|
Plagegeister aller Art und deren Bekämpfung: Windows 8 neu aufsetzenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
09.03.2013, 16:17 | #1 |
| Windows 8 neu aufsetzen Hallo, nachdem ich nun mit meinem Latein und meiner Geduld so langsam an die Grenzen stoße, denke ich zunehmend daran, mein System neu aufzusetzen. In Win8 gibt's hierfür ja die Funktion "Alles entfernen und Windows neu installieren". Ist dieses Vorgehen auch bei Virus/Trojanerbefall angebracht? Ich frage, weil es ja sein kann, dass die REcovery-Partition auch befallen ist und somit das System schon während der Neuinstallation kompromittiert würde. Hat jemand damit Erfahrung? |
10.03.2013, 00:11 | #2 |
/// TB-Ausbilder | Windows 8 neu aufsetzen Das von dir beschriebene Szenario dürfte recht unwahrscheinlich sein. Nach einem Recovery solltest du eigentlich wieder sicher sein.
__________________
__________________ |
10.03.2013, 11:12 | #3 |
| Windows 8 neu aufsetzen Danke für die Antwort.
__________________Leider scheint sich bei mir doch etwas im MBR gehalten zu haben. Nach der Neuinstallation zeigt GMER noch Threads an. |
10.03.2013, 11:30 | #4 |
/// TB-Ausbilder | Windows 8 neu aufsetzen Dann zeig mal dein Logfile und scheibe dazu, warum du denkst, dass das schädliche Zeilen sind.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
10.03.2013, 11:42 | #5 |
| Windows 8 neu aufsetzen Hi Ryder, um dem Vorwurf des Crosspostings zu entgehen (in dem ich es einräume) muss ich sagen, dass ich zum Ausgangsproblem schon einen Thread aufgemacht habe. Zur Ausgangslage (Telegrammstil): 1. Bitdefender auf Rechner A schaltet sich immer wieder selbstständig ab und muss manuell reaktiviert werden. Das Problem verschärfte sich soweit, bis BD überhaupt nicht mehr einzuschalten ging. 2. HDD aus- und in Icy-Box eingebaut. Mit BD auf Rechner B gescannt. Nun zeigt BD auf Rechner B das gleiche Verhalten. 3. Rechner B mit Recoveryfunktion von WIN8 wiederhergestellt (vollständiges Löschen gewählt). > Der Jetzt-Zustand: Problem besteht weiterhin. Auffälliger GMER Log (Scan mit BD ergab nichts) Ich hänge den GMER-Log als Zip an. Ist zu groß zum posten. |
10.03.2013, 11:53 | #6 | |
/// TB-Ausbilder | Windows 8 neu aufsetzenZitat:
Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Scan mit aswMBR
Schritt 2: Scan mit dem TDSS-Killer Lese bitte folgende Anweisungen genau. Wir wollen hier noch nichts "fixen" sondern nur einen Scan Report sehen.
__________________ --> Windows 8 neu aufsetzen |
10.03.2013, 12:08 | #7 |
| Windows 8 neu aufsetzen Okay, hier also die (unauffälligen) Logs. aswMBR (ich hatte "quick-scan" ausgewählt, wie standard) Code:
ATTFilter aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software Run date: 2013-03-10 11:58:58 ----------------------------- 11:58:58.797 OS Version: Windows x64 6.2.9200 11:58:58.797 Number of processors: 4 586 0x3A09 11:58:58.800 ComputerName: ZAZEN UserName: steaf 11:58:58.985 Initialze error 1 12:00:43.325 AVAST engine defs: 13031000 12:01:37.846 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000045 12:01:37.846 Disk 0 Vendor: Hitachi_HTS545050A7E380 GG2OA6C0 Size: 476940MB BusType: 11 12:01:37.846 Disk 1 \Device\Harddisk1\DR1 -> \Device\00000046 12:01:37.846 Disk 1 Vendor: SanDisk_SSD_i100_24GB 11.50.02 Size: 22902MB BusType: 11 12:01:37.861 Disk 0 MBR read successfully 12:01:37.861 Disk 0 MBR scan 12:01:37.861 Disk 0 unknown MBR code 12:01:37.861 Disk 0 Partition 1 00 EE GPT 2097151 MB offset 1 12:01:37.877 Disk 0 scanning C:\Windows\system32\drivers 12:01:37.877 Service scanning 12:01:38.440 Modules scanning 12:01:38.440 Disk 0 trace - called modules: 12:01:38.440 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll iaStorA.sys 12:01:38.440 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80051f1060] 12:01:38.440 3 CLASSPNP.SYS[fffff8800225a8aa] -> nt!IofCallDriver -> [0xfffffa80047f9760] 12:01:38.455 5 ACPI.sys[fffff88001001a91] -> nt!IofCallDriver -> \Device\00000045[0xfffffa80047167f0] 12:01:38.455 AVAST engine scan C:\Windows 12:01:38.455 AVAST engine scan C:\Windows\system32 12:01:38.455 AVAST engine scan C:\Windows\system32\drivers 12:01:38.471 AVAST engine scan C:\Users\steaf 12:01:38.471 AVAST engine scan C:\ProgramData 12:01:38.471 Scan finished successfully 12:02:08.050 Disk 0 MBR has been saved successfully to "C:\Users\steaf\Documents\MBR.dat" 12:02:08.050 The log file has been saved successfully to "C:\Users\steaf\Documents\20130310_aswMBR.txt" Code:
ATTFilter 12:04:34.0122 3764 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 12:04:34.0122 3764 UEFI system 12:04:34.0404 3764 ============================================================ 12:04:34.0404 3764 Current date / time: 2013/03/10 12:04:34.0404 12:04:34.0404 3764 SystemInfo: 12:04:34.0404 3764 12:04:34.0404 3764 OS Version: 6.2.9200 ServicePack: 0.0 12:04:34.0404 3764 Product type: Workstation 12:04:34.0404 3764 ComputerName: ZAZEN 12:04:34.0405 3764 UserName: steaf 12:04:34.0405 3764 Windows directory: C:\Windows 12:04:34.0405 3764 System windows directory: C:\Windows 12:04:34.0405 3764 Running under WOW64 12:04:34.0405 3764 Processor architecture: Intel x64 12:04:34.0405 3764 Number of processors: 4 12:04:34.0405 3764 Page size: 0x1000 12:04:34.0405 3764 Boot type: Normal boot 12:04:34.0405 3764 ============================================================ 12:04:34.0903 3764 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 12:04:34.0903 3764 Drive \Device\Harddisk1\DR1 - Size: 0x5976F6000 (22.37 Gb), SectorSize: 0x200, Cylinders: 0xB67, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 12:04:34.0907 3764 ============================================================ 12:04:34.0907 3764 \Device\Harddisk0\DR0: 12:04:34.0908 3764 GPT partitions: 12:04:34.0908 3764 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {68664A3F-38D7-4FB5-8F2D-8FA2B9BB7209}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x96000 12:04:34.0908 3764 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {A6548009-AF32-4CFC-BC76-17D676F7749C}, Name: Basic data partition, StartLBA 0x96800, BlocksNum 0x12C000 12:04:34.0908 3764 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {9D4E61ED-65D5-4E93-8986-96D4BF99E993}, Name: Microsoft reserved partition, StartLBA 0x1C2800, BlocksNum 0x40000 12:04:34.0908 3764 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {0150F2C7-1E69-4DC8-A12D-04E455DA9712}, Name: Basic data partition, StartLBA 0x202800, BlocksNum 0x1749C000 12:04:34.0908 3764 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {0D2044B0-6515-486C-A124-45347BEB556B}, Name: Basic data partition, StartLBA 0x1769E800, BlocksNum 0x204E7800 12:04:34.0908 3764 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {521EEE93-109A-467A-80E6-57AF0417D5EB}, Name: Basic data partition, StartLBA 0x37B86000, BlocksNum 0x2800000 12:04:34.0908 3764 MBR partitions: 12:04:34.0908 3764 \Device\Harddisk1\DR1: 12:04:34.0909 3764 GPT partitions: 12:04:34.0909 3764 \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {B8CB5058-C187-4719-BAF0-379CA2D4C97E}, UniqueGUID: {4613EE39-4727-4347-8134-173F590F716F}, Name: HFS, StartLBA 0x801000, BlocksNum 0x24BA000 12:04:34.0909 3764 \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {D3BFE2DE-3DAF-11DF-BA40-E3A556D89593}, UniqueGUID: {0BEE7DC0-BA51-43FB-8A78-5DD6122F8761}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x800000 12:04:34.0909 3764 MBR partitions: 12:04:34.0909 3764 ============================================================ 12:04:34.0961 3764 C: <-> \Device\Harddisk0\DR0\Partition4 12:04:34.0987 3764 D: <-> \Device\Harddisk0\DR0\Partition5 12:04:34.0987 3764 ============================================================ 12:04:34.0987 3764 Initialize success 12:04:34.0987 3764 ============================================================ 12:05:14.0077 4076 ============================================================ 12:05:14.0077 4076 Scan started 12:05:14.0077 4076 Mode: Manual; TDLFS; 12:05:14.0077 4076 ============================================================ 12:05:14.0770 4076 ================ Scan system memory ======================== 12:05:14.0770 4076 System memory - ok 12:05:14.0770 4076 ================ Scan services ============================= 12:05:15.0280 4076 [ E890C46E4754F0DF51BAFCC8D2E07498 ] 1394ohci C:\Windows\System32\drivers \1394ohci.sys 12:05:15.0284 4076 1394ohci - ok 12:05:15.0288 4076 [ 4F18D4C7EA14F11A7211F60D553C03DB ] 3ware C:\Windows\system32\drivers \3ware.sys 12:05:15.0290 4076 3ware - ok 12:05:15.0305 4076 [ A3BDA4D1186C8F47FA1BC8E91F197537 ] ACPI C:\Windows\system32\drivers\ACPI.sys 12:05:15.0309 4076 ACPI - ok 12:05:15.0339 4076 [ E3530CCC4018BBFC39176E579E438BE6 ] acpials C:\Windows\system32\DRIVERS \acpials.sys 12:05:15.0340 4076 acpials - ok 12:05:15.0343 4076 [ DC968C37822117E576B933F34A2D130C ] acpiex C:\Windows\system32\Drivers \acpiex.sys 12:05:15.0345 4076 acpiex - ok 12:05:15.0348 4076 [ 0CA9F7C3A78227C21A0A7854E245CFB2 ] acpipagr C:\Windows\System32\drivers \acpipagr.sys 12:05:15.0348 4076 acpipagr - ok 12:05:15.0351 4076 [ 8EB8DA03B142D3DD1EB9ED8107A76C43 ] AcpiPmi C:\Windows\System32\drivers \acpipmi.sys 12:05:15.0352 4076 AcpiPmi - ok 12:05:15.0355 4076 [ CBCE725C5D86ABA7D2604E22951AA9B8 ] acpitime C:\Windows\System32\drivers \acpitime.sys 12:05:15.0355 4076 acpitime - ok 12:05:15.0389 4076 [ 93C6388592B99925C1D1576E465BC80F ] adp94xx C:\Windows\system32\drivers \adp94xx.sys 12:05:15.0395 4076 adp94xx - ok 12:05:15.0410 4076 [ D27763E0247292654E7F7D16444C7C72 ] adpahci C:\Windows\system32\drivers \adpahci.sys 12:05:15.0414 4076 adpahci - ok 12:05:15.0418 4076 [ 67B90070FF48F794AF19F9FCF0080D75 ] adpu320 C:\Windows\system32\drivers \adpu320.sys 12:05:15.0421 4076 adpu320 - ok 12:05:15.0453 4076 [ AB34A3211A1D2AB977DE00CD7BC5A464 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 12:05:15.0455 4076 AeLookupSvc - ok 12:05:15.0496 4076 [ 9E975BDC89C83900B2C534C4E1B018F8 ] AFD C:\Windows\system32\drivers\afd.sys 12:05:15.0502 4076 AFD - ok 12:05:15.0520 4076 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\Windows\system32\DRIVERS \agrsm64.sys 12:05:15.0529 4076 AgereSoftModem - ok 12:05:15.0532 4076 [ 01590377A5AB19E792528C628A2A68F9 ] agp440 C:\Windows\system32\drivers \agp440.sys 12:05:15.0534 4076 agp440 - ok 12:05:15.0559 4076 [ 16F6F6B7903B913AB41AB848C8BB5658 ] AiCharger C:\Windows\system32\DRIVERS \AiCharger.sys 12:05:15.0571 4076 AiCharger - ok 12:05:15.0590 4076 [ D1BE8E6E5B3AF23A4393AF1BF867977A ] ALG C:\Windows\System32\alg.exe 12:05:15.0592 4076 ALG - ok 12:05:15.0615 4076 [ 025E8C755BE293E50854D26D1BBE5133 ] AllUserInstallAgent C:\Windows \system32\AUInstallAgent.dll 12:05:15.0617 4076 AllUserInstallAgent - ok 12:05:15.0651 4076 [ FB88D16B55F788EEB7590584FE2D8F1A ] AmdK8 C:\Windows\System32\drivers \amdk8.sys 12:05:15.0653 4076 AmdK8 - ok 12:05:15.0656 4076 [ 81402FF3373CE4DF77D5C874E369A985 ] AmdPPM C:\Windows\System32\drivers \amdppm.sys 12:05:15.0658 4076 AmdPPM - ok 12:05:15.0662 4076 [ 35A0EB5AECB0FA3C41A2FB514A562304 ] amdsata C:\Windows\system32\drivers \amdsata.sys 12:05:15.0663 4076 amdsata - ok 12:05:15.0689 4076 [ 00452671904F5EE94B50BF0219C97164 ] amdsbs C:\Windows\system32\drivers \amdsbs.sys 12:05:15.0694 4076 amdsbs - ok 12:05:15.0697 4076 [ EA3FFE53E92E59C87E3ECA9BEB20D9B7 ] amdxata C:\Windows\system32\drivers \amdxata.sys 12:05:15.0698 4076 amdxata - ok 12:05:15.0737 4076 [ FB88245C1815EB1588DBC364A8D24522 ] AMPPAL C:\Windows\System32\drivers \AMPPAL.sys 12:05:15.0740 4076 AMPPAL - ok 12:05:15.0744 4076 [ FB88245C1815EB1588DBC364A8D24522 ] AMPPALP C:\Windows\system32\DRIVERS \amppal.sys 12:05:15.0745 4076 AMPPALP - ok 12:05:15.0848 4076 [ A73CEA1B1B0A4F6D10BFD3B9AD9DC5F9 ] AMPPALR3 C:\Program Files\Intel\BluetoothHS \BTHSAmpPalService.exe 12:05:15.0876 4076 AMPPALR3 - ok 12:05:15.0904 4076 [ 83B3682CE922FB0F415734B26D9D6233 ] AppID C:\Windows\system32\drivers \appid.sys 12:05:15.0907 4076 AppID - ok 12:05:15.0934 4076 [ CE2BEAD7F31816FF0AC490D048C969F9 ] AppIDSvc C:\Windows\System32\appidsvc.dll 12:05:15.0936 4076 AppIDSvc - ok 12:05:15.0940 4076 [ D64C4AFEE8277F35EF729A2B924666B0 ] Appinfo C:\Windows\System32\appinfo.dll 12:05:15.0941 4076 Appinfo - ok 12:05:15.0953 4076 [ E933401B392387F4BE34DE8BAF1722A7 ] arc C:\Windows\system32\drivers\arc.sys 12:05:15.0956 4076 arc - ok 12:05:15.0975 4076 [ 07CA323EF2E8247A568AB0F3662AD644 ] arcsas C:\Windows\system32\drivers \arcsas.sys 12:05:15.0977 4076 arcsas - ok 12:05:16.0071 4076 [ FA713019412C061385F09BD373BF747A ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe 12:05:16.0100 4076 ASLDRService - ok 12:05:16.0117 4076 [ 4C016FD76ED5C05E84CA8CAB77993961 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys 12:05:16.0118 4076 ASMMAP64 - ok 12:05:16.0193 4076 [ 6A122B4F0E5293CACFA8A5F2CBA9B356 ] ASUS InstantOn C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe 12:05:16.0211 4076 ASUS InstantOn - ok 12:05:16.0231 4076 [ 74DBAEC35366C4EE7670428808715A6A ] AsyncMac C:\Windows\system32\DRIVERS \asyncmac.sys 12:05:16.0232 4076 AsyncMac - ok 12:05:16.0263 4076 [ A721FF570C2387E383BDDEA9632863C9 ] atapi C:\Windows\system32\drivers \atapi.sys 12:05:16.0265 4076 atapi - ok 12:05:16.0328 4076 [ DECE3E2832F125A41A02FB59F4C54EEA ] athr C:\Windows\system32\DRIVERS \athrx.sys 12:05:16.0350 4076 athr - ok 12:05:16.0384 4076 [ DBC598E47E7A382E60E2A4745D41FEF9 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe 12:05:16.0397 4076 ATKGFNEXSrv - ok 12:05:16.0436 4076 [ 41CEAFFCF3550785E59E3EC9BEE8D97A ] ATKWMIACPIIO C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys 12:05:16.0438 4076 ATKWMIACPIIO - ok 12:05:16.0475 4076 [ 437EB91CB20144375DDE145149778405 ] ATP C:\Windows\System32\drivers \AsusTP.sys 12:05:16.0477 4076 ATP - ok 12:05:16.0505 4076 [ 81C712A88D62B7B30AE961BBE2B88547 ] AudioEndpointBuilder C:\Windows \System32\AudioEndpointBuilder.dll 12:05:16.0506 4076 AudioEndpointBuilder - ok 12:05:16.0536 4076 [ 19F399667D97F9C144AC1FA74D2D881B ] Audiosrv C:\Windows\System32\Audiosrv.dll 12:05:16.0540 4076 Audiosrv - ok 12:05:16.0590 4076 [ 84E8D636FAD30B14F279523DDFCD83BE ] avc3 C:\Windows\system32\DRIVERS\avc3.sys 12:05:16.0596 4076 avc3 - ok 12:05:16.0613 4076 [ 3B9549FEF98AB1768A1D6A919F355B70 ] avchv C:\Windows\system32\DRIVERS \avchv.sys 12:05:16.0615 4076 avchv - ok 12:05:16.0633 4076 [ B725A236D9206A308BCA0943F6506B8E ] avckf C:\Windows\system32\DRIVERS \avckf.sys 12:05:16.0638 4076 avckf - ok 12:05:16.0676 4076 [ 89491EF71D5EA011127832C588002853 ] AxInstSV C:\Windows\System32\AxInstSV.dll 12:05:16.0680 4076 AxInstSV - ok 12:05:16.0717 4076 [ 45C6EC94DE3D466B4B452EA0E3870321 ] b06bdrv C:\Windows\system32\drivers \bxvbda.sys 12:05:16.0724 4076 b06bdrv - ok 12:05:16.0740 4076 [ 81703BC5D68DEDBB086C2368FBE7B334 ] BasicDisplay C:\Windows\System32\drivers \BasicDisplay.sys 12:05:16.0741 4076 BasicDisplay - ok 12:05:16.0752 4076 [ 5EC68164E14D25675C98BBB5F09E8606 ] BasicRender C:\Windows\System32\drivers \BasicRender.sys 12:05:16.0753 4076 BasicRender - ok 12:05:16.0958 4076 [ 6FBC1C64CEF637AB12F253FB087C8D4B ] BdDesktopParental C:\Program Files\Bitdefender \Bitdefender 2013\bdparentalservice.exe 12:05:16.0960 4076 BdDesktopParental - ok 12:05:17.0005 4076 [ 1942D00BBAA28F4104EFD7F66453749D ] bdelam C:\Windows\system32\drivers \bdelam.sys 12:05:17.0006 4076 bdelam - ok 12:05:17.0031 4076 [ 5BEC02F0A82187227E7457F4600DDFDA ] BDESVC C:\Windows\System32\bdesvc.dll 12:05:17.0034 4076 BDESVC - ok 12:05:17.0132 4076 [ 8F966B0778C248ACC4D22DB88364455E ] BdfNdisf C:\Program Files\Common Files \Bitdefender\Bitdefender Firewall\bdfndisf6.sys 12:05:17.0135 4076 BdfNdisf - ok 12:05:17.0163 4076 [ 641F901CA6B9A90077FA92BE5EC1E789 ] bdfwfpf C:\Program Files\Common Files \Bitdefender\Bitdefender Firewall\bdfwfpf.sys 12:05:17.0164 4076 bdfwfpf - ok 12:05:17.0198 4076 [ E311541A584A29C0D91DD73730B1DCBE ] BDSandBox C:\Windows\system32\drivers \bdsandbox.sys 12:05:17.0201 4076 BDSandBox - ok 12:05:17.0225 4076 [ 81BBCB11A9F88B5547EF1326351B7CDE ] BDVEDISK C:\Windows\system32\DRIVERS \bdvedisk.sys 12:05:17.0226 4076 BDVEDISK - ok 12:05:17.0252 4076 [ 9E7AEA59776D904607985AFFE7E5E183 ] Beep C:\Windows\system32\drivers\Beep.sys 12:05:17.0252 4076 Beep - ok 12:05:17.0280 4076 [ 407F85D5387EDBB665A7969DF4D4712B ] BFE C:\Windows\System32\bfe.dll 12:05:17.0288 4076 BFE - ok 12:05:17.0327 4076 [ D598C44A7072D3108D8D8102EC5E07F7 ] BITS C:\Windows\System32\qmgr.dll 12:05:17.0337 4076 BITS - ok 12:05:17.0415 4076 [ 4AF14827F1584D084BC136A51FAA8397 ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe 12:05:17.0420 4076 Bluetooth Device Monitor - ok 12:05:17.0442 4076 [ BC89A4C6A2A9C65E8E88AD0B3BF180FD ] Bluetooth OBEX Service C:\Program Files (x86)\Intel \Bluetooth\obexsrv.exe 12:05:17.0600 4076 Bluetooth OBEX Service - ok 12:05:17.0622 4076 [ B17AC10B47C7FCB44D22A1F06415840E ] bowser C:\Windows\system32\DRIVERS \bowser.sys 12:05:17.0623 4076 bowser - ok 12:05:17.0653 4076 [ 88F6F0E54F37F99FE7D5513B7623E444 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll 12:05:17.0657 4076 BrokerInfrastructure - ok 12:05:17.0668 4076 [ 310068BDA80B1D55C36580FD8A873FAF ] Browser C:\Windows\System32\browser.dll 12:05:17.0670 4076 Browser - ok 12:05:17.0702 4076 [ 351075A2ADDF86F5C4BA10CA27E8973D ] BthAvrcpTg C:\Windows\System32\drivers \BthAvrcpTg.sys 12:05:17.0703 4076 BthAvrcpTg - ok 12:05:17.0731 4076 [ A8B20D852B07AE19A13B5D47EC4E4C3B ] BthEnum C:\Windows\System32\drivers \BthEnum.sys 12:05:17.0733 4076 BthEnum - ok 12:05:17.0736 4076 [ 616EB8748C988AEE98D93DA141C3D3B4 ] BthHFEnum C:\Windows\System32\drivers \bthhfenum.sys 12:05:17.0738 4076 BthHFEnum - ok 12:05:17.0741 4076 [ 531D83EA26C5FFAA79F0A1DC3B0698CF ] bthhfhid C:\Windows\System32\drivers \BthHFHid.sys 12:05:17.0742 4076 bthhfhid - ok 12:05:17.0772 4076 [ 42201C346F0B8C458E1E9CDE04D68A2C ] BthLEEnum C:\Windows\system32\DRIVERS \BthLEEnum.sys 12:05:17.0786 4076 BthLEEnum - ok 12:05:17.0805 4076 [ 033916CE8784A848B9A3D686B7F66D97 ] BTHMODEM C:\Windows\System32\drivers \bthmodem.sys 12:05:17.0807 4076 BTHMODEM - ok 12:05:17.0821 4076 [ 091BB978E9504D0AD14586929431A957 ] BthPan C:\Windows\system32\DRIVERS \bthpan.sys 12:05:17.0824 4076 BthPan - ok 12:05:17.0870 4076 [ B2FD839F9AF51B8580C02B89AC6C6C89 ] BTHPORT C:\Windows\System32\Drivers \BTHport.sys 12:05:17.0880 4076 BTHPORT - ok 12:05:17.0912 4076 [ A4387C3D271959313E2577DB7BE8BA7A ] bthserv C:\Windows\system32\bthserv.dll 12:05:17.0914 4076 bthserv - ok 12:05:17.0925 4076 [ 9310C81BE4D5EA33798A99355BB53E94 ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS \BTHSSecurityMgr.exe 12:05:17.0929 4076 BTHSSecurityMgr - ok 12:05:17.0941 4076 [ 1F715957F5236D30B6020A19A4271F6A ] BTHUSB C:\Windows\System32\Drivers \BTHUSB.sys 12:05:17.0943 4076 BTHUSB - ok 12:05:17.0961 4076 [ 0E39863E0568BAF18DA8A49F0C5D55EB ] btmaux C:\Windows\system32\DRIVERS \btmaux.sys 12:05:17.0963 4076 btmaux - ok 12:05:17.0978 4076 [ 1134650C2F97611ACCDB02BC904AD35D ] btmhsf C:\Windows\system32\DRIVERS \btmhsf.sys 12:05:17.0985 4076 btmhsf - ok 12:05:18.0006 4076 [ 990B1BABE6E81FB18E65A87EBEFB1772 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 12:05:18.0008 4076 cdfs - ok 12:05:18.0012 4076 [ 339BFF85D788268752DA8C9644B188EE ] cdrom C:\Windows\System32\drivers \cdrom.sys 12:05:18.0013 4076 cdrom - ok 12:05:18.0044 4076 [ BAF8F0F55BC300E5F882E521F054E345 ] CertPropSvc C:\Windows\System32\certprop.dll 12:05:18.0046 4076 CertPropSvc - ok 12:05:18.0049 4076 [ F64B7D1A37CC1D5F421D5359EEC81E2E ] circlass C:\Windows\System32\drivers \circlass.sys 12:05:18.0050 4076 circlass - ok 12:05:18.0063 4076 [ 9905168708DB68849B879B5548F68AB3 ] CLFS C:\Windows\system32\drivers\CLFS.sys 12:05:18.0067 4076 CLFS - ok 12:05:18.0087 4076 [ 2DC8538A2260647484A6C921CA837313 ] CmBatt C:\Windows\System32\drivers \CmBatt.sys 12:05:18.0088 4076 CmBatt - ok 12:05:18.0106 4076 [ 1894FD2D5966A81D3B07A7C4D8724D59 ] CNG C:\Windows\system32\Drivers\cng.sys 12:05:18.0113 4076 CNG - ok 12:05:18.0117 4076 [ 0E5B1E9E7122EDAAF1F6CE047965CA92 ] CompositeBus C:\Windows\System32\drivers \CompositeBus.sys 12:05:18.0117 4076 CompositeBus - ok 12:05:18.0121 4076 COMSysApp - ok 12:05:18.0137 4076 [ D9CB0782AF819548072AA45B70F8B22D ] condrv C:\Windows\system32\drivers \condrv.sys 12:05:18.0138 4076 condrv - ok 12:05:18.0353 4076 [ 9F5AFC3EE57412798B1A559B620386A0 ] cphs C:\Windows \SysWow64\IntelCpHeciSvc.exe 12:05:18.0358 4076 cphs - ok 12:05:18.0383 4076 [ F0E78B119D12BA81F163D48C0FF30B9A ] CryptSvc C:\Windows\system32\cryptsvc.dll 12:05:18.0385 4076 CryptSvc - ok 12:05:18.0408 4076 [ E8A676D196E9A4DED7A6C74DEA90FA4E ] dam C:\Windows\system32\drivers\dam.sys 12:05:18.0409 4076 dam - ok 12:05:18.0452 4076 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] DcomLaunch C:\Windows\system32\rpcss.dll 12:05:18.0457 4076 DcomLaunch - ok 12:05:18.0478 4076 [ C8650D1F61149AA546BDBC99172EBBC1 ] defragsvc C:\Windows\System32\defragsvc.dll 12:05:18.0483 4076 defragsvc - ok 12:05:18.0496 4076 [ 5EAEF67AE2AF4D2DC664B649DB7B2E16 ] DeviceAssociationService C:\Windows\system32\das.dll 12:05:18.0498 4076 DeviceAssociationService - ok 12:05:18.0522 4076 [ D7A3877D9E126E21925DA873677C1D65 ] DeviceInstall C:\Windows\system32\umpnpmgr.dll 12:05:18.0524 4076 DeviceInstall - ok 12:05:18.0532 4076 [ 09D9EB9E7898F8E6561473A20CC808B9 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys 12:05:18.0534 4076 Dfsc - ok 12:05:18.0562 4076 [ 6DBE7FE196F8E9D212DCC34EDDF7C3C1 ] Dhcp C:\Windows\system32\dhcpcore.dll 12:05:18.0564 4076 Dhcp - ok 12:05:18.0576 4076 [ 3C736FAE17BA6F91BA37594AAB139CD0 ] discache C:\Windows\system32\drivers \discache.sys 12:05:18.0577 4076 discache - ok 12:05:18.0581 4076 [ 560495FF4CA22E1D9B1972FA18F43B6F ] disk C:\Windows\system32\drivers\disk.sys 12:05:18.0582 4076 disk - ok 12:05:18.0585 4076 [ 82A7C72593793FE1EADA7A305BD1567A ] dmvsc C:\Windows\System32\drivers \dmvsc.sys 12:05:18.0585 4076 dmvsc - ok 12:05:18.0598 4076 [ 9ACE7E657107EB51E5E89FD883F2FD2D ] Dnscache C:\Windows\System32\dnsrslvr.dll 12:05:18.0602 4076 Dnscache - ok 12:05:18.0610 4076 [ 9949AD2ABA168A618D46C799D6CC898C ] dot3svc C:\Windows\System32\dot3svc.dll 12:05:18.0615 4076 dot3svc - ok 12:05:18.0645 4076 [ 109FC3F80BF4F4DC5A071058074F13C1 ] DPS C:\Windows\system32\dps.dll 12:05:18.0648 4076 DPS - ok 12:05:18.0671 4076 [ 0EB108FDBF4662E2666DAEDF79BBFED9 ] DptfDevDram C:\Windows\system32\DRIVERS \DptfDevDram.sys 12:05:18.0673 4076 DptfDevDram - ok 12:05:18.0676 4076 [ 02262B2DD70E27D7C9F05D7F44135D28 ] DptfDevFan C:\Windows\system32\DRIVERS \DptfDevFan.sys 12:05:18.0677 4076 DptfDevFan - ok 12:05:18.0689 4076 [ 1A251FC32063972B4EEDEC43637061ED ] DptfDevGen C:\Windows\system32\DRIVERS \DptfDevGen.sys 12:05:18.0690 4076 DptfDevGen - ok 12:05:18.0693 4076 [ 2986DF25D67710EB415BFDEB5EBDD486 ] DptfDevPch C:\Windows\system32\DRIVERS \DptfDevPch.sys 12:05:18.0695 4076 DptfDevPch - ok 12:05:18.0715 4076 [ 6C3A9CF2037ADDFDC3AB96B04797AE12 ] DptfDevProc C:\Windows\system32\DRIVERS \DptfDevProc.sys 12:05:18.0719 4076 DptfDevProc - ok 12:05:18.0741 4076 [ 593BFE1580F26864AFA2B3CDF3EEF71F ] DptfManager C:\Windows\system32\DRIVERS \DptfManager.sys 12:05:18.0745 4076 DptfManager - ok 12:05:18.0761 4076 [ 3EBB900BA3BC774CABEBE2BED3200B8C ] DptfParticipantProcessorService C:\Windows \system32\DptfParticipantProcessorService.exe 12:05:18.0779 4076 DptfParticipantProcessorService - ok 12:05:18.0782 4076 [ 15FB795C1683ACC47989875E0CC5ED0B ] DptfPolicyConfigTDPService C:\Windows \system32\DptfPolicyConfigTDPService.exe 12:05:18.0787 4076 DptfPolicyConfigTDPService - ok 12:05:18.0803 4076 [ 013C53A30F896F00C563FD53E695AEF4 ] drmkaud C:\Windows\system32\drivers \drmkaud.sys 12:05:18.0804 4076 drmkaud - ok 12:05:18.0832 4076 [ BF48F32EE248C3D371DA5DC93BBEADA7 ] DsmSvc C:\Windows \System32\DeviceSetupManager.dll 12:05:18.0834 4076 DsmSvc - ok 12:05:18.0879 4076 [ ED120AA770A78B5079F8C7BB5AF8A035 ] DXGKrnl C:\Windows\System32\drivers \dxgkrnl.sys 12:05:18.0891 4076 DXGKrnl - ok 12:05:18.0933 4076 [ 651FBD69A9713D623D456A240F96179C ] e1iexpress C:\Windows\system32\DRIVERS \e1i63x64.sys 12:05:18.0938 4076 e1iexpress - ok 12:05:18.0959 4076 [ 58BA473DD88F5FC1932282BA683AA03E ] Eaphost C:\Windows\System32\eapsvc.dll 12:05:18.0963 4076 Eaphost - ok 12:05:19.0013 4076 [ C815C4FAE6A816DFB58975F3D0396692 ] ebdrv C:\Windows\system32\drivers \evbda.sys 12:05:19.0038 4076 ebdrv - ok 12:05:19.0062 4076 [ 6E0E63801FBEF27995107B8269BCFAAD ] EFS C:\Windows\System32\lsass.exe 12:05:19.0079 4076 EFS - ok 12:05:19.0099 4076 [ 66D60BD9A4C05616ABECA2A901475098 ] EhStorClass C:\Windows\system32\drivers \EhStorClass.sys 12:05:19.0101 4076 EhStorClass - ok 12:05:19.0122 4076 [ A61D0F543024E458C0FE32352E1978E2 ] EhStorTcgDrv C:\Windows\system32\drivers \EhStorTcgDrv.sys 12:05:19.0124 4076 EhStorTcgDrv - ok 12:05:19.0127 4076 [ D790D058D67582DB9C84C2D33695FE6B ] ErrDev C:\Windows\System32\drivers \errdev.sys 12:05:19.0127 4076 ErrDev - ok 12:05:19.0157 4076 [ F9E01C2D9F8BC049E04CF5DC24A5F638 ] EventSystem C:\Windows\system32\es.dll 12:05:19.0163 4076 EventSystem - ok 12:05:19.0288 4076 [ E67E289FA8AA393223AD7F9AFB738FD6 ] EvtEng C:\Program Files\Intel\WiFi\bin \EvtEng.exe 12:05:19.0294 4076 EvtEng - ok 12:05:19.0311 4076 [ D2EAA04AF43154B62FA85B08BAD0A7CA ] excfs C:\Windows\system32\DRIVERS \excfs.sys 12:05:19.0311 4076 excfs - ok 12:05:19.0315 4076 [ E6082A6C109238A725D83184724C4A36 ] excsd C:\Windows\system32\DRIVERS \excsd.sys 12:05:19.0318 4076 excsd - ok 12:05:19.0337 4076 [ 7A4D6FEB8C52B3FE855E4DCDF9107E03 ] exfat C:\Windows\system32\drivers \exfat.sys 12:05:19.0340 4076 exfat - ok 12:05:19.0395 4076 [ 68030FF4B7669E15916910885E2E6160 ] ExpressCache C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe 12:05:19.0398 4076 ExpressCache - ok 12:05:19.0402 4076 [ 60996602A7111FD2D086E803F33E4282 ] fastfat C:\Windows\system32\drivers \fastfat.sys 12:05:19.0406 4076 fastfat - ok 12:05:19.0452 4076 [ F0E7F8382ED5E138B0DFA4CB5058BCFE ] Fax C:\Windows\system32\fxssvc.exe 12:05:19.0459 4076 Fax - ok 12:05:19.0483 4076 [ 73B2D11DF0B6E03A0CB0323218ACB3E4 ] fdc C:\Windows\System32\drivers\fdc.sys 12:05:19.0484 4076 fdc - ok 12:05:19.0526 4076 [ 0828E3E7BD77C89149EAD3232BFD38DB ] fdPHost C:\Windows\system32\fdPHost.dll 12:05:19.0527 4076 fdPHost - ok 12:05:19.0563 4076 [ 872506AAB591E8908DF4461475AF92DF ] FDResPub C:\Windows\system32\fdrespub.dll 12:05:19.0564 4076 FDResPub - ok 12:05:19.0595 4076 [ DFC2156EEC9E0CBC4F8311983567E3AA ] fhsvc C:\Windows\system32\fhsvc.dll 12:05:19.0599 4076 fhsvc - ok 12:05:19.0602 4076 [ 88A9EBACD1058ABB237A6B4E96E7F397 ] FileInfo C:\Windows\system32\drivers \fileinfo.sys 12:05:19.0603 4076 FileInfo - ok 12:05:19.0606 4076 [ 9E4EE3A0B00FF7D5F42A4AF9744CBA02 ] Filetrace C:\Windows\system32\drivers \filetrace.sys 12:05:19.0606 4076 Filetrace - ok 12:05:19.0609 4076 [ B1D4C168FF7B8579E3745888658FFB1D ] flpydisk C:\Windows\System32\drivers \flpydisk.sys 12:05:19.0610 4076 flpydisk - ok 12:05:19.0626 4076 [ B33EC133AE4E6C1881D2302D93D2467D ] FltMgr C:\Windows\system32\drivers \fltmgr.sys 12:05:19.0630 4076 FltMgr - ok 12:05:19.0667 4076 [ 305CB1E16576F436BC8797E629A3D46D ] FontCache C:\Windows\system32\FntCache.dll 12:05:19.0678 4076 FontCache - ok 12:05:19.0753 4076 [ 0B56259F5611787222A04A8F254E51D4 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net \Framework64\v3.0\WPF\PresentationFontCache.exe 12:05:19.0761 4076 FontCache3.0.0.0 - ok 12:05:19.0793 4076 [ A5F7873A39E4E9FAAAE59B7E9E36B705 ] FsDepends C:\Windows\system32\drivers \FsDepends.sys 12:05:19.0795 4076 FsDepends - ok 12:05:19.0810 4076 [ A6DD7D491F587F4BC13FB972977DC8E8 ] Fs_Rec C:\Windows\system32\drivers \Fs_Rec.sys 12:05:19.0811 4076 Fs_Rec - ok 12:05:19.0831 4076 [ 79E687A2829B9EBDF488F78260651094 ] fvevol C:\Windows\system32\DRIVERS \fvevol.sys 12:05:19.0849 4076 fvevol - ok 12:05:19.0860 4076 [ 3EF3FCCC0E70EEC5C2AD996F32BBA642 ] FxPPM C:\Windows\System32\drivers \fxppm.sys 12:05:19.0861 4076 FxPPM - ok 12:05:19.0865 4076 [ 52BC441E07A827EBAB70CDC7EAEDB28D ] gagp30kx C:\Windows\system32\drivers \gagp30kx.sys 12:05:19.0866 4076 gagp30kx - ok 12:05:19.0882 4076 [ 721F8EEF5E9747F32670DEFF7FB92541 ] gencounter C:\Windows\System32\drivers \vmgencounter.sys 12:05:19.0883 4076 gencounter - ok 12:05:19.0912 4076 [ A1F17108F3ED752D2614D767792327C5 ] GPIOClx0101 C:\Windows\system32\Drivers \msgpioclx.sys 12:05:19.0915 4076 GPIOClx0101 - ok 12:05:19.0952 4076 [ 5358678C6370F2ADC5291849F6503262 ] gpsvc C:\Windows\System32\gpsvc.dll 12:05:19.0964 4076 gpsvc - ok 12:05:20.0009 4076 [ BF2763FEA9704B1D9AA2C7719423251A ] gzflt C:\Windows\system32\DRIVERS \gzflt.sys 12:05:20.0011 4076 gzflt - ok 12:05:20.0047 4076 [ C2504AA983B5D411F7D31402E8B57725 ] HdAudAddService C:\Windows\system32\drivers \HdAudio.sys 12:05:20.0050 4076 HdAudAddService - ok 12:05:20.0075 4076 [ 8D6810577E9C4F56DCB8E9BACAC7287B ] HDAudBus C:\Windows\System32\drivers \HDAudBus.sys 12:05:20.0077 4076 HDAudBus - ok 12:05:20.0081 4076 [ 3F76BBA53D65E85A7F53E7A71082082C ] HidBatt C:\Windows\System32\drivers \HidBatt.sys 12:05:20.0083 4076 HidBatt - ok 12:05:20.0086 4076 [ A25BAE8C1F2830C8E5625EC7E4E968BE ] HidBth C:\Windows\System32\drivers \hidbth.sys 12:05:20.0088 4076 HidBth - ok 12:05:20.0091 4076 [ AC0526C4E3A7954F750B8F8D95EFB340 ] hidi2c C:\Windows\System32\drivers \hidi2c.sys 12:05:20.0093 4076 hidi2c - ok 12:05:20.0096 4076 [ DC96F7DACB777CDEAEF9958A50BFDA06 ] HidIr C:\Windows\System32\drivers \hidir.sys 12:05:20.0097 4076 HidIr - ok 12:05:20.0129 4076 [ FAC37D7B3D6354A5A5E19A45B50B4008 ] hidserv C:\Windows\system32\hidserv.dll 12:05:20.0132 4076 hidserv - ok 12:05:20.0157 4076 [ A9F2301B8D28BB4D887F5AEBB55ACB3A ] HIDSwitch C:\Windows\System32\drivers \AsHIDSwitch64.sys 12:05:20.0158 4076 HIDSwitch - ok 12:05:20.0186 4076 [ 590B6F71BCDA4368B4BF7D8DF22B60F7 ] HidUsb C:\Windows\System32\drivers \hidusb.sys 12:05:20.0188 4076 HidUsb - ok 12:05:20.0200 4076 [ 43F884B61A24377567CD0FEB35236334 ] hkmsvc C:\Windows\system32\kmsvc.dll 12:05:20.0203 4076 hkmsvc - ok 12:05:20.0242 4076 [ 6CC1AD7B0E071C317B7FB8FC6AEF0EDA ] HomeGroupListener C:\Windows\system32\ListSvc.dll 12:05:20.0244 4076 HomeGroupListener - ok 12:05:20.0278 4076 [ E0D9F6FE18FA7F53ADD29AF719CE2B7E ] HomeGroupProvider C:\Windows\system32\provsvc.dll 12:05:20.0281 4076 HomeGroupProvider - ok 12:05:20.0324 4076 [ 64DB7A8D97CA53DCCF93D0A1E08342CF ] HpSAMD C:\Windows\system32\drivers \HpSAMD.sys 12:05:20.0326 4076 HpSAMD - ok 12:05:20.0377 4076 [ 47DBBF38E00C3F7404B71F6509241EF1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 12:05:20.0402 4076 HTTP - ok 12:05:20.0405 4076 [ 2A98301068801700906C06649860FE94 ] hwpolicy C:\Windows\system32\drivers \hwpolicy.sys 12:05:20.0406 4076 hwpolicy - ok 12:05:20.0409 4076 [ DC76901D82097C9E297F20C287CB9A27 ] hyperkbd C:\Windows\System32\drivers \hyperkbd.sys 12:05:20.0409 4076 hyperkbd - ok 12:05:20.0412 4076 [ 716413AB3CA12DE0A7222D28C1C9352C ] HyperVideo C:\Windows\system32\DRIVERS \HyperVideo.sys 12:05:20.0414 4076 HyperVideo - ok 12:05:20.0417 4076 [ C9E9CBF73AFFBFE3E801EFB516787BA3 ] i8042prt C:\Windows\System32\drivers \i8042prt.sys 12:05:20.0419 4076 i8042prt - ok 12:05:20.0457 4076 [ 0FE66A51D81A25AACEAAE4C26308121D ] iaStorA C:\Windows\system32\drivers \iaStorA.sys 12:05:20.0460 4076 iaStorA - ok 12:05:20.0476 4076 [ 5E394EBD26FD68AA9300332C46BEDD62 ] iaStorV C:\Windows\system32\drivers \iaStorV.sys 12:05:20.0481 4076 iaStorV - ok 12:05:20.0506 4076 [ 43E864824FCEBEE7119E1572B2703EB9 ] iBtFltCoex C:\Windows\system32\DRIVERS \iBtFltCoex.sys 12:05:20.0508 4076 iBtFltCoex - ok 12:05:20.0644 4076 [ 11A31FC2481BFE69B0507ED8C80215F4 ] igfx C:\Windows\system32\DRIVERS \igdkmd64.sys 12:05:20.0706 4076 igfx - ok 12:05:20.0737 4076 [ 24847A06B84339FEEDE5CABF3D27D320 ] iirsp C:\Windows\system32\drivers \iirsp.sys 12:05:20.0739 4076 iirsp - ok 12:05:20.0776 4076 [ 45EACE8D94B9CEC746A85154892C4FDC ] IKEEXT C:\Windows\System32\ikeext.dll 12:05:20.0786 4076 IKEEXT - ok 12:05:20.0818 4076 [ FD2032D2EAE8D7F3381EBA5FA3E7FEEA ] intaud_WaveExtensible C:\Windows\system32\drivers \intelaud.sys 12:05:20.0820 4076 intaud_WaveExtensible - ok 12:05:20.0894 4076 [ DC052337C24A87AA1ACC8FCE4F2D5C7F ] IntcAzAudAddService C:\Windows\system32\drivers \RTKVHD64.sys 12:05:20.0924 4076 IntcAzAudAddService - ok 12:05:20.0951 4076 [ F5495B38BFB9149925F54F65AB40EFBF ] IntcDAud C:\Windows\system32\DRIVERS \IntcDAud.sys 12:05:20.0956 4076 IntcDAud - ok 12:05:21.0010 4076 [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC ] Intel(R) Capability Licensing Service Interface C: \Program Files\Intel\iCLS Client\HeciServer.exe 12:05:21.0017 4076 Intel(R) Capability Licensing Service Interface - ok 12:05:21.0082 4076 [ 9656F8E29F6C3161A3E99BCD3A472FF9 ] Intel(R) ME Service C:\Program Files (x86)\Intel \Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 12:05:21.0095 4076 Intel(R) ME Service - ok 12:05:21.0126 4076 [ 4F37726CF764CA18A8A84F85EF3A7F24 ] intelide C:\Windows\system32\drivers \intelide.sys 12:05:21.0126 4076 intelide - ok 12:05:21.0130 4076 [ F9E126AA767E2E6E3128434A43C9F713 ] intelppm C:\Windows\System32\drivers \intelppm.sys 12:05:21.0131 4076 intelppm - ok 12:05:21.0134 4076 [ 8FCA66234A0933D796BB780B7953BAB9 ] IpFilterDriver C:\Windows\system32\DRIVERS \ipfltdrv.sys 12:05:21.0136 4076 IpFilterDriver - ok 12:05:21.0167 4076 [ C217B8D2E58C57A319B16125C3D4B69C ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 12:05:21.0177 4076 iphlpsvc - ok 12:05:21.0196 4076 [ 6E98A046A12AA113F8898AA5D612BD6E ] IPMIDRV C:\Windows\System32\drivers \IPMIDrv.sys 12:05:21.0198 4076 IPMIDRV - ok 12:05:21.0201 4076 [ 3969B9C218DD3FAA9F4ED2FFC3651C02 ] IPNAT C:\Windows\system32\drivers \ipnat.sys 12:05:21.0204 4076 IPNAT - ok 12:05:21.0207 4076 [ 25CD7C4BB2863FFC2B0B311F0AEBF77C ] IRENUM C:\Windows\system32\drivers \irenum.sys 12:05:21.0208 4076 IRENUM - ok 12:05:21.0237 4076 [ 4D9B9A794F22415B8C3E0CCFBE61BC7A ] irstrtdv C:\Windows\System32\drivers \irstrtdv.sys 12:05:21.0238 4076 irstrtdv - ok 12:05:21.0440 4076 [ E145E934392E7A49FDC6775AC3A347F8 ] irstrtsv C:\Windows\SysWOW64\irstrtsv.exe 12:05:21.0464 4076 irstrtsv - ok 12:05:21.0478 4076 [ D940C5BB9DC92E588533C19ABCC3D2C2 ] isapnp C:\Windows\system32\drivers \isapnp.sys 12:05:21.0478 4076 isapnp - ok 12:05:21.0497 4076 [ F5F0DE1B7F256997501EECECE9648108 ] iScsiPrt C:\Windows\System32\drivers \msiscsi.sys 12:05:21.0502 4076 iScsiPrt - ok 12:05:21.0519 4076 [ C59B9CE2855E667809F9E63C20FC44A5 ] iwdbus C:\Windows\System32\drivers \iwdbus.sys 12:05:21.0520 4076 iwdbus - ok 12:05:21.0543 4076 [ 78ABBE558F57144047F10A0F50FE4B2F ] jhi_service C:\Program Files (x86)\Intel\Intel (R) Management Engine Components\DAL\jhi_service.exe 12:05:21.0562 4076 jhi_service - ok 12:05:21.0589 4076 [ 8FBD94B69D6423E20ABCD59D86368B21 ] kbdclass C:\Windows\System32\drivers \kbdclass.sys 12:05:21.0590 4076 kbdclass - ok 12:05:21.0593 4076 [ E88C932ABDF8185A62C8F2FC7B051FB6 ] kbdhid C:\Windows\System32\drivers \kbdhid.sys 12:05:21.0594 4076 kbdhid - ok 12:05:21.0614 4076 [ A8080BEBCDB7A16495CE1205921DCAC5 ] kbfiltr C:\Windows\System32\drivers \kbfiltr.sys 12:05:21.0614 4076 kbfiltr - ok 12:05:21.0617 4076 [ FB6C185092E18011EF49989425C2AA87 ] kdnic C:\Windows\system32\DRIVERS \kdnic.sys 12:05:21.0618 4076 kdnic - ok 12:05:21.0639 4076 [ 6E0E63801FBEF27995107B8269BCFAAD ] KeyIso C:\Windows\system32\lsass.exe 12:05:21.0640 4076 KeyIso - ok 12:05:21.0652 4076 [ A4751040DB14E30E61A4E47481C77274 ] KSecDD C:\Windows\system32\Drivers \ksecdd.sys 12:05:21.0653 4076 KSecDD - ok 12:05:21.0657 4076 [ E427D299CFE267A2465D3AAF81440ED9 ] KSecPkg C:\Windows\system32\Drivers \ksecpkg.sys 12:05:21.0660 4076 KSecPkg - ok 12:05:21.0677 4076 [ 81492FEEBF2F26455B00EE8DBAE8A1B0 ] ksthunk C:\Windows\system32\drivers \ksthunk.sys 12:05:21.0678 4076 ksthunk - ok 12:05:21.0716 4076 [ 5825DBACEDC3812B5CF8D40B997BF210 ] KtmRm C:\Windows\system32\msdtckrm.dll 12:05:21.0722 4076 KtmRm - ok 12:05:21.0753 4076 [ 256EE31588257E8A555DBFAA13F1908E ] LanmanServer C:\Windows\system32\srvsvc.dll 12:05:21.0756 4076 LanmanServer - ok 12:05:21.0782 4076 [ 16650912BE5A94B40E0B3B4C39652B56 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 12:05:21.0787 4076 LanmanWorkstation - ok 12:05:21.0801 4076 [ CEEFD29FC551F289810B0B9381B321DC ] lltdio C:\Windows\system32\DRIVERS \lltdio.sys 12:05:21.0802 4076 lltdio - ok 12:05:21.0837 4076 [ BCF53485E0A94722CDE3C4A93CD8EB8C ] lltdsvc C:\Windows\System32\lltdsvc.dll 12:05:21.0843 4076 lltdsvc - ok 12:05:21.0846 4076 [ 5A2F7F1CBC2E631A497DAD16164E06D2 ] lmhosts C:\Windows\System32\lmhsvc.dll 12:05:21.0847 4076 lmhosts - ok 12:05:21.0877 4076 [ 2C24DC448DBE8DB9BE1441B824C57E79 ] LMS C:\Program Files (x86)\Intel\Intel (R) Management Engine Components\LMS\LMS.exe 12:05:21.0919 4076 LMS - ok 12:05:21.0925 4076 [ 022CDD12161B063D7852B1075BF3FFF2 ] LSI_SAS C:\Windows\system32\drivers \lsi_sas.sys 12:05:21.0928 4076 LSI_SAS - ok 12:05:21.0960 4076 [ 07AD59D669B996F29F91817F0ECFA34F ] LSI_SAS2 C:\Windows\system32\drivers \lsi_sas2.sys 12:05:21.0962 4076 LSI_SAS2 - ok 12:05:21.0966 4076 [ 216FB796AA4E252ACCE93B1BCB80B5EC ] LSI_SCSI C:\Windows\system32\drivers \lsi_scsi.sys 12:05:21.0968 4076 LSI_SCSI - ok 12:05:21.0975 4076 [ 5E80530AF37102488EE980B4A92AF99F ] LSI_SSS C:\Windows\system32\drivers \lsi_sss.sys 12:05:21.0976 4076 LSI_SSS - ok 12:05:22.0011 4076 [ A57BA284F5996FFD32DCDBC41A4657DB ] LSM C:\Windows\System32\lsm.dll 12:05:22.0016 4076 LSM - ok 12:05:22.0020 4076 [ 2BDC5D711FA61307CE6190D47C956368 ] luafv C:\Windows\system32\drivers \luafv.sys 12:05:22.0023 4076 luafv - ok 12:05:22.0026 4076 [ 9B0D829C3BE4E7472DB9DD2B79908E3C ] megasas C:\Windows\system32\drivers \megasas.sys 12:05:22.0027 4076 megasas - ok 12:05:22.0041 4076 [ ECC3F54C7AFC318271C4F0B4606D8DB0 ] MegaSR C:\Windows\system32\drivers \MegaSR.sys 12:05:22.0044 4076 MegaSR - ok 12:05:22.0076 4076 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\Windows\System32\drivers \HECIx64.sys 12:05:22.0077 4076 MEIx64 - ok 12:05:22.0100 4076 [ DBD28A7997CF7303E610989C565C9B29 ] MMCSS C:\Windows\system32\mmcss.dll 12:05:22.0101 4076 MMCSS - ok 12:05:22.0104 4076 [ 780098AD5DA8A4822E2563984C85EF7B ] Modem C:\Windows\system32\drivers \modem.sys 12:05:22.0105 4076 Modem - ok 12:05:22.0108 4076 [ 83EB0BF7E6EBD5B1AAC97F9DBD5EB935 ] monitor C:\Windows\system32\DRIVERS \monitor.sys 12:05:22.0109 4076 monitor - ok 12:05:22.0122 4076 [ 618446B98C79776654340CE27C73485E ] mouclass C:\Windows\System32\drivers \mouclass.sys 12:05:22.0123 4076 mouclass - ok 12:05:22.0127 4076 [ CB2527B8B87D83E56FBF3944BBB6F606 ] mouhid C:\Windows\System32\drivers \mouhid.sys 12:05:22.0128 4076 mouhid - ok 12:05:22.0132 4076 [ 89D263DBF08119CE16273991C120D6DD ] mountmgr C:\Windows\system32\drivers \mountmgr.sys 12:05:22.0134 4076 mountmgr - ok 12:05:22.0177 4076 [ ECE7906E074FA5AAC14AF711F65AC979 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 12:05:22.0179 4076 MozillaMaintenance - ok 12:05:22.0200 4076 [ 36BF4D86F166ACBC14F0B8B8F90CBCEA ] mpsdrv C:\Windows\system32\drivers \mpsdrv.sys 12:05:22.0201 4076 mpsdrv - ok 12:05:22.0227 4076 [ 411EA973A1961C287927DF13891EB41E ] MpsSvc C:\Windows\system32\mpssvc.dll 12:05:22.0235 4076 MpsSvc - ok 12:05:22.0245 4076 [ 3D70147F55F1EC84EB9139ED7FFE48BC ] MRxDAV C:\Windows\system32\drivers \mrxdav.sys 12:05:22.0248 4076 MRxDAV - ok 12:05:22.0264 4076 [ 1EEAA5A62E8C49DDF58798F06F78BFFA ] mrxsmb C:\Windows\system32\DRIVERS \mrxsmb.sys 12:05:22.0268 4076 mrxsmb - ok 12:05:22.0273 4076 [ 06D5F2FA3C61E8EA91648EA8E9F99FD3 ] mrxsmb10 C:\Windows\system32\DRIVERS \mrxsmb10.sys 12:05:22.0277 4076 mrxsmb10 - ok 12:05:22.0281 4076 [ BFBE1EA55ECC15733933D429E384BCA4 ] mrxsmb20 C:\Windows\system32\DRIVERS \mrxsmb20.sys 12:05:22.0284 4076 mrxsmb20 - ok 12:05:22.0313 4076 [ 98487487D6B3797CA927E9D7B030AE13 ] MsBridge C:\Windows\system32\DRIVERS \bridge.sys 12:05:22.0315 4076 MsBridge - ok 12:05:22.0324 4076 [ 4A07458EB4F17573BD39F22029A991C1 ] MSDTC C:\Windows\System32\msdtc.exe 12:05:22.0327 4076 MSDTC - ok 12:05:22.0333 4076 [ 3886F1F2A4D2900ABAA7E4486BEEE6A2 ] Msfs C:\Windows\system32\drivers\Msfs.sys 12:05:22.0333 4076 Msfs - ok 12:05:22.0368 4076 [ C32A7A39B960A42BA9D4FBE47213CA03 ] msgpiowin32 C:\Windows\System32\drivers \msgpiowin32.sys 12:05:22.0370 4076 msgpiowin32 - ok 12:05:22.0402 4076 [ D3857A767B91A061B408CCAB02DA4F40 ] mshidkmdf C:\Windows\System32\drivers \mshidkmdf.sys 12:05:22.0402 4076 mshidkmdf - ok 12:05:22.0405 4076 [ 839B48910FB1E887635C48F3EC11A05E ] mshidumdf C:\Windows\System32\drivers \mshidumdf.sys 12:05:22.0406 4076 mshidumdf - ok 12:05:22.0409 4076 [ 55C0DB741E3AB7463242B185B1C2997C ] msisadrv C:\Windows\system32\drivers \msisadrv.sys 12:05:22.0409 4076 msisadrv - ok 12:05:22.0432 4076 [ 216C6B035A4BA5560E1255BD8E5BB89F ] MSiSCSI C:\Windows\system32\iscsiexe.dll 12:05:22.0436 4076 MSiSCSI - ok 12:05:22.0439 4076 msiserver - ok 12:05:22.0442 4076 [ 509809566E49F4411055864EA8D437CD ] MSKSSRV C:\Windows\system32\drivers \MSKSSRV.sys 12:05:22.0442 4076 MSKSSRV - ok 12:05:22.0445 4076 [ 63145201D6458E4958E572E7D6FC2604 ] MsLldp C:\Windows\system32\DRIVERS \mslldp.sys 12:05:22.0446 4076 MsLldp - ok 12:05:22.0449 4076 [ 99D526E803DB6D7FF290FD98B6204641 ] MSPCLOCK C:\Windows\system32\drivers \MSPCLOCK.sys 12:05:22.0450 4076 MSPCLOCK - ok 12:05:22.0452 4076 [ 06FA77C3E2A491ADCD704C5E73006269 ] MSPQM C:\Windows\system32\drivers \MSPQM.sys 12:05:22.0453 4076 MSPQM - ok 12:05:22.0471 4076 [ E134EC4DE11CF78CB01432D180710D84 ] MsRPC C:\Windows\system32\drivers \MsRPC.sys 12:05:22.0476 4076 MsRPC - ok 12:05:22.0489 4076 [ B5AECF12F09DEE97C9FCAA5BA016CE1E ] mssmbios C:\Windows\System32\drivers \mssmbios.sys 12:05:22.0490 4076 mssmbios - ok 12:05:22.0492 4076 [ 72D66A05E0F99F2528F6C6204FD22AA1 ] MSTEE C:\Windows\system32\drivers \MSTEE.sys 12:05:22.0493 4076 MSTEE - ok 12:05:22.0495 4076 [ 8AAAE399FC255FA105D4158CBA289001 ] MTConfig C:\Windows\System32\drivers \MTConfig.sys 12:05:22.0496 4076 MTConfig - ok 12:05:22.0499 4076 [ 3BCB702F3E6CC622DCAFCAA45D7CDE0A ] Mup C:\Windows\system32\Drivers\mup.sys 12:05:22.0501 4076 Mup - ok 12:05:22.0505 4076 [ 3A1E095277BBD406CEA8EA6B76950664 ] mvumis C:\Windows\system32\drivers \mvumis.sys 12:05:22.0506 4076 mvumis - ok 12:05:22.0567 4076 [ 431F065E2A99FC3C670BD20694117C8B ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin \PanDhcpDns.exe 12:05:22.0571 4076 MyWiFiDHCPDNS - ok 12:05:22.0599 4076 [ 4B18840511D720BA118D3017E8165875 ] napagent C:\Windows\system32\qagentRT.dll 12:05:22.0605 4076 napagent - ok 12:05:22.0640 4076 [ 43D7388A90A4C6EA346A4D6FF0377479 ] NativeWifiP C:\Windows\system32\DRIVERS \nwifi.sys 12:05:22.0645 4076 NativeWifiP - ok 12:05:22.0677 4076 [ 6A0C3996DA7DAE6D6939676D786EEEC4 ] NcaSvc C:\Windows\System32\ncasvc.dll 12:05:22.0693 4076 NcaSvc - ok 12:05:22.0707 4076 [ C982FE4CC91DECE2259F494FCEB4030F ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll 12:05:22.0709 4076 NcdAutoSetup - ok 12:05:22.0795 4076 [ EAB473DFB958489D3145FE4DD5F5E77B ] NDIS C:\Windows\system32\drivers\ndis.sys 12:05:22.0803 4076 NDIS - ok 12:05:22.0806 4076 [ 39C8A1D9D46F5E83A016BCAB72455284 ] NdisCap C:\Windows\system32\DRIVERS \ndiscap.sys 12:05:22.0807 4076 NdisCap - ok 12:05:22.0837 4076 [ 762941932B7E4C588E48A577BA9D6440 ] NdisImPlatform C:\Windows\system32\DRIVERS \NdisImPlatform.sys 12:05:22.0838 4076 NdisImPlatform - ok 12:05:22.0841 4076 [ 8757D4A9701F9F4B59978839F46C32A7 ] NdisTapi C:\Windows\system32\DRIVERS \ndistapi.sys 12:05:22.0842 4076 NdisTapi - ok 12:05:22.0855 4076 [ 79AB68BB3FFF974AD4F41FA559F4EC67 ] Ndisuio C:\Windows\system32\DRIVERS \ndisuio.sys 12:05:22.0856 4076 Ndisuio - ok 12:05:22.0861 4076 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NdisWan C:\Windows\system32\DRIVERS \ndiswan.sys 12:05:22.0868 4076 NdisWan - ok 12:05:22.0875 4076 [ 62C7DBF4F9301F76CF87D4B9D8F57BF8 ] NDISWANLEGACY C:\Windows\system32\DRIVERS \ndiswan.sys 12:05:22.0876 4076 NDISWANLEGACY - ok 12:05:22.0881 4076 [ FC891984160AAD8D3F047888C6BF1467 ] NDProxy C:\Windows\system32\drivers \NDProxy.sys 12:05:22.0881 4076 NDProxy - ok 12:05:22.0910 4076 [ D3F60A4345FCA9C1BE68AD7D0D6DE770 ] Ndu C:\Windows\system32\drivers\Ndu.sys 12:05:22.0911 4076 Ndu - ok 12:05:22.0933 4076 [ 7C203A76394F9AE68F69EEE5F9612C4A ] NetBIOS C:\Windows\system32\DRIVERS \netbios.sys 12:05:22.0936 4076 NetBIOS - ok 12:05:22.0976 4076 [ 7CEC25C682D319D484630B3952C31A11 ] NetBT C:\Windows\system32\DRIVERS \netbt.sys 12:05:22.0981 4076 NetBT - ok 12:05:23.0006 4076 [ 6E0E63801FBEF27995107B8269BCFAAD ] Netlogon C:\Windows\system32\lsass.exe 12:05:23.0007 4076 Netlogon - ok 12:05:23.0037 4076 [ 89519D29CBEC2121CA65CC29C4D345E0 ] Netman C:\Windows\System32\netman.dll 12:05:23.0043 4076 Netman - ok 12:05:23.0127 4076 [ C166E3CD90AB0781ECDF10EC765B083A ] netprofm C:\Windows\System32\netprofmsvc.dll 12:05:23.0133 4076 netprofm - ok 12:05:23.0450 4076 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\Windows\Microsoft.NET \Framework64\v4.0.30319\SMSvcHost.exe 12:05:23.0459 4076 NetTcpPortSharing - ok 12:05:23.0664 4076 [ 6C9793D9E1E26E74B6421B0791971F89 ] NETwNe64 C:\Windows\system32\DRIVERS \NETwew00.sys 12:05:23.0764 4076 NETwNe64 - ok 12:05:24.0113 4076 [ 57B9C04D673F236D41FAB03842C8640B ] NETwNs64 C:\Windows\system32\DRIVERS \NETwNs64.sys 12:05:24.0245 4076 NETwNs64 - ok 12:05:24.0259 4076 [ 12DD2800E4EEA37DC9AE256AD62423B4 ] nfrd960 C:\Windows\system32\drivers \nfrd960.sys 12:05:24.0267 4076 nfrd960 - ok 12:05:24.0448 4076 [ 61DA2E03B858080EEB28409AA6B32487 ] NIHardwareService C:\Program Files\Common Files \Native Instruments\Hardware\NIHardwareService.exe 12:05:24.0685 4076 NIHardwareService - ok 12:05:24.0736 4076 [ 05B42A91867DA3FF71C59747DC785996 ] NlaSvc C:\Windows\System32\nlasvc.dll 12:05:24.0747 4076 NlaSvc - ok 12:05:24.0782 4076 [ 17E19A742FB30C002F8B43575451DBE1 ] Npfs C:\Windows\system32\drivers\Npfs.sys 12:05:24.0783 4076 Npfs - ok 12:05:24.0793 4076 [ 8ED299C30792544264E558BEA79F0947 ] npsvctrig C:\Windows\System32\drivers \npsvctrig.sys 12:05:24.0794 4076 npsvctrig - ok 12:05:24.0830 4076 [ 832B5FDF0B5577713FD7F2465FCD0ACE ] nsi C:\Windows\system32\nsisvc.dll 12:05:24.0831 4076 nsi - ok 12:05:24.0871 4076 [ 689B3B1E95C70ABF7AFF29F9406EF1E0 ] nsiproxy C:\Windows\system32\drivers \nsiproxy.sys 12:05:24.0872 4076 nsiproxy - ok 12:05:24.0986 4076 [ 11D7A4A4A1DA60F394F53B413DCDF0DE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 12:05:25.0066 4076 Ntfs - ok 12:05:25.0083 4076 [ 4163ADE07DB51843AE31F65B94F5398D ] Null C:\Windows\system32\drivers\Null.sys 12:05:25.0084 4076 Null - ok 12:05:25.0824 4076 [ 5104BAC2DA2A5BDD86AC6B0708B00F06 ] nvlddmkm C:\Windows\system32\DRIVERS \nvlddmkm.sys 12:05:25.0919 4076 nvlddmkm - ok 12:05:25.0944 4076 [ 918841B2454F4F2BD94479692079490B ] nvpciflt C:\Windows\system32\DRIVERS \nvpciflt.sys 12:05:25.0950 4076 nvpciflt - ok 12:05:25.0975 4076 [ D6D34118263412D3AAA8348A9572B7F2 ] nvraid C:\Windows\system32\drivers \nvraid.sys 12:05:26.0003 4076 nvraid - ok 12:05:26.0007 4076 [ 27AFC428D1D32ABD04A86763A4EDDEA9 ] nvstor C:\Windows\system32\drivers \nvstor.sys 12:05:26.0016 4076 nvstor - ok 12:05:26.0127 4076 [ DDFAFCE89A5C93D04712B86F94E9FCBA ] nvsvc C:\Windows\system32\nvvsvc.exe 12:05:26.0138 4076 nvsvc - ok 12:05:26.0252 4076 [ 249357999355A998AA94A3673C3367EB ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 12:05:26.0290 4076 nvUpdatusService - ok 12:05:26.0312 4076 [ 051CFB5107BAAE510419BDC41F8C4036 ] nv_agp C:\Windows\system32\drivers \nv_agp.sys 12:05:26.0314 4076 nv_agp - ok 12:05:26.0335 4076 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 12:05:26.0357 4076 p2pimsvc - ok 12:05:26.0379 4076 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\Windows\system32\p2psvc.dll 12:05:26.0384 4076 p2psvc - ok 12:05:26.0409 4076 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\Windows\System32\drivers \parport.sys 12:05:26.0411 4076 Parport - ok 12:05:26.0439 4076 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\Windows\system32\drivers \partmgr.sys 12:05:26.0442 4076 partmgr - ok 12:05:26.0471 4076 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\Windows\System32\pcasvc.dll 12:05:26.0477 4076 PcaSvc - ok 12:05:26.0504 4076 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\Windows\system32\drivers\pci.sys 12:05:26.0508 4076 pci - ok 12:05:26.0511 4076 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\Windows\system32\drivers \pciide.sys 12:05:26.0511 4076 pciide - ok 12:05:26.0516 4076 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\Windows\system32\drivers \pcmcia.sys 12:05:26.0519 4076 pcmcia - ok 12:05:26.0523 4076 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\Windows\system32\drivers\pcw.sys 12:05:26.0524 4076 pcw - ok 12:05:26.0527 4076 [ 674B0AAFB88A04D313B032C623F6AC9A ] pdc C:\Windows\system32\drivers\pdc.sys 12:05:26.0528 4076 pdc - ok 12:05:26.0538 4076 [ 70DBB6A8B52B3830922F1C5789E1BEEB ] PEAUTH C:\Windows\system32\drivers \peauth.sys 12:05:26.0545 4076 PEAUTH - ok 12:05:26.0750 4076 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\Windows\SysWow64\perfhost.exe 12:05:26.0752 4076 PerfHost - ok 12:05:26.0802 4076 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\Windows\system32\pla.dll 12:05:26.0816 4076 pla - ok 12:05:26.0855 4076 [ D7A3877D9E126E21925DA873677C1D65 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 12:05:26.0857 4076 PlugPlay - ok 12:05:26.0875 4076 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 12:05:26.0877 4076 PNRPAutoReg - ok 12:05:26.0882 4076 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 12:05:26.0885 4076 PNRPsvc - ok 12:05:26.0923 4076 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 12:05:26.0931 4076 PolicyAgent - ok 12:05:26.0946 4076 [ AAD0C7235F804728373026EEFFDBCA6C ] Power C:\Windows\system32\umpo.dll 12:05:26.0948 4076 Power - ok 12:05:26.0974 4076 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\Windows\system32\DRIVERS \raspptp.sys 12:05:26.0976 4076 PptpMiniport - ok 12:05:27.0071 4076 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS \x64\3\PrintConfig.dll 12:05:27.0110 4076 PrintNotify - ok 12:05:27.0147 4076 [ 8DA167F8967AB35A2487095CB1B879A0 ] Processor C:\Windows\System32\drivers \processr.sys 12:05:27.0149 4076 Processor - ok 12:05:27.0173 4076 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\Windows\system32\profsvc.dll 12:05:27.0176 4076 ProfSvc - ok 12:05:27.0186 4076 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\Windows\system32\DRIVERS \pacer.sys 12:05:27.0189 4076 Psched - ok 12:05:27.0202 4076 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\Windows\system32\qwave.dll 12:05:27.0209 4076 QWAVE - ok 12:05:27.0225 4076 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\Windows\system32\drivers \qwavedrv.sys 12:05:27.0225 4076 QWAVEdrv - ok 12:05:27.0245 4076 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\Windows\system32\DRIVERS \rasacd.sys 12:05:27.0245 4076 RasAcd - ok 12:05:27.0262 4076 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\Windows\system32\DRIVERS \AgileVpn.sys 12:05:27.0263 4076 RasAgileVpn - ok 12:05:27.0292 4076 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\Windows\System32\rasauto.dll 12:05:27.0297 4076 RasAuto - ok 12:05:27.0300 4076 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\Windows\system32\DRIVERS \rasl2tp.sys 12:05:27.0303 4076 Rasl2tp - ok 12:05:27.0320 4076 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\Windows\System32\rasmans.dll 12:05:27.0326 4076 RasMan - ok 12:05:27.0329 4076 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\Windows\system32\DRIVERS \raspppoe.sys 12:05:27.0330 4076 RasPppoe - ok 12:05:27.0342 4076 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\Windows\system32\DRIVERS \rassstp.sys 12:05:27.0342 4076 RasSstp - ok 12:05:27.0362 4076 [ B72C33DBD5326B3864CF2091AF8B906B ] rdbss C:\Windows\system32\DRIVERS \rdbss.sys 12:05:27.0366 4076 rdbss - ok 12:05:27.0378 4076 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\Windows\System32\drivers \rdpbus.sys 12:05:27.0379 4076 rdpbus - ok 12:05:27.0383 4076 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\Windows\system32\drivers \rdpdr.sys 12:05:27.0385 4076 RDPDR - ok 12:05:27.0391 4076 [ 3B4F32CA8B37584ECF98BCE136E38B96 ] RdpVideoMiniport C:\Windows\system32\drivers \rdpvideominiport.sys 12:05:27.0392 4076 RdpVideoMiniport - ok 12:05:27.0397 4076 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\Windows\system32\drivers \RDPWD.sys 12:05:27.0400 4076 RDPWD - ok 12:05:27.0421 4076 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\Windows\system32\drivers \rdyboost.sys 12:05:27.0425 4076 rdyboost - ok 12:05:27.0480 4076 [ D4F8266D63800FF9ACFAC838005A974C ] RegSrvc C:\Program Files\Common Files\Intel \WirelessCommon\RegSrvc.exe 12:05:27.0484 4076 RegSrvc - ok 12:05:27.0507 4076 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\Windows\System32\mprdim.dll 12:05:27.0512 4076 RemoteAccess - ok 12:05:27.0544 4076 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\Windows\system32\regsvc.dll 12:05:27.0549 4076 RemoteRegistry - ok 12:05:27.0559 4076 [ 17EF582CBC4809F96B9E6D0543480763 ] RFCOMM C:\Windows\system32\DRIVERS \rfcomm.sys 12:05:27.0561 4076 RFCOMM - ok 12:05:27.0577 4076 [ 381E606B90F32E501D1E2C852D211AB9 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 12:05:27.0579 4076 RpcEptMapper - ok 12:05:27.0607 4076 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\Windows\system32\locator.exe 12:05:27.0609 4076 RpcLocator - ok 12:05:27.0641 4076 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\Windows\system32\rpcss.dll 12:05:27.0645 4076 RpcSs - ok 12:05:27.0671 4076 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\Windows\system32\DRIVERS \rspndr.sys 12:05:27.0672 4076 rspndr - ok 12:05:27.0695 4076 [ 8EB6DCEB7473C232D8BC9A886E3183AC ] RSUSBVSTOR C:\Windows\System32\Drivers \RtsUVStor.sys 12:05:27.0700 4076 RSUSBVSTOR - ok 12:05:27.0716 4076 [ 15923AA360F7675D3D43C9669316A0BA ] RTL8168 C:\Windows\system32\DRIVERS \Rt630x64.sys 12:05:27.0722 4076 RTL8168 - ok 12:05:27.0727 4076 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\Windows\System32\drivers \vms3cap.sys 12:05:27.0727 4076 s3cap - ok 12:05:27.0800 4076 [ 6A28F5BB0F3CD035D12D8C105EA6ED3E ] SafeBox C:\Program Files\Bitdefender \Bitdefender SafeBox\safeboxservice.exe 12:05:27.0806 4076 SafeBox - ok 12:05:27.0828 4076 [ 6E0E63801FBEF27995107B8269BCFAAD ] SamSs C:\Windows\system32\lsass.exe 12:05:27.0829 4076 SamSs - ok 12:05:27.0873 4076 [ CCBF62280DAF6D94A4C73E391CDAC68C ] SbieDrv C:\Program Files\Sandboxie \SbieDrv.sys 12:05:27.0876 4076 SbieDrv - ok 12:05:27.0901 4076 [ 8A1F63C6EC01C56C9EC4C681E593FE34 ] SbieSvc C:\Program Files\Sandboxie \SbieSvc.exe 12:05:27.0906 4076 SbieSvc - ok 12:05:27.0918 4076 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\Windows\system32\drivers \sbp2port.sys 12:05:27.0920 4076 sbp2port - ok 12:05:27.0941 4076 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\Windows\System32\SCardSvr.dll 12:05:27.0945 4076 SCardSvr - ok 12:05:27.0957 4076 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\Windows\system32\DRIVERS \scfilter.sys 12:05:27.0958 4076 scfilter - ok 12:05:27.0988 4076 [ EDCDF4DB82EF825B94B190D544C8C58B ] Schedule C:\Windows\system32\schedsvc.dll 12:05:28.0009 4076 Schedule - ok 12:05:28.0034 4076 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\Windows\System32\certprop.dll 12:05:28.0035 4076 SCPolicySvc - ok 12:05:28.0067 4076 [ 12F06525912BBEF67837DE47D87C60A9 ] sdbus C:\Windows\System32\drivers \sdbus.sys 12:05:28.0069 4076 sdbus - ok 12:05:28.0096 4076 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\Windows\System32\SDRSVC.dll 12:05:28.0101 4076 SDRSVC - ok 12:05:28.0123 4076 [ 6BF842A03DAA25CBBA9A585E25731E06 ] sdstor C:\Windows\System32\drivers \sdstor.sys 12:05:28.0124 4076 sdstor - ok 12:05:28.0127 4076 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers \secdrv.sys 12:05:28.0128 4076 secdrv - ok 12:05:28.0143 4076 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\Windows\system32\seclogon.dll 12:05:28.0145 4076 seclogon - ok 12:05:28.0153 4076 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\Windows\System32\sens.dll 12:05:28.0155 4076 SENS - ok 12:05:28.0165 4076 [ DDA4CAF29D8C0A297F886BFE561E6659 ] SensorsAlsDriver C:\Windows\system32\DRIVERS \WUDFRd.sys 12:05:28.0168 4076 SensorsAlsDriver - ok 12:05:28.0198 4076 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\Windows\system32\sensrsvc.dll 12:05:28.0200 4076 SensrSvc - ok 12:05:28.0212 4076 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\Windows\system32\drivers \SerCx.sys 12:05:28.0214 4076 SerCx - ok 12:05:28.0217 4076 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\Windows\System32\drivers \serenum.sys 12:05:28.0218 4076 Serenum - ok 12:05:28.0222 4076 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\Windows\System32\drivers \serial.sys 12:05:28.0224 4076 Serial - ok 12:05:28.0227 4076 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\Windows\System32\drivers \sermouse.sys 12:05:28.0228 4076 sermouse - ok 12:05:28.0252 4076 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\Windows\system32\sessenv.dll 12:05:28.0259 4076 SessionEnv - ok 12:05:28.0272 4076 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\Windows\System32\drivers \sfloppy.sys 12:05:28.0273 4076 sfloppy - ok 12:05:28.0304 4076 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\Windows\System32\ipnathlp.dll 12:05:28.0312 4076 SharedAccess - ok 12:05:28.0352 4076 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\Windows\System32\shsvcs.dll 12:05:28.0356 4076 ShellHWDetection - ok 12:05:28.0359 4076 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\Windows\system32\drivers \SiSRaid2.sys 12:05:28.0361 4076 SiSRaid2 - ok 12:05:28.0379 4076 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\Windows\system32\drivers \sisraid4.sys 12:05:28.0381 4076 SiSRaid4 - ok 12:05:28.0400 4076 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 12:05:28.0402 4076 SNMPTRAP - ok 12:05:28.0412 4076 [ 465F3C355CE5ED2779B8F460F14C5A78 ] spaceport C:\Windows\system32\drivers \spaceport.sys 12:05:28.0417 4076 spaceport - ok 12:05:28.0420 4076 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\Windows\system32\drivers \SpbCx.sys 12:05:28.0421 4076 SpbCx - ok 12:05:28.0446 4076 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\Windows\System32\spoolsv.exe 12:05:28.0451 4076 Spooler - ok 12:05:28.0532 4076 [ EC84D961501054F87A6878EC5D53388F ] sppsvc C:\Windows\system32\sppsvc.exe 12:05:28.0569 4076 sppsvc - ok 12:05:28.0594 4076 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\Windows\system32\DRIVERS\srv.sys 12:05:28.0598 4076 srv - ok 12:05:28.0606 4076 [ 0DE224F7B8041B17AA53D00327A86396 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 12:05:28.0612 4076 srv2 - ok 12:05:28.0617 4076 [ 9400C71F5A1A380B494B6922F007D485 ] srvnet C:\Windows\system32\DRIVERS \srvnet.sys 12:05:28.0618 4076 srvnet - ok 12:05:28.0650 4076 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 12:05:28.0653 4076 SSDPSRV - ok 12:05:28.0656 4076 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\Windows\system32\sstpsvc.dll 12:05:28.0660 4076 SstpSvc - ok 12:05:28.0757 4076 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 12:05:28.0790 4076 Stereo Service - ok 12:05:28.0812 4076 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\Windows\system32\drivers \stexstor.sys 12:05:28.0813 4076 stexstor - ok 12:05:28.0839 4076 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\Windows\System32\wiaservc.dll 12:05:28.0849 4076 stisvc - ok 12:05:28.0852 4076 [ C588BBD37B432CE3204E5765B459E6B2 ] storahci C:\Windows\system32\drivers \storahci.sys 12:05:28.0854 4076 storahci - ok 12:05:28.0861 4076 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\Windows\system32\DRIVERS \vmstorfl.sys 12:05:28.0862 4076 storflt - ok 12:05:28.0890 4076 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\Windows\system32\storsvc.dll 12:05:28.0892 4076 StorSvc - ok 12:05:28.0916 4076 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\Windows\system32\drivers \storvsc.sys 12:05:28.0918 4076 storvsc - ok 12:05:28.0926 4076 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\Windows\system32\svsvc.dll 12:05:28.0927 4076 svsvc - ok 12:05:28.0930 4076 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\Windows\System32\drivers \swenum.sys 12:05:28.0931 4076 swenum - ok 12:05:28.0938 4076 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\Windows\System32\swprv.dll 12:05:28.0942 4076 swprv - ok 12:05:28.0969 4076 [ DC21E1F06343773D7E24362DCEF7944B ] SysMain C:\Windows\system32\sysmain.dll 12:05:28.0983 4076 SysMain - ok 12:05:29.0007 4076 [ F1DA8D3C4395E4B1D58D308A4B062B24 ] SystemEventsBroker C:\Windows \System32\SystemEventsBrokerServer.dll 12:05:29.0009 4076 SystemEventsBroker - ok 12:05:29.0017 4076 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\Windows\System32\TabSvc.dll 12:05:29.0021 4076 TabletInputService - ok 12:05:29.0032 4076 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\Windows\System32\tapisrv.dll 12:05:29.0038 4076 TapiSrv - ok 12:05:29.0094 4076 [ D192288CE5FB395F0BBAFDD1A8B5285D ] Tcpip C:\Windows\system32\drivers \tcpip.sys 12:05:29.0111 4076 Tcpip - ok 12:05:29.0133 4076 [ D192288CE5FB395F0BBAFDD1A8B5285D ] TCPIP6 C:\Windows\system32\DRIVERS \tcpip.sys 12:05:29.0143 4076 TCPIP6 - ok 12:05:29.0168 4076 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\Windows\system32\drivers \tcpipreg.sys 12:05:29.0169 4076 tcpipreg - ok 12:05:29.0174 4076 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 12:05:29.0176 4076 tdx - ok 12:05:29.0179 4076 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\Windows\System32\drivers \terminpt.sys 12:05:29.0180 4076 terminpt - ok 12:05:29.0215 4076 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\Windows\System32\termsrv.dll 12:05:29.0220 4076 TermService - ok 12:05:29.0227 4076 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\Windows\system32\themeservice.dll 12:05:29.0229 4076 Themes - ok 12:05:29.0254 4076 [ DBD28A7997CF7303E610989C565C9B29 ] THREADORDER C:\Windows\system32\mmcss.dll 12:05:29.0256 4076 THREADORDER - ok 12:05:29.0277 4076 [ 2A8B087AE47AC8486859CF479BB704C8 ] TimeBroker C:\Windows \System32\TimeBrokerServer.dll 12:05:29.0280 4076 TimeBroker - ok 12:05:29.0298 4076 [ 151BD0387B1B320CC9AACE6DB071803B ] TPM C:\Windows\system32\drivers\tpm.sys 12:05:29.0301 4076 TPM - ok 12:05:29.0317 4076 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\Windows\System32\trkwks.dll 12:05:29.0320 4076 TrkWks - ok 12:05:29.0379 4076 [ B66EE1D68197DFB9AA24F961E68ACDCC ] trufos C:\Windows\system32\DRIVERS \trufos.sys 12:05:29.0381 4076 trufos - ok 12:05:29.0415 4076 [ 8D516AEF3C1DF980664CF17BB1FF6093 ] TrustedInstaller C:\Windows\servicing \TrustedInstaller.exe 12:05:29.0416 4076 TrustedInstaller - ok 12:05:29.0432 4076 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\Windows\system32\drivers \tsusbflt.sys 12:05:29.0434 4076 TsUsbFlt - ok 12:05:29.0446 4076 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\Windows\System32\drivers \TsUsbGD.sys 12:05:29.0447 4076 TsUsbGD - ok 12:05:29.0451 4076 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\Windows\system32\DRIVERS \tunnel.sys 12:05:29.0454 4076 tunnel - ok 12:05:29.0457 4076 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\Windows\system32\drivers \uagp35.sys 12:05:29.0459 4076 uagp35 - ok 12:05:29.0462 4076 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\Windows\System32\drivers \uaspstor.sys 12:05:29.0464 4076 UASPStor - ok 12:05:29.0476 4076 [ AA48AEC5CEB2AA8ED1B1A5758B017F72 ] UCX01000 C:\Windows\System32\drivers \ucx01000.sys 12:05:29.0479 4076 UCX01000 - ok 12:05:29.0485 4076 [ DC5A461591C71AF7F19DC048A81E3F88 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 12:05:29.0488 4076 udfs - ok 12:05:29.0506 4076 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\Windows\system32\UI0Detect.exe 12:05:29.0508 4076 UI0Detect - ok 12:05:29.0511 4076 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\Windows\system32\drivers \uliagpkx.sys 12:05:29.0513 4076 uliagpkx - ok 12:05:29.0516 4076 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\Windows\System32\drivers \umbus.sys 12:05:29.0517 4076 umbus - ok 12:05:29.0520 4076 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\Windows\System32\drivers \umpass.sys 12:05:29.0521 4076 UmPass - ok 12:05:29.0538 4076 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\Windows\System32\umrdp.dll 12:05:29.0545 4076 UmRdpService - ok 12:05:29.0619 4076 [ E1A119AD21F5AFE22EB516C549306D3D ] UNS C:\Program Files (x86)\Intel\Intel (R) Management Engine Components\UNS\UNS.exe 12:05:29.0630 4076 UNS - ok 12:05:29.0752 4076 [ 75A488DA3EA48BE97695A727185515CF ] UPDATESRV C:\Program Files\Bitdefender \Bitdefender 2013\updatesrv.exe 12:05:29.0753 4076 UPDATESRV - ok 12:05:29.0783 4076 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\Windows\System32\upnphost.dll 12:05:29.0790 4076 upnphost - ok 12:05:29.0814 4076 [ 30F02F642C2D141CAABD412B48A29D76 ] usb3Hub C:\Windows\System32\drivers \usb3Hub.sys 12:05:29.0816 4076 usb3Hub - ok 12:05:29.0861 4076 [ 2AF9F0E16D75B8F783A1ACE74EF51C9B ] usbccgp C:\Windows\System32\drivers \usbccgp.sys 12:05:29.0863 4076 usbccgp - ok 12:05:29.0867 4076 [ B395B62B62F28106218FA6FB17F4C797 ] usbcir C:\Windows\System32\drivers \usbcir.sys 12:05:29.0869 4076 usbcir - ok 12:05:29.0873 4076 [ 742BAFBB51C5B7811098ADE8C7EF5534 ] usbehci C:\Windows\System32\drivers \usbehci.sys 12:05:29.0874 4076 usbehci - ok 12:05:29.0884 4076 [ 566A32B2054C8E5360DB7839F64D0F58 ] usbhub C:\Windows\System32\drivers \usbhub.sys 12:05:29.0889 4076 usbhub - ok 12:05:29.0896 4076 [ 12EAB6FB15B572D9C6D9FFC33F87EC3F ] USBHUB3 C:\Windows\System32\drivers \UsbHub3.sys 12:05:29.0900 4076 USBHUB3 - ok 12:05:29.0903 4076 [ F656F5D696A921DA67E98CF9C2BEDA20 ] usbohci C:\Windows\System32\drivers \usbohci.sys 12:05:29.0905 4076 usbohci - ok 12:05:29.0911 4076 [ BA3ABE0CD1C14B3295BAD0F076B84CAC ] usbprint C:\Windows\System32\drivers \usbprint.sys 12:05:29.0912 4076 usbprint - ok 12:05:29.0924 4076 [ F77177F6C95B2116EE7AD23B5EF57007 ] USBSTOR C:\Windows\System32\drivers \USBSTOR.SYS 12:05:29.0926 4076 USBSTOR - ok 12:05:29.0931 4076 [ 1BBB5F562E80CF9E2F1587150FE3216E ] usbuhci C:\Windows\System32\drivers \usbuhci.sys 12:05:29.0932 4076 usbuhci - ok 12:05:29.0951 4076 [ 75357960FD491E12416342CA12975FDA ] usbvideo C:\Windows\System32\Drivers \usbvideo.sys 12:05:29.0954 4076 usbvideo - ok 12:05:29.0960 4076 [ 8ABF3C3ED6BF5ED15DC947795FF6ACAC ] USBXHCI C:\Windows\System32\drivers \USBXHCI.SYS 12:05:29.0963 4076 USBXHCI - ok 12:05:29.0973 4076 [ 6E0E63801FBEF27995107B8269BCFAAD ] VaultSvc C:\Windows\system32\lsass.exe 12:05:29.0974 4076 VaultSvc - ok 12:05:29.0977 4076 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\Windows\system32\drivers \vdrvroot.sys 12:05:29.0978 4076 vdrvroot - ok 12:05:30.0019 4076 [ 7F5170D503D935A2BB9D69873CF3FDFA ] vds C:\Windows\System32\vds.exe 12:05:30.0037 4076 vds - ok 12:05:30.0047 4076 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\Windows\system32\drivers \VerifierExt.sys 12:05:30.0048 4076 VerifierExt - ok 12:05:30.0078 4076 [ 8628FA679F0EC4B709CCD1F6B6A3233B ] vhdmp C:\Windows\System32\drivers \vhdmp.sys 12:05:30.0084 4076 vhdmp - ok 12:05:30.0087 4076 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\Windows\system32\drivers \viaide.sys 12:05:30.0089 4076 viaide - ok 12:05:30.0094 4076 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\Windows\system32\drivers \vmbus.sys 12:05:30.0096 4076 vmbus - ok 12:05:30.0099 4076 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\Windows\System32\drivers \VMBusHID.sys 12:05:30.0100 4076 VMBusHID - ok 12:05:30.0126 4076 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\Windows\System32\ICSvc.dll 12:05:30.0133 4076 vmicheartbeat - ok 12:05:30.0138 4076 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\Windows\System32\ICSvc.dll 12:05:30.0140 4076 vmickvpexchange - ok 12:05:30.0145 4076 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\Windows\System32\ICSvc.dll 12:05:30.0147 4076 vmicrdv - ok 12:05:30.0152 4076 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\Windows\System32\ICSvc.dll 12:05:30.0154 4076 vmicshutdown - ok 12:05:30.0158 4076 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\Windows\System32\ICSvc.dll 12:05:30.0160 4076 vmictimesync - ok 12:05:30.0165 4076 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\Windows\System32\ICSvc.dll 12:05:30.0167 4076 vmicvss - ok 12:05:30.0171 4076 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\Windows\system32\drivers \volmgr.sys 12:05:30.0173 4076 volmgr - ok 12:05:30.0204 4076 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\Windows\system32\drivers \volmgrx.sys 12:05:30.0209 4076 volmgrx - ok 12:05:30.0215 4076 [ 2FB3CDFD5EAF4CD9D4AFAF96877D13AE ] volsnap C:\Windows\system32\drivers \volsnap.sys 12:05:30.0219 4076 volsnap - ok 12:05:30.0223 4076 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\Windows\System32\drivers\vpci.sys 12:05:30.0225 4076 vpci - ok 12:05:30.0229 4076 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\Windows\system32\drivers \vsmraid.sys 12:05:30.0232 4076 vsmraid - ok 12:05:30.0286 4076 [ EA658570314042C914964FC72AB50E6B ] VSS C:\Windows\system32\vssvc.exe 12:05:30.0294 4076 VSS - ok 12:05:30.0398 4076 [ 1575FF62CB0C3F4823B265C1A3827101 ] VSSERV C:\Program Files\Bitdefender \Bitdefender 2013\vsserv.exe 12:05:30.0413 4076 VSSERV - ok 12:05:30.0452 4076 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\Windows\system32\drivers \vstxraid.sys 12:05:30.0457 4076 VSTXRAID - ok 12:05:30.0459 4076 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\Windows\System32\drivers \vwifibus.sys 12:05:30.0460 4076 vwifibus - ok 12:05:30.0463 4076 [ 095E943D27025E4D588AF0A72CC2318F ] vwififlt C:\Windows\system32\DRIVERS \vwififlt.sys 12:05:30.0464 4076 vwififlt - ok 12:05:30.0467 4076 [ 73FA1A41A97A5C34ADC03B3577FF1A86 ] vwifimp C:\Windows\system32\DRIVERS \vwifimp.sys 12:05:30.0468 4076 vwifimp - ok 12:05:30.0489 4076 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\Windows\system32\w32time.dll 12:05:30.0494 4076 W32Time - ok 12:05:30.0519 4076 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\Windows\System32\drivers \wacompen.sys 12:05:30.0520 4076 WacomPen - ok 12:05:30.0524 4076 [ B69492CBD928534160594A7B33602575 ] Wanarp C:\Windows\system32\DRIVERS \wanarp.sys 12:05:30.0526 4076 Wanarp - ok 12:05:30.0528 4076 [ B69492CBD928534160594A7B33602575 ] Wanarpv6 C:\Windows\system32\DRIVERS \wanarp.sys 12:05:30.0529 4076 Wanarpv6 - ok 12:05:30.0565 4076 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\Windows\system32\wbengine.exe 12:05:30.0580 4076 wbengine - ok 12:05:30.0585 4076 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 12:05:30.0593 4076 WbioSrvc - ok 12:05:30.0612 4076 [ D9C1E82651BF19C6FF69CEC6FD400124 ] Wcmsvc C:\Windows\System32\wcmsvc.dll 12:05:30.0615 4076 Wcmsvc - ok 12:05:30.0635 4076 [ 68C2831A05A339DA8462C6F45BFCB84C ] wcncsvc C:\Windows\System32\wcncsvc.dll 12:05:30.0641 4076 wcncsvc - ok 12:05:30.0646 4076 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\Windows \System32\WcsPlugInService.dll 12:05:30.0649 4076 WcsPlugInService - ok 12:05:30.0665 4076 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\Windows\system32\drivers\wd.sys 12:05:30.0666 4076 Wd - ok 12:05:30.0669 4076 [ 260F8DFC4D5748F4CCB9B19CFB0E58EA ] WdBoot C:\Windows\system32\drivers \WdBoot.sys 12:05:30.0670 4076 WdBoot - ok 12:05:30.0704 4076 [ 2ADC985B85A71BD7D99712EC0C24358B ] Wdf01000 C:\Windows\system32\drivers \Wdf01000.sys 12:05:30.0713 4076 Wdf01000 - ok 12:05:30.0734 4076 [ 880FFFC4D5BBBB4187B6B04AB2E8C32A ] WdFilter C:\Windows\system32\drivers \WdFilter.sys 12:05:30.0736 4076 WdFilter - ok 12:05:30.0770 4076 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\Windows\system32\wdi.dll 12:05:30.0773 4076 WdiServiceHost - ok 12:05:30.0776 4076 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\Windows\system32\wdi.dll 12:05:30.0778 4076 WdiSystemHost - ok 12:05:30.0791 4076 [ F2002DA5E6B78C15B2CD48CFF8F0FBB6 ] WebClient C:\Windows\System32\webclnt.dll 12:05:30.0796 4076 WebClient - ok 12:05:30.0809 4076 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\Windows\system32\wecsvc.dll 12:05:30.0816 4076 Wecsvc - ok 12:05:30.0846 4076 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\Windows \System32\wercplsupport.dll 12:05:30.0848 4076 wercplsupport - ok 12:05:30.0853 4076 [ 8E2426162ED6749A127B35D235F21E11 ] WerSvc C:\Windows\System32\WerSvc.dll 12:05:30.0856 4076 WerSvc - ok 12:05:30.0868 4076 [ FE762D3498719C3A23471BBA62F747B4 ] WFPLWFS C:\Windows\system32\DRIVERS \wfplwfs.sys 12:05:30.0869 4076 WFPLWFS - ok 12:05:30.0894 4076 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\Windows\System32\wiarpc.dll 12:05:30.0899 4076 WiaRpc - ok 12:05:30.0913 4076 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\Windows\system32\drivers \wimmount.sys 12:05:30.0914 4076 WIMMount - ok 12:05:30.0933 4076 WinDefend - ok 12:05:30.0959 4076 [ 1369928779943B5C7AABA263E6E2BBC1 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll 12:05:30.0968 4076 WinHttpAutoProxySvc - ok 12:05:31.0075 4076 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 12:05:31.0080 4076 Winmgmt - ok 12:05:31.0166 4076 WinRing0_1_2_0 - ok 12:05:31.0223 4076 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\Windows\system32\WsmSvc.dll 12:05:31.0256 4076 WinRM - ok 12:05:31.0293 4076 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\Windows\system32\DRIVERS \WinUSB.sys 12:05:31.0294 4076 WinUsb - ok 12:05:31.0337 4076 [ CAC452B32656A0A51356912F4A9943CA ] WlanSvc C:\Windows\System32\wlansvc.dll 12:05:31.0350 4076 WlanSvc - ok 12:05:31.0392 4076 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\Windows\system32\wlidsvc.dll 12:05:31.0415 4076 wlidsvc - ok 12:05:31.0426 4076 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\Windows\System32\drivers \wmiacpi.sys 12:05:31.0427 4076 WmiAcpi - ok 12:05:31.0453 4076 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\Windows\system32\wbem \WmiApSrv.exe 12:05:31.0455 4076 wmiApSrv - ok 12:05:31.0477 4076 WMPNetworkSvc - ok 12:05:31.0491 4076 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\Windows\system32\DRIVERS \wpcfltr.sys 12:05:31.0492 4076 wpcfltr - ok 12:05:31.0510 4076 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\Windows\System32\wpcsvc.dll 12:05:31.0514 4076 WPCSvc - ok 12:05:31.0522 4076 [ 94AA5150E35B3ABB7191FE641E3C2473 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 12:05:31.0524 4076 WPDBusEnum - ok 12:05:31.0538 4076 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\Windows\system32\drivers \WpdUpFltr.sys 12:05:31.0539 4076 WpdUpFltr - ok 12:05:31.0542 4076 [ 58D492F986EC519ECDD54D93618758F8 ] ws2ifsl C:\Windows\system32\drivers \ws2ifsl.sys 12:05:31.0543 4076 ws2ifsl - ok 12:05:31.0561 4076 [ FB0C1B7F94FA08E72F19F6F2CE7210E1 ] wscsvc C:\Windows\System32\wscsvc.dll 12:05:31.0564 4076 wscsvc - ok 12:05:31.0567 4076 WSearch - ok 12:05:31.0613 4076 [ FEC16FE5EAC2D8CD4628B69667B90DE6 ] WSService C:\Windows\System32\WSService.dll 12:05:31.0632 4076 WSService - ok 12:05:31.0692 4076 [ C80DB258C195ACBF86ED42B53554EB28 ] wuauserv C:\Windows\system32\wuaueng.dll 12:05:31.0715 4076 wuauserv - ok 12:05:31.0730 4076 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers \WudfPf.sys 12:05:31.0731 4076 WudfPf - ok 12:05:31.0735 4076 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\System32\drivers \WUDFRd.sys 12:05:31.0737 4076 WUDFRd - ok 12:05:31.0767 4076 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 12:05:31.0769 4076 wudfsvc - ok 12:05:31.0780 4076 [ 9FE55B90B1778C4FE351ECD1AEFD8AAF ] WwanSvc C:\Windows\System32\wwansvc.dll 12:05:31.0787 4076 WwanSvc - ok 12:05:31.0818 4076 [ 6FDEE5E0741A3FFA5E5772C6C94E3F64 ] XHCIPort C:\Windows\System32\drivers \XHCIPort.sys 12:05:31.0829 4076 XHCIPort - ok 12:05:31.0935 4076 [ 97D3DCBBF3915782644DB56F5C191B9F ] ZeroConfigService C:\Program Files\Intel\WiFi\bin \ZeroConfigService.exe 12:05:31.0959 4076 ZeroConfigService - ok 12:05:31.0965 4076 ================ Scan global =============================== 12:05:31.0992 4076 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\Windows\system32\basesrv.dll 12:05:32.0025 4076 [ B36597EF454D4FEA2F11429A9A1424BD ] C:\Windows\system32\winsrv.dll 12:05:32.0049 4076 [ BD7C6949984D19AAA609896B675E7357 ] C:\Windows\system32\sxssrv.dll 12:05:32.0068 4076 [ 754A2CC1F32107EA87CBD305ABE3E618 ] C:\Windows\system32\services.exe 12:05:32.0072 4076 [Global] - ok 12:05:32.0072 4076 ================ Scan MBR ================================== 12:05:32.0081 4076 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 12:05:32.0162 4076 \Device\Harddisk0\DR0 - ok 12:05:32.0165 4076 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1 12:05:32.0221 4076 \Device\Harddisk1\DR1 - ok 12:05:32.0221 4076 ================ Scan VBR ================================== 12:05:32.0255 4076 [ D9607620B974542CA23B31D15776D904 ] \Device\Harddisk0\DR0\Partition1 12:05:32.0256 4076 \Device\Harddisk0\DR0\Partition1 - ok 12:05:32.0266 4076 [ 6EC7F52B417F8E4B0050B6E4736D87AE ] \Device\Harddisk0\DR0\Partition2 12:05:32.0267 4076 \Device\Harddisk0\DR0\Partition2 - ok 12:05:32.0274 4076 [ 66FAA80B9274EE79831AFC0B93D4E7DB ] \Device\Harddisk0\DR0\Partition3 12:05:32.0274 4076 \Device\Harddisk0\DR0\Partition3 - ok 12:05:32.0289 4076 [ 33024B4F06E3383CB2D38782CAFAF303 ] \Device\Harddisk0\DR0\Partition4 12:05:32.0291 4076 \Device\Harddisk0\DR0\Partition4 - ok 12:05:32.0309 4076 [ 7D1018B653E9525CEFA43F5D8695126F ] \Device\Harddisk0\DR0\Partition5 12:05:32.0310 4076 \Device\Harddisk0\DR0\Partition5 - ok 12:05:32.0339 4076 [ 5F14C849012E983120948F74A3AD359E ] \Device\Harddisk0\DR0\Partition6 12:05:32.0341 4076 \Device\Harddisk0\DR0\Partition6 - ok 12:05:32.0343 4076 [ 4442C0A6C04745FB6E5882AD4133A05F ] \Device\Harddisk1\DR1\Partition1 12:05:32.0344 4076 \Device\Harddisk1\DR1\Partition1 - ok 12:05:32.0346 4076 [ ECDA84D54EAB3690E7650EF759B69E8A ] \Device\Harddisk1\DR1\Partition2 12:05:32.0347 4076 \Device\Harddisk1\DR1\Partition2 - ok 12:05:32.0347 4076 ============================================================ 12:05:32.0347 4076 Scan finished 12:05:32.0347 4076 ============================================================ 12:05:32.0353 5928 Detected object count: 0 12:05:32.0353 5928 Actual detected object count: 0 Moment mal: ich hatte BD für die Scans deaktiviert. Wollte eben wieder einschalten und hab bemerkt, dass das schon geschehen war. Komisch |
10.03.2013, 12:15 | #8 | |
/// TB-Ausbilder | Windows 8 neu aufsetzen Also ich kann da nichts schädliches erkennen. Letzter Test. Dateien überprüfen lassen Bitte lasse die Datei aus der Code-Box bei Virustotal überprüfen.
Zitat:
Warte bis unter Current status: Finished steht. Kopiere den Link aus deiner Adresszeile und poste ihn hier.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
10.03.2013, 12:25 | #9 |
| Windows 8 neu aufsetzen Also der Scan hat nix ergeben. Wo aber kommt auf einmal diese File her. Ich habe den Ordner gecheckt, weil ich die Logs da rein gespeichert habe. Anfangs war der leer. Ist die MBR.dat durch die Scans dahin gewandert? Code:
ATTFilter https://www.virustotal.com/de/file/8067c74321f955bdf4838dd141a3459865afcceaa2c93e0afd7a313b76f22d58/analysis/1362914303/ |
10.03.2013, 12:27 | #10 |
/// TB-Ausbilder | Windows 8 neu aufsetzen Ja wurde vorhin erzeugt. Sprich dein Thema nochmal in "Rund um Windows" an.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
10.03.2013, 12:30 | #11 |
| Windows 8 neu aufsetzen Okay, vielen Dank für die Hilfe. Ich bin vielleicht auch einfach paranoid Aber irgendwie finde ich diese An und Aus von BD sehr merkwürdig. Vll liegt das ja auch einfach an BD?? |
Themen zu Windows 8 neu aufsetzen |
aufsetzen, befallen, entferne, entfernen, erfahrung, frage, funktion, grenzen, installiere, installieren, kompromittiert, langsam, latein, neu, neu aufsetzen, neu installieren, neuinstallation, system, system neu, vorgehen, win, windows, windows 8 |