] – {E8F27ADF-B1ED-41AF-A7EF-D5E71778480C} =>.Lenovo Group Limited
              O42 - Logiciel: Lenovo Patch Utility 64 bit - (.Lenovo Group Limited.) [HKLM][64Bits] – {49A09C2C-FFF4-478E-B397-5E0979F67F5D} =>.Lenovo Group Limited
              O42 - Logiciel: Lenovo PhoneCompanion - (.Lenovo.) [HKLM][64Bits] – {0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B} =>.Lenovo
              O42 - Logiciel: Lenovo PhoneCompanion - (.Lenovo.) [HKLM][64Bits] – InstallShield_{0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B} =>.Lenovo
              O42 - Logiciel: Lenovo Photo Master - (.CyberLink Corp..) [HKLM][64Bits] – {BC94C56A-3649-420C-8756-2ADEBE399D33} =>.CyberLink Corp.
              O42 - Logiciel: Lenovo Reach - (.Stoneware, Inc..) [HKLM][64Bits] – {3245D8C8-7FE0-4FD4-B04B-2720A333D592} =>.Stoneware, Inc.
              O42 - Logiciel: Lenovo System Interface Foundation - (.Lenovo.) [HKLM][64Bits] – {C2E5CA37-C862-4A69-AC6D-24F450A20C16} =>.Lenovo
              O42 - Logiciel: LenovoUtility - (.Lenovo.) [HKLM][64Bits] – {6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA} =>.Lenovo
              O42 - Logiciel: LenovoUtility - (.Lenovo.) [HKLM][64Bits] – InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA} =>.Lenovo
              O42 - Logiciel: Lexmark Pro200-S500 Series - (.Lexmark International, Inc..) [HKLM][64Bits] – Lexmark Pro200-S500 Series =>.Lexmark International, Inc.®
              O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] – {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited
              O42 - Logiciel: NVIDIA 3D Vision Driver 362.00 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Control Panel 362.00 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Elevated User Container - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.UserElevated =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA GeForce Experience 3.1.2.31 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Graphics Driver 362.00 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Optimus Update 2.13.0.21 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA PhysX System Software 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA ShadowPlay 2.13.0.21 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
              O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] – NVIDIAStereo =>.NVIDIA Corporation®
              O42 - Logiciel: NVIDIA Update 2.13.0.21 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Virtual Audio 3.40.1 - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation
              O42 - Logiciel: NVIDIA Wireless Controller Service - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
              O42 - Logiciel: NvNodejs - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation
              O42 - Logiciel: NvTelemetry - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}NvTelemetry =>.NVIDIA Corporation
              O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
              O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation
              O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-008C-0409-0000-0000000FF1CE} =>.Microsoft Corporation
              O42 - Logiciel: OneKey Optimizer - (.Lenovo.) [HKLM][64Bits] – {D5D573DC-D989-4769-9B56-D6A7EA503D7F} =>.Lenovo
              O42 - Logiciel: OneKey Optimizer - (.Lenovo.) [HKLM][64Bits] – InstallShield
              {D5D573DC-D989-4769-9B56-D6A7EA503D7F} =>.Lenovo
              O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] – {185F9795-9663-4F13-9EF9-307A282ADB5A} =>.Your Company Name
              O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] – {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
              O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] – {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
              O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] – {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
              O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
              O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] – {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}ShieldWirelessController =>.NVIDIA Corporation
              O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] – {873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B} =>.Microsoft Corporation
              O42 - Logiciel: Skype™ 7.30 - (.Skype Technologies S.A..) [HKLM][64Bits] – {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
              O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] – Spotify =>.Spotify AB®
              O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] – SynTPDeinstKey =>.Synaptics Incorporated
              O42 - Logiciel: User Manuals - (.Lenovo.) [HKLM][64Bits] – {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} =>.Lenovo
              O42 - Logiciel: User Manuals - (.Lenovo.) [HKLM][64Bits] – InstallShield
              {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} =>.Lenovo
              O42 - Logiciel: Web Companion - (.Lavasoft.) [HKLM][64Bits] – {c640a44a-c241-4147-b69b-d01729ae375f} =>.Lavasoft
              O42 - Logiciel: Windows Driver Package - Lenovo (ACPIVPC) System (09/24/2013 19.29.2.34) - (.Lenovo.) [HKLM][64Bits] – EE9B1F2037C580F36D92FA431CC02BFF04C31F15 =>.Lenovo (Beijing) Limited®
              O42 - Logiciel: Windows Driver Package - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.28 - (.Lenovo.) [HKLM][64Bits] – 6BCA401E9CBEED970D75F55FA5320F60D11984E9 =>.Lenovo (Beijing) Limited®
              O42 - Logiciel: ZoomInfo Contact Contributor - (..) [HKCU][64Bits] – ZoomInfo Contact Contributor

              —\ HKCU & HKLM Software Keys (105) - 7s
              HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
              HKLM\SOFTWARE\Wow6432Node\Adware Removal Tool by TSA
              HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies
              HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. =>.Apple Computer, Inc.
              HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc.
              HKLM\SOFTWARE\Wow6432Node\Blueberry Software
              HKLM\SOFTWARE\Wow6432Node\ComodoGroup =>.ComodoGroup
              HKLM\SOFTWARE\Wow6432Node\CyberLink =>.CyberLink Corporation
              HKLM\SOFTWARE\Wow6432Node\DigitalWave =>.DigitalWave Corporation
              HKLM\SOFTWARE\Wow6432Node\dingdongde
              HKLM\SOFTWARE\Wow6432Node\dnding
              HKLM\SOFTWARE\Wow6432Node\Eset =>.ESET
              HKLM\SOFTWARE\Wow6432Node\Free YouTube Downloader =>.DawnArk, Inc
              HKLM\SOFTWARE\Wow6432Node\FreeYouTubeDownloader =>.DawnArk, Inc
              HKLM\SOFTWARE\Wow6432Node\FusionEngine =>.FusionEngine
              HKLM\SOFTWARE\Wow6432Node\Genesys Logic =>.Genesys Logic
              HKLM\SOFTWARE\Wow6432Node\Google =>.Google
              HKLM\SOFTWARE\Wow6432Node\GRETECH =>.Gretech
              HKLM\SOFTWARE\Wow6432Node\HaaliMkx =>.Haali Media
              HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers
              HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
              HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
              HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics
              HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
              HKLM\SOFTWARE\Wow6432Node\Lenovo =>.Lenovo
              HKLM\SOFTWARE\Wow6432Node\Lexmark =>.Lexmark
              HKLM\SOFTWARE\Wow6432Node\LexmarkInkjet =>.Lexmark
              HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
              HKLM\SOFTWARE\Wow6432Node\Macrovision =>.Macrovision
              HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
              HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
              HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
              HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance
              HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation
              HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
              HKLM\SOFTWARE\Wow6432Node\PointGrab =>.PointGrab
              HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek
              HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
              HKLM\SOFTWARE\Wow6432Node\SHAREit =>.Lenovo Group Limited
              HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
              HKLM\SOFTWARE\Wow6432Node\Software =>.Unknow
              HKLM\SOFTWARE\Wow6432Node\WOW6432Node =>.Microsoft Corporation
              HKLM\SOFTWARE\Wow6432Node\Norton =>.Norton
              HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
              HKCU\SOFTWARE\ABSoft =>.ABSoft
              HKCU\SOFTWARE\Adobe =>.Adobe
              HKCU\SOFTWARE\Apowersoft =>.Apowersoft
              HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
              HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
              HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
              HKCU\SOFTWARE\Atlassian =>.Atlassian
              HKCU\SOFTWARE\AVAST Software =>.AVAST Software
              HKCU\SOFTWARE\Blueberry Software
              HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
              HKCU\SOFTWARE\CanonBJ =>.Canon Inc.
              HKCU\SOFTWARE\Chromium =>.Chromium
              HKCU\SOFTWARE\Cisco =>.Cisco
              HKCU\SOFTWARE\ComodoGroup =>.ComodoGroup
              HKCU\SOFTWARE\Cyberlink =>.CyberLink Corporation
              HKCU\SOFTWARE\DVDVideoSoft =>.DVDVideoSoft
              HKCU\SOFTWARE\eBook Pro
              HKCU\SOFTWARE\Evaer
              HKCU\SOFTWARE\Final Draft
              HKCU\SOFTWARE\FLEXlm License Manager =>.FlexNet
              HKCU\SOFTWARE\Google =>.Google
              HKCU\SOFTWARE\GRETECH =>.Gretech
              HKCU\SOFTWARE\Haali =>.Haali Media
              HKCU\SOFTWARE\IM Providers =>.IM Providers
              HKCU\SOFTWARE\Intel =>.Intel
              HKCU\SOFTWARE\iZotope =>.iZotope
              HKCU\SOFTWARE\JavaSoft =>.JavaSoft
              HKCU\SOFTWARE\LAV =>.LAV Inc
              HKCU\SOFTWARE\Lenovo =>.Lenovo
              HKCU\SOFTWARE\LexmarkInkjet =>.Lexmark
              HKCU\SOFTWARE\LexmarkPhoto =>.Lexmark
              HKCU\SOFTWARE\LogSys
              HKCU\SOFTWARE\Macromedia =>.Macromedia
              HKCU\SOFTWARE\malavida =>.Maladiva.com
              HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
              HKCU\SOFTWARE\Manufacturer
              HKCU\SOFTWARE\McAfee =>.McAfee Inc.
              HKCU\SOFTWARE\Mozilla =>.Mozilla
              HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
              HKCU\SOFTWARE\Netscape =>.Netscape
              HKCU\SOFTWARE\Norton =>.Norton
              HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
              HKCU\SOFTWARE\O&O =>.O&O Software GmbH
              HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
              HKCU\SOFTWARE\Piriform =>.Piriform
              HKCU\SOFTWARE\PTP =>.PTP Software
              HKCU\SOFTWARE\QtProject =>.QtProject
              HKCU\SOFTWARE\Realtek =>.Realtek
              HKCU\SOFTWARE\Redemption =>.Legitimate
              HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
              HKCU\SOFTWARE\Skype =>.Skype
              HKCU\SOFTWARE\Spotify =>.Spotify
              HKCU\SOFTWARE\Synaptics =>.Synaptics
              HKCU\SOFTWARE\Sysinternals =>.Sysinternals
              HKCU\SOFTWARE\vodburner
              HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
              HKCU\SOFTWARE\Zemana =>.Zemana
              HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
              HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
              HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
              HKCU\SOFTWARE\AppDataLow\Software\Norton =>.Norton

              —\ Contents of the Common Files folders (283) - 34s
              O43 - CFD: 05/10/2016 - AD – C:\Program Files\Adobe =>.Adobe Systems Incorporated®
              O43 - CFD: 07/06/2015 - D – C:\Program Files\Adobe Photo =>.Adobe Inc.
              O43 - CFD: 28/01/2016 - AD – C:\Program Files\Bonjour =>.Apple Inc.
              O43 - CFD: 06/01/2017 - D – C:\Program Files\CCleaner =>.Piriform
              O43 - CFD: 08/01/2017 - D – C:\Program Files\Common Files =>.Microsoft Corporation
              O43 - CFD: 04/01/2017 - [0] D – C:\Program Files\COMODO =>.Comodo
              O43 - CFD: 07/06/2015 - D – C:\Program Files\DIFX =>.Microsoft Corporation
              O43 - CFD: 07/06/2015 - D – C:\Program Files\Dolby =>.Dolby
              O43 - CFD: 07/06/2015 - D – C:\Program Files\Google Play Music =>.Google Inc.
              O43 - CFD: 18/09/2016 - AD – C:\Program Files\Intel =>.Intel Corporation
              O43 - CFD: 11/12/2016 - D – C:\Program Files\Internet Explorer =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - D – C:\Program Files\iPod =>.Apple Inc.®
              O43 - CFD: 06/01/2017 - D – C:\Program Files\iTunes =>.Apple Inc.
              O43 - CFD: 17/11/2016 - D – C:\Program Files\Lenovo =>.Lenovo
              O43 - CFD: 07/06/2015 - D – C:\Program Files\Lenovo PhoneCompanion =>.Lenovo
              O43 - CFD: 07/06/2015 - D – C:\Program Files\Lenovo PhotoMasterImport =>.Lenovo (Beijing) Limited®
              O43 - CFD: 26/12/2016 - D – C:\Program Files\Lexmark =>.Lexmark
              O43 - CFD: 26/12/2016 - D – C:\Program Files\Lexmark Pro200-S500 Series =>.Lexmark
              O43 - CFD: 04/01/2017 - D – C:\Program Files\Malwarebytes =>.Malwarebytes
              O43 - CFD: 10/01/2016 - D – C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\Program Files\MSBuild =>.Microsoft Corporation
              O43 - CFD: 04/11/2016 - AD – C:\Program Files\Neat Video for Premiere =>.ABsoft
              O43 - CFD: 28/11/2016 - D – C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
              O43 - CFD: 18/09/2016 - D – C:\Program Files\Realtek =>.Realtek
              O43 - CFD: 18/09/2016 - D – C:\Program Files\Reference Assemblies =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\Program Files\Synaptics =>.Synaptics Incorporated®
              O43 - CFD: 22/08/2013 - [0] HD – C:\Program Files\Uninstall Information =>.Microsoft Corporation
              O43 - CFD: 20/09/2016 - RD – C:\Program Files\Windows Defender =>.Microsoft Corporation
              O43 - CFD: 11/10/2016 - D – C:\Program Files\Windows Mail =>.Microsoft Corporation
              O43 - CFD: 27/10/2016 - D – C:\Program Files\Windows Media Player =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files\Windows NT =>.Microsoft Corporation
              O43 - CFD: 11/10/2016 - D – C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - SHD – C:\Program Files\Windows Sidebar =>.Microsoft Corporation
              O43 - CFD: 05/01/2017 - HD – C:\Program Files\WindowsApps =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
              O43 - CFD: 03/10/2016 - AD – C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
              O43 - CFD: 10/01/2016 - AD – C:\Program Files (x86)\Adobe Story CC
              O43 - CFD: 06/01/2017 - D – C:\Program Files (x86)\Adware Removal Tool by TSA
              O43 - CFD: 15/05/2016 - AD – C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
              O43 - CFD: 12/08/2016 - D – C:\Program Files (x86)\Atlassian =>.BugSplat LLC®
              O43 - CFD: 23/09/2016 - D – C:\Program Files (x86)\Blueberry Software =>.Blueberry Software
              O43 - CFD: 28/01/2016 - AD – C:\Program Files (x86)\Bonjour =>.Apple Inc.
              O43 - CFD: 07/06/2015 - [0] D – C:\Program Files (x86)\Cisco =>.Cisco
              O43 - CFD: 06/01/2017 - D – C:\Program Files (x86)\Common Files =>.Microsoft Corporation
              O43 - CFD: 17/11/2016 - D – C:\Program Files (x86)\CyberLink =>.CyberLink Corporation
              O43 - CFD: 23/09/2016 - D – C:\Program Files (x86)\DVDVideoSoft =>.DVDVideoSoft
              O43 - CFD: 04/01/2017 - D – C:\Program Files (x86)\Final Draft 10
              O43 - CFD: 23/09/2016 - D – C:\Program Files (x86)\FreeCodecPack =>.Free Codec Pack
              O43 - CFD: 04/01/2017 - D – C:\Program Files (x86)\Google =>.Google Inc®
              O43 - CFD: 01/12/2016 - D – C:\Program Files (x86)\GRETECH =>.GRETECH®
              O43 - CFD: 17/11/2016 - HD – C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software
              O43 - CFD: 08/01/2016 - D – C:\Program Files (x86)\Intel =>.Intel Corporation
              O43 - CFD: 05/01/2017 - D – C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
              O43 - CFD: 11/11/2016 - D – C:\Program Files (x86)\Java =>.Oracle
              O43 - CFD: 17/11/2016 - D – C:\Program Files (x86)\Lenovo =>.Lenovo
              O43 - CFD: 07/06/2015 - AD – C:\Program Files (x86)\Lenovo PhoneCompanion =>.Lenovo
              O43 - CFD: 26/12/2016 - D – C:\Program Files (x86)\Lexmark Pro200-S500 Series =>.Lexmark
              O43 - CFD: 26/12/2016 - D – C:\Program Files (x86)\Lexmark Toolbar =>.Lexmark
              O43 - CFD: 04/01/2017 - AD – C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - AD – C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
              O43 - CFD: 04/01/2017 - D – C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
              O43 - CFD: 18/09/2016 - D – C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
              O43 - CFD: 10/01/2016 - D – C:\Program Files (x86)\My Company Name =>.My Company Name
              O43 - CFD: 07/06/2015 - [0] D – C:\Program Files (x86)\New Folder
              O43 - CFD: 08/01/2017 - D – C:\Program Files (x86)\Norton Security =>.Symantec
              O43 - CFD: 08/01/2017 - D – C:\Program Files (x86)\NortonInstaller =>.Symantec
              O43 - CFD: 17/11/2016 - D – C:\Program Files (x86)\NSIS Uninstall Information =>.MSIS
              O43 - CFD: 28/11/2016 - D – C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
              O43 - CFD: 07/06/2015 - D – C:\Program Files (x86)\Realtek =>.Realtek
              O43 - CFD: 18/09/2016 - D – C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - RD – C:\Program Files (x86)\Skype =>.Skype
              O43 - CFD: 07/06/2015 - [0] HD – C:\Program Files (x86)\Temp =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] HD – C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
              O43 - CFD: 01/12/2016 - D – C:\Program Files (x86)\Vitzo =>.Vitzo Ltd
              O43 - CFD: 20/09/2016 - D – C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
              O43 - CFD: 20/09/2016 - D – C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
              O43 - CFD: 27/10/2016 - D – C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
              O43 - CFD: 11/10/2016 - D – C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - SHD – C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
              O43 - CFD: 07/01/2017 - [0] D – C:\Program Files (x86)\Zemana AntiMalware =>.Zemana
              O43 - CFD: 16/07/2016 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
              O43 - CFD: 11/12/2016 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
              O43 - CFD: 09/11/2016 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe =>.Adobe
              O43 - CFD: 23/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blueberry Software =>.Blueberry Software
              O43 - CFD: 06/01/2017 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby =>.Dolby
              O43 - CFD: 01/12/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HipChat
              O43 - CFD: 18/09/2016 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
              O43 - CFD: 06/01/2017 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
              O43 - CFD: 11/11/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
              O43 - CFD: 01/12/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft
              O43 - CFD: 17/11/2016 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo
              O43 - CFD: 17/11/2016 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Photo Master =>.Lenovo
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Reach
              O43 - CFD: 26/12/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark =>.Lexmark
              O43 - CFD: 16/07/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
              O43 - CFD: 04/01/2017 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools =>.Microsoft Corporation
              O43 - CFD: 04/11/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neat Video for Premiere =>.ABsoft
              O43 - CFD: 28/10/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
              O43 - CFD: 01/12/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek =>.Realtek
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
              O43 - CFD: 04/01/2017 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
              O43 - CFD: 10/01/2016 - D – C:\ProgramData\Adobe =>.Adobe
              O43 - CFD: 28/01/2016 - D – C:\ProgramData\Apple =>.Apple Inc.
              O43 - CFD: 28/01/2016 - D – C:\ProgramData\Apple Computer =>.Apple Inc.
              O43 - CFD: 18/09/2016 - [0] SHD – C:\ProgramData\Application Data =>.Microsoft Corporation
              O43 - CFD: 23/09/2016 - D – C:\ProgramData\Blueberry =>.Blueberry
              O43 - CFD: 01/12/2016 - D – C:\ProgramData\boost_interprocess =>.boost.org
              O43 - CFD: 13/01/2016 - HD – C:\ProgramData\CanonBJ =>.Canon Inc.
              O43 - CFD: 16/07/2016 - [0] D – C:\ProgramData\Comms =>.Microsoft Corporation
              O43 - CFD: 04/01/2017 - D – C:\ProgramData\COMODO =>.Comodo
              O43 - CFD: 04/01/2017 - D – C:\ProgramData\CyberLink =>.CyberLink Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\ProgramData\Desktop =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\ProgramData\Documents =>.Microsoft Corporation
              O43 - CFD: 07/06/2015 - D – C:\ProgramData\Downloaded Installations =>.Microsoft Corporation
              O43 - CFD: 26/12/2016 - D – C:\ProgramData\Ezprint =>.Lexmark
              O43 - CFD: 10/01/2016 - D – C:\ProgramData\Final Draft
              O43 - CFD: 10/01/2016 - D – C:\ProgramData\FLEXnet =>.Flexera Software
              O43 - CFD: 17/11/2016 - D – C:\ProgramData\install_clap =>.Microsoft Corporation
              O43 - CFD: 08/01/2016 - D – C:\ProgramData\Intel =>.Intel Corporation
              O43 - CFD: 07/06/2015 - D – C:\ProgramData\Intel(R) Update Manager
              O43 - CFD: 07/06/2015 - D – C:\ProgramData\Intel.sav =>.Intel Corporation
              O43 - CFD: 05/01/2017 - [0] D – C:\ProgramData\Lavasoft =>.Lavasoft
              O43 - CFD: 05/08/2016 - D – C:\ProgramData\Lenovo =>.Lenovo
              O43 - CFD: 05/01/2017 - D – C:\ProgramData\Lenovo App Services
              O43 - CFD: 07/06/2015 - D – C:\ProgramData\LenovoTransition =>.Lenovo Group Limited
              O43 - CFD: 23/09/2016 - D – C:\ProgramData\LogSys
              O43 - CFD: 26/12/2016 - D – C:\ProgramData\Lx_cats =>.Lewmark
              O43 - CFD: 04/01/2017 - D – C:\ProgramData\Malwarebytes =>.Malwarebytes
              O43 - CFD: 08/01/2016 - D – C:\ProgramData\McAfee =>.McAfee
              O43 - CFD: 05/01/2017 - SD – C:\ProgramData\Microsoft =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
              O43 - CFD: 05/01/2017 - D – C:\ProgramData\Norton =>.Norton
              O43 - CFD: 05/01/2017 - D – C:\ProgramData\NortonInstaller =>.Symantec
              O43 - CFD: 08/01/2017 - D – C:\ProgramData\NVIDIA =>.nVidia Corporation
              O43 - CFD: 28/11/2016 - D – C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
              O43 - CFD: 10/01/2016 - [0] D – C:\ProgramData\Office2013 =>.Microsoft Corporation
              O43 - CFD: 30/08/2015 - D – C:\ProgramData\OneKey Optimizer
              O43 - CFD: 07/06/2015 - D – C:\ProgramData\OneKey Recovery =>.Lenovo
              O43 - CFD: 11/11/2016 - D – C:\ProgramData\Oracle =>.Oracle
              O43 - CFD: 05/01/2017 - D – C:\ProgramData\Package Cache =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
              O43 - CFD: 22/12/2016 - AD – C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
              O43 - CFD: 07/06/2015 - D – C:\ProgramData\Roaming =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - D – C:\ProgramData\RogueKiller =>.Adlice Software
              O43 - CFD: 06/01/2017 - D – C:\ProgramData\Skype =>.Skype
              O43 - CFD: 16/07/2016 - [0] D – C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\ProgramData\Start Menu =>.Microsoft Corporation
              O43 - CFD: 17/11/2016 - [0] D – C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation
              O43 - CFD: 17/11/2016 - D – C:\ProgramData\Temp =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\ProgramData\Templates =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\USOPrivate =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - D – C:\ProgramData\USOShared =>.Microsoft Corporation
              O43 - CFD: 03/10/2016 - AD – C:\Program Files (x86)\Common Files\Adobe =>.Adobe
              O43 - CFD: 06/01/2017 - AD – C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc.
              O43 - CFD: 28/01/2016 - D – C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
              O43 - CFD: 23/09/2016 - D – C:\Program Files (x86)\Common Files\Blueberry Software =>.Blueberry Software
              O43 - CFD: 04/01/2017 - [0] D – C:\Program Files (x86)\Common Files\COMODO =>.Comodo
              O43 - CFD: 22/12/2016 - AD – C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
              O43 - CFD: 07/06/2015 - D – C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
              O43 - CFD: 18/09/2016 - D – C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
              O43 - CFD: 07/06/2015 - D – C:\Program Files (x86)\Common Files\Intel Corporation =>.Intel Corporation
              O43 - CFD: 11/11/2016 - D – C:\Program Files (x86)\Common Files\Java =>.Oracle
              O43 - CFD: 22/02/2016 - D – C:\Program Files (x86)\Common Files\Lenovo =>.Lenovo
              O43 - CFD: 10/01/2016 - D – C:\Program Files (x86)\Common Files\Macrovision Shared =>.Macrovision
              O43 - CFD: 22/12/2016 - AD – C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
              O43 - CFD: 07/06/2015 - D – C:\Program Files (x86)\Common Files\Nikon =>.Nikon
              O43 - CFD: 07/06/2015 - D – C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation
              O43 - CFD: 10/01/2016 - AD – C:\Program Files (x86)\Common Files\PX Storage Engine =>.Sonic
              O43 - CFD: 16/07/2016 - D – C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - D – C:\Program Files (x86)\Common Files\Skype =>.Skype
              O43 - CFD: 10/01/2016 - D – C:\Program Files (x86)\Common Files\Sonic Shared =>.Sonic
              O43 - CFD: 05/01/2017 - D – C:\Program Files (x86)\Common Files\Symantec Shared =>.Symantec
              O43 - CFD: 16/07/2016 - D – C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
              O43 - CFD: 31/07/2016 - D – C:\Users\Clint\AppData\Roaming\Adobe =>.Adobe
              O43 - CFD: 05/10/2016 - D – C:\Users\Clint\AppData\Roaming\Apowersoft =>.Apowersoft
              O43 - CFD: 28/01/2016 - D – C:\Users\Clint\AppData\Roaming\Apple Computer =>.Apple Inc.
              O43 - CFD: 06/12/2016 - D – C:\Users\Clint\AppData\Roaming\Atlassian =>.Atlassian
              O43 - CFD: 04/01/2017 - D – C:\Users\Clint\AppData\Roaming\Blueberry =>.Blueberry
              O43 - CFD: 11/01/2016 - D – C:\Users\Clint\AppData\Roaming\com.adobe.AdobeStor y =>.Adobe Inc.
              O43 - CFD: 11/01/2016 - D – C:\Users\Clint\AppData\Roaming\com.adobe.AdobeStor y.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Inc.
              O43 - CFD: 06/01/2017 - D – C:\Users\Clint\AppData\Roaming\CrystalIdea Software =>.CrystalIdea Software
              O43 - CFD: 23/09/2016 - D – C:\Users\Clint\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft
              O43 - CFD: 12/09/2016 - [0] D – C:\Users\Clint\AppData\Roaming\eBookPro6
              O43 - CFD: 23/09/2016 - D – C:\Users\Clint\AppData\Roaming\Evaer
              O43 - CFD: 04/01/2017 - D – C:\Users\Clint\AppData\Roaming\Final Draft
              O43 - CFD: 01/12/2016 - D – C:\Users\Clint\AppData\Roaming\GRETECH =>.Gretech
              O43 - CFD: 08/01/2016 - D – C:\Users\Clint\AppData\Roaming\Intel =>.Intel Corporation
              O43 - CFD: 08/01/2016 - D – C:\Users\Clint\AppData\Roaming\Intel Corporation =>.Intel Corporation
              O43 - CFD: 05/01/2017 - [0] D – C:\Users\Clint\AppData\Roaming\Lavasoft =>.Lavasoft
              O43 - CFD: 23/09/2016 - D – C:\Users\Clint\AppData\Roaming\LogSys
              O43 - CFD: 08/01/2016 - D – C:\Users\Clint\AppData\Roaming\Macromedia =>.Macromedia
              O43 - CFD: 05/01/2017 - SD – C:\Users\Clint\AppData\Roaming\Microsoft =>.Microsoft Corporation
              O43 - CFD: 09/01/2016 - D – C:\Users\Clint\AppData\Roaming\Mozilla =>.Mozilla Corporation
              O43 - CFD: 10/01/2016 - D – C:\Users\Clint\AppData\Roaming\NVIDIA =>.nVidia Corporation
              O43 - CFD: 01/12/2016 - D – C:\Users\Clint\AppData\Roaming\obs-studio =>.OBS-Studio
              O43 - CFD: 06/01/2017 - D – C:\Users\Clint\AppData\Roaming\Skype =>.Skype
              O43 - CFD: 01/12/2016 - D – C:\Users\Clint\AppData\Roaming\SoftCDN =>.SoftCDN
              O43 - CFD: 18/12/2016 - D – C:\Users\Clint\AppData\Roaming\Spotify =>.Spotify
              O43 - CFD: 21/01/2016 - D – C:\Users\Clint\AppData\Roaming\Sun =>.Oracle
              O43 - CFD: 06/11/2016 - D – C:\Users\Clint\AppData\Roaming\Vitzo =>.Vitzo Ltd
              O43 - CFD: 08/01/2017 - D – C:\Users\Clint\AppData\Roaming\ZHP =>.Nicolas Coolman
              O43 - CFD: 09/01/2016 - [0] D – C:\Users\Clint\AppData\Local\ActiveSync =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - D – C:\Users\Clint\AppData\Local\Adobe =>.Adobe
              O43 - CFD: 05/10/2016 - D – C:\Users\Clint\AppData\Local\Apowersoft =>.Apowersoft
              O43 - CFD: 28/01/2016 - D – C:\Users\Clint\AppData\Local\Apple =>.Apple Inc.
              O43 - CFD: 01/12/2016 - D – C:\Users\Clint\AppData\Local\Apple Computer =>.Apple Inc.
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Clint\AppData\Local\Application Data =>.Microsoft Corporation
              O43 - CFD: 12/08/2016 - D – C:\Users\Clint\AppData\Local\Atlassian =>.Atlassian
              O43 - CFD: 09/01/2016 - D – C:\Users\Clint\AppData\Local\CEF =>.CEF
              O43 - CFD: 08/11/2016 - D – C:\Users\Clint\AppData\Local\Cisco =>.Cisco
              O43 - CFD: 23/02/2016 - D – C:\Users\Clint\AppData\Local\Comms =>.Microsoft Corporation
              O43 - CFD: 20/09/2016 - D – C:\Users\Clint\AppData\Local\ConnectedDevicesPlatf orm =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - [0] D – C:\Users\Clint\AppData\Local\CrashDumps =>.Microsoft Corporation
              O43 - CFD: 06/08/2016 - D – C:\Users\Clint\AppData\Local\CyberLink =>.CyberLink Corporation
              O43 - CFD: 19/12/2016 - D – C:\Users\Clint\AppData\Local\Diagnostics =>.Microsoft Corporation
              O43 - CFD: 10/01/2016 - D – C:\Users\Clint\AppData\Local\Downloaded Installations =>.Microsoft Corporation
              O43 - CFD: 27/10/2016 - D – C:\Users\Clint\AppData\Local\Google =>.Google
              O43 - CFD: 08/01/2016 - D – C:\Users\Clint\AppData\Local\GWX =>.GWX
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Clint\AppData\Local\History =>.Microsoft Corporation
              O43 - CFD: 01/12/2016 - D – C:\Users\Clint\AppData\Local\Lavasoft =>.Lavasoft
              O43 - CFD: 27/07/2016 - D – C:\Users\Clint\AppData\Local\Lenovo =>.Lenovo
              O43 - CFD: 10/01/2016 - D – C:\Users\Clint\AppData\Local\Macromedia =>.Macromedia
              O43 - CFD: 04/01/2017 - D – C:\Users\Clint\AppData\Local\Microsoft =>.Microsoft Corporation
              O43 - CFD: 04/01/2017 - D – C:\Users\Clint\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
              O43 - CFD: 05/01/2017 - D – C:\Users\Clint\AppData\Local\Microsoft_Corporation =>.Microsoft Corporation
              O43 - CFD: 09/01/2016 - D – C:\Users\Clint\AppData\Local\Mozilla =>.Mozilla Corporation
              O43 - CFD: 09/01/2016 - [0] D – C:\Users\Clint\AppData\Local\NetworkTiles =>.NetworkTiles
              O43 - CFD: 04/01/2017 - D – C:\Users\Clint\AppData\Local\node-webkit =>.Intel
              O43 - CFD: 28/10/2016 - D – C:\Users\Clint\AppData\Local\NVIDIA =>.nVidia Corporation
              O43 - CFD: 28/10/2016 - D – C:\Users\Clint\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
              O43 - CFD: 21/02/2016 - D – C:\Users\Clint\AppData\Local\OfficeBSCache-MyComputer
              O43 - CFD: 15/12/2016 - D – C:\Users\Clint\AppData\Local\Packages =>.Microsoft Corporation
              O43 - CFD: 22/02/2016 - D – C:\Users\Clint\AppData\Local\Programs =>.Microsoft Corporation
              O43 - CFD: 09/01/2016 - D – C:\Users\Clint\AppData\Local\Publishers =>.Microsoft Corporation
              O43 - CFD: 05/08/2016 - D – C:\Users\Clint\AppData\Local\SHAREit =>.Lenovo Group Limited
              O43 - CFD: 18/12/2016 - D – C:\Users\Clint\AppData\Local\Spotify =>.Spotify
              O43 - CFD: 08/01/2017 - D – C:\Users\Clint\AppData\Local\Temp =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Clint\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
              O43 - CFD: 09/01/2016 - D – C:\Users\Clint\AppData\Local\TileDataLayer =>.Microsoft Corporation
              O43 - CFD: 08/01/2016 - [0] D – C:\Users\Clint\AppData\Local\VirtualStore =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - D – C:\Users\Clint\AppData\Local\Zemana =>.Zemana
              O43 - CFD: 16/11/2016 - D – C:\Users\Clint\AppData\Local\ZoomInfoCEUtility
              O43 - CFD: 22/02/2016 - [0] D – C:\Users\Clint\AppData\Local\Programs\Common =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - RD – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Accessibility =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - RD – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Accessories =>.Microsoft Corporation
              O43 - CFD: 11/12/2016 - RD – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Administrative Tools =>.Administrative Tools
              O43 - CFD: 16/07/2016 - D – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Maintenance =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - RD – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Startup =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - RD – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\System Tools =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - RD – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\Windows PowerShell =>.Microsoft Corporation
              O43 - CFD: 16/11/2016 - D – C:\Users\Clint\AppData\Roaming\Microsoft\Windows\S tart Menu\Programs\ZoomInfo Contact Contributor
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - [0] D – C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - D – C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
              O43 - CFD: 16/07/2016 - [0] D – C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
              O43 - CFD: 18/09/2016 - [0] SHD – C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
              O43 - CFD: 03/10/2016 - – C:\WINDOWS\System32\Config\systemprofile\AppData\L ocal\Adobe =>.Adobe
              O43 - CFD: 05/01/2017 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\L ocal\CrashDumps =>.Microsoft Corporation
              O43 - CFD: 17/11/2016 - – C:\WINDOWS\System32\Config\systemprofile\AppData\L ocal\CyberLink =>.CyberLink Corporation
              O43 - CFD: 04/01/2017 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\L ocal\Microsoft =>.Microsoft Corporation
              O43 - CFD: 17/11/2016 - – C:\WINDOWS\System32\Config\systemprofile\AppData\L ocal\Programs =>.Microsoft Corporation
              O43 - CFD: 06/01/2017 - – C:\WINDOWS\System32\Config\systemprofile\AppData\L ocal\Zemana =>.Zemana
              O43 - CFD: 17/11/2016 - – C:\WINDOWS\System32\Config\systemprofile\AppData\R oaming\CyberLink =>.CyberLink Corporation
              O43 - CFD: 23/09/2016 - – C:\WINDOWS\System32\Config\systemprofile\AppData\R oaming\DVDVideoSoft =>.DVDVideoSoft
              O43 - CFD: 18/09/2016 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\R oaming\Microsoft =>.Microsoft Corporation

              —\ ShellIconOverlayIdentifiers (SIOI) (8) - 1s
              O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) – C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\FileSyncShell.dll =>.Microsoft Corporation®
              O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) – C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\FileSyncShell.dll =>.Microsoft Corporation®
              O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) – C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\FileSyncShell.dll =>.Microsoft Corporation®
              O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) – C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\FileSyncShell.dll =>.Microsoft Corporation®
              O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) – C:\Users\Clint\AppData\Local\Microsoft\OneDrive\17 .3.6517.0809_1\FileSyncShell.dll =>.Microsoft Corporation®
              O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) – C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
              O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) – C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
              O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) – C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®

              —\ System Drivers List (81) - 8s
              O58 - SDL:2016/07/16 03:41:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) – C:\WINDOWS\System32\drivers\3ware.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2015/06/07 07:46:15 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) – C:\WINDOWS\System32\drivers\AcpiVpc.sys [324224] =>.Lenovo (Beijing) Limited®
              O58 - SDL:2016/07/16 03:41:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) – C:\WINDOWS\System32\drivers\adp80xx.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) – C:\WINDOWS\System32\drivers\amdsata.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) – C:\WINDOWS\System32\drivers\amdsbs.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Advanced Micro Devices - Storage Filter Driver.) – C:\WINDOWS\System32\drivers\amdxata.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) – C:\WINDOWS\System32\drivers\arcsas.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) – C:\WINDOWS\System32\drivers\bcmfn.sys [324224] =>.Windows (R) Win 7 DDK provider
              O58 - SDL:2016/07/16 03:41:53 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) – C:\WINDOWS\System32\drivers\bcmfn2.sys [324224] =>.Windows (R) Win 7 DDK provider
              O58 - SDL:2016/07/16 03:41:52 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) – C:\WINDOWS\System32\drivers\bxvbda.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2012/04/24 03:01:00 A . (.Corel Corporation - CDR4 64-bit CD and DVD Place Holder Driver.) – C:\WINDOWS\System32\drivers\cdr4_xp.sys [324224] =>.Corel Corporation®
              O58 - SDL:2012/04/24 03:01:00 A . (.Corel Corporation - CDRAL 64-bit Place Holder Driver (see PxHel.) – C:\WINDOWS\System32\drivers\cdralw2k.sys [324224] =>.Corel Corporation®
              O58 - SDL:2016/07/16 03:41:53 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) – C:\WINDOWS\System32\drivers\cht4dx64.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) – C:\WINDOWS\System32\drivers\cht4sx64.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T4 Chipset.) – C:\WINDOWS\System32\drivers\cht4vx64.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:52 A . (.QLogic Corporation - QLogic 10 GigE VBD.) – C:\WINDOWS\System32\drivers\evbda.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2017/01/08 09:45:41 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) – C:\WINDOWS\System32\drivers\farflt.sys [324224] =>.Malwarebytes Corporation®
              O58 - SDL:2014/11/20 09:43:58 A . (.Windows (R) Win 7 DDK provider - WINNT/2K/XP/2003 Driver.) – C:\WINDOWS\System32\drivers\Fastboot.sys [324224] =>.Windows (R) Win 7 DDK provider
              O58 - SDL:2014/04/17 00:38:36 A . (.GenesysLogic - GeneStor.) – C:\WINDOWS\System32\drivers\GeneStor.sys [324224] =>.GENESYS LOGIC, INC.®
              O58 - SDL:2016/07/16 03:41:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) – C:\WINDOWS\System32\drivers\HpSAMD.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:54 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) – C:\WINDOWS\System32\drivers\iagpio.sys [324224] =>.Intel(R) Corporation
              O58 - SDL:2016/07/16 03:41:54 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) – C:\WINDOWS\System32\drivers\iai2c.sys [324224] =>.Intel(R) Corporation
              O58 - SDL:2016/07/16 03:41:54 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [324224] =>.Intel Corporation
              O58 - SDL:2016/07/16 03:41:54 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [324224] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              O58 - SDL:2016/07/16 03:41:52 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) – C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [324224] =>.Intel Corporation - Client Components Group®
              O58 - SDL:2016/07/16 03:41:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) – C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [324224] =>.Intel Corporation
              O58 - SDL:2014/10/09 13:54:44 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) – C:\WINDOWS\System32\drivers\iaStorA.sys [324224] =>.Intel® Rapid Storage Technology®
              O58 - SDL:2016/07/16 03:41:53 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) – C:\WINDOWS\System32\drivers\iaStorAV.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) – C:\WINDOWS\System32\drivers\iaStorV.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Mellanox - InfiniBand Fabric Bus Driver.) – C:\WINDOWS\System32\drivers\ibbus.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2015/07/14 20:27:40 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) USB Driver.) – C:\WINDOWS\System32\drivers\ibtusb.sys [324224] =>.Intel Corporation-Wireless Connectivity Solutions®
              O58 - SDL:2016/05/06 23:26:10 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) – C:\WINDOWS\System32\drivers\igdkmd64.sys [324224] =>.Intel(R) pGFX®
              O58 - SDL:2016/03/28 10:29:22 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) – C:\WINDOWS\System32\drivers\IntcDAud.sys [324224] =>.Intel(R) OWR®
              O58 - SDL:2014/08/04 14:03:02 A . (.Authors - .) – C:\WINDOWS\System32\drivers\KMDFVirtualKbd.sys [324224] =>.Lenovo (Beijing) Limited®
              O58 - SDL:2014/08/04 14:04:10 A . (.Authors - .) – C:\WINDOWS\System32\drivers\KMDFVirtualMouse.sys [324224] =>.Lenovo (Beijing) Limited®
              O58 - SDL:2016/07/16 03:41:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sas.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sas2i.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sas3i.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sss.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2017/01/05 12:38:49 A . (.Authors - .) – C:\WINDOWS\System32\drivers\mbae64.sys [324224] =>.Malwarebytes Corporation®
              O58 - SDL:2017/01/08 09:45:36 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) – C:\WINDOWS\System32\drivers\mbam.sys [324224] =>.Malwarebytes Corporation®
              O58 - SDL:2017/01/04 15:53:31 A . (.Malwarebytes - Malwarebytes Chameleon.) – C:\WINDOWS\System32\drivers\MBAMChameleon.sys [324224] =>.Malwarebytes Corporation®
              O58 - SDL:2017/01/08 09:45:24 A . (.Malwarebytes - Malwarebytes SwissArmy.) – C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [324224] =>.Malwarebytes Corporation®
              O58 - SDL:2016/07/16 03:41:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\megasas.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/10/05 02:09:07 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\MegaSas2i.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) – C:\WINDOWS\System32\drivers\megasr.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Mellanox - MLX4 Bus Driver.) – C:\WINDOWS\System32\drivers\mlx4_bus.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) – C:\WINDOWS\System32\drivers\mvumis.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2017/01/08 09:45:40 A . (.Malwarebytes - Malwarebytes Web Protection.) – C:\WINDOWS\System32\drivers\mwac.sys [324224] =>.Malwarebytes Corporation®
              O58 - SDL:2016/07/16 03:41:53 A . (.Mellanox - NetworkDirect Support Filter Driver.) – C:\WINDOWS\System32\drivers\ndfltr.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:42:03 A . (.Authors - .) – C:\WINDOWS\System32\drivers\NetAdapterCx.sys [324224] =>.Microsoft Corporation
              O58 - SDL:2016/07/16 03:41:50 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) – C:\WINDOWS\System32\drivers\Netwbw02.sys [324224] =>.Intel Corporation
              O58 - SDL:2016/02/24 17:04:48 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) – C:\WINDOWS\System32\drivers\nvlddmkm.sys [324224] =>.NVIDIA Corporation®
              O58 - SDL:2016/07/16 03:41:53 A . (.NVIDIA Corporation - NVIDIA® nForce™ RAID Driver.) – C:\WINDOWS\System32\drivers\nvraid.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.NVIDIA Corporation - NVIDIA® nForce™ Sata Performance Driver.) – C:\WINDOWS\System32\drivers\nvstor.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/11/17 05:45:29 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) – C:\WINDOWS\System32\drivers\nvvad64v.sys [324224] =>.NVIDIA Corporation®
              O58 - SDL:2016/07/16 03:41:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\percsas2i.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\percsas3i.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2012/06/22 03:01:00 A . (.Corel Corporation - Px Engine Device Driver for 64-bit (x86-64).) – C:\WINDOWS\System32\drivers\PxHlpa64.sys [324224] =>.Corel Corporation®
              O58 - SDL:2015/07/22 18:56:22 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) – C:\WINDOWS\System32\drivers\rt640x64.sys [324224] =>.Realtek Semiconductor Corp®
              O58 - SDL:2015/11/18 00:56:28 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) – C:\WINDOWS\System32\drivers\RTKVHD64.sys [324224] =>.Realtek Semiconductor Corp®
              O58 - SDL:2015/06/02 10:53:08 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for Vista/Win7/Win8/Win8.) – C:\WINDOWS\System32\drivers\rtsuvc.sys [324224] =>.Realtek Semiconductor Corp®
              O58 - SDL:2016/07/16 03:41:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) – C:\WINDOWS\System32\drivers\sisraid2.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) – C:\WINDOWS\System32\drivers\sisraid4.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2015/08/11 04:48:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) – C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux. sys [324224] =>.Synaptics Incorporated®
              O58 - SDL:2015/08/11 04:48:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) – C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [324224] =>.Synaptics Incorporated®
              O58 - SDL:2015/08/11 04:48:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) – C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.s ys [324224] =>.Synaptics Incorporated®
              O58 - SDL:2016/04/24 23:35:52 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver (MSS Ve.) – C:\WINDOWS\System32\drivers\ssudbus.sys [324224] =>.Samsung Electronics CO., LTD.®
              O58 - SDL:2016/04/24 23:35:58 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver (MSS Ve.) – C:\WINDOWS\System32\drivers\ssudmdm.sys [324224] =>.Samsung Electronics CO., LTD.®
              O58 - SDL:2016/07/16 03:41:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) – C:\WINDOWS\System32\drivers\stexstor.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2017/01/05 11:41:14 A . (.Symantec Corporation - Symantec Event Library.) – C:\WINDOWS\System32\drivers\SYMEVENT64x86.SYS [324224] =>.Symantec Corporation®
              O58 - SDL:2015/08/11 04:48:50 A . (.Synaptics Incorporated - Synaptics I2C Driver.) – C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [324224] =>.Synaptics Incorporated®
              O58 - SDL:2015/08/11 04:48:50 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) – C:\WINDOWS\System32\drivers\SynTP.sys [324224] =>.Synaptics Incorporated®
              O58 - SDL:2014/10/10 08:37:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) – C:\WINDOWS\System32\drivers\TeeDriverx64.sys [324224] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
              O58 - SDL:2017/01/06 17:20:05 A . (.Authors - .) – C:\WINDOWS\System32\drivers\TrueSight.sys [324224] =>.Adlice®
              O58 - SDL:2016/07/16 03:41:53 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) – C:\WINDOWS\System32\drivers\vsmraid.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) – C:\WINDOWS\System32\drivers\VSTXRAID.SYS [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Mellanox - Kernel WinMad.) – C:\WINDOWS\System32\drivers\winmad.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2016/07/16 03:41:53 A . (.Mellanox - Kernel WinVerbs.) – C:\WINDOWS\System32\drivers\winverbs.sys [324224] =>.Microsoft Windows®
              O58 - SDL:2012/06/13 17:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) – C:\WINDOWS\System32\drivers\wsvd.sys [324224] =>.CyberLink®
              O58 - SDL:2017/01/06 08:48:49 A . (.Zemana Ltd. - ZAM.) – C:\WINDOWS\System32\drivers\zamguard64.sys [324224] =>.Zemana Ltd.®

              —\ File Associations Shell Spawning (10) - 1s
              O67 - Shell Spawning: <.bat> [HKLM..\open\Command] (…) – “%1” %*
              O67 - Shell Spawning: <.cpl> [HKLM..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) – C:\Windows\System32\control.exe =>.Microsoft Corporation
              O67 - Shell Spawning: <.cmd> [HKLM..\open\Command] (…) – “%1” %*
              O67 - Shell Spawning: <.com> [HKLM..\open\Command] (…) – “%1” %*
              O67 - Shell Spawning: <.evt> [HKLM..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) – C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
              O67 - Shell Spawning: <.exe> [HKLM..\open\Command] (…) – “%1” %*
              O67 - Shell Spawning: <.html> [HKLM..\open\Command] (.Microsoft Corporation - Internet Explorer.) – C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
              O67 - Shell Spawning: <.js> [HKLM..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) – C:\Windows\System32\wscript.exe =>.Microsoft Corporation
              O67 - Shell Spawning: <.reg> [HKLM..\open\Command] (.Microsoft Corporation - Registry Editor.) – C:\Windows\regedit.exe =>.Microsoft Corporation
              O67 - Shell Spawning: <.scr> [HKLM..\open\Command] (…) – “%1” /S

              —\ Start Menu Internet (8) - 0s
              O68 - StartMenuInternet: [HKLM..\Shell\open\Command] (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) – C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
              O68 - StartMenuInternet: [HKLM..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
              O68 - StartMenuInternet: [HKLM..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
              O68 - StartMenuInternet: [HKLM..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
              O68 - StartMenuInternet: <IEXPLORE.EXE> [HKLM..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) – C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

              —\ Search Browser Infection (5) - 6s
              O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
              O69 - SBI: SearchScopes [HKCU] {154734F9-8847-445E-9FA4-85593E3AEACB} - (Bing) - http://www.bing.com/ =>.Bing.com
              O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Bing) - http://www.bing.com/ =>.Bing.com
              O69 - SBI: SearchScopes [HKCU] {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - (Google) - http://www.google.com/ =>.Google Inc.
              O69 - SBI: SearchScopes [HKLM] {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - (Google) - http://www.google.com/ =>.Google Inc.

              —\ Search Svchost Services (45) - 0s
              O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) – C:\WINDOWS\System32\certprop.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) – C:\WINDOWS\System32\certprop.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) – C:\WINDOWS\system32\srvsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) – C:\WINDOWS\System32\gpsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) – C:\WINDOWS\System32\ikeext.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) – C:\WINDOWS\System32\iphlpsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) – C:\WINDOWS\system32\seclogon.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) – C:\WINDOWS\System32\appinfo.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) – C:\WINDOWS\system32\iscsiexe.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) – C:\WINDOWS\System32\eapsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) – C:\WINDOWS\system32\schedsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) – C:\WINDOWS\system32\wbem\WMIsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) – C:\WINDOWS\System32\browser.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) – C:\Windows\System32\SessEnv.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) – C:\WINDOWS\System32\wercplsupport.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) – C:\WINDOWS\system32\Windows.SharedPC.AccountManage r.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) – C:\WINDOWS\system32\themeservice.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) – C:\WINDOWS\System32\lfsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) – C:\Windows\System32\Windows.Internal.Management.dl l [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Infrared Monitor.) – C:\WINDOWS\System32\irmon.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) – C:\WINDOWS\System32\rasauto.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) – C:\WINDOWS\System32\rasmans.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) – C:\Windows\System32\mprdim.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) – C:\WINDOWS\System32\sens.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) – C:\WINDOWS\System32\ipnathlp.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows™ Telephony Server.) – C:\Windows\System32\tapisrv.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) – C:\WINDOWS\system32\wuaueng.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) – C:\WINDOWS\System32\qmgr.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) – C:\Windows\System32\shsvcs.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) – C:\WINDOWS\system32\dmwappushsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) – C:\WINDOWS\system32\WpnService.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) – C:\WINDOWS\system32\XboxNetApiSvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) – C:\WINDOWS\system32\dcpsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) – C:\WINDOWS\system32\RDXService.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) – C:\WINDOWS\System32\bdesvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) – C:\WINDOWS\System32\DeviceSetupManager.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) – C:\WINDOWS\System32\ncasvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) – C:\WINDOWS\System32\XblAuthManager.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) – C:\WINDOWS\system32\usocore.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) – C:\WINDOWS\system32\profsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) – C:\WINDOWS\System32\usermgr.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) – C:\WINDOWS\System32\XblGameSave.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight Settings.) – C:\WINDOWS\system32\flightsettings.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) – C:\WINDOWS\system32\wlidsvc.dll [324224] =>.Microsoft Corporation
              O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) – C:\WINDOWS\System32\NetSetupSvc.dll [324224] =>.Microsoft Corporation

              —\ Additional Scan (O88) (2) - 0s
              HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
              HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime

              —\ Summary of the elements found (1) - 0s
              Redirecting... =>Riskware.QuickTime

              ~ Unselected Options:
              ~ End of the scan, 39700 items in 05mn15s (1184)(0)

              Comment

              • Malnutrition
                PCHF Moderator
                • Jul 2016
                • 7041

                #22
                ZHP Fix [MEDIA=imgur]4bd9Ugb[/MEDIA]
                [ul]
                [li]Download ZHP-Fix from here.[/li][li]Install it.[/li][li]Click Suivant 5 Times.[/li][li]Then Installer.[/li][li]Then Terminer.[/li][li]Then right clcick the ZHP Fix icon Run as admin.[/li][li]Copy the entire content of the code box below, the next step will grab it from your clipboard.[/li]
                [li]Then click on import.[/li][li]Then click GO.[/li][li]Allow completion.[/li][li]A log file will appear on your desktop. [/li]
                [li]Post it here in your next reply.[/li][/ul]
                Code:
                Script ZhpFix
                SysRestore
                EmptyFlash
                EmptyTemp
                FirewallRaz
                EmptyCLSID
                O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
                SS - Demand [14/12/2016] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
                [MD5.63BB08F1FE94AE8804BCDC4916D4ABCD] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [324224] (.Activate.) =>.Piriform Ltd®
                O39 - APT: Unknown - (.Adobe Inc..) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [324224] =>.Adobe Inc.
                O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [324224] =>.Piriform Ltd®
                O4 - HKLM\..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                O4 - HKCU\..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                O4 - HKCU\..\Run: [tracing] C:\Program Files (x86)\waistbands\sunland.exe (.not file.)
                O4 - HKCU\..\Run: [hostetter] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                O4 - HKCU\..\Run: [electrolyte] C:\Program Files (x86)\Syllabic\genoese.exe (.not file.)
                O4 - HKCU\..\Run: [midwives] C:\Program Files (x86)\Intramural\scheduled.exe (.not file.)
                O4 - HKLM\..\Wow6432Node\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001\..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001\..\Run: [tracing] C:\Program Files (x86)\waistbands\sunland.exe (.not file.)
                O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001\..\Run: [hostetter] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001\..\Run: [electrolyte] C:\Program Files (x86)\Syllabic\genoese.exe (.not file.)
                O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001\..\Run: [midwives] C:\Program Files (x86)\Intramural\scheduled.exe (.not file.)
                R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
                R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc.
                R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
                R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
                R1 - HKEY_USERS\S-1-5-21-3646257312-145341772-451683423-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
                R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
                R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies []
                O4 - GS\TaskBar [Administrator]: НАНАНАНАНАНАНА.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
                O4 - GS\Startup [Administrator]: ok2089576.lnk . (...) C:\Program Files (x86)\cartridge\antivirals.exe
                O4 - GS\TaskBar [Clint]: НАНАНАНАНАНАНА.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
                O4 - GS\Startup [Clint]: ok2089576.lnk . (...) C:\Program Files (x86)\cartridge\antivirals.exe
                O4 - GS\TaskBar [Guest]: НАНАНАНАНАНАНА.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
                O4 - GS\Startup [Guest]: ok2089576.lnk . (...) C:\Program Files (x86)\cartridge\antivirals.exe
                O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0} =>.Your Company Name
                HKLM\SOFTWARE\Wow6432Node\ComodoGroup =>.ComodoGroup
                HKLM\SOFTWARE\Wow6432Node\Eset =>.ESET
                HKLM\SOFTWARE\Wow6432Node\Free YouTube Downloader =>.DawnArk, Inc
                HKLM\SOFTWARE\Wow6432Node\FreeYouTubeDownloader =>.DawnArk, Inc
                HKLM\SOFTWARE\Wow6432Node\Software =>.Unknow
                HKCU\SOFTWARE\AVAST Software =>.AVAST Software
                HKCU\SOFTWARE\ComodoGroup =>.ComodoGroup
                HKCU\SOFTWARE\McAfee =>.McAfee Inc.
                O43 - CFD: 04/01/2017 - [0] D -- C:\Program Files\COMODO =>.Comodo
                O43 - CFD: 26/12/2016 - [] D -- C:\Program Files (x86)\Lexmark Toolbar =>.Lexmark
                O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\McAfee =>.McAfee
                O43 - CFD: 04/01/2017 - [0] D -- C:\Program Files (x86)\Common Files\COMODO =>.Comodo
                O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
                O69 - SBI: SearchScopes [HKCU] {154734F9-8847-445E-9FA4-85593E3AEACB} - (Bing) - http://www.bing.com/ =>.Bing.com
                O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Bing) - http://www.bing.com/ =>.Bing.com
                HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
                HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime

                Comment

                • Kriller
                  PCHF Member
                  • Jan 2017
                  • 12

                  #23
                  Script ZhpFix
                  SysRestore
                  EmptyFlash
                  EmptyTemp
                  FirewallRaz
                  EmptyCLSID
                  O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
                  SS - Demand [14/12/2016] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpda teService.exe =>.Adobe Systems Incorporated®
                  [MD5.63BB08F1FE94AE8804BCDC4916D4ABCD] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) – C:\Program Files\CCleaner\CCleaner.exe [324224] (.Activate.) =>.Piriform Ltd®
                  O39 - APT: Unknown - (.Adobe Inc..) – C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [324224] =>.Adobe Inc.
                  O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) – C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [324224] =>.Piriform Ltd®
                  O4 - HKLM..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                  O4 - HKCU..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                  O4 - HKCU..\Run: [tracing] C:\Program Files (x86)\waistbands\sunland.exe (.not file.)
                  O4 - HKCU..\Run: [hostetter] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                  O4 - HKCU..\Run: [electrolyte] C:\Program Files (x86)\Syllabic\genoese.exe (.not file.)
                  O4 - HKCU..\Run: [midwives] C:\Program Files (x86)\Intramural\scheduled.exe (.not file.)
                  O4 - HKLM..\Wow6432Node\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                  O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [toys] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                  O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [tracing] C:\Program Files (x86)\waistbands\sunland.exe (.not file.)
                  O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [hostetter] C:\Program Files (x86)\cartridge\antivirals.exe (.not file.)
                  O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [electrolyte] C:\Program Files (x86)\Syllabic\genoese.exe (.not file.)
                  O4 - HKUS\S-1-5-21-3646257312-145341772-451683423-1001..\Run: [midwives] C:\Program Files (x86)\Intramural\scheduled.exe (.not file.)
                  R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
                  R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                  R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ =>.Yahoo! Inc.
                  R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc.
                  R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                  R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
                  R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
                  R1 - HKEY_USERS\S-1-5-21-3646257312-145341772-451683423-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.yahoo.com/ =>.Yahoo! Inc.
                  R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
                  R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyEnable = 0
                  R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,MigrateProxy = 1
                  R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,EnableHttp1_1 = 1
                  R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyHttp1.1 = 1
                  R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigProxy = wininet.dll
                  R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyEnable = 0
                  R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Para meters\Internet\ManualProxies
                  O4 - GS\TaskBar [Administrator]: НАНАНАНАНАНАНА.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
                  O4 - GS\Startup [Administrator]: ok2089576.lnk . (…) C:\Program Files (x86)\cartridge\antivirals.exe
                  O4 - GS\TaskBar [Clint]: НАНАНАНАНАНАНА.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
                  O4 - GS\Startup [Clint]: ok2089576.lnk . (…) C:\Program Files (x86)\cartridge\antivirals.exe
                  O4 - GS\TaskBar [Guest]: НАНАНАНАНАНАНА.lnk . (…) C:\Program Files (x86)\Mozilla Firefox\firefox.bat
                  O4 - GS\Startup [Guest]: ok2089576.lnk . (…) C:\Program Files (x86)\cartridge\antivirals.exe
                  O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] – {2A075BB4-E976-4278-BF3F-E5C6945D84C0} =>.Your Company Name
                  HKLM\SOFTWARE\Wow6432Node\ComodoGroup =>.ComodoGroup
                  HKLM\SOFTWARE\Wow6432Node\Eset =>.ESET
                  HKLM\SOFTWARE\Wow6432Node\Free YouTube Downloader =>.DawnArk, Inc
                  HKLM\SOFTWARE\Wow6432Node\FreeYouTubeDownloader =>.DawnArk, Inc
                  HKLM\SOFTWARE\Wow6432Node\Software =>.Unknow
                  HKCU\SOFTWARE\AVAST Software =>.AVAST Software
                  HKCU\SOFTWARE\ComodoGroup =>.ComodoGroup
                  HKCU\SOFTWARE\McAfee =>.McAfee Inc.
                  O43 - CFD: 04/01/2017 - [0] D – C:\Program Files\COMODO =>.Comodo
                  O43 - CFD: 26/12/2016 - D – C:\Program Files (x86)\Lexmark Toolbar =>.Lexmark
                  O43 - CFD: 08/01/2016 - D – C:\ProgramData\McAfee =>.McAfee
                  O43 - CFD: 04/01/2017 - [0] D – C:\Program Files (x86)\Common Files\COMODO =>.Comodo
                  O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
                  O69 - SBI: SearchScopes [HKCU] {154734F9-8847-445E-9FA4-85593E3AEACB} - (Bing) - http://www.bing.com/ =>.Bing.com
                  O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Bing) - http://www.bing.com/ =>.Bing.com
                  HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
                  HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Curren tVersion\Uninstall{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime

                  Comment

                  • Malnutrition
                    PCHF Moderator
                    • Jul 2016
                    • 7041

                    #24
                    You need to copy and paste that into the ZHP cleaner app.

                    [ATTACH]1305[/ATTACH]

                    Comment

                    • Kriller
                      PCHF Member
                      • Jan 2017
                      • 12

                      #25
                      Okay, attached.

                      Comment

                      • Malnutrition
                        PCHF Moderator
                        • Jul 2016
                        • 7041

                        #26
                        Alright, I will mark this one as solved for you, unless you have any other questions?

                        Comment

                        Working...